Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/wireshark: security upgrade to 1.12.13. Fixes #6053 | Leonardo Arena | 2016-09-12 | 1 | -5/+15 | |
| | | | | CVE-2016-6505, CVE-2016-6506, CVE-2016-6508, CVE-2016-6509, CVE-2016-6510, CVE-2016-6511 | |||||
* | main/openssl: fix for CVE-2016-2180 | Daniel Sabogal | 2016-09-09 | 2 | -4/+46 | |
| | | | | | | fixes #6118 (cherry picked from commit ecfc04f3961ec4ffa2c972bd72253ba1a03a3c1e) | |||||
* | main/php5: Upgrade to 5.6.25 | Andy Postnikov | 2016-08-23 | 1 | -4/+4 | |
| | ||||||
* | main/postgresql: security upgrade to 9.4.9 (CVE-2016-5423,CVE-2016-5424) | Natanael Copa | 2016-08-17 | 1 | -4/+4 | |
| | | | | fixes #6047 | |||||
* | main/openssh: security fix for CVE-2016-6515 | Natanael Copa | 2016-08-17 | 2 | -1/+53 | |
| | | | | fixes #6042 | |||||
* | main/fontconfig: security fix (CVE-2016-5384). Fixes #6026 | Leonardo Arena | 2016-08-15 | 2 | -5/+175 | |
| | | | | (cherry picked from commit 99e120348e7b8d8f1146915eb4df9a17691514fe) | |||||
* | main/xen: security upgrade to 4.5.3. Fixes #6019 | Leonardo Arena | 2016-08-12 | 23 | -1651/+334 | |
| | | | | (CVE-2016-5242, CVE-2016-6258, CVE-2016-6259, CVE-2016-5403) | |||||
* | main/curl: security fixes (CVE-2016-5419, CVE-2016-5420, CVE-2016-5421) | Leonardo Arena | 2016-08-12 | 4 | -5/+174 | |
| | | | | | | Fixes #6006 (cherry picked from commit 773b3cce8cf0ef9f65aa00ac6985aaba3f582b2c) | |||||
* | main/dropbear: security upgrade to 2016.74. Fixes #5997 | Leonardo Arena | 2016-08-12 | 1 | -7/+15 | |
| | ||||||
* | main/owncloud: upgrade to 8.1.9 | Leonardo Arena | 2016-08-11 | 1 | -11/+11 | |
| | ||||||
* | main/owncloud: install htaccess | Leonardo Arena | 2016-08-11 | 1 | -1/+2 | |
| | ||||||
* | main/libarchive: security fixes. Fixes #5973 | Leonardo Arena | 2016-08-08 | 5 | -4/+203 | |
| | | | | | | | | | CVE-2016-4302 CVE-2016-4809 CVE-2016-5844 CVE-2016-6250 (cherry picked from commit 9d0f5e1e02079c44a9c58169c8b78c743edaf7b8) | |||||
* | main/libidn: security upgrade to 1.33. Fixes #5968 | Leonardo Arena | 2016-08-05 | 1 | -2/+18 | |
| | | | | | | (CVE-2016-6263, CVE-2015-8948, CVE-2016-6262, CVE-2016-6261) (cherry picked from commit 87698baa9ec19d0554e5233954b6f266efe8b5cd) | |||||
* | main/cacti: security fix (CVE-2016-3172). Fixes #5942 | Leonardo Arena | 2016-08-05 | 2 | -4/+24 | |
| | | | | (cherry picked from commit a32d5ff12f834f60c89513108384ddd3526d086b) | |||||
* | main/openssh: security fix (CVE-2016-6210). Fixes #5928 | Leonardo Arena | 2016-08-05 | 3 | -2/+233 | |
| | | | | (cherry picked from commit 1a6c29da7c4a7e3d05009f4ea2b940878b57ac81) | |||||
* | main/libvirt: security fix (CVE-2016-5008). Fixes #5877 | Leonardo Arena | 2016-08-01 | 2 | -4/+80 | |
| | | | | (cherry picked from commit fe21e87ffd9382eed66543f8c2d0f740878849d7) | |||||
* | main/squid: security upgrade to 3.5.18. Fixes #5889 | Leonardo Arena | 2016-07-29 | 1 | -4/+4 | |
