Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/devicemaster-linux-grsec: rebuild against kernel 4.4.41-r0 | Natanael Copa | 2017-01-11 | 1 | -2/+2 | |
| | ||||||
* | main/dahdi-linux-grsec: rebuild against kernel 4.4.41-r0 | Natanael Copa | 2017-01-11 | 1 | -2/+2 | |
| | ||||||
* | main/linux-grsec: upgrade to 4.4.41 | Natanael Copa | 2017-01-11 | 1 | -8/+8 | |
| | ||||||
* | main/linux-grsec: fix linux-virtgrsec-dev | Natanael Copa | 2017-01-11 | 1 | -11/+3 | |
| | ||||||
* | main/linux-grsec: Add sdhci-acpi module | Nicolas Porcel | 2017-01-11 | 3 | -9/+9 | |
| | ||||||
* | community/firejail: update to 0.9.44.4 | Stuart Cardall | 2017-01-11 | 1 | -4/+4 | |
| | | | | | | | | | | | firejail (0.9.44.4) baseline; urgency=low * security: --bandwidth root shell found by Martin Carpenter (CVE-2017-5207) * security: disabled --allow-debuggers when running on kernel versions prior to 4.8; a kernel bug in ptrace system call allows a full bypass of seccomp filter; problem reported by Lizzie Dixon (CVE-2017-5206) * security: root exploit found by Sebastian Krahmer (CVE-2017-5180) -- netblue30 Sat, 7 Jan 2017 10:00:00 -0500 | |||||
* | main/aconf: upgrade to 0.6.5 | Kaarle Ritvanen | 2017-01-09 | 1 | -4/+4 | |
| | ||||||
* | community/ruby2.1: fix error on libressl | Jakub Jirutka | 2017-01-06 | 2 | -5/+49 | |
| | ||||||
* | main/openssh: remove url from secfixes comment | Natanael Copa | 2017-01-06 | 1 | -2/+1 | |
| | ||||||
* | main/icu: fix typo in secfixes comment | Natanael Copa | 2017-01-06 | 1 | -1/+1 | |
| | ||||||
* | testing/acme-client: move to community | ScrumpyJack | 2017-01-06 | 2 | -0/+0 | |
| | | | | | | Successful testing over 3 months and 2 version, move to community. (cherry picked from commit 0b40d7adc34ad5f218876e5496de342698fd3f25) | |||||
* | main/pcsc-lite: security upgrade to 1.8.20 (CVE-2016-10109) | Timo Teräs | 2017-01-06 | 2 | -31/+10 | |
| | | | | | fixes #6629 remove unneeded patch (upstream fixed issue) | |||||
* | main/ssh-getkey-ldap: upgrade to 0.1.2 | Jakub Jirutka | 2017-01-04 | 1 | -4/+4 | |
| | ||||||
* | main/open-vm-tools: fix the strerror_r patch | Natanael Copa | 2017-01-04 | 2 | -6/+19 | |
| | | | | fixes #5487 | |||||
* | main/open-vm-tools: enable -dbg | Natanael Copa | 2017-01-02 | 1 | -2/+2 | |
| | ||||||
* | main/open-vm-tools: fix segfault in error reporting | Natanael Copa | 2017-01-02 | 2 | -1/+25 | |
| | | | | fixes #5487 | |||||
* | community/phpmyadmin: mistake fixed in secfixes info | Sergey Lukin | 2016-12-30 | 1 | -2/+1 | |
| | ||||||
* | community/phpmyadmin: security upgrade to 4.6.5.2 - fixes #6595 | Sergey Lukin | 2016-12-29 | 1 | -4/+28 | |
| | | | | | | | | | | | | | | | | | | | | | | | CVE-2016-9847: Unsafe generation of blowfish secret CVE-2016-9848: phpinfo information leak value of sensitive (HttpOnly) cookies CVE-2016-9849: Username deny rules bypass (AllowRoot & Others) by using Null Byte CVE-2016-9850: Username rule matching issues CVE-2016-9851: With a crafted request parameter value it is possible to bypass the logout timeout. CVE-2016-9852 CVE-2016-9853 CVE-2016-9854 CVE-2016-9855: Multiple full path disclosure vulnerabilities CVE-2016-9856 CVE-2016-9857: Multiple XSS vulnerabilities CVE-2016-9858 CVE-2016-9859 CVE-2016-9860: We consider these vulnerabilities to be of moderate severity. CVE-2016-9861: Bypass white-list protection for URL redirection CVE-2016-9862: BBCode injection vulnerability CVE-2016-9863: DOS vulnerability in table partitioning CVE-2016-9864: Multiple SQL injection vulnerabilities CVE-2016-9865: Incorrect serialized string parsing CVE-2016-9866: CSRF token not stripped from the URL Jumping through 3 versions: 4.6.5, 4.6.5.1, 4.6.5.2 These upgrades does not contain major changes: https://www.phpmyadmin.net/news/2016/11/25/phpmyadmin-401018-44159-and-465-are-released/ https://www.phpmyadmin.net/news/2016/11/26/phpmyadmin-4651-released/ https://www.phpmyadmin.net/news/2016/12/5/phpmyadmin-4652-released/ | |||||
* | main/openssh: track secfixes | Sergey Lukin | 2016-12-29 | 1 | -0/+9 | |
| | ||||||
