aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* main/util-macros: upgrade to 1.17Natanael Copa2013-05-241-2/+4
| | | | | | | (cherry picked from commit c3c243cd3795568ab5dd6fb7648f225ef2dbf593) Conflicts: main/util-macros/APKBUILD
* main/libxcursor: fix CVE-2013-2003Natanael Copa2013-05-242-7/+57
| | | | | | | ref #1931 fixes #1997 (cherry picked from commit 12fb9608ca0d7e1478f57863518a56e57fc759bc)
* main/libxrender: fix CVE-2013-1987Natanael Copa2013-05-244-7/+256
| | | | | | | ref #1931 fixes #1961 (cherry picked from commit de43558cd1904b59c2358a05514aea1d20fab1c2)
* main/libxfixes: fix for CVE-2013-1983Natanael Copa2013-05-242-5/+90
| | | | | | | ref #1931 fixes #1942 (cherry picked from commit b26655eaa38290e14b41bf0dd3645030445f42d7)
* main/libx11: security fix (CVE-2013-1981,CVE-2013-1997,CVE-2013-2004)Natanael Copa2013-05-242-4/+3872
| | | | | | | ref #1931 fixes #1933 (cherry picked from commit db1e74cf060eb177b9bd1f5ef787b90b19609c5b)
* main/libxcb: security fix (CVE-2013-2064)Natanael Copa2013-05-242-3/+63
| | | | | ref #1931 fixes #1985
* main/xen: security fix (CVE-2013-2072)Natanael Copa2013-05-212-1/+55
| | | | | ref #1900 fixes #1902
* main/xen: add perl as depNatanael Copa2013-05-211-2/+2
| | | | | | | | | | Currently it will not start domU at all unless perl is there. There are only few lines of perl that probably easily could be ported to C or Lua or something, but until that happens we need perl :-( fixes #1524 (cherry picked from commit 0b857e9db3ddab86ea859bf9570982d7c1b6a38e)
* main/xen: misc fixes for xendomains init.d scriptNatanael Copa2013-05-212-7/+10
| | | | | | - we need create the parent dirs for SCREENDIR - sync the need/after deps with gentoo (cherry picked from commit d432e270eaa3c2ab8d7af432e3b7dfdb088bf268)
* main/xen: sleep a bit when starting up xen domainsNatanael Copa2013-05-213-7/+24
| | | | | fixes #1850 (cherry picked from commit ef80eb1f042d2bfe8d0588e6d248b42cb1b33552)
* main/xen: security fixes ↵Roger Pau Monne2013-05-216-1/+638
| | | | | | | | | | | (CVE-2013-1917,CVE-2013-1919,CVE-2013-1920,CVE-2013-1922) CVE-2013-1917 / XSA-44 CVE-2013-1919 / XSA-46 CVE-2013-1920 / XSA-47 CVE-2013-1922 / XSA-48 Signed-off-by: Natanael Copa <ncopa@alpinelinux.org>
* xen: XSA-36 and XSA-38Roger Pau Monne2013-05-213-1/+401
|
* main/wireshark: security upgrade to 1.8.7 ↵Natanael Copa2013-05-211-2/+2
| | | | | | (CVE-2013-3555,CVE-2013-3556,CVE-2013-3557,CVE-2013-3558,CVE-2013-3559,CVE-2013-3560,CVE-2013-3561,CVE-2013-3562) fixes #1920
* main/owncloud: upgrade to 4.5.11. Fixes #1910Leonardo Arena2013-05-202-8/+8
|
* main/openswan: securiy fix remote buffer overflow in atodn() (CVE-2013-2053)Natanael Copa2013-05-176-1/+849
| | | | | | patches are from http://libreswan.org/security/CVE-2013-2053/ fixes #1896
* main/openswan: remove execute permisions from /etc/ipsec.confNatanael Copa2013-05-171-2/+7
| | | | (cherry picked from commit fee7a639655080bccd7eb7e990e24a790919bd3c)
