aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* Security fix (CVE-2016-3119). Fixes #5454Leonardo Arena2016-05-052-1/+43
| | | | (cherry picked from commit 563219286cc5231fa8d48ce13886e258e632bad5)
* main/libtasn1: security fix (CVE-2016-4008). Fixes #5448Leonardo Arena2016-05-052-5/+51
|
* main/pidgin-otr: security upgrade to 4.0.2 (CVE-2015-8833). Fixes #5429Leonardo Arena2016-05-051-5/+5
|
* main/openssl: security upgrade to 1.0.2hTimo Teräs2016-05-041-5/+5
| | | | | | | | CVE-2016-2107 Prevent padding oracle in AES-NI CBC MAC check CVE-2016-2105 Fix EVP_EncodeUpdate overflow CVE-2016-2106 Fix EVP_EncryptUpdate overflow CVE-2016-2109 Prevent ASN.1 BIO excessive memory allocation CVE-2016-2176 EBCDIC overread
* main/php: security upgrade to 5.6.21Kaarle Ritvanen2016-05-022-49/+4
| | | | | CVE-2016-3074 CVE-2016-3078
* main/acf-openssh: upgrade to 0.11.0Ted Trask2016-04-271-5/+5
| | | | (cherry picked from commit 56c33fd46545788710145efb345b6f5d627b0958)
* community/go: security upgrade to 1.5.4 (CVE-2016-3958,CVE-2016-3959)Natanael Copa2016-04-261-7/+7
| | | | fixes #5434
* main/py-lxml: upgrade to 3.5.0Francesco Colista2016-04-211-4/+4
|
* main/roundcubemail: security upgrade to 1.1.5 (CVE-2015-2181)Leonardo Arena2016-04-211-5/+5
| | | | | | https://github.com/roundcube/roundcubemail/issues/4949 https://github.com/roundcube/roundcubemail/issues/4957 (cherry picked from commit 1c47bb194e5eb625f9d585d14858c8e36db58aa6)
* main/acf-provisioning: upgrade to 0.8.12Ted Trask2016-04-201-4/+4
|
* main/zabbix: upgrade to 2.4.8Leonardo Arena2016-04-201-5/+5
|
* main/mercurial: security upgrade to 3.7.3Natanael Copa2016-04-181-5/+5
| | | | | | | | CVE-2016-3630 CVE-2016-3068 CVE-2016-3069 fixes #5392
* main/libmatroska: sec upgrade to 1.4.4 (CVE-2015-8792)Timo Teräs2016-04-181-5/+5
| | | | | | fixes #5404 (cherry picked from commit 19e60f13ef015dfb3f0e5d705b0626e4b24df886)
* main/libebml: upgrade to 1.3.3Timo Teräs2016-04-181-4/+4
| | | | | | ref #5404 (cherry picked from commit eba7d422bfdc722b02d68672186dc00450a7023a)
* main/freeswitch: upgrade to 1.6.7Natanael Copa2016-04-183-67/+10
| | | | fixes #5419
* main/multipath-tools: fix blacklisting of scsi devicesNatanael Copa2016-04-152-4/+36
| | | | | | | | | | | | bug report: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=782488 fix from upstream: http://git.opensvc.com/gitweb.cgi?p=multipath-tools/.git;a=commitdiff;h=d041591e42b69e2ff99d9cc5c1111c83ccde3207 fixes #5396 (cherry picked from commit 8c958d609fb86f7c0450dbcbc06aefe7b5c373f1)
* main/imlib2: security upgrade to 1.4.8Natanael Copa2016-04-151-4/+4
| | | | | | | | CVE-2011-5326 CVE-2016-3993 CVE-2016-3994 fixes #5415
* main/varnish: fix init.d scriptNatanael Copa2016-04-142-5/+5
| | | | | | | varnish 4.1 removed the -u and -g options. fix init.d script accordingly. (cherry picked from commit 486eeb38c83c6fbfa2391afc54c82b35b7ec795a)
* main/varnish: upgrade to 4.1.2Natanael Copa2016-04-141-4/+4
| | | | (cherry picked from commit 2fb11660db2a8b6c13dc93e61a8f109ecf50cfb0)
* main/lighttpd: upgrade to 1.4.39Natanael Copa2016-04-141-4/+4
|
* main/lua-sql: bump pkgrelFrancesco Colista2016-04-131-1/+1
|
* main/busybox-initscripts: make mdev recognize dri devices on new kernelsIsaac Dunham2016-04-132-4/+5
| | | | | | | | | -- When mdev is used with X, this allows users in group 'video' to use OpenGL, instead of just users in 'root'. A similar fix may be needed for eudev. (cherry picked from commit 61254e78ff3679e7de3f31d5a65378af50706371)
* main/libc6-compat: add symlink for libcrypt.so.1Jakub Jirutka2016-04-081-2/+2
| | | | | | | | | http://wiki.musl-libc.org/wiki/FAQ#Q:_lib.5Bm.7Cpthread.7Ccrypt.5D.a.2Fso_are_empty.21 https://github.com/jnr/jnr-posix/issues/73#issue-145821125 fixes #5385 (cherry picked from commit 02a0b7642987a34be6abfb6cf45f15d86f4d909e)
* main/lua-aports: fix buildrepo -dNatanael Copa2016-04-082-4/+121
| | | | (cherry picked from commit a94f0b6bc60aa1dcbdfa7341e4777a15d22bd9e3)
* main/openvswitch: security fix (CVE-2016-2074). Fixes #5337Leonardo Arena2016-04-062-4/+86
|
* main/quagga: security fix (CVE-2016-2342). Fixes #5340Leonardo Arena2016-04-063-1/+167
|
* main/php: security upgrade to 5.6.20Kaarle Ritvanen2016-04-041-4/+4
|
* main/musl: add upstream fix for memmemNatanael Copa2016-04-012-1/+40
