Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/devicemaster-linux-grsec: rebuild against kernel 4.4.59-r0 | Natanael Copa | 2017-04-04 | 1 | -1/+1 | |
| | ||||||
* | main/dahdi-linux-grsec: rebuild against kernel 4.4.59-r0 | Natanael Copa | 2017-04-04 | 1 | -1/+1 | |
| | ||||||
* | main/linux-grsec: upgrade to 4.4.59 | Natanael Copa | 2017-04-04 | 1 | -12/+12 | |
| | ||||||
* | community/munin: security upgrade to 2.0.33 - fixes #6952 | Sergey Lukin | 2017-04-03 | 1 | -5/+11 | |
| | | | | CVE-2017-6188: Local file write vulnerability with CGI graphs enabled | |||||
* | main/pidgin: security fixes #7001 | Sergey Lukin | 2017-04-03 | 2 | -4/+68 | |
| | | | | CVE-2017-2640: Out-of-bounds write when stripping xml | |||||
* | community/pdns: security upgrade to 4.0.3 - fixes #7044 | Sergey Lukin | 2017-04-03 | 2 | -55/+14 | |
| | | | | | | | CVE-2016-2120: Crafted zone record can cause a denial of service CVE-2016-7068: Crafted queries can cause abnormal CPU usage CVE-2016-7072: Denial of service via the web server CVE-2016-7073, CVE-2016-7074: Insufficient validation of TSIG signatures | |||||
* | community/pdns-recursor: security upgrade to 4.0.4 - fixes #7045 | Sergey Lukin | 2017-04-03 | 2 | -161/+12 | |
| | | | | | | | CVE-2016-7068: Crafted queries can cause abnormal CPU usage CVE-2016-7073, CVE-2016-7074: Insufficient validation of TSIG signatures https://doc.powerdns.com/md/changelog/#powerdns-recursor-404 | |||||
* | main/putty: security upgrade to 0.68 - fixes #7074 | Sergey Lukin | 2017-04-03 | 2 | -22/+9 | |
| | | | | CVE-2017-6542: Integer overflow in the ssh_agent_channel_data | |||||
* | main/libxslt: security fixes #7056 (CVE-2017-5029) | Leonardo Arena | 2017-03-27 | 2 | -5/+85 | |
| | | | | (cherry picked from commit d2c16a8beb2a6f6db026a7cd340686d8a469158f) | |||||
* | main/samba: security upgrade to 4.5.7 (CVE-2017-2619). Fixes #7051 | Leonardo Arena | 2017-03-27 | 1 | -5/+9 | |
| | ||||||
* | main/ca-certificates: alpine 3.4 has c_rehash in openssl binary, replaces ↵ | William Pitcock | 2017-03-23 | 1 | -2/+3 | |
| | | | | needs adjusting | |||||
* | main/libasr: trigger rebuild | Natanael Copa | 2017-03-23 | 1 | -1/+1 | |
| | | | | fixes #6578 | |||||
* | community/gtk-vnc: security upgrade to 0.7.0 - fixes #7035 | Sergey Lukin | 2017-03-20 | 1 | -4/+10 | |
| | | | | | | | | CVE-2017-5884 CVE-2017-5885 https://security-tracker.debian.org/tracker/CVE-2017-5884 https://security-tracker.debian.org/tracker/CVE-2017-5885 | |||||
* | main/wireshark: security upgrade to 2.2.5 - fixes #7027 | Sergey Lukin | 2017-03-20 | 2 | -73/+17 | |
| | | | | | | | | | | | | CVE-2017-6467: NetScaler file parser infinite loop CVE-2017-6468: NetScaler file parser crash CVE-2017-6469: LDSS dissector crash CVE-2017-6470: IAX2 infinite loop CVE-2017-6471: WSP infinite loop CVE-2017-6472: RTMPT dissector infinite loop CVE-2017-6473: K12 file parser crash CVE-2017-6474: NetScaler file parser infinite loop wnpa-sec-2017-06: STANAG 4607 file parser infinite loop | |||||
* | main/mariadb: security upgrade to 10.1.22 - fixes #7015 | Sergey Lukin | 2017-03-17 | 1 | -4/+7 | |
| | | | | CVE-2017-3313, CVE-2017-3302 | |||||
* | main/dhcp: fix mdepends and dhclient.conf search. Fixes #7005 | Leonardo Arena | 2017-03-17 | 1 | -3/+4 | |
| | | | | (cherry picked from commit 1a9be35ea7d345147de8a5a140faac42eb4952af) | |||||
* | main/asterisk: upgrade to 14.3.0 | Timo Teräs | 2017-03-16 | 3 | -185/+108 | |
| | | | | | | | - rebase ASTERISK-24517 - remove upstreamed patch (cherry picked from commit 18f604284e1509774560fac6b27efbbf2df96336) | |||||
* | main/lsof: replace bb applet | Leonardo Arena | 2017-03-16 | 1 | -2/+2 | |
| | | | | (cherry picked from commit 88f308a151f8b7f3501c09a6dd40ad224fdebb0a) | |||||
* | main/roundcubemail: upgrade to 1.2.4 | Leonardo Arena | 2017-03-13 | 1 | -4/+4 | |
| | ||||||
* | community/mbedtls: security upgrade to 2.4.2 (CVE-2017-2784) | André Klitzing | 2017-03-13 | 1 | -7/+7 | |
| | ||||||
* | main/qemu-openrc: update to 0.5.1 | Jakub Jirutka | 2017-03-12 | 1 | -4/+3 | |
