aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* main/devicemaster-linux-grsec: rebuild against kernel 4.4.59-r0Natanael Copa2017-04-041-1/+1
|
* main/dahdi-linux-grsec: rebuild against kernel 4.4.59-r0Natanael Copa2017-04-041-1/+1
|
* main/linux-grsec: upgrade to 4.4.59Natanael Copa2017-04-041-12/+12
|
* community/munin: security upgrade to 2.0.33 - fixes #6952Sergey Lukin2017-04-031-5/+11
| | | | CVE-2017-6188: Local file write vulnerability with CGI graphs enabled
* main/pidgin: security fixes #7001Sergey Lukin2017-04-032-4/+68
| | | | CVE-2017-2640: Out-of-bounds write when stripping xml
* community/pdns: security upgrade to 4.0.3 - fixes #7044Sergey Lukin2017-04-032-55/+14
| | | | | | | CVE-2016-2120: Crafted zone record can cause a denial of service CVE-2016-7068: Crafted queries can cause abnormal CPU usage CVE-2016-7072: Denial of service via the web server CVE-2016-7073, CVE-2016-7074: Insufficient validation of TSIG signatures
* community/pdns-recursor: security upgrade to 4.0.4 - fixes #7045Sergey Lukin2017-04-032-161/+12
| | | | | | | CVE-2016-7068: Crafted queries can cause abnormal CPU usage CVE-2016-7073, CVE-2016-7074: Insufficient validation of TSIG signatures https://doc.powerdns.com/md/changelog/#powerdns-recursor-404
* main/putty: security upgrade to 0.68 - fixes #7074Sergey Lukin2017-04-032-22/+9
| | | | CVE-2017-6542: Integer overflow in the ssh_agent_channel_data
* main/libxslt: security fixes #7056 (CVE-2017-5029)Leonardo Arena2017-03-272-5/+85
| | | | (cherry picked from commit d2c16a8beb2a6f6db026a7cd340686d8a469158f)
* main/samba: security upgrade to 4.5.7 (CVE-2017-2619). Fixes #7051Leonardo Arena2017-03-271-5/+9
|
* main/ca-certificates: alpine 3.4 has c_rehash in openssl binary, replaces ↵William Pitcock2017-03-231-2/+3
| | | | needs adjusting
* main/libasr: trigger rebuildNatanael Copa2017-03-231-1/+1
| | | | fixes #6578
* community/gtk-vnc: security upgrade to 0.7.0 - fixes #7035Sergey Lukin2017-03-201-4/+10
| | | | | | | | CVE-2017-5884 CVE-2017-5885 https://security-tracker.debian.org/tracker/CVE-2017-5884 https://security-tracker.debian.org/tracker/CVE-2017-5885
* main/wireshark: security upgrade to 2.2.5 - fixes #7027Sergey Lukin2017-03-202-73/+17
| | | | | | | | | | | | CVE-2017-6467: NetScaler file parser infinite loop CVE-2017-6468: NetScaler file parser crash CVE-2017-6469: LDSS dissector crash CVE-2017-6470: IAX2 infinite loop CVE-2017-6471: WSP infinite loop CVE-2017-6472: RTMPT dissector infinite loop CVE-2017-6473: K12 file parser crash CVE-2017-6474: NetScaler file parser infinite loop wnpa-sec-2017-06: STANAG 4607 file parser infinite loop
* main/mariadb: security upgrade to 10.1.22 - fixes #7015Sergey Lukin2017-03-171-4/+7
| | | | CVE-2017-3313, CVE-2017-3302
* main/dhcp: fix mdepends and dhclient.conf search. Fixes #7005Leonardo Arena2017-03-171-3/+4
| | | | (cherry picked from commit 1a9be35ea7d345147de8a5a140faac42eb4952af)
* main/asterisk: upgrade to 14.3.0Timo Teräs2017-03-163-185/+108
| | | | | | | - rebase ASTERISK-24517 - remove upstreamed patch (cherry picked from commit 18f604284e1509774560fac6b27efbbf2df96336)
* main/lsof: replace bb appletLeonardo Arena2017-03-161-2/+2
| | | | (cherry picked from commit 88f308a151f8b7f3501c09a6dd40ad224fdebb0a)
* main/roundcubemail: upgrade to 1.2.4Leonardo Arena2017-03-131-4/+4
|
