<?xml version='1.0' encoding='utf-8' ?>
<!-- Made with love by pretalx v2026.3.0.dev0. -->
<schedule>
    <generator name="pretalx" system="pretalx.com" version="2026.3.0.dev0" />
    <version>0.8</version>
    <conference>
        <title>Yocto Project Summit 2025.12</title>
        <acronym>yocto-project-summit-2025-12</acronym>
        <start>2025-12-02</start>
        <end>2025-12-04</end>
        <days>3</days>
        <timeslot_duration>00:05</timeslot_duration>
        <base_url>https://pretalx.com</base_url>
        
        <time_zone_name>UTC</time_zone_name>
        
        
        <track name="After Hours Hangout" slug="6315-after-hours-hangout"  color="#ff9b62" />
        
        <track name="Hands on Lab" slug="6316-hands-on-lab"  color="#c112ed" />
        
        <track name="Product Showcase" slug="6317-product-showcase"  color="#b49305" />
        
        <track name="All Attendees" slug="6318-all-attendees"  color="#e90d0d" />
        
        <track name="Beginner track" slug="6319-beginner-track"  color="#0d67ee" />
        
        <track name="Intermediate Track / Presentation" slug="6320-intermediate-track-presentation"  color="#10981e" />
        
    </conference>
    <day index='1' date='2025-12-02' start='2025-12-02T04:00:00+00:00' end='2025-12-03T03:59:00+00:00'>
        <room name='Walnascar' guid='31b28763-db1f-5ff1-bfd6-105c4cef6562'>
            <event guid='8ffce07d-a9dc-59ca-adcb-96fc72d6bf17' id='83620' code='RHELPK'>
                <room>Walnascar</room>
                <title>Welcome - Day 1</title>
                <subtitle></subtitle>
                <type>Lightning Talk</type>
                <date>2025-12-02T12:00:00+00:00</date>
                <start>12:00</start>
                <duration>00:15</duration>
                <abstract>Welcome - Day 1</abstract>
                <slug>yocto-project-summit-2025-12-83620-welcome-day-1</slug>
                <track>All Attendees</track>
                
                <persons>
                    <person id='84763'>Josef Holzmayr</person>
                </persons>
                <language>en</language>
                <description>Welcome - Day 1</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/RHELPK/resources/_D9Roum9.pdf">Slides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/RHELPK/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/RHELPK/feedback/</feedback_url>
            </event>
            <event guid='f8a864a0-12f2-51d2-a7f2-a1896ce6b47c' id='83632' code='TDSBE7'>
                <room>Walnascar</room>
                <title>Introduction to The Yocto Project and Bitbake</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-02T12:15:00+00:00</date>
                <start>12:15</start>
                <duration>01:30</duration>
                <abstract>This seminar is for people who are new to using the Yocto Project and want an introduction to the basics of how to use bitbake and start to build images to be used with QEMU.</abstract>
                <slug>yocto-project-summit-2025-12-83632-introduction-to-the-yocto-project-and-bitbake</slug>
                <track>Beginner track</track>
                
                <persons>
                    <person id='86511'>Behan Webster</person>
                </persons>
                <language>en</language>
                <description>This talk will be the first of a series of 2 seminars which will cover the topics of:
* Bitbake
* Recipes
* Tasks
* Operators
* Common variables
* What to do when things go wrong
* Building an embedded image</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/TDSBE7/resources/_dnKhopJ.pptx">Beginning Class Slides (PowerPoint)</attachment>
                
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/TDSBE7/resources/_aJbmBoW.pdf">Beginning Class Slides (PDF)</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/TDSBE7/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/TDSBE7/feedback/</feedback_url>
            </event>
            <event guid='2b4cab4f-c0af-563b-b83f-decc867dc4f9' id='83633' code='3ZUTZU'>
                <room>Walnascar</room>
                <title>Introduction to Layers, Images and more</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-02T14:00:00+00:00</date>
                <start>14:00</start>
                <duration>01:30</duration>
                <abstract>This seminar is for people who are new to using the Yocto Project and want an introduction to the basics of layers, building images, and other initial topics</abstract>
                <slug>yocto-project-summit-2025-12-83633-introduction-to-layers-images-and-more</slug>
                <track>Beginner track</track>
                
                <persons>
                    <person id='86512'>Tom King</person>
                </persons>
                <language>en</language>
                <description>This talk will be the second of a series of 2 seminars which will cover the topics of:
* Introduction to layers
* What&apos;s in each of the provided layers
* Booting your image with QEMU
* Board support packages
* Images
* Toaster
* Building an application</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/3ZUTZU/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/3ZUTZU/feedback/</feedback_url>
            </event>
            <event guid='1a75a16a-8964-5d1f-8429-54f7111e6780' id='84219' code='WNE7XA'>
                <room>Walnascar</room>
                <title>sbom-cve-check: Lightweight Python tooling for out-of-build CVE analysis of SPDX3 SBOMs</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-02T15:40:00+00:00</date>
                <start>15:40</start>
                <duration>00:30</duration>
                <abstract>We are happy to announce the first release of a brand new open-source project: **sbom-cve-check**, a lightweight CVE analysis tool for your Software Bill of Materials (SBOM). Written in Python, with minimal dependencies and a very simple workflow in mind, **sbom-cve-check** will parse your SBOM (SPDX v2.2 or SPDX v3.0 currently supported), and using publicly available databases of security vulnerabilities, will generate a report of known security vulnerabilities affecting the software components listed in your SBOM.</abstract>
                <slug>yocto-project-summit-2025-12-84219-sbom-cve-check-lightweight-python-tooling-for-out-of-build-cve-analysis-of-spdx3-sboms</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='85477'>Olivier Benjamin</person><person id='85478'>Benjamin Robin</person>
                </persons>
                <language>en</language>
                <description>**sbom-cve-check** was conceived to help produce artifacts necessary in vulnerability assessment which will be a periodic action for CRA compliance. Developers, integrators and manufacturers will need to archive the SBOM as part of a release, and regularly conduct automated vulnerability reporting. Yocto today is able to generate the SBOM for its builds, and can also do CVE analysis. Our main problem was that this capability is intricately tied to the build, and cannot be replicated based on only the SBOM: one must rerun the whole build.

We present sbom-cve-check: a new tool to conduct automated vulnerability analysis based on the SBOM, without rebuild, and relying on the open SPDX3 standard. **sbom-cve-check** aims at being an efficient replacement for the cve-check logic currently available in Yocto. It pulls from several databases, including NVD and CVE List, and supports multiple annotation formats, such as Open VEX and Yocto&apos;s custom format. sbom-cve-check currently supports the following export formats: SPDX3, CSV and Yocto&apos;s cve-check output format.

The tool is provided under the GPLv2 license, and contributions are of course welcome :).</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/WNE7XA/resources/_xYHJp6d.pdf">sbom-cve-check presentation</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/WNE7XA/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/WNE7XA/feedback/</feedback_url>
            </event>
            <event guid='5cd26e40-e9de-53f4-a669-ede7f5715193' id='82336' code='3KKPQM'>
                <room>Walnascar</room>
                <title>Agentic LLMs as Your Pair Programming Partner: Lessons from Recent Cursor-Assisted Yocto Development</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-02T16:30:00+00:00</date>
                <start>16:30</start>
                <duration>00:30</duration>
                <abstract>After a few months of using Cursor AI backed by claude-4-sonnet in agentic mode on Yocto / OpenEmbedded development, I want to share the genuine productivity transformations I&apos;ve experienced, and the critical lessons about where it goes wrong.

I&apos;ll show you how AI helped me remote into target hardware via SSH, capture webcam images of running code, analyse the output, and iterate until our e-ink display worked correctly. I&apos;ll demonstrate automated power consumption monitoring feeding back into BSP optimisation workflows.

I&apos;ll also share the gotchas: when AI creates overly complex solutions, goes down rabbit holes, and happily does the nonsensical things if you ask it to. 

