Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/ruby: security upgrade to 2.4.3 | Jakub Jirutka | 2017-12-15 | 1 | -3/+5 | |
| | | | | See: https://www.ruby-lang.org/en/news/2017/12/14/ruby-2-4-3-released/ | |||||
* | main/openssh: security fixes for CVE-2017-15906. Fixes #8281 | Francesco Colista | 2017-12-15 | 2 | -3/+38 | |
| | ||||||
* | community/pdns-recursor: security upgrade to 4.0.7 ↵ | Francesco Colista | 2017-12-15 | 1 | -3/+10 | |
| | | | | (CVE-2017-15090-15092-15093-15094). Fixes #8254 | |||||
* | community/pdns: security upgrade to 4.0.5 (CVE-2017-15091). Fixes #8251 | Francesco Colista | 2017-12-15 | 1 | -3/+7 | |
| | ||||||
* | main/openssl: security upgrade to 1.0.2n | Colin Williams | 2017-12-15 | 1 | -2/+5 | |
| | | | | | | | | | fixes #8274 CVE-2017-3737 CVE-2017-3738 (cherry picked from commit d2d350f8a099c9ed303f00888e05626662e5c7f6) | |||||
* | community/exim: security upgrade to 4.89.1 (CVE-2017-16944). Fixes #8288 | Francesco Colista | 2017-12-15 | 1 | -9/+7 | |
| | ||||||
* | main/python2: set thread stack size to 1 MiB | Natanael Copa | 2017-12-14 | 1 | -2/+22 | |
| | | | | | We need increase stack size so we dont segfautl before we hit the recursion limit. | |||||
* | main/apk-tools: apply install_if fix | Kaarle Ritvanen | 2017-12-14 | 2 | -2/+188 | |
| | ||||||
* | community/homer-api: apply LDAP security fix | Kaarle Ritvanen | 2017-12-14 | 2 | -4/+34 | |
| | ||||||
* | main/procmail: import procmail-3.23pre patch from Debian | Nathan Rennie-Waldock | 2017-12-13 | 2 | -8/+261 | |
| | | | | | | Fixes #8259 (cherry picked from commit b7237382f0459b1c33c578412fac2cc0bb2c1cbb) | |||||
* | community/nextcloud: fix update on PGSQL10 | Leonardo Arena | 2017-12-12 | 2 | -1/+23 | |
| | | | | | | GH#5930 (cherry picked from commit 52c914aa8a597c5803e349c250ee9461f32f42cd) | |||||
* | main/busybox: backport fix for add-shell | Natanael Copa | 2017-12-12 | 2 | -1/+36 | |
| | | | | fixes #8209 | |||||
* | main/bacula: various improvements and small bug fixes | Leonardo Arena | 2017-12-11 | 4 | -33/+37 | |
| | | | | | | | | | | | | - use /run dir - fix conf file permissions - Inits: points bacula-sd to right conf file use openrc to set daemon user soft depends on firewall added cosmetic fixes (cherry picked from commit bd02f881f2cd3d8b1ef786ba3e7482deafb58793) | |||||
* | community/graphicsmagick: security upgrade to 1.3.27. | Francesco Colista | 2017-12-11 | 1 | -29/+13 | |
| | | | | | - Fixes #8095 - Fixes #7943 (last CVE was not fixed since the patch did not apply) | |||||
* | community/nodejs-current: upgrade to 9.2.1 | Jakub Jirutka | 2017-12-09 | 1 | -2/+8 | |
| | | | | | | | See: https://nodejs.org/en/blog/vulnerability/december-2017-security-releases/ CVE-2017-3738 does not affect our package, because we don't use bundled OpenSSL library. I'm not sure about CVE-2017-15896. | |||||
* | main/nodejs: security upgrade to 8.9.3 | Jakub Jirutka | 2017-12-09 | 1 | -2/+5 | |
| | | | | | | | See: https://nodejs.org/en/blog/vulnerability/december-2017-security-releases/ CVE-2017-3738 does not affect our package, because we don't use bundled OpenSSL library. I'm not sure about CVE-2017-15896. | |||||
* | community/borgbackup: upgrade to 1.1.3 | Jakub Jirutka | 2017-12-08 | 1 | -2/+2 | |
| | ||||||
* | community/imagemagick6: upgrade to 6.9.9.26 | Jakub Jirutka | 2017-12-08 | 1 | -2/+2 | |
| | ||||||
* | main/bacula: install binaries with mode 755 | Leonardo Arena | 2017-12-08 | 1 | -2/+3 | |
| | | | | (cherry picked from commit da7000604a1ef7e2ef866b031131bcae767f0b2e) | |||||
* | main/bash: fix overflow in jobs | Natanael Copa | 2017-12-07 | 2 | -1/+16 | |
| | | | | | | | fixes #8236 ref: https://github.com/tianon/docker-bash/issues/4 ref: https://github.com/gliderlabs/docker-alpine/issues/363 | |||||
* | main/redis: upgrade to 4.0.6 | TBK | 2017-12-07 | 1 | -2/+2 | |
| | ||||||
* | main/nodejs: upgrade to 8.9.2 | Tim Brust | 2017-12-07 | 1 | -2/+2 | |
| | ||||||
* | community/tor: security upgrade to 0.3.1.9 | Natanael Copa | 2017-12-07 | 1 | -3/+3 | |
