| Commit message (Expand) | Author | Age | Files | Lines |
* | Fri Feb 16 20:18:59 UTC 2024...a/kernel-generic-6.6.17-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.17-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.17-x86_64-1.txz: Upgraded.
ap/soma-3.3.7-noarch-3.txz: Rebuilt.
Strip trailing whitespace from soma.desktop. Thanks to DryFalls.
d/kernel-headers-6.6.17-x86-1.txz: Upgraded.
k/kernel-source-6.6.17-noarch-1.txz: Upgraded.
l/mozilla-nss-3.98-x86_64-1.txz: Upgraded.
n/ca-certificates-20240216-noarch-1.txz: Upgraded.
This update provides the latest CA certificates to check for the
authenticity of SSL connections.
x/ibus-m17n-1.4.28-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240216201859 | Patrick J Volkerding | 2024-02-16 | 1 | -7/+7 |
* | Thu Feb 8 22:17:18 UTC 2024...a/kernel-firmware-20240208_fbef4d3-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.16-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.16-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.16-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.16-x86-1.txz: Upgraded.
k/kernel-source-6.6.16-noarch-1.txz: Upgraded.
-VIDEO_ATOMISP m
-VIDEO_ATOMISP_GC0310 n
-VIDEO_ATOMISP_GC2235 n
-VIDEO_ATOMISP_ISP2401 n
-VIDEO_ATOMISP_LM3554 n
-VIDEO_ATOMISP_MSRLIST_HELPER n
-VIDEO_ATOMISP_MT9M114 n
-VIDEO_ATOMISP_OV2722 n
-VIDEO_ATOMISP_OV5693 n
INTEL_ATOMISP y -> n
+INTEL_ATOMISP2_PM m
l/enchant-2.6.7-x86_64-1.txz: Upgraded.
l/libsecret-0.21.3-x86_64-1.txz: Upgraded.
l/libuv-1.48.0-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
testing/packages/rust-1.76.0-x86_64-1.txz: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240208221718 | Patrick J Volkerding | 2024-02-09 | 1 | -7/+7 |
* | Thu Feb 1 19:51:54 UTC 2024...a/kernel-firmware-20240201_09f0fb8-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.15-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.15-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.15-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.15-x86-1.txz: Upgraded.
k/kernel-source-6.6.15-noarch-1.txz: Upgraded.
kde/libindi-2.0.6-x86_64-1.txz: Upgraded.
l/libusb-1.0.27-x86_64-1.txz: Upgraded.
n/fetchmail-6.4.38-x86_64-1.txz: Upgraded.
x/mesa-24.0.0-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240201195154 | Patrick J Volkerding | 2024-02-01 | 1 | -7/+7 |
* | Fri Jan 26 01:49:20 UTC 2024...a/acl-2.3.2-x86_64-1.txz: Upgraded.
a/btrfs-progs-6.7-x86_64-1.txz: Upgraded.
a/cryptsetup-2.7.0-x86_64-1.txz: Upgraded.
a/inih-58-x86_64-1.txz: Upgraded.
a/kernel-firmware-20240124_0c40df8-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.14-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.14-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.14-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.14-x86-1.txz: Upgraded.
d/parallel-20240122-noarch-1.txz: Upgraded.
k/kernel-source-6.6.14-noarch-1.txz: Upgraded.
l/gst-plugins-bad-free-1.22.9-x86_64-1.txz: Upgraded.
l/gst-plugins-base-1.22.9-x86_64-1.txz: Upgraded.
l/gst-plugins-good-1.22.9-x86_64-1.txz: Upgraded.
l/gst-plugins-libav-1.22.9-x86_64-1.txz: Upgraded.
l/gstreamer-1.22.9-x86_64-1.txz: Upgraded.
l/libjpeg-turbo-3.0.2-x86_64-1.txz: Upgraded.
l/libpng-1.6.41-x86_64-1.txz: Upgraded.
l/python-docutils-0.20.1-x86_64-1.txz: Upgraded.
l/python-editables-0.5-x86_64-1.txz: Added.
Thanks to Heinz Wiesinger.
l/python-hatchling-1.21.0-x86_64-1.txz: Added.
Thanks to Heinz Wiesinger.
l/python-pathspec-0.12.1-x86_64-1.txz: Added.
Thanks to Heinz Wiesinger.
l/python-pluggy-1.4.0-x86_64-1.txz: Added.
Thanks to Heinz Wiesinger.
l/python-pygments-2.17.2-x86_64-1.txz: Upgraded.
l/python-sphinx-7.2.6-x86_64-1.txz: Upgraded.
l/python-sphinx_rtd_theme-2.0.0-x86_64-1.txz: Added.
l/python-trove-classifiers-2024.1.8-x86_64-1.txz: Added.
Thanks to Heinz Wiesinger.
n/gnupg2-2.4.4-x86_64-1.txz: Upgraded.
x/mesa-23.3.4-x86_64-1.txz: Upgraded.
xap/geeqie-2.2-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240126014920 | Patrick J Volkerding | 2024-01-26 | 1 | -7/+7 |
* | Sat Jan 20 21:04:49 UTC 2024...a/kernel-firmware-20240117_bf0987d-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.13-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.13-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.13-x86_64-1.txz: Upgraded.
ap/vim-9.1.0041-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.13-x86-1.txz: Upgraded.
k/kernel-source-6.6.13-noarch-1.txz: Upgraded.
l/ffmpeg-5.1.4-x86_64-3.txz: Rebuilt.
Recompiled against libvpx-1.14.0.
l/gst-plugins-good-1.22.8-x86_64-2.txz: Rebuilt.
Recompiled against libvpx-1.14.0.
l/libvpx-1.14.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/qt5-5.15.12_20240103_b8fd1448-x86_64-2.txz: Rebuilt.
Recompiled against libvpx-1.14.0.
xap/vim-gvim-9.1.0041-x86_64-1.txz: Upgraded.
xap/xine-lib-1.2.13-x86_64-5.txz: Rebuilt.
Recompiled against libvpx-1.14.0.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240120210449 | Patrick J Volkerding | 2024-01-20 | 1 | -7/+7 |
* | Mon Jan 15 21:08:12 UTC 2024...a/kernel-firmware-20240115_9b6d0b0-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.12-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.12-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.12-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.12-x86-1.txz: Upgraded.
k/kernel-source-6.6.12-noarch-1.txz: Upgraded.
l/libxml2-2.12.4-x86_64-1.txz: Upgraded.
l/pulseaudio-17.0-x86_64-2.txz: Rebuilt.
Patch regressions:
[PATCH] alsa-ucm: Check UCM verb before working with device status.
[PATCH] alsa-ucm: Replace port device UCM context assertion with an error.
l/readline-8.2.010-x86_64-1.txz: Upgraded.
x/libinput-1.25.0-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240115210812 | Patrick J Volkerding | 2024-01-15 | 1 | -7/+7 |
* | Wed Jan 10 19:50:25 UTC 2024...a/kernel-firmware-20240110_323d51e-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.11-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.11-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.11-x86_64-1.txz: Upgraded.
ap/htop-3.3.0-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.11-x86-1.txz: Upgraded.
k/kernel-source-6.6.11-noarch-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240110195025 | Patrick J Volkerding | 2024-01-10 | 1 | -7/+7 |
* | Fri Jan 5 19:33:15 UTC 2024...a/hwdata-0.378-noarch-1.txz: Upgraded.
a/kernel-firmware-20240105_c82c948-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.10-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.10-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.10-x86_64-1.txz: Upgraded.
ap/vim-9.1.0015-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.10-x86-1.txz: Upgraded.
k/kernel-source-6.6.10-noarch-1.txz: Upgraded.
SERIAL_8250_NR_UARTS 4 -> 32
SERIAL_8250_RUNTIME_UARTS 4 -> 32
Thanks to Andypoo.
l/fmt-10.2.1-x86_64-1.txz: Upgraded.
l/gvfs-1.52.2-x86_64-1.txz: Upgraded.
xap/vim-gvim-9.1.0015-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240105193315 | Patrick J Volkerding | 2024-01-05 | 1 | -7/+7 |
* | Mon Jan 1 19:45:16 UTC 2024...a/kernel-firmware-20231226_abfcad8-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.9-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.9-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.9-x86_64-1.txz: Upgraded.
ap/ksh93-1.0.8-x86_64-1.txz: Upgraded.
d/ccache-4.9-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.9-x86-1.txz: Upgraded.
k/kernel-source-6.6.9-noarch-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240101194516 | Patrick J Volkerding | 2024-01-01 | 1 | -7/+7 |
* | Wed Dec 20 21:10:47 UTC 2023...a/kernel-firmware-20231215_c156e6b-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.8-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.8-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.8-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.8-x86-1.txz: Upgraded.
k/kernel-source-6.6.8-noarch-1.txz: Upgraded.
l/aspell-0.60.8.1-x86_64-1.txz: Upgraded.
l/libcap-ng-0.8.4-x86_64-1.txz: Upgraded.
Drop python2 support.
l/sof-firmware-2023.12-noarch-1.txz: Upgraded.
n/bind-9.18.21-x86_64-1.txz: Upgraded.
n/proftpd-1.3.8b-x86_64-1.txz: Upgraded.
