Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | ==== release 3.7.1 ====v3.7.1 | Natanael Copa | 2018-09-11 | 1 | -1/+1 |
| | |||||
* | main/apk-tools: security upgrade to 2.10.1 | Timo Teräs | 2018-09-10 | 5 | -204/+3 |
| | |||||
* | main/bind: security upgrade to 9.11.4_p1 (CVE-2018-5740) | Natanael Copa | 2018-09-10 | 1 | -2/+4 |
| | | | | fixes #9359 | ||||
* | main/apk-tools: backport fix for --no-network | Natanael Copa | 2018-09-07 | 2 | -3/+35 |
| | | | | | | | | prevent update repository index when --no-network is specified. fixes #9126 Backported on request: https://github.com/docker-library/ruby/pull/229#issuecomment-419252524 | ||||
* | main/apk-tools: don't update index on delete | Natanael Copa | 2018-09-07 | 2 | -3/+77 |
| | | | | | | | | backport from upstream fixes #9063 (cherry picked from commit 09b110fc99a36f12c0b49e6029a231a231ce920d) | ||||
* | main/python3: security upgrade to 3.6.5 (CVE-2018-1060, CVE-2018-1061) | Leonardo Arena | 2018-08-22 | 1 | -5/+8 |
| | | | | Fixes #9269 | ||||
* | main/libmspack: security upgrade to 0.7.1alpha | Natanael Copa | 2018-08-22 | 3 | -113/+12 |
| | | | | fixes #9227 | ||||
* | main/python2: security upgrade to 2.7.15 (CVE-2018-1060, CVE-2018-1061) | Leonardo Arena | 2018-08-22 | 1 | -2/+7 |
| | | | | Fixes #9269 | ||||
* | main/samba: securiti fixes | Leonardo Arena | 2018-08-22 | 20 | -1/+3290 |
| | | | | | | CVE-2018-10858, CVE-2018-10918, CVE-2018-10919, CVE-2018-1139 Fixes #9251 | ||||
* | main/ldb: security fix (CVE-2018-1140) | Leonardo Arena | 2018-08-22 | 2 | -4/+40 |
| | | | | Fixes #9257 | ||||
* | main/myrepos: security upgrade to 1.20180726 (CVE-2018-7032) | Natanael Copa | 2018-08-22 | 1 | -3/+7 |
| | | | | fixes #9201 | ||||
* | main/unzip: fix various CVEs | Natanael Copa | 2018-08-22 | 8 | -2/+399 |
| | | | | | | | | | | | | - CVE-2014-8139 - CVE-2014-8140 - CVE-2014-8141 - CVE-2014-9636 - CVE-2014-9913 - CVE-2016-9844 - CVE-2018-1000035 fixes #9288 | ||||
* | main/ncurses: backport security fix (CVE-2018-10754) | Natanael Copa | 2018-08-21 | 2 | -4/+26 |
| | | | | fixes #9283 | ||||
* | main/krb5: security upgrade to 1.15.3 ↵ | Natanael Copa | 2018-08-21 | 1 | -3/+9 |
| | | | | | | (CVE-2017-15088,CVE-2018-5709,CVE-2018-5710) fixes #9302 | ||||
* | main/clamav: security upgrade to 0.100.1 ↵ | Natanael Copa | 2018-08-21 | 1 | -2/+6 |
| | | | | | | (CVE-2017-16932,CVE-2018-0360,CVE-2018-0361) fixes #9169 | ||||
* | main/wpa_supplicant: security fix (CVE-2018-14526) | Natanael Copa | 2018-08-21 | 2 | -1/+49 |
| | | | | fixes #9221 | ||||
* | main/apache2: security upgrade to 2.4.34 | Andy Postnikov | 2018-08-20 | 2 | -2/+82 |
| | | | | fixes #9265 | ||||
* | main/gnupg1: security upgrade to 1.4.23 (CVE-2017-7526) | tcely | 2018-08-16 | 2 | -47/+6 |
| | | | | (cherry picked from commit 6895452f9306041d563023e9fae6b77ac6c27dae) | ||||
* | main/gnupg1: fix CVE-2018-12020 | Sören Tempel | 2018-08-16 | 2 | -3/+51 |
| | |||||
* | main/redis: upgrade to 4.0.11 | Andy Postnikov | 2018-08-10 | 1 | -2/+2 |
| | |||||
* | main/postgresql: security upgrade to 10.5 | Andy Postnikov | 2018-08-10 | 1 | -2/+5 |
| | | | | CVE-2018-10915 CVE-2018-10925 | ||||
* | main/mupdf: upgrade to 1.13.0 | prspkt | 2018-08-08 | 2 | -22/+19 |
| | | | | | | | | add secfixes comments fixes #8581 (cherry picked from commit 831d2ee24986330048dfa488c8bb5017656e8efd) | ||||
* | main/mupdf: upgrade to 1.12.0 | Daniel Sabogal | 2018-08-08 | 4 | -75/+29 |
| | | | | (cherry picked from commit a05cd51302237e06412d14a512a51fd1092860bb) | ||||
* | main/libvncserver: fix CVE-2018-7225 | prspkt | 2018-08-08 | 2 | -6/+70 |
| | | | | fixes #8558 | ||||
* | main/p7zip: security fixes (CVE-2018-5996, CVE-2018-10115) | Natanael Copa | 2018-08-08 | 3 | -5/+545 |
| | | | | fixes #8533 | ||||
* | main/p7zip: security fix for CVE-2017-17969, modernize | Daniel Sabogal | 2018-08-08 | 2 | -13/+34 |
| | |||||
