| Commit message (Expand) | Author | Files | Lines |
2024-04-09 | Tue Apr 9 18:14:27 UTC 2024...l/abseil-cpp-20240116.2-x86_64-1.txz: Upgraded.
l/dotconf-1.4.1-x86_64-1.txz: Upgraded.
t/texlive-2024.240409-x86_64-1.txz: Upgraded.
Thanks to Johannes Schoepfer.
x/xorg-server-xwayland-23.2.6-x86_64-1.txz: Upgraded.
xap/blueman-2.4.1-x86_64-1.txz: Upgraded.
20240409181427 | Patrick J Volkerding | 15 | -2167/+285 |
2024-04-08 | Mon Apr 8 18:44:37 UTC 2024...l/imagemagick-7.1.1_30-x86_64-1.txz: Upgraded.
l/libarchive-3.7.3-x86_64-1.txz: Upgraded.
This update fixes a security issue:
Fix possible vulnerability in tar error reporting introduced in f27c173
by JiaT75.
For more information, see:
https://github.com/libarchive/libarchive/commit/f27c173d17dc807733b3a4f8c11207c3f04ff34f
https://github.com/libarchive/libarchive/pull/2101
(* Security fix *)
n/net-snmp-5.9.4-x86_64-3.txz: Rebuilt.
[PATCH] Add Linux 6.7 compatibility parsing /proc/net/snmp.
Thanks to walecha.
n/rsync-3.3.0-x86_64-1.txz: Upgraded.
x/xorg-sgml-doctools-1.12.1-x86_64-1.txz: Upgraded.
xap/gimp-2.10.36-x86_64-3.txz: Rebuilt.
[PATCH] QuitDialog: disconnect signal handler on dialog destroy.
This fixes a crash on quit.
Thanks to USUARIONUEVO.
xap/xlockmore-5.77-x86_64-1.txz: Upgraded.
20240408184437 | Patrick J Volkerding | 9 | -70/+276 |
2024-04-06 | Sat Apr 6 17:19:58 UTC 2024...a/pciutils-3.12.0-x86_64-1.txz: Upgraded.
l/pygobject-2.28.7-x86_64-10.txz: Rebuilt.
Build with PYTHON=python2 so that we don't have a call to unversioned python
in pygobject-codegen-2.0. Fixes building gimp from git.
Thanks to Petri Kaukasoina.
l/pygobject3-3.48.2-x86_64-1.txz: Upgraded.
x/libX11-1.8.9-x86_64-1.txz: Upgraded.
x/mtdev-1.1.7-x86_64-1.txz: Upgraded.
20240406171958 | Patrick J Volkerding | 8 | -63/+100 |
2024-04-05 | Fri Apr 5 20:11:23 UTC 2024...a/etc-15.1-x86_64-10.txz: Rebuilt.
Added nut user (218) and nut group (218).
a/genpower-1.0.5-x86_64-5.txz: Removed.
a/nut-2.8.2-x86_64-1.txz: Added.
This is a package to support uninterruptible power supplies, and replaces
the obsolete genpower package.
Thanks to V'yacheslav Stetskevych for the original SBo script.
a/sysvinit-scripts-15.1-noarch-16.txz: Rebuilt.
rc.M: start the NUT init scripts rc.nut-drvctl, rc.nut-upsd, and
rc.nut-upsmon. Remove the genpower block.
rc.6: support stopping the UPS inverter on the way down if we see
/etc/killpower. Remove the genpower block.
a/tcsh-6.24.12-x86_64-1.txz: Upgraded.
ap/man-db-2.12.1-x86_64-1.txz: Upgraded.
ap/mpg123-1.32.6-x86_64-1.txz: Upgraded.
ap/vim-9.1.0265-x86_64-1.txz: Upgraded.
d/cargo-vendor-filterer-0.5.14-x86_64-1.txz: Upgraded.
d/nasm-2.16.02-x86_64-1.txz: Upgraded.
l/libproxy-0.5.5-x86_64-1.txz: Upgraded.
l/python-hatchling-1.22.5-x86_64-1.txz: Upgraded.
l/python-typing_extensions-4.11.0-x86_64-1.txz: Upgraded.
x/xdm-1.1.16-x86_64-1.txz: Upgraded.
xap/vim-gvim-9.1.0265-x86_64-1.txz: Upgraded.
extra/bash-completion/bash-completion-2.13.0-noarch-1.txz: Upgraded.
extra/tigervnc/tigervnc-1.13.1-x86_64-5.txz: Rebuilt.
Recompiled against xorg-server-21.1.12 to fix security issues:
Heap buffer overread/data leakage in ProcXIGetSelectedEvents.
Heap buffer overread/data leakage in ProcXIPassiveGrabDevice.
Heap buffer overread/data leakage in ProcAppleDRICreatePixmap.
Use-after-free in ProcRenderAddGlyphs.
For more information, see:
https://lists.x.org/archives/xorg-announce/2024-April/003497.html
https://www.cve.org/CVERecord?id=CVE-2024-31080
https://www.cve.org/CVERecord?id=CVE-2024-31081
https://www.cve.org/CVERecord?id=CVE-2024-31082
https://www.cve.org/CVERecord?id=CVE-2024-31083
(* Security fix *)
20240405201123 | Patrick J Volkerding | 31 | -385/+649 |
2024-04-04 | Thu Apr 4 20:49:23 UTC 2024...a/hwdata-0.381-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.25-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.25-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.25-x86_64-1.txz: Upgraded.
d/cmake-3.29.1-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.25-x86-1.txz: Upgraded.
d/llvm-18.1.3-x86_64-1.txz: Upgraded.
k/kernel-source-6.6.25-noarch-1.txz: Upgraded.
kde/kstars-3.7.0-x86_64-1.txz: Upgraded.
l/enchant-2.6.9-x86_64-1.txz: Upgraded.
l/libclc-18.1.3-x86_64-1.txz: Upgraded.
l/sof-firmware-2024.03-noarch-1.txz: Upgraded.
n/gnutls-3.8.5-x86_64-1.txz: Upgraded.
n/httpd-2.4.59-x86_64-1.txz: Upgraded.
This update fixes security issues:
HTTP/2 DoS by memory exhaustion on endless continuation frames.
HTTP Response Splitting in multiple modules.
HTTP response splitting.
For more information, see:
https://downloads.apache.org/httpd/CHANGES_2.4.59
https://www.cve.org/CVERecord?id=CVE-2024-27316
https://www.cve.org/CVERecord?id=CVE-2024-24795
https://www.cve.org/CVERecord?id=CVE-2023-38709
(* Security fix *)
n/nghttp2-1.61.0-x86_64-1.txz: Upgraded.
This update fixes security issues:
nghttp2 library keeps reading the unbounded number of HTTP/2 CONTINUATION
frames even after a stream is reset to keep HPACK context in sync. This
causes excessive CPU usage to decode HPACK stream. nghttp2 v1.61.0 mitigates
this vulnerability by limiting the number of CONTINUATION frames it can
accept after a HEADERS frame.
For more information, see:
https://github.com/nghttp2/nghttp2/security/advisories/GHSA-x6x3-gv8h-m57q
https://www.kb.cert.org/vuls/id/421644
https://www.cve.org/CVERecord?id=CVE-2024-28182
(* Security fix *)
x/xdg-desktop-portal-1.18.3-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240404204923 | Patrick J Volkerding | 27 | -237/+312 |
2024-04-04 | Wed Apr 3 22:22:06 UTC 2024...l/PyQt-builder-1.16.0-x86_64-1.txz: Upgraded.
l/gst-plugins-bad-free-1.24.1-x86_64-2.txz: Rebuilt.
Recompiled against aom-3.8.2 to build libgstaom.so.
l/nodejs-20.12.1-x86_64-1.txz: Upgraded.
l/python-lxml-5.2.1-x86_64-1.txz: Upgraded.
x/xorg-server-21.1.12-x86_64-1.txz: Upgraded.
This update fixes security issues:
Heap buffer overread/data leakage in ProcXIGetSelectedEvents.
Heap buffer overread/data leakage in ProcXIPassiveGrabDevice.
Heap buffer overread/data leakage in ProcAppleDRICreatePixmap.
Use-after-free in ProcRenderAddGlyphs.
For more information, see:
https://lists.x.org/archives/xorg-announce/2024-April/003497.html
https://www.cve.org/CVERecord?id=CVE-2024-31080
https://www.cve.org/CVERecord?id=CVE-2024-31081
https://www.cve.org/CVERecord?id=CVE-2024-31082
https://www.cve.org/CVERecord?id=CVE-2024-31083
(* Security fix *)
x/xorg-server-xephyr-21.1.12-x86_64-1.txz: Upgraded.
x/xorg-server-xnest-21.1.12-x86_64-1.txz: Upgraded.
x/xorg-server-xvfb-21.1.12-x86_64-1.txz: Upgraded.
x/xorg-server-xwayland-23.2.5-x86_64-1.txz: Upgraded.
This update fixes security issues:
Heap buffer overread/data leakage in ProcXIGetSelectedEvents.
Heap buffer overread/data leakage in ProcXIPassiveGrabDevice.
Use-after-free in ProcRenderAddGlyphs.
For more information, see:
https://lists.x.org/archives/xorg-announce/2024-April/003497.html
https://www.cve.org/CVERecord?id=CVE-2024-31080
https://www.cve.org/CVERecord?id=CVE-2024-31081
https://www.cve.org/CVERecord?id=CVE-2024-31083
(* Security fix *)
20240403222206 | Patrick J Volkerding | 5 | -64/+140 |
2024-04-03 | Wed Apr 3 19:58:56 UTC 2024...a/kernel-generic-6.6.24-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.24-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.24-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.24-x86-1.txz: Upgraded.
d/python3-3.11.9-x86_64-1.txz: Upgraded.
k/kernel-source-6.6.24-noarch-1.txz: Upgraded.
-AMD_MEM_ENCRYPT_ACTIVE_BY_DEFAULT n
-GCC11_NO_ARRAY_BOUNDS y
NUMA_BALANCING n -> y
+GCC10_NO_ARRAY_BOUNDS y
+NUMA_BALANCING_DEFAULT_ENABLED y
kde/libindi-2.0.7-x86_64-1.txz: Upgraded.
l/SDL2-2.30.2-x86_64-1.txz: Upgraded.
l/aom-3.8.2-x86_64-1.txz: Added.
Needed to add AV1 encode/decode support to ffmpeg.
Thanks to Andrew Strong.
l/dav1d-1.4.1-x86_64-1.txz: Added.