This update fixes a security issue:
mod_sftp: implemented mitigations for "Terrapin" SSH attack.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2023-48795
(* Security fix *)
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231220211047 | Patrick J Volkerding | 2023-12-20 | 1 | -7/+7 |
* | Wed Dec 13 22:01:34 UTC 2023...a/kernel-firmware-20231212_c52dc25-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.7-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.7-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.7-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.7-x86-1.txz: Upgraded.
k/kernel-source-6.6.7-noarch-1.txz: Upgraded.
kde/okteta-0.26.14-x86_64-1.txz: Upgraded.
l/enchant-2.6.4-x86_64-1.txz: Upgraded.
l/libxml2-2.12.3-x86_64-1.txz: Upgraded.
l/v4l-utils-1.26.1-x86_64-1.txz: Upgraded.
x/xorg-server-21.1.10-x86_64-1.txz: Upgraded.
This update fixes two security issues:
Out-of-bounds memory write in XKB button actions.
Out-of-bounds memory read in RRChangeOutputProperty and
RRChangeProviderProperty.
For more information, see:
https://lists.x.org/archives/xorg/2023-December/061517.html
https://www.cve.org/CVERecord?id=CVE-2023-6377
https://www.cve.org/CVERecord?id=CVE-2023-6478
(* Security fix *)
x/xorg-server-xephyr-21.1.10-x86_64-1.txz: Upgraded.
x/xorg-server-xnest-21.1.10-x86_64-1.txz: Upgraded.
x/xorg-server-xvfb-21.1.10-x86_64-1.txz: Upgraded.
x/xorg-server-xwayland-23.2.3-x86_64-1.txz: Upgraded.
This update fixes two security issues:
Out-of-bounds memory write in XKB button actions.
Out-of-bounds memory read in RRChangeOutputProperty and
RRChangeProviderProperty.
For more information, see:
https://lists.x.org/archives/xorg/2023-December/061517.html
https://www.cve.org/CVERecord?id=CVE-2023-6377
https://www.cve.org/CVERecord?id=CVE-2023-6478
(* Security fix *)
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231213220134 | Patrick J Volkerding | 2023-12-13 | 1 | -7/+7 |
* | Mon Dec 11 22:18:13 UTC 2023...We've gone ahead and moved the 6.6 kernel into the main tree. As previously
mentioned when this branch first appeared in /testing, on the 32-bit side
there are no longer any -smp labeled kernel packages, so if you were using
those previously, you'll need to switch to using to kernel-generic or
kernel-huge kernel, including the changes needed to your bootloader setup to
load this instead of the -smp labeled kernel. Also, if you happen to be using
a first generation Pentium M chip, you will need to append forcepae to your
kernel command-line options. Enjoy! :-)
a/kernel-firmware-20231211_f2e52a1-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.6-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.6-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.6-x86_64-1.txz: Upgraded.
ap/qpdf-11.6.4-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.6-x86-1.txz: Upgraded.
k/kernel-source-6.6.6-noarch-1.txz: Upgraded.
l/imagemagick-7.1.1_23-x86_64-1.txz: Upgraded.
l/libsecret-0.21.2-x86_64-1.txz: Upgraded.
Thanks to reddog83 and saxa.
l/zxing-cpp-2.2.1-x86_64-1.txz: Upgraded.
n/postfix-3.8.3-x86_64-2.txz: Rebuilt.
OpenSSL upstream says that major versions are ABI/API compatible, so stop
warning in the logs that they might not be.
Thanks to gildbg and Markus Wiesner.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231211221813 | Patrick J Volkerding | 2023-12-12 | 1 | -7/+7 |
* | Fri Dec 8 22:00:32 UTC 2023...a/kernel-firmware-20231205_c004dbe-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.66-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.66-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.66-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.66-x86-1.txz: Upgraded.
d/mercurial-6.6.1-x86_64-1.txz: Upgraded.
k/kernel-source-6.1.66-noarch-1.txz: Upgraded.
x/ibus-m17n-1.4.27-x86_64-1.txz: Upgraded.
x/libva-utils-2.20.1-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
testing/packages/kernel-generic-6.6.5-x86_64-1.txz: Upgraded.
testing/packages/kernel-headers-6.6.5-x86-1.txz: Upgraded.
testing/packages/kernel-huge-6.6.5-x86_64-1.txz: Upgraded.
testing/packages/kernel-modules-6.6.5-x86_64-1.txz: Upgraded.
testing/packages/kernel-source-6.6.5-noarch-1.txz: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231208220032 | Patrick J Volkerding | 2023-12-09 | 1 | -7/+7 |
* | Sun Dec 3 20:53:14 UTC 2023...a/kernel-firmware-20231130_f63dd70-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.65-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.65-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.65-x86_64-1.txz: Upgraded.
d/gdb-14.1-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.65-x86-1.txz: Upgraded.
k/kernel-source-6.1.65-noarch-1.txz: Upgraded.
l/enchant-2.6.3-x86_64-1.txz: Upgraded.
l/v4l-utils-1.26.0-x86_64-3.txz: Rebuilt.
Make sure ARIB-STD-B24.so is properly linked. Thanks to GazL.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
testing/packages/kernel-generic-6.6.4-x86_64-1.txz: Upgraded.
testing/packages/kernel-headers-6.6.4-x86-1.txz: Upgraded.
testing/packages/kernel-huge-6.6.4-x86_64-1.txz: Upgraded.
testing/packages/kernel-modules-6.6.4-x86_64-1.txz: Upgraded.
testing/packages/kernel-source-6.6.4-noarch-1.txz: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231203205314 | Patrick J Volkerding | 2023-12-03 | 1 | -7/+7 |
* | Tue Nov 28 22:13:48 UTC 2023...a/kernel-firmware-20231128_aae6052-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.64-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.64-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.64-x86_64-1.txz: Upgraded.
d/cmake-3.27.9-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.64-x86-1.txz: Upgraded.
d/llvm-17.0.6-x86_64-1.txz: Upgraded.
k/kernel-source-6.1.64-noarch-1.txz: Upgraded.
xap/mozilla-thunderbird-115.5.1-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/115.5.1/releasenotes/
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
testing/packages/kernel-generic-6.6.3-x86_64-1.txz: Upgraded.
testing/packages/kernel-headers-6.6.3-x86-1.txz: Upgraded.
testing/packages/kernel-huge-6.6.3-x86_64-1.txz: Upgraded.
testing/packages/kernel-modules-6.6.3-x86_64-1.txz: Upgraded.
testing/packages/kernel-source-6.6.3-noarch-1.txz: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231128221348 | Patrick J Volkerding | 2023-11-29 | 1 | -7/+7 |
* | Tue Nov 21 21:15:30 UTC 2023...We have fresh 6.6 kernels in /testing! You may notice that on the 32-bit side
we have done away with the -smp labeled kernel packages, but it's actually the
other kernels that were retired -- the non-SMP, non-PAE ones. If you were
previously using kernel-generic-smp or kernel-huge-smp, you'll need to make
some adjustments to your bootloader setup to load kernel-generic or kernel-huge
instead. About the only non-obsolete CPUs that may have an issue with this are
the first generation Pentium M chips, which supported PAE but unfortunately did
not advertise this in the CPU flags. But these will support PAE if the kernel
option "forcepae" is appended at boot time. Enjoy! :-)
a/gettext-0.22.4-x86_64-1.txz: Upgraded.
a/kbd-2.6.3-x86_64-3.txz: Rebuilt.
Installed extra console fonts.
a/kernel-firmware-20231120_9552083-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.63-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.63-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.63-x86_64-1.txz: Upgraded.
a/mkinitrd-1.4.11-x86_64-34.txz: Rebuilt.
Fix tests for including jfs/xfs repair tools. Thanks to regdub.
a/pkgtools-15.1-noarch-8.txz: Rebuilt.
Make vim the default vi choice.
ap/vim-9.0.2116-x86_64-1.txz: Upgraded.
d/gettext-tools-0.22.4-x86_64-1.txz: Upgraded.
d/git-2.43.0-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.63-x86-1.txz: Upgraded.
d/mercurial-6.6-x86_64-1.txz: Upgraded.
d/meson-1.3.0-x86_64-1.txz: Upgraded.
d/scons-4.6.0-x86_64-1.txz: Upgraded.
k/kernel-source-6.1.63-noarch-1.txz: Upgraded.
l/readline-8.2.007-x86_64-1.txz: Upgraded.
n/c-ares-1.22.1-x86_64-1.txz: Upgraded.
n/nfs-utils-2.6.4-x86_64-1.txz: Upgraded.
x/libdrm-2.4.118-x86_64-1.txz: Upgraded.
xap/mozilla-firefox-115.5.0esr-x86_64-1.txz: Upgraded.
This update contains security fixes and improvements.
Thanks to zuriel for the taskbar icon fix on Wayland. :-)
For more information, see:
https://www.mozilla.org/en-US/firefox/115.5.0/releasenotes/
https://www.mozilla.org/security/advisories/mfsa2023-50/
https://www.cve.org/CVERecord?id=CVE-2023-6204
https://www.cve.org/CVERecord?id=CVE-2023-6205
https://www.cve.org/CVERecord?id=CVE-2023-6206
https://www.cve.org/CVERecord?id=CVE-2023-6207
https://www.cve.org/CVERecord?id=CVE-2023-6208
https://www.cve.org/CVERecord?id=CVE-2023-6209
https://www.cve.org/CVERecord?id=CVE-2023-6212
(* Security fix *)
xap/vim-gvim-9.0.2116-x86_64-1.txz: Upgraded.
xap/xsnow-3.7.6-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
testing/packages/kernel-generic-6.6.2-x86_64-1.txz: Added.
testing/packages/kernel-headers-6.6.2-x86-1.txz: Added.
testing/packages/kernel-huge-6.6.2-x86_64-1.txz: Added.
testing/packages/kernel-modules-6.6.2-x86_64-1.txz: Added.
testing/packages/kernel-source-6.6.2-noarch-1.txz: Added.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231121211530 | Patrick J Volkerding | 2023-11-21 | 1 | -8/+8 |
* | Wed Nov 8 22:04:25 UTC 2023...a/kbd-2.6.3-x86_64-1.txz: Upgraded.