* | main/lxc: fix CVE-2018-6556 | Jakub Jirutka | 2018-08-06 | 2 | -2/+129 |
| | |||||
* | main/py-django: security upgrade to 1.11.15 (CVE-2018-14574) | Natanael Copa | 2018-08-06 | 1 | -2/+4 |
| | | | | fixes #9176 | ||||
* | main/cgit: fix secfixes comment | Natanael Copa | 2018-08-04 | 1 | -1/+1 |
| | |||||
* | main/cgit: fix CVE-2018-14912 | Natanael Copa | 2018-08-04 | 2 | -2/+70 |
| | |||||
* | main/kamailio: add secfixes comment | Natanael Copa | 2018-08-02 | 1 | -0/+4 |
| | |||||
* | main/tiff: various security fixes | Natanael Copa | 2018-08-02 | 5 | -2/+283 |
| | | | | | | | | | | - CVE-2017-9935 - CVE-2017-11613 - CVE-2017-17095 - CVE-2018-10963 fixes #8241 fixes #9164 | ||||
* | main/fuse: security upgrade to 2.9.8 (CVE-2018-10906) | Natanael Copa | 2018-07-30 | 1 | -9/+7 |
| | | | | fixes #9153 | ||||
* | main/fuse: Move /etc/udev/rules.d to /lib | Max Rees | 2018-07-30 | 1 | -2/+2 |
| | | | | See: https://github.com/alpinelinux/aports/pull/3759#issuecomment-376883202 | ||||
* | main/kamailio: upgrade to 5.0.7 | Leonardo Arena | 2018-07-30 | 1 | -2/+2 |
| | |||||
* | main/libvorbis: security fix for CVE-2018-10392 | Natanael Copa | 2018-07-30 | 2 | -3/+33 |
| | | | | fixes #9141 | ||||
* | main/libvorbis: upgrade to 1.3.6, enable tests | prspkt | 2018-07-30 | 3 | -35/+19 |
| | | | | fixes #8671 | ||||
* | main/mercurial: security upgrade to 4.5.2 (CVE-2018-1000132) | Natanael Copa | 2018-07-30 | 1 | -2/+6 |
| | | | | fixes #8826 | ||||
* | main/mutt: security upgrade to 1.10.1 | Natanael Copa | 2018-07-24 | 1 | -4/+19 |
| | | | | | | | | CVE-2018-14349, CVE-2018-14350, CVE-2018-14351, CVE-2018-14352, CVE-2018-14353, CVE-2018-14354, CVE-2018-14355, CVE-2018-14356, CVE-2018-14357, CVE-2018-14358, CVE-2018-14359, CVE-2018-14362 fixes #9130 | ||||
* | main/mqtt-exec: backport password auth support | Natanael Copa | 2018-07-18 | 3 | -78/+92 |
| | | | | and remove unused patch | ||||
* | main/znc: security upgrade to 1.7.1 (CVE-2018-14055,CVE-2018-14056) | Natanael Copa | 2018-07-18 | 1 | -5/+10 |
| | | | | fixes #9102 | ||||
* | main/openssl: fix CVE-2018-0732 and CVE-2018-0737 | Timo Teräs | 2018-07-18 | 3 | -2/+76 |
| | | | | | fixes #8814 fixes #9009 | ||||
* | main/asterisk: security upgrade to 15.5.0 | Timo Teräs | 2018-07-18 | 1 | -2/+2 |
| | | | | | | | AST-2018-007: Infinite loop when reading iostreams AST-2018-008: PJSIP endpoint presence disclosure when using ACL (cherry picked from commit 40fd8ce8d8419d7627964e69c29ea7c30b65a953) (cherry picked from commit 4c6b45d7a5f74edf465b9f41c36dbd96182c8592) | ||||
* | main/curl: upgrade to 7.61.0, add secfixes comment | prspkt | 2018-07-13 | 1 | -5/+7 |
| | |||||
* | main/acf-alpine-baselayout: upgrade to 0.13.2 | Ted Trask | 2018-06-26 | 1 | -5/+4 |
| | | | | (cherry picked from commit 26a78bb0bddafc8ca808b00f83f4d304f8c5c7bf) | ||||
* | main/xen: XSA-263 & 267 | Henrik Riomar | 2018-06-22 | 25 | -1/+4078 |
| | | | | | - CVE-2018-3639 XSA-263 (depends on 5 patches from stable-4.9) - CVE-2018-3665 XSA-267 (depends on 3 patches from stable-4.9) | ||||
* | main/one-context: upgrade to 0.5.4 | Jakub Jirutka | 2018-06-22 | 1 | -2/+2 |
| | |||||
* | main/vlan: fix support for both ipv4 and ipv6 address on vlans | Natanael Copa | 2018-06-21 | 2 | -12/+9 |
| | | | | fixes #9018 | ||||
* | Revert "main/vlan: check if subinterface already exists" | Kaarle Ritvanen | 2018-06-21 | 3 | -19/+15 |
| | | | | | | This reverts commit 6073409488faf0051dc1f188042f444bbd4c4743. Reason: bashism (trap ERR) | ||||
* | main/vlan: check if subinterface already exists | Anthony Ruhier | 2018-06-21 | 3 | -15/+19 |
| | | | | | | | | | The vlan preup script tried to create the subinterface even if it already exists. It does not work on dualstack (ipv4 + ipv6) configurations, and on subinterfaces with multiple addresses setup. Now the vlan and mvlan scripts check if the interface does not already exist, and only if it does not, try to create it. |