| Commit message (Expand) | Author | Age | Files | Lines |
* | Sat Dec 21 01:04:26 UTC 2019...a/aaa_elflibs-15.0-x86_64-17.txz: Rebuilt.
Upgraded: libcap.so.2.28, libelf-0.178.so, libglib-2.0.so.0.6200.4,
libgmodule-2.0.so.0.6200.4, libgobject-2.0.so.0.6200.4,
libgthread-2.0.so.0.6200.4, libidn2.so.0.3.7, libpcre2-8.so.0.9.0,
libtdb.so.1.4.3.
Added: libffi.so.6.0.4, libffi.so.7.1.0.
a/file-5.38-x86_64-2.txz: Rebuilt.
Patched to fix ELF shared libraries misidentified as "statically linked."
a/kernel-firmware-20191220_6871bff-noarch-1.txz: Upgraded.
a/openssl10-solibs-1.0.2u-x86_64-1.txz: Upgraded.
(* Security fix *)
d/guile-2.2.6-x86_64-2.txz: Rebuilt.
Recompiled against libffi-3.3.
d/llvm-9.0.1-x86_64-1.txz: Upgraded.
Compiled against libffi-3.3.
d/python-2.7.17-x86_64-2.txz: Rebuilt.
Recompiled against libffi-3.3.
d/python3-3.7.6-x86_64-1.txz: Upgraded.
Compiled against libffi-3.3.
d/ruby-2.6.5-x86_64-2.txz: Rebuilt.
Recompiled against libffi-3.3.
l/glib2-2.62.4-x86_64-2.txz: Rebuilt.
Recompiled against libffi-3.3.
l/libffi-3.3-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/libvpx-1.8.2-x86_64-1.txz: Upgraded.
l/pygobject-2.28.7-x86_64-4.txz: Rebuilt.
Recompiled against libffi-3.3.
l/pygobject3-3.34.0-x86_64-2.txz: Rebuilt.
Recompiled against libffi-3.3.
l/sip-4.19.20-x86_64-1.txz: Upgraded.
n/cifs-utils-6.10-x86_64-1.txz: Upgraded.
n/dhcpcd-8.1.3-x86_64-1.txz: Upgraded.
n/openssl10-1.0.2u-x86_64-1.txz: Upgraded.
This update fixes a low severity security issue:
Fixed an an overflow bug in the x86_64 Montgomery squaring procedure used in
exponentiation with 512-bit moduli.
For more information, see:
https://www.openssl.org/news/secadv/20191206.txt
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1551
(* Security fix *)
n/p11-kit-0.23.18.1-x86_64-2.txz: Rebuilt.
Recompiled against libffi-3.3.
extra/tigervnc/tigervnc-1.10.1-x86_64-1.txz: Upgraded.
From tigervnc.org: "This is a security release to fix a number of issues
that were found by Kaspersky Lab. These issues affect both the client and
server and could theoretically allow a malicious peer to take control
over the software on the other side. No working exploit is known at this
time, and the issues require the peer to first be authenticated. We still
urge users to upgrade when possible."
(* Security fix *)
20191221010426 | Patrick J Volkerding | 2019-12-21 | 3 | -2/+2 |
* | Thu Dec 19 23:02:54 UTC 2019...d/cmake-3.16.2-x86_64-1.txz: Upgraded.
d/rust-1.40.0-x86_64-1.txz: Upgraded.
Package debloating patches are no longer needed.
No build regressions noted with Firefox, Seamonkey, or Thunderbird.
l/glib2-2.62.4-x86_64-1.txz: Upgraded.
l/imagemagick-7.0.9_9-x86_64-1.txz: Upgraded.
l/wavpack-5.2.0-x86_64-1.txz: Upgraded.
Fixed denial-of-service and other potential security issues.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-19840
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-19841
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10536
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10537
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10538
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10539
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10540
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-7254
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-7253
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-6767
(* Security fix *)
n/bind-9.14.9-x86_64-1.txz: Upgraded.
This is a bugfix release:
Fixed a bug that caused named to leak memory on reconfiguration when
any GeoIP2 database was in use. [GL #1445]
Fixed several possible race conditions discovered by Thread Sanitizer.
n/mutt-1.13.2-x86_64-1.txz: Upgraded.
n/php-7.4.1-x86_64-1.txz: Upgraded.
This update fixes bugs and security issues:
Bcmath: Buffer underflow in bc_shift_addsub.
Core: link() silently truncates after a null byte on Windows.
Core: DirectoryIterator class silently truncates after a null byte.
Core: mail() may release string with refcount==1 twice.
EXIF: Use-after-free in exif parsing under memory sanitizer.
EXIF: Heap-buffer-overflow READ in exif.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11046
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11044
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11045
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11049
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11050
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11047
(* Security fix *)
x/intel-vaapi-driver-2.4.0-x86_64-1.txz: Upgraded.
x/vulkan-sdk-1.1.126.0-x86_64-2.txz: Rebuilt.
Install SPIRV headers in two places to fix building shaderc.
Thanks to orbea.
xfce/exo-0.12.11-x86_64-1.txz: Upgraded.
20191219230254 | Patrick J Volkerding | 2019-12-20 | 3 | -4/+4 |
* | Mon Dec 16 23:13:10 UTC 2019...a/usb_modeswitch-2.5.2-x86_64-2.txz: Rebuilt.
Seems there's a regression in usb_modeswitch-2.6.0, so let's revert to
usb_modeswitch-2.5.2 but keep the latest usb-modeswitch-data-20191128.
Thanks to Lockywolf.
l/fuse3-3.9.0-x86_64-2.txz: Rebuilt.
Install fuse.conf as fuse.conf.new. This won't prevent an existing config
file from being overwritten with this upgrade, but it will prevent that
from happening again moving forward. Thanks to chrisVV.
20191216231310 | Patrick J Volkerding | 2019-12-17 | 1 | -2/+2 |
* | Tue Dec 10 18:52:42 UTC 2019...l/dconf-0.34.0-x86_64-2.txz: Rebuilt.
Rebuilt using the sed replacements suggested by LFS. This fixes a
subsequent build of dconf-editor.
l/glib-networking-2.62.2-x86_64-1.txz: Upgraded.
n/samba-4.11.3-x86_64-1.txz: Upgraded.
This update fixes the following security issues:
Samba AD DC zone-named record Denial of Service in DNS management server.
DelegationNotAllowed was not enforced in protocol transition on Samba AD DC.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14861
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14870
(* Security fix *)
x/vulkan-sdk-1.1.126.0-x86_64-1.txz: Upgraded.