Thanks to Robby Workman.
a/kernel-firmware-20231107_2340796-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.62-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.62-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.62-x86_64-1.txz: Upgraded.
ap/sudo-1.9.15p1-x86_64-1.txz: Upgraded.
This is a bugfix release:
Fixed a bug introduced in sudo 1.9.15 that prevented LDAP-based sudoers
from being able to read the ldap.conf file.
d/kernel-headers-6.1.62-x86-1.txz: Upgraded.
k/kernel-source-6.1.62-noarch-1.txz: Upgraded.
kde/plasma-wayland-protocols-1.11.0-x86_64-1.txz: Upgraded.
l/liburing-2.5-x86_64-1.txz: Upgraded.
xap/mozilla-thunderbird-115.4.2-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/115.4.2/releasenotes/
xap/xlockmore-5.74-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231108220425 | Patrick J Volkerding | 2023-11-08 | 1 | -7/+7 |
* | Thu Nov 2 20:33:13 UTC 2023...a/gawk-5.3.0-x86_64-1.txz: Upgraded.
a/kernel-firmware-20231030_2b304bf-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.61-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.61-x86_64-1.txz: Upgraded.
-EXT2_FS_POSIX_ACL y
-EXT2_FS_SECURITY y
-EXT2_FS_XATTR y
-EXT3_FS_POSIX_ACL y
-EXT3_FS_SECURITY y
EXT2_FS y -> n
EXT3_FS y -> n
NLS_ISO8859_15 m -> y
SCSI_SMARTPQI m -> y
+EXT4_USE_FOR_EXT2 y
a/kernel-modules-6.1.61-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.61-x86-1.txz: Upgraded.
k/kernel-source-6.1.61-noarch-1.txz: Upgraded.
-EXT2_FS_POSIX_ACL y
-EXT2_FS_SECURITY y
-EXT2_FS_XATTR y
-EXT3_FS_POSIX_ACL y
-EXT3_FS_SECURITY y
EXT2_FS y -> n
EXT3_FS y -> n
NLS_ISO8859_1 m -> y
NLS_ISO8859_15 m -> y
NLS_UTF8 m -> y
SCSI_VIRTIO m -> y
+EXT4_USE_FOR_EXT2 y
kde/calligra-3.2.1-x86_64-35.txz: Rebuilt.
Recompiled against poppler-23.11.0.
kde/cantor-23.08.2-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.11.0.
kde/fcitx5-configtool-5.1.2-x86_64-1.txz: Upgraded.
kde/kfilemetadata-5.111.0-x86_64-3.txz: Rebuilt.
Recompiled against poppler-23.11.0.
kde/kile-2.9.93-x86_64-29.txz: Rebuilt.
Recompiled against poppler-23.11.0.
kde/kitinerary-23.08.2-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.11.0.
kde/krita-5.2.1-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.11.0.
kde/okular-23.08.2-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.11.0.
l/pipewire-0.3.84-x86_64-1.txz: Upgraded.
l/poppler-23.11.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
n/postfix-3.8.3-x86_64-1.txz: Upgraded.
x/fcitx5-5.1.2-x86_64-1.txz: Upgraded.
x/fcitx5-anthy-5.1.2-x86_64-1.txz: Upgraded.
x/fcitx5-chinese-addons-5.1.2-x86_64-1.txz: Upgraded.
x/fcitx5-hangul-5.1.1-x86_64-1.txz: Upgraded.
x/fcitx5-qt-5.1.2-x86_64-1.txz: Upgraded.
x/fcitx5-sayura-5.1.1-x86_64-1.txz: Upgraded.
x/libime-1.1.3-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231102203313 | Patrick J Volkerding | 2023-11-02 | 1 | -7/+7 |
* | Thu Oct 26 19:55:16 UTC 2023...a/kernel-firmware-20231024_4ee0175-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.60-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.60-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.60-x86_64-1.txz: Upgraded.
a/shadow-4.14.1-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.60-x86-1.txz: Upgraded.
k/kernel-source-6.1.60-noarch-1.txz: Upgraded.
Hey folks, if you've been following LQ you know I've talked before about
dropping the huge kernel and moving the distribution to use only the generic
kernel plus an initrd. After mulling this over for a few months, I think I
was looking at the problem in the wrong way. First of all, it's clear that
some Slackware users have been using the huge kernel all along, without an
initrd, and are (to say the least) unhappy about the prospect of a new
requirement to start using one. I've been recommending the generic kernel for
some time, and a major reason is that we've been using the same set of kernel
modules with two slightly different kernels. Because of this, there have
always been a few (generally seldom used) kernel modules that won't load into
the huge kernel. These are things that aren't built into the huge kernel, but
because of a difference in some kernel module dependency, they won't load.
The conclusion that I've come to here is that rather than drop the huge
kernel, or slap a LOCALVERSION on it and provide a whole duplicate tree of
kernel modules especially for the huge kernel, it would be better to make the
generic kernel more huge, and minimize the differences between the two kernel
configs.
That's what I've done here.
Shown below are the differences between the previous generic kernel config
and the one shipping in this update. You'll notice that most of the popular
filesystems are built in. At this point the main difference it that the huge
kernel has a couple of dozen SCSI drivers built into it. The modules for those
drivers won't load into the huge kernel, but they're fully built in so that
doesn't matter. If you find any other modules that will not load into the huge
kernel, please make a note about it on LQ and I'll see what can be done.
So, tl;dr - what does this change mean?
Unless your root device is on SCSI, if you were able to use the huge kernel
without an initrd previously, you should now be able to use the generic
kernel without an initrd. The kernel is a bit bigger, but we probably have
enough RAM these days that it won't make a difference.
Enjoy! :-)
-CIFS_SMB_DIRECT n
9P_FS m -> y
9P_FSCACHE n -> y
BTRFS_FS m -> y
CIFS m -> y
CRYPTO_CMAC m -> y
CRYPTO_CRC32 m -> y
CRYPTO_XXHASH m -> y
CRYPTO_ZSTD m -> y
EFIVAR_FS m -> y
EXFAT_FS m -> y
EXT2_FS m -> y
EXT3_FS m -> y
EXT4_FS m -> y
F2FS_FS m -> y
FAILOVER m -> y
FAT_FS m -> y
FSCACHE m -> y
FS_ENCRYPTION_ALGS m -> y
FS_MBCACHE m -> y
HW_RANDOM_VIRTIO m -> y
ISO9660_FS m -> y
JBD2 m -> y
JFS_FS m -> y
LZ4HC_COMPRESS m -> y
LZ4_COMPRESS m -> y
MSDOS_FS m -> y
NETFS_SUPPORT m -> y
NET_9P m -> y
NET_9P_FD m -> y
NET_9P_VIRTIO m -> y
NET_FAILOVER m -> y
NFSD m -> y
NLS_CODEPAGE_437 m -> y
NTFS3_FS m -> y
NTFS_FS m -> y
PSTORE_LZ4_COMPRESS n -> m
PSTORE_LZO_COMPRESS n -> m
PSTORE_ZSTD_COMPRESS n -> y
QFMT_V2 m -> y
QUOTA_TREE m -> y
REISERFS_FS m -> y
RPCSEC_GSS_KRB5 m -> y
SMBFS m -> y
SQUASHFS m -> y
UDF_FS m -> y
VFAT_FS m -> y
VIRTIO_BALLOON m -> y
VIRTIO_BLK m -> y
VIRTIO_CONSOLE m -> y
VIRTIO_INPUT m -> y
VIRTIO_MMIO m -> y
VIRTIO_NET m -> y
VIRTIO_PCI m -> y
VIRTIO_PCI_LIB m -> y
VIRTIO_PCI_LIB_LEGACY m -> y
VIRTIO_PMEM m -> y
XFS_FS m -> y
ZONEFS_FS n -> m
ZSTD_COMPRESS m -> y
+NFS_FSCACHE y
+PSTORE_LZ4_COMPRESS_DEFAULT n
+PSTORE_LZO_COMPRESS_DEFAULT n
+PSTORE_ZSTD_COMPRESS_DEFAULT n
kde/plasma-workspace-5.27.9.1-x86_64-1.txz: Upgraded.
l/glib2-2.78.1-x86_64-1.txz: Upgraded.
l/netpbm-11.04.03-x86_64-1.txz: Upgraded.
l/newt-0.52.24-x86_64-1.txz: Upgraded.
n/gpgme-1.23.0-x86_64-1.txz: Upgraded.
n/p11-kit-0.25.1-x86_64-1.txz: Upgraded.
n/php-8.2.12-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.php.net/ChangeLog-8.php#8.2.12
x/xorg-server-21.1.9-x86_64-1.txz: Upgraded.
This update fixes security issues:
OOB write in XIChangeDeviceProperty/RRChangeOutputProperty.
Use-after-free bug in DestroyWindow.
For more information, see:
https://lists.x.org/archives/xorg-announce/2023-October/003430.html
https://www.cve.org/CVERecord?id=CVE-2023-5367
https://www.cve.org/CVERecord?id=CVE-2023-5380
(* Security fix *)
x/xorg-server-xephyr-21.1.9-x86_64-1.txz: Upgraded.
x/xorg-server-xnest-21.1.9-x86_64-1.txz: Upgraded.
x/xorg-server-xvfb-21.1.9-x86_64-1.txz: Upgraded.
x/xorg-server-xwayland-23.2.2-x86_64-1.txz: Upgraded.
