Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | main/wpa_supplicant: security fix (CVE-2018-14526) | Natanael Copa | 2018-08-21 | 2 | -1/+49 | |
| | | | | fixes #9222 | |||||
* | main/apache2: fix libressl patch | Kaarle Ritvanen | 2018-08-20 | 2 | -1/+21 | |
| | | | | https://svn.apache.org/viewvc/httpd/httpd/trunk/modules/ssl/ssl_private.h?r1=1832994&r2=1833598&view=patch | |||||
* | main/apache2: security upgrade to 2.4.34 | Andy Postnikov | 2018-08-20 | 2 | -2/+82 | |
| | | | | fixes #9266 | |||||
* | main/hylafax: default to iso-8859-1 charset for better compatibility | Leonardo Arena | 2018-08-17 | 2 | -20/+34 | |
| | | | | | | Fix install of other languages into subpkg (cherry picked from commit 3086ef262eb572a254697a18f343a601ce78a3bd) | |||||
* | main/gnupg1: security upgrade to 1.4.23 (CVE-2017-7526) | tcely | 2018-08-16 | 2 | -47/+6 | |
| | | | | (cherry picked from commit 6895452f9306041d563023e9fae6b77ac6c27dae) | |||||
* | main/gnupg1: fix CVE-2018-12020 | Sören Tempel | 2018-08-16 | 2 | -8/+56 | |
| | ||||||
* | main/gnupg1: upgrade to 1.4.22 | Sören Tempel | 2018-08-16 | 1 | -4/+2 | |
| | ||||||
* | main/postgresql: security upgrade to 9.6.10 | Jakub Jirutka | 2018-08-10 | 1 | -2/+5 | |
| | | | | Fixes CVE-2018-10915, CVE-2018-10925 | |||||
* | main/libvncserver: fix CVE-2018-7225 | prspkt | 2018-08-08 | 2 | -5/+70 | |
| | | | | fixes #8559 | |||||
* | main/p7zip: security fixes (CVE-2018-5996, CVE-2018-10115) | Natanael Copa | 2018-08-08 | 3 | -5/+545 | |
| | | | | fixes #8534 | |||||
* | main/p7zip: secfix (CVE-2017-17969) | Natanael Copa | 2018-08-08 | 2 | -7/+23 | |
| | ||||||
* | main/lxc: fix CVE-2018-6556 | Jakub Jirutka | 2018-08-06 | 2 | -2/+140 | |
| | ||||||
* | main/py-django: security upgrade to 1.11.15 (CVE-2018-14574) | Natanael Copa | 2018-08-06 | 1 | -2/+4 | |
| | | | | fixes #9177 | |||||
* | main/cgit: fix CVE-2018-14912 | Natanael Copa | 2018-08-04 | 2 | -2/+70 | |
| | ||||||
* | main/tiff: various security fixes | Natanael Copa | 2018-08-02 | 5 | -2/+282 | |
| | | | | | | | | | | - CVE-2017-9935 - CVE-2017-11613 - CVE-2017-17095 - CVE-2018-10963 fixes #8242 fixes #9165 | |||||
* | main/fuse: security upgrade to 2.9.8 (CVE-2018-10906) | Natanael Copa | 2018-07-30 | 1 | -9/+7 | |
| | | | | fixes #9154 | |||||
* | main/fuse: Move /etc/udev/rules.d to /lib | Max Rees | 2018-07-30 | 1 | -2/+2 | |
| | | | | See: https://github.com/alpinelinux/aports/pull/3759#issuecomment-376883202 | |||||
* | main/perl: security fix (CVE-2018-12015) | Leonardo Arena | 2018-07-30 | 2 | -2/+47 | |
| | | | | Fixes #8984 | |||||
* | main/libvorbis: security fix for CVE-2018-10392 | Natanael Copa | 2018-07-30 | 2 | -3/+33 | |
| | | | | fixes #9143 | |||||
* | main/libvorbis: upgrade to 1.3.6, enable tests | prspkt | 2018-07-30 | 3 | -36/+16 | |
| | | | | fixes #8672 | |||||
