Comment
The change only bumps the pinned upstream packaging tarball from 7.2-7 to 7.2-8 and updates its checksum in .SRCINFO. The source remains an HTTPS GitHub archive from the same upstream project, with no new sources, no build-script changes, and no signs of added network access, privilege escalation, or persistence mechanisms in this diff. On its face this is a routine metadata update with no security red flags in the reviewed hunk.
@@ -23,12 +23,12 @@ pkgbase = linux-lqx
options = !strip
source = https://cdn.kernel.org/pub/linux/kernel/v7.x/linux-7.2.tar.xz
source = https://cdn.kernel.org/pub/linux/kernel/v7.x/linux-7.2.tar.sign
- source = https://github.com/damentz/liquorix-package/archive/7.2-7.tar.gz
+ source = https://github.com/damentz/liquorix-package/archive/7.2-8.tar.gz
validpgpkeys = ABAF11C65A2970B130ABE3C479BE3E4300411886
validpgpkeys = 647F28654894E3BD457199BE38DBBDC86092693E
sha512sums = 47e63679363261a864d271277340a6f2d45f544e1a056be4159df081f4f6537d0efa865c4af26611ab33a3079ee65db88ec2f6bc0e5fff43e0c043cde0cd91e1
sha512sums = SKIP
- sha512sums = fe9979ed239dd8beaa8ab548536539e3ff32e84d00494fd219680bc9ade1489d5f580c1c65bfbbd85f6af5908271d4b23578ed9369ab898918999eb51002b6a5
+ sha512sums = 742ef7677a1241d6a4b69ec48b9e3429004bf7e18d943b5f4d2ae53aba13e98bea5515938a317320b1464249c420c9071ee246f8babd5894d9377e2cf4df7d5b
pkgname = linux-lqx
pkgdesc = The Linux Liquorix kernel and modules