This update fixes a security issue:
OOB write in XIChangeDeviceProperty/RRChangeOutputProperty.
For more information, see:
https://lists.x.org/archives/xorg-announce/2023-October/003430.html
https://www.cve.org/CVERecord?id=CVE-2023-5367
(* Security fix *)
xap/mozilla-thunderbird-115.4.1-x86_64-1.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/115.4.1/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2023-47/
https://www.cve.org/CVERecord?id=CVE-2023-5721
https://www.cve.org/CVERecord?id=CVE-2023-5732
https://www.cve.org/CVERecord?id=CVE-2023-5724
https://www.cve.org/CVERecord?id=CVE-2023-5725
https://www.cve.org/CVERecord?id=CVE-2023-5726
https://www.cve.org/CVERecord?id=CVE-2023-5727
https://www.cve.org/CVERecord?id=CVE-2023-5728
https://www.cve.org/CVERecord?id=CVE-2023-5730
(* Security fix *)
xfce/thunar-4.18.8-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231026195516 | Patrick J Volkerding | 2023-10-26 | 1 | -7/+7 |
* | Fri Oct 20 17:37:35 UTC 2023...a/kernel-firmware-20231019_d983107-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.59-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.59-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.59-x86_64-1.txz: Upgraded.
a/os-prober-1.81-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.59-x86-1.txz: Upgraded.
k/kernel-source-6.1.59-noarch-1.txz: Upgraded.
l/gtkmm3-3.24.8-x86_64-1.txz: Upgraded.
l/gvfs-1.52.1-x86_64-1.txz: Upgraded.
x/libdrm-2.4.117-x86_64-1.txz: Upgraded.
x/xcb-util-cursor-0.1.5-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231020173735 | Patrick J Volkerding | 2023-10-20 | 1 | -7/+7 |
* | Mon Oct 16 17:03:35 UTC 2023...a/kernel-firmware-20231013_1be48f8-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.58-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.58-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.58-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.58-x86-1.txz: Upgraded.
k/kernel-source-6.1.58-noarch-1.txz: Upgraded.
l/lager-0.1.1-x86_64-1.txz: Upgraded.
l/libical-3.0.17-x86_64-1.txz: Upgraded.
l/libnsl-2.0.1-x86_64-1.txz: Upgraded.
l/libpaper-2.1.2-x86_64-1.txz: Upgraded.
l/nodejs-20.8.1-x86_64-1.txz: Upgraded.
l/oniguruma-6.9.9-x86_64-1.txz: Upgraded.
l/qt5-5.15.11_20231011_f1a894e5-x86_64-1.txz: Upgraded.
l/zug-0.1.1-x86_64-1.txz: Upgraded.
x/xterm-387-x86_64-1.txz: Upgraded.
xfce/xfce4-terminal-1.1.1-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231016170335 | Patrick J Volkerding | 2023-10-16 | 1 | -7/+7 |
* | Wed Oct 11 06:37:21 UTC 2023...a/kernel-generic-6.1.57-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.57-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.57-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.57-x86-1.txz: Upgraded.
k/kernel-source-6.1.57-noarch-1.txz: Upgraded.
n/c-ares-1.20.1-x86_64-1.txz: Upgraded.
n/curl-8.4.0-x86_64-1.txz: Upgraded.
This update fixes security issues:
Cookie injection with none file.
SOCKS5 heap buffer overflow.
For more information, see:
https://curl.se/docs/CVE-2023-38546.html
https://curl.se/docs/CVE-2023-38545.html
https://www.cve.org/CVERecord?id=CVE-2023-38546
https://www.cve.org/CVERecord?id=CVE-2023-38545
(* Security fix *)
n/nghttp2-1.57.0-x86_64-1.txz: Upgraded.
This release has a fix to mitigate the HTTP/2 Rapid Reset vulnerability.
For more information, see:
https://github.com/nghttp2/nghttp2/security/advisories/GHSA-vx74-f528-fxqg
https://www.cve.org/CVERecord?id=CVE-2023-44487
(* Security fix *)
n/samba-4.19.1-x86_64-1.txz: Upgraded.
This is a security release in order to address the following defects:
Unsanitized pipe names allow SMB clients to connect as root to existing
unix domain sockets on the file system.
SMB client can truncate files to 0 bytes by opening files with OVERWRITE
disposition when using the acl_xattr Samba VFS module with the smb.conf
setting "acl_xattr:ignore system acls = yes"
An RODC and a user with the GET_CHANGES right can view all attributes,
including secrets and passwords. Additionally, the access check fails
open on error conditions.
Calls to the rpcecho server on the AD DC can request that the server block
for a user-defined amount of time, denying service.
Samba can be made to start multiple incompatible RPC listeners, disrupting
service on the AD DC.
For more information, see:
https://www.samba.org/samba/security/CVE-2023-3961.html
https://www.samba.org/samba/security/CVE-2023-4091.html
https://www.samba.org/samba/security/CVE-2023-4154.html
https://www.samba.org/samba/security/CVE-2023-42669.html
https://www.samba.org/samba/security/CVE-2023-42670.html
https://www.cve.org/CVERecord?id=CVE-2023-3961
https://www.cve.org/CVERecord?id=CVE-2023-4091
https://www.cve.org/CVERecord?id=CVE-2023-4154
https://www.cve.org/CVERecord?id=CVE-2023-42669
https://www.cve.org/CVERecord?id=CVE-2023-42670
(* Security fix *)
xap/mozilla-thunderbird-115.3.2-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/115.3.2/releasenotes/
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231011063721 | Patrick J Volkerding | 2023-10-11 | 1 | -7/+7 |
* | Fri Oct 6 21:28:34 UTC 2023...a/eudev-3.2.14-x86_64-1.txz: Upgraded.
a/kernel-firmware-20231006_7727f7e-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.56-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.56-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.56-x86_64-1.txz: Upgraded.
d/cmake-3.27.7-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.56-x86-1.txz: Upgraded.
k/kernel-source-6.1.56-noarch-1.txz: Upgraded.
n/dhcpcd-10.0.3-x86_64-1.txz: Upgraded.
n/netatalk-3.1.18-x86_64-1.txz: Upgraded.
This update fixes bugs and a security issue:
Harden create_appledesktop_folder().
For more information, see:
https://netatalk.sourceforge.io/CVE-2022-22995.php
https://www.cve.org/CVERecord?id=CVE-2022-22995
(* Security fix *)
x/libXrandr-1.5.4-x86_64-1.txz: Upgraded.
x/xkeyboard-config-2.40-noarch-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20231006212834 | Patrick J Volkerding | 2023-10-07 | 1 | -7/+7 |
* | Sat Sep 23 20:59:44 UTC 2023...a/kernel-generic-6.1.55-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.55-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.55-x86_64-1.txz: Upgraded.
a/minicom-2.9-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.55-x86-1.txz: Upgraded.
k/kernel-source-6.1.55-noarch-1.txz: Upgraded.
xap/xlockmore-5.73-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230923205944 | Patrick J Volkerding | 2023-09-23 | 1 | -7/+7 |
* | Wed Sep 20 00:08:45 UTC 2023...a/gettext-0.22.1-x86_64-1.txz: Upgraded.
a/kernel-firmware-20230918_3672cca-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.54-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.54-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.54-x86_64-1.txz: Upgraded.
a/openssl-solibs-3.1.3-x86_64-1.txz: Upgraded.
ap/ghostscript-10.02.0-x86_64-2.txz: Rebuilt.
[PATCH] PDF interpreter - fix PageList processing.
Thanks to denydias.
d/gettext-tools-0.22.1-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.54-x86-1.txz: Upgraded.
k/kernel-source-6.1.54-noarch-1.txz: Upgraded.
l/dconf-editor-45.0-x86_64-1.txz: Upgraded.
l/harfbuzz-8.2.1-x86_64-1.txz: Upgraded.
l/nodejs-20.7.0-x86_64-1.txz: Upgraded.
n/openssl-3.1.3-x86_64-1.txz: Upgraded.
This update fixes bugs and a security issue that does not affect Linux:
Fix POLY1305 MAC implementation corrupting XMM registers on Windows.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2023-4807
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
testing/packages/rust-1.72.1-x86_64-1.txz: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230920000845 | Patrick J Volkerding | 2023-09-20 | 1 | -7/+7 |
* | Thu Sep 14 02:38:14 UTC 2023...a/kernel-firmware-20230907_dfa1146-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.53-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.53-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.53-x86_64-1.txz: Upgraded.
ap/ghostscript-10.02.0-x86_64-1.txz: Upgraded.
ap/vim-9.0.1897-x86_64-2.txz: Rebuilt.
Recompiled against libsodium-1.0.19.
d/cbindgen-0.26.0-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.53-x86-1.txz: Upgraded.
k/kernel-source-6.1.53-noarch-1.txz: Upgraded.
kde/keysmith-23.08.0-x86_64-2.txz: Rebuilt.
Recompiled against libsodium-1.0.19.
l/glib2-2.78.0-x86_64-2.txz: Rebuilt.
[PATCH] gthreadedresolver: Fix race between source callbacks and finalize.
Thanks to marav.
l/libarchive-3.7.2-x86_64-1.txz: Upgraded.
This update fixes multiple security vulnerabilities in the PAX writer:
Heap overflow in url_encode() in archive_write_set_format_pax.c.
