aboutsummaryrefslogtreecommitdiffstats
path: root/main
Commit message (Collapse)AuthorAgeFilesLines
* ==== release 3.5.2 ====v3.5.2Natanael Copa2017-03-021-1/+1
|
* main/nginx: update to 1.10.3Jakub Jirutka2017-03-021-16/+16
| | | | | | headers-more-nginx-module: update to 0.32 lua-nginx-module: update to 0.10.7 nchan: update to 1.0.8
* main/libxml2: secfix for CVE-2016-5153Natanael Copa2017-03-012-5/+184
|
* main/cyrus-sasl: add secfix commentNatanael Copa2017-03-011-0/+4
|
* main/screen: security upgrade to 4.5.1 (CVE-2017-5618)Natanael Copa2017-03-012-56/+8
| | | | fixes #6730
* main/acf-openssh: upgrade to 0.11.2Ted Trask2017-03-011-5/+3
| | | | (cherry picked from commit c054f989dea0c41c428b824c552db8829bc6d734)
* main/acf-provisioning: upgrade to 0.10.0Ted Trask2017-03-011-4/+2
| | | | (cherry picked from commit 135cf1dadeda1263f5829fa161f8a7445d782298)
* main/libxrender: split docNatanael Copa2017-02-281-2/+2
| | | | fixes #6932
* main/libxdmcp: split docsNatanael Copa2017-02-281-2/+2
| | | | fixes #6931
* main/zabbix: upgrade to 3.2.4Leonardo Arena2017-02-281-4/+4
|
* main/libasr: replace res_randomid() impl. with call to arc4random() from ↵xentec2017-02-285-976/+139
| | | | | | | | | libcrypto Fixes recursive call loop which causes a stack overflow in opensmtpd. fixes #6578 (cherry picked from commit d3a7437a76d864f6aa585e6ae82789cd5455c04d)
* main/libice: split out docsNatanael Copa2017-02-281-2/+2
| | | | fixes #6930
* main/gtkmm: split out docsNatanael Copa2017-02-281-2/+2
| | | | fixes #6929
* main/apache2: upgrade to 2.4.25Andy Postnikov2017-02-282-29/+8
| | | | | | | | | Security release http://www.apache.org/dist/httpd/CHANGES_2.4.25 Also it includes previous patch for httpoxy fixes #6939 (cherry picked from commit 57ba71e0786da6d5383c4785fb65be50a2cad693)
* main/xen: sec fixes fro xsa-207 - xsa-209Natanael Copa2017-02-287-127/+345
| | | | | | | | | | | added perl-dev as makedepends due to man2pod moved to there. - XSA-207 - CVE-2017-2615 XSA-208 - CVE-2017-2620 XSA-209 - XSA-210 fixes #6916
* main: fix various secfix commentsNatanael Copa2017-02-283-4/+4
|
* main/linux-rpi: upgrade to 4.4.52Natanael Copa2017-02-281-5/+5
|
* main/zfs-vanilla: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/spl-vanilla: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/linux-vanilla: upgrade to 4.4.52Natanael Copa2017-02-281-4/+4
|
* main/zfs-grsec: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/xtables-addons-grsec: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/spl-grsec: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/open-vm-tools-grsec: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/ipfw-grsec: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/drbd9-grsec: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/devicemaster-linux-grsec: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/dahdi-linux-grsec: rebuild against kernel 4.4.52-r0Natanael Copa2017-02-281-1/+1
|
* main/linux-grsec: upgrade to 4.4.52Natanael Copa2017-02-281-7/+7
|
* main/acf-core: upgrade to 0.21.0Ted Trask2017-02-271-5/+3
| | | | (cherry picked from commit a833ffd23fed18614233166946b4f8341c5a26ef)
* main/acf-lib: upgrade to 0.10.0Ted Trask2017-02-271-5/+3
| | | | (cherry picked from commit 35961cf446867c55f378b508517422d36660bb2f)
* main/wireshark: security fixes #6907Sergey Lukin2017-02-232-9/+77
| | | | CVE-2017-6014: Memory exhaustion/infinite loop via malformed STANAG 4607 capture file
* main/uwsgi: fix config files perms, explicitly set perms for allJakub Jirutka2017-02-221-6/+6
| | | | | /etc/uwgi/uwsgi.ini and /etc/uwsgi/conf.d/readme.emperor had executable bit.