The key insight? You need feedback loops, you need experience, and you need to stay in control,

I&apos;m hoping to begin a conversation with the community about how we build best practice to leverage AI pair programming in future.</abstract>
                <slug>yocto-project-summit-2025-12-82336-agentic-llms-as-your-pair-programming-partner-lessons-from-recent-cursor-assisted-yocto-development</slug>
                <track>Intermediate Track / Presentation</track>
                <logo>/media/yocto-project-summit-2025-12/submissions/3KKPQM/OE_AI__1EWcrY9.webp</logo>
                <persons>
                    <person id='83804'>Alex Lennon</person>
                </persons>
                <language>en</language>
                <description># The Productivity Revolution

Here&apos;s what using &quot;AI&quot; - by which I mean Cursor backed by claude-4-sonnet in agentic mode - has genuinely transformed in my workflow:

## Research and Problem-Solving

AI searches multiple sources, combines results, and presents options orders of magnitude faster than I can Google. I&apos;m constantly learning new approaches to problems I thought I understood.

## Tool Mastery

AI knows ways to use tools I&apos;ve used for years that I never discovered. It analyses code-bases faster than I can grep, and interrogates command-line tools to understand their operation in real-time.

## Automation Everything

Setting up repositories, managing commits, creating CI workflows, generating documentation - AI can automate these tasks by actually running the commands and learning from the output.

# Real Examples That Matter

## E-ink Display Debugging

I asked AI to SSH into our target board, capture webcam images of the code running on our controller chip, analyse what was displayed, identify mistakes, and iterate until the e-ink display showed correctly. This normally takes days - we did it in hours.

## Automated Power Optimisation

We&apos;re now automating access to test equipment in our remote hardware lab. AI monitors power consumption as we make BSP changes, takes automated readings, and feeds results back into the optimization process for better battery life.

# The Critical Gotchas

- Content Overload: AI creates far too much content and makes things unnecessarily complex
- Rabbit Holes: It gets confused and can chase irrelevant solutions
- Happy Compliance: Ask it to do something nonsensical and it will absolutely do it
- Tracking Management: You need to keep it focused on what you actually need to achieve

# The Essential Insight

This only works because I stay in control. AI is incredibly powerful, but you need:

- Your experience to know what questions to ask
- Feedback loops like CI testing and target board validation
- Constant course correction to prevent hallucinations

# Community Discussion

How do we share these techniques? What feedback loops work best? How do we prevent AI from creating technical debt while harnessing its genuine productivity gains? I&apos;ve got real examples to share, but I want to hear what&apos;s working for others.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links>
                    <link href="https://docs.google.com/presentation/d/1mior3WhKX3x2pKFcfZMBfzDxHs-jMv-Rdtgz8_8oREY/edit?usp=sharing">Presentation (Google Slides Link)</link>
                </links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/3KKPQM/resources/_lSNrQzb.pdf">Presentation (PDF)</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/3KKPQM/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/3KKPQM/feedback/</feedback_url>
            </event>
            <event guid='d76808f4-8a50-5d36-830e-70277d04fe31' id='82186' code='X9VJYK'>
                <room>Walnascar</room>
                <title>KAS in automotive projects</title>
                <subtitle></subtitle>
                <type>Lightning Talk</type>
                <date>2025-12-02T17:00:00+00:00</date>
                <start>17:00</start>
                <duration>00:15</duration>
                <abstract>Handling the complexity of automotive software projects with Openembedded/Yocto is very challenging. Contributing factors to this include the complex automotive SoCs in general and of course the vendor-supplied BSPs with many meta-layers. They include multiple image and distro variants, as well as specific machine configurations for the hardware and the emulation. On top of that the project developers put on top of that the  project specific layers, build variants and configurations.

To handle that in automotive projects, a standardized way is required to deal with all of this complexity without developing something new. In our case KAS was adopted as the best solution, that fulfilled all the requirements on such a tool. 

The talk will highlight the general idea of KAS and the problem it solves within Openembedded/Yocto projects. After explaining how to set up KAS projects the next step is an overview of how it is used in our automotive project will be given.  It will be highlighted  how we manage multiple layers, different machines, images and distros to build different targets with the help of KAS. Afterwards, it will be shown how it enabled our project to have a standardized way for developers and the CI to trigger builds with specific configurations easily.
At the end of the talk the key reasons to use KAS will be summarized and an outlook will be given onthe development that is currently happening with bitbake-setup.</abstract>
                <slug>yocto-project-summit-2025-12-82186-kas-in-automotive-projects</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='83673'>Michael Estner</person>
                </persons>
                <language>en</language>
                <description>Handling the complexity of automotive software projects with Openembedded/Yocto is very challenging. Contributing factors to this include the complex automotive SoCs in general and of course the vendor-supplied BSPs with many meta-layers. They include multiple image and distro variants, as well as specific machine configurations for the hardware and the emulation. On top of that the project developers put on top of that the  project specific layers, build variants and configurations.

To handle that in automotive projects, a standardized way is required to deal with all of this complexity without developing something new. In our case KAS was adopted as the best solution, that fulfilled all the requirements on such a tool. 

The talk will highlight the general idea of KAS and the problem it solves within Openembedded/Yocto projects. After explaining how to set up KAS projects the next step is an overview of how it is used in our automotive project will be given.  It will be highlighted  how we manage multiple layers, different machines, images and distros to build different targets with the help of KAS. Afterwards, it will be shown how it enabled our project to have a standardized way for developers and the CI to trigger builds with specific configurations easily.
At the end of the talk the key reasons to use KAS will be summarized and an outlook will be given onthe development that is currently happening with bitbake-setup.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/X9VJYK/resources/_0iuEE8r.pdf">Slides: KAS in automotive projects</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/X9VJYK/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/X9VJYK/feedback/</feedback_url>
            </event>
            <event guid='d03c91df-f3b9-55b3-88ee-ca846803d1c5' id='81805' code='3Z9QRJ'>
                <room>Walnascar</room>
                <title>Yocto BSP with STM32MP</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-02T17:20:00+00:00</date>
                <start>17:20</start>
                <duration>00:30</duration>
                <abstract>This talk explains how STM32MP BSP Layer is developed and organized.</abstract>
                <slug>yocto-project-summit-2025-12-81805-yocto-bsp-with-stm32mp</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='83297'>Talel BELHAJSALEM</person>
                </persons>
                <language>en</language>
                <description>The community finds the STMP32MP Yocto BSP Layer is quite complicated, and it is quite difficult to developed a new machine based on ST machine configuration.

The aim of this talk is to give a BSP implementation example, as well as how ST abstracts key BitBake BSP variables and uses advanced development techniques to support their boards in a generic way.

Talking about STM32MP, STM32MP2 specifically, also means talking about ARM Trust Boot and firmware update and how ST handles that in Yocto.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/3Z9QRJ/resources/_vcetMYu.pdf">Yocto BSP with STM32MP</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/3Z9QRJ/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/3Z9QRJ/feedback/</feedback_url>
            </event>
            <event guid='2c67a30e-2f0c-5bf9-964d-f044285aad7d' id='83623' code='RV3ZZC'>
                <room>Walnascar</room>
                <title>Social hangout - Day 1</title>
                <subtitle></subtitle>
                <type>After hours social</type>
                <date>2025-12-02T18:00:00+00:00</date>
                <start>18:00</start>
                <duration>02:00</duration>
                <abstract>Social hangout - Day 1</abstract>
                <slug>yocto-project-summit-2025-12-83623-social-hangout-day-1</slug>
                <track>After Hours Hangout</track>
                
                <persons>
                    
                </persons>
                <language>en</language>
                <description>Social hangout - Day 1</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/RV3ZZC/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/RV3ZZC/feedback/</feedback_url>
            </event>
            
        </room>
        <room name='Whinlatter' guid='fc193027-308b-50d6-9902-13f1c1f3a0d3'>
            <event guid='d4217915-0983-5d01-b79f-849982358060' id='83618' code='TTWVXV'>
                <room>Whinlatter</room>
                <title>Hands-On Setup</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-02T12:15:00+00:00</date>
                <start>12:15</start>
                <duration>00:10</duration>
                <abstract>Hands-On Setup</abstract>
                <slug>yocto-project-summit-2025-12-83618-hands-on-setup</slug>
                <track>Hands on Lab</track>
                
