| Commit message (Collapse) | Author | Age | Files | Lines |
... | |
|
|
|
|
|
| |
CVE-2018-5334, CVE-2018-5335, CVE-2018-5336
Fixes #8434
|
|
|
|
|
| |
- use UTC instead of GMT when no timezone is specified
- fix sysconf for initite rlimits
|
|
|
|
|
|
|
|
| |
previous fix didnt solve the problem for 32 bit architectures.
We fix it by capping childmax to 8192.
ref #8447
|
|
|
|
| |
(cherry picked from commit 8756c780bda76051ece619cab28acf83c63a920f)
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
=====================================================================
FAILED TEST SUMMARY
---------------------------------------------------------------------
Test for blowfish compatibility [ext/mcrypt/tests/blowfish.phpt]
OO API [ext/tidy/tests/020.phpt]
getConfig() method - basic test for getConfig() [ext/tidy/tests/030.phpt]
=====================================================================
=====================================================================
FAILED TEST SUMMARY
---------------------------------------------------------------------
Bug #65646 (re-enable CURLOPT_FOLLOWLOCATION with open_basedir or safe_mode): open_basedir disabled [ext/curl/tests/bug65646.phpt]
OO API [ext/tidy/tests/020.phpt]
getConfig() method - basic test for getConfig() [ext/tidy/tests/030.phpt]
=====================================================================
=====================================================================
FAILED TEST SUMMARY
---------------------------------------------------------------------
Test for bug 52013 about Phar::decompressFiles(). [ext/phar/tests/bug52013.phpt]
Phar: test readfile() interception [ext/phar/tests/readfile.phpt]
OO API [ext/tidy/tests/020.phpt]
getConfig() method - basic test for getConfig() [ext/tidy/tests/030.phpt]
=====================================================================
|
|
|
|
|
|
|
|
|
| |
- CVE-2018-5711
- CVE-2018-5712
Ref http://php.net/archive/2018.php#id2018-01-04-4
(cherry picked from commit 5e4dbc0d75238b02e3ad3bd55b5ac3a8b74bab3a)
|
|
|
|
| |
(cherry picked from commit b3fd1eb4e8e0f578e1fbaf76d9903a9012274dee)
|
|
|
|
|
|
|
| |
- CVE-2018-5711
- CVE-2018-5712
Ref http://php.net/archive/2018.php#id2018-01-04-3
|
|
|
|
|
|
| |
Skip pre/post apk hooks on diskless initramfs installation.
(cherry picked from commit 8c9aa20b2f1445d63a2923145fffca1b40f1470a)
|
| |
|
|
|
|
|
|
| |
directory for scripts
See http://lists.busybox.net/pipermail/busybox/2018-January/086146.html for rationale.
|
|
|
|
|
|
| |
CVE-2018-5089 CVE-2018-5091 CVE-2018-5095 CVE-2018-5096
CVE-2018-5097 CVE-2018-5098 CVE-2018-5099 CVE-2018-5102
CVE-2018-5103 CVE-2018-5104 CVE-2018-5117
|
| |
|
|
|
|
| |
Fixes #8392
|
|
|
|
|
|
| |
Enable check()
(cherry picked from commit 9e81be5f331abefc06aa5f2dec67f906d45e13d2)
|
|
|
|
| |
need to use valid CVE identifiers or the parsers will get confused
|
| |
|
| |
|
| |
|
| |
|
| |
|
|
|
|
| |
Fixes #8372
|
|
|
|
|
|
| |
This is a requirement to get res_odbc built.
(cherry picked from commit bd3bc89b4abf4ea8817417f4d5594c8ebaf62749)
|
|
|
|
| |
Fixes #8292
|
|
|
|
| |
Fixes #8298
|
|
|
|
|
|
| |
CVE-2017-16548, CVE-2017-17433, CVE-2017-17434
Fixes #8318
|
|
|
|
|
|
| |
fixes #8353
AST-2017-014 Crash in PJSIP resource when missing a contact header
|
|
|
|
|
|
| |
ref #8353
AST-2017-012 Remote Crash Vulnerability in RTCP Stack
|
|
|
|
|
|
| |
ref #8353
AST-2017-013 DOS Vulnerability in Asterisk chan_skinny
|
| |
|
| |
|
|
|
|
| |
Fixes #8339
|
|
|
|
|
|
|
|
| |
CVE-2017-17784, CVE-2017-17785, CVE-2017-17786, CVE-2017-17787, CVE-2017-17789
Fixes #8351
CVE-2017-17788 applies only to >= v2.9.6
|
|
|
|
|
|
|
|
|
|
| |
CVE-2017-7156
CVE-2017-7157
CVE-2017-13856
CVE-2017-13866
CVE-2017-13870
fixes #8334
|
| |
|
|
|
|
| |
CVE-2017-17084, CVE-2017-17085). Fixes #8269
|
|
|
|
| |
See: https://www.ruby-lang.org/en/news/2017/12/14/ruby-2-4-3-released/
|
| |
|
|
|
|
| |
(CVE-2017-15090-15092-15093-15094). Fixes #8254
|
| |
|
|
|
|
|
|
|
|
|
| |
fixes #8274
CVE-2017-3737
CVE-2017-3738
(cherry picked from commit d2d350f8a099c9ed303f00888e05626662e5c7f6)
|
| |
|
|
|
|
|
| |
We need increase stack size so we dont segfautl before we hit the
recursion limit.
|
| |
|
| |
|
|
|
|
|
|
| |
Fixes #8259
(cherry picked from commit b7237382f0459b1c33c578412fac2cc0bb2c1cbb)
|
|
|
|
|
|
| |
GH#5930
(cherry picked from commit 52c914aa8a597c5803e349c250ee9461f32f42cd)
|
|
|
|
| |
fixes #8209
|
|
|
|
|
|
|
|
|
|
|
|
| |
- use /run dir
- fix conf file permissions
- Inits:
points bacula-sd to right conf file
use openrc to set daemon user
soft depends on firewall added
cosmetic fixes
(cherry picked from commit bd02f881f2cd3d8b1ef786ba3e7482deafb58793)
|