Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | ==== release 3.3.3 ====v3.3.3 | Natanael Copa | 2016-03-24 | 1 | -1/+1 |
| | |||||
* | main/py-django: security upgrade to 1.8.10 (CVE-2016-2512,CVE-2016-2513) | Natanael Copa | 2016-03-24 | 1 | -4/+4 |
| | |||||
* | main/nss: security upgrade to 3.21.1 (CVE-2016-1950,CVE-2016-1979) | Natanael Copa | 2016-03-24 | 1 | -10/+7 |
| | | | | fixes #5322 | ||||
* | main/nss: upgrade to 3.21 | Natanael Copa | 2016-03-24 | 3 | -129/+4 |
| | | | | (cherry picked from commit 6e1d3cf345ed6b20a9481d39ac82fbea7ce723c9) | ||||
* | main/musl: cherry-pick upstream fixes | Timo Teräs | 2016-03-23 | 7 | -1/+258 |
| | | | | fixes #5282 | ||||
* | main/ncftp: remove alloca use | Timo Teräs | 2016-03-23 | 2 | -9/+139 |
| | | | | | It's incorrect and can cause issues. This half of the fix for the ncftp bugs, the other part is musl issue. ref #5282 | ||||
* | main/dropbear: security upgrade to 2016.72 (CVE-2016-3116). Fixes #5292 | Leonardo Arena | 2016-03-22 | 1 | -4/+4 |
| | |||||
* | main/git: security upgrade to 2.6.6 (CVE-2016-2315,CVE-2016-2324) | Natanael Copa | 2016-03-22 | 1 | -4/+4 |
| | | | | fixes #5309 | ||||
* | main/mkinitfs: fix cold plugging of certain platform/usb devices | Timo Teräs | 2016-03-21 | 2 | -4/+38 |
| | | | | (cherry picked from commit 7140f9c231b307186dd41214a7cf4e7299f1c82d) | ||||
* | main/linux-rpi: upgrade to 4.1.20 | Timo Teräs | 2016-03-21 | 2 | -11/+11 |
| | | | | | | fixes #5077 (cherry picked from commit acb38ab4b89994444012fd8524ffb13e09cdf127) | ||||
* | main/su-exec: upgrade to 0.2 | Natanael Copa | 2016-03-21 | 1 | -4/+4 |
| | | | | (cherry picked from commit 299cbaf0a26ad6070401f164f4b73775079a9144) | ||||
* | testing/zfs-grsec: rebuild against kernel 4.1.20-r0 | Natanael Copa | 2016-03-21 | 1 | -1/+1 |
| | |||||
* | testing/virtualbox-additions-grsec: rebuild against kernel 4.1.20-r0 | Natanael Copa | 2016-03-21 | 1 | -1/+1 |
| | |||||
* | testing/spl-grsec: rebuild against kernel 4.1.20-r0 | Natanael Copa | 2016-03-21 | 1 | -1/+1 |
| | |||||
* | testing/ipt-netflow-grsec: rebuild against kernel 4.1.20-r0 | Natanael Copa | 2016-03-21 | 1 | -1/+1 |
| | |||||
* | testing/flashcache-grsec: rebuild against kernel 4.1.20-r0 | Natanael Copa | 2016-03-21 | 1 | -1/+1 |
| | |||||
* | main/xtables-addons-grsec: rebuild against kernel 4.1.20-r0 | Natanael Copa | 2016-03-21 | 1 | -1/+1 |
| | |||||
* | main/open-vm-tools-grsec: rebuild against kernel 4.1.20-r0 | Natanael Copa | 2016-03-21 | 1 | -1/+1 |
| | |||||
* | main/ipfw-grsec: rebuild against kernel 4.1.20-r0 | Natanael Copa | 2016-03-21 | 1 | -1/+1 |
| | |||||
* | main/devicemaster-linux-grsec: rebuild against kernel 4.1.20-r0 | Natanael Copa | 2016-03-21 | 1 | -1/+1 |
| | |||||
* | main/dahdi-linux-grsec: rebuild against kernel 4.1.20-r0 | Natanael Copa | 2016-03-21 | 1 | -1/+1 |
| | |||||
* | main/linux-grsec: upgrade to 4.1.20 | Timo Teräs | 2016-03-21 | 4 | -224/+4 |
| | | | | (cherry picked from commit b256149eab7fe91af7ba37f572dfa43b0eadaff4) | ||||
* | main/openldap: upgrade to 2.4.44 | Sören Tempel | 2016-03-21 | 3 | -42/+29 |
| | | | | | | Fixes #5289 (cherry picked from commit bacd651391888a1f09e6a4667a53fb96a9b4ab80) | ||||
* | main/linux-vanilla: upgrade to 4.1.20 | Timo Teräs | 2016-03-21 | 8 | -498/+5 |
| | | | | | | | | Some xsa fixes are included already upstream, and remove the rest to be a vanilla kernel. User is choosing upstream over security if they are using this kernel. (cherry picked from commit 57b73039ccd145d76ec79f1d44370c12e6c8ee2f) | ||||
* | main/owncloud: bump pkgrel to trigger rebuild | Sören Tempel | 2016-03-20 | 1 | -1/+1 |
| | | | | Fixes #5298 | ||||
* | main/kamailio: upgrade to 4.3.5 | Leonardo Arena | 2016-03-18 | 1 | -5/+5 |
| | |||||
* | ==== release 3.3.2 ====v3.3.2 | Natanael Copa | 2016-03-18 | 1 | -1/+1 |
| | |||||
* | main/openrc: use overlayfs instead of unionfs for modloop | Mark White | 2016-03-18 | 2 | -10/+11 |
