Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/tiff: fix secfix comment | Natanael Copa | 2017-07-05 | 1 | -8/+8 | |
| | | | | may not have tabs | |||||
* | main/curl: fix secfix comment | Natanael Copa | 2017-07-05 | 1 | -24/+24 | |
| | ||||||
* | main/apk-tools: security upgrade to 2.6.9 | Timo Teräs | 2017-06-23 | 1 | -9/+5 | |
| | | | | CVE-2017-9669, CVE-2017-9671 | |||||
* | main/libxml2: fix for CVE-2017-5969 | Natanael Copa | 2017-06-16 | 2 | -2/+69 | |
| | | | | fixes #6855 | |||||
* | main/libraw: security upgrade to 0.17.1 (CVE-2015-8366, CVE-2015-8367) | Leonardo Arena | 2017-06-16 | 1 | -4/+10 | |
| | | | | Fixes #6911 | |||||
* | main/xen: security fixes #6918 (XSA-207, CVE-2017-2615, CVE-2017-2620) | Leonardo Arena | 2017-06-16 | 7 | -1/+355 | |
| | ||||||
* | main/putty: fix source URL | Leonardo Arena | 2017-06-16 | 1 | -2/+2 | |
| | ||||||
* | main/gdk-pixbuf: security fix (CVE-2017-6314) | Leonardo Arena | 2017-06-16 | 2 | -4/+28 | |
| | | | | | | | Partially fixes #6957 CVE-2017-6311-2: patches don't apply CVE-2017-6313: fix N/A, https://bugzilla.gnome.org/show_bug.cgi?id=779016 | |||||
* | main/putty: security upgrade to 0.68 (CVE-2017-6542) | Leonardo Arena | 2017-06-16 | 2 | -24/+10 | |
| | | | | Fixes #7076 | |||||
* | main/libsamplerate: security upgrade to 0.1.9 (CVE-2017-7697) | Leonardo Arena | 2017-06-16 | 1 | -2/+8 | |
| | | | | Fixes #7165 | |||||
* | main/freetype: upgrade to 2.6.3. Security fixes #7269 | Leonardo Arena | 2017-06-15 | 4 | -15/+141 | |
| | | | | CVE-2016-10244, CVE-2017-8105, CVE-2017-8287 | |||||
* | main/xen: security fixes #7291 | Leonardo Arena | 2017-06-15 | 4 | -1/+268 | |
| | | | | CVE-2017-8903, CVE-2017-8904, CVE-2017-8905 | |||||
* | main/git: security fixes #7371 (CVE-2017-8386) | Leonardo Arena | 2017-06-15 | 1 | -4/+8 | |
| | ||||||
* | main/strongswan: add secinfo | Leonardo Arena | 2017-06-15 | 1 | -0/+6 | |
| | ||||||
* | main/strongswan: fix checksums | Leonardo Arena | 2017-06-15 | 1 | -2/+10 | |
| | ||||||
* | main/strongswan: security fixes #7350 (CVE-2017-9022, CVE-2017-9023) | Leonardo Arena | 2017-06-15 | 3 | -4/+420 | |
| | ||||||
* | main/irssi: security fixes (CVE-2017-9468) | Leonardo Arena | 2017-06-15 | 2 | -6/+77 | |
| | | | | Fixes #7398. Not affected by CVE-2017-9469. | |||||
* | main/mosquitto: security upgrade to 1.4.12 (CVE-2017-7650) | Leonardo Arena | 2017-06-15 | 1 | -4/+9 | |
| | | | | Fixes #7370 | |||||
* | main/openldap: sec fix for CVE-2017-9287 | Natanael Copa | 2017-06-15 | 2 | -2/+36 | |
| | | | | fixes #7365 | |||||
* | main/dropbear: security upgrade to 2017.75 (CVE-2017-9078, CVE-2017-9079) | Leonardo Arena | 2017-06-13 | 1 | -6/+9 | |
| | | | | Fixes #7301 | |||||
* | main/gnutls: upgrade to 3.4.17. Security fixes #7420 (CVE-2017-7507) | Leonardo Arena | 2017-06-13 | 5 | -34/+243 | |
| | ||||||
* | community/wireshark: security upgrade to 2.0.13 | Leonardo Arena | 2017-06-13 | 1 | -4/+16 | |
| | | | | | | | | CVE-2017-9343, CVE-2017-9344, CVE-2017-9345, CVE-2017-9346, CVE-2017-9347, CVE-2017-9348, CVE-2017-9349, CVE-2017-9350, CVE-2017-9351, CVE-2017-9352, CVE-2017-9354 Fixes #7380 | |||||
* | main/postgresql: security upgrade to 9.4.12 (CVE-2017-7484, CVE-2017-7485, ↵ | Leonardo Arena | 2017-06-13 | 1 | -4/+11 | |
| | | | | | | CVE-2017-7486) Fixes #7385 | |||||
* | main/acf-provisioning: upgrade to 0.8.16 | Ted Trask | 2017-06-07 | 1 | -2/+2 | |
| | ||||||
* | main/zlib: security upgrade to 1.2.11 | Natanael Copa | 2017-06-01 | 1 | -5/+13 | |
| | | | | | | | | | CVE-2016-9840 CVE-2016-9841 CVE-2016-9842 CVE-2016-9843 fixes #7359 | |||||
* | main/ghostscript: security upgrade (CVE-2017-5951, CVE-2017-7207, ↵ | Natanael Copa | 2017-05-30 | 7 | -136/+169 | |