                <persons>
                    <person id='86646'>David Reyna</person>
                </persons>
                <language>en</language>
                <description>Hands-On Setup</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/TTWVXV/resources/_e66q2sc.pptx">Hands-on class setup (PowerPoint)</attachment>
                
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/TTWVXV/resources/_6K27PLq.pdf">Hands-on class setup (PDF)</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/TTWVXV/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/TTWVXV/feedback/</feedback_url>
            </event>
            <event guid='bf9790db-6853-5737-8a3d-57b1dc634b6f' id='83389' code='GXDTRX'>
                <room>Whinlatter</room>
                <title>BBSC - bitbake-setup clang Livecoding</title>
                <subtitle></subtitle>
                <type>Lightning Talk</type>
                <date>2025-12-02T12:25:00+00:00</date>
                <start>12:25</start>
                <duration>00:30</duration>
                <abstract>Two high-impact new arrivals in bitbake and openembedded-core are bitbake-setup and support for the clang toolchain. Lets give them a spin.</abstract>
                <slug>yocto-project-summit-2025-12-83389-bbsc-bitbake-setup-clang-livecoding</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='84763'>Josef Holzmayr</person>
                </persons>
                <language>en</language>
                <description>Livecoding as you know it. An idea to show, a rough concept how it&apos;s supposed to work, and then finding the problems live.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/GXDTRX/resources/_XUDmbJL.pdf">Slides, but not really.</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/GXDTRX/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/GXDTRX/feedback/</feedback_url>
            </event>
            <event guid='6f8fb739-7c18-58a4-b93b-4f4b84477ddb' id='83292' code='V9YJMW'>
                <room>Whinlatter</room>
                <title>DevTool Hands-on Class</title>
                <subtitle></subtitle>
                <type>Hands-on class</type>
                <date>2025-12-02T12:55:00+00:00</date>
                <start>12:55</start>
                <duration>01:30</duration>
                <abstract>Hands-on class that demonstrates the features of devtool.</abstract>
                <slug>yocto-project-summit-2025-12-83292-devtool-hands-on-class</slug>
                <track>Hands on Lab</track>
                
                <persons>
                    <person id='84681'>Michael Opdenacker, Root Commit</person>
                </persons>
                <language>en</language>
                <description>devtool is a powerful set of features that can greatly enhance package development with the Yocto Project. Be prepared to be impressed and wish you had known this tool earlier!

This class will teach users about the features available with this tool. It will then guide the users through the process of importing new packages, generating and editing recipes, testing them on a target system and also how to create new patches for existing recipes.

Last but not least, this class will be run using the latest Yocto release, Whinlatter.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links>
                    <link href="https://rootcommit.com/pub/conferences/2025/yps/devtool-hands-on/devtool-hands-on.pdf">Slides</link>
                </links>
                <attachments></attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/V9YJMW/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/V9YJMW/feedback/</feedback_url>
            </event>
            <event guid='1802e50d-85f1-5a08-932a-c48945ba83f4' id='83381' code='PV3SLG'>
                <room>Whinlatter</room>
                <title>Yocto and Bitbake Tooling</title>
                <subtitle></subtitle>
                <type>Hands-on class</type>
                <date>2025-12-02T14:40:00+00:00</date>
                <start>14:40</start>
                <duration>01:30</duration>
                <abstract>Many tools and scripts are made available to developers after sourcing the build environment. These tools can automate many everyday Yocto tasks and greatly improve the Yocto experience.

This talk will briefly demonstrate how to automate common Yocto workflows for managing projects, managing dependency relationships, patching source code, etc. using tools such as bitbake, bitbake-\*, oe-\*, etc.</abstract>
                <slug>yocto-project-summit-2025-12-83381-yocto-and-bitbake-tooling</slug>
                <track>Hands on Lab</track>
                
                <persons>
                    <person id='84760'>Anakin Childerhose</person>
                </persons>
                <language>en</language>
                <description>Many of the basic everyday Yocto tasks can be tedious. That is why the many amazing developers contributing to the Yocto project have created tools that come with Yocto to automate such tedious tasks.

Often beginners can end up wasting time on small issues for simple changes for example:

    Creating a recipe but the recipe is not detected.
    Creating a bbappend that fails to append.
    Creating a layer but the layer configuration is not correctly defined.
    Setting a variable but it does not take affect.

Often there are manual approaches to tasks such as creating layer and recipes by hand which can lead to such issues as above. The standard Yocto tooling can automate manual tasks that can be error prone for beginners thus avoiding such errors.

This talk will briefly cover the following Yocto and Bitbake tools:

- bitbake-layers
- bitbake-getvar
- bitbake
- recipetool
- runqemu
- oe-depends-dot
- oe-pkgdata-util
- oe-run-native
- buildhistory-collect-srcrevs

To fullfill tasks such as:
- creating a Yocto project from scratch
- creating layers
- adding third party layers
- validating layer and recipe definitions
- determining inter-layer, inter-recipe, inter-task dependencies
- creating reproducible builds
- inspecting build environments
- patching recipe source code
- debugging the kernel
- emulating the kernel
- inspecting packages
- running native tooling without installing locally
- version locking all floating SRCREVs</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/PV3SLG/resources/_gz959EH.pdf">Slides</attachment>
                
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/PV3SLG/resources/_xLdnIw9.pptx">Slides with Toaster</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/PV3SLG/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/PV3SLG/feedback/</feedback_url>
            </event>
            
        </room>
        
    </day>
    <day index='2' date='2025-12-03' start='2025-12-03T04:00:00+00:00' end='2025-12-04T03:59:00+00:00'>
        <room name='Walnascar' guid='31b28763-db1f-5ff1-bfd6-105c4cef6562'>
            <event guid='748e750f-fe69-5ea5-96bd-3dbf41ebefb0' id='83621' code='SWNBQS'>
                <room>Walnascar</room>
                <title>Welcome - Day 2</title>
                <subtitle></subtitle>
                <type>Lightning Talk</type>
                <date>2025-12-03T12:00:00+00:00</date>
                <start>12:00</start>
                <duration>00:15</duration>
                <abstract>Welcome - Day 2</abstract>
                <slug>yocto-project-summit-2025-12-83621-welcome-day-2</slug>
                <track>All Attendees</track>
                
                <persons>
                    
                </persons>
                <language>en</language>
                <description>Welcome - Day 2</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/SWNBQS/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/SWNBQS/feedback/</feedback_url>
            </event>
            <event guid='a2c5c9ec-5d40-5f93-8129-3ff00f31515a' id='83097' code='9PBHQP'>
                <room>Walnascar</room>
                <title>Improving CVE Triage for the Linux Kernel</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-03T12:15:00+00:00</date>
                <start>12:15</start>
                <duration>00:30</duration>
                <abstract>Since the Linux kernel became a CVE Numbering Authority (CNA), the number of associated CVEs has increased. Security teams must address these CVEs to meet regulatory and customer requirements, increasing their workload unless automation is implemented. In this talk, we analyze the status of CVEs for each LTS kernel branch. Then, we demonstrate how leveraging CVE kernel metadata and recent SPDX generation enhancements within oe-core can reduce CVE false positives by 70% and provide detailed responses for all kernel-related CVEs. This process uses output from vex or the cve-check bbclass as input. Additionally, it enables more detailed per-binary information about the source code used to compile any package built with The Yocto Project.</abstract>
                <slug>yocto-project-summit-2025-12-83097-improving-cve-triage-for-the-linux-kernel</slug>
                <track>Intermediate Track / Presentation</track>
                <logo>/media/yocto-project-summit-2025-12/submissions/9PBHQP/kernel_e2fMSgt.webp</logo>
                <persons>
                    <person id='84485'>Daniel Turull</person>
                </persons>
                <language>en</language>
                <description>Since the Linux kernel became a CVE Numbering Authority (CNA), the number of associated CVEs has increased. Security teams must address these CVEs to meet regulatory and customer requirements, increasing their workload unless automation is implemented. In this talk, we analyze the status of CVEs for each LTS kernel branch. Then, we demonstrate how leveraging CVE kernel metadata and recent SPDX generation enhancements within oe-core can reduce CVE false positives by 70% and provide detailed responses for all kernel-related CVEs. This process uses output from vex or the cve-check bbclass as input. Additionally, it enables more detailed per-binary information about the source code used to compile any package built with The Yocto Project.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/9PBHQP/resources/_k7aTuh9.pdf">Slides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/9PBHQP/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/9PBHQP/feedback/</feedback_url>
            </event>
            <event guid='6946d96c-103c-5cea-aab4-1d2d0ec215da' id='83403' code='BUH9GG'>
                <room>Walnascar</room>
                <title>Configuration Fragments &amp; bitbake-setup</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-03T12:50:00+00:00</date>
                <start>12:50</start>
                <duration>00:30</duration>
                <abstract>Two major features have been added to Yocto Project in 2025: Configuration Fragments and the `bitbake-setup` command.

