Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/xtables-addons-grsec: rebuild against kernel 3.10.25-r0 | Natanael Copa | 2014-01-07 | 1 | -1/+1 | |
| | ||||||
* | main/open-vm-tools-grsec: rebuild against kernel 3.10.25-r0 | Natanael Copa | 2014-01-07 | 1 | -1/+1 | |
| | ||||||
* | main/dahdi-linux-grsec: rebuild against kernel 3.10.25-r0 | Natanael Copa | 2014-01-07 | 1 | -1/+1 | |
| | ||||||
* | main/crystalhd-git-grsec: rebuild against kernel 3.10.25-r0 | Natanael Copa | 2014-01-07 | 1 | -1/+1 | |
| | ||||||
* | main/linux-grsec: upgrade to 3.10.25 | Natanael Copa | 2014-01-07 | 2 | -135/+125 | |
| | ||||||
* | main/linux-grsec: backport ip gre fix | Natanael Copa | 2014-01-07 | 2 | -1/+65 | |
| | | | | | from http://www.spinics.net/lists/netdev/msg261705.html ref #2530 | |||||
* | main/linux-grsec: backport fix for GRE + GRO/GSO | Natanael Copa | 2014-01-07 | 2 | -1/+72 | |
| | | | | fixes #2528 | |||||
* | main/linux-grsec: upgrade to 3.10.23 | Natanael Copa | 2014-01-07 | 4 | -413/+504 | |
| | ||||||
* | main/linux-grsec: upgrade to 3.10.19 | Natanael Copa | 2014-01-07 | 2 | -52/+52 | |
| | ||||||
* | main/quagga: fix zebra failing to start due to missing rundir | Natanael Copa | 2014-01-07 | 2 | -4/+5 | |
| | | | | ref #2294 | |||||
* | main/syslinux: upgrade to 5.10 | Natanael Copa | 2013-12-30 | 1 | -6/+6 | |
| | | | | | fixes #2527 (cherry picked from commit fbdf208c06a960a3b768309c96d0d112ea41fda5) | |||||
* | main/libvirt: security upgrade to 1.0.5.8 ↵ | Natanael Copa | 2013-12-24 | 2 | -46/+9 | |
| | | | | | | | (CVE-2013-4291,CVE-2013-4296,CVE-2013-4311) ref #2471 fixes #2474 | |||||
* | main/polkit: security fix for CVE-2013-4288 | Natanael Copa | 2013-12-24 | 2 | -1/+134 | |
| | | | | | ref #2471 ref #2474 | |||||
* | main/owncloud: add missing patch | Leonardo Arena | 2013-12-18 | 2 | -1/+45 | |
| | ||||||
* | main/owncloud: fix checksum | Leonardo Arena | 2013-12-18 | 1 | -4/+4 | |
| | ||||||
* | main/owncloud: upgrade to 5.0.14a | Leonardo Arena | 2013-12-18 | 2 | -9/+17 | |
| | ||||||
* | main/mysql: security upgrade to 5.5.35 | Leonardo Arena | 2013-12-17 | 1 | -4/+4 | |
| | ||||||
* | main/xorg-server: security upgrade to 1.14.4 (CVE-2013-4396) | Natanael Copa | 2013-12-17 | 1 | -4/+4 | |
| | | | | fixes #2521 | |||||
* | main/php: security upgrade to 5.4.23 (CVE-2013-6420) | Natanael Copa | 2013-12-17 | 1 | -5/+5 | |
| | | | | fixes #2516 | |||||
* | main/vlc: security upgrade to 2.0.8 (CVE-2013-4388) | Natanael Copa | 2013-12-17 | 1 | -5/+5 | |
| | | | | fixes #2499 | |||||
* | main/openssl: don't use rdrand engine as default (fixes #2511) | Timo Teräs | 2013-12-17 | 2 | -1/+28 | |
| | | | | | | | | | As security measure, do not rely solely on hardware random source. (cherry picked from commit 1fd915b81678c58d35bf63761c260efd5362a93d) Conflicts: main/openssl/APKBUILD | |||||
* | main/asterisk: security upgrade to 11.6.1 (fixes #2506) | Timo Teräs | 2013-12-17 | 1 | -1/+4 | |
| | | | | | | | AST-2013-006 Buffer Overflow when receiving odd length 16 bit SMS message AST-2013-007 Asterisk Manager User Dialplan Permission Escalation (cherry picked from commit 52e547a6d078e1981498b8e8b2a75a39a4dfd726) | |||||
