Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | scripts/genrootfs.sh: exclude dev/* | Natanael Copa | 2019-03-06 | 1 | -3/+1 |
| | | | | | | | exclude /dev/* from minirootfs. https://github.com/gliderlabs/docker-alpine/issues/356 (cherry picked from commit 2f07f9eb884af94f47b94c1fdde5e2ecdd177a19) | ||||
* | main/musl: backport fix to use UTC instead of GMT as default | Natanael Copa | 2019-03-06 | 2 | -1/+140 |
| | |||||
* | ==== release 3.6.4 ====v3.6.4 | Natanael Copa | 2019-03-05 | 1 | -1/+1 |
| | |||||
* | scripts/mkimage.sh: allow --repository multiple times | Natanael Copa | 2019-03-05 | 1 | -3/+9 |
| | | | | | we dont need --extra-repository anymore but keep it for backwards compatibility | ||||
* | scripts/genrootfs.sh: make sure root login is disabled | Natanael Copa | 2019-03-05 | 1 | -0/+3 |
| | |||||
* | main/polkit: security fix (CVE-2018-19788) | Natanael Copa | 2019-03-05 | 2 | -1/+194 |
| | | | | Fixes #9756 | ||||
* | main/curl: security fixes | Leonardo Arena | 2019-03-05 | 4 | -2/+104 |
| | | | | | | CVE-2018-16890, CVE-2019-3822, CVE-2019-3823 Fixes #9994 | ||||
* | main/openssh: security fixes | Leonardo Arena | 2019-03-04 | 7 | -27/+677 |
| | | | | | | | | CVE-2018-20685, CVE-2019-6109, CVE-2019-6111 Rebased HPN patch, included upstream patch due regression bug due to CVE-2019-6109 fix Fixes #10000 | ||||
* | main/py-django: security upgrade to 1.11.20 (CVE-2019-6975) | Leonardo Arena | 2019-02-28 | 1 | -2/+4 |
| | | | | Fixes #10007 | ||||
* | main/py-paramiko: security upgrade to 2.1.6 (CVE-2018-1000805) | Leonardo Arena | 2019-02-28 | 1 | -2/+6 |
| | | | | Fixes #10023 | ||||
* | main/mariadb: security upgrade to 10.1.38 | J0WI | 2019-02-26 | 3 | -52/+7 |
| | | | | | | CVE-2019-2537, CVE-2019-2529 Remove (unneeded) libressl patch and upstreamed patch | ||||
* | main/tar: upgrade to 1.32 | J0WI | 2019-02-25 | 1 | -2/+2 |
| | | | | | | fixes #10027 (cherry picked from commit e14f30776ab55c428f268da628c29a97fe8885af) | ||||
* | main/dovecot: add leftout APKBUILD from previous commit | Leonardo Arena | 2019-02-08 | 1 | -4/+2 |
| | |||||
* | main/dovecot: remove uneeded libressl patch | Leonardo Arena | 2019-02-08 | 1 | -11/+0 |
| | |||||
* | main/dovecot: security upgrade to 2.2.36.1 | J0WI | 2019-02-08 | 1 | -21/+11 |
| | |||||
* | main/libvorbis: Fix CVE-2018-10393 | Sören Tempel | 2019-02-08 | 2 | -2/+33 |
| | |||||
* | community/openjdk7: security upgrade to 7.201.2.6.16 | Simon Frankenberger | 2019-02-06 | 1 | -11/+19 |
| | | | | | | | | | | | | | - CVE-2018-3136 - CVE-2018-3139 - CVE-2018-3149 - CVE-2018-3169 - CVE-2018-3180 - CVE-2018-3214 - CVE-2018-13785 This commit upgrades OpenJDK7 to the latest release, 7u201. This contains many security fixes, additional information can be found at: http://blog.fuseyism.com/index.php/2019/01/03/security-icedtea-2-6-16-for-openjdk-7-released/ | ||||
* | community/openjdk7: modernize | Natanael Copa | 2019-02-06 | 1 | -17/+15 |
| | | | | use bash for icedtea-bootstrap | ||||
* | main/ghostscript: security update for CVE-2019-6116 | J0WI | 2019-02-06 | 1 | -1/+5 |
| | |||||
* | main/cups: security upgrade to 2.2.10 (CVE-2018-4700) | Leonardo Arena | 2019-02-04 | 1 | -13/+7 |
| | | | | Fixes #9761 | ||||
* | main/mariadb: security upgrade to 10.1.37 | Leonardo Arena | 2019-02-04 | 3 | -24/+47 |
| | | | | | | | | | | | | | CVE-2016-9843, CVE-2018-2755, CVE-2018-2761, CVE-2018-2766, CVE-2018-2767, CVE-2018-2771, CVE-2018-2781, CVE-2018-2782, CVE-2018-2784, CVE-2018-2787, CVE-2018-2813, CVE-2018-2817, CVE-2018-2819, CVE-2018-3058, CVE-2018-3060, CVE-2018-3063, CVE-2018-3064, CVE-2018-3066, CVE-2018-3081, CVE-2018-3143, CVE-2018-3156, CVE-2018-3162, CVE-2018-3173, CVE-2018-3174, CVE-2018-3185, CVE-2018-3200, CVE-2018-3251, CVE-2018-3277, CVE-2018-3282, CVE-2018-3284 Remove upstreamed patch, fix libressl detection Fixes #9790 | ||||
* | main/py-django: security upgrade to 1.11.18 (CVE-2019-3498) | Leonardo Arena | 2019-02-04 | 1 | -2/+4 |
