Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/busybox: increase pwd and grp bufsize | Natanael Copa | 2014-03-21 | 2 | -1/+18 | |
| | | | | ref #733 | |||||
* | main/libc0.9.32: increase pwd and grp buffer sizes | Natanael Copa | 2014-03-21 | 3 | -14/+14 | |
| | | | | ref #733 | |||||
* | main/aports-build: depend on network | Natanael Copa | 2014-03-21 | 2 | -4/+8 | |
| | | | | (cherry picked from commit 9f732c02548dee0e47ea1d6a004f63debe48d03a) | |||||
* | main/nginx: upgrade to 1.4.7 | Bartłomiej Piotrowski | 2014-03-18 | 1 | -4/+4 | |
| | ||||||
* | main/net-snmp: security upgrade to 5.7.2.1 (CVE-2014-2285, CVE-2014-2284) | Bartłomiej Piotrowski | 2014-03-16 | 1 | -2/+14 | |
| | ||||||
* | main/wireshark: security upgrade to 1.8.13 (CVE-2013-7112,CVE-2013-7114) | Natanael Copa | 2014-03-13 | 1 | -4/+4 | |
| | | | | fixes #2754 | |||||
* | main/lighttpd: security upgrade to 1.4.35 (CVE-2014-2323,CVE-2014-2324) | Natanael Copa | 2014-03-13 | 5 | -439/+5 | |
| | | | | fixes #2764 | |||||
* | main/subversion: security upgrade to 1.7.16 ↵ | Natanael Copa | 2014-03-13 | 1 | -4/+4 | |
| | | | | | | (CVE-2013-4505,CVE-2013-4558,CVE-2014-0032) fixes #2742 | |||||
* | main/libmodplug: secutity upgrade to 0.8.8.5 (CVE-2013-4233, CVE-2013-4234) | Bartłomiej Piotrowski | 2014-03-13 | 1 | -2/+4 | |
| | ||||||
* | main/jansson: security upgrade to 2.6 (CVE-2013-6401) | Bartłomiej Piotrowski | 2014-03-13 | 1 | -3/+5 | |
| | ||||||
* | main/udisks: security fix for CVE-2014-0004 | Bartłomiej Piotrowski | 2014-03-11 | 2 | -2/+93 | |
| | ||||||
* | main/udisks2: security fix for CVE-2014-0004 | Bartłomiej Piotrowski | 2014-03-11 | 2 | -4/+114 | |
| | ||||||
* | main/freeradius: partially revert commit ↵ | Leonardo Arena | 2014-03-11 | 2 | -10/+10 | |
| | | | | 897da111fe2e7af6647e9bd2da62bf84782779a4 which inadvertently changed the user/group | |||||
* | main/asterisk: security fixes CVE-2014-2286 and CVE-2014-2287 | Timo Teräs | 2014-03-11 | 1 | -2/+11 | |
| | | | | | | cherry-pick the security fixes for: AST-2014-001, CVE-2014-2286: Stack Overflow in HTTP/Cookie Headers handling AST-2014-002, CVE-2014-2287: DoS FD Exhaustion with chan_sip Session-Timers | |||||
* | main/libssh: security fix for CVE-2014-0017 | Bartłomiej Piotrowski | 2014-03-10 | 2 | -5/+76 | |
| | ||||||
* | main/phpmyadmin: security fix for CVE-2014-1879 | Natanael Copa | 2014-03-07 | 2 | -4/+22 | |
| | | | | fixes #2737 | |||||
* | main/alpine-mirrors: add mirror.bpiotrowski.pl | Bartłomiej Piotrowski | 2014-03-06 | 3 | -7/+5 | |
| | ||||||
* | main/postgresql: security upgrade to 9.2.7 (various CVEs) | Natanael Copa | 2014-03-05 | 1 | -5/+5 | |
| | | | | | | | | | | | | | | | fixes #2731 CVE-2014-0060 SET ROLE bypasses lack of ADMIN OPTION. CVE-2014-0061 Privilege escalation via calls to validator functions. CVE-2014-0062 Race condition in CREATE INDEX allows for privilege escalation. CVE-2014-0063 Potential buffer overruns due to integer overflow in size calculations. CVE-2014-0064 Potential buffer overruns in datetime input/output. CVE-2014-0065 Potential buffer overruns of fixed-size buffers. CVE-2014-0066 Potential null pointer dereference crash when crypt(3) returns NULL. | |||||
