| Commit message (Expand) | Author | Age | Files | Lines |
* | Thu Oct 1 20:53:29 UTC 2020...a/kernel-generic-5.4.69-x86_64-1.txz: Upgraded.
a/kernel-huge-5.4.69-x86_64-1.txz: Upgraded.
a/kernel-modules-5.4.69-x86_64-1.txz: Upgraded.
ap/ghostscript-9.53.3-x86_64-1.txz: Upgraded.
d/kernel-headers-5.4.69-x86-1.txz: Upgraded.
k/kernel-source-5.4.69-noarch-1.txz: Upgraded.
l/glib2-2.66.1-x86_64-1.txz: Upgraded.
n/libmbim-1.24.4-x86_64-1.txz: Upgraded.
xap/mozilla-firefox-78.3.1esr-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/firefox/78.3.1/releasenotes/
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20201001205329 | Patrick J Volkerding | 2020-10-02 | 1 | -1/+1 |
* | Wed Sep 30 21:32:17 UTC 2020...ap/rpm-4.16.0-x86_64-1.txz: Upgraded.
l/imagemagick-7.0.10_31-x86_64-1.txz: Upgraded.
x/libva-utils-2.9.1-x86_64-1.txz: Upgraded.
20200930213217 | Patrick J Volkerding | 2020-10-01 | 1 | -0/+1 |
* | Thu Sep 24 19:39:47 UTC 2020...a/mcelog-173-x86_64-1.txz: Upgraded.
ap/cups-filters-1.28.3-x86_64-1.txz: Upgraded.
ap/sudo-1.9.3p1-x86_64-1.txz: Upgraded.
d/python3-3.8.6-x86_64-1.txz: Upgraded.
l/mozjs78-78.3.0esr-x86_64-1.txz: Upgraded.
xap/mozilla-thunderbird-78.3.0-x86_64-1.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/78.3.0/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2020-44/
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15677
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15676
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15678
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15673
(* Security fix *)
20200924193947 | Patrick J Volkerding | 2020-09-25 | 1 | -1/+1 |
* | Sun Sep 20 18:42:29 UTC 2020...a/mcelog-172-x86_64-1.txz: Upgraded.
l/imagemagick-7.0.10_30-x86_64-1.txz: Upgraded.
l/libsndfile-1.0.30-x86_64-1.txz: Upgraded.
l/mozilla-nss-3.57-x86_64-1.txz: Upgraded.
20200920184229 | Patrick J Volkerding | 2020-09-21 | 3 | -5/+6 |
* | Tue Sep 15 18:51:00 UTC 2020...a/libgudev-234-x86_64-1.txz: Upgraded.
ap/htop-3.0.2-x86_64-1.txz: Upgraded.
l/glib2-2.66.0-x86_64-2.txz: Rebuilt.
Build against system gtk-doc and don't bundle a newer version. You'll need
to reinstall the linuxdoc-tools package to restore the correct version of
gtk-doc. Thanks to chrisVV.
l/mozjs68-68.11.0esr-x86_64-2.txz: Removed.
l/mozjs78-78.2.0esr-x86_64-1.txz: Added.
This is needed by the new version of polkit.
l/polkit-0.118-x86_64-1.txz: Upgraded.
This requires the new mozjs78 package.
x/libva-2.9.0-x86_64-1.txz: Upgraded.
x/libva-utils-2.9.0-x86_64-1.txz: Upgraded.
20200915185100 | Patrick J Volkerding | 2020-09-16 | 25 | -303/+184 |
* | Tue Sep 8 20:31:53 UTC 2020...l/gst-plugins-base-1.18.0-x86_64-1.txz: Upgraded.
l/gst-plugins-good-1.18.0-x86_64-1.txz: Upgraded.
l/gst-plugins-libav-1.18.0-x86_64-1.txz: Upgraded.
l/gstreamer-1.18.0-x86_64-1.txz: Upgraded.
l/jasper-2.0.20-x86_64-1.txz: Upgraded.
This update fixes a new varient of CVE-2016-9398 (denial-of-service).
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9398
(* Security fix *)
extra/pure-alsa-system/gst-plugins-good-1.18.0-x86_64-1_alsa.txz: Upgraded.
20200908203153 | Patrick J Volkerding | 2020-09-09 | 4 | -57/+78 |
* | Tue Sep 8 05:51:39 UTC 2020...d/bison-3.7.2-x86_64-1.txz: Upgraded.
l/imagemagick-7.0.10_29-x86_64-1.txz: Upgraded.
l/libxkbcommon-1.0.0-x86_64-1.txz: Upgraded.
l/netpbm-10.91.03-x86_64-1.txz: Upgraded.
l/pycurl-7.43.0.6-x86_64-1.txz: Upgraded.
n/bluez-5.55-x86_64-1.txz: Upgraded.
n/mcabber-1.1.1-x86_64-1.txz: Upgraded.
n/openldap-2.4.53-x86_64-1.txz: Upgraded.
20200908055139 | Patrick J Volkerding | 2020-09-08 | 1 | -1/+1 |
* | Wed Sep 2 18:07:02 UTC 2020...a/kernel-firmware-20200901_d5f9eea-noarch-1.txz: Upgraded.
d/mercurial-5.5.1-x86_64-1.txz: Upgraded.
d/python-setuptools-50.0.3-x86_64-1.txz: Upgraded.
l/netpbm-10.91.02-x86_64-1.txz: Upgraded.
n/php-7.4.10-x86_64-1.txz: Upgraded.
xap/xaos-4.2-x86_64-1.txz: Upgraded.
20200902180702 | Patrick J Volkerding | 2020-09-03 | 4 | -1377/+9 |
* | Mon Aug 24 20:48:03 UTC 2020...ap/nano-5.2-x86_64-1.txz: Upgraded.
d/doxygen-1.8.20-x86_64-1.txz: Upgraded.
d/nasm-2.15.03-x86_64-1.txz: Upgraded.
Reverted to previous nasm since the new version has problems with some of
the assembly included in Firefox.
d/parallel-20200822-noarch-1.txz: Upgraded.
l/libcap-ng-0.7.11-x86_64-1.txz: Upgraded.
n/libgpg-error-1.39-x86_64-1.txz: Upgraded.
n/libqmi-1.26.4-x86_64-1.txz: Upgraded.
xap/mozilla-firefox-78.2.0esr-x86_64-1.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/firefox/78.2.0/releasenotes/
(* Security fix *)
xap/sane-1.0.31-x86_64-1.txz: Upgraded.
20200824204803 | Patrick J Volkerding | 2020-08-25 | 6 | -8/+9 |
* | Sat Aug 15 19:54:20 UTC 2020...ap/hplip-3.20.6-x86_64-2.txz: Rebuilt.
Recompiled against net-snmp-5.9.
ap/pamixer-1.4-x86_64-6.txz: Rebuilt.