Needed to add AV1 decode support to ffmpeg.
l/ffmpeg-6.1.1-x86_64-2.txz: Rebuilt.
Patched to build with nv-codec-headers-12.2.72.0. Thanks to J_W.
Compiled against aom-3.8.2 and dav1d-1.4.1 for AV1 support.
Thanks to glennmcc.
l/gtk4-4.14.2-x86_64-1.txz: Upgraded.
n/whois-5.5.22-x86_64-1.txz: Upgraded.
Fixed a segmentation fault with --no-recursion.
Updated the .bm and .vi TLD servers.
Removed 4 new gTLDs which are no longer active.
xap/MPlayer-20240403-x86_64-1.txz: Upgraded.
Compiled using --enable-libaom-lavc and --enable-libdav1d-lavc.
Thanks to glennmcc.
xap/pan-0.157-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240403195856 | Patrick J Volkerding | 30 | -180/+955 |
2024-04-02 | Mon Apr 1 19:02:42 UTC 2024...d/nv-codec-headers-12.2.72.0-x86_64-1.txz: Upgraded.
d/parallel-20240322-noarch-1.txz: Upgraded.
kde/calligra-3.2.1-x86_64-38.txz: Rebuilt.
Recompiled against poppler-24.04.0.
kde/cantor-23.08.5-x86_64-5.txz: Rebuilt.
Recompiled against poppler-24.04.0.
kde/kfilemetadata-5.115.0-x86_64-3.txz: Rebuilt.
Recompiled against poppler-24.04.0.
kde/kile-2.9.93-x86_64-32.txz: Rebuilt.
Recompiled against poppler-24.04.0.
kde/kitinerary-23.08.5-x86_64-3.txz: Rebuilt.
Recompiled against poppler-24.04.0.
kde/krita-5.2.2-x86_64-7.txz: Rebuilt.
Recompiled against poppler-24.04.0.
kde/okular-23.08.5-x86_64-3.txz: Rebuilt.
Recompiled against poppler-24.04.0.
l/gobject-introspection-1.80.1-x86_64-1.txz: Upgraded.
l/netpbm-11.06.00-x86_64-1.txz: Upgraded.
l/poppler-24.04.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/python-pillow-10.3.0-x86_64-1.txz: Upgraded.
xap/x3270-4.3ga8-x86_64-1.txz: Upgraded.
20240401190242 | Patrick J Volkerding | 17 | -109/+165 |
2024-04-01 | Sun Mar 31 22:44:32 UTC 2024...d/python-pip-24.0-x86_64-3.txz: Rebuilt.
Get rid of unneeded Windows garbage in the package.
d/python2-2.7.18-x86_64-8.txz: Rebuilt.
Get rid of unneeded Windows garbage in the package.
l/PyQt-builder-1.15.4-x86_64-3.txz: Rebuilt.
Get rid of unneeded Windows garbage in the package.
l/python-installer-0.7.0-x86_64-3.txz: Rebuilt.
Get rid of unneeded Windows garbage in the package.
20240331224432 | Patrick J Volkerding | 7 | -42/+87 |
2024-03-31 | Sun Mar 31 18:28:19 UTC 2024...ap/hplip-3.23.12-x86_64-4.txz: Rebuilt.
Add a few patches from Arch, including one to fix a Unicode error with the
sixext.py script that causes hp-setup to crash after detecting a printer.
Thanks to truepatriot76.
d/Cython-3.0.10-x86_64-1.txz: Upgraded.
d/cargo-vendor-filterer-0.5.13-x86_64-1.txz: Upgraded.
d/poke-4.0-x86_64-1.txz: Upgraded.
l/editorconfig-core-c-0.12.7-x86_64-1.txz: Upgraded.
l/jasper-4.2.3-x86_64-1.txz: Upgraded.
l/libical-3.0.18-x86_64-1.txz: Upgraded.
l/pango-1.52.2-x86_64-1.txz: Upgraded.
l/python-lxml-5.2.0-x86_64-1.txz: Upgraded.
l/wireplumber-0.5.1-x86_64-1.txz: Upgraded.
n/c-ares-1.28.1-x86_64-1.txz: Upgraded.
xap/blueman-2.4-x86_64-1.txz: Upgraded.
20240331182819 | Patrick J Volkerding | 16 | -125/+1033 |
2024-03-30 | Sat Mar 30 20:58:19 UTC 2024...ap/undervolt-0.4.0-x86_64-1.txz: Upgraded.
kde/kig-23.08.5-x86_64-3.txz: Rebuilt.
Recompiled to link with libboost_python311.so.1.84.0.
kde/kopeninghours-23.08.5-x86_64-3.txz: Rebuilt.
Recompiled to link with libboost_python311.so.1.84.0. Thanks to gmgf.
20240330205819 | Patrick J Volkerding | 6 | -47/+71 |
2024-03-30 | Sat Mar 30 18:08:12 UTC 2024...a/xz-5.6.1-x86_64-3.txz: Rebuilt.
[PATCH] CMake: Fix sabotaged Landlock sandbox check.
We don't build with CMake (yet), but it doesn't hurt to apply this.
d/mercurial-6.7.2-x86_64-1.txz: Upgraded.
l/boost-1.84.0-x86_64-3.txz: Rebuilt.
Recompiled against python-3.11.8. Thanks to rinza.
l/python-pycparser-2.22-x86_64-1.txz: Upgraded.
l/python-pytz-2024.1-x86_64-2.txz: Removed.
No longer needed with python-3.11. Thanks to audriusk.
l/python-tomli-2.0.1-x86_64-2.txz: Removed.
No longer needed with python-3.11. Thanks to TommyC7 and audriusk.
n/c-ares-1.28.0-x86_64-1.txz: Upgraded.
xap/xsnow-3.7.9-x86_64-1.txz: Upgraded.
extra/brltty/brltty-6.6-x86_64-4.txz: Rebuilt.
Don't install anything under /usr/local. Thanks to reddog83.
20240330180812 | Patrick J Volkerding | 18 | -338/+185 |
2024-03-29 | Fri Mar 29 20:39:11 UTC 2024...Everything in this batch besides aaa_libraries, xz, mcelog, and harfbuzz is a
rebuild or upgrade to build against python-3.11.8. Looking at the python
readiness page, it seems like a lot of stuff we use is not certified for
python-3.12 yet (although to be fair, about half as much isn't certified for
python-3.11 either). But 3.11 seems to be the safer choice even though the
final bugfix update is scheduled for Monday. And, if we do decide to move
ahead to 3.12 later on, it'll be a lot easier than this update was.
Enjoy! :-)
a/aaa_libraries-15.1-x86_64-29.txz: Rebuilt.
Upgraded: libzstd.so.1.5.6, libexpat.so.1.9.2, libglib-2.0.so.0.8000.0,
libgmodule-2.0.so.0.8000.0, libgobject-2.0.so.0.8000.0,
libgthread-2.0.so.0.8000.0.
Removed: libboost_*.so.1.83.0.
a/libblockdev-2.28-x86_64-3.txz: Rebuilt.
a/libbytesize-2.8-x86_64-2.txz: Rebuilt.
a/libpwquality-1.4.5-x86_64-2.txz: Rebuilt.
a/mcelog-198-x86_64-1.txz: Upgraded.
a/util-linux-2.40-x86_64-2.txz: Rebuilt.
a/volume_key-0.3.12-x86_64-8.txz: Rebuilt.
a/xz-5.6.1-x86_64-2.txz: Rebuilt.
Seems like a good idea to build this from a git pull rather than the signed
release tarballs. :-)
The liblzma in the previous packages were not found to be vulnerable by the
detection script, but I'd rather not carry the bad m4 files in our sources.
Here's a test script for anyone wanting to try it:
if hexdump -ve '1/1 "%.2x"' /lib*/liblzma.so.5 | grep -q f30f1efa554889f54c89ce5389fb81e7000000804883ec28488954241848894c2410 ; then
echo probably vulnerable
else
echo probably not vulnerable
fi
ap/hplip-3.23.12-x86_64-3.txz: Rebuilt.
ap/linuxdoc-tools-0.9.82-x86_64-5.txz: Rebuilt.
ap/rpm-4.19.1.1-x86_64-2.txz: Rebuilt.
ap/undervolt-20210815_e39aea1-x86_64-3.txz: Rebuilt.
ap/vim-9.1.0225-x86_64-1.txz: Upgraded.
d/Cython-3.0.9-x86_64-2.txz: Rebuilt.
d/distcc-3.4-x86_64-5.txz: Rebuilt.
d/gdb-14.2-x86_64-2.txz: Rebuilt.
d/gyp-20210831_d6c5dd51-x86_64-3.txz: Rebuilt.
d/llvm-18.1.2-x86_64-2.txz: Rebuilt.
d/mercurial-6.7.1-x86_64-2.txz: Rebuilt.
d/meson-1.4.0-x86_64-2.txz: Rebuilt.
d/python-pip-24.0-x86_64-2.txz: Rebuilt.
d/python-setuptools-69.2.0-x86_64-2.txz: Rebuilt.
d/python3-3.11.8-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
d/scons-4.7.0-x86_64-2.txz: Rebuilt.
kde/cantor-23.08.5-x86_64-4.txz: Rebuilt.
kde/kapidox-5.115.0-x86_64-2.txz: Rebuilt.
kde/kdev-python-23.08.5-x86_64-2.txz: Rebuilt.
kde/kig-23.08.5-x86_64-2.txz: Rebuilt.
kde/kmymoney-5.1.3-x86_64-4.txz: Rebuilt.
kde/kopeninghours-23.08.5-x86_64-2.txz: Rebuilt.
kde/krita-5.2.2-x86_64-6.txz: Rebuilt.
l/M2Crypto-0.41.0-x86_64-2.txz: Rebuilt.
l/Mako-1.3.2-x86_64-2.txz: Rebuilt.
l/PyQt-builder-1.15.4-x86_64-2.txz: Rebuilt.
l/PyQt5-5.15.10-x86_64-2.txz: Rebuilt.
l/PyQt5_sip-12.13.0-x86_64-2.txz: Rebuilt.
l/QScintilla-2.14.1-x86_64-3.txz: Rebuilt.
l/avahi-20240306_709e60f-x86_64-2.txz: Rebuilt.
l/brotli-1.1.0-x86_64-2.txz: Rebuilt.
l/dbus-python-1.3.2-x86_64-2.txz: Rebuilt.
l/gexiv2-0.14.2-x86_64-3.txz: Rebuilt.
l/gi-docgen-2023.3-x86_64-2.txz: Rebuilt.
l/glade-3.40.0-x86_64-2.txz: Rebuilt.