Configuration Fragments were introduced in Yocto Project 5.2 &quot;Walnascar&quot;, allowing configuration changes to be organised into separate files which can easily be enabled or disabled via the `OE_FRAGMENTS` variable.

The `bitbake-setup` command will be introduced in Yocto Project 5.3 &quot;Whinlatter&quot;, automating the initial setup of a build environment. This command will fetch required layers and enable configuration fragments based on user input. It makes use of a new `conf/toolcfg.conf` file to avoid clashing with any changes you wish to make in `conf/local.conf`.

After the introduction of `bitbake-setup`, the combined `poky` git repository is being retired - if you have been using this you will need to switch over to `bitbake-setup` or clone `bitbake` and `openembedded-core` directly.</abstract>
                <slug>yocto-project-summit-2025-12-83403-configuration-fragments-bitbake-setup</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='86899'>Yoann Congal</person>
                </persons>
                <language>en</language>
                <description>This talk will introduce the new features described above and show how they can be used. It will also show how you can write your own Configuration Fragments and `bitbake-setup` configuration files, as well as where to place them in a layer. It will discuss the migration paths from the combined `poky` git repository or from other layer setup tools. The talk will finish with some ideas of how we can continue to improve these tools.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/BUH9GG/resources/_VrjgRf9.pdf">Slides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/BUH9GG/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/BUH9GG/feedback/</feedback_url>
            </event>
            <event guid='6d7054c5-c9e9-55b3-b2df-02b761766358' id='83175' code='EUWBYR'>
                <room>Walnascar</room>
                <title>Writing a Distro for No-one (or Anyone)</title>
                <subtitle></subtitle>
                <type>Lightning Talk</type>
                <date>2025-12-03T13:25:00+00:00</date>
                <start>13:25</start>
                <duration>00:15</duration>
                <abstract>In Yocto-based projects, the distribution is commonly a means to an end - sandwiched between the BSP and business logic, it often simply &quot;exists&quot;. But what if the distro itself is the focus of the project, designed to be generic and reusable across multiple devices, products, or even organizations? This lightning talk explores the motivations, challenges, and strategies behind writing a targetless, general-purpose Yocto distribution.</abstract>
                <slug>yocto-project-summit-2025-12-83175-writing-a-distro-for-no-one-or-anyone</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='84579'>Esa J&#228;&#228;skel&#228;</person>
                </persons>
                <language>en</language>
                <description>This quick presentation talks about the considerations of building a Yocto distribution without a specific target in mind. We&apos;ll discuss when a generic distro makes sense, how to plan for the unknown, and some best practices for architecture, kernel, userspace, and documentation. Topics include:

- Why and when to write a general-purpose distro, and the distro&apos;s role in embedded Linux projects.
- Choosing hardware targets before users or use cases are defined.
- Optimizing the distro for flexibility and reuse in Yocto projects.
- The Linux kernel&apos;s role in a generic distro.
- Creating references and documentation.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/EUWBYR/resources/_4tghxJQ.pdf">Presentation slides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/EUWBYR/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/EUWBYR/feedback/</feedback_url>
            </event>
            <event guid='2c481979-5d0d-5995-b254-8fb4557d6b85' id='83296' code='ACAQGV'>
                <room>Walnascar</room>
                <title>cve-check: which way forward?</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-03T14:00:00+00:00</date>
                <start>14:00</start>
                <duration>00:30</duration>
                <abstract>The cve-check class allows to find out which packages in your Yocto Project build have unfixed vulnerabilities. In the recent months, Marta and the team has worked on a replacement called currently yocto-vex-check. In this talk she will share experiences from this experiment and explore how the Yocto Project could address the problem in the years ahead, taking into account the new legal requirements (CRA-Cyber Resilience Act) and the ongoing issues with the CVE program.</abstract>
                <slug>yocto-project-summit-2025-12-83296-cve-check-which-way-forward</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='84687'>Marta RYBCZYNSKA, Ygreky</person>
                </persons>
                <language>en</language>
                <description>Outline:
- CVE/NVD and the state of the landscape
- What is cve-check? What worked? What didn&apos;t work?
- yocto-vex-check? What worked? What didn&apos;t work?
- Options going forward</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/ACAQGV/resources/_GosCf2v.pdf">Slides - cve-check: which way forward</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/ACAQGV/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/ACAQGV/feedback/</feedback_url>
            </event>
            <event guid='b27cf525-13f7-5e82-ba3c-8388f815a626' id='83194' code='RZGDFW'>
                <room>Walnascar</room>
                <title>Enabling UEFI Secure Boot on x86</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-03T14:35:00+00:00</date>
                <start>14:35</start>
                <duration>00:30</duration>
                <abstract>Previous presentations at the Yocto Summit on Secure Boot have primarily focused on what Secure Boot is. This presentation instead walks a developer through the step-by-step process to generate a Poky (walnascar) build that supports Secure Boot.</abstract>
                <slug>yocto-project-summit-2025-12-83194-enabling-uefi-secure-boot-on-x86</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='84595'>Gregory Meiste</person>
                </persons>
                <language>en</language>
                <description>After briefly introducing Secure Boot and meta-secure-core, dive into project creation. I will create a genericx86-64 build and demo how to provision the keys and secure boot on hardware. Then I will create an intel-corei7-64 build (using meta-intel) showing changes required to use that machine. After demoing booting intel-corei7-64, I&#8217;ll show how to generate your own keys instead of using the sample keys provided. Lastly, I&#8217;ll walk through how to change the Grub password from the default.

Trademarks displayed in this presentation are the property of their respective owners. No claim of ownership is intended, and all recognized trademarks, logos, and service marks belong to the companies or individuals to whom they are registered.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/RZGDFW/resources/_jdnj7CL.pdf">Presentation Slides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/RZGDFW/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/RZGDFW/feedback/</feedback_url>
            </event>
            <event guid='6878987d-a565-5679-af63-b97bb142d43b' id='81946' code='XSM7NL'>
                <room>Walnascar</room>
                <title>Feedback on dm-verity integration under secure boot with Yocto</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-03T15:10:00+00:00</date>
                <start>15:10</start>
                <duration>00:30</duration>
                <abstract>This session presents feedback from deploying dm-verity in a Secure Boot-enabled embedded Linux system built with The Yocto Project. We will outline the integration process, system-level constraints, and runtime implications for secure deployments.</abstract>
                <slug>yocto-project-summit-2025-12-81946-feedback-on-dm-verity-integration-under-secure-boot-with-yocto</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='83432'>Pierre Gal</person>
                </persons>
                <language>en</language>
                <description>This talk provides a detailed walkthrough of the real-world integration of dm-verity in a Yocto-based Linux distribution to ensure data integrity across multiple system partitions.
We will cover the configuration of dm-verity within the Yocto build system, its interaction with Secure Boot across various hardware platforms, and the implications for system updates.
The session will also address performance overhead, update workflows for read-only root filesystems, and common failure modes encountered during boot authentication. Debugging techniques and mitigation strategies will be discussed to equip attendees with the technical knowledge required to successfully integrate dm-verity into their own secure embedded platforms.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/XSM7NL/resources/_wPlvMiV.pdf">Presentation slides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/XSM7NL/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/XSM7NL/feedback/</feedback_url>
            </event>
            <event guid='75807d98-7d54-5955-a7c5-91e5d5a87590' id='83328' code='AMBENP'>
                <room>Walnascar</room>
                <title>Implementing Secure Boot on ARM Platforms with Yocto: A Case Study on NXP i.MX</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-03T15:50:00+00:00</date>
                <start>15:50</start>
                <duration>00:30</duration>
                <abstract>This talk explores how to establish a complete secure boot chain on ARM-based embedded platforms using Yocto, combining SoC-level security mechanisms with Linux-level integrity protection. Through the example of NXP&#8217;s `i.MX` family, we&#8217;ll show how to leverage features such as HABv4, ARM TrustZone, and OP-TEE to create a verified, encrypted, and trusted execution environment from the first instruction to the root filesystem.</abstract>
                <slug>yocto-project-summit-2025-12-83328-implementing-secure-boot-on-arm-platforms-with-yocto-a-case-study-on-nxp-i-mx</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='84704'>Mathieu Dupr&#233;</person>
                </persons>
                <language>en</language>
                <description>Not all ARM devices include UEFI or a TPM, yet embedded systems still need strong guarantees of authenticity and integrity. This session explains how to build a secure and trusted boot chain on ARM platforms directly using SoC-provided mechanisms.