* main/libvirt: security fix for CVE-2013-1962. Fixes #1893Leonardo Arena2013-05-172-2/+49
|
* main/mysql: security upgrade to 5.5.31 (CVE-2013-1502...)Natanael Copa2013-05-161-2/+2
| | | | fixes #1886
* main/openvpn: security fix (CVE-2013-2061)Natanael Copa2013-05-162-2/+85
| | | | fixes #1879
* main/open-vm-tools-vserver: rebuild against kernel 3.6.11-r4Natanael Copa2013-05-161-1/+1
|
* main/dahdi-linux-vserver: rebuild against kernel 3.6.11-r4Natanael Copa2013-05-161-1/+1
|
* main/linux-vserver: security fix (CVE-2013-2094)Natanael Copa2013-05-162-13/+39
| | | | fixes #1871
* main/zfs-grsec: rebuild against kernel 3.6.11-r16Natanael Copa2013-05-151-1/+1
|
* main/wanpipe-grsec: rebuild against kernel 3.6.11-r16Natanael Copa2013-05-151-1/+1
|
* main/virtualbox-additions-grsec: rebuild against kernel 3.6.11-r16Natanael Copa2013-05-151-1/+1
|
* main/spl-grsec: rebuild against kernel 3.6.11-r16Natanael Copa2013-05-151-1/+1
|
* main/xtables-addons-grsec: rebuild against kernel 3.6.11-r16Natanael Copa2013-05-151-1/+1
|
* main/open-vm-tools-grsec: rebuild against kernel 3.6.11-r16Natanael Copa2013-05-151-1/+1
|
* main/dahdi-linux-grsec: rebuild against kernel 3.6.11-r16Natanael Copa2013-05-151-1/+1
|
* main/linux-grsec: security fix for CVE-2013-2094Natanael Copa2013-05-152-1/+39
| | | | fixes #1860
* main/php: fix dependency issue for wddxNatanael Copa2013-05-151-2/+9
| | | | | | | | fixes #1848 (cherry picked from commit 36e33d6dc1164a8c990d7a4ed8b2f37cf752d382) Conflicts: main/php/APKBUILD
* main/jansson: fix libm underlinkingNatanael Copa2013-05-141-3/+3
| | | | | | | | This is more a workaround than a fix. Proper fix should do a check in configure.ac that can handle isnan/isinf as macros. fixes #1851 (cherry picked from commit 27226291aa918607683c210c9d2a291027abd5eb)
* main/ruby-rack: upgrade to 1.4.5Natanael Copa2013-05-141-2/+2
|
* main/nginx: upgrade to 1.2.9 (fixes CVE-2013-2070)Bartłomiej Piotrowski2013-05-131-4/+4
|
* main/ruby-railties: upgrade to 3.2.13Natanael Copa2013-05-101-2/+2
|
* main/ruby-activesupport: upgrade to 3.2.13Natanael Copa2013-05-101-2/+2
|
* main/ruby-activeresource: upgrade to 3.2.13Natanael Copa2013-05-101-2/+2
|
* main/ruby-activemodel: upgrade to 3.2.13Natanael Copa2013-05-101-2/+2
|
* main/ruby-actionpack: upgrade to 3.2.13Natanael Copa2013-05-101-2/+2
|
* main/ruby-actionmailer: upgrade to 3.2.13Natanael Copa2013-05-101-2/+2
|
* main/ruby-rmagick: upgrade to 2.13.2Natanael Copa2013-05-101-3/+3
|
* main/ruby-json: upgrade to 1.7.7Natanael Copa2013-05-101-2/+2
|
* main/ruby-bundler: upgrade to 1.2.5Natanael Copa2013-05-101-3/+3
|
* main/redmine: upgrade to 2.1.6Natanael Copa2013-05-101-4/+4
|
* main/nginx: upgrade to 1.2.8Bartłomiej Piotrowski2013-05-071-2/+10
|
* Revert "main/openjdk: security upgrade to icedtea 1.11.11"Natanael Copa2013-05-032-52/+5
| | | | | | it does not build for some reaon This reverts commit 5c5379b9fa741b41d526daa3d1d9ee5d4aface24.
