<feed xmlns='http://www.w3.org/2005/Atom'>
<title>aports, branch 2.5-stable</title>
<subtitle>Main aports tree
</subtitle>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/'/>
<entry>
<title>main/xen: security upgrade to 4.2.5 and patches</title>
<updated>2014-10-23T09:48:32+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2014-10-23T09:28:52+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=9cba7900153b15f9070445e546fd8244cb2da8f1'/>
<id>9cba7900153b15f9070445e546fd8244cb2da8f1</id>
<content type='text'>
The 4.2.5 release fixes:
CVE-2014-2599 / XSA-89 HVMOP_set_mem_access is not preemptible
CVE-2014-3124 / XSA-92 HVMOP_set_mem_type allows invalid P2M entries to be
                       created
CVE-2014-3967,CVE-2014-3968 / XSA-96 Vulnerabilities in HVM MSI injection
CVE-2014-4021 / XSA-100 Hypervisor heap contents leaked to guests

In addition we add patches for:
CVE-2014-7154 / XSA-104 Race condition in HVMOP_track_dirty_vram
CVE-2014-7155 / XSA-105 Missing privilege level checks in x86 HLT, LGDT,
                        LIDT, and LMSW emulation
CVE-2014-7156 / XSA-106 Missing privilege level checks in x86 emulation of
                        software interrupts
CVE-2014-7188 / XSA-108 Improper MSR range used for x2APIC emulation

fixes #3412
fixes #3457
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
The 4.2.5 release fixes:
CVE-2014-2599 / XSA-89 HVMOP_set_mem_access is not preemptible
CVE-2014-3124 / XSA-92 HVMOP_set_mem_type allows invalid P2M entries to be
                       created
CVE-2014-3967,CVE-2014-3968 / XSA-96 Vulnerabilities in HVM MSI injection
CVE-2014-4021 / XSA-100 Hypervisor heap contents leaked to guests

In addition we add patches for:
CVE-2014-7154 / XSA-104 Race condition in HVMOP_track_dirty_vram
CVE-2014-7155 / XSA-105 Missing privilege level checks in x86 HLT, LGDT,
                        LIDT, and LMSW emulation
CVE-2014-7156 / XSA-106 Missing privilege level checks in x86 emulation of
                        software interrupts
CVE-2014-7188 / XSA-108 Improper MSR range used for x2APIC emulation

fixes #3412
fixes #3457
</pre>
</div>
</content>
</entry>
<entry>
<title>main/dbus: security upgrade to 1.6.24 (CVE-2014-3635,CVE-2014-3636,CVE-2014-3637,CVE-2014-3638,CVE-2014-3639)</title>
<updated>2014-10-22T12:56:04+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2014-10-22T12:56:04+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=256f4e7e9f920e61c9a0f213d108851dd6eee97c'/>
<id>256f4e7e9f920e61c9a0f213d108851dd6eee97c</id>
<content type='text'>
fixes #3449
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
fixes #3449
</pre>
</div>
</content>
</entry>
<entry>
<title>main/python: security upgrade to 2.7.8 (CVE-2014-7185)</title>
<updated>2014-10-22T12:45:52+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2014-10-22T12:45:52+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=66f1812a4fac22fbe75c90d049b88186b593f0e2'/>
<id>66f1812a4fac22fbe75c90d049b88186b593f0e2</id>
<content type='text'>
fixes #3462
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
fixes #3462
</pre>
</div>
</content>
</entry>
<entry>
<title>main/openssl: security upgrade to 1.0.1j (CVE-2014-3513,CVE-2014-3567,CVE-2014-3568)</title>
<updated>2014-10-16T07:21:12+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2014-10-16T07:21:12+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=f09cdaa244ef0d0d6f7357ab368810ceaa7a1083'/>
<id>f09cdaa244ef0d0d6f7357ab368810ceaa7a1083</id>
<content type='text'>
fixes #3434
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
fixes #3434
</pre>
</div>
</content>
</entry>
<entry>
<title>main/bash: security upgrade to 4.2.051 (CVE-2014-7186,CVE-2014-7187)</title>
<updated>2014-10-02T14:13:56+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2014-10-02T14:13:56+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=c5620781d3e7f795abf791b2141830d90835c255'/>
<id>c5620781d3e7f795abf791b2141830d90835c255</id>
<content type='text'>
fixes #3408
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
fixes #3408
</pre>
</div>
</content>
</entry>
<entry>
<title>main/sqiod: fix CVE-2014-6270, CVE-2014-7141 and CVE-2014-7142</title>
<updated>2014-10-01T09:10:24+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2014-10-01T09:10:24+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=9776eb2bd0cf7072e7360f5a4650a078eaec2ce8'/>
<id>9776eb2bd0cf7072e7360f5a4650a078eaec2ce8</id>
<content type='text'>
fixes #3388
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
fixes #3388
</pre>
</div>
</content>
</entry>
<entry>
<title>main/squid: security fix for CVE-2014-3609</title>
<updated>2014-10-01T08:42:21+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2014-10-01T08:34:23+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=9eecaa8c1812ea6b2341633a5475c179c4d58917'/>
<id>9eecaa8c1812ea6b2341633a5475c179c4d58917</id>
<content type='text'>
fixes #3384
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
fixes #3384
</pre>
</div>
</content>
</entry>
<entry>
<title>main/perl-plack: security upgrade to 1.0031 (CVE-2014-5269)</title>
<updated>2014-09-30T07:59:43+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2014-09-30T07:48:12+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=3e3e698490a84b8fa04ffb352022b00701fbe8b7'/>
<id>3e3e698490a84b8fa04ffb352022b00701fbe8b7</id>
<content type='text'>
fixes #3327
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
fixes #3327
</pre>
</div>
</content>
</entry>
<entry>
<title>main/perl-file-sharedir-install: new aport</title>
<updated>2014-09-30T07:50:35+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2014-09-30T07:42:53+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=72783b116809284469afb7f855ab8d04f9962880'/>
<id>72783b116809284469afb7f855ab8d04f9962880</id>
<content type='text'>
Install shared files
http://search.cpan.org/dist/File-ShareDir-Install/
(cherry picked from commit 6861ecf094bb7090efa45976e4f945da3faa9a43)
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Install shared files
http://search.cpan.org/dist/File-ShareDir-Install/
(cherry picked from commit 6861ecf094bb7090efa45976e4f945da3faa9a43)
</pre>
</div>
</content>
</entry>
<entry>
<title>main/bash: security upgrade to 4.2.50 (CVE-2014-7169)</title>
<updated>2014-09-30T07:08:54+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2014-09-30T07:07:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=8e27e51f9a2030178c74ca4e47825c8e3514b6ec'/>
<id>8e27e51f9a2030178c74ca4e47825c8e3514b6ec</id>
<content type='text'>
fixes #3403
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
fixes #3403
</pre>
</div>
</content>
</entry>
</feed>