l/gobject-introspection-1.80.0-x86_64-2.txz: Rebuilt.
l/harfbuzz-8.4.0-x86_64-1.txz: Upgraded.
l/lensfun-0.3.4-x86_64-2.txz: Rebuilt.
l/libcaca-0.99.beta20-x86_64-2.txz: Rebuilt.
l/libcap-ng-0.8.4-x86_64-2.txz: Rebuilt.
l/libieee1284-0.2.11-x86_64-8.txz: Rebuilt.
l/libimobiledevice-20231007_04c0233-x86_64-2.txz: Rebuilt.
l/libnvme-1.8-x86_64-2.txz: Rebuilt.
l/libplist-2.4.0-x86_64-2.txz: Rebuilt.
l/libwebp-1.3.2-x86_64-3.txz: Rebuilt.
l/libxml2-2.12.6-x86_64-3.txz: Rebuilt.
l/libxslt-1.1.39-x86_64-2.txz: Rebuilt.
l/newt-0.52.24-x86_64-3.txz: Rebuilt.
l/protobuf-26.1-x86_64-2.txz: Rebuilt.
l/pycairo-1.26.0-x86_64-3.txz: Rebuilt.
l/pycups-2.0.1-x86_64-7.txz: Rebuilt.
l/pycurl-7.45.3-x86_64-2.txz: Rebuilt.
l/pygobject3-3.48.1-x86_64-2.txz: Rebuilt.
l/pyparsing-3.1.2-x86_64-2.txz: Rebuilt.
l/python-Jinja2-3.1.3-x86_64-2.txz: Rebuilt.
l/python-MarkupSafe-2.1.5-x86_64-2.txz: Rebuilt.
l/python-PyYAML-6.0.1-x86_64-3.txz: Rebuilt.
l/python-alabaster-0.7.16-x86_64-2.txz: Rebuilt.
l/python-appdirs-1.4.4-x86_64-7.txz: Rebuilt.
l/python-babel-2.14.0-x86_64-2.txz: Rebuilt.
l/python-build-1.2.1-x86_64-2.txz: Rebuilt.
l/python-calver-2022.6.26-x86_64-2.txz: Rebuilt.
l/python-certifi-2024.2.2-x86_64-2.txz: Rebuilt.
l/python-cffi-1.16.0-x86_64-2.txz: Rebuilt.
l/python-chardet-5.2.0-x86_64-2.txz: Rebuilt.
l/python-charset-normalizer-3.3.2-x86_64-2.txz: Rebuilt.
l/python-distro-1.9.0-x86_64-2.txz: Rebuilt.
l/python-dnspython-2.6.1-x86_64-2.txz: Rebuilt.
l/python-docutils-0.20.1-x86_64-2.txz: Rebuilt.
l/python-doxypypy-0.8.8.7-x86_64-2.txz: Rebuilt.
l/python-doxyqml-0.5.3-x86_64-2.txz: Rebuilt.
l/python-editables-0.5-x86_64-2.txz: Rebuilt.
l/python-flit-core-3.9.0-x86_64-2.txz: Rebuilt.
l/python-future-1.0.0-x86_64-2.txz: Rebuilt.
l/python-glad2-2.0.6-x86_64-2.txz: Rebuilt.
l/python-hatchling-1.22.4-x86_64-2.txz: Rebuilt.
l/python-html5lib-1.1-x86_64-2.txz: Rebuilt.
l/python-idna-3.6-x86_64-2.txz: Rebuilt.
l/python-imagesize-1.4.1-x86_64-2.txz: Rebuilt.
l/python-importlib_metadata-7.1.0-x86_64-2.txz: Rebuilt.
l/python-installer-0.7.0-x86_64-2.txz: Rebuilt.
l/python-lxml-5.1.1-x86_64-1.txz: Upgraded.
l/python-markdown-3.6-x86_64-2.txz: Rebuilt.
l/python-notify2-0.3.1-x86_64-11.txz: Rebuilt.
l/python-packaging-24.0-x86_64-2.txz: Rebuilt.
l/python-pathspec-0.12.1-x86_64-2.txz: Rebuilt.
l/python-pbr-6.0.0-x86_64-2.txz: Rebuilt.
l/python-pillow-10.2.0-x86_64-2.txz: Rebuilt.
l/python-pluggy-1.4.0-x86_64-2.txz: Rebuilt.
l/python-ply-3.11-x86_64-9.txz: Rebuilt.
l/python-psutil-5.9.8-x86_64-2.txz: Rebuilt.
l/python-pycparser-2.21-x86_64-2.txz: Rebuilt.
l/python-pygments-2.17.2-x86_64-2.txz: Rebuilt.
l/python-pyproject-hooks-1.0.0-x86_64-2.txz: Rebuilt.
l/python-pysol_cards-0.16.0-x86_64-2.txz: Rebuilt.
l/python-pytz-2024.1-x86_64-2.txz: Rebuilt.
l/python-random2-1.0.2-x86_64-2.txz: Rebuilt.
l/python-requests-2.31.0-x86_64-2.txz: Rebuilt.
l/python-sane-2.9.1-x86_64-6.txz: Rebuilt.
l/python-setuptools_scm-8.0.4-x86_64-2.txz: Rebuilt.
l/python-six-1.16.0-x86_64-4.txz: Rebuilt.
l/python-smartypants-2.0.1-x86_64-2.txz: Rebuilt.
l/python-snowballstemmer-2.2.0-x86_64-2.txz: Rebuilt.
l/python-sphinx-7.2.6-x86_64-2.txz: Rebuilt.
l/python-sphinx_rtd_theme-2.0.0-x86_64-2.txz: Rebuilt.
l/python-tomli-2.0.1-x86_64-2.txz: Rebuilt.
l/python-tomli-w-1.0.0-x86_64-2.txz: Rebuilt.
l/python-trove-classifiers-2024.3.25-x86_64-2.txz: Rebuilt.
l/python-typing_extensions-4.10.0-x86_64-2.txz: Rebuilt.
l/python-typogrify-2.0.7-x86_64-2.txz: Rebuilt.
l/python-urllib3-2.2.1-x86_64-2.txz: Rebuilt.
l/python-webencodings-0.5.1-x86_64-2.txz: Rebuilt.
l/python-wheel-0.43.0-x86_64-2.txz: Rebuilt.
l/python-zipp-3.18.1-x86_64-2.txz: Rebuilt.
l/sip-6.8.3-x86_64-2.txz: Rebuilt.
l/speech-dispatcher-0.11.5-x86_64-2.txz: Rebuilt.
l/system-config-printer-1.5.18-x86_64-2.txz: Rebuilt.
l/talloc-2.4.2-x86_64-2.txz: Rebuilt.
l/tdb-1.4.10-x86_64-2.txz: Rebuilt.
l/tevent-0.16.1-x86_64-2.txz: Rebuilt.
n/epic5-2.1.12-x86_64-7.txz: Rebuilt.
n/fetchmail-6.4.38-x86_64-2.txz: Rebuilt.
n/getmail-6.18.14-x86_64-2.txz: Rebuilt.
n/gpgme-1.23.2-x86_64-3.txz: Rebuilt.
n/net-snmp-5.9.4-x86_64-2.txz: Rebuilt.
n/nftables-1.0.9-x86_64-2.txz: Rebuilt.
n/nmap-7.94-x86_64-2.txz: Rebuilt.
n/nss-pam-ldapd-0.9.12-x86_64-4.txz: Rebuilt.
n/obexftp-0.24.2-x86_64-12.txz: Rebuilt.
n/pssh-2.3.5-x86_64-2.txz: Rebuilt.
n/samba-4.20.0-x86_64-2.txz: Rebuilt.
x/ibus-1.5.29-x86_64-3.txz: Rebuilt.
x/ibus-anthy-1.5.16-x86_64-2.txz: Rebuilt.
x/ibus-hangul-1.5.5-x86_64-2.txz: Rebuilt.
x/ibus-libpinyin-1.15.7-x86_64-2.txz: Rebuilt.
x/ibus-table-1.17.4-x86_64-2.txz: Rebuilt.
x/marisa-0.2.6-x86_64-9.txz: Rebuilt.
x/pyxdg-0.28-x86_64-2.txz: Rebuilt.
x/xcb-proto-1.16.0-x86_64-3.txz: Rebuilt.
xap/blueman-2.3.5-x86_64-2.txz: Rebuilt.
xap/hexchat-2.16.2-x86_64-2.txz: Rebuilt.
xap/vim-gvim-9.1.0225-x86_64-1.txz: Upgraded.
extra/brltty/brltty-6.6-x86_64-3.txz: Rebuilt.
20240329203911 | Patrick J Volkerding | 158 | -1187/+1330 |
2024-03-29 | Fri Mar 29 02:25:21 UTC 2024...a/coreutils-9.5-x86_64-1.txz: Upgraded.
chmod -R now avoids a race where an attacker may replace a traversed file
with a symlink, causing chmod to operate on an unintended file.
[This bug was present in "the beginning".]
split --line-bytes with a mixture of very long and short lines no longer
overwrites the heap.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2024-0684
(* Security fix *)
20240329022521 | Patrick J Volkerding | 4 | -27/+58 |
2024-03-28 | Thu Mar 28 21:40:08 UTC 2024...a/btrfs-progs-6.8-x86_64-1.txz: Upgraded.
a/gpm-1.20.7-x86_64-10.txz: Rebuilt.
Clean up the compile fix patch omitting the Emacs Lisp file.
Clean up and apply the weak-wgetch patch.
Build using the option --without-curses.
Thanks to qunying.
a/util-linux-2.40-x86_64-1.txz: Upgraded.
This release fixes a vulnerability where the wall command did not filter
escape sequences from command line arguments, allowing unprivileged users
to put arbitrary text on other users terminals.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2024-28085
(* Security fix *)
d/rust-1.77.1-x86_64-1.txz: Upgraded.
l/fluidsynth-2.3.5-x86_64-1.txz: Upgraded.
l/protobuf-26.1-x86_64-1.txz: Upgraded.
l/python-build-1.2.1-x86_64-1.txz: Upgraded.
n/samba-4.20.0-x86_64-1.txz: Upgraded.
x/mesa-24.0.4-x86_64-1.txz: Upgraded.
xap/seamonkey-2.53.18.2-x86_64-1.txz: Upgraded.
This update contains security fixes and improvements.
