Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/xen: security fixes. Fixes #6541 | Leonardo Arena | 2016-12-20 | 6 | -1/+545 | |
| | | | | | | | | | | CVE-2016-9932 CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 (cherry picked from commit 3b5fa3b170637b8149c63d415d3a42c638b8b71a) | |||||
* | main/libass: security upgrade to 0.13.4. Fixes #6536 | Leonardo Arena | 2016-12-20 | 1 | -4/+12 | |
| | | | | | | | | | CVE-2016-7969 CVE-2016-7970 CVE-2016-7971 CVE-2016-7972 (cherry picked from commit 8887c484286e50ad0cf41a47ffe52f2954ec7921) | |||||
* | main/libgsf: security upgrade to 1.14.41 (CVE-2016-9888). Fixes #6555 | Leonardo Arena | 2016-12-20 | 1 | -3/+9 | |
| | | | | (cherry picked from commit cf24cc64fbe2e718b0bee91cc486ca9071a87ddf) | |||||
* | main/owncloud: upgrade to 9.0.7 | Leonardo Arena | 2016-12-15 | 1 | -13/+13 | |
| | ||||||
* | main/xen: security upgrade - fixes: #6496 | Sergey Lukin | 2016-12-15 | 10 | -1/+679 | |
| | | | | | | | | | | | | CVE-2016-9386 CVE-2016-9382 CVE-2016-9385 CVE-2016-9383 CVE-2016-9377 CVE-2016-9378 CVE-2016-9381 CVE-2016-9379 CVE-2016-9380 | |||||
* | main/wireshark: security upgrade to 2.0.8 (CVE-2016-9374, | Linux User | 2016-12-15 | 1 | -4/+4 | |
| | | | | CVE-2016-9376, CVE-2016-9373, CVE-2016-9375). Fixes: #6481 | |||||
* | main/php5: upgrade to 5.6.29 (security fixes) | Andy Postnikov | 2016-12-13 | 1 | -4/+4 | |
| | | | | Security release http://php.net/archive/2016.php#id2016-12-08-2 | |||||
* | main/zabbix: upgrade to 3.0.6 | Leonardo Arena | 2016-12-08 | 1 | -4/+4 | |
| | ||||||
* | community/drupal7: security upgrade to 7.52 | Sergey Lukin | 2016-12-07 | 1 | -4/+4 | |
| | | | | | | fixes #6493 CVE-2016-9449, CVE-2016-9450, CVE-2016-9451, CVE-2016-9452 | |||||
* | main/gparted: Use reliable way of detecting gpartedbin process existence | Timo Teräs | 2016-12-07 | 2 | -6/+60 | |
| | | | | (cherry-picked patch from edge commit 8edabd3c8648368c) | |||||
* | main/libgit2: security upgrade to 0.24.3 - fixes #6509 | Sergey Lukin | 2016-12-02 | 1 | -4/+5 | |
| | | | | CVE-2016-8568, CVE-2016-8569 | |||||
* | main/p7zip: security fix for CVE-2016-9296 | Sergey Lukin | 2016-12-01 | 2 | -9/+27 | |
| | | | | fixes #6511 | |||||
* | main/ssh-getkey-ldap: upgrade to 0.1.1 | Jakub Jirutka | 2016-12-01 | 1 | -6/+6 | |
| | ||||||
* | main/expat: bump pkgrel so we actually fix CVE-2016-4472 | Natanael Copa | 2016-11-30 | 1 | -1/+1 | |
| | ||||||
* | main/roundcubemail: upgrade to 1.2.3 | Leonardo Arena | 2016-11-30 | 1 | -4/+4 | |
| | ||||||
* | main/openrc: modloop needs to be done before sysfs | Timo Teräs | 2016-11-24 | 2 | -5/+5 | |
| | | | | | sysfs will probe modules at least under EFI boot fixes #6474 | |||||
* | main/mariadb: security upgrade to 10.1.19 (CVE-2016-7440, CVE-2016-5584). ↵ | Sergey Lukin | 2016-11-24 | 1 | -4/+4 | |
| | | | | Fixes: #6441 | |||||