20191210185242 | Patrick J Volkerding | 2019-12-11 | 1 | -2/+2 |
* | Thu Dec 5 19:04:24 UTC 2019...a/tcsh-6.22.02-x86_64-1.txz: Upgraded.
ap/vim-8.1.2391-x86_64-1.txz: Upgraded.
l/fuse3-3.8.0-x86_64-2.txz: Rebuilt.
rc.fuse3: Don't source /lib/lsb/init-functions unless it exists.
NOTE: FUSE seems to work fine without starting rc.fuse3, which it why it
isn't actually called from anywhere during system startup.
n/iw-5.4-x86_64-1.txz: Upgraded.
n/php-7.4.0-x86_64-2.txz: Rebuilt.
Rebuilt using --enable-gd=shared and --with-zip=shared.
Thanks to Matteo Bernardini.
xap/gv-3.7.4-x86_64-3.txz: Rebuilt.
Patched to fix save/print features when used with the latest ghostscript.
Added --enable-international build option.
Fixed broken whitespace in the bounding-box patch.
Thanks to Xsane.
xap/vim-gvim-8.1.2391-x86_64-1.txz: Upgraded.
20191205190424 | Patrick J Volkerding | 2019-12-06 | 1 | -4/+3 |
* | Tue Dec 3 19:07:24 UTC 2019...n/ebtables-2.0.11-x86_64-1.txz: Upgraded.
n/iptables-1.8.4-x86_64-1.txz: Upgraded.
n/libnftnl-1.1.5-x86_64-1.txz: Upgraded.
n/nftables-0.9.3-x86_64-1.txz: Upgraded.
n/whois-5.5.3-x86_64-1.txz: Upgraded.
20191203190724 | Patrick J Volkerding | 2019-12-04 | 10 | -24/+98 |
* | Sun Dec 1 19:45:45 UTC 2019...ap/tmux-3.0a-x86_64-1.txz: Upgraded.
l/alsa-lib-1.2.1.2-x86_64-1.txz: Upgraded.
l/imagemagick-7.0.9_7-x86_64-1.txz: Upgraded.
l/oniguruma-6.9.4-x86_64-1.txz: Added.
This is a regular expressions library needed by PHP.
n/mutt-1.13.0-x86_64-1.txz: Upgraded.
n/php-7.4.0-x86_64-1.txz: Upgraded.
extra/pure-alsa-system/alsa-lib-1.2.1.2-x86_64-1_alsa.txz: Upgraded.
20191201194545 | Patrick J Volkerding | 2019-12-02 | 3 | -38/+21 |
* | Sat Nov 30 21:17:21 UTC 2019...a/kernel-generic-5.4.1-x86_64-1.txz: Upgraded.
a/kernel-huge-5.4.1-x86_64-1.txz: Upgraded.
a/kernel-modules-5.4.1-x86_64-1.txz: Upgraded.
a/tcsh-6.22.00-x86_64-1.txz: Upgraded.
a/usb_modeswitch-2.6.0-x86_64-1.txz: Upgraded.
ap/cups-filters-1.25.13-x86_64-1.txz: Upgraded.
ap/diffstat-1.63-x86_64-1.txz: Upgraded.
ap/nano-4.6-x86_64-1.txz: Upgraded.
d/kernel-headers-5.4.1-x86-1.txz: Upgraded.
d/meson-0.52.1-x86_64-1.txz: Upgraded.
d/strace-5.4-x86_64-1.txz: Upgraded.
k/kernel-source-5.4.1-noarch-1.txz: Upgraded.
l/elfutils-0.178-x86_64-1.txz: Upgraded.
l/python-certifi-2019.11.28-x86_64-1.txz: Upgraded.
n/ca-certificates-20191130-noarch-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20191130211721 | Patrick J Volkerding | 2019-12-01 | 1 | -0/+200 |
* | Mon Nov 25 19:17:07 UTC 2019...e/emacs-26.3-x86_64-3.txz: Rebuilt.
Compiled adding --with-modules option. Thanks to cycojesus.
l/keyutils-1.6-x86_64-2.txz: Rebuilt.
Move pkgconfig directory to /usr/lib${LIBDIRSUFFIX}.
Don't package the static library.
Thanks to Stanson.
l/librsvg-2.46.4-x86_64-1.txz: Upgraded.
l/xapian-core-1.4.14-x86_64-1.txz: Upgraded.
n/NetworkManager-1.20.8-x86_64-1.txz: Upgraded.
n/postfix-3.4.8-x86_64-1.txz: Upgraded.
20191125191707 | Patrick J Volkerding | 2019-11-26 | 2 | -6/+6 |
* | Thu Nov 21 22:19:23 UTC 2019...a/efibootmgr-20191011_e8ce9fe-x86_64-1.txz: Upgraded.
a/efivar-20191015_ca85d51-x86_64-1.txz: Upgraded.
l/libtasn1-4.15.0-x86_64-1.txz: Upgraded.
n/php-7.3.12-x86_64-1.txz: Upgraded.
20191121221923 | Patrick J Volkerding | 2019-11-22 | 1 | -2/+2 |
* | Thu Nov 21 02:24:52 UTC 2019...n/bind-9.14.8-x86_64-1.txz: Upgraded.
This update fixes a security issue:
Set a limit on the number of concurrently served pipelined TCP queries.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-6477
(* Security fix *)
x/mesa-19.2.5-x86_64-1.txz: Upgraded.
20191121022452 | Patrick J Volkerding | 2019-11-21 | 1 | -1/+1 |
* | Sun Nov 17 22:07:53 UTC 2019...ap/qpdf-9.1.0-x86_64-1.txz: Upgraded.
d/check-0.13.0-x86_64-1.txz: Added.
This is needed to build PulseAudio using Meson.
l/alsa-lib-1.2.1-x86_64-2.txz: Rebuilt.
Merge alsa-topology-conf-1.2.1 and alsa-ucm-conf-1.2.1 into the package.
l/pulseaudio-13.0-x86_64-2.txz: Rebuilt.
Rebuilt with meson. This causes esound support to be dropped, but it's
likely that nobody will care.
l/pyparsing-2.4.5-x86_64-1.txz: Upgraded.
extra/pure-alsa-system/alsa-lib-1.2.1-x86_64-2_alsa.txz: Rebuilt.
Merge alsa-topology-conf-1.2.1 and alsa-ucm-conf-1.2.1 into the package.
20191117220753 | Patrick J Volkerding | 2019-11-18 | 1 | -0/+1 |
* | Thu Nov 14 01:44:09 UTC 2019...a/aaa_elflibs-15.0-x86_64-16.txz: Rebuilt.