Recompiled against boost-1.74.0.
ap/sqlite-3.33.0-x86_64-1.txz: Upgraded.
kde/calligra-2.9.11-x86_64-37.txz: Rebuilt.
Recompiled against boost-1.74.0.
l/akonadi-1.13.0-x86_64-16.txz: Rebuilt.
Recompiled against boost-1.74.0.
l/boost-1.74.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/libcroco-0.6.13-x86_64-1.txz: Removed.
n/getmail-6.02-x86_64-1.txz: Upgraded.
This is a new version that uses Python 3. The ChangeLog warns that it "loses
some backward compatibility"... please report any bugs.
n/net-snmp-5.9-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
n/ntp-4.2.8p15-x86_64-2.txz: Rebuilt.
Recompiled against net-snmp-5.9.
n/php-7.4.9-x86_64-2.txz: Rebuilt.
Recompiled against net-snmp-5.9.
xap/sane-1.0.30-x86_64-2.txz: Rebuilt.
Recompiled against net-snmp-5.9.
xap/ssr-0.4.2-x86_64-1.txz: Added.
20200815195420 | Patrick J Volkerding | 2020-08-16 | 6 | -166/+2 |
* | Fri Aug 14 18:56:08 UTC 2020...d/python-setuptools-49.6.0-x86_64-1.txz: Upgraded.
l/harfbuzz-2.7.1-x86_64-1.txz: Upgraded.
l/pango-1.46.0-x86_64-1.txz: Upgraded.
It would appear that there's no chance of upstream bringing back support for
bitmapped fonts, so it's time to stop dragging our feet and just accept this
upgrade. At least they've fixed it to provide readable (though badly spaced)
text for unsupported fonts. If you're using Terminus, I'd suggest switching
to the Hack font as a good replacement.
n/lftp-4.9.2-x86_64-1.txz: Upgraded.
xfce/garcon-0.6.4-x86_64-1.txz: Upgraded.
Switched back to 0.6.4 since that is actually the latest stable release.
xfce/tumbler-0.2.9-x86_64-1.txz: Upgraded.
Switched back to 0.2.9 since that is actually the latest stable release.
20200814185608 | Patrick J Volkerding | 2020-08-15 | 1 | -19/+27 |
* | Wed Aug 12 18:07:02 UTC 2020...ap/nano-5.1-x86_64-1.txz: Upgraded.
d/python-pip-20.2.2-x86_64-1.txz: Upgraded.
l/lmdb-0.9.26-x86_64-1.txz: Upgraded.
n/dovecot-2.3.11.3-x86_64-1.txz: Upgraded.
n/openldap-2.4.51-x86_64-1.txz: Upgraded.
xfce/garcon-0.7.0-x86_64-1.txz: Upgraded.
20200812180702 | Patrick J Volkerding | 2020-08-13 | 1 | -1/+1 |
* | Mon Aug 10 18:05:13 UTC 2020...a/lvm2-2.03.10-x86_64-1.txz: Upgraded.
d/python-setuptools-49.3.1-x86_64-1.txz: Upgraded.
d/vala-0.48.9-x86_64-1.txz: Upgraded.
l/gtk+3-3.24.22-x86_64-1.txz: Upgraded.
l/qca-qt5-2.3.1-x86_64-1.txz: Added.
xfce/tumbler-0.2.9-x86_64-1.txz: Upgraded.
20200810180513 | Patrick J Volkerding | 2020-08-11 | 3 | -0/+148 |
* | Mon Aug 3 20:03:30 UTC 2020...a/kernel-firmware-20200803_9bc3789-noarch-1.txz: Upgraded.
d/rust-1.45.2-x86_64-1.txz: Upgraded.
l/babl-0.1.80-x86_64-1.txz: Upgraded.
l/lmdb-0.9.25-x86_64-1.txz: Upgraded.
l/mozjs68-68.11.0esr-x86_64-2.txz: Rebuilt.
Fixed slack-desc. Thanks to USUARIONUEVO.
n/rsync-3.2.3pre1-x86_64-1.txz: Upgraded.
x/libinput-1.16.0-x86_64-1.txz: Upgraded.
20200803200330 | Patrick J Volkerding | 2020-08-04 | 4 | -18/+19 |
* | Sun Aug 2 18:20:30 UTC 2020...d/bison-3.7.1-x86_64-1.txz: Upgraded.
d/python-setuptools-49.2.1-x86_64-1.txz: Upgraded.
l/libcap-2.42-x86_64-1.txz: Upgraded.
x/libX11-1.6.10-x86_64-2.txz: Rebuilt.
Fix size calculation in _XimAttributeToValue.
Thanks to chrisVV and Yichao Yu.
extra/xfractint/xfractint-20.04p16-x86_64-1.txz: Upgraded.
20200802182030 | Patrick J Volkerding | 2020-08-03 | 1 | -1/+1 |
* | Sat Aug 1 19:08:49 UTC 2020...a/cryptsetup-2.3.3-x86_64-2.txz: Rebuilt.
Recompiled against json-c-0.15_20200726.
l/imagemagick-7.0.10_25-x86_64-1.txz: Upgraded.
l/json-c-0.15_20200726-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/urwid-1.0.3-x86_64-5.txz: Removed.
This is an ancient version that was only used by wicd.
n/bind-9.16.5-x86_64-2.txz: Rebuilt.
Recompiled against json-c-0.15_20200726.
x/libmypaint-1.6.1-x86_64-2.txz: Rebuilt.
Recompiled against json-c-0.15_20200726.
xap/gimp-2.10.20-x86_64-2.txz: Rebuilt.
Recompiled against json-c-0.15_20200726.
extra/wicd/wicd-1.7.4-x86_64-3.txz: Removed.
This is unmaintained, possibly insecure, and doesn't work with Python
versions newer than 2.7.18. NetworkManager is a better choice these days.
20200801190849 | Patrick J Volkerding | 2020-08-02 | 4 | -123/+18 |
* | Fri Jul 31 22:00:05 UTC 2020...a/kernel-generic-5.4.55-x86_64-1.txz: Upgraded.
a/kernel-huge-5.4.55-x86_64-1.txz: Upgraded.
a/kernel-modules-5.4.55-x86_64-1.txz: Upgraded.
ap/sysstat-12.4.0-x86_64-1.txz: Upgraded.
d/cmake-3.18.1-x86_64-1.txz: Upgraded.
d/kernel-headers-5.4.55-x86-1.txz: Upgraded.
d/python-pip-20.2-x86_64-1.txz: Upgraded.
d/re2c-2.0.1-x86_64-1.txz: Upgraded.
d/rust-1.45.1-x86_64-1.txz: Upgraded.
k/kernel-source-5.4.55-noarch-1.txz: Upgraded.
l/libvpx-1.9.0-x86_64-1.txz: Upgraded.
l/mozjs60-60.9.0esr-x86_64-1.txz: Removed.
l/mozjs68-68.11.0esr-x86_64-1.txz: Added.