* | main/pingu: update download source | Natanael Copa | 2013-12-16 | 1 | -4/+4 | |
| | ||||||
* | main/varnish: security upgrade to 3.0.5 (CVE-2013-4484) | Natanael Copa | 2013-12-13 | 1 | -5/+5 | |
| | | | | fixes #2490 | |||||
* | main/samba: security upgrade to 3.6.22 (CVE-2013-4408,CVE-2012-6150) | Natanael Copa | 2013-12-10 | 1 | -4/+4 | |
| | | | | fixes #2482 | |||||
* | main/pingu: backport fix for segfault when declaring iface twice | Natanael Copa | 2013-12-10 | 2 | -1/+39 | |
| | ||||||
* | main/zabbix: security upgrade to 2.0.10 (CVE-2013-6824) | Leonardo Arena | 2013-12-09 | 1 | -4/+4 | |
| | ||||||
* | main/alpine-conf: fix creating boot usb of v2.7 | Natanael Copa | 2013-12-06 | 2 | -4/+128 | |
| | | | | ref #2363 | |||||
* | main/perl-http-body: security fix CVE-2013-4407. Fixes #2459 | Leonardo Arena | 2013-12-03 | 2 | -2/+35 | |
| | ||||||
* | main/ruby: security upgrade to 2.0.0_p353 (CVE-2013-4164) | Natanael Copa | 2013-12-03 | 1 | -5/+5 | |
| | | | | fixes #2464 | |||||
* | main/memcached: security workaround for CVE-2011-4971 | Natanael Copa | 2013-12-03 | 2 | -1/+58 | |
| | | | | | ref #2451 fixes #2454 | |||||
* | main/nss: security upgrade to 3.4.15. Fixes #2395 | Leonardo Arena | 2013-12-03 | 6 | -28/+198 | |
| | ||||||
* | main/poppler: security fix (CVE-2013-4473,CVE-2013-4474) | Natanael Copa | 2013-12-03 | 3 | -5/+125 | |
| | | | | fixes #2419 | |||||
* | main/xen: security fix for CVE-2013-4329/XSA-61 | Natanael Copa | 2013-12-03 | 2 | -1/+49 | |
| | | | | fixes #2424 | |||||
* | main/zabbix: upgrade to 2.0.9 | Leonardo Arena | 2013-11-29 | 2 | -2033/+8 | |
| | ||||||
* | main/openjdk6: upgrade to icedtea6 1.11.14 | Timo Teräs | 2013-11-28 | 1 | -4/+5 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Includes security fixes (fixes #2389): S8006900, CVE-2013-3829: Add new date/time capability S8008589: Better MBean permission validation S8011071, CVE-2013-5780: Better crypto provider handling S8011081, CVE-2013-5772: Improve jhat S8011157, CVE-2013-5814: Improve CORBA portablility S8012071, CVE-2013-5790: Better Building of Beans S8012147: Improve tool support S8012277: CVE-2013-5849: Improve AWT DataFlavor S8012425, CVE-2013-5802: Transform TransformerFactory S8013503, CVE-2013-5851: Improve stream factories S8013506: Better Pack200 data handling S8013510, CVE-2013-5809: Augment image writing code S8013514: Improve stability of cmap class S8013739, CVE-2013-5817: Better LDAP resource management S8013744, CVE-2013-5783: Better tabling for AWT S8014085: Better serialization support in JMX classes S8014093, CVE-2013-5782: Improve parsing of images S8014102, CVE-2013-5778: Improve image conversion S8014341, CVE-2013-5803: Better service from Kerberos servers S8014349, CVE-2013-5840: (cl) Class.getDeclaredClass problematic in some class loader configurations S8014530, CVE-2013-5825: Better digital signature processing S8014534: Better profiling support S8014987, CVE-2013-5842: Augment serialization handling S8015614: Update build settings S8015731: Subject java.security.auth.subject to improvements S8015743, CVE-2013-5774: Address internet addresses S8016256: Make