Focusing on the NXP `i.MX` SoC family, we&#8217;ll walk through:

* Using the High Assurance Boot (`HABv4`) to sign and verify U-Boot and kernel images
* Fusing keys inside the SoC&#8217;s OTP memory
* Extending trust to userspace through `dm-verity` and `dm-crypt`, even without a TPM
* Leveraging ARM TrustZone and OP-TEE for trusted key management and runtime validation

This talk echoes the [YPS 2024.12 session &#8220;Secure Boot All the Way to Userspace&#8221; by Mikko Rapeli](https://www.youtube.com/watch?v=mNC5suIlWAQ), bringing similar principles to embedded hardware where UEFI is unavailable. Attendees will learn practical Yocto integration patterns and reproducible workflows to implement secure boot and trusted execution on ARM-based devices, ready for deployment in production environments.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/AMBENP/resources/_4KkCxYe.pdf">Slides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/AMBENP/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/AMBENP/feedback/</feedback_url>
            </event>
            <event guid='c1c21710-dbf8-5cc6-a440-6b294e8b227b' id='83172' code='9JWKV7'>
                <room>Walnascar</room>
                <title>VulnScout + Yocto: Evolving Vulnerability and Compliance Management</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-03T16:25:00+00:00</date>
                <start>16:25</start>
                <duration>00:30</duration>
                <abstract>VulnScout is an open-source vulnerability assessment tool that analyzes SBOMs and aggregates results from sources such as CVE, OSV, and Yocto cve-check output. To make it directly usable within the Yocto ecosystem, we developed meta-vulnscout, a layer adding build tasks for automated and web analysis, similar in spirit to Toaster. 

This talk will show how VulnScout helps improving the security envelope of Yocto-based systems and present our roadmap for tighter integration with Yocto workflows, including continuous monitoring, CI gating based on severity filters, and structured reporting. Attendees will learn how to run it today and what is coming next.</abstract>
                <slug>yocto-project-summit-2025-12-83172-vulnscout-yocto-evolving-vulnerability-and-compliance-management</slug>
                <track>Intermediate Track / Presentation</track>
                <logo>/media/yocto-project-summit-2025-12/submissions/9JWKV7/vulnsc_RlpGvxy.webp</logo>
                <persons>
                    <person id='84568'>J&#233;r&#244;me Oufella</person><person id='84612'>Valentin Boudevin</person>
                </persons>
                <language>en</language>
                <description>The evolution of regulatory frameworks such as the EU Cyber Resilience Act require continuous vulnerability monitoring and assessment of the software supply chain. While Yocto already ensures reproducibility and transparency, maintaining visibility into vulnerabilities across hundreds of software packages remains a challenge.

VulnScout addresses this need by analyzing SBOMs (SPDX, CycloneDX, and others) and correlating components with several vulnerability data sources, including NVD, OSV, and Yocto&#8217;s native cve-check output. It can operate in interactive mode, through a web interface for efficient review and assessment, or in non-interactive mode for CI pipelines, filters, and automate the production of reports.

The accompanying meta-vulnscout layer integrates these capabilities into Yocto builds, providing tasks to:

- Generate and collect SBOMs for images or other artifacts
- Run vulnerability scans as part of BitBake builds
- Merge cve-check results with external feeds
- Optionally fail builds or generate structured reports based on severity thresholds

This session will demonstrate current features and discuss upcoming developments, including better Yocto Project integration, vulnerability assessment, and continuous monitoring. Attendees will gain a clear view of how VulnScout and meta-vulnscout can help secure Yocto-based products and how the community can collaborate on their evolution.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/9JWKV7/resources/_uTXsryR.pdf">Slides of presentation</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/9JWKV7/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/9JWKV7/feedback/</feedback_url>
            </event>
            <event guid='348e3118-dcce-5c22-a307-32ee1b206dfa' id='83349' code='C933T3'>
                <room>Walnascar</room>
                <title>Hardening Your Container Supply Chain with Yocto&#8209;Built Base Images</title>
                <subtitle></subtitle>
                <type>Lightning Talk</type>
                <date>2025-12-03T17:00:00+00:00</date>
                <start>17:00</start>
                <duration>00:15</duration>
                <abstract>Software&#8209;supply&#8209;chain attacks increasingly exploit the dependency graphs hidden inside container base images. General&#8209;purpose binary distributions can drag in hundreds of packages, making it difficult to generate accurate SBOMs and keep up with CVE patching. In this session you will learn how to use the Yocto Project to build lean, auditable container base images and matching package repositories that can serve as drop&#8209;in replacements inside existing Docker or Podman build pipelines.</abstract>
                <slug>yocto-project-summit-2025-12-83349-hardening-your-container-supply-chain-with-yocto-built-base-images</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='84728'>Anders Heimer</person>
                </persons>
                <language>en</language>
                <description>We will replace an Alpine base image in a micro&#8209;service with an OCI&#8209;compliant image generated by Yocto. Along the way you will learn that we can:

- compile every dependency from source under fully reproducible builds;
- strip unused libraries, toolchains and the package manager to shrink the attack surface;
- automatically generate file level SPDX SBOMs;
-feed vulnerability scanners with deterministic package metadata.

A comparison quantifies the impact on image size, package count, and open&#8209;CVE exposure.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/C933T3/resources/_TiyJAcv.pdf">Hardening Your Container Supply Chain with Yocto&#8209;Built Base Images</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/C933T3/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/C933T3/feedback/</feedback_url>
            </event>
            <event guid='9dd8a027-2537-5c8b-a489-5c1df492f26c' id='82997' code='RDTCUR'>
                <room>Walnascar</room>
                <title>From CVEs to Compliance: Strengthening Security for EU RED GEC-1 with Yocto</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-03T17:20:00+00:00</date>
                <start>17:20</start>
                <duration>00:30</duration>
                <abstract>Meeting EU RED GEC-1 compliance requires a stronger focus on identifying and addressing vulnerabilities in embedded Linux systems. This talk shares lessons learned from building a practical CVE monitoring and remediation workflow using Yocto&#8217;s cve-check and related tooling.</abstract>
                <slug>yocto-project-summit-2025-12-82997-from-cves-to-compliance-strengthening-security-for-eu-red-gec-1-with-yocto</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='84394'>Colin Pinnell McAllister</person>
                </persons>
                <language>en</language>
                <description>As regulatory frameworks like EU RED introduce stricter cybersecurity requirements, maintaining visibility into vulnerabilities has become critical for embedded Linux developers. This talk walks through the process of improving a security posture to meet GEC-1 compliance goals using the Yocto Project&#8217;s cve-check tool and related workflows.