NULL dereference in archive_write_pax_header_xattrs().
Another NULL dereference in archive_write_pax_header_xattrs().
NULL dereference in archive_write_pax_header_xattr().
(* Security fix *)
l/librsvg-2.56.4-x86_64-1.txz: Upgraded.
l/libsodium-1.0.19-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
n/curl-8.3.0-x86_64-1.txz: Upgraded.
This update fixes a security issue:
HTTP headers eat all memory.
https://curl.se/docs/CVE-2023-38039.html
https://www.cve.org/CVERecord?id=CVE-2023-38039
(* Security fix *)
n/dovecot-2.3.20-x86_64-4.txz: Rebuilt.
Recompiled against libsodium-1.0.19.
n/netatalk-3.1.16-x86_64-1.txz: Upgraded.
This update fixes bugs and security issues.
Shared library .so-version bump.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2022-23121
https://www.cve.org/CVERecord?id=CVE-2022-23123
(* Security fix *)
n/openldap-2.6.6-x86_64-2.txz: Rebuilt.
Recompiled against libsodium-1.0.19.
n/php-8.2.10-x86_64-2.txz: Rebuilt.
Recompiled against libsodium-1.0.19.
n/proftpd-1.3.8-x86_64-4.txz: Rebuilt.
Recompiled against libsodium-1.0.19.
x/libglvnd-1.7.0-x86_64-1.txz: Upgraded.
xap/mozilla-thunderbird-115.2.2-x86_64-1.txz: Upgraded.
This release contains a security fix for a critical heap buffer overflow.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/115.2.2/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2023-40/
https://www.cve.org/CVERecord?id=CVE-2023-4863
(* Security fix *)
xap/vim-gvim-9.0.1897-x86_64-2.txz: Rebuilt.
Recompiled against libsodium-1.0.19.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230914023814 | Patrick J Volkerding | 2023-09-14 | 1 | -7/+7 |
* | Thu Sep 7 02:04:52 UTC 2023...a/kernel-firmware-20230906_ad03b85-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.52-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.52-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.52-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.52-x86-1.txz: Upgraded.
d/lua-5.4.6-x86_64-3.txz: Rebuilt.
Set MYCFLAGS rather than CFLAGS in the build script to keep the other
default CFLAGS in src/Makefile. This automatically sets -DLUA_USE_LINUX
as well as -DLUA_COMPAT_5_3.
d/mercurial-6.5.2-x86_64-1.txz: Upgraded.
k/kernel-source-6.1.52-noarch-1.txz: Upgraded.
kde/alkimia-8.1.2-x86_64-1.txz: Upgraded.
kde/calligra-3.2.1-x86_64-33.txz: Rebuilt.
Recompiled against poppler-23.09.0.
kde/cantor-23.08.0-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.09.0.
kde/kfilemetadata-5.109.0-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.09.0.
kde/kile-2.9.93-x86_64-27.txz: Rebuilt.
Recompiled against poppler-23.09.0.
kde/kitinerary-23.08.0-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.09.0.
kde/krita-5.1.5-x86_64-14.txz: Rebuilt.
Recompiled against poppler-23.09.0.
kde/ktextaddons-1.5.0-x86_64-1.txz: Upgraded.
kde/okular-23.08.0-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.09.0.
l/poppler-23.09.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/zstd-1.5.5-x86_64-3.txz: Rebuilt.
Fix library path in zstdTargets-release.cmake.
Thanks to Steven Voges and gian_d.
Use additional build options:
-DZSTD_BUILD_STATIC=OFF -DZSTD_PROGRAMS_LINK_SHARED=ON -DZSTD_LZ4_SUPPORT=ON
-DZSTD_LZMA_SUPPORT=ON -DZSTD_ZLIB_SUPPORT=ON
Thanks to USUARIONUEVO.
n/iproute2-6.5.0-x86_64-1.txz: Upgraded.
t/texlive-2023.230322-x86_64-5.txz: Rebuilt.
Recompiled against zlib-1.3 to fix lualatex.
Thanks to unInstance and marav.
x/ibus-libpinyin-1.15.4-x86_64-1.txz: Upgraded.
x/mesa-23.1.7-x86_64-1.txz: Upgraded.
xap/gnuplot-5.4.9-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230907020452 | Patrick J Volkerding | 2023-09-07 | 1 | -7/+7 |
* | Sun Sep 3 04:27:04 UTC 2023...a/dbus-1.14.10-x86_64-1.txz: Upgraded.
a/kernel-firmware-20230901_bb4f658-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.51-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.51-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.51-x86_64-1.txz: Upgraded.
a/pkgtools-15.1-noarch-7.txz: Rebuilt.
pkgtool: Make the "Setup" menu (rerun selected installer scripts) larger.
Thanks to Stuart Winter.
ap/alsa-utils-1.2.10-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.51-x86-1.txz: Upgraded.
d/strace-6.5-x86_64-1.txz: Upgraded.
k/kernel-source-6.1.51-noarch-1.txz: Upgraded.
l/SDL2-2.28.3-x86_64-1.txz: Upgraded.
l/alsa-lib-1.2.10-x86_64-1.txz: Upgraded.
l/at-spi2-core-2.48.4-x86_64-1.txz: Upgraded.
l/gmime-3.2.14-x86_64-1.txz: Upgraded.
l/libgphoto2-2.5.31-x86_64-1.txz: Upgraded.
xfce/thunar-4.18.7-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230903042704 | Patrick J Volkerding | 2023-09-03 | 1 | -7/+7 |
* | Wed Aug 30 21:58:04 UTC 2023...a/dcron-4.5-x86_64-13.txz: Rebuilt.
rc.crond: ensure world-writable permissions on /run/cron, needed for
crontab -e with some editors. Thanks to lostintime.
a/kernel-firmware-20230830_5ebb591-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.50-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.50-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.50-x86_64-1.txz: Upgraded.
d/ccache-4.8.3-x86_64-1.txz: Upgraded.
d/clinfo-3.0.23.01.25-x86_64-1.txz: Added.
Thanks to Heinz Wiesinger.
d/kernel-headers-6.1.50-x86-1.txz: Upgraded.
d/vala-0.56.13-x86_64-1.txz: Upgraded.
k/kernel-source-6.1.50-noarch-1.txz: Upgraded.
l/libnl3-3.8.0-x86_64-1.txz: Upgraded.
l/mozjs102-102.15.0esr-x86_64-1.txz: Upgraded.
x/mesa-23.1.6-x86_64-1.txz: Upgraded.
It appears that mesa-23.2.0 was pulled and replaced with mesa-23.2.0-rc2
sometime after we upgraded to it. I've tested this version and it does not
suffer from the "radeon: failed testing IB on GFX ring" bug that was
happening with mesa-23.1.3, so let's use it for now.
xap/mozilla-firefox-115.2.0esr-x86_64-1.txz: Upgraded.
This update contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/firefox/115.2.0/releasenotes/
https://www.mozilla.org/security/advisories/mfsa2023-36/
https://www.cve.org/CVERecord?id=CVE-2023-4573
https://www.cve.org/CVERecord?id=CVE-2023-4574
https://www.cve.org/CVERecord?id=CVE-2023-4575
https://www.cve.org/CVERecord?id=CVE-2023-4576
https://www.cve.org/CVERecord?id=CVE-2023-4577
https://www.cve.org/CVERecord?id=CVE-2023-4051
https://www.cve.org/CVERecord?id=CVE-2023-4578
https://www.cve.org/CVERecord?id=CVE-2023-4053
https://www.cve.org/CVERecord?id=CVE-2023-4580
https://www.cve.org/CVERecord?id=CVE-2023-4581
https://www.cve.org/CVERecord?id=CVE-2023-4582
https://www.cve.org/CVERecord?id=CVE-2023-4583
https://www.cve.org/CVERecord?id=CVE-2023-4584
https://www.cve.org/CVERecord?id=CVE-2023-4585
(* Security fix *)
xap/mozilla-thunderbird-115.2.0-x86_64-1.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/115.2.0/releasenotes/
(* Security fix *)
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230830215804 | Patrick J Volkerding | 2023-08-31 | 1 | -7/+7 |
* | Mon Aug 28 00:38:01 UTC 2023...a/kernel-generic-6.1.49-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.49-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.49-x86_64-1.txz: Upgraded.
ap/sqlite-3.43.0-x86_64-2.txz: Rebuilt.
Build/package sqldiff and sqlite3_analyzer. Thanks to Heinz Wiesinger.
d/doxygen-1.9.8-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.49-x86-1.txz: Upgraded.
k/kernel-source-6.1.49-noarch-1.txz: Upgraded.
l/libedit-20230827_3.1-x86_64-1.txz: Upgraded.
x/m17n-lib-1.8.4-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230828003801 | Patrick J Volkerding | 2023-08-28 | 1 | -7/+7 |
* | Sat Aug 26 21:01:45 UTC 2023...a/coreutils-9.3-x86_64-2.txz: Rebuilt.