* | main/lxc: add initd dependency on sysfs | Timo Teräs | 2016-11-23 | 2 | -5/+5 | |
| | | | | fixes #6484 | |||||
* | main/memcached: security upgrade to 1.4.33 (CVE-2016-8704, CVE-2016-8705, ↵ | Leonardo Arena | 2016-11-21 | 2 | -57/+8 | |
| | | | | | | CVE-2016-8706) Fixes #6446 | |||||
* | main/py-django: security upgrade to 1.8.16 (CVE-2016-9013, CVE-2016-9014) | Leonardo Arena | 2016-11-21 | 1 | -4/+9 | |
| | | | | | | Fixes #6463 (cherry picked from commit 9f1555ac10091515ef044cdee1fb20db8552f3f8) | |||||
* | main/php5: upgrade to 5.6.28 | Andy Postnikov | 2016-11-18 | 1 | -4/+4 | |
| | | | | | | fixes #6452 (cherry picked from commit 5dacd7c627194dfe380ae214b3b5810662034063) | |||||
* | community/openjdk8: remove unneeded .jar/.sym permissions fixup | Timo Teräs | 2016-11-17 | 1 | -2/+0 | |
| | | | | | the permissions are now correct after java install, and trying to fix them fails when chmod gets zero file names. | |||||
* | community/openjdk8: security upgrade to 8u111 b14 | Timo Teräs | 2016-11-17 | 1 | -26/+26 | |
| | | | | multiple security fixes | |||||
* | community/openjdk7: security upgrade to icedtea 2.6.8 | Timo Teräs | 2016-11-17 | 1 | -27/+27 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | S8151921: Improved page resolution S8155968: Update command line options S8155973, CVE-2016-5542: Tighten jar checks S8157176: Improved classfile parsing S8157739, CVE-2016-5554: Classloader Consistency Checking S8157749: Improve handling of DNS error replies S8157753: Audio replay enhancement S8157759: LCMS Transform Sampling Enhancement S8157764: Better handling of interpolation plugins S8158302: Handle contextual glyph substitutions S8158993, CVE-2016-5568: Service Menu services S8159495: Fix index offsets S8159503: Amend Annotation Actions S8159511: Stack map validation S8159515: Improve indy validation S8159519, CVE-2016-5573: Reformat JDWP messages S8160090: Better signature handling in pack200 S8160094: Improve pack200 layout S8160098: Clean up color profiles S8160591, CVE-2016-5582: Improve internal array handling S8160838, CVE-2016-5597: Better HTTP service PR3207, RH1367357: lcms2: Out-of-bounds read in Type_MLU_Read() (cherry picked from commit 71af3ec85b2545d197e50b2b3054b311f76ea95f) | |||||
* | main/owncloud: upgrade to 9.0.6 | Leonardo Arena | 2016-11-09 | 1 | -13/+13 | |
| | ||||||
* | main/mini_httpd: fix handling of cgi programs with binary output | Timo Teräs | 2016-11-09 | 2 | -5/+39 | |
| | | | | fixes #6391 | |||||
* | ==== release 3.4.6 ====v3.4.6 | Natanael Copa | 2016-11-08 | 1 | -1/+1 | |
| | ||||||
* | main/acf-provisioning: upgrade to 0.9.5 | Ted Trask | 2016-11-08 | 1 | -4/+4 | |
| | | | | (cherry picked from commit 5231b9a9bf11e5b38a6c0ed4dedf9a8302eb90a0) | |||||
* | main/guile: fix CVE-2016-8605 and CVE-2016-8606 | Natanael Copa | 2016-11-08 | 3 | -4/+440 | |
| | | | | fixes #6365 | |||||