For more information, see:
https://www.seamonkey-project.org/releases/seamonkey2.53.18.2
(* Security fix *)
20240328214008 | Patrick J Volkerding | 14 | -172/+217 |
2024-03-27 | Wed Mar 27 19:16:09 UTC 2024...a/kernel-firmware-20240322_e068ccf-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.23-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.23-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.23-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.23-x86-1.txz: Upgraded.
k/kernel-source-6.6.23-noarch-1.txz: Upgraded.
l/nodejs-20.12.0-x86_64-1.txz: Upgraded.
l/openexr-3.2.4-x86_64-1.txz: Upgraded.
l/zstd-1.5.6-x86_64-1.txz: Upgraded.
n/curl-8.7.1-x86_64-1.txz: Upgraded.
This release fixes the following security issues:
TLS certificate check bypass with mbedTLS.
HTTP/2 push headers memory-leak.
QUIC certificate check bypass with wolfSSL.
Usage of disabled protocol.
For more information, see:
https://curl.se/docs/CVE-2024-2466.html
https://curl.se/docs/CVE-2024-2398.html
https://curl.se/docs/CVE-2024-2379.html
https://curl.se/docs/CVE-2024-2004.html
https://www.cve.org/CVERecord?id=CVE-2024-2466
https://www.cve.org/CVERecord?id=CVE-2024-2398
https://www.cve.org/CVERecord?id=CVE-2024-2379
https://www.cve.org/CVERecord?id=CVE-2024-2004
(* Security fix *)
x/xorgproto-2024.1-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240327191609 | Patrick J Volkerding | 15 | -125/+191 |
2024-03-27 | Tue Mar 26 22:24:59 UTC 2024...l/gjs-1.80.2-x86_64-1.txz: Upgraded.
l/qt6-6.6.3_20240319_c2516323-x86_64-1.txz: Upgraded.
20240326222459 | Patrick J Volkerding | 25 | -64/+103 |
2024-03-25 | Mon Mar 25 18:58:10 UTC 2024...a/shadow-4.15.1-x86_64-1.txz: Upgraded.
The main point of this release is to fix a bug that caused spurious error
messages about unknown login.defs configuration options.
a/sysvinit-3.09-x86_64-1.txz: Upgraded.
l/python-trove-classifiers-2024.3.25-x86_64-1.txz: Upgraded.
x/libX11-1.8.8-x86_64-1.txz: Upgraded.
x/libXmu-1.2.0-x86_64-1.txz: Upgraded.
x/lndir-1.0.5-x86_64-1.txz: Upgraded.
x/xf86-video-savage-2.4.1-x86_64-1.txz: Upgraded.
x/xman-1.2.0-x86_64-1.txz: Upgraded.
x/xorg-docs-1.7.3-noarch-1.txz: Upgraded.
20240325185810 | Patrick J Volkerding | 6 | -88/+108 |
2024-03-24 | Sun Mar 24 18:21:46 UTC 2024...e/emacs-29.3-x86_64-1.txz: Upgraded.
Emacs 29.3 is an emergency bugfix release intended to fix several security
vulnerabilities described below:
Arbitrary Lisp code is no longer evaluated as part of turning on Org mode.
This is for security reasons, to avoid evaluating malicious Lisp code.
New buffer-local variable 'untrusted-content'. When this is non-nil, Lisp
programs should treat buffer contents with extra caution.
Gnus now treats inline MIME contents as untrusted. To get back previous
insecure behavior, 'untrusted-content' should be reset to nil in the buffer.
LaTeX preview is now by default disabled for email attachments. To get back
previous insecure behavior, set the variable 'org--latex-preview-when-risky'
to a non-nil value.
Org mode now considers contents of remote files to be untrusted.
Remote files are recognized by calling 'file-remote-p'.
(* Security fix *)
l/enchant-2.6.8-x86_64-1.txz: Upgraded.
l/gnu-efi-3.0.18-x86_64-1.txz: Upgraded.
l/libproxy-0.5.4-x86_64-2.txz: Rebuilt.
Rebuilt with -Dpacrunner-duktape=true. Thanks to gmgf.
l/libxkbcommon-1.7.0-x86_64-1.txz: Upgraded.
l/python-hatchling-1.22.4-x86_64-1.txz: Upgraded.
x/libpciaccess-0.18.1-x86_64-1.txz: Upgraded.
x/xdm-1.1.15-x86_64-1.txz: Upgraded.
x/xedit-1.2.4-x86_64-1.txz: Upgraded.
x/xload-1.2.0-x86_64-1.txz: Upgraded.
extra/emacs-regular-build/emacs-29.3-x86_64-1_regular.txz: Upgraded.
(* Security fix *)
20240324182146 | Patrick J Volkerding | 7 | -89/+155 |
2024-03-23 | Sat Mar 23 19:34:02 UTC 2024...ap/vim-9.1.0199-x86_64-1.txz: Upgraded.
Dropped python2 support. Thanks to Audrius Kažukauskas.
l/duktape-2.7.0-x86_64-1.txz: Added.
Needed by polkit.
l/gjs-1.80.1-x86_64-1.txz: Upgraded.
l/libdeflate-1.20-x86_64-1.txz: Upgraded.
l/mozjs102-102.15.1esr-x86_64-2.txz: Removed.
l/mozjs115-115.9.1esr-x86_64-1.txz: Upgraded.
l/polkit-123-x86_64-2.txz: Rebuilt.
Use duktape instead of mozjs102 as the JavaScript engine.
x/iceauth-1.0.10-x86_64-2.txz: Rebuilt.
It's never too early to build with --enable-year2038. Thanks to bigbadaboum.
xap/geeqie-2.4-x86_64-1.txz: Upgraded.
xap/mozilla-firefox-115.9.1esr-x86_64-1.txz: Upgraded.
This update fixes a critical security issue:
An attacker was able to inject an event handler into a privileged object
that would allow arbitrary JavaScript execution in the parent process.
For more information, see:
https://www.mozilla.org/en-US/firefox/115.9.1esr/releasenotes/
https://www.mozilla.org/security/advisories/mfsa2024-16/
https://www.cve.org/CVERecord?id=CVE-2024-29944
(* Security fix *)
xap/vim-gvim-9.1.0199-x86_64-1.txz: Upgraded.
Dropped python2 support. Thanks to Audrius Kažukauskas.
20240323193402 | Patrick J Volkerding | 32 | -1367/+332 |
2024-03-23 | Fri Mar 22 22:57:06 UTC 2024...l/glibmm2-2.80.0-x86_64-1.txz: Upgraded.
20240322225706 | Patrick J Volkerding | 3 | -26/+40 |
2024-03-22 | Fri Mar 22 20:16:55 UTC 2024...a/volume_key-0.3.12-x86_64-7.txz: Rebuilt.
Build python3 bindings.
l/atkmm2-2.36.3-x86_64-1.txz: Added.
l/boost-1.84.0-x86_64-2.txz: Rebuilt.
Drop python2 support.
l/glibmm-2.66.7-x86_64-1.txz: Upgraded.
l/gst-plugins-bad-free-1.24.1-x86_64-1.txz: Upgraded.
l/gst-plugins-base-1.24.1-x86_64-1.txz: Upgraded.
l/gst-plugins-good-1.24.1-x86_64-1.txz: Upgraded.
l/gst-plugins-libav-1.24.1-x86_64-1.txz: Upgraded.
l/gstreamer-1.24.1-x86_64-1.txz: Upgraded.
l/gtkmm4-4.14.0-x86_64-1.txz: Upgraded.
l/unicode-ucd-15.1.0-noarch-1.txz: Added.
153MB installed... oh well. Needed by gucharmap.
xap/gucharmap-15.1.3-x86_64-1.txz: Upgraded.
xap/x3270-4.3ga7-x86_64-1.txz: Upgraded.
20240322201655 | Patrick J Volkerding | 25 | -210/+745 |
2024-03-21 | Thu Mar 21 22:36:42 UTC 2024...d/cmake-3.29.0-x86_64-1.txz: Upgraded.
l/gtkmm3-3.24.9-x86_64-1.txz: Upgraded.
l/pangomm2-2.52.0-x86_64-1.txz: Upgraded.
l/python-importlib_metadata-7.1.0-x86_64-1.txz: Upgraded.
20240321223642 | Patrick J Volkerding | 6 | -88/+137 |
2024-03-21 | Thu Mar 21 19:53:15 UTC 2024...d/mercurial-6.7.1-x86_64-1.txz: Upgraded.
d/rust-1.77.0-x86_64-1.txz: Upgraded.
l/cairomm1-1.18.0-x86_64-1.txz: Added.
Thanks to jloco.
l/glibmm2-2.78.1-x86_64-1.txz: Added.
Thanks to jloco.
l/gtkmm4-4.12.0-x86_64-1.txz: Added.
Thanks to jloco.
l/libclc-18.1.2-x86_64-1.txz: Upgraded.
l/pangomm-2.46.4-x86_64-1.txz: Upgraded.
l/pangomm2-2.50.2-x86_64-1.txz: Added.
Thanks to jloco.
n/openvpn-2.6.10-x86_64-1.txz: Upgraded.
x/libkkc-0.3.5-x86_64-5.txz: Rebuilt.
Use python for the build, not python2.
x/libkkc-data-0.2.7-x86_64-5.txz: Rebuilt.
Use python for the build, not python2.
x/marisa-0.2.6-x86_64-8.txz: Rebuilt.
Drop python2 support and rebuild marisa module for python3.
x/wayland-protocols-1.34-noarch-1.txz: Upgraded.
20240321195315 | Patrick J Volkerding | 22 | -149/+806 |
2024-03-20 | Wed Mar 20 21:10:30 UTC 2024...a/libblockdev-2.28-x86_64-2.txz: Rebuilt.
Drop python2 support.
a/sysvinit-scripts-15.1-noarch-15.txz: Rebuilt.
rc.M: start rc.iceccd and rc.icecc-scheduler earlier.
a/util-linux-2.39.3-x86_64-2.txz: Rebuilt.
Drop python2 support.
a/volume_key-0.3.12-x86_64-6.txz: Rebuilt.
Drop python2 support.
ap/man-pages-6.7-noarch-1.txz: Upgraded.
d/cmake-3.28.4-x86_64-1.txz: Upgraded.
d/llvm-18.1.2-x86_64-1.txz: Upgraded.
d/python2-2.7.18-x86_64-7.txz: Rebuilt.
Bundle the final python2 versions of pip and setuptools.
Drop the /usr/bin/python symlink.
d/python3-3.9.19-x86_64-1.txz: Upgraded.
Point the /usr/bin/python symlink at python3.9.
PEP 394 says we can do this, and in a world of ambigious shebangs, this
is probably the best of the available options.
This update also fixes security issues:
bundled libexpat was updated to 2.6.0.
zipfile is now protected from the "quoted-overlap" zipbomb.
tempfile.TemporaryDirectory cleanup no longer dereferences symlinks when
working around file system permission errors.