Upgraded: libisl.so.22.0.0.
a/mcelog-166-x86_64-1.txz: Upgraded.
ap/cups-filters-1.25.12-x86_64-1.txz: Upgraded.
d/gcc-9.2.0-x86_64-4.txz: Rebuilt.
d/gcc-brig-9.2.0-x86_64-4.txz: Rebuilt.
d/gcc-g++-9.2.0-x86_64-4.txz: Rebuilt.
d/gcc-gdc-9.2.0-x86_64-4.txz: Rebuilt.
Restored the static libraries since dynamic linking doesn't work without a
command-line option.
d/gcc-gfortran-9.2.0-x86_64-4.txz: Rebuilt.
d/gcc-gnat-9.2.0-x86_64-4.txz: Rebuilt.
d/gcc-go-9.2.0-x86_64-4.txz: Rebuilt.
d/gcc-objc-9.2.0-x86_64-4.txz: Rebuilt.
l/imagemagick-7.0.9_3-x86_64-1.txz: Upgraded.
n/dhcpcd-8.1.2-x86_64-1.txz: Upgraded.
20191114014409 | Patrick J Volkerding | 2019-11-14 | 2 | -1/+1 |
* | Thu Nov 7 21:35:45 UTC 2019...l/system-config-printer-1.5.12-x86_64-1.txz: Upgraded.
n/sshfs-3.6.0-x86_64-1.txz: Upgraded.
xap/mozilla-thunderbird-68.2.2-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/68.2.2/releasenotes/
20191107213545 | Patrick J Volkerding | 2019-11-08 | 1 | -3/+3 |
* | Wed Nov 6 21:14:40 UTC 2019...a/cpio-2.13-x86_64-1.txz: Upgraded.
a/kernel-generic-4.19.82-x86_64-1.txz: Upgraded.
a/kernel-huge-4.19.82-x86_64-1.txz: Upgraded.
a/kernel-modules-4.19.82-x86_64-1.txz: Upgraded.
ap/hplip-3.19.11-x86_64-1.txz: Upgraded.
d/kernel-headers-4.19.82-x86-1.txz: Upgraded.
d/mercurial-5.2-x86_64-1.txz: Upgraded.
k/kernel-source-4.19.82-noarch-1.txz: Upgraded.
l/python-six-1.13.0-x86_64-1.txz: Upgraded.
l/shared-mime-info-1.15-x86_64-1.txz: Upgraded.
l/zstd-1.4.4-x86_64-1.txz: Upgraded.
n/ModemManager-1.12.0-x86_64-1.txz: Upgraded.
n/NetworkManager-1.20.6-x86_64-1.txz: Upgraded.
n/curl-7.67.0-x86_64-1.txz: Upgraded.
n/libmbim-1.20.2-x86_64-1.txz: Upgraded.
x/mesa-19.2.3-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20191106211440 | Patrick J Volkerding | 2019-11-07 | 1 | -46/+2 |
* | Fri Nov 1 19:35:34 UTC 2019...l/gcr-3.34.0-x86_64-1.txz: Upgraded.
l/gnome-keyring-3.34.0-x86_64-1.txz: Upgraded.
n/crda-4.14-x86_64-1.txz: Upgraded.
Upgraded to crda-4.14 and wireless-regdb-2019.06.03.
xap/blueman-2.1.1-x86_64-1.txz: Upgraded.
extra/source/flashplayer-plugin/flashplayer-plugin.SlackBuild: Upgraded.
Fixed URL to retrieve latest version number.
20191101193534 | Patrick J Volkerding | 2019-11-02 | 2 | -4/+5 |
* | Thu Oct 31 21:31:50 UTC 2019...a/kernel-firmware-20191030_9e194c7-noarch-1.txz: Upgraded.
d/cmake-3.15.5-x86_64-1.txz: Upgraded.
l/imagemagick-6.9.10_71-x86_64-1.txz: Upgraded.
l/libxml2-2.9.10-x86_64-1.txz: Upgraded.
l/libxslt-1.1.34-x86_64-1.txz: Upgraded.
n/bluez-5.52-x86_64-1.txz: Upgraded.
xap/mozilla-thunderbird-68.2.1-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/68.2.1/releasenotes/
Added option: --disable-updater
20191031213150 | Patrick J Volkerding | 2019-11-01 | 2 | -3/+9 |
* | Tue Oct 29 20:09:01 UTC 2019...a/aaa_elflibs-15.0-x86_64-14.txz: Rebuilt.
Upgraded: libglib-2.0.so.0.6200.2, libgmodule-2.0.so.0.6200.2,
libgobject-2.0.so.0.6200.2, libgthread-2.0.so.0.6200.2.
Added: libgomp.so.1.0.0.
a/kernel-firmware-20191029_4065643-noarch-1.txz: Upgraded.
a/kernel-generic-4.19.81-x86_64-1.txz: Upgraded.
a/kernel-huge-4.19.81-x86_64-1.txz: Upgraded.
a/kernel-modules-4.19.81-x86_64-1.txz: Upgraded.
ap/sudo-1.8.29-x86_64-1.txz: Upgraded.
d/kernel-headers-4.19.81-x86-1.txz: Upgraded.
d/python-setuptools-41.6.0-x86_64-1.txz: Upgraded.
k/kernel-source-4.19.81-noarch-1.txz: Upgraded.
l/harfbuzz-2.6.3-x86_64-1.txz: Upgraded.
n/samba-4.11.2-x86_64-1.txz: Upgraded.
This update fixes bugs and these security issues:
Client code can return filenames containing path separators.
Samba AD DC check password script does not receive the full password.
User with "get changes" permission can crash AD DC LDAP server via dirsync.
For more information, see:
https://www.samba.org/samba/security/CVE-2019-10218.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-10218
https://www.samba.org/samba/security/CVE-2019-14833.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14833
https://www.samba.org/samba/security/CVE-2019-14847.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14847
(* Security fix *)
x/libglvnd-1.2.0-x86_64-4.txz: Rebuilt.
Applied upstream patches to fix EGL/eglplatform.h.
x/xorg-server-1.20.5-x86_64-3.txz: Rebuilt.