IMPORTANT: This is needed for polkit-0.117.
l/polkit-0.117-x86_64-1.txz: Upgraded.
x/libX11-1.6.10-x86_64-1.txz: Upgraded.
xap/mozilla-thunderbird-68.11.0-x86_64-1.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/68.11.0/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2020-35/
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15652
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6514
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-6463
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15659
(* Security fix *)
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20200731220005 | Patrick J Volkerding | 2020-08-01 | 25 | -358/+234 |
* | Wed Jul 29 04:46:21 UTC 2020...d/git-2.28.0-x86_64-1.txz: Upgraded.
e/emacspeak-52.0-x86_64-1.txz: Added.
l/espeak-ng-1.50-x86_64-1.txz: Added.
l/pcaudiolib-1.1-x86_64-1.txz: Added.
l/xxHash-0.8.0-x86_64-1.txz: Upgraded.
xap/xaos-4.1-x86_64-1.txz: Upgraded.
20200729044621 | Patrick J Volkerding | 2020-07-29 | 6 | -0/+288 |
* | Sun Jul 26 18:59:24 UTC 2020...l/boost-1.73.0-x86_64-3.txz: Rebuilt.
Revert a change that broke building krita. Thanks to oneforall2.
l/libcap-2.41-x86_64-1.txz: Upgraded.
n/libqmi-1.26.2-x86_64-1.txz: Upgraded.
20200726185924 | Patrick J Volkerding | 2020-07-27 | 2 | -1/+27 |
* | Sat Jul 25 18:11:22 UTC 2020...a/minicom-2.7.2-x86_64-1.txz: Upgraded.
a/xfsprogs-5.7.0-x86_64-1.txz: Upgraded.
l/harfbuzz-2.7.0-x86_64-1.txz: Upgraded.
l/mozilla-nss-3.55-x86_64-1.txz: Upgraded.
Fixed empty nspr-config. Thanks to saxa.
n/postfix-3.5.5-x86_64-1.txz: Upgraded.
extra/bash-completion/bash-completion-2.11-noarch-1.txz: Upgraded.
20200725181122 | Patrick J Volkerding | 2020-07-26 | 2 | -6/+10 |
* | Wed Jul 22 20:27:42 UTC 2020...a/kernel-generic-5.4.53-x86_64-1.txz: Upgraded.
a/kernel-huge-5.4.53-x86_64-1.txz: Upgraded.
a/kernel-modules-5.4.53-x86_64-1.txz: Upgraded.
ap/sudo-1.9.2-x86_64-1.txz: Upgraded.
d/ccache-3.7.11-x86_64-1.txz: Upgraded.
d/kernel-headers-5.4.53-x86-1.txz: Upgraded.
d/llvm-10.0.1-x86_64-1.txz: Upgraded.
k/kernel-source-5.4.53-noarch-1.txz: Upgraded.
l/libidn-1.36-x86_64-1.txz: Upgraded.
l/netpbm-10.91.01-x86_64-1.txz: Upgraded.
l/python-urllib3-1.25.10-x86_64-1.txz: Upgraded.
xap/xlockmore-5.65-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20200722202742 | Patrick J Volkerding | 2020-07-23 | 4 | -162/+97 |
* | Tue Jul 21 19:59:48 UTC 2020...a/kernel-firmware-20200721_2b823fc-noarch-1.txz: Upgraded.
d/python3-3.8.5-x86_64-1.txz: Upgraded.
d/re2c-2.0-x86_64-1.txz: Upgraded.
l/farstream-0.2.9-x86_64-1.txz: Added.
Needed by pidgin-2.14.1.
l/libnice-0.1.17-x86_64-1.txz: Added.
Needed by farstream-0.2.9.
n/iptraf-ng-1.2.1-x86_64-1.txz: Upgraded.
n/proftpd-1.3.7a-x86_64-1.txz: Upgraded.
xap/pidgin-2.14.1-x86_64-1.txz: Upgraded.
This update adds support for voice and video via Farstream.
20200721195948 | Patrick J Volkerding | 2020-07-22 | 8 | -0/+389 |
* | Mon Jul 20 17:37:10 UTC 2020...a/kernel-firmware-20200716_1d1c80b-noarch-1.txz: Upgraded.
ap/mc-4.8.25-x86_64-1.txz: Upgraded.
d/nasm-2.15.03-x86_64-1.txz: Upgraded.
d/scons-4.0.1-x86_64-1.txz: Upgraded.
l/imagemagick-7.0.10_24-x86_64-1.txz: Upgraded.
l/jasper-2.0.18-x86_64-1.txz: Upgraded.
l/libcap-2.40-x86_64-1.txz: Upgraded.
l/libpsl-0.21.1-x86_64-2.txz: Rebuilt.
n/dnsmasq-2.82-x86_64-1.txz: Upgraded.
x/xev-1.2.4-x86_64-1.txz: Upgraded.
20200720173710 | Patrick J Volkerding | 2020-07-21 | 4 | -128/+324 |
* | Thu Jul 16 19:43:38 UTC 2020...a/kernel-generic-5.4.52-x86_64-1.txz: Upgraded.
a/kernel-huge-5.4.52-x86_64-1.txz: Upgraded.
a/kernel-modules-5.4.52-x86_64-1.txz: Upgraded.
d/kernel-headers-5.4.52-x86-1.txz: Upgraded.
d/rust-1.45.0-x86_64-1.txz: Upgraded.
k/kernel-source-5.4.52-noarch-1.txz: Upgraded.
l/M2Crypto-0.36.0-x86_64-1.txz: Upgraded.
x/libevdev-1.9.1-x86_64-1.txz: Upgraded.
xap/pan-0.146-x86_64-2.txz: Rebuilt.
Fix posting errors with GMime3. Thanks to Detlef Graef.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20200716194338 | Patrick J Volkerding | 2020-07-17 | 1 | -3/+3 |
* | Wed Jul 15 19:34:18 UTC 2020...a/kernel-firmware-20200715_69c7f0b-noarch-1.txz: Upgraded.
ap/soma-3.3.5-noarch-1.txz: Upgraded.
Thanks to David Woodfall.
d/cmake-3.18.0-x86_64-1.txz: Upgraded.
l/libzip-1.7.3-x86_64-1.txz: Upgraded.
20200715193418 | Patrick J Volkerding | 2020-07-16 | 1 | -1/+2 |
* | Fri Jul 10 00:40:43 UTC 2020...a/kernel-generic-5.4.51-x86_64-1.txz: Upgraded.
+EFI_CUSTOM_SSDT_OVERLAYS y
a/kernel-huge-5.4.51-x86_64-1.txz: Upgraded.