Don't support AVX2 instructions for wc. Since it's possible to enable a
kernel option that causes the kernel to advertise AVX2 as available, but
leads to an illegal instruction if there's an attempt to actually use
AVX2 when old microcode is in use, this isn't reliable. Furthermore, wc
is used by the pkgtools and this sort of failure could lead to corruption
of the filesystem and/or package database. So, we'll disable this to be on
the safe side. Thanks to lancsuk for noticing this issue.
a/kernel-generic-6.1.48-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.48-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.48-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.48-x86-1.txz: Upgraded.
k/kernel-source-6.1.48-noarch-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230826210145 | Patrick J Volkerding | 2023-08-26 | 1 | -7/+7 |
* | Wed Aug 23 20:20:49 UTC 2023...a/kernel-generic-6.1.47-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.47-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.47-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.47-x86-1.txz: Upgraded.
k/kernel-source-6.1.47-noarch-1.txz: Upgraded.
l/libqalculate-4.8.0-x86_64-1.txz: Upgraded.
l/libzip-1.10.1-x86_64-1.txz: Upgraded.
x/libdrm-2.4.116-x86_64-1.txz: Upgraded.
x/libime-1.1.1-x86_64-1.txz: Upgraded.
xfce/xfce4-appfinder-4.18.1-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230823202049 | Patrick J Volkerding | 2023-08-23 | 1 | -7/+7 |
* | Wed Aug 16 20:45:00 UTC 2023...a/kernel-firmware-20230814_0e048b0-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.46-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.46-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.46-x86_64-1.txz: Upgraded.
ap/inxi-3.3.29_1-noarch-1.txz: Upgraded.
d/kernel-headers-6.1.46-x86-1.txz: Upgraded.
k/kernel-source-6.1.46-noarch-1.txz: Upgraded.
-ACPI_TINY_POWER_BUTTON n
ACPI_AC m -> y
ACPI_BATTERY m -> y
ACPI_BUTTON m -> y
ACPI_FAN m -> y
ACPI_THERMAL m -> y
kde/kirigami-addons-0.11.0-x86_64-1.txz: Upgraded.
n/bind-9.18.18-x86_64-1.txz: Upgraded.
n/httpd-2.4.57-x86_64-2.txz: Rebuilt.
rc.httpd: wait using pwait after stopping, fix usage to show force-restart.
Thanks to metaed.
n/net-snmp-5.9.4-x86_64-1.txz: Upgraded.
n/openvpn-2.6.6-x86_64-1.txz: Upgraded.
n/php-8.2.9-x86_64-1.txz: Upgraded.
This update fixes bugs and security issues:
Security issue with external entity loading in XML without enabling it.
Buffer mismanagement in phar_dir_read().
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3823
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3824
(* Security fix *)
x/xorg-server-xwayland-23.2.0-x86_64-1.txz: Upgraded.
xap/mozilla-thunderbird-115.1.1-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/115.1.1/releasenotes/
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230816204500 | Patrick J Volkerding | 2023-08-16 | 1 | -7/+7 |
* | Sat Aug 12 00:43:19 UTC 2023...a/aaa_libraries-15.1-x86_64-21.txz: Rebuilt.
Upgraded: libcap.so.2.69, liblzma.so.5.4.4, libboost*.so.1.82.0,
libglib-2.0.so.0.7600.4, libgmodule-2.0.so.0.7600.4, libgmp.so.10.5.0,
libgmpxx.so.4.7.0, libgobject-2.0.so.0.7600.4, libgthread-2.0.so.0.7600.4,
libjpeg.so.62.4.0, libpng16.so.16.40.0, libstdc++.so.6.0.32,
libtdb.so.1.4.9, libturbojpeg.so.0.3.0.
a/kernel-firmware-20230809_789aa81-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.45-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.45-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.45-x86_64-1.txz: Upgraded.
ap/pamixer-1.5-x86_64-7.txz: Rebuilt.
Recompiled against boost-1.83.0.
d/kernel-headers-6.1.45-x86-1.txz: Upgraded.
k/kernel-source-6.1.45-noarch-1.txz: Upgraded.
kde/kig-23.04.3-x86_64-2.txz: Rebuilt.
Recompiled against boost-1.83.0.
kde/kopeninghours-23.04.3-x86_64-2.txz: Rebuilt.
Recompiled against boost-1.83.0.
kde/krita-5.1.5-x86_64-12.txz: Rebuilt.
Recompiled against boost-1.83.0.
l/boost-1.83.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
The shared libraries from the previous version will stick around in
the aaa_libraries package for at least a month.
l/cryfs-0.10.3-x86_64-9.txz: Rebuilt.
Recompiled against boost-1.83.0.
x/fcitx5-chinese-addons-5.0.17-x86_64-3.txz: Rebuilt.
Recompiled against boost-1.83.0.
x/libime-1.0.17-x86_64-3.txz: Rebuilt.
Recompiled against boost-1.83.0.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230812004319 | Patrick J Volkerding | 2023-08-12 | 1 | -8/+8 |
* | Tue Aug 8 22:42:46 UTC 2023...a/kernel-firmware-20230808_0ab353f-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.44-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.44-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.44-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.44-x86-1.txz: Upgraded.
d/meson-1.2.1-x86_64-1.txz: Upgraded.
k/kernel-source-6.1.44-noarch-1.txz: Upgraded.
+ARCH_HAS_CPU_FINALIZE_INIT y
+CPU_SRSO y
+GDS_FORCE_MITIGATION n
kde/ktextaddons-1.4.1-x86_64-1.txz: Upgraded.
kde/okteta-0.26.13-x86_64-1.txz: Upgraded.
kde/sddm-0.20.0-x86_64-3.txz: Rebuilt.
Also use .new for the files in /etc/pam.d/. Thanks to marav.
x/ibus-m17n-1.4.21-x86_64-1.txz: Upgraded.
xap/windowmaker-0.96.0-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230808224246 | Patrick J Volkerding | 2023-08-09 | 1 | -7/+7 |
* | Fri Aug 4 20:17:36 UTC 2023...a/hwdata-0.373-noarch-1.txz: Upgraded.
a/kernel-firmware-20230731_253cc17-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.43-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.43-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.43-x86_64-1.txz: Upgraded.
a/sysklogd-2.5.1-x86_64-1.txz: Upgraded.
a/xz-5.4.4-x86_64-1.txz: Upgraded.
ap/man-pages-6.05.01-noarch-1.txz: Upgraded.
d/kernel-headers-6.1.43-x86-1.txz: Upgraded.
k/kernel-source-6.1.43-noarch-1.txz: Upgraded.
kde/ktextaddons-1.4.0-x86_64-1.txz: Upgraded.
l/SDL2-2.28.2-x86_64-1.txz: Upgraded.
l/harfbuzz-8.1.1-x86_64-1.txz: Upgraded.
l/mozjs102-102.14.0esr-x86_64-1.txz: Upgraded.
l/netpbm-11.03.01-x86_64-1.txz: Upgraded.
l/openexr-3.1.10-x86_64-1.txz: Upgraded.
l/pipewire-0.3.77-x86_64-1.txz: Upgraded.
l/poppler-23.08.0-x86_64-1.txz: Upgraded.
xap/mozilla-firefox-115.1.0esr-x86_64-1.txz: Upgraded.
This update contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/firefox/115.1.0esr/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2023-31/
https://www.cve.org/CVERecord?id=CVE-2023-4045
https://www.cve.org/CVERecord?id=CVE-2023-4046
https://www.cve.org/CVERecord?id=CVE-2023-4047
https://www.cve.org/CVERecord?id=CVE-2023-4048
https://www.cve.org/CVERecord?id=CVE-2023-4049
https://www.cve.org/CVERecord?id=CVE-2023-4050
https://www.cve.org/CVERecord?id=CVE-2023-4052
https://www.cve.org/CVERecord?id=CVE-2023-4054
https://www.cve.org/CVERecord?id=CVE-2023-4055
https://www.cve.org/CVERecord?id=CVE-2023-4056
https://www.cve.org/CVERecord?id=CVE-2023-4057
(* Security fix *)
xap/mozilla-thunderbird-115.1.0-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/115.1.0/releasenotes/
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
testing/packages/rust-1.71.1-x86_64-1.txz: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230804201736 | Patrick J Volkerding | 2023-08-04 | 1 | -7/+7 |
* | Thu Jul 27 21:41:08 UTC 2023...a/btrfs-progs-6.3.3-x86_64-1.txz: Upgraded.
a/kernel-generic-6.1.42-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.42-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.42-x86_64-1.txz: Upgraded.
d/gcc-13.2.0-x86_64-1.txz: Upgraded.
d/gcc-g++-13.2.0-x86_64-1.txz: Upgraded.
d/gcc-gdc-13.2.0-x86_64-1.txz: Upgraded.
d/gcc-gfortran-13.2.0-x86_64-1.txz: Upgraded.
d/gcc-gm2-13.2.0-x86_64-1.txz: Upgraded.
d/gcc-gnat-13.2.0-x86_64-1.txz: Upgraded.
d/gcc-go-13.2.0-x86_64-1.txz: Upgraded.
d/gcc-objc-13.2.0-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.42-x86-1.txz: Upgraded.
d/libtool-2.4.7-x86_64-6.txz: Rebuilt.
Recompiled to update embedded GCC version number.
k/kernel-source-6.1.42-noarch-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230727214108 | Patrick J Volkerding | 2023-07-28 | 1 | -7/+7 |
* | Mon Jul 24 22:07:56 UTC 2023...a/kernel-firmware-20230724_59fbffa-noarch-1.txz: Upgraded.
AMD microcode updated to fix a use-after-free in AMD Zen2 processors.
From Tavis Ormandy's annoucement of the issue:
"The practical result here is that you can spy on the registers of other
processes. No system calls or privileges are required.
It works across virtual machines and affects all operating systems.
I have written a poc for this issue that's fast enough to reconstruct
keys and passwords as users log in."