* | main/gnutls: security upgrade to 3.1.22 (CVE-2014-0092,CVE-2014-1959) | Natanael Copa | 2014-03-05 | 1 | -4/+4 | |
| | | | | fixes #2724 | |||||
* | main/php: security fix CVE-2013-6712. Fixes #2561 | Leonardo Arena | 2014-03-04 | 2 | -4/+19 | |
| | ||||||
* | main/freeradius: disable dbg subpkg | Leonardo Arena | 2014-03-04 | 1 | -3/+3 | |
| | ||||||
* | main/freeradius: upgrade to 2.2.3 and security fix (CVE-2014-2015). ↵ | Leonardo Arena | 2014-03-04 | 4 | -58/+152 | |
| | | | | Backports a number of enhancements and fixes from 2.7-stable. Fixes #2719 | |||||
* | main/zabbix: security upgrade to 2.0.11 (CVE-2014-1685, CVE-2014-1682, ↵ | Leonardo Arena | 2014-03-03 | 3 | -48/+42 | |
| | | | | | | CVE-2013-5572) (cherry picked from commit 870d04b5a1a7a9fca5bb0db44e923d8cd71e0fe5) | |||||
* | main/augeas: security fix for CVE-2013-6412 | Natanael Copa | 2014-03-03 | 2 | -5/+41 | |
| | | | | fixes #2669 | |||||
* | main/nss: security upgrade to 3.15.4 (CVE-2013-1740) | Natanael Copa | 2014-03-03 | 6 | -213/+42 | |
| | | | | | fixes #2646 fixes #2574 | |||||
* | main/nspr: upgrade to 4.10.3 | Natanael Copa | 2014-03-03 | 4 | -109/+7 | |
| | ||||||
* | main/pidgin: security upgrade to 2.10.9 (various CVEs) | Natanael Copa | 2014-03-03 | 2 | -25/+8 | |
| | | | | | | | | | | | | | | | | | | | | | fixes #2681 CVE-2014-0020 Remotely triggerable crash in IRC argument parsing CVE-2013-6490 Buffer overflow in SIMPLE header parsing CVE-2013-6489 Buffer overflow in MXit emoticon parsing CVE-2013-6487 Buffer overflow in Gadu-Gadu HTTP parsing CVE-2013-6486 Pidgin uses clickable links to untrusted executables CVE-2013-6485 Buffer overflow parsing chunked HTTP responses CVE-2013-6484 Crash reading response from STUN server CVE-2013-6483 XMPP doesn't verify 'from' on some iq replies CVE-2013-6482 NULL pointer dereference parsing SOAP data in MSN CVE-2013-6482 NULL pointer dereference parsing OIM data in MSN CVE-2013-6482 NULL pointer dereference parsing headers in MSN CVE-2013-6481 Remote crash reading Yahoo! P2P message CVE-2013-6479 Remote crash parsing HTTP responses CVE-2013-6478 Crash when hovering pointer over a long URL CVE-2013-6477 Crash handling bad XMPP timestamp CVE-2012-6152 Yahoo! remote crash from incorrect character encoding | |||||
* | main/awall: upgrade to 0.3.5 | Kaarle Ritvanen | 2014-03-03 | 1 | -4/+4 | |
| | | | | | (cherry picked from commit e2f9dd318c3bb5fc4edaca11eb62c2ff73fbc4a0) Signed-off-by: Leonardo Arena <rnalrd@alpinelinux.org> | |||||
* | main/file: security upgrade to 5.17 (CVE-2014-1943) | Natanael Copa | 2014-03-03 | 1 | -4/+4 | |
| | | | | fixes #2694 | |||||
* | main/libpng: security fix for CVE-2013-6954 | Natanael Copa | 2014-02-25 | 2 | -4/+48 | |
| | | | | fixes #2699 | |||||
* | main/aports-build: include the arch in the published rsync messages | Natanael Copa | 2014-02-25 | 2 | -5/+5 | |
| | | | | | (cherry picked from commit b705597922992e151deeda07f70804f6733af810 and bc44281cc77d7a50f8db4d85de387b241b3d7303) | |||||
* | main/aports-build: allow setting custom builrepo opts | Natanael Copa | 2014-02-25 | 2 | -5/+5 | |
| | | | | (cherry picked from commit e20960ae0e56272bff1ec1ad64d5e5614b394953) | |||||
