Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/cups: security fix (CVE-2014-2856). Fixes #2950 | Leonardo Arena | 2014-06-18 | 2 | -5/+28 | |
| | ||||||
* | main/nagios: security fix (CVE-2014-1878). Fixes #2946 | Leonardo Arena | 2014-06-18 | 2 | -4/+27 | |
| | ||||||
* | main/libcap-ng: apply the patch from previous commit | Leonardo Arena | 2014-06-18 | 1 | -2/+6 | |
| | ||||||
* | Security fix (CVE-2013-3215). Fixes #3029 | Leonardo Arena | 2014-06-18 | 2 | -2/+86 | |
| | ||||||
* | main/bash: fix setuid bug | Natanael Copa | 2014-06-17 | 2 | -1/+36 | |
| | | | | | | | | | | ref #2990 fixes #2992 (cherry picked from commit 15eb98780f3c051d2835df3860b5bcba16bf1aae) Conflicts: main/bash/APKBUILD | |||||
* | main/asterisk: fix permission escalation (AST-2014-006 CVE-2014-4046) | Natanael Copa | 2014-06-17 | 2 | -1/+22 | |
| | | | | fixes #3047 | |||||
* | main/freeradius: fix openssl version check | Timo Teräs | 2014-06-13 | 2 | -1/+17 | |
| | | | | | | | | | | Make sure ABI version is correct, and that we are linked at least to the version compled against. This allows openssl security upgrades that are ABI stable without recompiling freeradius. (cherry picked from commit 94983a506d2e95be0a5864ae7bcc7d7d61dc6cce) Conflicts: main/freeradius/APKBUILD | |||||
* | main/php: security upgrade to 5.4.29 (CVE-2014-0237,CVE-2014-0238) | Natanael Copa | 2014-06-10 | 1 | -4/+4 | |
| | | | | fixes #3022 | |||||
* | main/libtasn1: security upgrade to 3.6 ↵ | Natanael Copa | 2014-06-10 | 1 | -4/+4 | |
| | | | | | | (CVE-2014-3467,CVE-2014-3468,CVE-2014-3469) fixes #3011 | |||||
* | main/dovecot: security upgrade to 2.2.13 (CVE-2014-3430) | Natanael Copa | 2014-06-10 | 1 | -4/+4 | |
| | | | | fixes #2958 | |||||
* | main/strongswan: add backport | Natanael Copa | 2014-06-09 | 2 | -0/+126 | |
| | | | | fixes #3019 | |||||
* | main/freeswitch: rebuild against new openssl | Natanael Copa | 2014-06-09 | 1 | -1/+1 | |
| | | | | ref #3007 | |||||
* | main/openssl: security upgrade to 1.0.1h (multiple CVE) | Timo Teräs | 2014-06-09 | 4 | -118/+8 | |
| | | | | | | | | | | | | | | Newly fixed CVEs: CVE-2014-0224 SSL/TLS MITM vulnerability CVE-2014-0221 DTLS recursion flaw CVE-2014-0195 DTLS invalid fragment vulnerability Previously fixed in Alpine by cherry picks: CVE-2014-0198 SSL_MODE_RELEASE_BUFFERS NULL pointer dereference (cherry picked from commit c7c8818b7203c5ff58dd5f7d03f7e47cb681348d) fixes #2997 | |||||
* | main/gnutls: security upgrade to 3.1.25 (CVE-2014-3466) | Timo Teräs | 2014-06-04 | 1 | -4/+4 | |
| | | | | fixes #2987 | |||||
* | main/openssl: security fix to CVE-2014-0198 | Timo Teräs | 2014-05-29 | 2 | -1/+42 | |
| | | | | fixes #2918 | |||||
* | main/php: security upgrade to 5.4.28 (CVE-2014-0185) | Natanael Copa | 2014-05-28 | 1 | -4/+4 | |
| | | | | fixes #2938 | |||||
* | main/zabbix: upgrade to 2.0.12 | Leonardo Arena | 2014-05-26 | 1 | -4/+4 | |
| | ||||||
* | main/libvirt: security fix CVE-2013-6456 CVE-2014-0179. Fixes #2954" | Leonardo Arena | 2014-05-26 | 3 | -4/+281 | |
| | ||||||
* | main/libxml2: security fix for CVE-2014-0191 | Natanael Copa | 2014-05-22 | 2 | -4/+44 | |
| | | | | fixes #2930 | |||||
* | main/ldns: upgrade to 1.6.17 and security fix for CVE-2014-3209 | Natanael Copa | 2014-05-22 | 2 | -3/+90 | |
| | | | | fixes #2926 | |||||
* | main/libmms: security upgrade to 0.6.4 (CVE-2014-2892) | Natanael Copa | 2014-05-22 | 1 | -3/+5 | |
| | | | | fixes #2909 | |||||
* | main/dpkg: security upgrade to 1.16.14 (CVE-2014-0471) | Natanael Copa | 2014-05-22 | 1 | -4/+4 | |
| | | | | fixes #2905 | |||||
* | main/qemu: security fix for CVE-2014-0150 | Natanael Copa | 2014-05-22 | 2 | -1/+21 | |
| | | | | fixes #2901 | |||||
* | main/mysql: security upgrade to 5.5.37 | Natanael Copa | 2014-05-22 | 1 | -4/+4 | |
| | | | | | | | | | | | | | | CVE-2014-0001 CVE-2014-0384 CVE-2014-2419 CVE-2014-2430 CVE-2014-2431 CVE-2014-2432 CVE-2014-2436 CVE-2014-2438 CVE-2014-2440 fixes #2914 | |||||