Topics include:
* How to use and extend cve-check for ongoing vulnerability tracking
* Challenges of applying security updates in long-lived products
* Strategies for prioritizing fixes and handling false positives
* Lessons learned integrating compliance requirements into a Yocto-based workflow
* The role of meta-lts-collab in supporting long-term maintenance

While specific implementation details will remain high-level, the goal is to share actionable insights for teams working toward stronger security and compliance practices with Yocto.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/RDTCUR/resources/_GIfrXZd.pdf">Slides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/RDTCUR/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/RDTCUR/feedback/</feedback_url>
            </event>
            <event guid='e9592d06-3d5e-5000-838c-9ec2d7a4a89e' id='83624' code='MG8H8V'>
                <room>Walnascar</room>
                <title>Social hangout - Day 2</title>
                <subtitle></subtitle>
                <type>After hours social</type>
                <date>2025-12-03T18:00:00+00:00</date>
                <start>18:00</start>
                <duration>02:00</duration>
                <abstract>Social hangout - Day 2</abstract>
                <slug>yocto-project-summit-2025-12-83624-social-hangout-day-2</slug>
                <track>After Hours Hangout</track>
                
                <persons>
                    
                </persons>
                <language>en</language>
                <description>Social hangout - Day 2</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/MG8H8V/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/MG8H8V/feedback/</feedback_url>
            </event>
            
        </room>
        <room name='Whinlatter' guid='fc193027-308b-50d6-9902-13f1c1f3a0d3'>
            <event guid='aeb8d2d5-d099-5f3b-8814-b1b8e2d719ac' id='83931' code='UGBFS3'>
                <room>Whinlatter</room>
                <title>Self-paced hands-on YP Tools class</title>
                <subtitle></subtitle>
                <type>Hands-on class</type>
                <date>2025-12-03T14:35:00+00:00</date>
                <start>14:35</start>
                <duration>01:30</duration>
                <abstract>Self-paced version of the Tools hands-on class for all.</abstract>
                <slug>yocto-project-summit-2025-12-83931-self-paced-hands-on-yp-tools-class</slug>
                <track>Hands on Lab</track>
                
                <persons>
                    <person id='84946'>David Reyna</person><person id='84760'>Anakin Childerhose</person>
                </persons>
                <language>en</language>
                <description>This is a self-paced version of the Tools hands-on class, with guidance from the experts. This is also a special invitation for the Beginner&apos;s Class students to try out the tools direct, since the official class was at the same time as the Beginning Classes.

Instructions are provided on how to set up the classes on your own host. Please open the class slides and set up your host the day before, since the initial build will take many hours.

A limited number of pre-configured VM hosts will also be available.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/UGBFS3/resources/_CA9bwTF.sh">Class at home setup script (&quot;summit_dec_2025_setup.sh&quot;)</attachment>
                
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/UGBFS3/resources/_s8hFYvK.pptx">Self-paced class slides (PowerPoint)</attachment>
                
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/UGBFS3/resources/_BqLnB4W.pdf">Self-paced class slides (PDF)</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/UGBFS3/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/UGBFS3/feedback/</feedback_url>
            </event>
            
        </room>
        
    </day>
    <day index='3' date='2025-12-04' start='2025-12-04T04:00:00+00:00' end='2025-12-05T03:59:00+00:00'>
        <room name='Walnascar' guid='31b28763-db1f-5ff1-bfd6-105c4cef6562'>
            <event guid='260800b8-3263-5561-a208-c57e677f1721' id='83622' code='EEVRRL'>
                <room>Walnascar</room>
                <title>Welcome - Day 3</title>
                <subtitle></subtitle>
                <type>Lightning Talk</type>
                <date>2025-12-04T12:00:00+00:00</date>
                <start>12:00</start>
                <duration>00:15</duration>
                <abstract>Welcome - Day 3</abstract>
                <slug>yocto-project-summit-2025-12-83622-welcome-day-3</slug>
                <track>All Attendees</track>
                
                <persons>
                    
                </persons>
                <language>en</language>
                <description>Welcome - Day 3</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/EEVRRL/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/EEVRRL/feedback/</feedback_url>
            </event>
            <event guid='ef588e87-7179-5bc1-8787-c833bd733673' id='82244' code='CLTKKY'>
                <room>Walnascar</room>
                <title>Yocto in the Real World &#8211; Philips Case Study</title>
                <subtitle></subtitle>
                <type>Product Showcase</type>
                <date>2025-12-04T12:15:00+00:00</date>
                <start>12:15</start>
                <duration>00:30</duration>
                <abstract>Philips needed advanced UI development and connectivity for a new range of Saeco connected coffee machines. The Xelsis models had to go to market in under two years, work seamlessly as a luxury home appliance should, and offer a next-generation experience for users. Of course it was based on Yocto :)</abstract>
                <slug>yocto-project-summit-2025-12-82244-yocto-in-the-real-world-philips-case-study</slug>
                <track>Product Showcase</track>
                <logo>/media/yocto-project-summit-2025-12/submissions/CLTKKY/Philli_eS2WTVi.webp</logo>
                <persons>
                    <person id='85812'>Ed Langley</person>
                </persons>
                <language>en</language>
                <description>Setting the Stage: Embedded Software Development (5 minutes)
Challenges of embedded system development in modern industries
The growing need for custom, maintainable, and optimized software stacks
Why Yocto is a popular choice in this context
Philips Case Study Overview
The Role of Yocto in the Philips Project
How Yocto was chosen as the solution
Benefits of Yocto: Customization, scalability, long-term maintenance
How Yocto addressed Philips&#8217; specific needs:
Custom Linux Distribution for Philips embedded devices
Real-time requirements, security features, and ease of integration
Key technical features of Yocto used:
Layered architecture
Recipe management for build automation
SDK generation for development consistency
Cross-compilation for ARM-based processors
Key Challenges &amp; Solutions
Challenge 1: Customization and Integration
Challenge 2: Security
Challenge 3: Long-Term Support and Maintenance
Yocto&#8217;s Real-World Benefits for Philips
Time-to-market reduction through automated builds
Tailored, lightweight OS for embedded systems with optimized performance
Ease of scaling the system across different device families and models
Maintaining a single build environment for multiple product lines
Conclusion and Q&amp;A</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/CLTKKY/resources/_1XFkdUb.pdf">Slides for the talk updated</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/CLTKKY/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/CLTKKY/feedback/</feedback_url>
            </event>
            <event guid='4fb3ed50-5fdc-5259-85ed-8c9732389091' id='81938' code='RT8L3Y'>
                <room>Walnascar</room>
                <title>Yocto Linux in Mission Critical Energy Systems &#8211; A Hitachi Energy Journey</title>
                <subtitle></subtitle>
                <type>Product Showcase</type>
                <date>2025-12-04T12:50:00+00:00</date>
                <start>12:50</start>
                <duration>00:30</duration>
                <abstract>Hitachi Energy is in the middle of an exciting rollout of Linux-based energy grid automation and protection products. This talk walks through the story of the switch to embedded Linux using Yocto, challenging industry protocol support, EU CRA impact, OSS license obligation challenges, and all in a very long-lived and slowly evolving industry.</abstract>
                <slug>yocto-project-summit-2025-12-81938-yocto-linux-in-mission-critical-energy-systems-a-hitachi-energy-journey</slug>
                <track>Product Showcase</track>
                <logo>/media/yocto-project-summit-2025-12/submissions/RT8L3Y/key-im_tI6wc87.webp</logo>
                <persons>
                    <person id='83426'>Benjamin Weber</person>
                </persons>
                <language>en</language>
                <description>Hitachi Energy has a rich history dating back to the 19th century, marked by technological innovation and strategic mergers that have shaped its evolution into a global force in electrification and power grids. Driven by a commit-ment to sustainability, security, resilience, and affordability, Hitachi Energy actively contributes to the moderniza-tion of energy systems, making electricity more accessible worldwide.

