aboutsummaryrefslogtreecommitdiffstats
path: root/main
Commit message (Collapse)AuthorAgeFilesLines
...
* main/dropbear: disable wtmp and lastlog supportnervo2018-09-201-2/+4
| | | | | | | | musl doesn't support neither wtmp nor lastlog. Fixes #5075 (cherry picked from commit 8717d9372bd86e76ee2da5e06ffc702c4ab7c7c2)
* main/dropbear: upgrade to 2018.76TBK2018-09-202-13/+11
|
* main/ghostscript: security upgrade to 9.24Andy Postnikov2018-09-201-11/+10
| | | | | | | | | CVE-2018-15908, CVE-2018-15909, CVE-2018-15910, CVE-2018-15911 CVE-2018-10194 fixes #9384 (cherry picked from commit c13758613f3110e14c2e9eda818406f235d996c1)
* main/dnsmasq: backport security fix (CVE-2017-15107)Natanael Copa2018-09-202-2/+214
| | | | fixes #9378
* main/libsndfile: security fix (CVE-2018-13139)Leonardo Arena2018-09-192-10/+45
| | | | Partially fixes #9234
* main/curl: security upgrade to 7.61.1 (CVE-2018-14618)Natanael Copa2018-09-191-2/+4
| | | | fixes #9395
* ==== release 3.7.1 ====v3.7.1Natanael Copa2018-09-111-1/+1
|
* main/apk-tools: security upgrade to 2.10.1Timo Teräs2018-09-105-204/+3
|
* main/bind: security upgrade to 9.11.4_p1 (CVE-2018-5740)Natanael Copa2018-09-101-2/+4
| | | | fixes #9359
* main/apk-tools: backport fix for --no-networkNatanael Copa2018-09-072-3/+35
| | | | | | | | prevent update repository index when --no-network is specified. fixes #9126 Backported on request: https://github.com/docker-library/ruby/pull/229#issuecomment-419252524
* main/apk-tools: don't update index on deleteNatanael Copa2018-09-072-3/+77
| | | | | | | | backport from upstream fixes #9063 (cherry picked from commit 09b110fc99a36f12c0b49e6029a231a231ce920d)
* main/python3: security upgrade to 3.6.5 (CVE-2018-1060, CVE-2018-1061)Leonardo Arena2018-08-221-5/+8
| | | | Fixes #9269
* main/libmspack: security upgrade to 0.7.1alphaNatanael Copa2018-08-223-113/+12
| | | | fixes #9227
* main/python2: security upgrade to 2.7.15 (CVE-2018-1060, CVE-2018-1061)Leonardo Arena2018-08-221-2/+7
| | | | Fixes #9269
* main/samba: securiti fixesLeonardo Arena2018-08-2220-1/+3290
| | | | | | CVE-2018-10858, CVE-2018-10918, CVE-2018-10919, CVE-2018-1139 Fixes #9251
* main/ldb: security fix (CVE-2018-1140)Leonardo Arena2018-08-222-4/+40
| | | | Fixes #9257
* main/myrepos: security upgrade to 1.20180726 (CVE-2018-7032)Natanael Copa2018-08-221-3/+7
| | | | fixes #9201
* main/unzip: fix various CVEsNatanael Copa2018-08-228-2/+399
| | | | | | | | | | | | - CVE-2014-8139 - CVE-2014-8140 - CVE-2014-8141 - CVE-2014-9636 - CVE-2014-9913 - CVE-2016-9844 - CVE-2018-1000035 fixes #9288
* main/ncurses: backport security fix (CVE-2018-10754)Natanael Copa2018-08-212-4/+26
| | | | fixes #9283
* main/krb5: security upgrade to 1.15.3 ↵Natanael Copa2018-08-211-3/+9
| | | | | | (CVE-2017-15088,CVE-2018-5709,CVE-2018-5710) fixes #9302
* main/clamav: security upgrade to 0.100.1 ↵Natanael Copa2018-08-211-2/+6
| | | | | | (CVE-2017-16932,CVE-2018-0360,CVE-2018-0361) fixes #9169
* main/wpa_supplicant: security fix (CVE-2018-14526)Natanael Copa2018-08-212-1/+49
| | | | fixes #9221
* main/apache2: security upgrade to 2.4.34Andy Postnikov2018-08-202-2/+82
| | | | fixes #9265