* main/acf-freeradius3: upgrade to 0.3.1Ted Trask2017-02-221-5/+3
| | | | (cherry picked from commit 7b8d41699ae88a726e7203d0ba67c025e4ae5169)
* main/curl: patch for CVE-2017-2629Sören Tempel2017-02-222-7/+49
|
* main/boost: fix boost_python3Natanael Copa2017-02-204-9/+116
| | | | | | fixes #6874 upstream: https://github.com/boostorg/build/issues/163
* main/ffmpeg: security upgrade to 3.1.7 - fixes #6870Sergey Lukin2017-02-161-4/+10
| | | | | CVE-2017-5024 (arbitrary code execution) CVE-2017-5025 (arbitrary code execution)
* main/vim: security upgrade to 8.0.0329 - fixes #6863Sergey Lukin2017-02-161-4/+7
| | | | CVE-2017-5953: Tree length values not validated properly when handling a spell file
* main/owncloud: upgrade to 9.1.4Leonardo Arena2017-02-131-13/+13
|
* main/bind: security upgrade to 9.10.4_p6 - fixes #6829Sergey Lukin2017-02-131-5/+7
| | | | CVE-2017-3135: Combination of DNS64 and RPZ Can Lead to Crash
* main/postfixadmin: security upgrade to 3.0.2 - fixes #6835Sergey Lukin2017-02-131-15/+15
| | | | | | CVE-2017-5930: allows to delete protected aliases https://svn.code.sf.net/p/postfixadmin/code/trunk/CHANGELOG.TXT
* main/postgresql: update to 9.6.2Jakub Jirutka2017-02-131-4/+4
|
* main/opensmtpd: fix libressl arc4random circularityCarlo Landmeter2017-02-102-5/+44
|
* main/nss: fix checksumTimo Teräs2017-02-091-0/+6
| | | | (cherry picked from commit b1397dbdb8c571b5368878b0624d30ef233c47b4)
* main/nss: add nss-softokn and nss-util pkgconfig filesTimo Teräs2017-02-093-12/+42
| | | | (cherry picked from commit 8e7189a1617d04d056d6936f4924d8ea7b647dc0)
* main/wireshark: security upgrade to 2.2.4 - fixes #6823Sergey Lukin2017-02-081-4/+8
| | | | | CVE-2017-5596: ASTERIX infinite loop CVE-2017-5597: DHCPv6 large loop
* main/git: Upgrade to 2.11.1pbregener2017-02-071-4/+4
| | | | (cherry picked from commit e4a237db89475f7747c8ad13feea37f51a10d7da)
* main/tcpdump: security upgrade to 4.9.0 - fixes #6812Sergey Lukin2017-02-071-5/+50
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | CVE-2016-7922 (arbitrary code execution) CVE-2016-7923 (arbitrary code execution) CVE-2016-7924 (arbitrary code execution) CVE-2016-7925 (arbitrary code execution) CVE-2016-7926 (arbitrary code execution) CVE-2016-7927 (arbitrary code execution) CVE-2016-7928 (arbitrary code execution) CVE-2016-7929 (arbitrary code execution) CVE-2016-7930 (arbitrary code execution) CVE-2016-7931 (arbitrary code execution) CVE-2016-7932 (arbitrary code execution) CVE-2016-7933 (arbitrary code execution) CVE-2016-7934 (arbitrary code execution) CVE-2016-7935 (arbitrary code execution) CVE-2016-7936 (arbitrary code execution) CVE-2016-7937 (arbitrary code execution) CVE-2016-7938 (arbitrary code execution) CVE-2016-7939 (arbitrary code execution) CVE-2016-7940 (arbitrary code execution) CVE-2016-7973 (arbitrary code execution) CVE-2016-7974 (arbitrary code execution) CVE-2016-7975 (arbitrary code execution) CVE-2016-7983 (arbitrary code execution) CVE-2016-7984 (arbitrary code execution) CVE-2016-7985 (arbitrary code execution) CVE-2016-7986 (arbitrary code execution) CVE-2016-7992 (arbitrary code execution) CVE-2016-7993 (arbitrary code execution) CVE-2016-8574 (arbitrary code execution) CVE-2016-8575 (arbitrary code execution) CVE-2017-5202 (arbitrary code execution) CVE-2017-5203 (arbitrary code execution) CVE-2017-5204 (arbitrary code execution) CVE-2017-5205 (arbitrary code execution) CVE-2017-5341 (arbitrary code execution) CVE-2017-5342 (arbitrary code execution) CVE-2017-5482 (arbitrary code execution) CVE-2017-5483 (arbitrary code execution) CVE-2017-5484 (arbitrary code execution) CVE-2017-5485 (arbitrary code execution) CVE-2017-5486 (arbitrary code execution)
* main/wavpack: security upgrade to 5.1.0 - fixes #6818Sergey Lukin2017-02-071-13/+17
| | | | | | | CVE-2016-10169: global buffer overread in read_code / read_words.c CVE-2016-10170: Heap out of bounds read in WriteCaffHeader / caff.c CVE-2016-10171: heap out of bounds read in unreorder_channels / wvunpack.c CVE-2016-10172: Heap out of bounds read in read_new_config_info / open_utils.c
* main/libevent: security fixes #6799Sergey Lukin2017-02-074-9/+290
| | | | | | CVE-2016-10195: dns remote stack overread vulnerability CVE-2016-10196: (stack) buffer overflow in evutil_parse_sockaddr_port() CVE-2016-10197: out-of-bounds read in search_make_new()