#define EGL_NO_X11 to fix glamor build against libglvnd-1.2.0.
x/xorg-server-xephyr-1.20.5-x86_64-3.txz: Rebuilt.
x/xorg-server-xnest-1.20.5-x86_64-3.txz: Rebuilt.
x/xorg-server-xvfb-1.20.5-x86_64-3.txz: Rebuilt.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20191029200901 | Patrick J Volkerding | 2019-10-30 | 1 | -2/+2 |
* | Tue Oct 22 18:48:37 UTC 2019...a/btrfs-progs-5.3-x86_64-1.txz: Upgraded.
a/kernel-firmware-20191022_2b016af-noarch-1.txz: Upgraded.
d/parallel-20191022-noarch-1.txz: Upgraded.
l/glib2-2.62.2-x86_64-1.txz: Upgraded.
l/python-pillow-6.2.1-x86_64-1.txz: Upgraded.
n/php-7.3.11-x86_64-1.txz: Upgraded.
This update fixes bugs and a security issue:
FPM: env_path_info underflow in fpm_main.c can lead to RCE.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11043
(* Security fix *)
x/xkeyboard-config-2.28-noarch-1.txz: Upgraded.
xap/mozilla-firefox-68.2.0esr-x86_64-1.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/firefox/68.2.0/releasenotes/
https://www.mozilla.org/security/known-vulnerabilities/firefoxESR.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15903
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11757
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11758
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11759
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11760
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11761
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11762
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11763
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11764
(* Security fix *)
20191022184837 | Patrick J Volkerding | 2019-10-23 | 2 | -3/+3 |
* | Sun Oct 20 19:39:21 UTC 2019...d/python-2.7.17-x86_64-1.txz: Upgraded.
This update fixes bugs and security issues:
Update vendorized expat library version to 2.2.8.
Disallow URL paths with embedded whitespace or control characters into the
underlying http client request. Such potentially malicious header injection
URLs now cause an httplib.InvalidURL exception to be raised.
Avoid file reading by disallowing ``local-file://`` and ``local_file://``
URL schemes in :func:`urllib.urlopen`, :meth:`urllib.URLopener.open` and
:meth:`urllib.URLopener.retrieve`.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15903
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-9740
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-9948
(* Security fix *)
n/proftpd-1.3.6b-x86_64-1.txz: Upgraded.
20191020193921 | Patrick J Volkerding | 2019-10-21 | 1 | -2/+2 |
* | Fri Oct 18 21:00:50 UTC 2019...a/getty-ps-2.1.0b-x86_64-4.txz: Removed.
a/lha-114i-x86_64-2.txz: Removed.
Removed due to vague licensing terms.
a/lhasa-0.3.1-x86_64-1.txz: Added.
This is an extraction-only LHA utility with an OSI approved license.
a/shadow-4.7-x86_64-2.txz: Rebuilt.
Added /etc/environment.new to fix "sudo -i" noise.
ap/lm_sensors-3.6.0-x86_64-1.txz: Upgraded.
ap/vim-8.1.2174-x86_64-1.txz: Upgraded.
l/netpbm-10.88.00-x86_64-1.txz: Upgraded.
n/ca-certificates-20191018-noarch-1.txz: Upgraded.
n/samba-4.11.1-x86_64-1.txz: Upgraded.
xap/vim-gvim-8.1.2174-x86_64-1.txz: Upgraded.
xap/xfractint-20.04p13-x86_64-2.txz: Removed.
xap/xv-3.10a-x86_64-9.txz: Removed.
extra/getty-ps/getty-ps-2.1.0b-x86_64-4.txz: Rebuilt.
Moved here from the A series due to commercial use restrictions.
extra/xfractint/xfractint-20.04p14-x86_64-1.txz: Upgraded.
Moved here from the XAP series due to commercial use restrictions.
extra/xv/xv-3.10a-x86_64-9.txz: Rebuilt.
Moved here from the XAP series due to non-commercial use shareware license.
20191018210050 | Patrick J Volkerding | 2019-10-19 | 2 | -15/+315 |
* | Fri Oct 18 00:58:04 UTC 2019...a/kernel-generic-4.19.80-x86_64-1.txz: Upgraded.
a/kernel-huge-4.19.80-x86_64-1.txz: Upgraded.
a/kernel-modules-4.19.80-x86_64-1.txz: Upgraded.
d/kernel-headers-4.19.80-x86-1.txz: Upgraded.
k/kernel-source-4.19.80-noarch-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20191018005804 | Patrick J Volkerding | 2019-10-18 | 1 | -1/+1 |
* | Wed Oct 16 19:14:09 UTC 2019...ap/sudo-1.8.28p1-x86_64-1.txz: Upgraded.
This is a bugfix release:
A fix in sudo-1.8.28 caused "sudo -v" to prompt for a password when
"verifypw" is set to "all" (the default) and all of the user's sudoers
entries are marked with NOPASSWD.
l/xapian-core-1.4.13-x86_64-1.txz: Upgraded.
n/dhcpcd-8.1.1-x86_64-1.txz: Upgraded.
x/xf86-input-wacom-0.38.0-x86_64-1.txz: Upgraded.
20191016191409 | Patrick J Volkerding | 2019-10-17 | 2 | -1/+1 |
* | Tue Oct 15 20:58:56 UTC 2019...ap/ghostscript-9.50-x86_64-1.txz: Upgraded.
d/icecream-1.3-x86_64-2.txz: Rebuilt.
Have the profile scripts just check for -x /etc/rc.d/rc.iceccd, since pgrep
with --ns $$ isn't working for non-root users. Thanks to Leopold E. Midha.
d/python-pip-19.3-x86_64-1.txz: Upgraded.
n/bluez-5.51-x86_64-2.txz: Rebuilt.
Fixed path to obexd in org.bluez.obex.service.
Thanks to Jean-Philippe Guillemin.
x/xf86-video-ati-19.1.0-x86_64-1.txz: Upgraded.
20191015205856 | Patrick J Volkerding | 2019-10-16 | 2 | -3/+3 |
* | Sun Oct 13 19:01:25 UTC 2019...a/pkgtools-15.0-noarch-26.txz: Rebuilt.
upgradepkg: add spaces to --dry-run package list. Thanks to Markus Wiesner.
l/aspell-0.60.8-x86_64-1.txz: Upgraded.
n/network-scripts-15.0-noarch-9.txz: Rebuilt.
rc.inet1: Fix typos and spacing.
rc.inet2: Start rc.firewall first. This had been later in the script due to
the now unsupported idea of having /usr on NFS. Thanks to abga.
rc.inet2: If present and executable, start the Kerberos init scripts.
rc.inet2: Remove obsolete rpc.pcnfsd/rpc.bwnfsd section from the end.
n/proftpd-1.3.6a-x86_64-1.txz: Upgraded.
xap/pan-0.146-x86_64-1.txz: Upgraded.