finalization final S8016653, CVE-2013-5804: javadoc should ignore ignoreable characters in names S8016675, CVE-2013-5797: Make Javadoc pages more robust S8017196, CVE-2013-5850: Ensure Proxies are handled appropriately S8017287, CVE-2013-5829: Better resource disposal S8017291, CVE-2013-5830: Cast Proxies Aside S8017298, CVE-2013-4002: Better XML support S8017300, CVE-2013-5784: Improve Interface Implementation S8017505, CVE-2013-5820: Better Client Service S8019292: Better Attribute Value Exceptions S8019617: Better view of objects S8020293: JVM crash S8021290, CVE-2013-5823: Better signature validation S8022940: Enhance CORBA translations S8023683: Enhance class file parsing | |||||
* | main/wireshark: security upgrade to 1.8.11 ↵ | Natanael Copa | 2013-11-26 | 1 | -4/+4 | |
| | | | | | | | (CVE-2013-5718,CVE-2013-5719,CVE-2013-5720,CVE-2013-5721,CVE-2013-5722,CVE-2013-4933,CVE-2013-6336,CVE-2013-6337,CVE-2013-6338,CVE-2013-6339,CVE-2013-6340) fixes #2427 fixes #2440 | |||||
* | main/py-django: security upgrade to 1.5.5 (CVE-2013-1443) | Natanael Copa | 2013-11-26 | 1 | -5/+5 | |
| | | | | fixes #2434 | |||||
* | main/libjpeg-turbo: security fix (CVE-2013-6629,CVE-2013-6630) | Natanael Copa | 2013-11-26 | 2 | -3/+44 | |
| | | | | fixes #2414 | |||||
* | main/curl: security upgrade to 7.33.0 (CVE-2013-4545) | Natanael Copa | 2013-11-25 | 1 | -4/+4 | |
| | | | | fixes #2379 | |||||
* | main/nginx: security upgrade to 1.4.4 (CVE-2013-4547) | Natanael Copa | 2013-11-20 | 1 | -4/+4 | |
| | | | | fixes #2366 | |||||
* | main/lighttpd: various sec fixes (CVE-2013-4508,CVE-2013-4559,CVE-2013-4560) | Natanael Copa | 2013-11-15 | 5 | -1/+436 | |
| | | | | | ref #2350 fixes #2353 | |||||
* | main/lighttpd: upgrade to 1.4.33 | Natanael Copa | 2013-11-15 | 1 | -2/+26 | |
| | ||||||
* | main/varnish: fix maxminddb vcl sub | Timo Teräs | 2013-11-14 | 2 | -5/+4 | |
| | ||||||
* | main/linux-vserver: upgrade to 3.4.69 and fix CVE-2013-4348 | Natanael Copa | 2013-11-14 | 3 | -7/+26163 | |
| | | | | fixes #2320 | |||||
* | main/varnish: make maxminddb plugin always set X-GeoIP-* | Timo Teräs | 2013-11-14 | 2 | -21/+24 | |
| | | | | | | to allow consistent headers in case of any error. also adds now X-GeoIP-Error in case of any error. (cherry picked from commit 8d0c891912c6e04a4f68cff0bd2c41f6adb0550e) | |||||
* | main/varnish: add plugin to do maxmind geoip lookups | Timo Teräs | 2013-11-14 | 4 | -10/+102 | |
| | | | | (cherry picked from commit d32344d735b978fb7d30a9fcc4ad1141879c5433) | |||||
* | main/varnish: misc fixes in init.d script | Natanael Copa | 2013-11-14 | 4 | -27/+71 | |
| | | | | | | | | http://lists.alpinelinux.org/alpine-devel/3300.html (cherry picked from commit e0ae350c49a81528d3189e94e2286cd7a7d3cfd7) Conflicts: main/varnish/APKBUILD | |||||
* | main/libmaxminddb: new aport | Timo Teräs | 2013-11-14 | 5 | -0/+388 | |
| | | | | | | Maxmind GeoIP2 database library https://github.com/maxmind/$pkgname (cherry picked from commit 6fd658a9994c9d1d1aa3447bddc8c1a15744e766) | |||||
* | main/samba: security upgrade to 3.6.20 (CVE-2013-4475,CVE-2013-4476) | Natanael Copa | 2013-11-14 | 1 | -5/+5 | |
| | | | | fixes #2341 |