* | main/mercurial: security upgrade to 4.5.2 (CVE-2018-1000132) | Natanael Copa | 2018-07-30 | 1 | -2/+4 | |
| | | | | fixes #8827 | |||||
* | main/mutt: security upgrade to 1.10.1 | Natanael Copa | 2018-07-24 | 1 | -3/+18 | |
| | | | | | | | | CVE-2018-14349, CVE-2018-14350, CVE-2018-14351, CVE-2018-14352, CVE-2018-14353, CVE-2018-14354, CVE-2018-14355, CVE-2018-14356, CVE-2018-14357, CVE-2018-14358, CVE-2018-14359, CVE-2018-14362 fixes #9131 | |||||
* | main/mqtt-exec: backport password auth support | Natanael Copa | 2018-07-18 | 3 | -78/+92 | |
| | | | | and remove unused patch | |||||
* | main/mqtt-exec: upgrade to 0.4 | Natanael Copa | 2018-07-18 | 1 | -7/+3 | |
| | ||||||
* | main/znc: security upgrade to 1.7.1 (CVE-2018-14055,CVE-2018-14056) | Natanael Copa | 2018-07-18 | 1 | -11/+11 | |
| | | | | fixes #9103 | |||||
* | main/openssl: fix CVE-2018-0732 and CVE-2018-0737 | Timo Teräs | 2018-07-18 | 3 | -2/+76 | |
| | | | | | fixes #8815 fixes #9010 | |||||
* | main/xen: upgrade to 4.8.4 | Henrik Riomar | 2018-07-16 | 17 | -2269/+14 | |
| | | | | | | https://www.xenproject.org/downloads/xen-archives/xen-project-48-series/xen-484.html Fix XSA-263-267 | |||||
* | main/curl: upgrade to 7.61.0, add secfixes comment | prspkt | 2018-07-13 | 1 | -5/+7 | |
| | ||||||
* | main/acf-alpine-baselayout: upgrade to 0.13.2 | Ted Trask | 2018-06-26 | 1 | -5/+4 | |
| | | | | (cherry picked from commit 26a78bb0bddafc8ca808b00f83f4d304f8c5c7bf) | |||||
* | main/libgcrypt: security upgrade to 1.7.10 (CVE-2018-0495) | Natanael Copa | 2018-06-19 | 1 | -3/+5 | |
| | | | | fixes #9005 | |||||
* | main/redis: security upgrade to 3.2.12 (CVE-2018-11218,CVE-2018-11219) | Natanael Copa | 2018-06-19 | 1 | -2/+7 | |
| | | | | fixes #9022 | |||||
* | main/gnupg: security fix (CVE-2018-12020) | Leonardo Arena | 2018-06-13 | 2 | -3/+53 | |
| | | | | Fixes #8995 | |||||
* | main/freetype: security fix (CVE-2018-6942) | Leonardo Arena | 2018-06-13 | 2 | -2/+44 | |
| | | | | Fixes #8989 | |||||
* | main/perl: security upgrade to 5.24.4 | Leonardo Arena | 2018-06-11 | 1 | -9/+13 | |
| | | | | | | CVE-2018-6797, CVE-2018-6798, CVE-2018-6913 Fixes #8803 | |||||
* | main/memcached: security fix (CVE-2018-1000115) | Leonardo Arena | 2018-06-11 | 2 | -3/+74 | |
| | | | | Fixes #8831 | |||||
* | main/xen: security fixes XSA 258-262 | Henrik Riomar | 2018-06-11 | 13 | -1/+1879 | |
| | | | | | | | | CVE-2018-10472 XSA-258 CVE-2018-10471 XSA-259 CVE-2018-8897 XSA-260 (depends on 4-patches from stable-4.8) CVE-2018-10982 XSA-261 CVE-2018-10981 XSA-262 | |||||
* | main/wavpack: add secfixes | prspkt | 2018-06-11 | 3 | -2/+143 | |
| | | | | | | | | | | | fixes for: -CVE-2018-10536 -CVE-2018-10537 -CVE-2018-10538 -CVE-2018-10539 -CVE-2018-10540 Fixes #8913 | |||||
* | main/wavpack: security fixes | Leonardo Arena | 2018-06-11 | 4 | -14/+231 | |