| | | | | | | fixes #5144 (cherry picked from commit 945bf9e18b6cc6525aeee325047d9e7a833fa879) | ||||
* | main/openrc: mount efivars read-only | Natanael Copa | 2016-03-18 | 2 | -1/+18 |
| | | | | | | | unintentional writes to efivars may result in bricked hardware. mount it read-only to play safe. (cherry picked from commit 53694c791e7c7112a0d8e4b47bdca8fd03edea4e) | ||||
* | main/openssh: security upgrade to 7.2_p2 | Natanael Copa | 2016-03-18 | 2 | -8/+8 |
| | | | | http://www.openssh.com/txt/x11fwd.adv | ||||
* | main/openssh: upgrade to 7.2_p1 | Valery Kartel | 2016-03-18 | 3 | -16/+16 |
| | | | | (cherry picked from commit 62e040d84cf4924e032eef198681fccdb54bba4b) | ||||
* | main/network-extras: pull in usb-modeswitch | Natanael Copa | 2016-03-18 | 1 | -2/+2 |
| | | | | | | | needed for some usb modems fixes #5277 (cherry picked from commit 2cd7a670e3ed36724d282fc405fd293868df336c) | ||||
* | main/cacti: security upgrade to 0.8.8g (CVE-2015-8369,CVE-2015-8377) | Natanael Copa | 2016-03-18 | 1 | -13/+5 |
| | | | | fixes #4994 | ||||
* | main/ulogd: fix fortify found memcpy misuse causing crash | Timo Teräs | 2016-03-18 | 2 | -2/+18 |
| | | | | | | fixes #5261 (cherry picked from commit d7f68bf531b9d57dbf3aa5608f6acb3e8d58c273) | ||||
* | main/ulogd: Added description to init.d script and removed net dependency | Daniele Coli | 2016-03-18 | 2 | -5/+7 |
| | | | | | | | | | | Added description to init.d script in order to make it compliant with rc-system and avoid annoying warning messages on syslog. Deleted net dependency in order to avoid the error on startup "cannot start ulogd as networking would not start", since the required before firewall and firewall start before net. (cherry picked from commit 790b1d3a815f40b9cb932642ebeef0f5688582ce) | ||||
* | main/usb-modeswitch: split out udev files | Natanael Copa | 2016-03-18 | 1 | -5/+14 |
| | | | | | | | the usb_modeswitch_dispatcher is a tcl script but is only needed by udev. We split it out so we avoid the tcl dependency. ref #5277 | ||||
* | testing/zfs-grsec: rebuild against kernel 4.1.19-r0 | Natanael Copa | 2016-03-15 | 1 | -1/+1 |
| | |||||
* | testing/virtualbox-additions-grsec: rebuild against kernel 4.1.19-r0 | Natanael Copa | 2016-03-15 | 1 | -1/+1 |
| | |||||
* | testing/spl-grsec: rebuild against kernel 4.1.19-r0 | Natanael Copa | 2016-03-15 | 1 | -1/+1 |
| | |||||
* | testing/ipt-netflow-grsec: rebuild against kernel 4.1.19-r0 | Natanael Copa | 2016-03-15 | 1 | -1/+1 |
| | |||||
* | testing/flashcache-grsec: rebuild against kernel 4.1.19-r0 | Natanael Copa | 2016-03-15 | 1 | -1/+1 |
| | |||||
* | main/xtables-addons-grsec: rebuild against kernel 4.1.19-r0 | Natanael Copa | 2016-03-15 | 1 | -1/+1 |
| | |||||
* | main/open-vm-tools-grsec: rebuild against kernel 4.1.19-r0 | Natanael Copa | 2016-03-15 | 1 | -1/+1 |
| | |||||
* | main/ipfw-grsec: rebuild against kernel 4.1.19-r0 | Natanael Copa | 2016-03-15 | 1 | -1/+1 |
| | |||||
* | main/devicemaster-linux-grsec: rebuild against kernel 4.1.19-r0 | Natanael Copa | 2016-03-15 | 1 | -1/+1 |
| | |||||
* | main/dahdi-linux: upgrade to 2.11.1 | Natanael Copa | 2016-03-15 | 1 | -4/+4 |
| | |||||
* | main/dahdi-linux-grsec: rebuild against kernel 4.1.19-r0, upgrade dahdi | Timo Teräs | 2016-03-15 | 1 | -5/+5 |
| | |||||
* | main/linux-grsec: upgrade to 4.1.19 | Timo Teräs | 2016-03-15 | 1 | -4/+4 |
| | |||||
* | main/samba: security upgrade to 4.2.9 (CVE-2015-7560, CVE-2016-0771). Fixes ↵ | Leonardo Arena | 2016-03-15 | 1 | -4/+4 |
| | | | | | | #5273 (cherry picked from commit e44afa81c87bd2e939a9335a4a0f79e9d2e29a6b) | ||||
* | main/linux-vanilla: enable posix mqueue for x86 and x86_64 | Marc Vertes | 2016-03-15 | 3 | -9/+11 |
| | | | | | | | This is required to run docker. It is already enabled in grsec flavor and armhf. (cherry picked from commit 0c79deaae0f53d08729af9bc0d235efbdff86826) |