Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | community/imagemagick6: upgrade to 6.9.10.47 | J0WI | 2019-07-24 | 1 | -7/+2 | |
| | ||||||
* | community/firefox-esr: security upgrade to 60.8.0 | J0WI | 2019-07-24 | 1 | -2/+13 | |
| | ||||||
* | community/firefox-esr: security upgrade to 60.7.2 (CVE-2019-11708) | J0WI | 2019-07-24 | 1 | -2/+4 | |
| | | | | fixes #10601 | |||||
* | community/firefox-esr: security upgrade to 60.7.1 (CVE-2019-11707) | Natanael Copa | 2019-07-24 | 1 | -2/+4 | |
| | ||||||
* | community/firefox-esr: upgrade to 60.7.0 | Sören Tempel | 2019-07-24 | 1 | -2/+19 | |
| | | | | See https://www.mozilla.org/en-US/security/advisories/mfsa2019-14/ | |||||
* | community/firefox-esr: upgrade to 60.6.2 | Sören Tempel | 2019-07-24 | 1 | -2/+2 | |
| | | | | | | This re-enables web extensions. See: https://www.mozilla.org/en-US/firefox/60.6.2/releasenotes/ | |||||
* | community/gvfs: backport fixes for a few CVEs | Leo | 2019-07-22 | 5 | -3/+354 | |
| | | | | | | | - CVE-2019-12795 - CVE-2019-12449 - CVE-2019-12447 - CVE-2019-12448 | |||||
* | community/openexr: fix CVE-2018-18444 | Leo | 2019-07-21 | 2 | -3/+33 | |
| | | | | Fixes https://gitlab.alpinelinux.org/alpine/aports/issues/10395 | |||||
* | community/libraw: add missing CVEs to secfixes comment | Leo | 2019-07-21 | 1 | -0/+3 | |
| | ||||||
* | community/docker: upgrade to 18.09.8 | Jake Buchholz | 2019-07-20 | 1 | -10/+13 | |
| | | | | | | | https://github.com/docker/docker-ce/releases/tag/v18.09.8 * Fix CVE-2019-13509 in DebugRequestMiddleware: unconditionally scrub data field. Also, compile docker engine with seccomp. | |||||
* | community/webkit2gtk: enable on x86 | Natanael Copa | 2019-07-17 | 1 | -1/+4 | |
| | | | | | Enable x86 and work around out of meomory error by disable _FORTIFY_SOURCE. | |||||
* | community/webkit2gtk: upgrade to 2.24.3 and enable on arm | Natanael Copa | 2019-07-17 | 2 | -46/+16 | |
| | | | | | | | - build with MinSizeRel and -g1 to reduce memory usage during compile - simplify cmake opts. default seems to do the right thing nowdays - use nijna - remove patch that apparetnly is not needed anymore | |||||
* | community/webkit2gtk: upgrade to 2.24.2 | Rasmus Thomsen | 2019-07-17 | 5 | -41/+70 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | * Disable armv7/armhf, due to using a 32-bit kernel these arches can't allocate enough memory during compilation for the massive compilation units webkit2gtk does. We'll have to wait for 2.26.x to allow compilation without unified sources to upgrade these arches. * Disable GTK_DOC, which fails to build * Disable system malloc on some arches. There were typos in the options anyway, so they haven't done anything anyway. System malloc is discouraged by upstream since bmalloc not only performs better it also has some security related advantages. fixes the following CVEs: * CVE-2019-6251 * CVE-2019-8506 * CVE-2019-8524 * CVE-2019-8535 * CVE-2019-8536 * CVE-2019-8544 * CVE-2019-8551 * CVE-2019-8558 * CVE-2019-8559 * CVE-2019-8563 * CVE-2019-11070 Co-authored-by: TBK <tbk@jjtc.eu> | |||||
* | community/zabbix: upgrade to 4.0.10 | Leonardo Arena | 2019-07-17 | 1 | -2/+2 | |
| | ||||||
* | community/drupal7: add secfixes comment for CVE-2019-11358 | Leo | 2019-07-16 | 1 | -0/+1 | |
| | ||||||
* | community/sox: backport fix for CVEs | Leo | 2019-07-16 | 4 | -2/+145 | |
| | | | | | | - CVE-2019-8355 - CVE-2019-8356 - CVE-2019-8357 | |||||
* | community/nextcloud: upgrade to 15.0.10 | Leonardo Arena | 2019-07-15 | 1 | -2/+2 | |
| | ||||||
* | community/runc: fix secfixes comment. | Natanael Copa | 2019-07-04 | 1 | -1/+1 | |
| | | | | | | The CVE-2019-5736 was fixed with commit 787ef3518b96 (community/runc: upgrade for CVE-2019-5736), which was our version 1.0.0_rc6-r1. The secfixes comment should reflect that. | |||||
* | community/patchwork: security fix for CVE-2019-13122 | Francesco Colista | 2019-07-04 | 2 | -4/+100 | |
| | ||||||
* | community/docker: security upgrade to 18.09.7 (CVE-2018-15664) | Natanael Copa | 2019-07-02 | 1 | -6/+10 | |
| | ||||||
* | community/containerd: update to 1.2.7 | Jake Buchholz | 2019-07-02 | 1 | -3/+7 | |
| | | | | Release notes at https://github.com/containerd/containerd/releases/tag/v1.2.7 | |||||