| | | | | | fixes https://github.com/docker-library/ruby/issues/77 (cherry picked from commit 4ad5f408b8cc7952c83ce677aad0143657deed6f)
* main/qt5-qtdeclarative: disable stach size checking when not using glibcMarkus Pyykkö2016-04-012-5/+21
| | | | qt tries to check stack size using glibc-specific extension in pthreads
* main/perl-pathtools: security upgrade to 3.62 (CVE-2015-8607). Fixes: #5329Sergey Lukin2016-03-311-6/+6
| | | | Signed-off-by: Leonardo Arena <rnalrd@alpinelinux.org>
* community/openjdk8: security upgrade to 8u77 (CVE-2016-0636)Timo Teräs2016-03-261-27/+27
| | | | (cherry picked from commit 5691ec7d053dda52117e9b327c67888c29a2e9e4)
* main/opensmtpd: upgrade to 5.7.3p2Sören Tempel2016-03-241-9/+10
| | | | (cherry picked from commit 9c921ec7cb3a801d9232ded2916e3aa897d6603c)
* main/opensmtpd: fixed ca-file locationScrumpyJack2016-03-241-1/+2
| | | | | | | Added configure option --with-ca-file=/etc/ssl/certs/ca-certificates.crt The default was /etc/ssl/cert.pem and broke starttls (cherry picked from commit cb1a90350fd566695a7c21ee3e97e6931e53da71)
* main/mariadb: bump pkgrelCarlo Landmeter2016-03-241-1/+1
| | | | (cherry picked from commit a95283b58a982eb8e5805f816b7a32d0261f90e3)
* main/mariadb: fix init.d scriptNatanael Copa2016-03-242-6/+11
| | | | | | | - find the pidfile from *_pre script instead from global scope - move init.d script to the server package instead of -common (cherry picked from commit 13d027613dc9bc51202eb338821c558580c031a4)
* main/mariadb: fix ucontext configure checkTimo Teräs2016-03-242-3/+26
| | | | | | | | musl ships the header for other purposes, but makecontext is not implemented. fix the check to detect if makecontext is implemented before enabling code using it. (cherry picked from commit 6e4ec8d55d87327ea4b9900825bd52086cb2f946)
* main/mariadb: re-enable on armhfTimo Teräs2016-03-241-1/+1
| | | | | | | ucontext.h is removed from musl-dev now, and mariadb should build (async stuff should give run-time error). (cherry picked from commit ead72f039293e37c40fff47da0ef0adc5d6172de)
* main/mariadb: disable on armhf for nowTimo Teräs2016-03-241-1/+1
| | | | | | | | | | | | | | | | | mariadb does async functions using fibers. for x86 and x86_64 it has asm implementation, but for other architectures it uses {make,swap,get}context. musl does not support that, but ships the ucontext.h which makes mariadb think it exists and the build fails with: ../mysys/libmysys.a(my_context.c.o): In function `my_context_spawn_internal': /home/buildozer/aports/main/mariadb/src/mariadb-10.1.12/mysys/my_context.c:63: undefined reference to `setcontext' ../mysys/libmysys.a(my_context.c.o): In function `my_context_continue': /home/buildozer/aports/main/mariadb/src/mariadb-10.1.12/mysys/my_context.c:77: undefined reference to `swapcontext' ... For now disable on armhf. (cherry picked from commit ad7c54bd9b6d8e60e88a313a92c83d083f196db8)
* main/mariadb: upgrade to 10.1.12Natanael Copa2016-03-243-75/+8
| | | | (cherry picked from commit f112a8412a0a895317ee14d15bfbdde509b02d3d)
* ==== release 3.3.3 ====v3.3.3Natanael Copa2016-03-241-1/+1
|
* main/py-django: security upgrade to 1.8.10 (CVE-2016-2512,CVE-2016-2513)Natanael Copa2016-03-241-4/+4
|
* main/nss: security upgrade to 3.21.1 (CVE-2016-1950,CVE-2016-1979)Natanael Copa2016-03-241-10/+7
| | | | fixes #5322
* main/nss: upgrade to 3.21Natanael Copa2016-03-243-129/+4
| | | | (cherry picked from commit 6e1d3cf345ed6b20a9481d39ac82fbea7ce723c9)
* main/musl: cherry-pick upstream fixesTimo Teräs2016-03-237-1/+258
| | | | fixes #5282
* main/ncftp: remove alloca useTimo Teräs2016-03-232-9/+139
| | | | | It's incorrect and can cause issues. This half of the fix for the ncftp bugs, the other part is musl issue. ref #5282
* main/dropbear: security upgrade to 2016.72 (CVE-2016-3116). Fixes #5292Leonardo Arena2016-03-221-4/+4
|
* main/git: security upgrade to 2.6.6 (CVE-2016-2315,CVE-2016-2324)Natanael Copa2016-03-221-4/+4
| | | | fixes #5309
* main/mkinitfs: fix cold plugging of certain platform/usb devicesTimo Teräs2016-03-212-4/+38
| | | | (cherry picked from commit 7140f9c231b307186dd41214a7cf4e7299f1c82d)
* main/linux-rpi: upgrade to 4.1.20Timo Teräs2016-03-212-11/+11
| | | | | | fixes #5077 (cherry picked from commit acb38ab4b89994444012fd8524ffb13e09cdf127)
* main/su-exec: upgrade to 0.2Natanael Copa2016-03-211-4/+4
| | | | (cherry picked from commit 299cbaf0a26ad6070401f164f4b73775079a9144)