For more information, see:
https://pythoninsider.blogspot.com/2024/03/python-31014-3919-and-3819-is-now.html
https://www.cve.org/CVERecord?id=CVE-2023-52425
https://www.cve.org/CVERecord?id=CVE-2024-0450
https://www.cve.org/CVERecord?id=CVE-2023-6597
(* Security fix *)
d/strace-6.8-x86_64-1.txz: Upgraded.
kde/kross-interpreters-23.08.5-x86_64-2.txz: Rebuilt.
Drop python2 support.
l/libxml2-2.12.6-x86_64-2.txz: Rebuilt.
Drop python2 support.
l/mozjs115-115.9.0esr-x86_64-2.txz: Rebuilt.
Fixed installed library name. Thanks to reddog83.
Fixed slack-desc. Thanks to r1w1s1.
l/phonon-4.12.0-x86_64-1.txz: Upgraded.
l/pilot-link-0.12.5-x86_64-17.txz: Rebuilt.
Drop python2 support.
l/python2-module-collection-2.7.18-x86_64-6.txz: Removed.
Good bye!
l/python2-pycairo-1.18.2-x86_64-1.txz: Added.
We'll need this (along with pygtk and pygobject) until we get gimp3.
Well, we could build gimp without python support, but I really don't think
that's the route we want to take.
n/bind-9.18.25-x86_64-1.txz: Upgraded.
n/crda-4.15-x86_64-1.txz: Removed.
The kernel is able to load from wireless-regdb directly. Obsolete.
n/getmail-6.18.14-x86_64-1.txz: Upgraded.
n/gpgme-1.23.2-x86_64-2.txz: Rebuilt.
Drop python2 support.
n/obexftp-0.24.2-x86_64-11.txz: Rebuilt.
Drop python2 support.
n/wireless-regdb-2024.01.23-x86_64-1.txz: Added.
Wireless regulatory database, previously bundled with crda.
x/ibus-1.5.29-x86_64-2.txz: Rebuilt.
Drop python2 support.
x/libkkc-0.3.5-x86_64-4.txz: Rebuilt.
Still forcing python2 with this one, but perhaps a python3 marisa module
could work around this.
x/libkkc-data-0.2.7-x86_64-4.txz: Rebuilt.
Still forcing python2 with this one, but perhaps a python3 marisa module
could work around this.
x/xcb-proto-1.16.0-x86_64-2.txz: Rebuilt.
Drop python2 support.
x/xpyb-1.3.1-x86_64-7.txz: Removed.
Nothing uses it, and it was never updated for python3. Removed as obsolete.
20240320211030 | Patrick J Volkerding | 56 | -1122/+1056 |
2024-03-20 | Wed Mar 20 00:08:59 UTC 2024...a/sysvinit-scripts-15.1-noarch-14.txz: Rebuilt.
rc.S: fix motd matching so that it works on a fresh install.
d/scons-4.7.0-x86_64-1.txz: Upgraded.
l/adwaita-icon-theme-46.0-noarch-1.txz: Upgraded.
l/at-spi2-core-2.52.0-x86_64-1.txz: Upgraded.
l/gcr4-4.2.1-x86_64-1.txz: Added.
l/gjs-1.80.0-x86_64-1.txz: Upgraded.
l/glib-networking-2.80.0-x86_64-1.txz: Upgraded.
l/glib2-2.80.0-x86_64-1.txz: Upgraded.
l/gobject-introspection-1.80.0-x86_64-1.txz: Upgraded.
l/gsettings-desktop-schemas-46.0-x86_64-1.txz: Upgraded.
l/gtk4-4.14.1-x86_64-1.txz: Upgraded.
l/gvfs-1.54.0-x86_64-1.txz: Upgraded.
l/librsvg-2.58.0-x86_64-1.txz: Upgraded.
l/mozjs115-115.9.0esr-x86_64-1.txz: Added.
Needed by gjs-1.80.0.
l/newt-0.52.24-x86_64-2.txz: Rebuilt.
Drop python2 support.
l/pygobject3-3.48.1-x86_64-1.txz: Upgraded.
l/python-glad2-2.0.6-x86_64-1.txz: Upgraded.
l/python-hatchling-1.22.3-x86_64-1.txz: Upgraded.
l/vte-0.76.0-x86_64-1.txz: Upgraded.
l/wireplumber-0.5.0-x86_64-1.txz: Upgraded.
n/gnutls-3.8.4-x86_64-1.txz: Upgraded.
This update fixes two medium severity security issues:
libgnutls: Fix side-channel in the deterministic ECDSA.
Reported by George Pantelakis (#1516).
libgnutls: Fixed a bug where certtool crashed when verifying a certificate
chain with more than 16 certificates. Reported by William Woodruff (#1525)
and yixiangzhike (#1527).
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2024-28834
https://www.cve.org/CVERecord?id=CVE-2024-28835
(* Security fix *)
xap/mozilla-firefox-115.9.0esr-x86_64-1.txz: Upgraded.
This update contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/firefox/115.9.0/releasenotes/
https://www.mozilla.org/security/advisories/mfsa2024-13/
https://www.cve.org/CVERecord?id=CVE-2024-0743
https://www.cve.org/CVERecord?id=CVE-2024-2605
https://www.cve.org/CVERecord?id=CVE-2024-2607
https://www.cve.org/CVERecord?id=CVE-2024-2608
https://www.cve.org/CVERecord?id=CVE-2024-2616
https://www.cve.org/CVERecord?id=CVE-2023-5388
https://www.cve.org/CVERecord?id=CVE-2024-2610
https://www.cve.org/CVERecord?id=CVE-2024-2611
https://www.cve.org/CVERecord?id=CVE-2024-2612
https://www.cve.org/CVERecord?id=CVE-2024-2614
(* Security fix *)
xap/mozilla-thunderbird-115.9.0-x86_64-1.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/115.9.0/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2024-14/
https://www.cve.org/CVERecord?id=CVE-2024-0743
https://www.cve.org/CVERecord?id=CVE-2024-2605
https://www.cve.org/CVERecord?id=CVE-2024-2607
https://www.cve.org/CVERecord?id=CVE-2024-2608
https://www.cve.org/CVERecord?id=CVE-2024-2616
https://www.cve.org/CVERecord?id=CVE-2023-5388
https://www.cve.org/CVERecord?id=CVE-2024-2610
https://www.cve.org/CVERecord?id=CVE-2024-2611
https://www.cve.org/CVERecord?id=CVE-2024-2612
https://www.cve.org/CVERecord?id=CVE-2024-2614
(* Security fix *)
20240320000859 | Patrick J Volkerding | 34 | -212/+1709 |
2024-03-18 | Mon Mar 18 21:44:21 UTC 2024...d/perl-5.38.2-x86_64-2.txz: Rebuilt.
Added IO-Tty-1.20, needed by mosh.
Upgraded: DBD-mysql-4.051, URI-5.27, XML-Parser-2.47, IO-Socket-SSL-2.085,
and Net-SSLeay-1.94.
kde/cantor-23.08.5-x86_64-3.txz: Rebuilt.
Recompiled against libqalculate-5.0.0.
kde/plasma-workspace-5.27.11-x86_64-2.txz: Rebuilt.
Recompiled against libqalculate-5.0.0.
kde/step-23.08.5-x86_64-2.txz: Rebuilt.
Recompiled against libqalculate-5.0.0.
l/abseil-cpp-20240116.1-x86_64-1.txz: Added.
Needed for protobuf and mosh.
l/libgnt-2.14.3-x86_64-2.txz: Rebuilt.
Build with -Dpython2=false. Thanks to USUARIONUEVO.
l/libqalculate-5.0.0-x86_64-2.txz: Rebuilt.
Shared library .so-version bump.
Thanks to gmgf.
l/protobuf-26.0-x86_64-1.txz: Added.
Needed for mosh.
n/mosh-1.4.0-x86_64-1.txz: Added.
Thanks to unInstance for cueing me in on this one.
n/pinentry-1.3.0-x86_64-1.txz: Upgraded.
x/vulkan-sdk-1.3.275.0-x86_64-2.txz: Rebuilt.
Build glslang with -DENABLE_OPT=Off. Thanks to F0nix.
20240318214421 | Patrick J Volkerding | 30 | -131/+791 |
2024-03-17 | Sun Mar 17 21:11:08 UTC 2024...La fheile Padraig sona dhaoibh!
Pionta Guinness, le do thoil. :-)
kde/digikam-8.3.0-x86_64-2.txz: Rebuilt.
Fixed internal version number.
l/harfbuzz-8.3.1-x86_64-1.txz: Upgraded.
l/libappindicator-12.10.0-x86_64-4.txz: Rebuilt.
Drop the python bindings.
l/mozilla-nss-3.99-x86_64-1.txz: Upgraded.
l/python-hatchling-1.22.2-x86_64-1.txz: Upgraded.
l/python-markdown-3.6-x86_64-1.txz: Upgraded.
l/python-zipp-3.18.1-x86_64-1.txz: Upgraded.
l/qt5-5.15.13_20240314_6694e805-x86_64-1.txz: Upgraded.
20240317211108 | Patrick J Volkerding | 9 | -75/+1003 |
2024-03-16 | Fri Mar 15 22:48:36 UTC 2024...a/kernel-firmware-20240312_3b128b6-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.22-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.22-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.22-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.22-x86-1.txz: Upgraded.
k/kernel-source-6.6.22-noarch-1.txz: Upgraded.
+MITIGATION_RFDS y
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240315224836 | Patrick J Volkerding | 14 | -90/+126 |
2024-03-15 | Fri Mar 15 18:55:58 UTC 2024...d/mercurial-6.7-x86_64-1.txz: Upgraded.
kde/digikam-8.3.0-x86_64-1.txz: Upgraded.
l/libxml2-2.12.6-x86_64-1.txz: Upgraded.
n/php-8.3.4-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.php.net/ChangeLog-8.php#8.3.4
n/proftpd-1.3.8b-x86_64-3.txz: Rebuilt.
Added mod_ldap. Thanks to Thom1b.
20240315185558 | Patrick J Volkerding | 15 | -81/+139 |
2024-03-14 | Thu Mar 14 20:01:17 UTC 2024...a/cryptsetup-2.7.1-x86_64-1.txz: Upgraded.
a/elogind-252.23-x86_64-2.txz: Rebuilt.