SPEAKUP y -> m
SPEAKUP_SYNTH_ACNTPC y -> m
SPEAKUP_SYNTH_ACNTSA y -> m
SPEAKUP_SYNTH_APOLLO y -> m
SPEAKUP_SYNTH_AUDPTR y -> m
SPEAKUP_SYNTH_BNS y -> m
SPEAKUP_SYNTH_DECEXT y -> m
SPEAKUP_SYNTH_DECTLK y -> m
SPEAKUP_SYNTH_DTLK y -> m
SPEAKUP_SYNTH_DUMMY y -> m
SPEAKUP_SYNTH_KEYPC y -> m
SPEAKUP_SYNTH_LTLK y -> m
SPEAKUP_SYNTH_SOFT y -> m
SPEAKUP_SYNTH_SPKOUT y -> m
SPEAKUP_SYNTH_TXPRT y -> m
+EFI_CUSTOM_SSDT_OVERLAYS y
a/kernel-modules-5.4.51-x86_64-1.txz: Upgraded.
ap/vim-8.2.1167-x86_64-1.txz: Upgraded.
d/Cython-0.29.21-x86_64-1.txz: Upgraded.
d/kernel-headers-5.4.51-x86-1.txz: Upgraded.
k/kernel-source-5.4.51-noarch-1.txz: Upgraded.
+EFI_CUSTOM_SSDT_OVERLAYS y
n/gnupg2-2.2.21-x86_64-1.txz: Upgraded.
x/mesa-20.1.3-x86_64-1.txz: Upgraded.
xap/mozilla-firefox-78.0.2esr-x86_64-1.txz: Upgraded.
This release contains a security fix and improvements.
For more information, see:
https://www.mozilla.org/en-US/firefox/78.0.2/releasenotes/
https://www.mozilla.org/security/advisories/mfsa2020-28/
(* Security fix *)
xap/vim-gvim-8.2.1167-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
Speakup is included as modules which will need to be loaded manually,
for now at least.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
Speakup is included as modules which will need to be loaded manually,
for now at least.
20200710004043 | Patrick J Volkerding | 2020-07-10 | 4 | -7/+7 |
* | Sat Jul 4 18:59:06 UTC 2020...a/hwdata-0.337-noarch-1.txz: Upgraded.
d/python-setuptools-49.1.0-x86_64-1.txz: Upgraded.
l/libcap-2.37-x86_64-1.txz: Upgraded.
l/librsvg-2.48.8-x86_64-1.txz: Upgraded.
l/libuv-1.38.1-x86_64-1.txz: Upgraded.
l/libvorbis-1.3.7-x86_64-1.txz: Upgraded.
Fix out-of-bounds read encoding very low sample rates.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10393
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-14160
(* Security fix *)
20200704185906 | Patrick J Volkerding | 2020-07-05 | 2 | -3/+4 |
* | Wed Jul 1 19:15:58 UTC 2020...a/kernel-generic-5.4.50-x86_64-1.txz: Upgraded.
a/kernel-huge-5.4.50-x86_64-1.txz: Upgraded.
a/kernel-modules-5.4.50-x86_64-1.txz: Upgraded.
d/kernel-headers-5.4.50-x86-1.txz: Upgraded.
k/kernel-source-5.4.50-noarch-1.txz: Upgraded.
l/netpbm-10.91.00-x86_64-1.txz: Upgraded.
l/python-pillow-7.2.0-x86_64-1.txz: Upgraded.
n/curl-7.71.1-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20200701191558 | Patrick J Volkerding | 2020-07-02 | 3 | -49/+0 |
* | Sun Jun 28 21:57:58 UTC 2020...x/libwacom-1.4-x86_64-2.txz: Rebuilt.
Fix joystick property matching in udev rule. Thanks to Pixxt.
20200628215758 | Patrick J Volkerding | 2020-06-29 | 3 | -4/+4 |
* | Fri Jun 26 19:18:25 UTC 2020...a/sysklogd-2.1.2-x86_64-1.txz: Upgraded.
Make sure to move the .new init script and config into place for this.
ap/undervolt-20200612_07d0c70-x86_64-1.txz: Added.
l/popt-1.18-x86_64-1.txz: Upgraded.
x/libglvnd-1.3.2-x86_64-1.txz: Upgraded.
x/libva-2.8.0-x86_64-1.txz: Upgraded.
x/libva-utils-2.8.0-x86_64-1.txz: Upgraded.
20200626191825 | Patrick J Volkerding | 2020-06-27 | 2 | -4/+4 |
* | Tue Jun 23 21:49:49 UTC 2020...ap/man-db-2.9.3-x86_64-1.txz: Upgraded.
ap/mariadb-10.4.13-x86_64-3.txz: Rebuilt.
Recompiled to pick up lz4 support. Thanks to Heinz Wiesinger.
ap/squashfs-tools-4.4-x86_64-2.txz: Rebuilt.
Added lz4 support. Thanks to Heinz Wiesinger.
d/ccache-3.7.10-x86_64-1.txz: Upgraded.
d/parallel-20200622-noarch-1.txz: Upgraded.
d/subversion-1.14.0-x86_64-2.txz: Rebuilt.
Use the system lz4 library. Thanks to Heinz Wiesinger.
l/imagemagick-7.0.10_21-x86_64-1.txz: Upgraded.
l/libarchive-3.4.3-x86_64-2.txz: Rebuilt.
Recompiled to pick up lz4 support. Thanks to Heinz Wiesinger.
l/lz4-1.9.2-x86_64-1.txz: Added.
This is a new dependency for dovecot, libarchive, mariadb, rsync,
squashfs-tools, subversion, and zstd. Thanks to Heinz Wiesinger.
l/xxHash-0.7.3-x86_64-1.txz: Added.
This is a new dependency for rsync.
l/zstd-1.4.5-x86_64-2.txz: Rebuilt.
Recompiled to pick up lz4 support. Thanks to Heinz Wiesinger.
n/dovecot-2.3.10.1-x86_64-2.txz: Rebuilt.
Recompiled to pick up lz4 support. Thanks to Heinz Wiesinger.
n/libmbim-1.24.0-x86_64-1.txz: Upgraded.
n/nfs-utils-2.5.1-x86_64-1.txz: Upgraded.
n/ntp-4.2.8p15-x86_64-1.txz: Upgraded.
This release fixes one vulnerability: Associations that use CMAC
authentication between ntpd from versions 4.2.8p11/4.3.97 and
4.2.8p14/4.3.100 will leak a small amount of memory for each packet.
Eventually, ntpd will run out of memory and abort.
(* Security fix *)
n/rsync-3.2.1-x86_64-1.txz: Upgraded.
Please note that this update requires the new packages xxHash and lz4.
t/texlive-2020.200608-x86_64-1.txz: Upgraded.
Thanks to Johannes Schoepfer.
xap/blueman-2.1.3-x86_64-2.txz: Rebuilt.