* main/gnupg1: security upgrade to 1.4.23 (CVE-2017-7526)tcely2018-08-162-47/+6
| | | | (cherry picked from commit 6895452f9306041d563023e9fae6b77ac6c27dae)
* main/gnupg1: fix CVE-2018-12020Sören Tempel2018-08-162-3/+51
|
* main/redis: upgrade to 4.0.11Andy Postnikov2018-08-101-2/+2
|
* main/postgresql: security upgrade to 10.5Andy Postnikov2018-08-101-2/+5
| | | | CVE-2018-10915 CVE-2018-10925
* main/mupdf: upgrade to 1.13.0prspkt2018-08-082-22/+19
| | | | | | | | add secfixes comments fixes #8581 (cherry picked from commit 831d2ee24986330048dfa488c8bb5017656e8efd)
* main/mupdf: upgrade to 1.12.0Daniel Sabogal2018-08-084-75/+29
| | | | (cherry picked from commit a05cd51302237e06412d14a512a51fd1092860bb)
* main/libvncserver: fix CVE-2018-7225prspkt2018-08-082-6/+70
| | | | fixes #8558
* main/p7zip: security fixes (CVE-2018-5996, CVE-2018-10115)Natanael Copa2018-08-083-5/+545
| | | | fixes #8533
* main/p7zip: security fix for CVE-2017-17969, modernizeDaniel Sabogal2018-08-082-13/+34
|
* main/lxc: fix CVE-2018-6556Jakub Jirutka2018-08-062-2/+129
|
* main/py-django: security upgrade to 1.11.15 (CVE-2018-14574)Natanael Copa2018-08-061-2/+4
| | | | fixes #9176
* main/cgit: fix secfixes commentNatanael Copa2018-08-041-1/+1
|
* main/cgit: fix CVE-2018-14912Natanael Copa2018-08-042-2/+70
|
* main/kamailio: add secfixes commentNatanael Copa2018-08-021-0/+4
|
* main/tiff: various security fixesNatanael Copa2018-08-025-2/+283
| | | | | | | | | | - CVE-2017-9935 - CVE-2017-11613 - CVE-2017-17095 - CVE-2018-10963 fixes #8241 fixes #9164
* main/fuse: security upgrade to 2.9.8 (CVE-2018-10906)Natanael Copa2018-07-301-9/+7
| | | | fixes #9153
* main/fuse: Move /etc/udev/rules.d to /libMax Rees2018-07-301-2/+2
| | | | See: https://github.com/alpinelinux/aports/pull/3759#issuecomment-376883202
* main/kamailio: upgrade to 5.0.7Leonardo Arena2018-07-301-2/+2
|
* main/libvorbis: security fix for CVE-2018-10392Natanael Copa2018-07-302-3/+33
| | | | fixes #9141
* main/libvorbis: upgrade to 1.3.6, enable testsprspkt2018-07-303-35/+19
| | | | fixes #8671
* main/mercurial: security upgrade to 4.5.2 (CVE-2018-1000132)Natanael Copa2018-07-301-2/+6
| | | | fixes #8826
* main/mutt: security upgrade to 1.10.1Natanael Copa2018-07-241-4/+19
| | | | | | | | CVE-2018-14349, CVE-2018-14350, CVE-2018-14351, CVE-2018-14352, CVE-2018-14353, CVE-2018-14354, CVE-2018-14355, CVE-2018-14356, CVE-2018-14357, CVE-2018-14358, CVE-2018-14359, CVE-2018-14362 fixes #9130
* main/mqtt-exec: backport password auth supportNatanael Copa2018-07-183-78/+92
| | | | and remove unused patch
* main/znc: security upgrade to 1.7.1 (CVE-2018-14055,CVE-2018-14056)Natanael Copa2018-07-181-5/+10
| | | | fixes #9102
* main/openssl: fix CVE-2018-0732 and CVE-2018-0737Timo Teräs2018-07-183-2/+76
| | | | | fixes #8814 fixes #9009
* main/asterisk: security upgrade to 15.5.0Timo Teräs2018-07-181-2/+2
| | | | | | | AST-2018-007: Infinite loop when reading iostreams AST-2018-008: PJSIP endpoint presence disclosure when using ACL (cherry picked from commit 40fd8ce8d8419d7627964e69c29ea7c30b65a953) (cherry picked from commit 4c6b45d7a5f74edf465b9f41c36dbd96182c8592)
* main/curl: upgrade to 7.61.0, add secfixes commentprspkt2018-07-131-5/+7
|