* | community/imapsync: fix depends for alpine 3.5 | Stuart Cardall | 2016-12-29 | 1 | -2/+2 | |
| | | | | fixes depends: perl-test-tester ==> perl-test-simple | |||||
* | main/aconf: upgrade to 0.6.3 | Kaarle Ritvanen | 2016-12-28 | 1 | -4/+4 | |
| | ||||||
* | main/ldoc: upgrade to 1.4.6 | Kaarle Ritvanen | 2016-12-28 | 1 | -4/+4 | |
| | ||||||
* | main/icu: APKBUILD track secfixes | Leonardo Arena | 2016-12-27 | 1 | -0/+2 | |
| | ||||||
* | main/icu: security fix (CVE-2016-7415). Fixes #6548 | Leonardo Arena | 2016-12-27 | 2 | -4/+186 | |
| | | | | (cherry picked from commit 1fa78865839b8c66006d1ae3a0a626e7acc7787d) | |||||
* | community/h2o: update to 2.0.5 (CVE-2016-7835) | Bennett Goble | 2016-12-27 | 1 | -5/+5 | |
| | | | | (cherry picked from commit db97c08f4986f5f0dcbefe37251ad9748df81c6e) | |||||
* | main/ffmpeg2.8: security upgrade to 2.8.10 | Daniel Sabogal | 2016-12-26 | 1 | -4/+4 | |
| | | | | | | | | | | | | | | | | 2.8.9 CVE-2016-7502 CVE-2016-7785 CVE-2016-7905 CVE-2016-7562 2.8.8 CVE-2016-6164 CVE-2016-6881 CVE-2016-7122 CVE-2016-7450 (cherry picked from commit 00a2dbef659f87f6897cbdd299719f64a679bdcf) | |||||
* | main/curl: security upgrade to 7.52.1 (CVE-2016-9594) | Daniel Sabogal | 2016-12-26 | 1 | -4/+6 | |
| | | | | (cherry picked from commit 69c95791ab79c2f073015b2ea7e847b27a649257) | |||||
* | community/php5-imagick: rebuild against new imagemagick ABI | Natanael Copa | 2016-12-22 | 1 | -1/+1 | |
| | | | | (cherry picked from commit eeb2c3561a1bf134710c37e737624c76e5057494) | |||||
* | ======== release 3.5.0 ========v3.5.0 | Natanael Copa | 2016-12-22 | 1 | -1/+1 | |
| | ||||||
* | main/lvm2: fix circular deps | Natanael Copa | 2016-12-22 | 1 | -1/+3 | |
| | ||||||
* | main/seabios: fix circular deps | Natanael Copa | 2016-12-22 | 1 | -1/+3 | |
| | ||||||
* | community/emacs: rebuild against new imagemagick | Natanael Copa | 2016-12-22 | 1 | -1/+1 | |
| | ||||||
* | main/php5: rebuild against new imagemagick | Natanael Copa | 2016-12-22 | 1 | -1/+1 | |
| | ||||||
* | community/libhdhomerun: fix circular dep of -libs | Natanael Copa | 2016-12-22 | 1 | -1/+2 | |
| | ||||||
* | main/shorewall6: upgrade to 5.0.15.2 | Natanael Copa | 2016-12-22 | 1 | -4/+4 | |
| | ||||||
* | main/shorewall-core: upgrade to 5.0.15.2 | Natanael Copa | 2016-12-22 | 1 | -4/+4 | |
| | ||||||
* | main/shorewall: upgrade to 5.0.15.2 | Natanael Copa | 2016-12-22 | 1 | -4/+4 | |
| | ||||||
* | main/curl: upgrade to 7.52.0 | Natanael Copa | 2016-12-22 | 1 | -5/+5 | |
| | ||||||
* | main/libwebp: upgrade to 0.5.2 | Natanael Copa | 2016-12-22 | 1 | -4/+4 | |
| | ||||||
* | main/xen: security fixes | Natanael Copa | 2016-12-22 | 4 | -1/+180 | |
| | | | | | | | | XSA-204 CVE-2016-10013 x86: Mishandling of SYSCALL singlestep during emulation XSA-203 CVE-2016-10025 x86: missing NULL pointer check in VMFUNC emulation XSA-202 CVE-2016-10024 x86 PV guests may be able to mask interrupts fixes #6570 | |||||
* | main/alsa-utils: upgrade to 1.1.3 | Natanael Copa | 2016-12-22 | 1 | -5/+5 | |
| | ||||||
* | main/alsa-lib: upgrade to 1.1.3 | Natanael Copa | 2016-12-22 | 1 | -4/+4 | |
| | ||||||
* | community/php7: fix php7-common having a dependency on itself | Kevin Daudt | 2016-12-22 | 1 | -1/+2 | |
| | ||||||
* | scripts/mkimg.xen: dont create apkovl | Natanael Copa | 2016-12-21 | 1 | -1/+1 | |
| | ||||||
* | main/mkinitfs: fix ext3 support | Natanael Copa | 2016-12-21 | 2 | -4/+28 | |
| | | | | | | the ext3 is provided by ext4 module nowdays. fixes #6167 | |||||
* | testing/virtualbox-guest-modules-grsec: rebuild against kernel 4.4.39-r2 | Natanael Copa | 2016-12-21 | 1 | -1/+1 | |
| | ||||||
* | testing/virtualbox-additions-grsec: rebuild against kernel 4.4.39-r2 | Natanael Copa | 2016-12-21 | 1 | -1/+1 | |
| | ||||||
* | testing/sch-cake-grsec: rebuild against kernel 4.4.39-r2 | Natanael Copa | 2016-12-21 | 1 | -1/+1 | |
| | ||||||
* | testing/ipt-netflow-grsec: rebuild against kernel 4.4.39-r2 | Natanael Copa | 2016-12-21 | 1 | -1/+1 | |
| | ||||||
* | main/zfs-grsec: rebuild against kernel 4.4.39-r2 | Natanael Copa | 2016-12-21 | 1 | -1/+1 | |
| |