aboutsummaryrefslogtreecommitdiffstats
path: root/community
Commit message (Collapse)AuthorAgeFilesLines
* community/acf-provisioning-polycom: upgrade to 5.5.1Ted Trask2017-03-012-37/+27
| | | | (cherry picked from commit a15984cf2f34e1570fbfddd96c82b3ef061f78e1)
* community/shadow: CVE-2016-6252 & CVE-2017-2616Henrik Riomar2017-02-283-12/+115
| | | | | | | | Patches from Debian Jessie (1:4.2-3+deb8u3 & 1:4.2-3+deb8u2) fixes #6943 (cherry picked from commit e9a92d060e2e59ac087373af9b81546c2a761d07)
* community/zoneminder: security upgrade to 1.30.2Kaarle Ritvanen2017-02-241-11/+8
| | | | ref #6913
* community/webkit2gtk: security upgrade to 2.14.5 - fixes #6888Sergey Lukin2017-02-221-4/+20
| | | | | | | | | | | | | | | CVE-2017-2350 CVE-2017-2354 CVE-2017-2355 CVE-2017-2356 CVE-2017-2362 CVE-2017-2363 CVE-2017-2364 CVE-2017-2365 CVE-2017-2366 CVE-2017-2369 CVE-2017-2371 CVE-2017-2373
* community/php7: upgrade to 7.0.16Andy Postnikov2017-02-181-4/+4
| | | | Bug fix release http://php.net/archive/2017.php#id2017-02-16-1
* community/racktables: upgrade to 0.20.12Leonardo Arena2017-02-091-4/+4
| | | | (cherry picked from commit c78947b324c68dd1f194880e5b2a19963cbc25fe)
* community/openjdk8: security upgrade to 3.3.0 (java 8 u121)Timo Teräs2017-02-092-54/+68
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | enable sunec (ref #6809) S8138725: Add options for Javadoc generation S8140353: Improve signature checking S8151934, CVE-2017-3231: Resolve class resolution S8156804, CVE-2017-3241: Better constraint checking S8158406: Limited Parameter Processing S8158997: JNDI Protocols Switch S8159507: RuntimeVisibleAnnotation validation S8161218: Better bytecode loading S8161743, CVE-2017-3252: Provide proper login context S8162577: Standardize logging levels S8162973: Better component components S8164143, CVE-2017-3260: Improve components for menu items S8164147, CVE-2017-3261: Improve streaming socket output S8165071, CVE-2016-2183: Expand TLS support S8165344, CVE-2017-3272: Update concurrency support S8166988, CVE-2017-3253: Improve image processing performance S8167104, CVE-2017-3289: Additional class construction refinements S8167223, CVE-2016-5552: URL handling improvements S8168705, CVE-2016-5547: Better ObjectIdentifier validation S8168714, CVE-2016-5546: Tighten ECDSA validation S8168728, CVE-2016-5548: DSA signing improvments S8168724, CVE-2016-5549: ECDSA signing improvments (cherry picked from commit 51235b6d75fcf6e3cea97c71c2f89d79fb0f7d48)
* community/php7-apcu: upgrade to 5.1.8Andy Postnikov2017-02-071-4/+4
| | | | | | | | | | Bugfix release for PHP 7 - fix #207 Segmentation fault in apc_sma_api_free() - fix #221 memory leak - update to apc dashboard (Tyson Andre) https://pecl.php.net/package-changelog.php?package=APCu&release=5.1.8
* community/salt: security upgrade to 2016.11.2 - fixes #6803Sergey Lukin2017-02-061-4/+11
| | | | | CVE-2017-5192: local_batch client external authentication not respected CVE-2017-5200: Salt-api allows arbitrary command execution on a salt-master via Salt's ssh_client
* community/chromium: security upgrade to 56.0.2924.76Jakub Jirutka2017-02-022-7/+70
| | | | fixes #6787
* community/firefox-esr: security upgrade to 45.7.0 - fixes #6747Sergei Lukin2017-01-271-9/+22
