Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/py-django: security fix for CVE-2016-6186 | Natanael Copa | 2016-07-19 | 2 | -4/+73 | |
| | | | | fixes #5916 | |||||
* | main/wget: security upgrade to 1.18 (CVE-2016-4971) | Natanael Copa | 2016-07-14 | 1 | -4/+4 | |
| | | | | fixes #5867 | |||||
* | main/mini_httpd: security upgrade to 1.23 (CVE-2015-1548) | Natanael Copa | 2016-07-14 | 1 | -4/+4 | |
| | | | | fixes #5904 | |||||
* | main/tiff: security fixes. Fixes #5827 | Leonardo Arena | 2016-07-04 | 12 | -1119/+349 | |
| | | | | | | | | | | | | CVE-2015-8665 CVE-2015-8683 CVE-2015-8781 CVE-2015-8782 CVE-2015-8784 (cherry picked from commit 7f2845dc97725af0dc4230433d9cb42a76c552db) (cherry picked from commit df6ff3e3449ac74fc39165229f9764d968aa58f4) (cherry picked from commit 975fe020cde058ed105ddc2f730983bd1a1263db) | |||||
* | main/tiff: upgrade to 4.0.6 | Leonardo Arena | 2016-07-04 | 1 | -37/+5 | |
| | | | | (cherry picked from commit 6275bbb8fc87edb56770f3c6dcac494b56db826d) | |||||
* | main/jansson: security fix for CVE-2016-4425 | Natanael Copa | 2016-07-04 | 2 | -6/+148 | |
| | | | | | | fixes #5794 (cherry picked from commit 36ab20a1ac9047916d193fc1aae1cf8be6b0ee23) | |||||
* | main/libksba: security upgrade to 1.3.4. Fixes #5783 | Leonardo Arena | 2016-07-04 | 1 | -4/+4 | |
| | ||||||
* | main/python: security upgrade to 2.7.12 | Natanael Copa | 2016-06-29 | 1 | -5/+5 | |
| | | | | | | | | CVE-2016-0772: smtplib StartTLS stripping attack. CVE-2016-5636: Heap overflow in zipimporter module . CVE-2016-5699: HTTP header injection in urrlib2/urllib/httplib/http.client. fixes #5803 | |||||
* | main/python: fix find_library with musl | Natanael Copa | 2016-06-29 | 3 | -16/+48 | |
| | | | | | | | | | fixes #4512 (cherry picked from commit 78e9529bfe15f2cff42b4e124ebfb82c5707669d) Conflicts: main/python/APKBUILD | |||||
* | main/giflib: upgrade to 5.1.1. Security fix (CVE-2015-7555). Fixes #5662 | Leonardo Arena | 2016-06-24 | 2 | -5/+35 | |
| | | | | (cherry picked from commit e923ae18b6f5631e1c3a468d33471a559aa06ac4) | |||||
* | main/xen: security fixes. Fixes #5778 | Leonardo Arena | 2016-06-24 | 26 | -1/+1995 | |
| | | | | | | | | | | | CVE-2016-4962, XSA-175: Unsanitised guest input in libxl device handling code http://xenbits.xen.org/xsa/advisory-175.html CVE-2016-4480, XSA-176: x86 software guest page walk PS bit handling flaw http://xenbits.xen.org/xsa/advisory-176.html CVE-2016-4963, XSA-178: Unsanitised driver domain input in libxl device handling http://xenbits.xen.org/xsa/advisory-178.html | |||||
* | main/libxslt: security upgrade to 1.1.29 (CVE-2015-7995, CVE-2016-1683, ↵ | Leonardo Arena | 2016-06-24 | 1 | -6/+6 | |
| | | | | CVE-2016-1684). Fixes #5756 | |||||
* | main/vlc: security fix (CVE-2016-5108). Fixes #5718 | Leonardo Arena | 2016-06-23 | 2 | -1/+40 | |
| | ||||||
* | main/nginx: security fix (CVE-2016-4450). Fixes #5678 | Leonardo Arena | 2016-06-23 | 2 | -1/+20 | |
| | ||||||
* | main/librsvg: security upgrade to 2.40.12 (CVE-2015-7558). Fixes #5669 | Leonardo Arena | 2016-06-23 | 1 | -5/+5 | |
| | ||||||