Install /etc/pam.d/elogind-user as .new. Thanks to Markus Wiesner.
a/kmod-32-x86_64-1.txz: Upgraded.
a/tcsh-6.24.11-x86_64-1.txz: Upgraded.
ap/a2ps-4.15.6-x86_64-1.txz: Upgraded.
d/vala-0.56.16-x86_64-1.txz: Upgraded.
l/avahi-20240306_709e60f-x86_64-1.txz: Upgraded.
Don't reload dbus from the installer.
x/mesa-24.0.3-x86_64-1.txz: Upgraded.
xap/xlockmore-5.76-x86_64-1.txz: Upgraded.
xfce/xfce4-screensaver-4.18.3-x86_64-2.txz: Rebuilt.
Install /etc/pam.d/xfce4-screensaver as .new. Thanks to Markus Wiesner.
20240314200117 | Patrick J Volkerding | 21 | -564/+185 |
2024-03-13 | Wed Mar 13 19:46:48 UTC 2024...a/etc-15.1-x86_64-9.txz: Rebuilt.
Added proftpd user (97) and proftpd group (97).
Added nm-openvpn user (320) and nm-openvpn group (320).
Added openvpn user (443) and openvpn group (443).
Added overflowuid user (65534) and overflowgid group (65534).
Thanks to opty for encouraging us to think about nobody.
d/meson-1.4.0-x86_64-1.txz: Upgraded.
d/python-setuptools-69.2.0-x86_64-1.txz: Upgraded.
l/expat-2.6.2-x86_64-1.txz: Upgraded.
Prevent billion laughs attacks with isolated use of external parsers.
For more information, see:
https://github.com/libexpat/libexpat/commit/1d50b80cf31de87750103656f6eb693746854aa8
https://www.cve.org/CVERecord?id=CVE-2024-28757
(* Security fix *)
l/pipewire-1.0.4-x86_64-1.txz: Upgraded.
l/python-zipp-3.18.0-x86_64-1.txz: Upgraded.
n/openvpn-2.6.9-x86_64-2.txz: Rebuilt.
Run as openvpn:openvpn. Thanks to rkelsen.
n/proftpd-1.3.8b-x86_64-2.txz: Rebuilt.
Run as proftpd:proftpd.
x/libva-2.21.0-x86_64-1.txz: Upgraded.
x/libva-utils-2.21.0-x86_64-1.txz: Upgraded.
xap/NetworkManager-openvpn-1.10.2-x86_64-2.txz: Rebuilt.
Run as nm-openvpn:nm-openvpn. Thanks to Markus Wiesner.
20240313194648 | Patrick J Volkerding | 18 | -130/+184 |
2024-03-12 | Tue Mar 12 19:49:57 UTC 2024...a/elogind-252.23-x86_64-1.txz: Upgraded.
ap/sqlite-3.45.2-x86_64-1.txz: Upgraded.
l/jasper-4.2.2-x86_64-1.txz: Upgraded.
l/libpaper-2.2.5-x86_64-1.txz: Upgraded.
l/netpbm-11.05.03-x86_64-1.txz: Upgraded.
l/python-wheel-0.43.0-x86_64-1.txz: Upgraded.
n/iproute2-6.8.0-x86_64-1.txz: Upgraded.
xap/sane-1.3.0-x86_64-1.txz: Upgraded.
20240312194957 | Patrick J Volkerding | 11 | -221/+311 |
2024-03-11 | Mon Mar 11 18:29:55 UTC 2024...a/dialog-1.3_20240307-x86_64-1.txz: Upgraded.
l/libpaper-2.2.3-x86_64-1.txz: Upgraded.
l/libqalculate-5.0.0-x86_64-1.txz: Upgraded.
l/pyparsing-3.1.2-x86_64-1.txz: Upgraded.
l/python-packaging-24.0-x86_64-1.txz: Upgraded.
n/openssh-9.7p1-x86_64-1.txz: Upgraded.
Future deprecation notice
OpenSSH plans to remove support for the DSA signature algorithm in
early 2025 and compile-time disable it later this year.
n/wget-1.24.5-x86_64-1.txz: Upgraded.
x/iceauth-1.0.10-x86_64-1.txz: Upgraded.
x/libXaw-1.0.16-x86_64-1.txz: Upgraded.
xap/xaos-4.3.2-x86_64-1.txz: Upgraded.
20240311182955 | Patrick J Volkerding | 9 | -109/+172 |
2024-03-09 | Sat Mar 9 21:56:02 UTC 2024...a/aaa_libraries-15.1-x86_64-28.txz: Rebuilt.
Upgraded: libelf-0.191.so, liblzma.so.5.6.1, libexpat.so.1.9.1.
a/shadow-4.15.0-x86_64-1.txz: Upgraded.
a/xz-5.6.1-x86_64-1.txz: Upgraded.
d/llvm-18.1.1-x86_64-1.txz: Upgraded.
l/libclc-18.1.1-x86_64-1.txz: Upgraded.
l/xapian-core-1.4.25-x86_64-1.txz: Upgraded.
n/mutt-2.2.13-x86_64-1.txz: Upgraded.
20240309215602 | Patrick J Volkerding | 11 | -150/+162 |
2024-03-08 | Fri Mar 8 19:20:11 UTC 2024...n/bluez-5.73-x86_64-1.txz: Upgraded.
xap/geeqie-2.3-x86_64-1.txz: Upgraded.
xfce/libxfce4ui-4.18.6-x86_64-1.txz: Upgraded.
xfce/xfce4-weather-plugin-0.11.2-x86_64-1.txz: Upgraded.
20240308192011 | Patrick J Volkerding | 7 | -114/+80 |
2024-03-07 | Thu Mar 7 20:40:08 UTC 2024...ap/ghostscript-10.03.0-x86_64-1.txz: Upgraded.
This update addresses a security issue:
A vulnerability was identified in the way Ghostscript/GhostPDL called
tesseract for the OCR devices, which could allow arbitrary code execution.
Thanks to J_W for the heads-up.
(* Security fix *)
ap/lxc-4.0.12-x86_64-3.txz: Rebuilt.
lxc-slackware.in: include gnupg2 (not gnupg) for slackpkg.
ap/slackpkg-15.0.10-noarch-3.txz: Rebuilt.
core-functions.sh: use gpg2, not gpg.
d/Cython-3.0.9-x86_64-1.txz: Upgraded.
d/git-2.44.0-x86_64-2.txz: Rebuilt.
Include git-subtree. Thanks to gwhl.
d/llvm-18.1.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
kde/kdevelop-23.08.5-x86_64-2.txz: Rebuilt.
Recompiled against llvm-18.1.0.
l/openexr-3.2.3-x86_64-1.txz: Upgraded.
l/python-importlib_metadata-7.0.2-x86_64-1.txz: Upgraded.
l/python-trove-classifiers-2024.3.3-x86_64-1.txz: Upgraded.
l/qt5-5.15.12_20240228_6609503f-x86_64-1.txz: Upgraded.
Compiled against llvm-18.1.0.
l/qt6-6.6.2_20240210_15b7e743-x86_64-3.txz: Rebuilt.
Recompiled against llvm-18.1.0.
l/spirv-llvm-translator-18.1.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
n/gnupg2-2.4.5-x86_64-1.txz: Upgraded.
n/libassuan-2.5.7-x86_64-1.txz: Upgraded.
n/postfix-3.9.0-x86_64-1.txz: Upgraded.
x/mesa-24.0.2-x86_64-2.txz: Rebuilt.
Recompiled against llvm-18.1.0 and spirv-llvm-translator-18.1.0.
isolinux/initrd.img: Rebuilt.
Fixed kernel version. Thanks to chrisVV.
usb-and-pxe-installers/usbboot.img: Rebuilt.
Fixed kernel version. Thanks to chrisVV.
20240307204008 | Patrick J Volkerding | 23 | -474/+320 |
2024-03-06 | Wed Mar 6 21:30:27 UTC 2024...a/etc-15.1-x86_64-8.txz: Rebuilt.
Added UID 54 and GID 54 for nslcd. Thanks to Thom1b.
a/hwdata-0.380-noarch-1.txz: Upgraded.
a/kernel-firmware-20240305_d13f88b-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.21-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.21-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.21-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.21-x86-1.txz: Upgraded.
k/kernel-source-6.6.21-noarch-1.txz: Upgraded.
kde/bluedevil-5.27.11-x86_64-1.txz: Upgraded.
kde/breeze-5.27.11-x86_64-1.txz: Upgraded.
kde/breeze-grub-5.27.11-x86_64-1.txz: Upgraded.
kde/breeze-gtk-5.27.11-x86_64-1.txz: Upgraded.
kde/drkonqi-5.27.11-x86_64-1.txz: Upgraded.
kde/kactivitymanagerd-5.27.11-x86_64-1.txz: Upgraded.
kde/kde-cli-tools-5.27.11-x86_64-1.txz: Upgraded.
kde/kde-gtk-config-5.27.11-x86_64-1.txz: Upgraded.
kde/kdecoration-5.27.11-x86_64-1.txz: Upgraded.
kde/kdeplasma-addons-5.27.11-x86_64-1.txz: Upgraded.
kde/kgamma5-5.27.11-x86_64-1.txz: Upgraded.
kde/khotkeys-5.27.11-x86_64-1.txz: Upgraded.
kde/kinfocenter-5.27.11-x86_64-1.txz: Upgraded.
kde/kmenuedit-5.27.11-x86_64-1.txz: Upgraded.
kde/kpipewire-5.27.11-x86_64-1.txz: Upgraded.
kde/kscreen-5.27.11-x86_64-1.txz: Upgraded.
kde/kscreenlocker-5.27.11-x86_64-1.txz: Upgraded.
kde/ksshaskpass-5.27.11-x86_64-1.txz: Upgraded.
kde/ksystemstats-5.27.11-x86_64-1.txz: Upgraded.
kde/kwallet-pam-5.27.11-x86_64-1.txz: Upgraded.
kde/kwayland-integration-5.27.11-x86_64-1.txz: Upgraded.
kde/kwin-5.27.11-x86_64-1.txz: Upgraded.
kde/kwrited-5.27.11-x86_64-1.txz: Upgraded.
kde/layer-shell-qt-5.27.11-x86_64-1.txz: Upgraded.
kde/libkscreen-5.27.11-x86_64-1.txz: Upgraded.
kde/libksysguard-5.27.11-x86_64-1.txz: Upgraded.
kde/milou-5.27.11-x86_64-1.txz: Upgraded.
kde/oxygen-5.27.11-x86_64-1.txz: Upgraded.
kde/oxygen-sounds-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-browser-integration-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-desktop-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-disks-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-firewall-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-integration-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-nm-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-pa-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-sdk-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-systemmonitor-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-vault-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-workspace-5.27.11-x86_64-1.txz: Upgraded.
kde/plasma-workspace-wallpapers-5.27.11-noarch-1.txz: Upgraded.
kde/polkit-kde-agent-1-5.27.11-x86_64-1.txz: Upgraded.
kde/powerdevil-5.27.11-x86_64-1.txz: Upgraded.
kde/qqc2-breeze-style-5.27.11-x86_64-1.txz: Upgraded.
kde/sddm-kcm-5.27.11-x86_64-1.txz: Upgraded.
kde/systemsettings-5.27.11-x86_64-1.txz: Upgraded.
kde/xdg-desktop-portal-kde-5.27.11-x86_64-1.txz: Upgraded.
l/SDL2-2.30.1-x86_64-1.txz: Upgraded.
l/libplacebo-6.338.2-x86_64-2.txz: Rebuilt.