| | | | | | | | | | | | CVE-2017-5373: Memory safety bugs fixed in Firefox 51 and Firefox ESR 45.7 CVE-2017-5375: Excessive JIT code allocation allows bypass of ASLR and DEP CVE-2017-5376: Use-after-free in XSL CVE-2017-5378: Pointer and frame data leakage of Javascript objects CVE-2017-5380: Potential use-after-free during DOM manipulations CVE-2017-5383: Location bar spoofing with unicode characters CVE-2017-5386: WebExtensions can use data: protocol to affect other extensions CVE-2017-5390: Insecure communication methods in Developer Tools JSON viewer CVE-2017-5396: Use-after-free with Media Decoder
* community/borgbackup: security upgrade to 1.0.9 (CVE-2016-10099,CVE-2016-10100)Natanael Copa2017-01-271-4/+4
| | | | fixes #6762
* community/opus-tools: update to 0.1.10Stuart Cardall2017-01-251-8/+6
| | | | | | | | | | This release includes several bug fixes, including security fixes in opusenc, as well as a few minor enhancements. Changes include: * opusenc: Improved handling of malformed input files to avoid crashes and other troublesome behavior * opusenc: Percent progress is shown while encoding * opusrtp: New --extract option to extract from input pcap file * New project files for building with Microsoft Visual Studio
* community/php7: upgrade to 7.0.15 (security fixes)Andy Postnikov2017-01-191-5/+5
|
* community/nodejs-current: add depends ca-certificatesJakub Jirutka2017-01-141-1/+2
|
* community/docker: security upgrade to 1.12.6 (CVE-2016-9962)Natanael Copa2017-01-121-4/+4
| | | | fixes #6672
* community/quassel: fix circular depNatanael Copa2017-01-111-2/+2
|
* community/firejail: update to 0.9.44.4Stuart Cardall2017-01-111-4/+4
| | | | | | | | | | | firejail (0.9.44.4) baseline; urgency=low * security: --bandwidth root shell found by Martin Carpenter (CVE-2017-5207) * security: disabled --allow-debuggers when running on kernel versions prior to 4.8; a kernel bug in ptrace system call allows a full bypass of seccomp filter; problem reported by Lizzie Dixon (CVE-2017-5206) * security: root exploit found by Sebastian Krahmer (CVE-2017-5180) -- netblue30 Sat, 7 Jan 2017 10:00:00 -0500
* community/ruby2.1: fix error on libresslJakub Jirutka2017-01-062-5/+49
|
* testing/acme-client: move to communityScrumpyJack2017-01-062-0/+53
| | | | | | Successful testing over 3 months and 2 version, move to community. (cherry picked from commit 0b40d7adc34ad5f218876e5496de342698fd3f25)
* community/phpmyadmin: mistake fixed in secfixes infoSergey Lukin2016-12-301-2/+1
|
* community/phpmyadmin: security upgrade to 4.6.5.2 - fixes #6595Sergey Lukin2016-12-291-4/+28
| | | | | | | | | | | | | | | | | | | | | | | CVE-2016-9847: Unsafe generation of blowfish secret CVE-2016-9848: phpinfo information leak value of sensitive (HttpOnly) cookies CVE-2016-9849: Username deny rules bypass (AllowRoot & Others) by using Null Byte CVE-2016-9850: Username rule matching issues CVE-2016-9851: With a crafted request parameter value it is possible to bypass the logout timeout. CVE-2016-9852 CVE-2016-9853 CVE-2016-9854 CVE-2016-9855: Multiple full path disclosure vulnerabilities CVE-2016-9856 CVE-2016-9857: Multiple XSS vulnerabilities CVE-2016-9858 CVE-2016-9859 CVE-2016-9860: We consider these vulnerabilities to be of moderate