| | | | | Fixes #9836 | ||||
* | main/zeromq: upgrade to 4.2.5, security fix (CVE-2019-6250) | Leonardo Arena | 2019-02-04 | 2 | -4/+23 |
| | | | | Fixes #9879 | ||||
* | main/tinc: security upgrade 1.0.35 | Leonardo Arena | 2019-02-04 | 1 | -3/+8 |
| | | | | | | CVE-2018-16738, CVE-2018-16758 Fixes #9842 | ||||
* | main/xen: update secinfo | Leonardo Arena | 2019-02-04 | 1 | -4/+5 |
| | |||||
* | community/php5: security upgrade to 5.6.40 | Andy Postnikov | 2019-02-01 | 1 | -2/+2 |
| | |||||
* | main/apache2: fix mod_proxy default configuration | Kaarle Ritvanen | 2019-02-01 | 1 | -1/+2 |
| | |||||
* | main/wavpack: security fixes (CVE-2018-19840, CVE-2018-19841) | Leonardo Arena | 2019-01-31 | 3 | -2/+63 |
| | | | | Fixes #9918 | ||||
* | main/spice: security fix (CVE-2019-3813) | Leonardo Arena | 2019-01-31 | 3 | -2/+363 |
| | | | | | | Fixes #9943 Disable test-qxl-parsing failing on armv7 and ppc64le due to CVE fix | ||||
* | main/apache2: fix mod_ssl on libressl | Kaarle Ritvanen | 2019-01-26 | 2 | -1/+14 |
| | |||||
* | main/apache2: security upgrade to 2.4.38 | J0WI | 2019-01-25 | 2 | -82/+9 |
| | | | | fixes #9909 | ||||
* | main/gitolite: security upgrade to 3.6.11 (CVE-2018-20683) | Natanael Copa | 2019-01-23 | 1 | -2/+6 |
| | | | | fixes #9887 | ||||
* | community/pdns-recursor: security upgrade to 4.0.9 - CVE-2018-10851 - ↵ | J0WI | 2019-01-21 | 1 | -11/+11 |
| | | | | CVE-2018-14644 - CVE-2018-14626 | ||||
* | main/py-openssl: security upgrade to 17.5.0 | Natanael Copa | 2019-01-18 | 1 | -3/+7 |
| | | | | | | CVE-2018-1000807, CVE-2018-1000808 fixes #9868 | ||||
* | main/tar: security upgrade to 1.31 | J0WI | 2019-01-17 | 2 | -48/+5 |
| | | | | fixes #9850 | ||||
* | community/openjdk8: security upgrade to 3.10.0 (java 8u191b12) | Matteo Gazzetta | 2019-01-10 | 1 | -11/+21 |
| | |||||
* | main/wget: security upgrade to 1.20.1 (CVE-2018-20483) | Leonardo Arena | 2019-01-08 | 1 | -5/+6 |
| | | | | Fixes #9820 | ||||
* | main/krb5: security fix (CVE-2018-20217) | Leonardo Arena | 2019-01-07 | 2 | -11/+79 |
| | | | | Fixes #9805 | ||||
* | main/sqlite: security upgrade to 3.25.3 (CVE-2018-20346) | Natanael Copa | 2019-01-01 | 3 | -60/+7 |
| | | | | fixes #9794 | ||||
* | main/openjpeg: security fixes | Francesco Colista | 2019-01-01 | 3 | -2/+137 |
| | | | | | | | - CVE-2018-14423 - CVE-2018-6616 this commit fixes #9800 | ||||
* | main/libsndfile: security fixes (CVE-2017-17456, CVE-2017-17457, ↵ | alpine-mips-patches | 2018-12-31 | 2 | -2/+97 |
| | | | | | | | | CVE-2018-19661, CVE-2018-19662) This is upstream commit 8ddc442d539ca775d80cdbc7af17a718634a743f Partially fixes #9235 | ||||
* | main/xen: upgrade to 4.8.5 | Henrik Riomar | 2018-12-18 | 1 | -3/+13 |
| | |||||
* | community/php5: security upgrade to 5.6.39 | Andy Postnikov | 2018-12-12 | 1 | -2/+2 |
| | |||||
* | main/tiff: security upgrade to 4.0.10 | Natanael Copa | 2018-12-07 | 12 | -828/+38 |
| | | | | | | CVE-2018-12900, CVE-2018-18557, CVE-2018-18661 fixes #9718 | ||||
* | main/ghostscript: security upgrade to 9.26 | Andy Postnikov | 2018-12-07 | 2 | -1000/+9 |
| | | | | | | | | | - CVE-2018-19409 - CVE-2018-19475 - CVE-2018-19476 - CVE-2018-19477 fixes #9693 | ||||
* | main/ghostscript: security fixes (CVE-2018-17961, CVE-2018-18073, ↵ | J0WI | 2018-12-07 | 3 | -62/+1002 |
| | | | | CVE-2018-18284) | ||||
* | main/perl: backport security fixes | Natanael Copa | 2018-12-04 | 5 | -2/+608 |
| | | | | | | CVE-2018-18311, CVE-2018-18312, CVE-2018-18313, CVE-2018-18314 fixes #9730 | ||||
* | main/libao: security fix for CVE-2017-11548 | Natanael Copa | 2018-12-04 | 2 | -5/+187 |
| | | | | fixes #9211 | ||||
* | main/git: security fix (CVE-2018-19486) | Natanael Copa | 2018-11-30 | 2 | -5/+108 |
| | | | | | | fixes #9713 also fix secfixes comment | ||||
* | community/pdns: security upgrade to 4.0.6 (CVE-2018-10851) | Natanael Copa | 2018-11-29 | 1 | -3/+7 |
| | | | | fixes #9719 |