Recompiled against vulkan-sdk-1.3.275.0.
l/pango-1.52.1-x86_64-1.txz: Upgraded.
n/gnupg-1.4.23-x86_64-6.txz: Rebuilt.
Renamed binaries and manpages to end in 1, and renamed internally to gnupg1.
Thanks to Lockywolf.
n/gnupg2-2.4.4-x86_64-2.txz: Rebuilt.
Make a gpg -> gpg2 symlink if it doesn't exist. Thanks to Lockywolf.
n/nss-pam-ldapd-0.9.12-x86_64-3.txz: Rebuilt.
rc.nss-pam-ldapd: chown /run/nslcd to the new nslcd user/group.
Thanks to Thom1b.
x/vulkan-sdk-1.3.275.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240306213027 | Patrick J Volkerding | 33 | -485/+752 |
2024-03-05 | Tue Mar 5 21:16:50 UTC 2024...l/gst-plugins-bad-free-1.24.0-x86_64-1.txz: Upgraded.
l/gst-plugins-base-1.24.0-x86_64-1.txz: Upgraded.
l/gst-plugins-good-1.24.0-x86_64-1.txz: Upgraded.
l/gst-plugins-libav-1.24.0-x86_64-1.txz: Upgraded.
l/gstreamer-1.24.0-x86_64-1.txz: Upgraded.
l/libnice-0.1.22-x86_64-1.txz: Upgraded.
l/opus-1.5.1-x86_64-1.txz: Upgraded.
l/pycairo-1.26.0-x86_64-2.txz: Rebuilt.
Build with meson so that the pkgconfig file is included. Thanks to jloco.
l/sof-firmware-2023.12.1-noarch-1.txz: Upgraded.
n/postfix-3.8.6-x86_64-1.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.postfix.org/announcements/postfix-3.8.6.html
xap/mozilla-thunderbird-115.8.1-x86_64-1.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/115.8.1/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2024-11/
https://www.cve.org/CVERecord?id=CVE-2024-1936
(* Security fix *)
xap/x3270-4.3ga6-x86_64-1.txz: Upgraded.
xfce/xfce4-screensaver-4.18.3-x86_64-1.txz: Upgraded.
20240305211650 | Patrick J Volkerding | 9 | -124/+212 |
2024-03-04 | Mon Mar 4 20:41:42 UTC 2024...d/vala-0.56.15-x86_64-1.txz: Upgraded.
e/emacspeak-59.0-x86_64-1.txz: Upgraded.
kde/calligra-3.2.1-x86_64-37.txz: Rebuilt.
Recompiled against poppler-24.03.0.
kde/cantor-23.08.5-x86_64-2.txz: Rebuilt.
Recompiled against poppler-24.03.0.
kde/kfilemetadata-5.115.0-x86_64-2.txz: Rebuilt.
Recompiled against poppler-24.03.0.
kde/kile-2.9.93-x86_64-31.txz: Rebuilt.
Recompiled against poppler-24.03.0.
kde/kitinerary-23.08.5-x86_64-2.txz: Rebuilt.
Recompiled against poppler-24.03.0.
kde/krita-5.2.2-x86_64-5.txz: Rebuilt.
Recompiled against poppler-24.03.0.
kde/okular-23.08.5-x86_64-2.txz: Rebuilt.
Recompiled against poppler-24.03.0.
l/poppler-24.03.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
Enabled building libpoppler-qt6.
x/xev-1.2.6-x86_64-1.txz: Upgraded.
x/xf86-input-wacom-1.2.1-x86_64-1.txz: Upgraded.
x/xfontsel-1.1.1-x86_64-1.txz: Upgraded.
x/xmessage-1.0.7-x86_64-1.txz: Upgraded.
x/xmh-1.0.5-x86_64-1.txz: Upgraded.
x/xpr-1.2.0-x86_64-1.txz: Upgraded.
x/xrefresh-1.1.0-x86_64-1.txz: Upgraded.
x/xsm-1.0.6-x86_64-1.txz: Upgraded.
20240304204142 | Patrick J Volkerding | 24 | -159/+249 |
2024-03-03 | Sun Mar 3 20:50:24 UTC 2024...d/gdb-14.2-x86_64-1.txz: Upgraded.
l/python-PyYAML-6.0.1-x86_64-2.txz: Rebuilt.
Fixed build with Cython >= 3. Thanks to Stuart Winter.
l/qt6-6.6.2_20240210_15b7e743-x86_64-2.txz: Rebuilt.
Fixed the sdpscanner6 symlink by moving INSTALL_LIBEXECDIR to the expected
location.
x/editres-1.0.9-x86_64-1.txz: Upgraded.
x/encodings-1.1.0-noarch-1.txz: Upgraded.
x/gccmakedep-1.0.4-noarch-1.txz: Upgraded.
x/libXaw3d-1.6.6-x86_64-1.txz: Upgraded.
x/libXcursor-1.2.2-x86_64-1.txz: Upgraded.
x/libXdmcp-1.1.5-x86_64-1.txz: Upgraded.
x/libfontenc-1.1.8-x86_64-1.txz: Upgraded.
x/libxcb-1.16.1-x86_64-1.txz: Upgraded.
x/listres-1.0.6-x86_64-1.txz: Upgraded.
x/mkfontscale-1.2.3-x86_64-1.txz: Upgraded.
x/xauth-1.1.3-x86_64-1.txz: Upgraded.
x/xlsfonts-1.0.8-x86_64-1.txz: Upgraded.
20240303205024 | Patrick J Volkerding | 9 | -110/+213 |
2024-03-02 | Sat Mar 2 20:40:46 UTC 2024...a/kernel-generic-6.6.20-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.20-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.20-x86_64-1.txz: Upgraded.
a/lzip-1.24.1-x86_64-1.txz: Upgraded.
a/shadow-4.14.6-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.20-x86-1.txz: Upgraded.
k/kernel-source-6.6.20-noarch-1.txz: Upgraded.
l/elfutils-0.191-x86_64-1.txz: Upgraded.
l/libunibreak-6.1-x86_64-1.txz: Upgraded.
l/python-build-1.1.1-x86_64-1.txz: Upgraded.
l/python-psutil-5.9.8-x86_64-1.txz: Upgraded.
l/python-setuptools_scm-8.0.4-x86_64-1.txz: Upgraded.
l/python-trove-classifiers-2024.2.23-x86_64-1.txz: Upgraded.
l/sip-6.8.3-x86_64-1.txz: Upgraded.
x/pyxdg-0.28-x86_64-1.txz: Upgraded.
xfce/xfce4-taskmanager-1.5.7-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240302204046 | Patrick J Volkerding | 20 | -165/+219 |
2024-03-02 | Fri Mar 1 22:13:28 UTC 2024...a/kernel-firmware-20240229_5cd471e-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.19-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.19-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.19-x86_64-1.txz: Upgraded.
d/Cython-3.0.8-x86_64-1.txz: Upgraded.
d/kernel-headers-6.6.19-x86-1.txz: Upgraded.
d/python-pip-24.0-x86_64-1.txz: Upgraded.
d/python-setuptools-69.1.1-x86_64-1.txz: Upgraded.
k/kernel-source-6.6.19-noarch-1.txz: Upgraded.
kde/fcitx5-configtool-5.1.4-x86_64-1.txz: Upgraded.
For now, continuing to build this against qt5.
l/M2Crypto-0.41.0-x86_64-1.txz: Upgraded.
l/Mako-1.3.2-x86_64-1.txz: Upgraded.
l/dbus-python-1.3.2-x86_64-1.txz: Upgraded.
l/expat-2.6.1-x86_64-1.txz: Upgraded.
This is a bugfix release.
l/glib-networking-2.78.1-x86_64-1.txz: Upgraded.
l/pycairo-1.26.0-x86_64-1.txz: Upgraded.
l/pycurl-7.45.3-x86_64-1.txz: Upgraded.
l/pygobject3-3.46.0-x86_64-1.txz: Upgraded.
l/pyparsing-3.1.1-x86_64-1.txz: Upgraded.
l/python-Jinja2-3.1.3-x86_64-1.txz: Upgraded.
l/python-MarkupSafe-2.1.5-x86_64-1.txz: Upgraded.
l/python-PyYAML-6.0.1-x86_64-1.txz: Upgraded.
l/python-alabaster-0.7.16-x86_64-1.txz: Upgraded.
l/python-babel-2.14.0-x86_64-1.txz: Upgraded.
l/python-build-1.0.3-x86_64-1.txz: Upgraded.
l/python-certifi-2024.2.2-x86_64-1.txz: Upgraded.
l/python-cffi-1.16.0-x86_64-1.txz: Upgraded.
l/python-chardet-5.2.0-x86_64-1.txz: Upgraded.
l/python-charset-normalizer-3.3.2-x86_64-1.txz: Upgraded.
l/python-distro-1.9.0-x86_64-1.txz: Upgraded.
l/python-dnspython-2.6.1-x86_64-1.txz: Upgraded.
l/python-doxypypy-0.8.8.7-x86_64-1.txz: Upgraded.
l/python-doxyqml-0.5.3-x86_64-1.txz: Upgraded.
l/python-future-1.0.0-x86_64-1.txz: Upgraded.
l/python-glad2-2.0.5-x86_64-1.txz: Upgraded.
l/python-idna-3.6-x86_64-1.txz: Upgraded.
l/python-imagesize-1.4.1-x86_64-1.txz: Upgraded.
l/python-importlib_metadata-7.0.1-x86_64-1.txz: Upgraded.
l/python-lxml-5.1.0-x86_64-1.txz: Upgraded.
l/python-markdown-3.5.2-x86_64-1.txz: Upgraded.
l/python-packaging-23.2-x86_64-1.txz: Upgraded.
l/python-pbr-6.0.0-x86_64-1.txz: Upgraded.
l/python-pillow-10.2.0-x86_64-1.txz: Upgraded.
l/python-pysol_cards-0.16.0-x86_64-1.txz: Upgraded.
l/python-pytz-2024.1-x86_64-1.txz: Upgraded.
l/python-random2-1.0.2-x86_64-1.txz: Upgraded.
l/python-setuptools_scm-7.1.0-x86_64-1.txz: Upgraded.
l/python-tomli-2.0.1-x86_64-1.txz: Upgraded.
l/python-typing_extensions-4.10.0-x86_64-1.txz: Added.