In product development, adopting Embedded Linux and Yocto enhances flexibility and maintainability, with strong legal compliance, license management, and open-source collaboration. Hitachi Energy is rolling out Linux-based energy grid automation products and this talk covers their transition to embedded Linux via Yocto, addressing industry protocol support, impacts of the EU Cyber Resilience Act, OSS license challenges, and navigating these within a slow-evolving sector.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/RT8L3Y/resources/_o3xA5AX.pdf">Yocto Linux in Mission Critical Energy Systems &#8211; A Hitachi Energy Journey</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/RT8L3Y/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/RT8L3Y/feedback/</feedback_url>
            </event>
            <event guid='4d5e77ac-b03f-5de5-b484-e3a532352669' id='83320' code='7ZEQ3P'>
                <room>Walnascar</room>
                <title>Designing for Longevity: Embedded Software as a Determinant of Electronic Component Lifetime</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-04T13:25:00+00:00</date>
                <start>13:25</start>
                <duration>00:30</duration>
                <abstract>The lifetime of electronic products is not defined solely by hardware; software design has become a decisive factor. Design choices in embedded software, such as build reproducibility, dependency management, update strategy, and security configuration, have a direct impact on product reliability and long-term usability. This talk explores how robust and sustainable software practices can extend component lifetimes and reduce maintenance demands. Using the Yocto Project as a demonstration platform, it presents practical examples of reproducible builds, modular layer structures, and CI/CD integration that support system stability and maintainability. Attendees will gain insights into best practices for long-lived embedded products, including maintainable BSP creation and secure update management, emphasizing that designing for longevity is a shared responsibility between hardware and software engineering.</abstract>
                <slug>yocto-project-summit-2025-12-83320-designing-for-longevity-embedded-software-as-a-determinant-of-electronic-component-lifetime</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='84698'>Lenka Koskov&#225; T&#345;&#237;skov&#225;</person>
                </persons>
                <language>en</language>
                <description>Designing for longevity means shifting focus from short-term delivery to long-term maintainability. Embedded software, if engineered with reproducibility, modularity, and security in mind, becomes the determining factor in extending the life of electronic components.

The Yocto Project provides both the tools and the structure to implement these practices effectively. Through disciplined layer management, automated validation, and secure update infrastructures, developers can create products that remain functional, maintainable, and secure over many years.

By treating software as a lifecycle driver rather than a disposable component, we contribute not only to technical excellence but also to environmental sustainability and the principles of green electronics.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/7ZEQ3P/resources/_fTdgW8A.pdf">Slides - PDF</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/7ZEQ3P/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/7ZEQ3P/feedback/</feedback_url>
            </event>
            <event guid='06af5eec-b019-5f7d-9332-d9362d99b2f2' id='81841' code='ENVHQJ'>
                <room>Walnascar</room>
                <title>Multiverse of Maintenance: Where ROS meets Yocto, and every combination is a new reality.</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-04T14:05:00+00:00</date>
                <start>14:05</start>
                <duration>00:30</duration>
                <abstract>Maintaining a complex Yocto layer like meta-ros is more than just writing BitBake recipes&#8212;it&apos;s a balancing act across automation, cloud infrastructure, developer experience, and community collaboration. This talk explores how cross-domain skills&#8212;from Python scripting to cloud-native CI, and from configuration tooling to open source community engagement&#8212;can transform the sustainability and usability of embedded software layers.

Through real-world examples, Rob Woolley shares how embracing automation, reproducibility, and scalable testing has helped streamline maintenance and improve accessibility for developers. The session will also highlight the importance of fostering a vibrant community around open source projects, and how thoughtful tooling and infrastructure choices can empower contributors and users alike.

Whether you&apos;re a Yocto veteran or just getting started, this talk offers insights into how diverse technical skills and a collaborative mindset can make embedded development more approachable, efficient, and fun.</abstract>
                <slug>yocto-project-summit-2025-12-81841-multiverse-of-maintenance-where-ros-meets-yocto-and-every-combination-is-a-new-reality</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='83324'>Rob Woolley</person>
                </persons>
                <language>en</language>
                <description>Maintaining the meta-ros layer for the Yocto Project is more than just embedded systems work&#8212;it&apos;s a multidisciplinary effort that spans Python automation, cloud-native CI/CD, developer experience, and open source community building. In this talk, Rob Woolley shares lessons learned from maintaining meta-ros, including the use of the superflore Python tool to auto-generate BitBake recipes from upstream ROS metadata, and how GitHub Actions streamline monthly syncs with rosdistro.

Rob will also explore how integrating the kas configuration tool has simplified onboarding and reproducibility, despite the complexity of supporting 20+ Yocto/ROS distribution combinations. He&#8217;ll walk through the use of advanced Git techniques to manage this matrix, and how a Terraform-powered GitLab CI farm on AWS spot instances enables scalable, cost-effective testing&#8212;coordinated via GitLab SaaS.

The session will highlight how SDK generation, pre-built images, and native build environments improve developer workflows, and how community engagement through GitHub, Discord, Discourse, and biweekly working group meetings fosters collaboration and innovation. Whether you&apos;re an embedded developer, DevOps engineer, or open source contributor, this talk will show how cross-domain skills can elevate the sustainability and impact of a complex Yocto layer.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/ENVHQJ/resources/_wqY9oPf.pdf">Presentation slides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/ENVHQJ/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/ENVHQJ/feedback/</feedback_url>
            </event>
            <event guid='88a9554e-3bb6-5518-8e07-9df10429e130' id='82666' code='B7EK7K'>
                <room>Walnascar</room>
                <title>genericarm64:what is it and how can it help you?</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-04T14:40:00+00:00</date>
                <start>14:40</start>
                <duration>00:30</duration>
                <abstract>Yocto Project has a few years ago introduced the genericarm64 machine configuration. This talk explains what genericarm64 is, how it has been configured and how it can help developers to start with Yocto on arm64 based SoCs and to support multiple HW variants.</abstract>
                <slug>yocto-project-summit-2025-12-82666-genericarm64-what-is-it-and-how-can-it-help-you</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='84094'>Mikko Rapeli</person>
                </persons>
                <language>en</language>
                <description>A lot of development has been done to make 64bit Arm architectures work well with GNU/Linux SW stack. Low level bootloader (u-boot etc) and Linux kernel support has been upstreamed and many boards and devices from multiple vendors will work out-of-the-box at least for basic functionality like memory, CPU, highspeed buses like PCIe, serial consoles and ethernet. Since support for these devices exists in upstream kernel, it just needs to be enabled in downstream Linux distributions, which is what Yocto machine configuration genericarm64 does. The SoCs and boards working with genericarm64 need an Arm System Ready compatible firmware, with UEFI support. Either vendor or u-boot or edk2 open source SW can be used to provide this firmware, with or without extra security components from the Trusted Firmware umbrella https://www.trustedfirmware.org/. With the device and board and firmware and necessary kernel support enabled, genericarm64 can boot a number boards from a number of vendors. The default core-image-sato images can be used to test boards from multiple vendors and can be used as a starting point for product specific configuration and to compare HW from different vendors. The traditional SoC vendor way of providing vendor and product specific layers and build configurations makes comparing different boards and their features harder. They also tie solutions to specific supported branches, possibly only an older LTS, even when support exists in latest development branch in Yocto. It is hard to compare different product specific builds because environments are complext to setup and manage, though some HW specific usecases may not work with upstreamed SW and thus may require vendor specific firmware, SW or BSP SW support in genericarm64. The default Yocto Project builds for genericarm64 are also a bit limited on the contents of the SW stack, since in Yocto community oe-core only contains quite minimal set of SW components. Additional layers like meta-security, meta-virtualisation, meta-arm etc may need to be added in such cases. Vendors providing HW and firmware support can also use Linaro service like ONELab to test their HW and firmware versions so that they are compatible with Yocto genericarm64 and also other Linux distributions. Yocto genericarm64 also uses Linaro Lava to test different boards and firmware variants so that boot to serial console etc and execution of Yocto upstream oeqa runtime tests work.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/B7EK7K/resources/_4biy7oS.pdf">Slides v2</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/B7EK7K/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/B7EK7K/feedback/</feedback_url>
            </event>
            <event guid='bb1c49a9-d882-541e-b388-96bbb6be790f' id='81864' code='BCPNTE'>
                <room>Walnascar</room>
                <title>Your Vendor&apos;s BSP Is Probably Not Built for Product Longevity. Now What?</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-04T15:15:00+00:00</date>
                <start>15:15</start>
                <duration>00:30</duration>
                <abstract>Vendor Board Support Packages (BSPs) are the standard for bringing new silicon to market, showcasing features, and promising an &quot;easy&quot; start. However, for those of us building products with long-term lifecycles, these BSPs often fail to meet quality requirements. They can be overly intrusive and typically don&apos;t separate feature showcases from the well-maintained base needed for product development. This focus on rapid demonstration frequently results in BSPs which are difficult to maintain, lack transparency, and are built on non-LTS Yocto and kernel versions, making them unsuitable for products expected to last 5, 10, or even 20 years.</abstract>
                <slug>yocto-project-summit-2025-12-81864-your-vendor-s-bsp-is-probably-not-built-for-product-longevity-now-what</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='83352'>Anna-Lena Marx</person>
                </persons>
                <language>en</language>
                <description>This talk will take a critical look at the state of vendor BSPs from an integrator&apos;s perspective. We will explore the common pitfalls: opaque custom tooling, automatic inclusion of demo software, reliance on unmaintained kernel forks, and the widespread avoidance of Yocto LTS releases. We&apos;ll discuss the differing perspectives of vendors and product developers, examine both good and bad real-world examples, and make the case for why writing your own sleek BSP layer is an absolutely valid strategy. Writing your own board descriptions and leveraging the stability of mainline Yocto and Linux kernels is not as daunting as it seems and can be the key to building truly sustainable and maintainable products.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/BCPNTE/resources/_AxiYIjP.pdf">Slides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/BCPNTE/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/BCPNTE/feedback/</feedback_url>
            </event>
            <event guid='e94ea694-b278-514a-958c-e444aab8504b' id='82377' code='PFKZZN'>
                <room>Walnascar</room>
                <title>Why do we need Clang/LLVM</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-04T15:55:00+00:00</date>
                <start>15:55</start>
                <duration>00:30</duration>
                <abstract>Clang compiler recipes have been merged into OE-core layer with 5.3 release. Clang is used directly or indirectly in a lot of cases in Linux stack and increasingly in embedded linux systems. This talk will cover the rationale why it was promoted to OE-core. We will discuss the use cases where it is already used and how it is used.</abstract>
                <slug>yocto-project-summit-2025-12-82377-why-do-we-need-clang-llvm</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='83851'>Khem Raj</person>
                </persons>
                <language>en</language>
                <description>Clang is another C/C++ compiler in addition to GCC which is now part of OpenEmbedded Core and yocto project users will get it out of box.  This talk covers the needed know-how to use it in various capacities e.g. just for one package, system-wide builds with clang. Clang has additional tools which are good to have in the toolbox, eg. LLD is new linker implementation which is blazing fast linking large C++ programs. LibTooling based tools like clang-tidy provide needed checks close to static analyzers and it can be customized, clang-format is a lint&apos;ing tool and clang-scan provides a static analyzer, with meta-clang it can be enabled to generate HTML reports.

