aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* main/pcre: security fix for CVE-2014-8964Natanael Copa2015-01-252-5/+78
| | | | | | | ref #3731 fixes #3735 (cherry picked from commit 656ff36b75f24b7f58cdc79362a8a975460fb1db)
* main/php: security upgrade to 5.6.5Natanael Copa2015-01-232-8/+11
| | | | | fixes 3713 (cherry picked from commit bc7a651405864891312f3556d8f87c6bcb822c7b)
* main/php: upgrade to 5.6.4Natanael Copa2015-01-231-4/+4
| | | | (cherry picked from commit 40f3bec8c9e11c2d90aab11bd94044d76b5db460)
* main/lsyncd: fix CVE-2014-8990Natanael Copa2015-01-232-1/+112
| | | | | | fixes #3723 (cherry picked from commit 655d521104ae64806748d619c3e3394c4974aa55)
* main/lsyncd: fix lpostcmd example script after upgradeTimo Teräs2015-01-232-9/+18
| | | | | | | Seems the upstream lpostcmd.lua example is outdated, and needs few additional fixes again. fixes #3678. (cherry picked from commit 4c5a6852d499231f038d466970f5374977c09a7d)
* main/xen: various sec fixes (xsa109 - xsa116)Natanael Copa2015-01-238-2/+997
| | | | | | | | | | | | | | | | | | | | | | | | | | | | ref #3704 fixes #3708 XSA-116 CVE-2015-0361 xen crash due to use after free on hvm guest teardown XSA-114 CVE-2014-9065 CVE-2014-9066 p2m lock starvation XSA-113 CVE-2014-9030 Guest effectable page reference leak in MMU_MACHPHYS_UPDATE handling XSA-112 CVE-2014-8867 Insufficient bounding of "REP MOVS" to MMIO emulated inside the hypervisor XSA-111 CVE-2014-8866 Excessive checking in compatibility mode hypercall argument translation XSA-110 CVE-2014-8595 Missing privilege level checks in x86 emulation of far branches XSA-109 CVE-2014-8594 Insufficient restrictions on certain MMU update hypercalls (cherry picked from commit 621b3e6ae3cef5a89353cb0868372c2b94ffa454)
* main/linux-virt-grsec: upgrade to 3.14.29Natanael Copa2015-01-223-10/+10
| | | | (cherry picked from commit e0681cfa7d586af49e81362bd0ce220402c37389)
* testing/zfs-grsec: rebuild against kernel 3.14.29-r0Natanael Copa2015-01-211-2/+2
|
* testing/virtualbox-additions-grsec: rebuild against kernel 3.14.29-r0Natanael Copa2015-01-211-2/+2
|
* testing/spl-grsec: rebuild against kernel 3.14.29-r0Natanael Copa2015-01-211-2/+2
|
* testing/ipt-netflow-grsec: rebuild against kernel 3.14.29-r0Natanael Copa2015-01-211-2/+2
|
* testing/flashcache-grsec: rebuild against kernel 3.14.29-r0Natanael Copa2015-01-211-2/+2
|
* testing/devicemaster-linux-grsec: rebuild against kernel 3.14.29-r0Natanael Copa2015-01-211-2/+2
|
* main/xtables-addons-grsec: rebuild against kernel 3.14.29-r0Natanael Copa2015-01-211-2/+2
|
* main/open-vm-tools-grsec: rebuild against kernel 3.14.29-r0Natanael Copa2015-01-211-2/+2
|
* main/ipfw-grsec: rebuild against kernel 3.14.29-r0Natanael Copa2015-01-211-2/+2
|
* main/dahdi-linux-grsec: rebuild against kernel 3.14.29-r0Natanael Copa2015-01-211-2/+2
|
* main/linux-grsec: upgrade to 3.14.29Natanael Copa2015-01-212-87/+115
| | | | (cherry picked from commit 7f206311996d51b5d62bd4a785acdd671ec9f5e8)
* main/linux-grsec: upgrade to grsecurity-3.0-3.14.28-201501142323Natanael Copa2015-01-214-65/+132
| | | | | | and update the gre fix inner mac header in nbma tunnel xmit patch (cherry picked from commit 971ff2230214b831cfd5f887cc1b36438ae71efe)
* main/linux-grsec: upgrade to 3.14.28Natanael Copa2015-01-212-277/+76
| | | | (cherry picked from commit 0182cb7fd3ce68724c6043efa1c55e9c0e7247cd)
* main/webkitgtk: upgrade to 2.4.8Natanael Copa2015-01-211-4/+4
| | | | fixes #3696
* main/musl: syslog fixesNatanael Copa2015-01-213-1/+64
| | | | | fixes #3692 fixes #3693
* main/aaudit: server side fixes, and improvementsTimo Teräs2015-01-202-17/+31
| | | | (cherry picked from commit f2c45aef4503685588c0e2b673d15511dffe277c)
* main/acf-provisioning: upgrade to 0.5.1Ted Trask2015-01-121-4/+4
