aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* main/py-django: security fix for CVE-2016-6186Natanael Copa2016-07-192-4/+73
| | | | fixes #5916
* main/wget: security upgrade to 1.18 (CVE-2016-4971)Natanael Copa2016-07-141-4/+4
| | | | fixes #5867
* main/mini_httpd: security upgrade to 1.23 (CVE-2015-1548)Natanael Copa2016-07-141-4/+4
| | | | fixes #5904
* main/tiff: security fixes. Fixes #5827Leonardo Arena2016-07-0412-1119/+349
| | | | | | | | | | | | CVE-2015-8665 CVE-2015-8683 CVE-2015-8781 CVE-2015-8782 CVE-2015-8784 (cherry picked from commit 7f2845dc97725af0dc4230433d9cb42a76c552db) (cherry picked from commit df6ff3e3449ac74fc39165229f9764d968aa58f4) (cherry picked from commit 975fe020cde058ed105ddc2f730983bd1a1263db)
* main/tiff: upgrade to 4.0.6Leonardo Arena2016-07-041-37/+5
| | | | (cherry picked from commit 6275bbb8fc87edb56770f3c6dcac494b56db826d)
* main/jansson: security fix for CVE-2016-4425Natanael Copa2016-07-042-6/+148
| | | | | | fixes #5794 (cherry picked from commit 36ab20a1ac9047916d193fc1aae1cf8be6b0ee23)
* main/libksba: security upgrade to 1.3.4. Fixes #5783Leonardo Arena2016-07-041-4/+4
|
* main/python: security upgrade to 2.7.12Natanael Copa2016-06-291-5/+5
| | | | | | | | CVE-2016-0772: smtplib StartTLS stripping attack. CVE-2016-5636: Heap overflow in zipimporter module . CVE-2016-5699: HTTP header injection in urrlib2/urllib/httplib/http.client. fixes #5803
* main/python: fix find_library with muslNatanael Copa2016-06-293-16/+48
| | | | | | | | | fixes #4512 (cherry picked from commit 78e9529bfe15f2cff42b4e124ebfb82c5707669d) Conflicts: main/python/APKBUILD
* main/giflib: upgrade to 5.1.1. Security fix (CVE-2015-7555). Fixes #5662Leonardo Arena2016-06-242-5/+35
| | | | (cherry picked from commit e923ae18b6f5631e1c3a468d33471a559aa06ac4)
* main/xen: security fixes. Fixes #5778Leonardo Arena2016-06-2426-1/+1995
| | | | | | | | | | | CVE-2016-4962, XSA-175: Unsanitised guest input in libxl device handling code http://xenbits.xen.org/xsa/advisory-175.html CVE-2016-4480, XSA-176: x86 software guest page walk PS bit handling flaw http://xenbits.xen.org/xsa/advisory-176.html CVE-2016-4963, XSA-178: Unsanitised driver domain input in libxl device handling http://xenbits.xen.org/xsa/advisory-178.html
* main/libxslt: security upgrade to 1.1.29 (CVE-2015-7995, CVE-2016-1683, ↵Leonardo Arena2016-06-241-6/+6
| | | | CVE-2016-1684). Fixes #5756
* main/vlc: security fix (CVE-2016-5108). Fixes #5718Leonardo Arena2016-06-232-1/+40
|
* main/nginx: security fix (CVE-2016-4450). Fixes #5678Leonardo Arena2016-06-232-1/+20
|
* main/librsvg: security upgrade to 2.40.12 (CVE-2015-7558). Fixes #5669Leonardo Arena2016-06-231-5/+5
|
* main/openssl: security fix for CVE-2016-2177, CVE-2016-2178Natanael Copa2016-06-223-4/+374
|
* main/hostapd: security fix for CVE-2016-4476Natanael Copa2016-06-222-1/+85
| | | | | | | fixes #5648 Conflicts: main/hostapd/APKBUILD
* main/curl: security upgrade to 7.49.1 (CVE-2016-3739)Natanael Copa2016-06-221-4/+4
| | | | fixes #5653
* main/jq: security fix (CVE-2015-8863). Fixes #5635Leonardo Arena2016-06-212-5/+56
| | | | (cherry picked from commit 8c0cdc63bf2093255f77634dbd02d064db39e7f0)
* main/wireshark: security upgrade to 1.12.12. Fixes #5626Leonardo Arena2016-06-211-4/+4
| | | | | | | | | | CVE-2016-4006 CVE-2016-4078 CVE-2016-4079 CVE-2016-4080 CVE-2016-4081 CVE-2016-4082 CVE-2016-4085
* main/gd: security fix (CVE-2016-3074). Fixes #5612Leonardo Arena2016-06-213-5/+100
| | | | (cherry picked from commit 03a7b7c153735bbd740e554845de18f3f5e7f4f5)
* main/expat: security fix (CVE-2016-0718). Fixes #5599Leonardo Arena2016-06-212-5/+766
| | | | (cherry picked from commit f178e940198d9adce71ee406dfcf6d71f2530629)
* main/libidn: security upgrade to 1.31 (CVE-2015-2059). Fixes #5587Leonardo Arena2016-06-211-5/+13
|
* main/expat: security upgrade to 2.1.1 (CVE-2015-1283). Fixes #5570Leonardo Arena2016-06-151-5/+7
|