Having clang moved out of meta-clang, the question why we still need it, will be answered, there still are distro build policy fragments e.g. LTO, Thin-LTO to enable distro-wide settings.  Then there are recipes which need clang explicitly which have moved to different layers e.g. meta-oe but some tweaks still are needed for some cases.

LLVM is now shared across rust compiler, clang compiler and mesa and more use cases to come. 

Finally, It will tackle information on building Clang based C/C++ SDKs. There might be more use cases for GPU toolchains in future that involves clang/MLIR which can be enabled in Yocto project.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/PFKZZN/resources/_mVk6dlg.pdf">Slides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/PFKZZN/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/PFKZZN/feedback/</feedback_url>
            </event>
            <event guid='1f858bfa-92b5-5b9b-a809-d31c08a10dba' id='83319' code='X979CC'>
                <room>Walnascar</room>
                <title>Toolchain Testing Advancements: GCC, Glibc, Rust &amp; Clang/LLVM</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-04T16:30:00+00:00</date>
                <start>16:30</start>
                <duration>00:30</duration>
                <abstract>This session explores the latest developments in toolchain testing, ongoing improvements, and upcoming features with a focus on GCC, GLIBC, Binutils, Rust and Clang/LLVM within the Yocto Project. Attendees will gain insights into the status of toolchain testing and improvements.</abstract>
                <slug>yocto-project-summit-2025-12-83319-toolchain-testing-advancements-gcc-glibc-rust-clang-llvm</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='84731'>Sundeep KOKKONDA</person>
                </persons>
                <language>en</language>
                <description>This session will delve into the evolution of key development toolchains&#8212;GCC, GLIBC, Binutils, Rust and Clang/llvm &#8212;and their testing within the Yocto Project. We will discuss the latest enhancements over previous releases, provide an overview of current testing methodologies, and share upcoming improvements aimed at ensuring robust toolchain behavior. Attendees will gain a deeper understanding of the toolchain testing process, including the challenges faced and the solutions being developed to maintain cutting-edge support for multiple architectures.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/X979CC/resources/_hNMwGFE.docx">Toolchain Testing Advancements: GCC, Glibc, Rust &amp; Clang/LLVM</attachment>
                
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/X979CC/resources/_jZTmh3r.pptx">Yocto Project Summit 2025.12 - Toolchain Testing Advancements</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/X979CC/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/X979CC/feedback/</feedback_url>
            </event>
            <event guid='01750993-74bd-52a0-91dd-784131f9b5c5' id='83067' code='DWXS3N'>
                <room>Walnascar</room>
                <title>meta-st-stm32mp and Me: A Journey from Buildroot to Yocto</title>
                <subtitle></subtitle>
                <type>Talk</type>
                <date>2025-12-04T17:05:00+00:00</date>
                <start>17:05</start>
                <duration>00:30</duration>
                <abstract>This is the journey of bringing up a custom STM32MP-based board, starting with an existing Buildroot repository and evolving toward a full Yocto Project setup using ST&#8217;s meta-st-stm32mp layers. 

This will describe going from a Buildroot project to an exact replica with a Yocto Project using individual recipes and then updating it to use the meta-st-stm32mp layers.</abstract>
                <slug>yocto-project-summit-2025-12-83067-meta-st-stm32mp-and-me-a-journey-from-buildroot-to-yocto</slug>
                <track>Intermediate Track / Presentation</track>
                
                <persons>
                    <person id='84455'>Ming</person>
                </persons>
                <language>en</language>
                <description>&quot;Updates are easy&quot;, they said...

When I meet &quot;they&quot;, they owe me a drink!

To start, I will go through the process of migrating from a Buildroot project to a Yocto Project. 

Once the dust has settled on that phase of the project, I will go through the tasks involved of integrating a bespoke board into the meta-st-stm32mp layers and updating tf-a, u-boot and the Linux kernel. 

The guide is quite short and seems straightforward enough, so it should be an easy job... 

Let us find out the reality.</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments>
                    <attachment href="https://pretalx.com/media/yocto-project-summit-2025-12/submissions/DWXS3N/resources/_blVymgA.pdf">Sllides</attachment>
                </attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/DWXS3N/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/DWXS3N/feedback/</feedback_url>
            </event>
            <event guid='d58ecb27-1743-5a3e-934d-8f01f8eaa1aa' id='83625' code='MR3HJJ'>
                <room>Walnascar</room>
                <title>Social hangout - Day 3</title>
                <subtitle></subtitle>
                <type>After hours social</type>
                <date>2025-12-04T18:00:00+00:00</date>
                <start>18:00</start>
                <duration>02:00</duration>
                <abstract>Social hangout - Day 3</abstract>
                <slug>yocto-project-summit-2025-12-83625-social-hangout-day-3</slug>
                <track>After Hours Hangout</track>
                
                <persons>
                    
                </persons>
                <language>en</language>
                <description>Social hangout - Day 3</description>
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://pretalx.com/yocto-project-summit-2025-12/talk/MR3HJJ/</url>
                <feedback_url>https://pretalx.com/yocto-project-summit-2025-12/talk/MR3HJJ/feedback/</feedback_url>
            </event>
            
        </room>
        
    </day>
    
</schedule>