* | main/openssl: security fix for CVE-2016-2177, CVE-2016-2178 | Natanael Copa | 2016-06-22 | 3 | -4/+374 | |
| | ||||||
* | main/hostapd: security fix for CVE-2016-4476 | Natanael Copa | 2016-06-22 | 2 | -1/+85 | |
| | | | | | | | fixes #5648 Conflicts: main/hostapd/APKBUILD | |||||
* | main/curl: security upgrade to 7.49.1 (CVE-2016-3739) | Natanael Copa | 2016-06-22 | 1 | -4/+4 | |
| | | | | fixes #5653 | |||||
* | main/jq: security fix (CVE-2015-8863). Fixes #5635 | Leonardo Arena | 2016-06-21 | 2 | -5/+56 | |
| | | | | (cherry picked from commit 8c0cdc63bf2093255f77634dbd02d064db39e7f0) | |||||
* | main/wireshark: security upgrade to 1.12.12. Fixes #5626 | Leonardo Arena | 2016-06-21 | 1 | -4/+4 | |
| | | | | | | | | | | CVE-2016-4006 CVE-2016-4078 CVE-2016-4079 CVE-2016-4080 CVE-2016-4081 CVE-2016-4082 CVE-2016-4085 | |||||
* | main/gd: security fix (CVE-2016-3074). Fixes #5612 | Leonardo Arena | 2016-06-21 | 3 | -5/+100 | |
| | | | | (cherry picked from commit 03a7b7c153735bbd740e554845de18f3f5e7f4f5) | |||||
* | main/expat: security fix (CVE-2016-0718). Fixes #5599 | Leonardo Arena | 2016-06-21 | 2 | -5/+766 | |
| | | | | (cherry picked from commit f178e940198d9adce71ee406dfcf6d71f2530629) | |||||
* | main/libidn: security upgrade to 1.31 (CVE-2015-2059). Fixes #5587 | Leonardo Arena | 2016-06-21 | 1 | -5/+13 | |
| | ||||||
* | main/expat: security upgrade to 2.1.1 (CVE-2015-1283). Fixes #5570 | Leonardo Arena | 2016-06-15 | 1 | -5/+7 | |
| | ||||||
* | main/libarchive: security fix (CVE-2016-1541). Fixes #5564 | Leonardo Arena | 2016-06-14 | 2 | -4/+76 | |
| | | | | (cherry picked from commit fd77c7aec807195aafce696698671418dff7d932) | |||||
* | main/poppler: security fix (CVE-2015-8868). Fixes #5536 | Leonardo Arena | 2016-06-14 | 2 | -9/+44 | |
| | | | | (cherry picked from commit b34bf3e1e7c3c9605a1535256894515ed100f979) | |||||
* | main/subversion: security upgrade to 1.8.16 (CVE-2016-2167, CVE-2016-2168). ↵ | Leonardo Arena | 2016-06-14 | 1 | -4/+4 | |
| | | | | | | Fixes #5530 (cherry picked from commit fe1d1a2fab1c84836f19bfa20a7e548b8a6ac9dd) | |||||
* | main/giflib: security fix (CVE-2016-3977). Fixes #5516 | Leonardo Arena | 2016-06-14 | 2 | -5/+92 | |
| | | | | (cherry picked from commit 514514446dd382063ff206ed5fbf7352b5f4e941) | |||||
* | main/libxml2: security fixes (CVE-2015-8241, CVE-2015-8317, ↵ | Leonardo Arena | 2016-06-14 | 5 | -4/+257 | |
| | | | | | | CVE-2016-[1839,2073]). Fixes #5443 (cherry picked from commit e22db122a45967d60400d69e5697c7021a1fddc5) | |||||
* | main/imlib2: security upgrade to 1.4.8 | Natanael Copa | 2016-06-14 | 1 | -4/+4 | |
| | | | | | | | | | | | CVE-2011-5326 CVE-2016-3993 CVE-2016-3994 fixes #5417 (cherry picked from commit b0f10b0622fc0c598162982373d9e50073c8fee0) Signed-off-by: Leonardo Arena <rnalrd@alpinelinux.org> | |||||
* | main/cacti: security upgrade to 0.8.8g (CVE-2016-3659). Fixes #5374 | Leonardo Arena | 2016-06-14 | 3 | -245/+5 | |
| | | | | (cherry picked from commit 97b21981f757e729a042315e70d86ffb8bbb0769) | |||||
* | main/acf-openssh: upgrade to 0.9.1 | Ted Trask | 2016-06-10 | 1 | -4/+4 | |