* | main/nodejs-lts: security upgrade to 4.6.0 (CVE-2016-7099) | Natanael Copa | 2016-11-08 | 1 | -4/+4 | |
| | | | | fixes #6335 | |||||
* | main/nodejs: security upgrade to 6.7.0 (CVE-2016-7099) | Natanael Copa | 2016-11-08 | 1 | -4/+4 | |
| | | | | fixes #6335 | |||||
* | main/tar: fix for CVE-2016-6321 | Daniel Sabogal | 2016-11-08 | 2 | -1/+46 | |
| | | | | | | Upstream patch without the changes to the NEWS file. fixes #6398 | |||||
* | main/bash: security fix for CVE-2016-7543 | Natanael Copa | 2016-11-08 | 2 | -1/+34 | |
| | | | | fixes #6410 | |||||
* | main/bind: security upgrade to 9.10.4_p4 (CVE-2016-8864) | Natanael Copa | 2016-11-07 | 1 | -4/+4 | |
| | ||||||
* | main/xtables-addons-grsec: rebuild against kernel 4.4.30-r0 | Natanael Copa | 2016-11-07 | 1 | -1/+1 | |
| | ||||||
* | main/open-vm-tools-grsec: rebuild against kernel 4.4.30-r0 | Natanael Copa | 2016-11-07 | 1 | -1/+1 | |
| | ||||||
* | main/ipfw-grsec: rebuild against kernel 4.4.30-r0 | Natanael Copa | 2016-11-07 | 1 | -1/+1 | |
| | ||||||
* | main/drbd9-grsec: rebuild against kernel 4.4.30-r0 | Natanael Copa | 2016-11-07 | 1 | -1/+1 | |
| | ||||||
* | main/devicemaster-linux-grsec: rebuild against kernel 4.4.30-r0 | Natanael Copa | 2016-11-07 | 1 | -1/+1 | |
| | ||||||
* | main/dahdi-linux-grsec: rebuild against kernel 4.4.30-r0 | Natanael Copa | 2016-11-07 | 1 | -1/+1 | |
| | ||||||
* | main/linux-grsec: upgrade to 4.4.30 | Natanael Copa | 2016-11-07 | 1 | -7/+7 | |
| | ||||||
* | main/linux-vanilla: upgrade to 4.4.30 | Natanael Copa | 2016-11-07 | 1 | -4/+4 | |
| | ||||||
* | main/linux-rpi: upgrade to 4.4.30 | Natanael Copa | 2016-11-07 | 1 | -4/+4 | |
| | | | | (cherry picked from commit 319942e85e230f88bb72c52fb6933caeb1eb82db) | |||||
* | main/quagga-nhrp: fix a nht issue in nhrpd patch | Timo Teräs | 2016-11-07 | 2 | -10/+13 | |
| | ||||||
* | main/quagga-nhrp: upgrade to 1.1.0 + latest patch | Timo Teräs | 2016-11-07 | 8 | -33/+9125 | |
| | ||||||
* | main/acf-dhcp: upgrade to 0.9.1 | Ted Trask | 2016-11-07 | 1 | -5/+5 | |
| | | | | (cherry picked from commit bfbbc4254ea59cb538d4ea741bccc1aa93709df4) | |||||
* | main/curl: security upgrade to 7.51.0 | Daniel Sabogal | 2016-11-06 | 1 | -4/+17 | |
| | | | | | | | | | | | | | | | | CVE-2016-8615 CVE-2016-8616 CVE-2016-8617 CVE-2016-8618 CVE-2016-8619 CVE-2016-8620 CVE-2016-8621 CVE-2016-8622 CVE-2016-8623 CVE-2016-8624 CVE-2016-8625 (cherry picked from commit f7051d630496b942b9629f42a2e8a3a70d791087) | |||||
* | main/apache2: generate simple module config files | Kaarle Ritvanen | 2016-11-04 | 4 | -40/+26 | |
| | | | | | fixes #6099 fixes #6100 | |||||
* | main/squid: upgrade to 3.5.20, don't use -march=native | Timo Teräs | 2016-11-04 | 1 | -5/+6 | |
| | | | | | It otherwise generates code specific for the builder cpu. ref #6228 | |||||
* | main/apache2: utils: depend on lynx | Kaarle Ritvanen | 2016-11-04 | 1 | -1/+3 | |
| | | | | fixes #5505 |