Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/abuild: backport chdir to "$builddir" | Natanael Copa | 2019-10-29 | 2 | -3/+36 | |
| | | | | | This makes it easier to backport security fixes which has the `cd "$builddir"` removed. | |||||
* | main/file: fix CVE-2019-18218 | Leo | 2019-10-29 | 2 | -2/+46 | |
| | | | | | | ref #10911 Closes !890 | |||||
* | main/nmap: fix CVE-2018-15173 and CVE-2017-18594 | Leo | 2019-10-28 | 3 | -3/+77 | |
| | | | | | ref #10899 Closes !813 | |||||
* | main/libssh2: Update release version for CVE patch | Alex Mirski-Fitton | 2019-10-25 | 1 | -1/+1 | |
| | | | | | | 6c763143a08a56997ee6f88f9329cfc17d6b56b5 introduced a patch for CVE-2019-17498 but did not bump the package release version. Therefore, the package wasn't rebuild. | |||||
* | main/faad2: security upgrade to 2.9.0 | Leo | 2019-10-24 | 2 | -24/+26 | |
| | | | | | | | | | | | | | | | | | | | | | | | fixes: - CVE-2019-6956 - CVE-2018-20196 - CVE-2018-20199 - CVE-2018-20360 - CVE-2018-20362 - CVE-2018-19504 - CVE-2018-20195 - CVE-2018-20198 - CVE-2018-20358 - CVE-2018-20194 - CVE-2018-19503 - CVE-2018-20197 - CVE-2018-20357 - CVE-2018-20359 - CVE-2018-20361 - CVE-2019-15296 - CVE-2018-19502 ref #10696 | |||||
* | main/rsyslog: fix CVE-2019-17041 and CVE-2019-17042 | Leo | 2019-10-22 | 1 | -3/+11 | |
| | | | | | ref #10880 Closes !546 | |||||
* | main/sdl2_image: security fix for CVE-2019-13616. | Francesco Colista | 2019-10-21 | 1 | -0/+24 | |
| | | | | Fixes #10879 | |||||
* | main/sqlite: fix CVE-2019-16168 | Leo | 2019-10-20 | 2 | -4/+32 | |
| | | | | | ref #10868 Closes !420 | |||||
* | main/e2fsprogs: fix CVE-2019-5094 | Leo | 2019-10-17 | 2 | -3/+198 | |
| | | | | ref #10835 | |||||
* | main/tzdata: upgrade to 2019c | J0WI | 2019-10-17 | 1 | -4/+4 | |
| | ||||||
* | main/ruby: upgrade to 2.5.7 | Christian Schlack | 2019-10-17 | 1 | -2/+7 | |
| | ||||||
* | main/python3: security fix for CVE-2019-16935 | Natanael Copa | 2019-10-17 | 2 | -2/+86 | |
| | | | | fixes #10871 | |||||
* | main/libssh2: fix for CVE-2019-17498 | Natanael Copa | 2019-10-17 | 2 | -2/+78 | |
| | | | | fixes #10883 | |||||
* | main/libssh2: security upgrade to 1.9.0 (CVE-2019-13115) | Natanael Copa | 2019-10-16 | 1 | -2/+4 | |
| | | | | fixes #10862 | |||||
* | main/ghostscript: security fixes | Leonardo Arena | 2019-10-16 | 5 | -2/+779 | |
| | | | | | | CVE-2019-14811, CVE-2019-14812, CVE-2019-14813, CVE-2019-14817 ref #10776 | |||||
* | main/python3: remove unused patch | Natanael Copa | 2019-10-16 | 1 | -150/+0 | |
| | | | | it was included in 3.6.9 upgrade | |||||
* | main/python3: upgrade to 3.6.9 | Natanael Copa | 2019-10-16 | 1 | -5/+3 | |
| | ||||||
* | main/python3: fix CVE-2019-16056 | Leo | 2019-10-16 | 2 | -2/+95 | |
| | | | | ref #10795 | |||||
* | main/varnish: security upgrade to 6.0.4 | Leo | 2019-10-12 | 1 | -5/+6 | |
| | | | | | | | fixes CVE-2019-15892 ref #10775 Closes !422 | |||||
* | main/dovecot: update pigenhole to 0.5.7.2 to fix segfault | Natanael Copa | 2019-10-11 | 1 | -3/+3 | |
| | | | | fixes #10857 | |||||
* | main/poppler: security fix (CVE-2019-9959) | Leonardo Arena | 2019-09-24 | 2 | -4/+24 | |
| | | | | ref #10811 | |||||
* | main/expat: security upgrade to 2.2.8 | Leo | 2019-09-20 | 1 | -7/+4 | |
| | ||||||
* | main/acf-core: upgrade to 0.21.3 | Ted Trask | 2019-09-18 | 1 | -2/+2 | |
| | | | | (cherry picked from commit 6aec6174097e91202e182dfea7804d089682d74e) | |||||
* | main/acf-jquery: upgrade to 0.4.3 | Ted Trask | 2019-09-18 | 1 | -5/+3 | |
| | | | | (cherry picked from commit 1e98ca681e586fe5ee1970d7bcbf71e80bd30d32) | |||||
* | main/sdl2_image: security upgrade to 2.0.5. | Francesco Colista | 2019-09-18 | 1 | -2/+14 | |
| | | | | | | | | | | | | | | | This upgrade fixed the following CVE's: CVE-2019-5060 (TALOS-2019-0844) CVE-2019-5059 (TALOS-2019-0843) CVE-2019-5058 (TALOS-2019-0842) CVE-2019-5057 (TALOS-2019-0841) CVE-2019-5052 (TALOS-2019-0821) CVE-2019-5051 (TALOS-2019-0820) CVE-2019-12222 CVE-2019-12221 CVE-2019-12219 CVE-2019-12218 CVE-2019-12217 | |||||