20191013190125 | Patrick J Volkerding | 2019-10-13 | 4 | -45/+55 |
* | Tue Oct 8 19:11:03 UTC 2019...a/kernel-firmware-20191008_aa95e90-noarch-1.txz: Upgraded.
ap/cups-filters-1.25.7-x86_64-1.txz: Upgraded.
l/at-spi2-atk-2.34.1-x86_64-1.txz: Upgraded.
l/dconf-editor-3.34.2-x86_64-1.txz: Upgraded.
l/gdk-pixbuf2-2.40.0-x86_64-1.txz: Upgraded.
l/librsvg-2.46.1-x86_64-1.txz: Upgraded.
l/vte-0.58.1-x86_64-1.txz: Upgraded.
n/dovecot-2.3.8-x86_64-1.txz: Upgraded.
xap/xpdf-4.02-x86_64-2.txz: Rebuilt.
Applied crash fix patch from Poprocks.
20191008191103 | Patrick J Volkerding | 2019-10-09 | 1 | -1/+1 |
* | Mon Oct 7 23:31:57 UTC 2019...a/kernel-generic-4.19.78-x86_64-1.txz: Upgraded.
a/kernel-huge-4.19.78-x86_64-1.txz: Upgraded.
a/kernel-modules-4.19.78-x86_64-1.txz: Upgraded.
d/kernel-headers-4.19.78-x86-1.txz: Upgraded.
d/meson-0.52.0-x86_64-1.txz: Upgraded.
d/python-setuptools-41.4.0-x86_64-1.txz: Upgraded.
k/kernel-source-4.19.78-noarch-1.txz: Upgraded.
l/gvfs-1.42.1-x86_64-1.txz: Upgraded.
l/imagemagick-6.9.10_68-x86_64-1.txz: Upgraded.
n/autofs-5.1.6-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20191007233157 | Patrick J Volkerding | 2019-10-08 | 1 | -7/+2 |
* | Mon Oct 7 04:41:29 UTC 2019...a/aaa_elflibs-15.0-x86_64-12.txz: Rebuilt.
Upgraded: libexpat.so.1.6.11, libglib-2.0.so.0.6200.1,
libgmodule-2.0.so.0.6200.1, libgobject-2.0.so.0.6200.1,
libgthread-2.0.so.0.6200.1.
Added temporarily until third party packages have been recompiled:
libicudata.so.64.2, libicui18n.so.64.2, libicuio.so.64.2,
libicutest.so.64.2, libicutu.so.64.2, libicuuc.so.64.2.
a/xfsprogs-5.2.1-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-65.1.
ap/sqlite-3.30.0-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-65.1.
kde/calligra-2.9.11-x86_64-32.txz: Rebuilt.
Recompiled against icu4c-65.1.
l/boost-1.71.0-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-65.1.
l/harfbuzz-2.6.2-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-65.1.
l/icu4c-65.1-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/libical-3.0.6-x86_64-3.txz: Rebuilt.
Recompiled against icu4c-65.1.
l/libvisio-0.1.7-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-65.1.
l/qt-4.8.7-x86_64-14.txz: Rebuilt.
Recompiled against icu4c-65.1.
l/raptor2-2.0.15-x86_64-8.txz: Rebuilt.
Recompiled against icu4c-65.1.
n/dovecot-2.3.7.2-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-65.1.
n/php-7.3.10-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-65.1.
n/postfix-3.4.7-x86_64-2.txz: Rebuilt.
Recompiled against icu4c-65.1.
n/samba-4.11.0-x86_64-1.txz: Upgraded.
n/tin-2.4.3-x86_64-3.txz: Rebuilt.
Recompiled against icu4c-65.1.
t/texlive-2019.190626-x86_64-3.txz: Rebuilt.
Recompiled against icu4c-65.1.
20191007044129 | Patrick J Volkerding | 2019-10-07 | 5 | -6/+6 |
* | Wed Oct 2 06:46:20 UTC 2019...a/kernel-generic-4.19.76-x86_64-1.txz: Upgraded.
a/kernel-huge-4.19.76-x86_64-1.txz: Upgraded.
a/kernel-modules-4.19.76-x86_64-1.txz: Upgraded.
ap/sysstat-12.1.7-x86_64-1.txz: Upgraded.
d/kernel-headers-4.19.76-x86-1.txz: Upgraded.
d/ruby-2.6.5-x86_64-1.txz: Upgraded.
This update fixes bugs and security issues:
A code injection vulnerability of Shell#[] and Shell#test.
HTTP response splitting in WEBrick (Additional fix).
A NUL injection vulnerability of File.fnmatch and File.fnmatch?.
Regular Expression Denial of Service vulnerability of WEBrick's Digest
access authentication.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-16255
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-16254
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15845
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-16201
(* Security fix *)
k/kernel-source-4.19.76-noarch-1.txz: Upgraded.
l/harfbuzz-2.6.2-x86_64-1.txz: Upgraded.
l/libpcap-1.9.1-x86_64-1.txz: Upgraded.
n/p11-kit-0.23.18.1-x86_64-1.txz: Upgraded.
n/tcpdump-4.9.3-x86_64-1.txz: Upgraded.
Fix buffer overflow/overread vulnerabilities and command line
argument/local issues.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-16808
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14468
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14469
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14470
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14466
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14461
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14462
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14465
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14881
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14464
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14463
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14467
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10103
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10105
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14880
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16451
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14882
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16227
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16229
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16301
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16230
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16452
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16300
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16228
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15166
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15167
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14879
(* Security fix *)
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20191002064620 | Patrick J Volkerding | 2019-10-02 | 2 | -5/+4 |
* | Mon Sep 30 21:08:32 UTC 2019...d/llvm-9.0.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
Thanks to orbea for getting this working and cleaning up the build script.
d/vala-0.46.2-x86_64-1.txz: Upgraded.
l/imagemagick-6.9.10_67-x86_64-1.txz: Upgraded.
Fixed --disable-opencl configure option. Thanks to Markus Wiesner for the
bug report and to upstream for the quick fix.
n/NetworkManager-1.20.4-x86_64-1.txz: Upgraded.
n/gnutls-3.6.10-x86_64-1.txz: Upgraded.
x/freeglut-3.2.1-x86_64-1.txz: Upgraded.
x/libglvnd-1.1.1-x86_64-2.txz: Upgraded.
Reverted to this version since I'm seeing some errors linking with Mesa
libraries with the newer one. Thanks to nobodino for the bug report.
x/mesa-19.2.0-x86_64-2.txz: Rebuilt.
Recompiled against llvm-9.0.0 and libglvnd-1.1.1.
x/xf86-video-vmware-13.3.0-x86_64-3.txz: Rebuilt.
Recompiled against llvm-9.0.0.