* | main/aports-build: push mqtt notifications for rsync | Natanael Copa | 2014-02-25 | 2 | -6/+11 | |
| | | | | | and we use rsync.alpinelinux.org as upload host (cherry picked from commit 0ec26b42d4956432b88cdeaa9ae1e2136f319839) | |||||
* | main/aports-build: fix deps | Natanael Copa | 2014-02-25 | 1 | -2/+2 | |
| | | | | | we need rsync (cherry picked from commit 6593a7cced760a5bc19cf5c00c9db322ac4357a6) | |||||
* | main/aports-build: moved from testing | Natanael Copa | 2014-02-25 | 5 | -0/+280 | |
| | | | | | | | | | | | (cherry picked from commit 878411ddb5b1951e019c0277e207852bc0302d1c) Conflicts: main/aports-build/APKBUILD main/aports-build/aports-build main/aports-build/aports-build.confd main/aports-build/aports-build.initd main/aports-build/aports-build.pre-install | |||||
* | main/mqtt-exec: backport -v support | Natanael Copa | 2014-02-25 | 2 | -5/+87 | |
| | | | | (cherry picked from commit 712ea5d346780062ca46826dc94dbcfc2eb5c65e) | |||||
* | main/mqtt-exec: moved from testing | Natanael Copa | 2014-02-25 | 1 | -0/+39 | |
| | | | | | | | (cherry picked from commit 81d9344674666f2aac59a59310514f77e7be6c17) Conflicts: main/mqtt-exec/APKBUILD | |||||
* | main/mosquitto: upgrade to 1.2.3 | Natanael Copa | 2014-02-25 | 1 | -5/+5 | |
| | | | | (cherry picked from commit 6044d9b5d8a3f8d05c37772e896df84243540ea2) | |||||
* | main/mosquitto: moved from testing | Natanael Copa | 2014-02-25 | 3 | -0/+92 | |
| | | | | | | | | | (cherry picked from commit d2a456191a9d38342969971e40dc56b7bd70733d) Conflicts: main/mosquitto/APKBUILD main/mosquitto/mosquitto.initd main/mosquitto/mosquitto.pre-install | |||||
* | main/python: security fix for CVE-2014-1912 | Natanael Copa | 2014-02-24 | 2 | -4/+25 | |
| | | | | fixes #2712 | |||||
* | main/libvirt: security upgrade to 1.0.5.9 (CVE-2013-6458 CVE-2014-1447) | Leonardo Arena | 2014-02-05 | 1 | -4/+4 | |
| | | | | Fixes #2636 | |||||
* | main/curl: fix CVE-2014-0015 | Natanael Copa | 2014-02-04 | 2 | -5/+57 | |
| | | | | fixes #2674 | |||||
* | main/bind: security upgrade to 9.9.4_p2 (CVE-2014-0591) | Natanael Copa | 2014-01-15 | 1 | -4/+4 | |
| | | | | fixes #2607 | |||||
* | main/links: security upgrade to 2.8 (CVE-2013-6050) | Natanael Copa | 2014-01-14 | 1 | -2/+4 | |
| | | | | fixes #2553 | |||||
* | main/spice: security fix for CVE-2013-4282 | Natanael Copa | 2014-01-14 | 2 | -5/+113 | |
| | | | | ref #2595 | |||||
* | main/pixman: security fix for CVE-2013-6425 | Natanael Copa | 2014-01-14 | 2 | -5/+47 | |
| | | | | fixes #2557 | |||||
* | main/pixman: upgrade to 0.30.2 | Natanael Copa | 2014-01-14 | 1 | -4/+4 | |
| | | | | (cherry picked from commit 4c20a83d21f7dcb1ac58f84ab3210cc274e27822) | |||||
* | main/wireshark: security upgrade to 1.8.12 (CVE-2013-7112,CVE-2013-7114) | Natanael Copa | 2014-01-14 | 1 | -4/+4 | |
| | | | | fixes #2568 | |||||
* | main/openssl: security upgrade to 1.0.1f ↵ | Natanael Copa | 2014-01-14 | 2 | -32/+5 | |
| | | | | | | (CVE-2013-4353,CVE-2013-6449,CVE-2013-6450) fixes #2584 | |||||
* | main/libxfont: security upgrade to 1.4.7 (CVE-2013-6462) | Natanael Copa | 2014-01-14 | 1 | -2/+4 | |
| | | | | fixes #2588 |