* | main/rxvt-unicode: security upgrade to 9.20 (CVE-2014-3121) | Natanael Copa | 2014-05-22 | 1 | -4/+4 | |
| | | | | fixes #2921 | |||||
* | main/openssl: fix for CVE-2010-5298 | Timo Teräs | 2014-05-21 | 2 | -1/+18 | |
| | | | | | | fixes #2897 (cherry picked from commit 4456c9ec91d13627b3900075f8ac84ce97551679) | |||||
* | main/py-django: security upgrade to 1.5.8 (CVE-2014-1418,CVE-2014-3730) | Eivind Uggedal | 2014-05-15 | 1 | -4/+4 | |
| | ||||||
* | main/coreutils: fix man-pages | Natanael Copa | 2014-05-15 | 1 | -2/+2 | |
| | | | | | | we need perl at build time for generating proper man-pages. fixes #2888 | |||||
* | main/squid: security upgrade to 3.3.12 (CVE-2014-0128) | Natanael Copa | 2014-05-14 | 2 | -25/+25 | |
| | | | | fixes #2873 | |||||
* | main/libxfont: security fixes for CVE-2014-0209, CVE-2014-0210, CVE-2014-0211 | Natanael Copa | 2014-05-14 | 13 | -7/+980 | |
| | | | | fixes #2885 | |||||
* | main/owncloud: upgrade to 5.0.16 | Leonardo Arena | 2014-04-29 | 1 | -4/+4 | |
| | ||||||
* | main/py-django: bugfix upgrade for security fix | Eivind Uggedal | 2014-04-29 | 1 | -4/+4 | |
| | ||||||
* | main/py-django: security upgrade to 1.5.6 ↵ | Eivind Uggedal | 2014-04-26 | 1 | -4/+4 | |
| | | | | (CVE-2014-0472,CVE-2014-0473,CVE-2014-0474) | |||||
* | main/openssh: security fix for CVE-2014-2653 | Timo Teräs | 2014-04-21 | 2 | -8/+87 | |
| | | | | fixes #2859 | |||||
* | main/php: security upgrade to 5.4.27 (CVE-2013-7345) | Natanael Copa | 2014-04-18 | 2 | -23/+8 | |
| | | | | fixes #2854 | |||||
* | main/openswan: security upgrade to 2.6.41 (CVE-2013-6466) | Timo Teräs | 2014-04-18 | 7 | -854/+57 | |
| | | | | fixes #2829 | |||||
* | main/curl: security upgrade to 7.36.0 (CVE-2014-0138 CVE-2014-0139) | Timo Teräs | 2014-04-18 | 2 | -59/+7 | |
| | | | | | | | | | groff is now needed to build built-in manual. ref #2816 (cherry picked from commit d218307c3f5ca3bb714075368f71f8c7332371cb) Conflicts: main/curl/APKBUILD | |||||
* | main/a2ps: security fix for CVE-2001-1593 and CVE-2014-0466 | Natanael Copa | 2014-04-18 | 3 | -2/+121 | |
| | | | | | | | | | fixes #2824 (cherry picked from commit 9544460de3b7282c473654a2a67586c6645a05c1) Conflicts: main/a2ps/APKBUILD | |||||
* | main/mutt: security upgrade to 1.5.23 (CVE-2014-0467) | Timo Teräs | 2014-04-17 | 1 | -3/+5 | |
| | | | | | | | | fixes #2785 (cherry picked from commit bb047f7e617af0cd855a32158cef5f19f3ddf529) Conflicts: main/mutt/APKBUILD | |||||
* | main/owncloud: security upgrade to 5.0.15 (several) | Natanael Copa | 2014-04-17 | 1 | -5/+5 | |
| | ||||||
* | main/memcached: security upgrade to 1.4.17 ↵ | Natanael Copa | 2014-04-17 | 1 | -6/+6 | |
| | | | | | | | | | | | (CVE-2013-0179,CVE-2013-7239,CVE-2013-7290,CVE-2013-7291) fixes #2627 (cherry picked from commit 01c5af01dadb92ad64c468444fcd4b58e00ccdc9) Conflicts: main/memcached/APKBUILD | |||||
* | main/nagios: security fix for CVE-2013-7108, CVE-2013-7205 | Natanael Copa | 2014-04-17 | 2 | -5/+212 | |
| | | | | fixes #2621 | |||||
* | main/apache2: security upgrade to 2.4.9 (CVE-2013-6438,CVE-2014-0098) | Natanael Copa | 2014-04-17 | 1 | -5/+5 | |
| | | | | fixes #2794 | |||||
* | main/postfixadmin: security upgrade to 2.3.7 (CVE-2014-2655) | Natanael Copa | 2014-04-17 | 1 | -4/+4 | |
| | | | | fixes #2814 | |||||
* | main/nss: security fix for CVE-2014-1492 | Timo Teräs | 2014-04-17 | 2 | -4/+50 | |
| | | | | fixes #2799 | |||||
* | main/busybox: fix login/su/passwd | Natanael Copa | 2014-04-11 | 2 | -6/+60 | |
| | | | | fixes #2838 | |||||
* | main/freeradius: fix checksum | Leonardo Arena | 2014-04-11 | 1 | -3/+3 | |
| | ||||||
* | main/freeradius: rebuild against new openssl. Fixes #2835 | Leonardo Arena | 2014-04-08 | 1 | -4/+4 | |
| | ||||||
* | main/openssl: upgrade to 1.0.1g | Timo Teräs | 2014-04-07 | 1 | -28/+28 | |
| | | | | | - fix for CVE-2014-0160 - fix for CVE-2014-0076 | |||||
* | main/openssh: security fix for CVE-2014-2532 | Bartłomiej Piotrowski | 2014-03-26 | 2 | -5/+38 | |
| |