For more information, see:
https://seclists.org/oss-sec/2023/q3/59
https://www.cve.org/CVERecord?id=CVE-2023-20593
(* Security fix *)
a/kernel-generic-6.1.41-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.41-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.41-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.41-x86-1.txz: Upgraded.
k/kernel-source-6.1.41-noarch-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230724220756 | Patrick J Volkerding | 2023-07-25 | 1 | -7/+7 |
* | Mon Jul 24 00:17:18 UTC 2023...a/kernel-generic-6.1.40-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.40-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.40-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.40-x86-1.txz: Upgraded.
k/kernel-source-6.1.40-noarch-1.txz: Upgraded.
l/imagemagick-7.1.1_14-x86_64-1.txz: Upgraded.
n/whois-5.5.18-x86_64-1.txz: Upgraded.
Updated the .ga TLD server.
Added new recovered IPv4 allocations.
Removed the delegation of 43.0.0.0/8 to JPNIC.
Removed 12 new gTLDs which are no longer active.
Improved the man page source, courtesy of Bjarni Ingi Gislason.
Added the .edu.za SLD server.
Updated the .alt.za SLD server.
Added the -ru and -su NIC handles servers.
x/glu-9.0.3-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230724001718 | Patrick J Volkerding | 2023-07-24 | 1 | -7/+7 |
* | Wed Jul 19 20:36:46 UTC 2023...a/kernel-firmware-20230707_d3f6606-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.39-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.39-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.39-x86_64-1.txz: Upgraded.
a/xfsprogs-6.4.0-x86_64-1.txz: Upgraded.
d/cmake-3.27.0-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.39-x86-1.txz: Upgraded.
k/kernel-source-6.1.39-noarch-1.txz: Upgraded.
l/mpfr-4.2.0p12-x86_64-1.txz: Upgraded.
n/bind-9.18.17-x86_64-1.txz: Upgraded.
n/curl-8.2.0-x86_64-1.txz: Upgraded.
This update fixes a security issue:
fopen race condition.
For more information, see:
https://curl.se/docs/CVE-2023-32001.html
https://www.cve.org/CVERecord?id=CVE-2023-32001
(* Security fix *)
n/dhcpcd-10.0.2-x86_64-1.txz: Upgraded.
n/openssh-9.3p2-x86_64-1.txz: Upgraded.
This update fixes a security issue:
ssh-agent(1) in OpenSSH between and 5.5 and 9.3p1 (inclusive): remote code
execution relating to PKCS#11 providers.
The PKCS#11 support ssh-agent(1) could be abused to achieve remote code
execution via a forwarded agent socket if the following conditions are met:
* Exploitation requires the presence of specific libraries on the victim
system.
* Remote exploitation requires that the agent was forwarded to an
attacker-controlled system.
Exploitation can also be prevented by starting ssh-agent(1) with an empty
PKCS#11/FIDO allowlist (ssh-agent -P '') or by configuring an allowlist that
contains only specific provider libraries.
This vulnerability was discovered and demonstrated to be exploitable by the
Qualys Security Advisory team.
Potentially-incompatible changes:
* ssh-agent(8): the agent will now refuse requests to load PKCS#11 modules
issued by remote clients by default. A flag has been added to restore the
previous behaviour: "-Oallow-remote-pkcs11".
For more information, see:
https://www.openssh.com/txt/release-9.3p2
https://www.cve.org/CVERecord?id=CVE-2023-38408
(* Security fix *)
n/samba-4.18.5-x86_64-1.txz: Upgraded.
This update fixes security issues:
When winbind is used for NTLM authentication, a maliciously crafted request
can trigger an out-of-bounds read in winbind and possibly crash it.
SMB2 packet signing is not enforced if an admin configured
"server signing = required" or for SMB2 connections to Domain Controllers
where SMB2 packet signing is mandatory.
An infinite loop bug in Samba's mdssvc RPC service for Spotlight can be
triggered by an unauthenticated attacker by issuing a malformed RPC request.
Missing type validation in Samba's mdssvc RPC service for Spotlight can be
used by an unauthenticated attacker to trigger a process crash in a shared
RPC mdssvc worker process.
As part of the Spotlight protocol Samba discloses the server-side absolute
path of shares and files and directories in search results.
For more information, see:
https://www.samba.org/samba/security/CVE-2022-2127.html
https://www.samba.org/samba/security/CVE-2023-3347.html
https://www.samba.org/samba/security/CVE-2023-34966.html
https://www.samba.org/samba/security/CVE-2023-34967.html
https://www.samba.org/samba/security/CVE-2023-34968.html
https://www.cve.org/CVERecord?id=CVE-2022-2127
https://www.cve.org/CVERecord?id=CVE-2023-3347
https://www.cve.org/CVERecord?id=CVE-2023-34966
https://www.cve.org/CVERecord?id=CVE-2023-34967
https://www.cve.org/CVERecord?id=CVE-2023-34968
(* Security fix *)
xap/mozilla-firefox-115.0.3esr-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/firefox/115.0.3esr/releasenotes/
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230719203646 | Patrick J Volkerding | 2023-07-19 | 1 | -7/+7 |
* | Wed Jul 5 21:02:14 UTC 2023...a/kernel-generic-6.1.38-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.38-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.38-x86_64-1.txz: Upgraded.
a/upower-1.90.1-x86_64-1.txz: Upgraded.
a/util-linux-2.39.1-x86_64-3.txz: Rebuilt.
Use --disable-libmount-mountfd-support for now to avoid breaking overlayfs.
d/kernel-headers-6.1.38-x86-1.txz: Upgraded.
k/kernel-source-6.1.38-noarch-1.txz: Upgraded.
l/nodejs-20.4.0-x86_64-1.txz: Upgraded.
n/samba-4.18.4-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230705210214 | Patrick J Volkerding | 2023-07-05 | 1 | -7/+7 |
* | Sat Jul 1 19:22:28 UTC 2023...a/kernel-generic-6.1.37-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.37-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.37-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.37-x86-1.txz: Upgraded.
k/kernel-source-6.1.37-noarch-1.txz: Upgraded.
l/librsvg-2.56.2-x86_64-1.txz: Upgraded.
l/libuv-1.46.0-x86_64-1.txz: Upgraded.
l/taglib-1.13.1-x86_64-1.txz: Upgraded.
n/bluez-5.68-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230701192228 | Patrick J Volkerding | 2023-07-01 | 1 | -7/+7 |
* | Wed Jun 28 20:22:39 UTC 2023...a/kernel-firmware-20230625_ee91452-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.36-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.36-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.36-x86_64-1.txz: Upgraded.
a/util-linux-2.39.1-x86_64-1.txz: Upgraded.
ap/sudo-1.9.14-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.36-x86-1.txz: Upgraded.
d/strace-6.4-x86_64-1.txz: Upgraded.
k/kernel-source-6.1.36-noarch-1.txz: Upgraded.
n/NetworkManager-1.42.8-x86_64-1.txz: Upgraded.
n/iproute2-6.4.0-x86_64-1.txz: Upgraded.
x/xterm-383-x86_64-1.txz: Upgraded.
xap/xsnow-3.7.5-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230628202239 | Patrick J Volkerding | 2023-06-28 | 1 | -7/+7 |
* | Thu Jun 22 01:54:11 UTC 2023...a/kernel-firmware-20230620_045b213-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.35-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.35-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.35-x86_64-1.txz: Upgraded.
ap/ghostscript-10.01.2-x86_64-1.txz: Upgraded.
d/cbindgen-0.24.6-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.35-x86-1.txz: Upgraded.
d/rust-bindgen-0.66.1-x86_64-1.txz: Upgraded.
k/kernel-source-6.1.35-noarch-1.txz: Upgraded.
kde/plasma-sdk-5.27.6.1-x86_64-1.txz: Upgraded.
l/SDL2-2.28.0-x86_64-1.txz: Upgraded.
l/gst-plugins-bad-free-1.22.4-x86_64-1.txz: Upgraded.
l/gst-plugins-base-1.22.4-x86_64-1.txz: Upgraded.
l/gst-plugins-good-1.22.4-x86_64-1.txz: Upgraded.
l/gst-plugins-libav-1.22.4-x86_64-1.txz: Upgraded.
l/gstreamer-1.22.4-x86_64-1.txz: Upgraded.
l/nodejs-20.3.1-x86_64-1.txz: Upgraded.
n/bind-9.18.16-x86_64-1.txz: Upgraded.
This update fixes a security issue:
Exceeding the recursive-clients quota may cause named to terminate
unexpectedly when stale-answer-client-timeout is set to 0.
For more information, see:
https://kb.isc.org/docs/cve-2023-2911
https://www.cve.org/CVERecord?id=CVE-2023-2911
(* Security fix *)
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230622015411 | Patrick J Volkerding | 2023-06-22 | 1 | -7/+7 |
* | Wed Jun 14 21:43:32 UTC 2023...a/kernel-firmware-20230612_1cd1c87-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.34-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.34-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.34-x86_64-1.txz: Upgraded.
ap/cups-2.4.5-x86_64-1.txz: Upgraded.
This is a bugfix release.
ap/ksh93-1.0.6-x86_64-1.txz: Upgraded.