| | | | | | | CVE-2018-6767, CVE-2018-7253, CVE-2018-7254 Fixes #8594 | |||||
* | main/sdl2_image: security fixes. Fixes #8942 | Francesco Colista | 2018-06-06 | 11 | -4/+347 | |
| | | | | | | | | | | | | | | | Security fiexes for the following CVEs: CVE-2017-2887 CVE-2017-12122 CVE-2017-14440 CVE-2017-14441 CVE-2017-14442 CVE-2017-14448 CVE-2017-14450 CVE-2018-3837 CVE-2018-3838 CVE-2018-3839 | |||||
* | main/xfsprogs: fix owner of files | Natanael Copa | 2018-06-06 | 1 | -7/+4 | |
| | | | | fixes #8968 | |||||
* | main/git: security upgrade to 2.13.7 (CVE-2018-11233,CVE-2018-11235) | Natanael Copa | 2018-05-30 | 1 | -2/+5 | |
| | | | | fixes #8948 | |||||
* | main/binutils: backport fix for ppc64le | Natanael Copa | 2018-05-30 | 2 | -1/+96 | |
| | | | | | | | | | | This fixes clang testsuite. Patch was taken from upstream binutils-2_30-branch https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;a=shortlog;h=refs/heads/binutils-2_30-branch Upstream report: https://sourceware.org/ml/binutils/2018-03/msg00183.html | |||||
* | main/binutils: upgrade to 2.30 | Natanael Copa | 2018-05-30 | 2 | -94/+4 | |
| | | | | | fixes #7315 fixes #8881 | |||||
* | main/binutils: add mips support | Nils Andreas Svee | 2018-05-30 | 4 | -35/+399 | |
| | | | | | | * Remove hash-style-gnu.patch in favor of the patch adding a configure flag for it from upstream * Add gold-mips.patch from Debian, which makes gold configure correctly for MIPS64 targets * Use CTARGET_ARCH instead of CARCH to correctly determine whether to enable the x86_64-pep target or not | |||||
* | main/libressl: bump pkgrel due to revert | Natanael Copa | 2018-05-30 | 1 | -1/+1 | |
| | ||||||
* | Revert "main/libressl: add options -verify_{hostname,ip} to s_client" | Natanael Copa | 2018-05-30 | 3 | -111/+3 | |
| | | | | | | fixes #8939 This reverts commit 1fae29db4daf9eb7f4e39aab7ce3bd37d18cc74e. | |||||
* | main/busybox: properly fix wget https support | Natanael Copa | 2018-05-30 | 7 | -87/+341 | |
| | | | | | | | | | | | | | fix busybox wget https support by using an external ssl_client helper for https. Disable the use of external openssl. This was fixed to check certificates as a temporary solution. openssl can not produce any useful error messages on certificate errors. It is big. So we simply disable its use. We auto-install ssl_client if both libssl and busybox are installed. This is to keep backwards compatibility. | |||||
* | main/busybox: wget: verify certificate when openssl helper is used | Jakub Jirutka | 2018-05-29 | 2 | -0/+73 | |
| | ||||||
* | main/busybox: wget: print warning when internal TLS code is used | Jakub Jirutka | 2018-05-29 | 2 | -1/+89 | |
| | ||||||
* | main/libressl: add options -verify_{hostname,ip} to s_client | Jakub Jirutka | 2018-05-29 | 3 | -3/+111 | |
| |