As a matter of policy and since the rule already exists in
/usr/share/polkit-1/rules.d/, we should not install a rules file in /etc.
Note that since the file was installed as a .new, upgrading the package
will not remove it and it will need to be removed manually. It's harmless
if it remains, though.
Thanks to Robby Workman.
xap/network-manager-applet-1.18.0-x86_64-1.txz: Upgraded.
20200623214949 | Patrick J Volkerding | 2020-06-24 | 11 | -5/+275 |
* | Mon Jun 22 20:20:12 UTC 2020...a/kernel-generic-5.4.48-x86_64-1.txz: Upgraded.
a/kernel-huge-5.4.48-x86_64-1.txz: Upgraded.
a/kernel-modules-5.4.48-x86_64-1.txz: Upgraded.
ap/neofetch-20200613_5b8eea9-x86_64-1.txz: Added.
All the cool kids are including this. ;-)
ap/texinfo-6.7-x86_64-2.txz: Rebuilt.
Recompiled against perl-5.32.0.
ap/vim-8.2.1039-x86_64-1.txz: Upgraded.
Compiled against perl-5.32.0.
d/check-0.15.0-x86_64-1.txz: Upgraded.
d/guile-3.0.3-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
d/kernel-headers-5.4.48-x86-1.txz: Upgraded.
d/make-4.2.1-x86_64-6.txz: Rebuilt.
Recompiled against guile-3.0.3.
d/perl-5.32.0-x86_64-1.txz: Upgraded.
k/kernel-source-5.4.48-noarch-1.txz: Upgraded.
kde/perlkde-4.14.3-x86_64-9.txz: Rebuilt.
Recompiled against perl-5.32.0.
kde/perlqt-4.14.3-x86_64-10.txz: Rebuilt.
Recompiled against perl-5.32.0.
l/harfbuzz-2.6.8-x86_64-1.txz: Upgraded.
l/imagemagick-7.0.10_20-x86_64-1.txz: Upgraded.
l/neon-0.31.2-x86_64-1.txz: Upgraded.
l/python-certifi-2020.6.20-x86_64-1.txz: Upgraded.
n/alpine-2.23-x86_64-1.txz: Upgraded.
n/epic5-2.1.2-x86_64-2.txz: Rebuilt.
Recompiled against perl-5.32.0.
n/gnutls-3.6.14-x86_64-2.txz: Rebuilt.
Recompiled against guile-3.0.3.
n/irssi-1.2.2-x86_64-3.txz: Rebuilt.
Recompiled against perl-5.32.0.
n/libqmi-1.26.0-x86_64-1.txz: Upgraded.
n/net-snmp-5.8-x86_64-6.txz: Rebuilt.
Recompiled against perl-5.32.0.
n/ntp-4.2.8p14-x86_64-2.txz: Rebuilt.
Recompiled against perl-5.32.0.
xap/hexchat-2.14.3-x86_64-3.txz: Rebuilt.
Recompiled against perl-5.32.0.
xap/rxvt-unicode-9.22-x86_64-8.txz: Rebuilt.
Recompiled against perl-5.32.0.
xap/vim-gvim-8.2.1039-x86_64-1.txz: Upgraded.
Compiled against perl-5.32.0.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20200622202012 | Patrick J Volkerding | 2020-06-23 | 4 | -1/+6 |
* | Fri Jun 19 19:59:04 UTC 2020...a/haveged-1.9.12-x86_64-1.txz: Upgraded.
a/kernel-firmware-20200619_3890db3-noarch-1.txz: Upgraded.
a/sysvinit-scripts-2.1-noarch-34.txz: Rebuilt.
rc.M: check for elogind first so that we can ignore a stale CK2 package.
ap/sudo-1.9.1-x86_64-1.txz: Upgraded.
l/alsa-lib-1.2.3.1-x86_64-1.txz: Upgraded.
l/desktop-file-utils-0.26-x86_64-1.txz: Upgraded.
n/mutt-1.14.4-x86_64-1.txz: Upgraded.
x/libinput-1.15.6-x86_64-1.txz: Upgraded.
x/xinit-1.4.1-x86_64-2.txz: Rebuilt.
When using elogind, start the session on the current console.
Thanks to alienBOB.
20200619195904 | Patrick J Volkerding | 2020-06-19 | 1 | -1/+5 |
* | Wed Jun 17 19:42:26 UTC 2020...ap/nvme-cli-1.12-x86_64-1.txz: Upgraded.
d/python-setuptools-47.3.1-x86_64-1.txz: Upgraded.
l/lcms2-2.11-x86_64-1.txz: Upgraded.
l/mozilla-nss-3.53.1-x86_64-1.txz: Upgraded.
l/python-requests-2.24.0-x86_64-1.txz: Upgraded.
20200617194226 | Patrick J Volkerding | 2020-06-18 | 3 | -6/+6 |
* | Tue Jun 16 20:50:41 UTC 2020...a/shadow-4.8.1-x86_64-10.txz: Rebuilt.
system-auth: auth required pam_unix.so [...], otherwise the stack exits
before pam_gnome_keyring.so executes. Thanks to pyllyukko.
Get rid of "auth required pam_deny.so" which seems like a mistake.
Still pending: consider GazL's comments on moving stuff out of system-auth.
a/upower-0.9.23-x86_64-5.txz: Rebuilt.
Recompiled against libimobiledevice-20200615_4791a82 and libplist-2.2.0.
The renaming mess initiated by libplist required a rebuild on this one to
keep things consistent for now, but don't worry - we aren't going to be
sticking to this version for long or anything.
ap/hplip-3.20.6-x86_64-1.txz: Upgraded.
ap/usbmuxd-20200615_3daa1e9-x86_64-1.txz: Upgraded.
Compiled against libimobiledevice-20200615_4791a82 and libplist-2.2.0.
d/bison-3.6.4-x86_64-1.txz: Upgraded.
d/meson-0.54.3-x86_64-1.txz: Upgraded.
d/python-setuptools-47.3.0-x86_64-1.txz: Upgraded.
l/ffmpeg-4.3-x86_64-1.txz: Upgraded.
l/gvfs-1.44.1-x86_64-2.txz: Rebuilt.
Recompiled against libimobiledevice-20200615_4791a82 and libplist-2.2.0.
l/libgpod-0.8.3-x86_64-7.txz: Rebuilt.
Recompiled against libimobiledevice-20200615_4791a82 and libplist-2.2.0.
l/libimobiledevice-20200615_4791a82-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/libplist-2.2.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/libusbmuxd-20200615_c7d7d1a-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
n/fetchmail-6.4.8-x86_64-1.txz: Upgraded.
n/nftables-0.9.6-x86_64-1.txz: Upgraded.
extra/pure-alsa-system/ffmpeg-4.3-x86_64-1_alsa.txz: Upgraded.