| | | | | | | | | CVE-2016-4553: Cache poisoning issue in HTTP Request handling CVE-2016-4554: Header smuggling issue in HTTP Request processing CVE-2016-4555, CVE-2016-4556: Multiple Denial of Service issues in ESI Response processing (cherry picked from commit a414d1483216a531e8a7271cd858b3500aad9625) | |||||
* | main/php5: Upgrade to 5.6.24 | Andy Postnikov | 2016-07-27 | 1 | -4/+4 | |
| | | | | fixes #5958 | |||||
* | main/bind: security upgrade to 9.10.4_p2 (CVE-2016-2775) | Natanael Copa | 2016-07-25 | 1 | -4/+4 | |
| | | | | fixes #5954 | |||||
* | main/apache2: security fix for CVE-2016-5387 | Natanael Copa | 2016-07-25 | 2 | -4/+25 | |
| | | | | fixes #5938 | |||||
* | main/samba: security upgrade to 4.2.14 (CVE-2016-2119) | Natanael Copa | 2016-07-22 | 1 | -4/+4 | |
| | | | | fixes #5947 | |||||
* | main/tevent: upgrade to 0.9.28 | Natanael Copa | 2016-07-22 | 1 | -4/+4 | |
| | ||||||
* | main/gimp: security upgrade to 2.8.18 (CVE-2016-4994) | Natanael Copa | 2016-07-20 | 1 | -5/+5 | |
| | | | | fixes #5861 | |||||
* | main/py-django: fix download url | Natanael Copa | 2016-07-19 | 1 | -1/+1 | |
| | ||||||
* | main/py-django: security upgrade to 1.8.14 (CVE-2016-6186) | Natanael Copa | 2016-07-19 | 1 | -4/+4 | |
| | | | | fixes #5915 | |||||
* | main/acf-freeswitch-vmail: upgrade to 0.6.2 | Ted Trask | 2016-07-15 | 1 | -4/+4 | |
| | | | | (cherry picked from commit b117bf08c5cb8e96b78c679d10bc030321c9cbf5) | |||||
* | main/mini_httpd: security upgrade to 1.23 (CVE-2015-1548) | Natanael Copa | 2016-07-14 | 1 | -4/+4 | |
| | | | | fixes #5903 | |||||
* | main/wget: security upgrade to 1.18 (CVE-2016-4971) | Bartłomiej Piotrowski | 2016-07-14 | 1 | -4/+4 | |
| | | | | fixes #5866 | |||||
* | main/acf-provisioning: upgrade to 0.8.13 | Ted Trask | 2016-07-08 | 1 | -4/+4 | |
| | | | | (cherry picked from commit 244f854f915b8251ebdb0cd797b42093a8d6824a) | |||||
* | main/phpmyadmin: security upgrade to 4.4.15.7 | Leonardo Arena | 2016-07-05 | 1 | -4/+4 | |
| | | | | | | | | | | | | | | CVE-2016-5701 CVE-2016-5703 CVE-2016-5705 CVE-2016-5706 CVE-2016-5730 CVE-2016-5731 CVE-2016-5733 CVE-2016-5734 CVE-2016-5739 Fixes #5837 | |||||
* | main/tiff: remove unneeded patches | Leonardo Arena | 2016-07-04 | 8 | -1115/+0 | |
| | ||||||
* | main/tiff: security fixes. Fixes #5826 | Leonardo Arena | 2016-07-04 | 4 | -4/+349 | |
| | | | | | | | | | | | CVE-2015-8665 CVE-2015-8683 CVE-2015-8781 CVE-2015-8782 CVE-2015-8784 (cherry picked from commit 7f2845dc97725af0dc4230433d9cb42a76c552db) (cherry picked from commit df6ff3e3449ac74fc39165229f9764d968aa58f4) | |||||
* | main/tiff: upgrade to 4.0.6 | Leonardo Arena | 2016-07-04 | 1 | -37/+5 | |
| | ||||||
* | main/jansson: security fix for CVE-2016-4425 | Natanael Copa | 2016-07-04 | 2 | -6/+148 | |
| | | | | | | fixes #5793 (cherry picked from commit 36ab20a1ac9047916d193fc1aae1cf8be6b0ee23) | |||||
* | main/libksba: security upgrade to 1.3.4. Fixes #5782 | Leonardo Arena | 2016-07-04 | 1 | -4/+4 | |
| | ||||||