| | ||||||
* | main/mupdf: fix for CVE-2017-5991 | Daniel Sabogal | 2017-03-10 | 2 | -4/+101 | |
| | ||||||
* | main/mupdf: fix for CVE-2017-5896 | Daniel Sabogal | 2017-03-10 | 2 | -4/+63 | |
| | ||||||
* | main/lua-ldap: fix segfault and iteration error | Jakub Jirutka | 2017-03-10 | 3 | -6/+57 | |
| | ||||||
* | community/shadow: fix secfixes comment | Natanael Copa | 2017-03-06 | 1 | -0/+1 | |
| | ||||||
* | main/kamailio: upgrade to 4.4.5 | Leonardo Arena | 2017-03-03 | 1 | -4/+4 | |
| | ||||||
* | ==== release 3.5.2 ====v3.5.2 | Natanael Copa | 2017-03-02 | 1 | -1/+1 | |
| | ||||||
* | main/nginx: update to 1.10.3 | Jakub Jirutka | 2017-03-02 | 1 | -16/+16 | |
| | | | | | | headers-more-nginx-module: update to 0.32 lua-nginx-module: update to 0.10.7 nchan: update to 1.0.8 | |||||
* | main/libxml2: secfix for CVE-2016-5153 | Natanael Copa | 2017-03-01 | 2 | -5/+184 | |
| | ||||||
* | main/cyrus-sasl: add secfix comment | Natanael Copa | 2017-03-01 | 1 | -0/+4 | |
| | ||||||
* | main/screen: security upgrade to 4.5.1 (CVE-2017-5618) | Natanael Copa | 2017-03-01 | 2 | -56/+8 | |
| | | | | fixes #6730 | |||||
* | main/acf-openssh: upgrade to 0.11.2 | Ted Trask | 2017-03-01 | 1 | -5/+3 | |
| | | | | (cherry picked from commit c054f989dea0c41c428b824c552db8829bc6d734) | |||||
* | main/acf-provisioning: upgrade to 0.10.0 | Ted Trask | 2017-03-01 | 1 | -4/+2 | |
| | | | | (cherry picked from commit 135cf1dadeda1263f5829fa161f8a7445d782298) | |||||
* | community/acf-provisioning-polycom: upgrade to 5.5.1 | Ted Trask | 2017-03-01 | 2 | -37/+27 | |
| | | | | (cherry picked from commit a15984cf2f34e1570fbfddd96c82b3ef061f78e1) | |||||
* | main/libxrender: split doc | Natanael Copa | 2017-02-28 | 1 | -2/+2 | |
| | | | | fixes #6932 | |||||
* | main/libxdmcp: split docs | Natanael Copa | 2017-02-28 | 1 | -2/+2 | |
| | | | | fixes #6931 | |||||
* | main/zabbix: upgrade to 3.2.4 | Leonardo Arena | 2017-02-28 | 1 | -4/+4 | |
| | ||||||
* | main/libasr: replace res_randomid() impl. with call to arc4random() from ↵ | xentec | 2017-02-28 | 5 | -976/+139 | |
| | | | | | | | | | libcrypto Fixes recursive call loop which causes a stack overflow in opensmtpd. fixes #6578 (cherry picked from commit d3a7437a76d864f6aa585e6ae82789cd5455c04d) | |||||
* | community/shadow: CVE-2016-6252 & CVE-2017-2616 | Henrik Riomar | 2017-02-28 | 3 | -12/+115 | |
| | | | | | | | | Patches from Debian Jessie (1:4.2-3+deb8u3 & 1:4.2-3+deb8u2) fixes #6943 (cherry picked from commit e9a92d060e2e59ac087373af9b81546c2a761d07) | |||||
* | main/libice: split out docs | Natanael Copa | 2017-02-28 | 1 | -2/+2 | |
| | | | | fixes #6930 | |||||
* | main/gtkmm: split out docs | Natanael Copa | 2017-02-28 | 1 | -2/+2 | |
| | | | | fixes #6929 | |||||
* | main/apache2: upgrade to 2.4.25 | Andy Postnikov | 2017-02-28 | 2 | -29/+8 | |
| | | | | | | | | | Security release http://www.apache.org/dist/httpd/CHANGES_2.4.25 Also it includes previous patch for httpoxy fixes #6939 (cherry picked from commit 57ba71e0786da6d5383c4785fb65be50a2cad693) | |||||
* | main/xen: sec fixes fro xsa-207 - xsa-209 | Natanael Copa | 2017-02-28 | 7 | -127/+345 | |
| | | | | | | | | | | | added perl-dev as makedepends due to man2pod moved to there. - XSA-207 - CVE-2017-2615 XSA-208 - CVE-2017-2620 XSA-209 - XSA-210 fixes #6916 | |||||
* | main: fix various secfix comments | Natanael Copa | 2017-02-28 | 3 | -4/+4 | |
| | ||||||
* | main/linux-rpi: upgrade to 4.4.52 | Natanael Copa | 2017-02-28 | 1 | -5/+5 | |
| | ||||||
* | main/zfs-vanilla: rebuild against kernel 4.4.52-r0 | Natanael Copa | 2017-02-28 | 1 | -1/+1 | |
| | ||||||
* | main/spl-vanilla: rebuild against kernel 4.4.52-r0 | Natanael Copa | 2017-02-28 | 1 | -1/+1 | |
| | ||||||
* | main/linux-vanilla: upgrade to 4.4.52 | Natanael Copa | 2017-02-28 | 1 | -4/+4 | |
| | ||||||
* | main/zfs-grsec: rebuild against kernel 4.4.52-r0 | Natanael Copa | 2017-02-28 | 1 | -1/+1 | |
| | ||||||
* | main/xtables-addons-grsec: rebuild against kernel 4.4.52-r0 | Natanael Copa | 2017-02-28 | 1 | -1/+1 | |
| |