20200616205041 | Patrick J Volkerding | 2020-06-17 | 5 | -2/+22 |
* | Sun Jun 14 19:29:20 UTC 2020...a/haveged-1.9.11-x86_64-1.txz: Upgraded.
l/libvncserver-0.9.13-x86_64-1.txz: Upgraded.
n/libnetfilter_queue-1.0.5-x86_64-1.txz: Upgraded.
x/vulkan-sdk-1.2.141.0-x86_64-1.txz: Upgraded.
xap/xlockmore-5.64-x86_64-1.txz: Upgraded.
20200614192920 | Patrick J Volkerding | 2020-06-15 | 4 | -84/+2 |
* | Sat Jun 13 20:40:31 UTC 2020...a/pam-1.4.0-x86_64-1.txz: Upgraded.
IMPORTANT NOTE: This update removes the pam_cracklib and pam_tally2 modules.
None of our current configuration files in /etc/pam.d/ use either of those,
but if the configuration files on your machine do you'll need to comment out
or remove those lines, otherwise you may experience login failures.
a/shadow-4.8.1-x86_64-9.txz: Rebuilt.
/etc/pam.d/system-auth: prefix lines that call pam_gnome_keyring.so with '-'
to avoid spamming the logs about failures.
a/sysvinit-scripts-2.1-noarch-32.txz: Rebuilt.
rc.S: create /var/run/faillock directory for pam_faillock(8).
a/util-linux-2.35.2-x86_64-2.txz: Rebuilt.
/etc/pam.d/login: change the example for locking an account for too many
failed login attempts to use pam_faillock instead of pam_tally2.
l/imagemagick-7.0.10_19-x86_64-1.txz: Upgraded.
l/libzip-1.7.1-x86_64-1.txz: Upgraded.
n/openssh-8.3p1-x86_64-2.txz: Rebuilt.
/etc/pam.d/sshd: change the example for locking an account for too many
failed login attempts to use pam_faillock instead of pam_tally2.
20200613204031 | Patrick J Volkerding | 2020-06-14 | 1 | -1/+1 |
* | Wed Jun 10 23:15:33 UTC 2020...a/kernel-generic-5.4.46-x86_64-1.txz: Upgraded.
a/kernel-huge-5.4.46-x86_64-1.txz: Upgraded.
a/kernel-modules-5.4.46-x86_64-1.txz: Upgraded.
d/kernel-headers-5.4.46-x86-1.txz: Upgraded.
k/kernel-source-5.4.46-noarch-1.txz: Upgraded.
l/QScintilla-2.11.5-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20200610231533 | Patrick J Volkerding | 2020-06-11 | 1 | -1/+1 |
* | Tue Jun 9 22:11:00 UTC 2020...ap/alsa-utils-1.2.3-x86_64-1.txz: Upgraded.
l/PyQt5-5.15.0-x86_64-1.txz: Upgraded.
l/alsa-lib-1.2.3-x86_64-1.txz: Upgraded.
l/imagemagick-7.0.10_18-x86_64-1.txz: Upgraded.
l/sip-4.19.23-x86_64-1.txz: Upgraded.
l/xapian-core-1.4.16-x86_64-1.txz: Upgraded.
n/php-7.4.7-x86_64-1.txz: Upgraded.
extra/pure-alsa-system/alsa-lib-1.2.3-x86_64-1_alsa.txz: Upgraded.
20200609221100 | Patrick J Volkerding | 2020-06-10 | 2 | -1/+2 |
* | Mon Jun 8 19:35:33 UTC 2020...l/babl-0.1.78-x86_64-1.txz: Upgraded.
l/gegl-0.4.24-x86_64-1.txz: Upgraded.
l/qt5-webkit-5.212.0_alpha4-x86_64-3.txz: Rebuilt.
n/libnetfilter_queue-1.0.4-x86_64-1.txz: Upgraded.
x/liberation-fonts-ttf-2.1.1-noarch-1.txz: Upgraded.
xap/gimp-2.10.20-x86_64-1.txz: Upgraded.
20200608193533 | Patrick J Volkerding | 2020-06-08 | 1 | -1/+1 |
* | Sun Jun 7 01:56:26 UTC 2020...d/mercurial-5.4.1-x86_64-1.txz: Upgraded.
l/libzip-1.7.0-x86_64-1.txz: Upgraded.
n/libnftnl-1.1.7-x86_64-1.txz: Upgraded.
n/nftables-0.9.5-x86_64-1.txz: Upgraded.
20200607015626 | Patrick J Volkerding | 2020-06-07 | 1 | -1/+1 |
* | Wed Jun 3 20:21:52 UTC 2020...a/dbus-1.12.18-x86_64-1.txz: Upgraded.
a/kernel-generic-5.4.44-x86_64-1.txz: Upgraded.
a/kernel-huge-5.4.44-x86_64-1.txz: Upgraded.
a/kernel-modules-5.4.44-x86_64-1.txz: Upgraded.
d/bison-3.6.3-x86_64-1.txz: Upgraded.
d/kernel-headers-5.4.44-x86-1.txz: Upgraded.
d/subversion-1.14.0-x86_64-1.txz: Upgraded.
k/kernel-source-5.4.44-noarch-1.txz: Upgraded.
l/harfbuzz-2.6.7-x86_64-1.txz: Upgraded.
l/libcap-2.36-x86_64-1.txz: Upgraded.
l/librsvg-2.48.6-x86_64-1.txz: Upgraded.
n/gnutls-3.6.14-x86_64-1.txz: Upgraded.
Fixed insecure session ticket key construction, since 3.6.4. The TLS server
would not bind the session ticket encryption key with a value supplied by
the application until the initial key rotation, allowing attacker to bypass
authentication in TLS 1.3 and recover previous conversations in TLS 1.2.
[GNUTLS-SA-2020-06-03, CVSS: high]
(* Security fix *)
n/iproute2-5.7.0-x86_64-1.txz: Upgraded.
n/iptables-1.8.5-x86_64-1.txz: Upgraded.
xap/audacious-4.0.4-x86_64-1.txz: Upgraded.
xap/audacious-plugins-4.0.4-x86_64-1.txz: Upgraded.
extra/pure-alsa-system/audacious-plugins-4.0.4-x86_64-1_alsa.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20200603202152 | Patrick J Volkerding | 2020-06-04 | 3 | -2/+3 |
* | Mon Jun 1 18:27:22 UTC 2020...a/pciutils-3.7.0-x86_64-1.txz: Upgraded.
l/imagemagick-7.0.10_16-x86_64-1.txz: Upgraded.
l/lcms2-2.10-x86_64-1.txz: Upgraded.
l/netpbm-10.90.03-x86_64-1.txz: Upgraded.
l/qt5-5.15.0-x86_64-1.txz: Upgraded.
n/iptraf-ng-1.2.0-x86_64-1.txz: Upgraded.
xap/gnuchess-6.2.7-x86_64-1.txz: Upgraded.
xap/mozilla-firefox-68.9.0esr-x86_64-1.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/firefox/68.9.0/releasenotes/
(* Security fix *)
extra/pure-alsa-system/qt5-5.15.0-x86_64-1_alsa.txz: Upgraded.