20190930210832 | Patrick J Volkerding | 2019-10-01 | 122 | -309/+309 |
* | Sat Sep 28 19:23:35 UTC 2019...a/f2fs-tools-1.13.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
ap/rpm-4.15.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
d/rust-1.38.0-x86_64-1.txz: Upgraded.
It seems that rust-1.38.0 builds fewer shared objects causing the package
size to bloat to almost double. I held this back overnight to compile some
modified builds to see if the old build behavior could be restored but
didn't have any luck, so I'll put this out as-is for now. Any help debloating
this package would be appreciated. Note that it also had to be bootstrapped
from the official binaries using LOCAL_BOOTSTRAP=NO. That's not all that
unusual for Rust, but perhaps that's another problem...
l/fribidi-1.0.7-x86_64-1.txz: Upgraded.
l/fuse3-3.7.0-x86_64-1.txz: Upgraded.
n/fetchmail-6.4.1-x86_64-1.txz: Upgraded.
20190928192335 | Patrick J Volkerding | 2019-09-29 | 2 | -3/+2 |
* | Tue Sep 24 21:18:36 UTC 2019...a/e2fsprogs-1.45.4-x86_64-1.txz: Upgraded.
ap/cups-filters-1.25.6-x86_64-1.txz: Upgraded.
ap/texinfo-6.7-x86_64-1.txz: Upgraded.
l/gst-plugins-base-1.16.1-x86_64-1.txz: Upgraded.
l/gst-plugins-good-1.16.1-x86_64-1.txz: Upgraded.
l/gst-plugins-libav-1.16.1-x86_64-1.txz: Upgraded.
l/gstreamer-1.16.1-x86_64-1.txz: Upgraded.
n/ethtool-5.3-x86_64-1.txz: Upgraded.
n/php-7.3.10-x86_64-1.txz: Upgraded.
This update fixes bugs and a security issue:
MBString: Fixed bug #78559 (Heap buffer overflow in mb_eregi). (cmb)
For more information, see:
https://php.net/ChangeLog-7.php#7.3.10
(* Security fix *)
x/libXvMC-1.0.12-x86_64-1.txz: Upgraded.
x/libmypaint-1.4.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
xap/gimp-2.10.12-x86_64-2.txz: Rebuilt.
Recompiled against libmypaint-1.4.0.
extra/pure-alsa-system/gst-plugins-good-1.16.1-x86_64-1_alsa.txz: Upgraded.
20190924211836 | Patrick J Volkerding | 2019-09-25 | 1 | -2/+2 |
* | Sun Sep 22 19:22:20 UTC 2019...d/parallel-20190922-noarch-1.txz: Upgraded.
n/mutt-1.12.2-x86_64-1.txz: Upgraded.
n/postfix-3.4.7-x86_64-1.txz: Upgraded.
20190922192220 | Patrick J Volkerding | 2019-09-23 | 1 | -1/+1 |
* | Fri Sep 20 22:51:48 UTC 2019...ap/qpdf-9.0.1-x86_64-1.txz: Upgraded.
l/glibmm-2.62.0-x86_64-1.txz: Upgraded.
l/libusb-1.0.23-x86_64-1.txz: Upgraded.
l/python-urllib3-1.25.5-x86_64-1.txz: Upgraded.
n/bluez-5.51-x86_64-1.txz: Upgraded.
20190920225148 | Patrick J Volkerding | 2019-09-21 | 3 | -10/+8 |
* | Thu Sep 19 22:48:58 UTC 2019...Thanks to Robby Workman for helping upgrade the GTK stack!
a/kernel-generic-4.19.74-x86_64-1.txz: Upgraded.
a/kernel-huge-4.19.74-x86_64-1.txz: Upgraded.
a/kernel-modules-4.19.74-x86_64-1.txz: Upgraded.
d/kernel-headers-4.19.74-x86-1.txz: Upgraded.
d/vala-0.46.1-x86_64-1.txz: Upgraded.
k/kernel-source-4.19.74-noarch-1.txz: Upgraded.
l/adwaita-icon-theme-3.34.0-noarch-1.txz: Upgraded.
l/at-spi2-atk-2.34.0-x86_64-1.txz: Upgraded.
l/at-spi2-core-2.34.0-x86_64-1.txz: Upgraded.
l/atk-2.34.1-x86_64-1.txz: Upgraded.
l/dconf-0.34.0-x86_64-1.txz: Upgraded.
l/dconf-editor-3.34.1-x86_64-1.txz: Upgraded.
l/fuse3-3.6.2-x86_64-1.txz: Added.
This is required by gvfs and sshfs.
l/glib-networking-2.62.0-x86_64-1.txz: Upgraded.
l/glib2-2.62.0-x86_64-1.txz: Upgraded.
l/gnome-themes-extra-3.28-x86_64-1.txz: Added.
l/gnome-themes-standard-3.22.3-x86_64-2.txz: Removed.
Upstream has renamed this to gnome-themes-extra.
l/gobject-introspection-1.62.0-x86_64-1.txz: Upgraded.
l/gsettings-desktop-schemas-3.34.0-x86_64-1.txz: Upgraded.
l/gvfs-1.42.0-x86_64-1.txz: Upgraded.
l/imagemagick-6.9.10_65-x86_64-1.txz: Upgraded.
l/librsvg-2.46.0-x86_64-1.txz: Upgraded.
l/libsoup-2.68.1-x86_64-1.txz: Upgraded.
l/pygobject3-3.34.0-x86_64-1.txz: Upgraded.
l/python-packaging-19.2-x86_64-1.txz: Upgraded.
l/vte-0.58.0-x86_64-1.txz: Upgraded.
n/bind-9.14.6-x86_64-1.txz: Upgraded.
n/sshfs-3.5.2-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20190919224858 | Patrick J Volkerding | 2019-09-20 | 3 | -32/+21 |
* | Wed Sep 18 23:13:34 UTC 2019...d/python-2.7.16-x86_64-3.txz: Rebuilt.
Rebuilt against glibc-2.30 to get rid of #define HAVE_STROPTS_H 1
in pyconfig.h. Thanks to ecd102.
d/python3-3.7.4-x86_64-2.txz: Rebuilt.
Rebuilt against glibc-2.30 to get rid of #define HAVE_STROPTS_H 1
in pyconfig.h. Thanks to ecd102.
n/openobex-1.7.2-x86_64-3.txz: Rebuilt.
Build/install extra openobex apps. Thanks to Dave Woodfall.
x/xf86-video-intel-20190724_6f4972d5-x86_64-1.txz: Upgraded.
extra/google-chrome/google-chrome.SlackBuild: Upgraded.
