aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* main/tiff: fix secfix commentNatanael Copa2017-07-051-8/+8
| | | | may not have tabs
* main/curl: fix secfix commentNatanael Copa2017-07-051-24/+24
|
* main/apk-tools: security upgrade to 2.6.9Timo Teräs2017-06-231-9/+5
| | | | CVE-2017-9669, CVE-2017-9671
* main/libxml2: fix for CVE-2017-5969Natanael Copa2017-06-162-2/+69
| | | | fixes #6855
* main/libraw: security upgrade to 0.17.1 (CVE-2015-8366, CVE-2015-8367)Leonardo Arena2017-06-161-4/+10
| | | | Fixes #6911
* main/xen: security fixes #6918 (XSA-207, CVE-2017-2615, CVE-2017-2620)Leonardo Arena2017-06-167-1/+355
|
* main/putty: fix source URLLeonardo Arena2017-06-161-2/+2
|
* main/gdk-pixbuf: security fix (CVE-2017-6314)Leonardo Arena2017-06-162-4/+28
| | | | | | | Partially fixes #6957 CVE-2017-6311-2: patches don't apply CVE-2017-6313: fix N/A, https://bugzilla.gnome.org/show_bug.cgi?id=779016
* main/putty: security upgrade to 0.68 (CVE-2017-6542)Leonardo Arena2017-06-162-24/+10
| | | | Fixes #7076
* main/libsamplerate: security upgrade to 0.1.9 (CVE-2017-7697)Leonardo Arena2017-06-161-2/+8
| | | | Fixes #7165
* main/freetype: upgrade to 2.6.3. Security fixes #7269Leonardo Arena2017-06-154-15/+141
| | | | CVE-2016-10244, CVE-2017-8105, CVE-2017-8287
* main/xen: security fixes #7291Leonardo Arena2017-06-154-1/+268
| | | | CVE-2017-8903, CVE-2017-8904, CVE-2017-8905
* main/git: security fixes #7371 (CVE-2017-8386)Leonardo Arena2017-06-151-4/+8
|
* main/strongswan: add secinfoLeonardo Arena2017-06-151-0/+6
|
* main/strongswan: fix checksumsLeonardo Arena2017-06-151-2/+10
|
* main/strongswan: security fixes #7350 (CVE-2017-9022, CVE-2017-9023)Leonardo Arena2017-06-153-4/+420
|
* main/irssi: security fixes (CVE-2017-9468)Leonardo Arena2017-06-152-6/+77
| | | | Fixes #7398. Not affected by CVE-2017-9469.
* main/mosquitto: security upgrade to 1.4.12 (CVE-2017-7650)Leonardo Arena2017-06-151-4/+9
| | | | Fixes #7370
* main/openldap: sec fix for CVE-2017-9287Natanael Copa2017-06-152-2/+36
| | | | fixes #7365
* main/dropbear: security upgrade to 2017.75 (CVE-2017-9078, CVE-2017-9079)Leonardo Arena2017-06-131-6/+9
| | | | Fixes #7301
* main/gnutls: upgrade to 3.4.17. Security fixes #7420 (CVE-2017-7507)Leonardo Arena2017-06-135-34/+243
|
* community/wireshark: security upgrade to 2.0.13Leonardo Arena2017-06-131-4/+16
| | | | | | | | CVE-2017-9343, CVE-2017-9344, CVE-2017-9345, CVE-2017-9346, CVE-2017-9347, CVE-2017-9348, CVE-2017-9349, CVE-2017-9350, CVE-2017-9351, CVE-2017-9352, CVE-2017-9354 Fixes #7380
* main/postgresql: security upgrade to 9.4.12 (CVE-2017-7484, CVE-2017-7485, ↵Leonardo Arena2017-06-131-4/+11
| | | | | | CVE-2017-7486) Fixes #7385
* main/acf-provisioning: upgrade to 0.8.16Ted Trask2017-06-071-2/+2
|
* main/zlib: security upgrade to 1.2.11Natanael Copa2017-06-011-5/+13
| | | | | | | | | CVE-2016-9840 CVE-2016-9841 CVE-2016-9842 CVE-2016-9843 fixes #7359
* main/ghostscript: security upgrade (CVE-2017-5951, CVE-2017-7207, ↵Natanael Copa2017-05-307-136/+169