20200601182722 | Patrick J Volkerding | 2020-06-02 | 7 | -99/+13 |
* | Sat May 30 21:31:07 UTC 2020...ap/mpg123-1.26.1-x86_64-1.txz: Upgraded.
d/gyp-20200512_caa60026-x86_64-1.txz: Added.
l/Mako-1.1.3-x86_64-1.txz: Upgraded.
l/imagemagick-7.0.10_15-x86_64-1.txz: Upgraded.
l/librsvg-2.48.5-x86_64-1.txz: Upgraded.
l/mozilla-nss-3.53-x86_64-1.txz: Upgraded.
l/vte-0.60.3-x86_64-1.txz: Upgraded.
n/libgpg-error-1.38-x86_64-1.txz: Upgraded.
n/libqmi-1.24.14-x86_64-1.txz: Upgraded.
extra/pure-alsa-system/mpg123-1.26.1-x86_64-1_alsa.txz: Upgraded.
20200530213107 | Patrick J Volkerding | 2020-05-31 | 3 | -20/+11 |
* | Tue May 26 20:35:03 UTC 2020...ap/mpg123-1.26.0-x86_64-1.txz: Upgraded.
ap/sqlite-3.32.1-x86_64-1.txz: Upgraded.
l/keybinder-0.3.1-x86_64-2.txz: Removed.
l/keybinder3-3.0_0.3.2-x86_64-1.txz: Added.
n/krb5-1.18.2-x86_64-1.txz: Upgraded.
n/mutt-1.14.2-x86_64-1.txz: Upgraded.
xap/gnuplot-5.2.8-x86_64-2.txz: Rebuilt.
Rebuilt with Qt5 (uses anti-aliasing to improve the plot output).
extra/aspell-word-lists/aspell-pt-0.50_2-x86_64-5.txz: Removed.
extra/aspell-word-lists/aspell-pt_PT-20190329_0-x86_64-1.txz: Upgraded.
Thanks to sairum for the link to a better word list.
extra/aspell-word-lists/aspell-pt_PT-preao-20190329_0-x86_64-1.txz: Added.
Thanks to sairum for the link to a better word list.
extra/pure-alsa-system/mpg123-1.26.0-x86_64-1_alsa.txz: Upgraded.
20200526203503 | Patrick J Volkerding | 2020-05-26 | 4 | -73/+34 |
* | Sat May 23 00:13:54 UTC 2020...l/libarchive-3.4.3-x86_64-1.txz: Upgraded.
l/python-six-1.15.0-x86_64-1.txz: Upgraded.
l/zstd-1.4.5-x86_64-1.txz: Upgraded.
xap/mozilla-thunderbird-68.8.1-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/68.8.1/releasenotes/
20200523001354 | Patrick J Volkerding | 2020-05-23 | 4 | -38/+4 |
* | Wed May 20 23:53:44 UTC 2020...a/kernel-firmware-20200519_8ba6fa6-noarch-1.txz: Upgraded.
a/kernel-generic-5.4.42-x86_64-1.txz: Upgraded.
a/kernel-huge-5.4.42-x86_64-1.txz: Upgraded.
a/kernel-modules-5.4.42-x86_64-1.txz: Upgraded.
a/util-linux-2.35.2-x86_64-1.txz: Upgraded.
d/kernel-headers-5.4.42-x86-1.txz: Upgraded.
d/python-pip-20.1.1-x86_64-1.txz: Upgraded.
k/kernel-source-5.4.42-noarch-1.txz: Upgraded.
l/glib2-2.64.3-x86_64-1.txz: Upgraded.
l/mozilla-nss-3.52.1-x86_64-1.txz: Upgraded.
n/samba-4.12.3-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20200520235344 | Patrick J Volkerding | 2020-05-21 | 1 | -1/+1 |
* | Tue May 19 19:47:49 UTC 2020...a/shadow-4.8.1-x86_64-8.txz: Rebuilt.
It seems that /etc/suauth is not supported when PAM is in use, even if
configure.ac is hacked to enable it. I've removed the man pages for it,
and would suggest using sudo as a replacement.
l/libexif-0.6.22-x86_64-1.txz: Upgraded.
This update fixes bugs and security issues:
CVE-2018-20030: Fix for recursion DoS
CVE-2020-13114: Time consumption DoS when parsing canon array markers
CVE-2020-13113: Potential use of uninitialized memory
CVE-2020-13112: Various buffer overread fixes due to integer overflows
in maker notes
CVE-2020-0093: read overflow
CVE-2019-9278: replaced integer overflow checks the compiler could
optimize away by safer constructs
CVE-2020-12767: fixed division by zero
CVE-2016-6328: fixed integer overflow when parsing maker notes
CVE-2017-7544: fixed buffer overread
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20030
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-13114
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-13113
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-13112
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-0093
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-9278
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12767
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6328
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-7544
(* Security fix *)
l/oniguruma-6.9.5_rev1-x86_64-2.txz: Rebuilt.
Rebuilt with --enable-posix-api. Thanks to MisterL.
l/python-packaging-20.4-x86_64-1.txz: Upgraded.
n/bind-9.16.3-x86_64-1.txz: Upgraded.
This update fixes a security issue:
A malicious actor who intentionally exploits the lack of effective
limitation on the number of fetches performed when processing referrals
can, through the use of specially crafted referrals, cause a recursing
server to issue a very large number of fetches in an attempt to process
the referral. This has at least two potential effects: The performance of
the recursing server can potentially be degraded by the additional work
required to perform these fetches, and the attacker can exploit this
behavior to use the recursing server as a reflector in a reflection attack
with a high amplification factor.
For more information, see:
https://kb.isc.org/docs/cve-2020-8616
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8616
(* Security fix *)
x/fontconfig-2.13.92-x86_64-1.txz: Upgraded.
x/xf86-input-libinput-0.30.0-x86_64-1.txz: Upgraded.
20200519194749 | Patrick J Volkerding | 2020-05-20 | 5 | -4/+6 |
* | Mon May 18 23:30:26 UTC 2020...d/Cython-0.29.18-x86_64-1.txz: Upgraded.
kde/kde-workspace-4.11.22-x86_64-8.txz: Rebuilt.
Added /etc/pam.d/kde-np to fix KDM autologin.
Thanks to USUARIONUEVO for the bug report.
l/gnu-efi-3.0.12-x86_64-1.txz: Upgraded.