This is a bugfix release.
d/kernel-headers-6.1.34-x86-1.txz: Upgraded.
d/llvm-16.0.6-x86_64-1.txz: Upgraded.
k/kernel-source-6.1.34-noarch-1.txz: Upgraded.
l/fluidsynth-2.3.3-x86_64-1.txz: Upgraded.
l/icu4c-73.2-x86_64-1.txz: Upgraded.
n/openvpn-2.6.5-x86_64-1.txz: Upgraded.
xfce/xfce4-whiskermenu-plugin-2.7.3-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230614214332 | Patrick J Volkerding | 2023-06-15 | 1 | -7/+7 |
* | Sat Jun 10 01:26:41 UTC 2023...a/kernel-generic-6.1.33-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.33-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.33-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.33-x86-1.txz: Upgraded.
k/kernel-source-6.1.33-noarch-1.txz: Upgraded.
l/fuse3-3.15.0-x86_64-1.txz: Upgraded.
l/libburn-1.5.6-x86_64-1.txz: Upgraded.
xap/mozilla-firefox-114.0.1-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/firefox/114.0.1/releasenotes/
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230610012641 | Patrick J Volkerding | 2023-06-10 | 1 | -7/+7 |
* | Tue Jun 6 20:26:59 UTC 2023...a/kernel-firmware-20230531_fc90c59-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.32-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.32-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.32-x86_64-1.txz: Upgraded.
d/gcc-13.1.0-x86_64-2.txz: Rebuilt.
d/gcc-g++-13.1.0-x86_64-2.txz: Rebuilt.
d/gcc-gdc-13.1.0-x86_64-2.txz: Rebuilt.
d/gcc-gfortran-13.1.0-x86_64-2.txz: Rebuilt.
d/gcc-gm2-13.1.0-x86_64-2.txz: Added.
d/gcc-gnat-13.1.0-x86_64-2.txz: Rebuilt.
d/gcc-go-13.1.0-x86_64-2.txz: Rebuilt.
d/gcc-objc-13.1.0-x86_64-2.txz: Rebuilt.
d/kernel-headers-6.1.32-x86-1.txz: Upgraded.
d/libtool-2.4.7-x86_64-5.txz: Rebuilt.
Recompiled to update embedded GCC version number.
k/kernel-source-6.1.32-noarch-1.txz: Upgraded.
kde/calligra-3.2.1-x86_64-30.txz: Rebuilt.
Recompiled against poppler-23.06.0.
kde/cantor-23.04.1-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.06.0.
kde/kfilemetadata-5.106.0-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.06.0.
kde/kile-2.9.93-x86_64-25.txz: Rebuilt.
Recompiled against poppler-23.06.0.
kde/kitinerary-23.04.1-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.06.0.
kde/krita-5.1.5-x86_64-10.txz: Rebuilt.
Recompiled against poppler-23.06.0.
kde/okteta-0.26.11-x86_64-1.txz: Upgraded.
kde/okular-23.04.1-x86_64-2.txz: Rebuilt.
Recompiled against poppler-23.06.0.
l/enchant-2.5.0-x86_64-1.txz: Upgraded.
l/gtk4-4.10.4-x86_64-1.txz: Upgraded.
l/mozilla-nss-3.90-x86_64-1.txz: Upgraded.
l/openexr-3.1.8-x86_64-1.txz: Upgraded.
l/poppler-23.06.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/qtkeychain-0.14.1-x86_64-1.txz: Upgraded.
n/krb5-1.21-x86_64-1.txz: Upgraded.
n/ntp-4.2.8p17-x86_64-1.txz: Upgraded.
This is a bugfix release.
n/postfix-3.8.1-x86_64-1.txz: Upgraded.
x/xorg-server-xwayland-23.1.2-x86_64-1.txz: Upgraded.
x/xorgproto-2023.1-x86_64-1.txz: Upgraded.
xap/mozilla-firefox-114.0-x86_64-1.txz: Upgraded.
This update contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/firefox/114.0/releasenotes/
https://www.mozilla.org/security/advisories/mfsa2023-20/
https://www.cve.org/CVERecord?id=CVE-2023-34414
https://www.cve.org/CVERecord?id=CVE-2023-34415
https://www.cve.org/CVERecord?id=CVE-2023-34416
https://www.cve.org/CVERecord?id=CVE-2023-34417
(* Security fix *)
xfce/xfce4-panel-profiles-1.0.14-x86_64-1.txz: Upgraded.
extra/sendmail/sendmail-8.17.2-x86_64-2.txz: Rebuilt.
Recompiled without -DUSE_EAI or ICU libraries as this experimental option
is still leading to regressions.
extra/sendmail/sendmail-cf-8.17.2-noarch-2.txz: Rebuilt.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230606202659 | Patrick J Volkerding | 2023-06-07 | 1 | -7/+7 |
* | Wed May 31 01:29:12 UTC 2023...a/kernel-firmware-20230530_1f9667e-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.31-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.31-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.31-x86_64-1.txz: Upgraded.
a/openssl-solibs-3.1.1-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.31-x86-1.txz: Upgraded.
k/kernel-source-6.1.31-noarch-1.txz: Upgraded.
l/imagemagick-7.1.1_11-x86_64-1.txz: Upgraded.
n/curl-8.1.2-x86_64-1.txz: Upgraded.
This is a bugfix release.
n/openssl-3.1.1-x86_64-1.txz: Upgraded.
This update fixes a security issue:
Possible DoS translating ASN.1 object identifiers.
For more information, see:
https://www.openssl.org/news/secadv/20230530.txt
https://www.cve.org/CVERecord?id=CVE-2023-2650
(* Security fix *)
xfce/xfce4-power-manager-4.18.2-x86_64-1.txz: Upgraded.
xfce/xfce4-screensaver-4.18.2-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230531012912 | Patrick J Volkerding | 2023-05-31 | 1 | -7/+7 |
* | Thu May 25 00:24:33 UTC 2023...a/elilo-3.16-x86_64-16.txz: Rebuilt.
eliloconfig: don't mess with mounting efivarfs. This should be handled by
rc.S, or by whatever the admin put in /etc/fstab.
a/kernel-firmware-20230523_1ba3519-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.30-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.30-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.30-x86_64-1.txz: Upgraded.
a/sysvinit-scripts-15.1-noarch-5.txz: Rebuilt.
rc.S: mount efivarfs rw, may be overridden in /etc/default/efivarfs.
ap/sc-im-0.8.3-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.30-x86-1.txz: Upgraded.
d/parallel-20230522-noarch-1.txz: Upgraded.
k/kernel-source-6.1.30-noarch-1.txz: Upgraded.
l/enchant-2.4.0-x86_64-1.txz: Upgraded.
l/glib2-2.76.3-x86_64-1.txz: Upgraded.
l/gtk+3-3.24.38-x86_64-1.txz: Upgraded.
l/qt5-5.15.9_20230523_245f369c-x86_64-1.txz: Upgraded.
This update fixes a security issue.
Qt-based clients may mismatch HSTS headers (Strict-Transport-Security),
which would prevent the client from switching to a secure HTTPS
connection as requested by a server.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2023-32762
(* Security fix *)
n/curl-8.1.1-x86_64-1.txz: Upgraded.
This is a bugfix release.
t/texlive-2023.230322-x86_64-3.txz: Rebuilt.
This update patches a security issue:
LuaTeX before 1.17.0 allows execution of arbitrary shell commands when
compiling a TeX file obtained from an untrusted source. This occurs
because luatex-core.lua lets the original io.popen be accessed. This also
affects TeX Live before 2023 r66984 and MiKTeX before 23.5.
Thanks to Johannes Schoepfer.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2023-32700
(* Security fix *)
xap/mozilla-firefox-113.0.2-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/firefox/113.0.2/releasenotes/
xfce/libxfce4ui-4.18.4-x86_64-1.txz: Upgraded.
xfce/xfce4-panel-4.18.4-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230525002433 | Patrick J Volkerding | 2023-05-25 | 1 | -7/+7 |
* | Wed May 17 20:59:51 UTC 2023...a/etc-15.1-x86_64-3.txz: Rebuilt.
/etc/group: Added kvm (GID 36).
a/eudev-3.2.12-x86_64-2.txz: Rebuilt.
In 50-udev-default.rules, comment out the lines for SGX.
a/kernel-firmware-20230517_601c181-noarch-1.txz: Upgraded.
a/kernel-generic-6.1.29-x86_64-1.txz: Upgraded.
a/kernel-huge-6.1.29-x86_64-1.txz: Upgraded.
a/kernel-modules-6.1.29-x86_64-1.txz: Upgraded.
d/kernel-headers-6.1.29-x86-1.txz: Upgraded.
d/llvm-16.0.4-x86_64-1.txz: Upgraded.
k/kernel-source-6.1.29-noarch-1.txz: Upgraded.
kde/kde-cli-tools-5.27.5.1-x86_64-1.txz: Upgraded.
l/fribidi-1.0.13-x86_64-1.txz: Upgraded.
l/pipewire-0.3.71-x86_64-1.txz: Upgraded.
n/bind-9.18.15-x86_64-1.txz: Upgraded.
This is a bugfix release.
n/curl-8.1.0-x86_64-1.txz: Upgraded.
This update fixes security issues:
more POST-after-PUT confusion.
IDN wildcard match.
siglongjmp race condition.
UAF in SSH sha256 fingerprint check.
For more information, see:
https://curl.se/docs/CVE-2023-28322.html
https://curl.se/docs/CVE-2023-28321.html
https://curl.se/docs/CVE-2023-28320.html
https://curl.se/docs/CVE-2023-28319.html
https://www.cve.org/CVERecord?id=CVE-2023-28322
https://www.cve.org/CVERecord?id=CVE-2023-28321
https://www.cve.org/CVERecord?id=CVE-2023-28320
https://www.cve.org/CVERecord?id=CVE-2023-28319
(* Security fix *)
x/libwacom-2.7.0-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20230517205951 | Patrick J Volkerding | 2023-05-17 | 1 | -7/+7 |