* main/libarchive: security fix (CVE-2016-1541). Fixes #5564Leonardo Arena2016-06-142-4/+76
| | | | (cherry picked from commit fd77c7aec807195aafce696698671418dff7d932)
* main/poppler: security fix (CVE-2015-8868). Fixes #5536Leonardo Arena2016-06-142-9/+44
| | | | (cherry picked from commit b34bf3e1e7c3c9605a1535256894515ed100f979)
* main/subversion: security upgrade to 1.8.16 (CVE-2016-2167, CVE-2016-2168). ↵Leonardo Arena2016-06-141-4/+4
| | | | | | Fixes #5530 (cherry picked from commit fe1d1a2fab1c84836f19bfa20a7e548b8a6ac9dd)
* main/giflib: security fix (CVE-2016-3977). Fixes #5516Leonardo Arena2016-06-142-5/+92
| | | | (cherry picked from commit 514514446dd382063ff206ed5fbf7352b5f4e941)
* main/libxml2: security fixes (CVE-2015-8241, CVE-2015-8317, ↵Leonardo Arena2016-06-145-4/+257
| | | | | | CVE-2016-[1839,2073]). Fixes #5443 (cherry picked from commit e22db122a45967d60400d69e5697c7021a1fddc5)
* main/imlib2: security upgrade to 1.4.8Natanael Copa2016-06-141-4/+4
| | | | | | | | | | | CVE-2011-5326 CVE-2016-3993 CVE-2016-3994 fixes #5417 (cherry picked from commit b0f10b0622fc0c598162982373d9e50073c8fee0) Signed-off-by: Leonardo Arena <rnalrd@alpinelinux.org>
* main/cacti: security upgrade to 0.8.8g (CVE-2016-3659). Fixes #5374Leonardo Arena2016-06-143-245/+5
| | | | (cherry picked from commit 97b21981f757e729a042315e70d86ffb8bbb0769)
* main/acf-openssh: upgrade to 0.9.1Ted Trask2016-06-101-4/+4
|
* main/owncloud: upgrade to 7.0.15Leonardo Arena2016-05-261-4/+4
|
* main/imlib2: security fix (CVE-2016-4024). Fixes #5520Leonardo Arena2016-05-114-88/+54
| | | | (cherry picked from commit 4ab4dc28195ac810b25649d6b25ada802248bfdf)
* main/owncloud: upgrade to 7.0.14Leonardo Arena2016-05-102-8/+8
|
* main/squid: security fixes (CVE-2016-3947, CVE-2016-4052, CVE-2016-4053, ↵Leonardo Arena2016-05-093-1/+157
| | | | CVE-2016-4054). Fixes #5510
* main/xen: security fixes (CVE-2016-3158, CVE-2016-3159, CVE-2016-3960). ↵Leonardo Arena2016-05-093-1/+299
| | | | Fixes #5492
* main/pcre: several fixes including CVEsLeonardo Arena2016-05-096-229/+1417
| | | | | | | | | | | | | | | | | | | Fixes #5475 Fixes #5469 Fixes #5465 CVE-2016-1283 CVE-2016-3191 CVE-2015-8380 CVE-2015-8381 CVE-2015-8383 CVE-2015-8384 CVE-2015-8392 CVE-2015-8393 CVE-2015-8394 CVE-2015-8382
* main/krb5: security fix (CVE-2016-3119). Fixes #5456Leonardo Arena2016-05-062-1/+43
| | | | (cherry picked from commit 05938f5d600237226f4ad284a87afe5aaff1d4fb)
* main/libtasn1: security fix (CVE-2016-4008). Fixes #5450Leonardo Arena2016-05-052-6/+52
| | | | (cherry picked from commit 9802b7359f81e3b3aa657308501b7cdddbcfaf87)
* main/pidgin-otr: security upgrade to 4.0.2 (CVE-2015-8833). Fixes #5431Leonardo Arena2016-05-051-5/+5
| | | | (cherry picked from commit f19e408cd97572c48ab57f020aeb8d62acf50e12)
* main/openssl: security upgrade to 1.0.1tTimo Teräs2016-05-041-5/+5
| | | | | | | | CVE-2016-2107 Prevent padding oracle in AES-NI CBC MAC check CVE-2016-2105 Fix EVP_EncodeUpdate overflow CVE-2016-2106 Fix EVP_EncryptUpdate overflow CVE-2016-2109 Prevent ASN.1 BIO excessive memory allocation CVE-2016-2176 EBCDIC overread
* main/php: security upgrade to 5.6.21Kaarle Ritvanen2016-05-022-49/+4
| | | | | CVE-2016-3074 CVE-2016-3078
* main/roundcubemail: security upgrade to 1.0.9 (CVE-2015-2181)Leonardo Arena2016-04-211-6/+6
| | | | https://github.com/roundcube/roundcubemail/issues/4949
* main/libmatroska: actually upgrade to 1.4.4Leonardo Arena2016-04-191-4/+5
|
* main/libmatroska: security upgrade to 1.4.4 (CVE-2015-8792). Fixes #5406Timo Teräs2016-04-191-7/+13
|
* main/libebml: security upgrade to 1.3.3 (CVE-2015-8789, CVE-2015-8790, ↵Leonardo Arena2016-04-191-6/+13
| | | | CVE-2015-8791). Fixes #5400
* main/mercurial: upd checksumsLeonardo Arena2016-04-191-13/+7
|
* main/mercurial: security fix (CVE-2016-3068). Fixes #5394Leonardo Arena2016-04-193-2/+101
|
* main/kamailio: upgrade to 4.2.7, security fix (CVE-2016-2385). Fixes #5352Leonardo Arena2016-04-113-54/+49
|