aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* main/python3: security fixes (CVE-2018-1060, CVE-2018-1061)Leonardo Arena2018-08-221-12/+13
| | | | Fixes #9271
* main/python2: security upgrade to 2.7.15 (CVE-2018-1060, CVE-2018-1061)Leonardo Arena2018-08-221-4/+7
| | | | Fixes #9271
* main/samba: security fixes (CVE-2018-10858, CVE-2018-10919Leonardo Arena2018-08-223-1/+2531
| | | | Fixes #9253
* main/myrepos: fix source urlNatanael Copa2018-08-221-1/+1
|
* main/myrepos: security upgrade to 1.20180726 (CVE-2018-7032)Natanael Copa2018-08-221-5/+10
| | | | fixes #9203
* main/unzip: fix various CVEsNatanael Copa2018-08-228-12/+401
| | | | | | | | | | | | - CVE-2014-8139 - CVE-2014-8140 - CVE-2014-8141 - CVE-2014-9636 - CVE-2014-9913 - CVE-2016-9844 - CVE-2018-1000035 fixes #9290
* main/ncurses: backport security fix (CVE-2018-10754)Natanael Copa2018-08-212-5/+29
| | | | fixes #9285
* main/clamav: security upgrade to 0.100.1 ↵Natanael Copa2018-08-211-2/+6
| | | | | | (CVE-2017-16932,CVE-2018-0360,CVE-2018-0361) fixes #9171
* main/wpa_supplicant: security fix (CVE-2018-14526)Natanael Copa2018-08-212-1/+49
| | | | fixes #9223
* main/gnupg1: security upgrade to 1.4.23 (CVE-2017-7526)tcely2018-08-212-47/+6
| | | | (cherry picked from commit 6895452f9306041d563023e9fae6b77ac6c27dae)
* main/gnupg1: fix CVE-2018-12020Sören Tempel2018-08-212-8/+56
|
* main/gnupg1: upgrade to 1.4.22Sören Tempel2018-08-211-4/+2
|
* main/apache2: security upgrade to 2.4.34Andy Postnikov2018-08-203-2/+102
| | | | fixes #9267
* main/php5: add missing secfixesAndy Postnikov2018-08-171-0/+3
|
* main/postgresql: security upgrade to 9.6.10Jakub Jirutka2018-08-101-2/+5
| | | | Fixes CVE-2018-10915, CVE-2018-10925
* main/libvncserver: fix CVE-2018-7225prspkt2018-08-082-5/+70
| | | | fixes #8560
* main/libvncserver: upgrade to 0.9.11Natanael Copa2018-08-084-187/+5
|
* main/p7zip: security fixes (CVE-2018-5996, CVE-2018-10115)Natanael Copa2018-08-083-5/+545
| | | | fixes #8536
* main/p7zip: secfix (CVE-2017-17969)Natanael Copa2018-08-082-7/+23
|
* main/cgit: fix CVE-2018-14912Natanael Copa2018-08-042-4/+74
|
* main/tiff: various security fixesNatanael Copa2018-08-025-2/+282
| | | | | | | | | | - CVE-2017-9935 - CVE-2017-11613 - CVE-2017-17095 - CVE-2018-10963 fixes #8243 fixes #9166
* main/kamailio: upgrade to 4.4.7, security fixLeonardo Arena2018-08-016-146/+61
| | | | https://skalatan.de/blog/advisory-hw-2018-05
* main/fuse: security upgrade to 2.9.8 (CVE-2018-10906)Natanael Copa2018-07-301-9/+7
| | | | fixes #9155
* main/fuse: Move /etc/udev/rules.d to /libMax Rees2018-07-301-2/+2
| | | | See: https://github.com/alpinelinux/aports/pull/3759#issuecomment-376883202
* main/perl: security fix (CVE-2018-12015)Leonardo Arena2018-07-302-4/+47
| | | | Fixes #8985
* main/libvorbis: security fix for CVE-2018-10392Natanael Copa2018-07-302-3/+33
| | | | fixes #9144
* main/libvorbis: upgrade to 1.3.6, enable testsprspkt2018-07-303-37/+18
| | | | fixes #8673
* main/mercurial: security upgrade to 4.5.2 (CVE-2018-1000132)Natanael Copa2018-07-301-4/+6
| | | | fixes #8828
* community/tomcat-native: fix source urlNatanael Copa2018-07-251-1/+1
|
* main/mutt: security upgrade to 1.10.1Natanael Copa2018-07-241-5/+20
| | | | | | | | CVE-2018-14349, CVE-2018-14350, CVE-2018-14351, CVE-2018-14352, CVE-2018-14353, CVE-2018-14354, CVE-2018-14355, CVE-2018-14356, CVE-2018-14357, CVE-2018-14358, CVE-2018-14359, CVE-2018-14362 fixes #9132
* main/php5: security upgrade to 5.6.37Andy Postnikov2018-07-241-2/+2
|
* main/mqtt-exec: backport password auth supportNatanael Copa2018-07-183-78/+92
| | | | and remove unused patch
* main/mqtt-exec: upgrade to 0.4Natanael Copa2018-07-181-7/+3
|
* main/znc: security upgrade to 1.7.1 (CVE-2018-14055,CVE-2018-14056)Natanael Copa2018-07-181-6/+12
| | | | fixes #9104
* main/openssl: fix CVE-2018-0732 and CVE-2018-0737Timo Teräs2018-07-183-4/+82
| | | | | fixes #8816 fixes #9011
* main/openssl: security upgrade to 1.0.2o and rebuild depending pkgsAndy Postnikov2018-07-184-7/+11
| | | | | | Fixes CVE-2017-3738, CVE-2018-0739, CVE-2018-0733 Rebuilds packages that link openssl statically.