* | main/wpa_supplicant: security fix (CVE-2019-16275) | Leonardo Arena | 2019-09-17 | 2 | -1/+78 | |
| | | | | ref #10800 | |||||
* | main/hostapd: security fix (CVE-2019-16275) | Leonardo Arena | 2019-09-17 | 2 | -1/+78 | |
| | | | | ref #10799 | |||||
* | main/curl: security fixes (CVE-2019-5481, CVE-2019-5482) | Leonardo Arena | 2019-09-17 | 3 | -2/+100 | |
| | | | | ref #10793 | |||||
* | main/asterisk: security upgrade to 15.6.2 and security fixes | Leonardo Arena | 2019-09-17 | 5 | -2/+302 | |
| | | | | | | | | | | - CVE-2018-19278 (included in 15.6.2) - CVE-2019-7251 - CVE-2019-12827 - CVE-2019-13161 - CVE-2019-15297 ref #10790 | |||||
* | main/expat: fix CVE-2019-15903 | Leo | 2019-09-13 | 2 | -5/+90 | |
| | | | | ref #10791 | |||||
* | main/openssl: security upgrade to 1.0.2t | J0WI | 2019-09-12 | 1 | -2/+5 | |
| | | | | | CVE-2019-1547 CVE-2019-1563 | |||||
* | main/acf-core: upgrade to 0.21.2 | Ted Trask | 2019-09-11 | 1 | -2/+2 | |
| | | | | (cherry picked from commit 389b7971de86052f690442634e61bb5a71c835cb) | |||||
* | main/nghttp2: security upgrade (CVE-2019-9511,9513) | Francesco Colista | 2019-09-11 | 1 | -3/+8 | |
| | ||||||
* | main/awall: upgrade to 1.5.3 | Kaarle Ritvanen | 2019-09-08 | 1 | -2/+2 | |
| | ||||||
* | main/polkit: actually apply patch for CVE-2019-6133 | Rasmus Thomsen | 2019-09-03 | 1 | -2/+4 | |
| | | | | fixes #10016 | |||||
* | main/mariadb: fix init script not recognizing started instance | Jakub Jirutka | 2019-09-02 | 2 | -11/+6 | |
| | ||||||
* | main/dovecot: security upgrade to 2.3.7.2 | Natanael Copa | 2019-08-29 | 1 | -2/+4 | |
| | | | | CVE-2019-11500 | |||||
* | main/tiff: security fix (CVE-2019-14973) | Leonardo Arena | 2019-08-28 | 2 | -2/+430 | |
| | | | | Ref #10761 | |||||
* | main/openldap: security upgrade to 2.4.48 | Leo | 2019-08-27 | 1 | -2/+5 | |
| | | | | | | | | CVE-2019-13057, CVE-2019-13565 Ref #10752 Signed-off-by: Leonardo Arena <rnalrd@alpinelinux.org> | |||||
* | main/ansible: security upgrade to 2.6.19 | Leo | 2019-08-26 | 1 | -5/+9 | |
| | | | | | | 2.5 branch is end-of-life ref #10755 | |||||
* | main/wavpack: fix a few CVEs | Leo | 2019-08-26 | 5 | -3/+147 | |
| | | | | ref #10756 | |||||
* | main/tzdata: upgrade to 2019b | Andy Postnikov | 2019-08-23 | 1 | -4/+4 | |
| | | | | (cherry picked from commit aee8794f240b5dd7ae762806332f30293f53e702) | |||||
* | main/flite: fix underlinking | Natanael Copa | 2019-08-22 | 2 | -3/+95 | |
| | | | | | | backport fix(es) for the underlinking issues in the internal libraries. (cherry picked from commit 745e691c30c54bcc35ae38238e8299c4eb917556) | |||||
* | main/libarchive: security upgrade to 3.3.3 | Leonardo Arena | 2019-08-20 | 3 | -57/+8 | |
| | | | | | | | | CVE-2017-14501, CVE-2017-14502, CVE-2017-14503 Drop uneeded patches Ref #10745 | |||||
* | main/freeradius: security fix (CVE-2019-10143) | Leonardo Arena | 2019-08-20 | 2 | -2/+100 | |
| | | | | Ref #10744 | |||||
* | main/xen: security upgrade to 4.10.4 | Henrik Riomar | 2019-08-20 | 10 | -1277/+16 | |
| | | | | | | | | | | | | | | | | | | | Fixes the following security problems: XSA-284 XSA-285 XSA-286 XSA-287 XSA-288 XSA-290 XSA-291 XSA-292 XSA-293 XSA-294 XSA-295 XSA-296 None of these have CVEs assigned. | |||||
* | main/nginx: security fixes | Leonardo Arena | 2019-08-20 | 4 | -1/+207 | |
| | | | | | | CVE-2019-9511, CVE-2019-9513, CVE-2019-9516 Ref #10742 | |||||
* | main/apache2: upgrade to 2.4.41 | J0WI | 2019-08-20 | 1 | -2/+9 | |
| | | | | Closes GH-10082 | |||||
* | main/cups: security upgrade to 2.2.12 | Leo | 2019-08-19 | 1 | -3/+5 | |
| | ||||||
* | main/znc: add patches fo CVE-2019-9917 and CVE-2019-12816 | Rasmus Thomsen | 2019-08-15 | 3 | -4/+237 | |
| | | | | ref #10732 |