|
* main/acf-lib: upgrade to 0.7.2Ted Trask2015-01-121-4/+4
| | | | (cherry picked from commit 8539ee39c12ee5aced589276c78a2dbe1d754b6a)
* main/acf-core: upgrade to 0.18.5Ted Trask2015-01-121-4/+4
| | | | (cherry picked from commit 4c28ca7633b3f575b988b376855b61a6969d8983)
* main/acf-awall: upgrade to 0.4.1Ted Trask2015-01-121-4/+4
| | | | (cherry picked from commit 9a9f702581eac59ba5a2ef464e07152cc88d7fd9)
* main/omxplayer: add a workaround for issue 297, make -dbg workTimo Teräs2015-01-092-2/+23
| | | | (cherry picked from commit 8f5c2093c6f936572ab0b5aeee7aac7ffcfc1988)
* main/openssl: security upgrade to 1.0.1kTimo Teräs2015-01-092-29/+19
| | | | | | | | | | | | | | | fixes #3684 CVE-2014-3571 DTLS segmentation fault in dtls1_get_record CVE-2015-0206 DTLS memory leak in dtls1_buffer_record CVE-2014-3569 no-ssl3 configuration sets method to NULL CVE-2014-3572 ECDHE silently downgrades to ECDH [Client] CVE-2015-0204 RSA silently downgrades to EXPORT_RSA [Client] CVE-2015-0205 DH client certificates accepted without verification [Server] CVE-2014-8275 Certificate fingerprints can be modified CVE-2014-3570 Bignum squaring may produce incorrect results (cherry picked from commit 26dd384585d2182a35bd9450091726b6472b3b24)
* ==== release 3.1.1 ====v3.1.1Natanael Copa2015-01-061-1/+1
|
* main/ruby-rmagick: rebuild with libruby.so.2.1Natanael Copa2015-01-061-1/+1
|
* main/redmine: upgrade to 2.4.7Natanael Copa2015-01-061-4/+4
| | | | | | fixes #3620 (cherry picked from commit 842212288afa20dab3fd71205dbd18d364aaa157)
* main/libvirt: upgrade to 1.2.11Natanael Copa2015-01-061-6/+6
| | | | | | fixes #3625 (cherry picked from commit 6224aa69dfd4e26132f5225e84b6a034d91aa880)
* main/phpmyadmin: upgrade to 4.3.5Natanael Copa2015-01-061-4/+4
| | | | fixes #3626
* main/linux-virt-grsec: upgrade to grsecurity-3.0-3.14.27-201501042018Natanael Copa2015-01-063-126203/+6
| | | | (cherry picked from commit b0458e8aa34ab6965a07c425352a40ad467f16ea)
* main/linux-virt-grsec: upgrade to grsecurity-3.0-3.14.27-201501011217Natanael Copa2015-01-062-30/+809
| | | | (cherry picked from commit d65b7f924829593a577746d77cb3f8c3f46997f4)
* testing/zfs-grsec: rebuild against kernel 3.14.27-r2Natanael Copa2015-01-061-1/+1
|
* testing/virtualbox-additions-grsec: rebuild against kernel 3.14.27-r2Natanael Copa2015-01-061-1/+1
|
* testing/spl-grsec: rebuild against kernel 3.14.27-r2Natanael Copa2015-01-061-1/+1
|
* testing/ipt-netflow-grsec: rebuild against kernel 3.14.27-r2Natanael Copa2015-01-061-1/+1
|
* testing/flashcache-grsec: rebuild against kernel 3.14.27-r2Natanael Copa2015-01-061-1/+1
|
* testing/devicemaster-linux-grsec: rebuild against kernel 3.14.27-r2Natanael Copa2015-01-061-1/+1
|
* main/xtables-addons-grsec: rebuild against kernel 3.14.27-r2Natanael Copa2015-01-061-1/+1
|
* main/open-vm-tools-grsec: rebuild against kernel 3.14.27-r2Natanael Copa2015-01-061-1/+1
|
* main/ipfw-grsec: rebuild against kernel 3.14.27-r2Natanael Copa2015-01-061-1/+1
|
* main/dahdi-linux-grsec: rebuild against kernel 3.14.27-r2Natanael Copa2015-01-061-1/+1
|
* main/linux-grsec: upgrade to grsecurity-3.0-3.14.27-201501042018Natanael Copa2015-01-062-10/+19
| | | | (cherry picked from commit 0ade6e80d5a3a213ae8b079e25319aff511ca38f)
* main/linux-grsec: upgrade to grsecurity-3.0-3.14.27-201501011217Natanael Copa2015-01-022-30/+809
| | | | (cherry picked from commit 895538e88106051055b34fb9fdf6b304581d7a68)
* main/omxplayer: enable -dbg, add sleep time to conf.dTimo Teräs2015-01-013-9/+10
| | | | (cherry picked from commit ea53ed7649514f5d1b8ca16d09f2240fe6084e45)
* main/strongswan: enable EAP TLSNatanael Copa2015-01-011-1/+2
| | | | (cherry picked from commit afd5a202d77ee5b673897d72ed44b4e9137276d6)