* main/curl: upgrade to 7.61.0, add secfixes commentprspkt2018-07-131-5/+7
|
* main/xen: upgrade to 4.7.6Henrik Riomar2018-07-1153-6145/+17
| | | | | | | While at it, drop unused patches and patch files rombios-no-pie.patch: not needed due to upstream: b704b1a09b rombios: prevent building with PIC/PIE
* main/acf-alpine-baselayout: upgrade to 0.13.2Ted Trask2018-06-261-5/+4
| | | | (cherry picked from commit 26a78bb0bddafc8ca808b00f83f4d304f8c5c7bf)
* community/one-context: upgrade to 0.5.4Jakub Jirutka2018-06-221-2/+2
|
* main/libgcrypt: security upgrade to 1.7.10 (CVE-2018-0495)Natanael Copa2018-06-191-5/+7
| | | | fixes #9006
* main/redis: security upgrade to 3.2.12 (CVE-2018-11218,CVE-2018-11219)Natanael Copa2018-06-191-2/+7
| | | | fixes #9023
* community/openjdk8: build fixNatanael Copa2018-06-141-1/+1
| | | | nss-static does not exist in v3.5
* community/openjdk8: upgrade to 3.8.0 (java 8u171b11)J0WI2018-06-132-19/+19
|
* community/openjdk8: upgrade to 3.7.0 (java 8u161b12)Timo Teräs2018-06-133-30/+17
| | | | | fixes #3678 ref https://github.com/alpinelinux/aports/pull/3678
* community/openjdk8: upgrade to icedtea 3.6.0, modernizeTimo Teräs2018-06-131-28/+27
| | | | | | | | | | | | | | | | | | | | | | | | | | | | S8165543: Better window framing S8169026, CVE-2017-10274: Handle smartcard clean up better S8169966: Larger AWT menus S8170218: Improved Font Metrics S8171252: Improve exception checking S8171261: Stability fixes for lcms S8174109, CVE-2017-10281: Better queuing priorities S8174966, CVE-2017-10285: Unreferenced references S8175940: More certificate subject checking S8176751, CVE-2017-10295: Better URL connections S8178794, CVE-2017-10388: Correct Kerberos ticket grants S8180024: Improve construction of objects during deserialization S8180711, CVE-2017-10346: Better invokespecial checks S8181100, CVE-2017-10350: Better Base Exceptions S8181323, CVE-2017-10347: Better timezone processing S8181327, CVE-2017-10349: Better X processing S8181370, CVE-2017-10345: Better keystore handling S8181432, CVE-2017-10348: Better processing of unresolved permissions S8181597, CVE-2017-10357: Process Proxy presentation S8181612, CVE-2017-10355: More stable connection processing S8181692, CVE-2017-10356: Update storage implementations S8183028, CVE-2016-10165: Improve CMS header processing S8184682, CVE-2016-9840, CVE-2016-9841, CVE-2016-9842, CVE-2016-9843: Upgrade compression library ref #8018, #8111
* community/openjdk8: bump icedtea to 3.5.1 and java to 8.144.01Daniel Isaksen2018-06-131-12/+12
|
* community/openjdk8: bump pkgrel due to krb5 upgradeFrancesco Colista2018-06-131-1/+1
|
* community/openjdk8: fix build on armhfNatanael Copa2018-06-131-1/+1
|
* community/openjdk8: upgrade to icedtea 3.5.0 / java 8 u141 b15Timo Teräs2018-06-133-130/+104
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | fixes #7579 S8163958, CVE-2017-10102: Improved garbage collection S8167228: Update to libpng 1.6.28 S8169209, CVE-2017-10053: Improved image post-processing steps S8169392, CVE-2017-10067: Additional jar validation steps S8170966, CVE-2017-10081: Right parenthesis issue S8171539, CVE-2017-10078: Better script accessibility for JavaScript S8172204, CVE-2017-10087: Better Thread Pool execution S8172461, CVE-2017-10089: Service Registration Lifecycle S8172465, CVE-2017-10090: Better handling of channel groups S8172469, CVE-2017-10096: Transform Transformer Exceptions S8173286, CVE-2017-10101: Better reading of text catalogs S8173697, CVE-2017-10107: Less Active Activations S8173770, CVE-2017-10074: Image conversion improvements S8174098, CVE-2017-10110: Better image fetching S8174105, CVE-2017-10108: Better naming attribution S8174113, CVE-2017-10109: Better sourcing of code S8174770: Check registry registration location S8174873: Improved certificate procesing S8175106, CVE-2017-10115: Higher quality DSA operations S8175110, CVE-2017-10118: Higher quality ECDSA operations S8176055: JMX diagnostic improvements S8176067, CVE-2017-10116: Proper directory lookup processing S8176760, CVE-2017-10135: Better handling of PKCS8 material S8178135, CVE-2017-10176: Additional elliptic curve support S8179101, CVE-2017-10193: Improve algorithm constraints implementation S8179998, CVE-2017-10198: Clear certificate chain connections S8181420, CVE-2017-10074: PPC: Image conversion improvements S8183551, CVE-2017-10074, PR3423: AArch64: Image conversion improvements S8184185, CVE-2017-10111: Rearrange MethodHandle arrangements