20200518233026 | Patrick J Volkerding | 2020-05-19 | 1 | -1/+1 |
* | Mon May 18 19:17:21 UTC 2020...Greetings! After three months in /testing, the PAM merge into the main tree
is now complete. When updating, be sure to install the new pam, cracklib, and
libpwquality packages or you may find yourself locked out of your machine.
Otherwise, these changes should be completely transparent and you shouldn't
notice any obvious operational differences. Be careful if you make any changes
in /etc/pam.d/ - leaving an extra console logged in while testing PAM config
changes is a recommended standard procedure. Thanks again to Robby Workman,
Vincent Batts, Phantom X, and ivandi for help implementing this. It's not
done yet and there will be more fine-tuning of the config files, but now we
can move on to build some other updates. Enjoy!
a/cracklib-2.9.7-x86_64-1.txz: Added.
a/kernel-firmware-20200517_f8d32e4-noarch-1.txz: Upgraded.
a/libcgroup-0.41-x86_64-7.txz: Rebuilt.
Rebuilt to add PAM support.
a/libpwquality-1.4.2-x86_64-1.txz: Added.
a/lilo-24.2-x86_64-9.txz: Rebuilt.
Enable the "compact" option by default.
liloconfig: correctly set the root partition.
a/pam-1.3.1-x86_64-1.txz: Added.
a/shadow-4.8.1-x86_64-7.txz: Rebuilt.
Rebuilt to add PAM support.
a/utempter-1.2.0-x86_64-1.txz: Upgraded.
a/util-linux-2.35.1-x86_64-6.txz: Rebuilt.
Rebuilt to add PAM support.
a/xfsprogs-5.6.0-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-67.1.
ap/at-3.2.1-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
ap/cups-2.3.3-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
ap/hplip-3.20.5-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
ap/mariadb-10.4.13-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
ap/screen-4.8.0-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
ap/soma-3.3.0-noarch-1.txz: Upgraded.
Thanks to David Woodfall.
ap/sqlite-3.31.1-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-67.1.
ap/sudo-1.9.0-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
ap/vim-8.2.0788-x86_64-1.txz: Upgraded.
d/bison-3.6.2-x86_64-1.txz: Upgraded.
d/meson-0.54.2-x86_64-1.txz: Upgraded.
d/python-setuptools-46.4.0-x86_64-1.txz: Upgraded.
d/vala-0.48.6-x86_64-1.txz: Upgraded.
kde/calligra-2.9.11-x86_64-36.txz: Rebuilt.
Recompiled against icu4c-67.1.
kde/kde-workspace-4.11.22-x86_64-7.txz: Rebuilt.
Rebuilt to add PAM support.
l/ConsoleKit2-1.2.1-x86_64-4.txz: Rebuilt.
Rebuilt to add PAM support.
l/boost-1.73.0-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-67.1.
l/gnome-keyring-3.36.0-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
l/harfbuzz-2.6.6-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-67.1.
l/icu4c-67.1-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/imagemagick-7.0.10_13-x86_64-1.txz: Upgraded.
l/libcap-2.34-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
l/libical-3.0.8-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-67.1.
l/libuv-1.38.0-x86_64-1.txz: Upgraded.
l/libvisio-0.1.7-x86_64-3.txz: Rebuilt.
Recompiled against icu4c-67.1.
l/polkit-0.116-x86_64-3.txz: Rebuilt.
Rebuilt to add PAM support.
l/qt-4.8.7-x86_64-16.txz: Rebuilt.
Recompiled against icu4c-67.1.
l/qt5-5.13.2-x86_64-4.txz: Rebuilt.
Recompiled against icu4c-67.1.
l/qt5-webkit-5.212.0_alpha4-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-67.1.
l/raptor2-2.0.15-x86_64-9.txz: Rebuilt.
Recompiled against icu4c-67.1.
l/system-config-printer-1.5.12-x86_64-4.txz: Rebuilt.
Rebuilt to add PAM support.
l/vte-0.60.2-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-67.1.
n/cifs-utils-6.10-x86_64-4.txz: Rebuilt.
Rebuilt to add PAM support.
n/cyrus-sasl-2.1.27-x86_64-4.txz: Rebuilt.
Rebuilt to add PAM support.
n/dovecot-2.3.10.1-x86_64-1.txz: Upgraded.
Rebuilt to add PAM support.
Compiled against icu4c-67.1.
This update fixes several denial-of-service vulnerabilities.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10957
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10958
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10967
(* Security fix *)
n/mutt-1.14.1-x86_64-1.txz: Upgraded.
n/netatalk-3.1.12-x86_64-3.txz: Rebuilt.
Rebuilt to add PAM support.
n/netkit-rsh-0.17-x86_64-3.txz: Rebuilt.
Rebuilt to add PAM support.
n/nss-pam-ldapd-0.9.11-x86_64-1.txz: Added.
n/openssh-8.2p1-x86_64-3.txz: Rebuilt.
Rebuilt to add PAM support.
n/openvpn-2.4.9-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
n/pam-krb5-4.9-x86_64-1.txz: Added.
n/php-7.4.6-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-67.1.
n/popa3d-1.0.3-x86_64-4.txz: Rebuilt.
Rebuilt to add PAM support.
n/postfix-3.5.2-x86_64-1.txz: Upgraded.
Compiled against icu4c-67.1.
n/ppp-2.4.8-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
n/proftpd-1.3.6c-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
n/samba-4.12.2-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
Recompiled against icu4c-67.1.
n/tin-2.4.4-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-67.1.
n/vsftpd-3.0.3-x86_64-6.txz: Rebuilt.
Rebuilt to add PAM support.
t/texlive-2019.190626-x86_64-4.txz: Rebuilt.
Recompiled against icu4c-67.1.
x/vulkan-sdk-1.2.135.0-x86_64-1.txz: Upgraded.
x/xdm-1.1.11-x86_64-10.txz: Rebuilt.
Rebuilt to add PAM support.
x/xisxwayland-1-x86_64-1.txz: Added.
xap/sane-1.0.30-x86_64-1.txz: Upgraded.
This update fixes several security issues.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12867
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12862
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12863
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12865
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12866
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12861
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12864
(* Security fix *)
xap/vim-gvim-8.2.0788-x86_64-1.txz: Upgraded.
xap/xlockmore-5.63-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
xap/xscreensaver-5.44-x86_64-2.txz: Rebuilt.
Rebuilt to add PAM support.
extra/brltty/brltty-6.1-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-67.1.
extra/pure-alsa-system/qt5-5.13.2-x86_64-4_alsa.txz: Rebuilt.
Recompiled against icu4c-67.1.
isolinux/initrd.img: Rebuilt.
Added PAM libraries, security modules, and config files.
usb-and-pxe-installers/usbboot.img: Rebuilt.
Added PAM libraries, security modules, and config files.
20200518191721 | Patrick J Volkerding | 2020-05-18 | 15 | -15/+15 |