* community/mbedtls: security upgrade to 2.4.2 (CVE-2017-2784)André Klitzing2017-03-131-7/+7
|
* main/qemu-openrc: update to 0.5.1Jakub Jirutka2017-03-121-4/+3
|
* main/mupdf: fix for CVE-2017-5991Daniel Sabogal2017-03-102-4/+101
|
* main/mupdf: fix for CVE-2017-5896Daniel Sabogal2017-03-102-4/+63
|
* main/lua-ldap: fix segfault and iteration errorJakub Jirutka2017-03-103-6/+57
|
* community/shadow: fix secfixes commentNatanael Copa2017-03-061-0/+1
|
* main/kamailio: upgrade to 4.4.5Leonardo Arena2017-03-031-4/+4
|
* ==== release 3.5.2 ====v3.5.2Natanael Copa2017-03-021-1/+1
|
* main/nginx: update to 1.10.3Jakub Jirutka2017-03-021-16/+16
| | | | | | headers-more-nginx-module: update to 0.32 lua-nginx-module: update to 0.10.7 nchan: update to 1.0.8
* main/libxml2: secfix for CVE-2016-5153Natanael Copa2017-03-012-5/+184
|
* main/cyrus-sasl: add secfix commentNatanael Copa2017-03-011-0/+4
|
* main/screen: security upgrade to 4.5.1 (CVE-2017-5618)Natanael Copa2017-03-012-56/+8
| | | | fixes #6730
* main/acf-openssh: upgrade to 0.11.2Ted Trask2017-03-011-5/+3
| | | | (cherry picked from commit c054f989dea0c41c428b824c552db8829bc6d734)
* main/acf-provisioning: upgrade to 0.10.0Ted Trask2017-03-011-4/+2
| | | | (cherry picked from commit 135cf1dadeda1263f5829fa161f8a7445d782298)
* community/acf-provisioning-polycom: upgrade to 5.5.1Ted Trask2017-03-012-37/+27
| | | | (cherry picked from commit a15984cf2f34e1570fbfddd96c82b3ef061f78e1)
* main/libxrender: split docNatanael Copa2017-02-281-2/+2
| | | | fixes #6932
* main/libxdmcp: split docsNatanael Copa2017-02-281-2/+2
| | | | fixes #6931
* main/zabbix: upgrade to 3.2.4Leonardo Arena2017-02-281-4/+4
|
* main/libasr: replace res_randomid() impl. with call to arc4random() from ↵xentec2017-02-285-976/+139
| | | | | | | | | libcrypto Fixes recursive call loop which causes a stack overflow in opensmtpd. fixes #6578 (cherry picked from commit d3a7437a76d864f6aa585e6ae82789cd5455c04d)
* community/shadow: CVE-2016-6252 & CVE-2017-2616Henrik Riomar2017-02-283-12/+115
| | | | | | | | Patches from Debian Jessie (1:4.2-3+deb8u3 & 1:4.2-3+deb8u2) fixes #6943 (cherry picked from commit e9a92d060e2e59ac087373af9b81546c2a761d07)
* main/libice: split out docsNatanael Copa2017-02-281-2/+2
| | | | fixes #6930
* main/gtkmm: split out docsNatanael Copa2017-02-281-2/+2
| | | | fixes #6929
* main/apache2: upgrade to 2.4.25Andy Postnikov2017-02-282-29/+8
| | | | | | | | | Security release http://www.apache.org/dist/httpd/CHANGES_2.4.25 Also it includes previous patch for httpoxy fixes #6939 (cherry picked from commit 57ba71e0786da6d5383c4785fb65be50a2cad693)
* main/xen: sec fixes fro xsa-207 - xsa-209Natanael Copa2017-02-287-127/+345
| | | | | | | | | | | added perl-dev as makedepends due to man2pod moved to there. - XSA-207 - CVE-2017-2615 XSA-208 - CVE-2017-2620 XSA-209 - XSA-210 fixes #6916
* main: fix various secfix commentsNatanael Copa2017-02-283-4/+4
|
* main/linux-rpi: upgrade to 4.4.52Natanael Copa2017-02-281-5/+5
|
* main/zfs-vanilla: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/spl-vanilla: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/linux-vanilla: upgrade to 4.4.52Natanael Copa2017-02-281-4/+4
|
* main/zfs-grsec: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/xtables-addons-grsec: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|