severity. CVE-2016-9861: Bypass white-list protection for URL redirection CVE-2016-9862: BBCode injection vulnerability CVE-2016-9863: DOS vulnerability in table partitioning CVE-2016-9864: Multiple SQL injection vulnerabilities CVE-2016-9865: Incorrect serialized string parsing CVE-2016-9866: CSRF token not stripped from the URL Jumping through 3 versions: 4.6.5, 4.6.5.1, 4.6.5.2 These upgrades does not contain major changes: https://www.phpmyadmin.net/news/2016/11/25/phpmyadmin-401018-44159-and-465-are-released/ https://www.phpmyadmin.net/news/2016/11/26/phpmyadmin-4651-released/ https://www.phpmyadmin.net/news/2016/12/5/phpmyadmin-4652-released/
* community/imapsync: fix depends for alpine 3.5Stuart Cardall2016-12-291-2/+2
| | | | fixes depends: perl-test-tester ==> perl-test-simple
* community/h2o: update to 2.0.5 (CVE-2016-7835)Bennett Goble2016-12-271-5/+5
| | | | (cherry picked from commit db97c08f4986f5f0dcbefe37251ad9748df81c6e)
* community/php5-imagick: rebuild against new imagemagick ABINatanael Copa2016-12-221-1/+1
| | | | (cherry picked from commit eeb2c3561a1bf134710c37e737624c76e5057494)
* community/emacs: rebuild against new imagemagickNatanael Copa2016-12-221-1/+1
|
* community/libhdhomerun: fix circular dep of -libsNatanael Copa2016-12-221-1/+2
|
* community/php7: fix php7-common having a dependency on itselfKevin Daudt2016-12-221-1/+2
|
* community/bmon: upgrade to 4.0Francesco Colista2016-12-211-4/+4
|
* community/ubridge: upgrade to 0.9.9Francesco Colista2016-12-211-4/+4
|
* community/py-sqlparse: fix circular depsFrancesco Colista2016-12-211-2/+2
|
* community/asterisk-chan-dongle: moved from testingTimo Teräs2016-12-213-0/+99
|
* community/py-psutil: upgrade to 5.0.1Francesco Colista2016-12-211-5/+5
|
* community/dynamips: removed unused makedepends, APKBUILD cleanupFrancesco Colista2016-12-211-18/+8
|
* community/terraform: disable on armhfCarlo Landmeter2016-12-211-1/+1
| | | | http://tpaste.us/A9zZ
* community/terraform: moved from testingCarlo Landmeter2016-12-201-0/+35
|
* community/hugo: moved from testing and sync verboseCarlo Landmeter2016-12-201-0/+35
|
* community/govendor: moved from testing and add verbose switchCarlo Landmeter2016-12-202-0/+92
| | | | govender sync didnt have a verbose switch which made abuild process confusingly slow.
* community/postsrsd: new aportKevin Daudt2016-12-204-0/+115
|
* community/tor: upgrade to 0.2.8.12Natanael Copa2016-12-191-4/+4
|
* community/chromium: add gold to makedepsNatanael Copa2016-12-191-0/+1
|
* community/chromium: upgrade to 55.0.2883.87Natanael Copa2016-12-1914-265/+443
|
* community/salt: upgrade to 2016.11.1Olivier Mauras2016-12-182-319/+15
|
* community/inkscape: rebuild against libMagick++-6.Q16.so.7.0.0Sören Tempel2016-12-171-1/+1
|
* community/firefox-esr: upgrade to 45.6.0Natanael Copa2016-12-161-4/+4
|
* community/html-xml-utils: Upgrade to 7.1. Ditch empty vars in APKBUILD.Przemyslaw Pawelczyk2016-12-161-9/+5
|
* community/tor: upgrade to 0.2.8.11Natanael Copa2016-12-151-4/+4
|
* community/pcmanfm: upgrade to 1.2.5Natanael Copa2016-12-151-4/+4
|
* community/gnome-common: moved from testing. Upgrade to 3.18.0Francesco Colista2016-12-141-0/+39
|
* community/py-jsonschema: APKBUILD improvementFrancesco Colista2016-12-141-15/+20
|