* main/util-linux: security upgrade to 2.22.2 (CVE-2013-0157)Natanael Copa2013-05-031-2/+2
| | | | fixes #1826
* main/subversion: security upgrade to 1.7.9 ↵Natanael Copa2013-05-031-2/+2
| | | | | | (CVE-2013-1845,CVE-2013-1846,CVE-2013-1847,CVE-2013-1849) fixes #1822
* main/openjdk: security upgrade to icedtea 1.11.11Natanael Copa2013-05-012-5/+52
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | fixes #1801 icedtea6-1.11.11: RH952389: Temporary files created with insecure permissions icedtea6-1.11.10: S6657673, CVE-2013-1518: Issues with JAXP S7200507: Refactor Introspector internals S8000724, CVE-2013-2417: Improve networking serialization S8001031, CVE-2013-2419: Better font processing S8001040, CVE-2013-1537: Rework RMI model S8001322: Refactor deserialization S8001329, CVE-2013-1557: Augment RMI logging S8003335: Better handling of Finalizer thread S8003445: Adjust JAX-WS to focus on API S8003543, CVE-2013-2415: Improve processing of MTOM attachments S8004261: Improve input validation S8004336, CVE-2013-2431: Better handling of method handle intrinsic frames S8004986, CVE-2013-2383: Better handling of glyph table S8004987, CVE-2013-2384: Improve font layout S8004994, CVE-2013-1569: Improve checking of glyph table S8005432: Update access to JAX-WS S8005943: (process) Improved Runtime.exec S8006309: More reliable control panel operation S8006435, CVE-2013-2424: Improvements in JMX S8006790: Improve checking for windows S8006795: Improve font warning messages S8007406: Improve accessibility of AccessBridge S8007617, CVE-2013-2420: Better validation of images S8007667, CVE-2013-2430: Better image reading S8007918, CVE-2013-2429: Better image writing S8009063, CVE-2013-2426: Improve reliability of ConcurrentHashMap S8009305, CVE-2013-0401: Improve AWT data transfer S8009699, CVE-2013-2421: Methodhandle lookup S8009814, CVE-2013-1488: Better driver management S8009857, CVE-2013-2422: Problem with plugin icedtea6-1.11.9: S8007014, CVE-2013-0809: Improve image handling S8007675, CVE-2013-1493: Improve color conversion icedtea6-1.11.8: S8006446, CVE-2013-1486: Restrict MBeanServer access S8006777, CVE-2013-0169: Improve TLS handling of invalid messages S8007688: Blacklist known bad certificate icedtea6-1.11.7: (bugfixes only) icedtea6-1.11.6: S6563318, CVE-2013-0424: RMI data sanitization S6664509, CVE-2013-0425: Add logging context S6664528, CVE-2013-0426: Find log level matching its name or value given at construction time S6776941: CVE-2013-0427: Improve thread pool shutdown S7141694, CVE-2013-0429: Improving CORBA internals S7173145: Improve in-memory representation of splashscreens S7186945: Unpack200 improvement S7186946: Refine unpacker resource usage S7186948: Improve Swing data validation S7186952, CVE-2013-0432: Improve clipboard access S7186954: Improve connection performance S7186957: Improve Pack200 data validation S7192392, CVE-2013-0443: Better validation of client keys S7192393, CVE-2013-0440: Better Checking of order of TLS Messages S7192977, CVE-2013-0442: Issue in toolkit thread S7197546, CVE-2013-0428: (proxy) Reflect about creating reflective proxies S7200491: Tighten up JTable layout code S7200500: Launcher better input validation S7201064: Better dialogue checking S7201066, CVE-2013-0441: Change modifiers on unused fields S7201068, CVE-2013-0435: Better handling of UI elements S7201070: Serialization to conform to protocol S7201071, CVE-2013-0433: InetSocketAddress serialization issue S8000210: Improve JarFile code quality S8000537, CVE-2013-0450: Contextualize RequiredModelMBean class S8000540, CVE-2013-1475: Improve IIOP type reuse management S8000631, CVE-2013-1476: Restrict access to class constructor S8001235, CVE-2013-0434: Improve JAXP HTTP handling S8001242: Improve RMI HTTP conformance S8001307: Modify ACC_SUPER behavior S8001972, CVE-2013-1478: Improve image processing S8002325, CVE-2013-1480: Improve management of images icedtea6-1.11.5: S6631398, CVE-2012-3216: FilePermission improved path checking S7093490: adjust package access in rmiregistry S7143535, CVE-2012-5068: ScriptEngine corrected permissions S7167656, CVE-2012-5077: Multiple Seeders are being created S7169884, CVE-2012-5073: LogManager checks do not work correctly for sub-types S7169888, CVE-2012-5075: Narrowing resource definitions in JMX RMI connector S7172522, CVE-2012-5072: Improve DomainCombiner checking S7186286, CVE-2012-5081: TLS implementation to better adhere to RFC S7189103, CVE-2012-5069: Executors needs to maintain state S7189490: More improvements to DomainCombiner checking S7189567, CVE-2012-5085: java net obselete protocol S7192975, CVE-2012-5071: Conditional usage check is wrong S7195194, CVE-2012-5084: Better data validation for Swing S7195917, CVE-2012-5086: XMLDecoder parsing at close-time should be improved S7195919, CVE-2012-5979: (sl) ServiceLoader can throw CCE without needing to create instance S7198296, CVE-2012-5089: Refactor classloader usage S7158800: Improve storage of symbol tables S7158801: Improve VM CompileOnly option S7158804: Improve config file parsing S7176337: Additional changes needed for 7158801 fix S7198606, CVE-2012-4416: Improve VM optimization (cherry picked from commit 871dd194e68719bcef84b37a602e0d01884ab2b6)
* main/acf-core: upgrade to 0.16.3Ted Trask2013-04-301-4/+4
| | | | (cherry picked from commit bbaf57d25c2f385e04958dd044a923c2189ee6d2)