* | community/runc: update to 1.0.0-rc8 | Jake Buchholz | 2019-07-02 | 1 | -19/+14 | |
| | | | | Release notes at https://github.com/opencontainers/runc/releases/tag/v1.0.0-rc8 | |||||
* | community/pdns: security upgrade to 4.1.10 | prspkt | 2019-06-25 | 1 | -2/+5 | |
| | | | | | - CVE-2019-10163 - CVE-2019-10162 | |||||
* | community/virtualbox-guest-modules-vanilla: rebuild against kernel 4.19.52-r0 | Natanael Copa | 2019-06-18 | 1 | -1/+1 | |
| | ||||||
* | community/jenkins: security upgrade to 2.164.2 (CVE-2019-1003050) | Francesco Colista | 2019-06-17 | 1 | -0/+1 | |
| | | | | The last commit was missing the CVE that this security upgrade fixes too | |||||
* | community/jenkins: security upgrade to 2.164.2 (CVE-2019-1003049) | Francesco Colista | 2019-06-17 | 1 | -2/+6 | |
| | | | | Fixes #10330 | |||||
* | community/php7: security upgrade to 7.2.19 (CVE-2019-11039 CVE-2019-11040) | Andy Postnikov | 2019-06-14 | 1 | -2/+5 | |
| | ||||||
* | community/zabbix: upgrade to 4.0.9 | Leonardo Arena | 2019-06-11 | 1 | -2/+2 | |
| | ||||||
* | community/exim: fix broken link with upgrade to 4.92 | Mike Sullivan | 2019-06-10 | 2 | -10/+12 | |
| | | | | | | fixes #10541 (CVE-2019-10149) (cherry picked from commit a6e92b2adbed5e2905258a37f8b1980700612929) | |||||
* | community/drupal7: security upgrade to 7.67 (CVE-2019-11831) | Natanael Copa | 2019-06-05 | 1 | -2/+4 | |
| | | | | fixes #10515 | |||||
* | community/wireshark: security upgrade to 2.6.9 (CVE-2019-12295) | Natanael Copa | 2019-06-04 | 1 | -2/+4 | |
| | | | | fixes #10502 | |||||
* | community/youtube-dl: upgrade to 2019.05.20 | Natanael Copa | 2019-05-29 | 1 | -2/+2 | |
| | | | | fixes #10505 | |||||
* | community/shadow: fix broken chpasswd | Antoine Mazeas | 2019-05-27 | 2 | -1/+9 | |
| | | | | | | | | | It was found in bug #10209 (https://bugs.alpinelinux.org/issues/10209) that the chpasswd command was broken due to a lack of a pam configuration file. This is a backport of PR#6980 by @bratkartoffel, targetting the 3.9 branch. | |||||
* | community/nextcloud: upgrade to 15.0.8 | Leonardo Arena | 2019-05-16 | 1 | -2/+2 | |
| | ||||||
* | community/virtualbox-guest-modules-vanilla: rebuild against kernel 4.19.41-r0 | Natanael Copa | 2019-05-08 | 1 | -1/+1 | |
| | ||||||
* | community/znc: security fix for CVE-2019-9917 | Natanael Copa | 2019-05-06 | 2 | -1/+127 | |
| | | | | fixes #10383 | |||||
* | community/virtualbox-guest-modules-vanilla: rebuild against kernel 4.19.40-r0 | Natanael Copa | 2019-05-06 | 1 | -1/+1 | |
| | ||||||
* | community/flatpak: security upgrade to 1.0.8 | prspkt | 2019-05-06 | 1 | -2/+4 | |
| | | | | - CVE-2019-10063 | |||||
* | community/shadow: fix conflict with util-linux-doc and coreutils-doc | Natanael Copa | 2019-05-06 | 1 | -2/+6 | |
| | | | | fixes #8665 | |||||
* | community/imagemagick6: security upgrade to 6.9.10-44 | J0WI | 2019-05-06 | 1 | -2/+6 | |
| | ||||||
* | community/openjdk8: security upgrade to 8.212.04 | J0WI | 2019-05-04 | 1 | -12/+16 | |
| | ||||||
* | community/php7: security upgrade to 7.2.18 (CVE-2019-11036) | Andy Postnikov | 2019-05-04 | 1 | -2/+6 | |
| | ||||||
* | community/lua-resty-openidc: backport from edge | Timo Teräs | 2019-05-03 | 1 | -0/+21 | |
| | ||||||
* | community/lua-resty-jwt: backport from edge | Timo Teräs | 2019-05-03 | 1 | -0/+21 | |
| | ||||||
* | community/lua-resty-session: backport from edge | Timo Teräs | 2019-05-03 | 1 | -0/+21 | |
| | ||||||
* | community/lua-resty-hmac: backport from edge | Timo Teräs | 2019-05-03 | 1 | -0/+30 | |
| | ||||||
* | community/lua-resty-string: backport from edge | Timo Teräs | 2019-05-03 | 1 | -0/+28 | |
| | ||||||
* | community/perl-test-nginx: backport from edge | Timo Teräs | 2019-05-03 | 2 | -0/+78 | |
| | ||||||
* | community/lua-resty-http: upgrade to 0.13 | Franck Nijhof | 2019-05-03 | 1 | -3/+3 | |
| | | | | (cherry picked from commit 9379df6ef4c76e518ee954f5f9fcbb180409619d) | |||||
* | community/wireshark: security upgrade to 2.6.8 | Leonardo Arena | 2019-04-29 | 1 | -2/+9 | |
| | | | | | | CVE-2019-10894, CVE-2019-10895, CVE-2019-10896, CVE-2019-10899, CVE-2019-10901, CVE-2019-10903 Fixes #10322 |