Patched the packaging script to handle either control.tar.gz or
control.tar.xz.
20190918231334 | Patrick J Volkerding | 2019-09-19 | 1 | -1/+2 |
* | Tue Sep 17 21:01:20 UTC 2019...a/eudev-3.2.8-x86_64-2.txz: Rebuilt.
Blacklisted mlx_wdt in watchdog.conf. Thanks to Robby Workman.
l/libical-3.0.6-x86_64-1.txz: Upgraded.
n/rpcbind-1.2.5-x86_64-2.txz: Rebuilt.
Added patch from git master to fix a segfault.
Fixed application of the next patch.
Thanks to Robby Workman.
x/freeglut-3.2.0-x86_64-1.txz: Upgraded.
x/mesa-19.1.7-x86_64-1.txz: Upgraded.
20190917210120 | Patrick J Volkerding | 2019-09-18 | 2 | -2/+74 |
* | Sun Sep 15 21:15:56 UTC 2019...a/procps-ng-3.3.15-x86_64-3.txz: Rebuilt.
Upgraded to psmisc-23.2.
ap/xfsdump-3.1.8-x86_64-3.txz: Rebuilt.
Rebuilt against xfsprogs-5.2.1. Thanks to nobodino.
l/sip-4.19.19-x86_64-1.txz: Upgraded.
n/ModemManager-1.10.6-x86_64-1.txz: Upgraded.
n/dhcpcd-8.0.6-x86_64-1.txz: Upgraded.
x/libXfont2-2.0.4-x86_64-1.txz: Upgraded.
20190915211556 | Patrick J Volkerding | 2019-09-16 | 2 | -1/+1 |
* | Thu Sep 12 03:58:53 UTC 2019...a/glibc-zoneinfo-2019c-noarch-1.txz: Upgraded.
This package provides the latest timezone updates.
a/openssl-solibs-1.1.1d-x86_64-1.txz: Upgraded.
a/openssl10-solibs-1.0.2t-x86_64-1.txz: Upgraded.
ap/mariadb-10.4.8-x86_64-1.txz: Upgraded.
l/netpbm-10.87.02-x86_64-1.txz: Upgraded.
n/curl-7.66.0-x86_64-1.txz: Upgraded.
This update fixes security issues:
FTP-KRB double-free
TFTP small blocksize heap buffer overflow
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-5481
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-5482
(* Security fix *)
n/openssl-1.1.1d-x86_64-1.txz: Upgraded.
This update fixes low severity security issues:
Fixed a fork protection issue
Fixed a padding oracle in PKCS7_dataDecode and CMS_decrypt_set1_pkey
Compute ECC cofactors if not provided during EC_GROUP construction
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1549
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1563
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1547
(* Security fix *)
n/openssl10-1.0.2t-x86_64-1.txz: Upgraded.
This update fixes low severity security issues:
Fixed a padding oracle in PKCS7_dataDecode and CMS_decrypt_set1_pkey
Compute ECC cofactors if not provided during EC_GROUP construction
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1563
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1547
(* Security fix *)
n/p11-kit-0.23.17-x86_64-1.txz: Upgraded.
xap/mozilla-thunderbird-68.1.0-x86_64-1.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/68.1.0/releasenotes/
https://www.mozilla.org/security/known-vulnerabilities/thunderbird.html
(* Security fix *)
extra/google-chrome/google-chrome.SlackBuild: Upgraded.
Patched the packaging script to account for the internal change
of control.tar.gz to control.tar.xz.
Thanks to _RDS_ and Tim Thomas who both provided the same patch.
20190912035853 | Patrick J Volkerding | 2019-09-12 | 1 | -33/+2 |
* | Tue Sep 10 21:28:36 UTC 2019...a/glibc-solibs-2.30-x86_64-1.txz: Upgraded.
a/kernel-firmware-20190909_6c6918a-noarch-1.txz: Upgraded.
a/kernel-generic-4.19.72-x86_64-1.txz: Upgraded.
a/kernel-huge-4.19.72-x86_64-1.txz: Upgraded.
a/kernel-modules-4.19.72-x86_64-1.txz: Upgraded.
d/kernel-headers-4.19.72-x86-1.txz: Upgraded.
k/kernel-source-4.19.72-noarch-1.txz: Upgraded.
l/gdk-pixbuf2-2.38.2-x86_64-1.txz: Upgraded.
l/glibc-2.30-x86_64-1.txz: Upgraded.
l/glibc-i18n-2.30-x86_64-1.txz: Upgraded.
l/glibc-profile-2.30-x86_64-1.txz: Upgraded.
n/libmilter-8.15.2-x86_64-3.txz: Rebuilt.
Use gethostbyname2() since RES_USE_INET6 is removed in glibc-2.30.
n/libqmi-1.22.6-x86_64-1.txz: Upgraded.
n/postfix-3.4.6-x86_64-2.txz: Rebuilt.
Patched to fix removed macros in glibc-2.30.
n/yptools-2.14-x86_64-12.txz: Rebuilt.
Patched ypbind-mt for gettid() included in glibc-2.30.
xap/blackbox-0.75-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20190910212836 | Patrick J Volkerding | 2019-09-11 | 10 | -8/+116 |
* | Fri Sep 6 23:38:03 UTC 2019...a/kernel-generic-4.19.71-x86_64-1.txz: Upgraded.
a/kernel-huge-4.19.71-x86_64-1.txz: Upgraded.
a/kernel-modules-4.19.71-x86_64-1.txz: Upgraded.
d/kernel-headers-4.19.71-x86-1.txz: Upgraded.
k/kernel-source-4.19.71-noarch-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20190906233803 | Patrick J Volkerding | 2019-09-07 | 2 | -1/+1 |
* | Thu Sep 5 22:01:34 UTC 2019...d/cmake-3.15.3-x86_64-1.txz: Upgraded.
n/NetworkManager-1.20.2-x86_64-1.txz: Upgraded.
n/links-2.20.1-x86_64-1.txz: Upgraded.
20190905220134 | Patrick J Volkerding | 2019-09-06 | 1 | -1/+1 |
* | Tue Sep 3 19:30:54 UTC 2019...l/dbus-python-1.2.10-x86_64-1.txz: Upgraded.
l/glib2-2.60.7-x86_64-1.txz: Upgraded.
l/librsvg-2.44.15-x86_64-1.txz: Upgraded.
l/pyparsing-2.4.2-x86_64-1.txz: Upgraded.
n/samba-4.10.8-x86_64-1.txz: Upgraded.