This is a temporary addition, needed by python-setuptools_scm until we get
a newer version of both that and Python.
l/python-wheel-0.42.0-x86_64-1.txz: Upgraded.
l/python-zipp-3.17.0-x86_64-1.txz: Upgraded.
l/wavpack-5.7.0-x86_64-1.txz: Upgraded.
n/nghttp2-1.60.0-x86_64-1.txz: Upgraded.
tcl/tcl-8.6.14-x86_64-1.txz: Upgraded.
tcl/tk-8.6.14-x86_64-1.txz: Upgraded.
x/fcitx5-5.1.8-x86_64-1.txz: Upgraded.
x/fcitx5-chinese-addons-5.1.4-x86_64-1.txz: Upgraded.
For now, continuing to build this against qt5.
x/fcitx5-gtk-5.1.2-x86_64-1.txz: Upgraded.
x/fcitx5-hangul-5.1.2-x86_64-1.txz: Upgraded.
x/fcitx5-kkc-5.1.2-x86_64-1.txz: Upgraded.
For now, continuing to build this against qt5.
x/fcitx5-qt-5.1.5-x86_64-1.txz: Upgraded.
This is compiled against both qt5 and qt6.
x/fcitx5-table-extra-5.1.4-x86_64-1.txz: Upgraded.
x/fcitx5-table-other-5.1.1-x86_64-1.txz: Upgraded.
x/fcitx5-unikey-5.1.3-x86_64-1.txz: Upgraded.
For now, continuing to build this against qt5.
x/libime-1.1.6-x86_64-1.txz: Upgraded.
x/xcb-imdkit-1.0.7-x86_64-1.txz: Upgraded.
xfce/xfce4-clipman-plugin-1.6.6-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240301221328 | Patrick J Volkerding | 70 | -646/+938 |
2024-02-29 | Thu Feb 29 19:11:19 UTC 2024...d/pahole-1.26-x86_64-1.txz: Upgraded.
l/Imath-3.1.11-x86_64-1.txz: Upgraded.
l/openjpeg-2.5.2-x86_64-1.txz: Upgraded.
x/ibus-anthy-1.5.16-x86_64-1.txz: Upgraded.
x/mesa-24.0.2-x86_64-1.txz: Upgraded.
x/pixman-0.43.4-x86_64-1.txz: Upgraded.
xfce/xfce4-panel-4.18.6-x86_64-1.txz: Upgraded.
xfce/xfce4-terminal-1.1.3-x86_64-1.txz: Upgraded.
20240229191119 | Patrick J Volkerding | 8 | -138/+101 |
2024-02-28 | Wed Feb 28 20:43:38 UTC 2024...a/aaa_libraries-15.1-x86_64-27.txz: Rebuilt.
Upgraded: liblzma.so.5.6.0, libcares.so.2.12.0, libpng16.so.16.43.0,
libunistring.so.5.1.0.
20240228204338 | Patrick J Volkerding | 5 | -32/+48 |
2024-02-28 | Wed Feb 28 18:36:48 UTC 2024...d/parallel-20240222-noarch-1.txz: Upgraded.
kde/krita-5.2.2-x86_64-4.txz: Rebuilt.
Recompiled against libunibreak-6.0.
l/accountsservice-23.13.9-x86_64-1.txz: Upgraded.
Thanks to reddog83.
l/libass-0.17.1-x86_64-2.txz: Rebuilt.
Recompiled against libunibreak-6.0.
l/libunibreak-6.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
l/orc-0.4.38-x86_64-1.txz: Upgraded.
l/python-requests-2.31.0-x86_64-1.txz: Upgraded.
l/python-urllib3-2.2.1-x86_64-1.txz: Upgraded.
l/qt6-6.6.2_20240210_15b7e743-x86_64-1.txz: Added.
n/wpa_supplicant-2.10-x86_64-3.txz: Rebuilt.
Patched the implementation of PEAP in wpa_supplicant to prevent an
authentication bypass. For a successful attack, wpa_supplicant must be
configured to not verify the network's TLS certificate during Phase 1
authentication, and an eap_peap_decrypt vulnerability can then be abused
to skip Phase 2 authentication. The attack vector is sending an EAP-TLV
Success packet instead of starting Phase 2. This allows an adversary to
impersonate Enterprise Wi-Fi networks.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2023-52160
(* Security fix *)
xap/gparted-1.6.0-x86_64-1.txz: Upgraded.
20240228183648 | Patrick J Volkerding | 28 | -2882/+3751 |
2024-02-26 | Mon Feb 26 20:09:43 UTC 2024...a/mdadm-4.3-x86_64-1.txz: Upgraded.
a/pciutils-3.11.1-x86_64-1.txz: Upgraded.
d/swig-4.2.1-x86_64-1.txz: Upgraded.
l/LibRaw-0.21.2-x86_64-2.txz: Rebuilt.
Include the example programs (which are actually useful). Thanks to giomat.
l/imagemagick-7.1.1_29-x86_64-1.txz: Upgraded.
l/openjpeg-2.5.1-x86_64-1.txz: Upgraded.
Fixed a heap-based buffer overflow in openjpeg in color.c:379:42 in
sycc420_to_rgb when decompressing a crafted .j2k file. An attacker could use
this to execute arbitrary code with the permissions of the application
compiled against openjpeg.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2021-3575
(* Security fix *)
l/pango-1.52.0-x86_64-1.txz: Upgraded.
x/sddm-0.21.0-x86_64-1.txz: Upgraded.
xap/x3270-4.3ga5-x86_64-1.txz: Upgraded.
20240226200943 | Patrick J Volkerding | 7 | -82/+128 |
2024-02-25 | Sun Feb 25 19:16:52 UTC 2024...a/etc-15.1-x86_64-7.txz: Rebuilt.
Don't leave {group,gshadow,passwd,shadow}.new laying around.
We'd left these as a reference in case new default entries were added so that
the admin could take a look at them and merge the new entries into the
existing files. But we've been merging them over automatically for quite some
time. The files contain no unique information and are sort of a footbullet.
ap/qpdf-11.9.0-x86_64-1.txz: Upgraded.
ap/vim-9.1.0136-x86_64-1.txz: Upgraded.
n/whois-5.5.21-x86_64-1.txz: Upgraded.
Updated the .cv and .sd TLD servers.
Removed 4 new gTLDs which are no longer active.
xap/vim-gvim-9.1.0136-x86_64-1.txz: Upgraded.
xfce/xfce4-terminal-1.1.2-x86_64-2.txz: Rebuilt.
[PATCH] screen: Fix wrong assert.
Thanks to J_W.
[PATCH] prefs-dialog: Fix wrong assert.
Thanks to mario.
20240225191652 | Patrick J Volkerding | 8 | -57/+176 |
2024-02-24 | Sat Feb 24 19:50:05 UTC 2024...a/pkgtools-15.1-noarch-10.txz: Rebuilt.
setup.services: typo/syntax error fix. Thanks to gramaxo and pghvlaans.
a/xz-5.6.0-x86_64-1.txz: Upgraded.
ap/man-pages-6.06-noarch-2.txz: Rebuilt.
Restored the previously included posix pages, and added the posix "sh" page
since it's more correct than getting the ksh page for "sh".
Thanks to pghvlaans.
d/git-2.44.0-x86_64-1.txz: Upgraded.
kde/kdnssd-5.115.0-x86_64-2.txz: Rebuilt.
Recompiled to add Zeroconf support. (This one fooled me because it doesn't
actually link to any avahi libraries.)
Thanks to audriusk.
kde/kid3-3.9.5-x86_64-1.txz: Upgraded.
l/libpng-1.6.43-x86_64-1.txz: Upgraded.
l/libunistring-1.2-x86_64-1.txz: Upgraded.
n/libksba-1.6.6-x86_64-1.txz: Upgraded.
n/npth-1.7-x86_64-1.txz: Upgraded.
t/texlive-2023.230322-x86_64-7.txz: Rebuilt.
Use the bundled zlib to make the bundled lua happy. Thanks to sombragris.
20240224195005 | Patrick J Volkerding | 11 | -105/+156 |
2024-02-23 | Fri Feb 23 20:37:29 UTC 2024...a/dcron-4.5-x86_64-17.txz: Rebuilt.
run-parts.8: document skiping *.orig files. Thanks to metaed.
a/etc-15.1-x86_64-6.txz: Rebuilt.
Add support for nss-mdns to /etc/nsswitch.conf.
a/kernel-firmware-20240220_97b693d-noarch-1.txz: Upgraded.
a/kernel-generic-6.6.18-x86_64-1.txz: Upgraded.
a/kernel-huge-6.6.18-x86_64-1.txz: Upgraded.
a/kernel-modules-6.6.18-x86_64-1.txz: Upgraded.
ap/cups-filters-1.28.17-x86_64-5.txz: Rebuilt.
Don't specify --with-browseremoteprotocols=cups in order to get the default
values of cups and dnssd, which should enable discovering shared printers on
the network. We'll refrain from sharing your printer -- you'll need to change
that setting yourself. ;-)
Thanks to TurboBlaze.
ap/hplip-3.23.12-x86_64-2.txz: Rebuilt.
The new --disable-imageProcessor-build option doesn't do squat, so we'll hit
it with the good old patch again.
Thanks to Petri Kaukasoina and Stuart Winter.
d/kernel-headers-6.6.18-x86-1.txz: Upgraded.
k/kernel-source-6.6.18-noarch-1.txz: Upgraded.
l/gvfs-1.52.2-x86_64-2.txz: Rebuilt.
Added -Ddnssd=true option and recompiled against avahi.
l/libsecret-0.21.4-x86_64-1.txz: Upgraded.
n/c-ares-1.27.0-x86_64-1.txz: Upgraded.
n/libgpg-error-1.48-x86_64-1.txz: Upgraded.
n/nss-mdns-0.15.1-x86_64-1.txz: Added.
Needed for .local lookups. Thanks to Lockywolf.
xap/pidgin-2.14.13-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
20240223203729 | Patrick J Volkerding | 33 | -224/+463 |