| | | | | CVE-2017-8291).Fixes #7313 | |||||
* | main/libtasn1: fix the description of CVE-2017-6891 | Francesco Colista | 2017-05-25 | 1 | -1/+1 | |
| | ||||||
* | main/libtasn1: security fix for CVE-2017-6891. Fixes #7331 | Francesco Colista | 2017-05-25 | 2 | -7/+51 | |
| | ||||||
* | main/samba: secfix for CVE-2017-7494 | Natanael Copa | 2017-05-25 | 2 | -4/+44 | |
| | | | | fixes #7323 | |||||
* | main/libsndfile: security upgrade to 1.0.28 - fixes #7152 | Sergey Lukin | 2017-05-19 | 1 | -4/+9 | |
| | | | | | | CVE-2017-7585: Stack-based buffer overflow in flac_buffer_copy() CVE-2017-7741: invalid memory WRITE CVE-2017-7742: invalid memory READ | |||||
* | main/linux-*: upgrade to 4.1.39 and fix CVE-2016-10229 | Shiz | 2017-05-04 | 18 | -122/+332 | |
| | ||||||
* | main/samba: security fixes #7053 (CVE-2017-2619) | Leonardo Arena | 2017-05-02 | 2 | -4/+4232 | |
| | ||||||
* | main/pidgin: security fixes #7003 (CVE-2017-2640) | Leonardo Arena | 2017-05-02 | 2 | -4/+54 | |
| | ||||||
* | main/mariadb: security upgrade to 10.1.22 - fixes #7017 | Leonardo Arena | 2017-05-01 | 1 | -29/+31 | |
| | | | | CVE-2017-3313, CVE-2017-3302 | |||||
* | main/wireshark: security upgrade to 2.0.12 - fixes #7185 | Leonardo Arena | 2017-04-28 | 1 | -28/+39 | |
| | | | | | | CVE-2017-7700, CVE-2017-7701, CVE-2017-7702, CVE-2017-7703, CVE-2017-7704, CVE-2017-7705, wnpa-sec-2017-18, wnpa-sec-2017-19, wnpa-sec-2017-20, wnpa-sec-2017-21 | |||||
* | main/roundcubemail: security upgrade to 1.1.9 (CVE-2017-8114) | Leonardo Arena | 2017-04-28 | 1 | -4/+8 | |
| | ||||||
* | main/xen: security fixes #7115 (CVE-2016-9603, CVE-2017-7228) | Leonardo Arena | 2017-04-28 | 4 | -1/+588 | |
| | ||||||
* | main/rtpproxy: cherry-pick upstream fix for possible packet flood issue | Timo Teräs | 2017-04-27 | 2 | -1/+111 | |
| | ||||||
* | main/libxslt: security fixes #7059 (CVE-2017-5029) | Leonardo Arena | 2017-04-26 | 4 | -152/+89 | |
| | | | | Remove unneeded patches | |||||
* | main/tiff: security fixes #7121 | Leonardo Arena | 2017-04-26 | 11 | -6/+684 | |
| | | | | | | | CVE-2017-7592, CVE-2017-7593, CVE-2017-7594, CVE-2017-7595, CVE-2017-7596, CVE-2017-7598, CVE-2017-7601, CVE-2017-7602 CVE-2017-7597, CVE-2017-7599, CVE-2017-7600 are already included in upstream release | |||||
* | main/bind: security upgrade to bind-9.10.4-P8 - fixes #7144 | Leonardo Arena | 2017-04-25 | 1 | -4/+8 | |
| | | | | | | CVE-2017-3136 CVE-2017-3137 CVE-2017-3138 | |||||
* | main/curl: security fixes #7176,#7136,#7080 (CVE-2017-7468, CVE-2017-7407, ↵ | Leonardo Arena | 2017-04-25 | 4 | -6/+439 | |
| | | | | CVE-2017-2629) | |||||
* | main/icu: security fixes #7192 (CVE-2017-7867, CVE-2017-7868) | Leonardo Arena | 2017-04-25 | 2 | -4/+168 | |
| | ||||||
* | main/weechat: security fixes #7197 (CVE-2017-8073) | Leonardo Arena | 2017-04-25 | 2 | -7/+32 | |
| | ||||||
* | main/ghostscript: additional libopenjpeg build fix | Timo Teräs | 2017-04-14 | 2 | -3/+18 | |
| | ||||||
* | main/ghostscript: fix sse variable alignment | Timo Teräs | 2017-04-14 | 2 | -4/+19 | |
| | | | | | | fixes #7138 (cherry picked from commit 6784f21b55402e44a5da70ef16912bb19a28bd62) | |||||
* | main/libxml2: sec fix for CVE-2016-9318 | Natanael Copa | 2017-04-13 | 2 | -7/+212 | |
| | | | | fixes #7128 | |||||
* | main/libxml2: secfix for CVE-2016-5153 | Natanael Copa | 2017-04-13 | 2 | -5/+184 | |
| | ||||||
* | main/wget: security fixes #7090 | Sergey Lukin | 2017-04-06 | 2 | -5/+41 | |
| | | | | CVE-2017-6508: CRLF injection in the url_parse function in url.c | |||||
* | main/py-django: security upgrade to 1.8.18 | Kaarle Ritvanen | 2017-04-05 | 1 | -6/+7 | |
| |