This update addresses a security issue:
On a Samba SMB server for all versions of Samba from 4.9.0 clients are
able to escape outside the share root directory if certain
configuration parameters set in the smb.conf file.
For more information, see:
https://www.samba.org/samba/security/CVE-2019-10197.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-10197
(* Security fix *)
20190903193054 | Patrick J Volkerding | 2019-09-04 | 1 | -2/+2 |
* | Wed Aug 28 21:29:41 UTC 2019...a/haveged-1.9.6-x86_64-1.txz: Upgraded.
a/sysvinit-scripts-2.1-noarch-27.txz: Rebuilt.
rc.6, rc.K: recognize partition type nfs4
Thanks to Yoga the Yogin.
ap/gutenprint-5.3.3-x86_64-1.txz: Upgraded.
ap/hplip-3.19.8-x86_64-1.txz: Upgraded.
ap/man-db-2.8.7-x86_64-1.txz: Upgraded.
d/meson-0.51.2-x86_64-1.txz: Upgraded.
d/ruby-2.6.4-x86_64-1.txz: Upgraded.
n/dovecot-2.3.7.2-x86_64-1.txz: Upgraded.
n/php-7.3.9-x86_64-1.txz: Upgraded.
This update fixes bugs and a security issue:
MBString: Fixed bug #78380 (Oniguruma 6.9.3 fixes CVEs). (CVE-2019-13224)
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-13224
(* Security fix *)
20190828212941 | Patrick J Volkerding | 2019-08-29 | 1 | -2/+2 |
* | Mon Aug 26 19:49:17 UTC 2019...a/hostname-3.22-x86_64-1.txz: Upgraded.
ap/mpg123-1.25.12-x86_64-1.txz: Upgraded.
d/parallel-20190822-noarch-1.txz: Upgraded.
d/python-pip-19.2.3-x86_64-1.txz: Upgraded.
l/babl-0.1.72-x86_64-1.txz: Upgraded.
l/harfbuzz-2.6.1-x86_64-1.txz: Upgraded.
n/ca-certificates-20190826-noarch-1.txz: Upgraded.
x/font-util-1.3.2-x86_64-1.txz: Upgraded.
x/libevdev-1.8.0-x86_64-1.txz: Upgraded.
x/libinput-1.14.1-x86_64-1.txz: Upgraded.
x/viewres-1.0.6-x86_64-1.txz: Upgraded.
extra/pure-alsa-system/mpg123-1.25.12-x86_64-1_alsa.txz: Upgraded.
20190826194917 | Patrick J Volkerding | 2019-08-27 | 1 | -617/+0 |
* | Thu Aug 22 18:57:26 UTC 2019...a/kernel-firmware-20190821_c0fb3d9-noarch-1.txz: Upgraded.
a/xfsprogs-5.2.1-x86_64-1.txz: Upgraded.
ap/cups-filters-1.25.3-x86_64-1.txz: Upgraded.
d/python-setuptools-41.2.0-x86_64-1.txz: Upgraded.
d/swig-4.0.1-x86_64-1.txz: Upgraded.
n/bind-9.14.5-x86_64-1.txz: Upgraded.
n/dhcpcd-8.0.3-x86_64-1.txz: Upgraded.
n/samba-4.10.7-x86_64-1.txz: Upgraded.
xap/geeqie-1.5.1-x86_64-1.txz: Upgraded.
20190822185726 | Patrick J Volkerding | 2019-08-23 | 4 | -5/+5 |
* | Mon Aug 19 19:23:23 UTC 2019...d/ccache-3.7.3-x86_64-1.txz: Upgraded.
l/libvisio-0.1.7-x86_64-1.txz: Upgraded.
n/bind-9.14.4-x86_64-2.txz: Rebuilt.
Updated to the latest named.root in the caching-example configs.
Thanks to 3rensho for the bug report.
n/s-nail-14.9.15-x86_64-1.txz: Upgraded.
n/whois-5.5.1-x86_64-1.txz: Upgraded.
xap/xlockmore-5.58-x86_64-1.txz: Upgraded.
20190819192323 | Patrick J Volkerding | 2019-08-20 | 3 | -6/+6 |
* | Fri Aug 16 19:20:41 UTC 2019...a/kernel-firmware-20190815_07b925b-noarch-1.txz: Upgraded.
a/kernel-generic-4.19.67-x86_64-1.txz: Upgraded.
a/kernel-huge-4.19.67-x86_64-1.txz: Upgraded.
a/kernel-modules-4.19.67-x86_64-1.txz: Upgraded.
ap/cups-2.2.12-x86_64-1.txz: Upgraded.
ap/sysstat-12.1.6-x86_64-1.txz: Upgraded.
d/kernel-headers-4.19.67-x86-1.txz: Upgraded.
d/rust-1.37.0-x86_64-1.txz: Upgraded.
d/slacktrack-2.20-x86_64-1.txz: Upgraded.
Thanks to Stuart Winter.
k/kernel-source-4.19.67-noarch-1.txz: Upgraded.
FANOTIFY_ACCESS_PERMISSIONS n -> y
n/httpd-2.4.41-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20190816192041 | Patrick J Volkerding | 2019-08-17 | 1 | -2/+2 |
* | Sat Aug 10 19:57:17 UTC 2019...a/xfsprogs-5.2.0-x86_64-1.txz: Upgraded.
n/nmap-7.80-x86_64-3.txz: Rebuilt.
x/vulkan-sdk-1.1.114.0-x86_64-1.txz: Upgraded.
20190810195717 | Patrick J Volkerding | 2019-08-11 | 2 | -1/+2 |
* | Sat Aug 10 04:55:27 UTC 2019...a/kernel-generic-4.19.66-x86_64-1.txz: Upgraded.
a/kernel-huge-4.19.66-x86_64-1.txz: Upgraded.
a/kernel-modules-4.19.66-x86_64-1.txz: Upgraded.
ap/amp-0.7.6-x86_64-3.txz: Rebuilt.
Patched to clean up the code for a modern compiler and to not use overly
aggressive optimizations that can lead to crashes. Thanks to Labinnah.
d/doxygen-1.8.16-x86_64-1.txz: Upgraded.
d/kernel-headers-4.19.66-x86-1.txz: Upgraded.
d/scons-3.1.1-x86_64-1.txz: Upgraded.
k/kernel-source-4.19.66-noarch-1.txz: Upgraded.
n/NetworkManager-1.20.0-x86_64-1.txz: Upgraded.
n/wpa_supplicant-2.9-x86_64-1.txz: Upgraded.
x/libinput-1.14.0-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20190810045527 | Patrick J Volkerding | 2019-08-10 | 2 | -3/+1 |