| Commit message (Collapse) | Author | Age | Files | Lines |
... | |
|
|
|
| |
CVE-2013-5572)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
fixes #2681
CVE-2014-0020 Remotely triggerable crash in IRC argument parsing
CVE-2013-6490 Buffer overflow in SIMPLE header parsing
CVE-2013-6489 Buffer overflow in MXit emoticon parsing
CVE-2013-6487 Buffer overflow in Gadu-Gadu HTTP parsing
CVE-2013-6486 Pidgin uses clickable links to untrusted executables
CVE-2013-6485 Buffer overflow parsing chunked HTTP responses
CVE-2013-6484 Crash reading response from STUN server
CVE-2013-6483 XMPP doesn't verify 'from' on some iq replies
CVE-2013-6482 NULL pointer dereference parsing SOAP data in MSN
CVE-2013-6482 NULL pointer dereference parsing OIM data in MSN
CVE-2013-6482 NULL pointer dereference parsing headers in MSN
CVE-2013-6481 Remote crash reading Yahoo! P2P message
CVE-2013-6479 Remote crash parsing HTTP responses
CVE-2013-6478 Crash when hovering pointer over a long URL
CVE-2013-6477 Crash handling bad XMPP timestamp
CVE-2012-6152 Yahoo! remote crash from incorrect character encoding
|
|
|
|
| |
fixes #2695
|
|
|
|
| |
(cherry picked from commit e2f9dd318c3bb5fc4edaca11eb62c2ff73fbc4a0)
|
|
|
|
| |
(cherry picked from commit 7fb2891f1abfb37eefc2945a07e1f254183b6902)
|
|
|
|
| |
(cherry picked from commit 899733ab8cf3817c38d0bb890c01122d5c441e9b)
|
|
|
|
| |
(cherry picked from commit 62b83e4645e1159bfa56b755598010d3fd3166bf)
|
|
|
|
| |
fixes #2700
|
|
|
|
|
|
|
| |
(cherry picked from commit 0771864542a0c8c1632f594c01def2b7e9c6fd5d)
Conflicts:
main/freeradius/APKBUILD
|
|
|
|
|
|
|
| |
(cherry picked from commit f07325909cf2b07a9339533c0f8162633d821542)
Conflicts:
main/freeradius/APKBUILD
|
| |
|
| |
|
| |
|
| |
|
| |
|
|
|
|
| |
fixes #2713
|
|
|
|
|
|
|
| |
(cherry picked from commit 351f68d924daa25d75d6ac2f7140c52f20162ba9)
Conflicts:
main/freeradius/APKBUILD
|
| |
|
| |
|
| |
|
| |
|
| |
|
|
|
|
| |
(cherry picked from commit d0b08b1e17d40d21196df7709fdb95f37165615d)
|
|
|
|
| |
(cherry picked from commit 80b23805dccec3f0194ae03f87438e2ddbbca444)
|
| |
|
| |
|
|
|
|
| |
(cherry picked from commit 4434268b11b49233652afb551e77ca24331b4c1f)
|
|
|
|
| |
(cherry picked from commit bc44281cc77d7a50f8db4d85de387b241b3d7303)
|
|
|
|
| |
(cherry picked from commit b705597922992e151deeda07f70804f6733af810)
|
|
|
|
| |
(cherry picked from commit e20960ae0e56272bff1ec1ad64d5e5614b394953)
|
|
|
|
|
|
| |
and we use rsync.alpinelinux.org as upload host
(cherry picked from commit 0ec26b42d4956432b88cdeaa9ae1e2136f319839)
|
|
|
|
|
|
| |
we need rsync
(cherry picked from commit 6593a7cced760a5bc19cf5c00c9db322ac4357a6)
|
|
|
|
| |
(cherry picked from commit 878411ddb5b1951e019c0277e207852bc0302d1c)
|
|
|
|
|
| |
ref #1852
(cherry picked from commit bc05b5ad6e378b520fcac69e97bcbf9a08f3a2c1)
|
|
|
|
|
|
|
|
| |
app_meetme used to be there, but as it's deprecated it is no longer
built by default. add it back for the time being, but be prepared
for it to be removed in Asterisk 12.
(cherry picked from commit 28e51a3afc4eca5015576b8e8692014ab2a18434)
|
|
|
|
| |
(cherry picked from commit 825c4398914c964bd069408d475b9c796b9151c0)
|
|
|
|
| |
fixes #2670
|
|
|
|
| |
fixes #2657
|
|
|
|
| |
fixes #2652
|
|
|
|
| |
fixes #2647
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Security fixes
S6727821: Enhance JAAS Configuration
S7068126, CVE-2014-0373: Enhance SNMP statuses
S8010935: Better XML handling
S8011786, CVE-2014-0368: Better applet networking
S8021257, CVE-2013-5896: com.sun.corba.se.** should be on restricted package list
S8022904: Enhance JDBC Parsers
S8022927: Input validation for byte/endian conversions
S8022935: Enhance Apache resolver classes
S8022945: Enhance JNDI implementation classes
S8023057: Enhance start up image display
S8023069, CVE-2014-0411: Enhance TLS connections
S8023245, CVE-2014-0423: Enhance Beans decoding
S8023301: Enhance generic classes
S8023672: Enhance jar file validation
S8024306, CVE-2014-0416: Enhance Subject consistency
S8024530: Enhance font process resilience
S8024867: Enhance logging start up
S8025014: Enhance Security Policy
S8025018, CVE-2014-0376: Enhance JAX-P set up
S8025026, CVE-2013-5878: Enhance canonicalization
S8025034, CVE-2013-5907: Improve layout lookups
S8025448: Enhance listening events
S8025758, CVE-2014-0422: Enhance Naming management
S8025767, CVE-2014-0428: Enhance IIOP Streams
S8026172: Enhance UI Management
S8026176: Enhance document printing
S8026193, CVE-2013-5884: Enhance CORBA stub factories
S8026204: Enhance auth login contexts
S8026417, CVE-2013-5910: Enhance XML canonicalization
S8027201, CVE-2014-0376: Enhance JAX-P set up
fixes #2642
|
|
|
|
|
|
| |
(CVE-2013-0179,CVE-2013-7239,CVE-2013-7290,CVE-2013-7291)
fixes #2628
|
|
|
|
| |
fixes #2622
|
|
|
|
| |
fixes #2610
|
|
|
|
| |
fixes #2594
|
|
|
|
| |
fixes #2593
|
|
|
|
| |
fixes #2580
|
|
|
|
| |
fixes #2575
|
|
|
|
| |
fixes #2675
|
|
|
|
| |
Fixes #2637
|