* | main/python: security upgrade to 2.7.12 | Natanael Copa | 2016-06-29 | 1 | -5/+5 | |
| | | | | | | | | CVE-2016-0772: smtplib StartTLS stripping attack. CVE-2016-5636: Heap overflow in zipimporter module . CVE-2016-5699: HTTP header injection in urrlib2/urllib/httplib/http.client. fixes #5802 | |||||
* | main/giflib: security fix (CVE-2015-7555). Fixes #5660 | Leonardo Arena | 2016-06-24 | 2 | -1/+31 | |
| | | | | (cherry picked from commit e923ae18b6f5631e1c3a468d33471a559aa06ac4) | |||||
* | main/xen: security fixes. Fixes #5777 | Leonardo Arena | 2016-06-24 | 34 | -1/+2590 | |
| | | | | | | | | | | | CVE-2016-4962, XSA-175: Unsanitised guest input in libxl device handling code http://xenbits.xen.org/xsa/advisory-175.html CVE-2016-4480, XSA-176: x86 software guest page walk PS bit handling flaw http://xenbits.xen.org/xsa/advisory-176.html CVE-2016-4963, XSA-178: Unsanitised driver domain input in libxl device handling http://xenbits.xen.org/xsa/advisory-178.html | |||||
* | main/libxslt: security upgrade to 1.1.29 (CVE-2015-7995, CVE-2016-1683, ↵ | Leonardo Arena | 2016-06-24 | 1 | -6/+6 | |
| | | | | CVE-2016-1684). Fixes #5755 | |||||
* | main/vlc: security upgrade to 2.2.4 (CVE-2016-5108). Fixes #5717 | Leonardo Arena | 2016-06-23 | 1 | -9/+5 | |
| | ||||||
* | main/nginx: security fix (CVE-2016-4450). Fixes #5677 | Leonardo Arena | 2016-06-23 | 2 | -4/+23 | |
| | | | | (cherry picked from commit 6123c2137e443bed33d0c3aa9f520199843021e3) | |||||
* | main/librsvg: security upgrade to 2.40.12 (CVE-2015-7558). Fixes #5668 | Leonardo Arena | 2016-06-23 | 1 | -5/+5 | |
| | ||||||
* | main/openssl: security fix for CVE-2016-2177, CVE-2016-2178 | Natanael Copa | 2016-06-22 | 3 | -4/+395 | |
| | ||||||
* | main/hostapd: security fix for CVE-2016-4476 | Natanael Copa | 2016-06-22 | 2 | -1/+87 | |
| | | | | fixes #5647 | |||||
* | main/curl: security upgrade to 7.49.1 (CVE-2016-3739) | Natanael Copa | 2016-06-22 | 1 | -4/+4 | |
| | | | | fixes #5652 | |||||
* | main/wpa_supplicant: security fix for CVE-2016-4476, CVE-2016-4477 | Natanael Copa | 2016-06-21 | 6 | -1/+348 | |
| | | | | | | fixes #5640 (cherry picked from commit a2dcdd15792e8717e6b73abca56c08bd165e93ab) | |||||
* | main/jq: security fix (CVE-2015-8863). Fixes #5634 | Leonardo Arena | 2016-06-21 | 2 | -5/+56 | |
| | | | | (cherry picked from commit f4aef6abc16e3493bb74daee8195fd163a17e518) | |||||
* | main/wireshark: security upgrade to 1.12.12. Fixes #5625 | Leonardo Arena | 2016-06-21 | 1 | -4/+4 | |
| | | | | | | | | | | CVE-2016-4006 CVE-2016-4078 CVE-2016-4079 CVE-2016-4080 CVE-2016-4081 CVE-2016-4082 CVE-2016-4085 | |||||
* | main/gd: security fix (CVE-2016-3074). Fixes #5611 | Leonardo Arena | 2016-06-21 | 3 | -5/+100 | |
| | | | | (cherry picked from commit 03a7b7c153735bbd740e554845de18f3f5e7f4f5) | |||||
* | main/expat: security fix (CVE-2016-0718). Fixes #5598 | Leonardo Arena | 2016-06-21 | 2 | -5/+766 | |
| | | | | (cherry picked from commit f178e940198d9adce71ee406dfcf6d71f2530629) |