| | | | CVE-2017-8291).Fixes #7313
* main/libtasn1: fix the description of CVE-2017-6891Francesco Colista2017-05-251-1/+1
|
* main/libtasn1: security fix for CVE-2017-6891. Fixes #7331Francesco Colista2017-05-252-7/+51
|
* main/samba: secfix for CVE-2017-7494Natanael Copa2017-05-252-4/+44
| | | | fixes #7323
* main/libsndfile: security upgrade to 1.0.28 - fixes #7152Sergey Lukin2017-05-191-4/+9
| | | | | | CVE-2017-7585: Stack-based buffer overflow in flac_buffer_copy() CVE-2017-7741: invalid memory WRITE CVE-2017-7742: invalid memory READ
* main/linux-*: upgrade to 4.1.39 and fix CVE-2016-10229Shiz2017-05-0418-122/+332
|
* main/samba: security fixes #7053 (CVE-2017-2619)Leonardo Arena2017-05-022-4/+4232
|
* main/pidgin: security fixes #7003 (CVE-2017-2640)Leonardo Arena2017-05-022-4/+54
|
* main/mariadb: security upgrade to 10.1.22 - fixes #7017Leonardo Arena2017-05-011-29/+31
| | | | CVE-2017-3313, CVE-2017-3302
* main/wireshark: security upgrade to 2.0.12 - fixes #7185Leonardo Arena2017-04-281-28/+39
| | | | | | CVE-2017-7700, CVE-2017-7701, CVE-2017-7702, CVE-2017-7703, CVE-2017-7704, CVE-2017-7705, wnpa-sec-2017-18, wnpa-sec-2017-19, wnpa-sec-2017-20, wnpa-sec-2017-21
* main/roundcubemail: security upgrade to 1.1.9 (CVE-2017-8114)Leonardo Arena2017-04-281-4/+8
|
* main/xen: security fixes #7115 (CVE-2016-9603, CVE-2017-7228)Leonardo Arena2017-04-284-1/+588
|
* main/rtpproxy: cherry-pick upstream fix for possible packet flood issueTimo Teräs2017-04-272-1/+111
|
* main/libxslt: security fixes #7059 (CVE-2017-5029)Leonardo Arena2017-04-264-152/+89
| | | | Remove unneeded patches
* main/tiff: security fixes #7121Leonardo Arena2017-04-2611-6/+684
| | | | | | | CVE-2017-7592, CVE-2017-7593, CVE-2017-7594, CVE-2017-7595, CVE-2017-7596, CVE-2017-7598, CVE-2017-7601, CVE-2017-7602 CVE-2017-7597, CVE-2017-7599, CVE-2017-7600 are already included in upstream release
* main/bind: security upgrade to bind-9.10.4-P8 - fixes #7144Leonardo Arena2017-04-251-4/+8
| | | | | | CVE-2017-3136 CVE-2017-3137 CVE-2017-3138
* main/curl: security fixes #7176,#7136,#7080 (CVE-2017-7468, CVE-2017-7407, ↵Leonardo Arena2017-04-254-6/+439
| | | | CVE-2017-2629)
* main/icu: security fixes #7192 (CVE-2017-7867, CVE-2017-7868)Leonardo Arena2017-04-252-4/+168
|
* main/weechat: security fixes #7197 (CVE-2017-8073)Leonardo Arena2017-04-252-7/+32
|
* main/ghostscript: additional libopenjpeg build fixTimo Teräs2017-04-142-3/+18
|
* main/ghostscript: fix sse variable alignmentTimo Teräs2017-04-142-4/+19
| | | | | | fixes #7138 (cherry picked from commit 6784f21b55402e44a5da70ef16912bb19a28bd62)
* main/libxml2: sec fix for CVE-2016-9318Natanael Copa2017-04-132-7/+212
| | | | fixes #7128
* main/libxml2: secfix for CVE-2016-5153Natanael Copa2017-04-132-5/+184
|
* main/wget: security fixes #7090Sergey Lukin2017-04-062-5/+41
| | | | CVE-2017-6508: CRLF injection in the url_parse function in url.c
* main/py-django: security upgrade to 1.8.18Kaarle Ritvanen2017-04-051-6/+7
|