| | ||||||
* | main/owncloud: upgrade to 7.0.15 | Leonardo Arena | 2016-05-26 | 1 | -4/+4 | |
| | ||||||
* | main/imlib2: security fix (CVE-2016-4024). Fixes #5520 | Leonardo Arena | 2016-05-11 | 4 | -88/+54 | |
| | | | | (cherry picked from commit 4ab4dc28195ac810b25649d6b25ada802248bfdf) | |||||
* | main/owncloud: upgrade to 7.0.14 | Leonardo Arena | 2016-05-10 | 2 | -8/+8 | |
| | ||||||
* | main/squid: security fixes (CVE-2016-3947, CVE-2016-4052, CVE-2016-4053, ↵ | Leonardo Arena | 2016-05-09 | 3 | -1/+157 | |
| | | | | CVE-2016-4054). Fixes #5510 | |||||
* | main/xen: security fixes (CVE-2016-3158, CVE-2016-3159, CVE-2016-3960). ↵ | Leonardo Arena | 2016-05-09 | 3 | -1/+299 | |
| | | | | Fixes #5492 | |||||
* | main/pcre: several fixes including CVEs | Leonardo Arena | 2016-05-09 | 6 | -229/+1417 | |
| | | | | | | | | | | | | | | | | | | | Fixes #5475 Fixes #5469 Fixes #5465 CVE-2016-1283 CVE-2016-3191 CVE-2015-8380 CVE-2015-8381 CVE-2015-8383 CVE-2015-8384 CVE-2015-8392 CVE-2015-8393 CVE-2015-8394 CVE-2015-8382 | |||||
* | main/krb5: security fix (CVE-2016-3119). Fixes #5456 | Leonardo Arena | 2016-05-06 | 2 | -1/+43 | |
| | | | | (cherry picked from commit 05938f5d600237226f4ad284a87afe5aaff1d4fb) | |||||
* | main/libtasn1: security fix (CVE-2016-4008). Fixes #5450 | Leonardo Arena | 2016-05-05 | 2 | -6/+52 | |
| | | | | (cherry picked from commit 9802b7359f81e3b3aa657308501b7cdddbcfaf87) | |||||
* | main/pidgin-otr: security upgrade to 4.0.2 (CVE-2015-8833). Fixes #5431 | Leonardo Arena | 2016-05-05 | 1 | -5/+5 | |
| | | | | (cherry picked from commit f19e408cd97572c48ab57f020aeb8d62acf50e12) | |||||
* | main/openssl: security upgrade to 1.0.1t | Timo Teräs | 2016-05-04 | 1 | -5/+5 | |
| | | | | | | | | CVE-2016-2107 Prevent padding oracle in AES-NI CBC MAC check CVE-2016-2105 Fix EVP_EncodeUpdate overflow CVE-2016-2106 Fix EVP_EncryptUpdate overflow CVE-2016-2109 Prevent ASN.1 BIO excessive memory allocation CVE-2016-2176 EBCDIC overread | |||||
* | main/php: security upgrade to 5.6.21 | Kaarle Ritvanen | 2016-05-02 | 2 | -49/+4 | |
| | | | | | CVE-2016-3074 CVE-2016-3078 | |||||
* | main/roundcubemail: security upgrade to 1.0.9 (CVE-2015-2181) | Leonardo Arena | 2016-04-21 | 1 | -6/+6 | |
| | | | | https://github.com/roundcube/roundcubemail/issues/4949 | |||||
* | main/libmatroska: actually upgrade to 1.4.4 | Leonardo Arena | 2016-04-19 | 1 | -4/+5 | |
| | ||||||
* | main/libmatroska: security upgrade to 1.4.4 (CVE-2015-8792). Fixes #5406 | Timo Teräs | 2016-04-19 | 1 | -7/+13 | |
| | ||||||
* | main/libebml: security upgrade to 1.3.3 (CVE-2015-8789, CVE-2015-8790, ↵ | Leonardo Arena | 2016-04-19 | 1 | -6/+13 | |
| | | | | CVE-2015-8791). Fixes #5400 | |||||
* | main/mercurial: upd checksums | Leonardo Arena | 2016-04-19 | 1 | -13/+7 | |
| | ||||||
* | main/mercurial: security fix (CVE-2016-3068). Fixes #5394 | Leonardo Arena | 2016-04-19 | 3 | -2/+101 | |
| | ||||||
* | main/kamailio: upgrade to 4.2.7, security fix (CVE-2016-2385). Fixes #5352 | Leonardo Arena | 2016-04-11 | 3 | -54/+49 | |
| |