Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/tzdata: upgrade to 2018g | Pedro Filipe | 2019-04-15 | 1 | -8/+9 | |
| | ||||||
* | community/php7: security upgrade to 7.2.17 | Leonardo Arena | 2019-04-15 | 1 | -2/+15 | |
| | | | | | | | | | | | | | CVE-2019-9641 CVE-2019-9640 CVE-2019-9639 CVE-2019-9638 CVE-2019-9637 CVE-2019-9024 CVE-2019-9023 CVE-2019-9022 CVE-2019-9021 CVE-2019-9020 | |||||
* | main/libsndfile: update CVE-2018-19758 fix from upstream | alpine-mips-patches | 2019-04-12 | 2 | -1/+17 | |
| | | | | | | | | The CVE-2018-19758.patch is now a merge of relevant bits from two upstream commits: 42132c543358cee9f7c3e9e9b15bb6c1063a608e 6d7ce94c020cc720a6b28719d1a7879181790008 Fixes #10108 | |||||
* | main/libsndfile: correct secfixes comment | Leonardo Arena | 2019-04-12 | 1 | -1/+1 | |
| | ||||||
* | main/nettle: upgrade to 3.4.1 | Leonardo Arena | 2019-04-12 | 1 | -3/+3 | |
| | ||||||
* | main/gnutls: typo secfixes comment | J0WI | 2019-04-12 | 1 | -1/+1 | |
| | ||||||
* | main/gnutls: security upgrade to 3.6.7 | J0WI | 2019-04-12 | 1 | -2/+5 | |
| | ||||||
* | main/gnutls: upgrade to 3.6.6 | J0WI | 2019-04-12 | 2 | -11/+10 | |
| | ||||||
* | main/gnutls: upgrade to 3.6.5 | J0WI | 2019-04-12 | 1 | -3/+3 | |
| | ||||||
* | main/gnutls: upgrade to 3.6.4 | J0WI | 2019-04-12 | 1 | -3/+3 | |
| | | | | Fixes #9508 | |||||
* | main/bind: security upgrade to 9.12.3_p4 | tcely | 2019-04-12 | 1 | -4/+7 | |
| | | | | | | | | | | | | | | | | | | | https://ftp.isc.org/isc/bind9/9.12.3-P4/RELEASE-NOTES-bind-9.12.3-P4.html - CVE-2019-6465 - CVE-2018-5745 - CVE-2018-5744 - CVE-2018-5740 - CVE-2018-5738 - CVE-2018-5737 - CVE-2018-5736 Fixes #10167 BIND is open source software licenced under the terms of the Mozilla Public License, version 2.0 (see the LICENSE file for the full text). BIND 9.12 will be supported until at least May, 2019. | |||||
* | community/openjdk7: security upgrade to 7.211.2.6.17 | J0WI | 2019-04-11 | 2 | -14/+41 | |
| | ||||||
* | community/nextcloud: upgrade to 14.0.10 | Leonardo Arena | 2019-04-09 | 1 | -2/+2 | |
| | ||||||
* | main/gd: disable tests for more arches | Leonardo Arena | 2019-04-08 | 1 | -2/+2 | |
| | | | | | FAIL: gdimagecopyresampled/bug00201 FAIL: gdimagegrayscale/basic | |||||
* | main/gd: modernize and add security patches | J0WI | 2019-04-08 | 5 | -46/+310 | |
| | | | | | | CVE-2018-5711, CVE-2019-6977, CVE-2019-6978 Fixes #10085 | |||||
* | main/putty: on arm* and aarch64 needs linux-headers | Leonardo Arena | 2019-04-08 | 1 | -1/+2 | |
| | ||||||
* | main/putty: security upgrade to 0.71 | Leonardo Arena | 2019-04-08 | 2 | -4/+27 | |
| | | | | | | | | CVE-2019-9894, CVE-2019-9895, CVE-2019-9897, CVE-2019-9898 Fixes #10195 Update license, disable check | |||||
* | main/wget: security upgrade to 1.20.3 (CVE-2019-5953) | Leonardo Arena | 2019-04-08 | 1 | -2/+2 | |
| | | | | Fixes #10212 | |||||
* | community/imagemagick6: upgrade to 6.9.10.39 | Leonardo Arena | 2019-04-08 | 1 | -3/+3 | |
| | | | | 6.9.10.37 was actually never built. Adjusting security info. | |||||
* | community/imagemagick6: security upgrade to 6.9.10.37 | J0WI | 2019-04-08 | 1 | -2/+57 | |
| | ||||||
* | community/imagemagick6: fix broken download link | Mike Sullivan | 2019-04-08 | 1 | -2/+2 | |
| | ||||||
* | main/ghostscript: security fixes (CVE-2019-3835, CVE-2019-3838, CVE-2019-6116) | J0WI | 2019-04-04 | 4 | -1/+1452 | |
| | ||||||
* | community/mumble: security fixes (CVE-2018-20743) | J0WI | 2019-04-04 | 3 | -3/+233 | |
| | ||||||
* | main/apache2: security upgrade to 2.4.39 | J0WI | 2019-04-03 | 1 | -3/+10 | |
| | | | | fixes #10188 | |||||
* | main/opensmtpd: fix init script, missing extra_commands | Jakub Jirutka | 2019-04-03 | 2 | -3/+3 | |
| | ||||||
* | main/postgresql: upgrade to 10.7 | Leonardo Arena | 2019-04-03 | 1 | -2/+2 | |