| | | | | | | | | | | CVE-2017-8819 TROVE-2017-009: Replay-cache ineffective for v2 onion services CVE-2017-8820 TROVE-2017-010: Remote DoS attack against directory authorities CVE-2017-8821 TROVE-2017-011: An attacker can make Tor ask for a password CVE-2017-8822 TROVE-2017-012: Relays can pick themselves in a circuit path CVE-2017-8823 TROVE-2017-013: Use-after-free in onion service v2 fixes #8247 | |||||
* | community/nextcloud: upgrade to 12.0.4 | Leonardo Arena | 2017-12-05 | 4 | -434/+3 | |
| | | | | (cherry picked from commit a3ab3a5186575f9ccb06789a864452359e0e5b22) | |||||
* | community/ruby-nokogiri: rebuild against libxml 2.9.7 | Jakub Jirutka | 2017-12-04 | 1 | -1/+1 | |
| | | | | | | To get rid of this warning message after loading: WARNING: Nokogiri was built against LibXML version 2.9.6, but has dynamically loaded 2.9.7 | |||||
* | main/openssh: fix man pages | Natanael Copa | 2017-12-04 | 1 | -2/+2 | |
| | | | | fixes #8006 | |||||
* | main/pcre: add secfixes comment for CVE-2017-16231 | Natanael Copa | 2017-12-04 | 1 | -0/+1 | |
| | | | | | | | | We are not affected by CVE-2017-16231 due to our build with --with-match-limit-recursion=8192. We had this option since first commit, version 7.8, and were never affected. fixes #8139 | |||||
* | community/php7-memcached: upgrade to 3.0.4 | Andy Postnikov | 2017-12-03 | 1 | -3/+3 | |
| | ||||||
* | main/redis: upgrade to 4.0.5 and claim maintainership | TBK | 2017-12-03 | 1 | -4/+4 | |
| | ||||||
* | main/rrdtool: rebuild against perl 5.26.1 | Jakub Jirutka | 2017-12-03 | 1 | -1/+1 | |
| | | | | Fixes https://bugs.alpinelinux.org/issues/8232 | |||||
* | community/imagemagick6: upgrade to 6.9.9.25 | Jakub Jirutka | 2017-12-03 | 1 | -2/+2 | |
| | ||||||
* | gitignore: fix to not ignore directories named "core" | Jakub Jirutka | 2017-12-01 | 1 | -0/+1 | |
| | | | | (cherry picked from commit 3efb9cf76910560afe09af0b5e80c903ead466d1) | |||||
* | community/virtualbox-guest-additions: upgrade to 5.1.30 | Natanael Copa | 2017-12-01 | 1 | -2/+2 | |
| | | | | (cherry picked from commit 62b8ba5f8fe6d62d56b2d078b4f12f72830ee4af) | |||||
* | ======== release 3.7.0 ========v3.7.0 | Natanael Copa | 2017-11-30 | 1 | -1/+1 | |
| | ||||||
* | main/alpine-conf: upgrade to 3.7.0 | Natanael Copa | 2017-11-30 | 1 | -2/+2 | |
| | ||||||
* | main/py-django-oscar: upgrade to 1.5.1 | Kaarle Ritvanen | 2017-11-30 | 1 | -3/+3 | |
| | ||||||
* | main/linux-hardened: remove unused patch | Natanael Copa | 2017-11-30 | 1 | -226433/+0 | |
| | ||||||
* | .gitignore core files | Natanael Copa | 2017-11-30 | 1 | -0/+1 | |
| | ||||||
* | community/webkit2gtk: remove core binary | Natanael Copa | 2017-11-30 | 1 | -0/+0 | |
| | | | | was never suppoed to enter the repo | |||||
* | testing/pulseaudio: disable on s390x | Natanael Copa | 2017-11-30 | 1 | -1/+1 | |
| | ||||||
* | main/perl-test-simple: upgrade to 1.302118 | Francesco Colista | 2017-11-30 | 1 | -2/+2 | |
| | ||||||
* | community/py3-aiohttp: upgrade to 2.3.4 | Francesco Colista | 2017-11-30 | 1 | -3/+3 | |
| | ||||||
* | community/perl-moose: upgrade to 2.2009 | Francesco Colista | 2017-11-30 | 1 | -2/+2 | |
| | ||||||
* | main/linux-rpi: upgrade to 4.9.65 | Natanael Copa | 2017-11-30 | 1 | -2/+2 | |
| | ||||||
* | community/webkit2gtk: upgrade to 2.18.3 | Natanael Copa | 2017-11-30 | 5 | -42/+45 | |
| | | | | | | | | | fixes #8193 CVE-2017-13783, CVE-2017-13784, CVE-2017-13785, CVE-2017-13788, CVE-2017-13791, CVE-2017-13792, CVE-2017-13793, CVE-2017-13794, CVE-2017-13795, CVE-2017-13796, CVE-2017-13798, CVE-2017-13802, CVE-2017-13803 | |||||
* | main/lxc: move bash-completion data to subpackage | Valery Kartel | 2017-11-30 | 1 | -3/+10 | |
| | ||||||
* | main/conky: upgrade to 1.10.6 and add simple check | Roberto Oliveira | 2017-11-30 | 1 | -3/+7 | |
| | | | | Add a simple test as upstream doesn't provide a test suite. | |||||
* | main/dovecot: enable tests | Natanael Copa | 2017-11-30 | 2 | -1/+22 | |
| | ||||||
* | main/dovecot: Add subpackages for solr and lucene | Simon Frankenberger | 2017-11-30 | 1 | -1/+15 | |
| | ||||||
* | gst-plugins-bad: enable mesa, bluez, webp and x265 | Natanael Copa | 2017-11-30 | 1 | -2/+6 | |
| | | | | webkitgtk needs gstreamer-gl |