| | ||||||
* | main/dovecot: don't run tests in fakeroot | Natanael Copa | 2019-04-01 | 1 | -0/+1 | |
| | ||||||
* | main/dovecot: security upgrade to 2.3.5.1 | J0WI | 2019-04-01 | 1 | -5/+7 | |
| | ||||||
* | main/libssh2: upgrade to 1.8.2 | Natanael Copa | 2019-03-27 | 1 | -7/+2 | |
| | | | | | | | fixes a regression introduced by the security update 1.8.1. upstream issue: https://github.com/libssh2/libssh2/issues/336 downstream issue: https://github.com/gliderlabs/docker-alpine/issues/507 | |||||
* | main/libssh2: security upgrade to 1.8.1 | Francesco Colista | 2019-03-19 | 1 | -3/+15 | |
| | | | | | | | | | | | | | | - CVE-2019-3855 - CVE-2019-3856 - CVE-2019-3857 - CVE-2019-3858 - CVE-2019-3859 - CVE-2019-3860 - CVE-2019-3861 - CVE-2019-3862 - CVE-2019-3863 Fixes #10130 | |||||
* | community/pdns: security upgrade to 4.1.7 | prspkt | 2019-03-19 | 1 | -2/+4 | |
| | | | | - CVE-2019-3871 | |||||
* | community/soundtouch: security upgrade to 2.1.2 | Natanael Copa | 2019-03-17 | 1 | -4/+10 | |
| | | | | | | | | | | | CVE-2018-17096 soundtouch: Assertion failure in BPMDetect class in BPMDetect.cpp CVE-2018-17097 soundtouch: Double free in WavFileBase class in WavFile.cpp CVE-2018-17098 soundtouch: Heap corruption in WavFileBase class in WavFile.cpp fixes #9882 | |||||
* | community/openjdk8: security upgrade to 3.11.0 (java 8u201b08) | J0WI | 2019-03-15 | 2 | -17/+21 | |
| | ||||||
* | main/openjpeg: security fixes | Francesco Colista | 2019-03-14 | 2 | -2/+85 | |
| | | | | | | - CVE-2018-5785 this commit fixes #10095 | |||||
* | ==== release 3.8.4 ====v3.8.4 | Natanael Copa | 2019-03-06 | 1 | -1/+1 | |
| | ||||||
* | scripts/genrootfs.sh: exclude dev/* | Natanael Copa | 2019-03-06 | 1 | -3/+1 | |
| | | | | | | | exclude /dev/* from minirootfs. https://github.com/gliderlabs/docker-alpine/issues/356 (cherry picked from commit 2f07f9eb884af94f47b94c1fdde5e2ecdd177a19) | |||||
* | ==== release 3.8.3 ====v3.8.3 | Natanael Copa | 2019-03-05 | 1 | -1/+1 | |
| | ||||||
* | main/polkit: security fix (CVE-2018-19788) | Natanael Copa | 2019-03-05 | 2 | -1/+195 | |
| | | | | Fixes #9754 | |||||
* | main/curl: security fixes | Leonardo Arena | 2019-03-05 | 4 | -2/+104 | |
| | | | | | | CVE-2018-16890, CVE-2019-3822, CVE-2019-3823 Fixes #9992 | |||||
* | main/linux-vanilla: fix build of x86 linux-virt | Natanael Copa | 2019-03-04 | 2 | -15/+18 | |
| | ||||||
* | main/openssh: include patch from upstream | Leonardo Arena | 2019-03-04 | 2 | -0/+122 | |
| | | | | | | Fix a progress meter visualization bug that is seems to have been introduced with CVE-2019-6109 fix (cherry picked from commit 7e86abd857f3234a171b07db0409267dc51df9af) | |||||
* | main/openssh: security fixes | Leonardo Arena | 2019-03-04 | 5 | -12/+513 | |
| | | | | | | | | CVE-2018-20685, CVE-2019-6109, CVE-2019-6111 Rebase HPN patch fixes #9998 | |||||
* | main/zfs-vanilla: rebuild against kernel 4.14.104-r0 | Natanael Copa | 2019-03-04 | 1 | -1/+1 | |
| | ||||||
* | main/xtables-addons-vanilla: rebuild against kernel 4.14.104-r0 | Natanael Copa | 2019-03-04 | 1 | -1/+1 | |
| | ||||||
* | main/spl-vanilla: rebuild against kernel 4.14.104-r0 | Natanael Copa | 2019-03-04 | 1 | -2/+2 | |
| | ||||||
* | main/drbd9-vanilla: rebuild against kernel 4.14.104-r0 | Natanael Copa | 2019-03-04 | 1 | -1/+1 | |
| | ||||||
* | main/devicemaster-linux-vanilla: rebuild against kernel 4.14.104-r0 | Natanael Copa | 2019-03-04 | 1 | -1/+1 | |
| | ||||||
* | main/dahdi-linux-vanilla: rebuild against kernel 4.14.104-r0 | Natanael Copa | 2019-03-04 | 1 | -1/+1 | |
| | ||||||
* | community/virtualbox-guest-modules-vanilla: rebuild against kernel 4.14.104-r0 | Natanael Copa | 2019-03-04 | 1 | -1/+1 | |
| | ||||||
* | main/linux-vanilla: upgrade to 4.14.104 | Natanael Copa | 2019-03-04 | 8 | -47/+57 | |
| |