Commit Graph

3278 Commits

Author SHA1 Message Date
efa87589dd signature updates 2016-11-03 17:52:30 +01:00
0bdc59dfdf Merge branch '3.2' into 3.3 2016-11-03 17:49:47 +01:00
8a80521d2a tzdata: update to 2016i 2016-11-03 16:31:34 +01:00
fb346c541d ca-certificates: update to 20161102 2016-11-02 09:57:01 +01:00
eaebf54397 flex: update to 2.6.1, project is now hosted on github 2016-11-02 09:56:41 +01:00
Fredrik Rinnestam
4eccbd2704 updated signatures 2016-11-02 09:03:34 +01:00
Fredrik Rinnestam
5b946ab2c3 Merge branch '3.2' into 3.3 2016-11-02 09:03:04 +01:00
Fredrik Rinnestam
53c6722a1e [notify] curl: updated to 7.51.0
Resolves:

    CVE-2016-8615: cookie injection for other servers
    CVE-2016-8616: case insensitive password comparison
    CVE-2016-8617: OOB write via unchecked multiplication
    CVE-2016-8618: double-free in curl_maprintf
    CVE-2016-8619: double-free in krb5 code
    CVE-2016-8620: glob parser write/read out of bounds
    CVE-2016-8621: curl_getdate read out of bounds
    CVE-2016-8622: URL unescape heap overflow via integer truncation
    CVE-2016-8623: Use-after-free via shared cookies
    CVE-2016-8624: invalid URL parsing with '#'
    CVE-2016-8625: IDNA 2003 makes curl use wrong host

https://curl.haxx.se/changes.html
2016-11-02 09:02:09 +01:00
Fredrik Rinnestam
64be6e651a file: updated to 5.29 2016-10-25 21:27:04 +02:00
907962e8d7 update signatures 2016-10-25 11:18:23 +02:00
48ccb651d7 Merge branch '3.2' into 3.3 2016-10-25 11:17:27 +02:00
f60a7eb42e [notify] libarchive: update to 3.3.2
According to NEWS this is a "Security release".

See
- https://github.com/libarchive/libarchive/issues?utf8=%E2%9C%93&q=milestone%3A3.2.2
for a list of bugs that have been fixed with this release.

Note
----
to use the new version of libarchive rebuild core/pkgutils
  prt-get update -fr pkgutils
2016-10-25 11:02:45 +02:00
4e0babd271 tzdata: update to 2016h 2016-10-23 16:37:56 +02:00
eb4bbe1abc iproute2: remove the -h dhcpcd option from rc script 2016-10-20 18:36:03 +02:00
6a320cdadf ports: update *.rsync for CRUX 3.3 2016-10-20 17:37:09 +02:00
213a889c0a hdparm: update to 9.50 2016-10-20 12:44:55 +02:00
751c8a7303 util-linux: update to 2.29-rc2 2016-10-19 19:18:58 +02:00
587fe96314 ports: add pub key for compat-32 repo 2016-10-18 17:15:27 +02:00
dfaf97c094 add opt.pub and xorg.pub to repo 2016-10-15 14:22:43 +02:00
091822c338 ports: add pub keys for opt and xorg 2016-10-15 14:18:07 +02:00
d0052c27fe update signatures for shadow, sudo 2016-10-15 14:09:48 +02:00
acd0dd3e40 Merge branch '3.2' into 3.3 2016-10-15 14:07:04 +02:00
8ba4b732bb sudo: update to 1.8.18p1 2016-10-15 08:06:11 +02:00
a457510ee0 shadow: update to 4.4
we have finally a new maintainer for shadow, he is responsible for
upstream and the debian stuff.

The main repo is on github [1] now but I hope that the original
home page for the project at [2] will get updates sometime.
Because there's no proper tarball on github I've repacked it and
we host it on crux.nu for now.

[1] https://github.com/shadow-maint/shadow
[2] https://github.com/shadow-maint/shadow
2016-10-15 07:56:33 +02:00
17e9ab32a5 perl: update to 5.24.1-RC4 2016-10-13 18:30:54 +02:00
Fredrik Rinnestam
b19ffe376c bash: removed 4.3.48 patch 2016-10-10 20:53:01 +02:00
356e1337b4 update signatures 2016-10-10 17:35:18 +02:00
aa7aac9f9a Merge branch '3.2' into 3.3 2016-10-10 17:30:46 +02:00
4ceb0b7a70 iproute2: update to 4.8.0 2016-10-10 17:23:39 +02:00
15a9922a82 man-pages: update to 4.08 2016-10-09 16:07:57 +02:00
1765a9d397 dhcpcd: update to 6.11.5 2016-10-09 16:07:35 +02:00
b9b028bc1c readline: fix source URL 2016-10-05 13:33:21 +02:00
4310e78b66 [notify] bash: update to 4.3.48
Security fixes for CVE-2016-7543 and CVE-2016-0634, see
- https://lists.gnu.org/archive/html/bug-bash/2016-10/msg00008.html
- https://lists.gnu.org/archive/html/bug-bash/2016-10/msg00009.html
2016-10-05 12:02:21 +02:00
7ff22ac891 util-linux: update to 2.29-rc1 2016-10-04 16:52:28 +02:00
42bff3dc47 signature updates for grep, pciutils and tzdata 2016-10-04 16:49:15 +02:00
3da2d97328 Merge branch '3.2' into 3.3 2016-10-04 16:44:01 +02:00
29e33ec2d5 tzdata: update to 2016g 2016-10-04 15:18:46 +02:00
4f50beb20e pciutils: update to 3.5.2 2016-10-04 15:18:23 +02:00
cf3864a605 grep: update to 2.26 2016-10-04 15:18:05 +02:00
Fredrik Rinnestam
4a261811c6 updates signatures 2016-10-01 11:51:31 +02:00
Fredrik Rinnestam
672958561c Merge branch '3.2' into 3.3 2016-10-01 11:50:37 +02:00
ec566c5dbd libdevmapper: update to 1.02.135 2016-09-28 12:53:37 +02:00
4274482172 libmpfr: update to 3.1.5 2016-09-28 11:36:05 +02:00
Fredrik Rinnestam
6ae07c7054 updated signature 2016-09-26 19:48:03 +02:00
Fredrik Rinnestam
13cf4fd5ab Merge branch '3.2' into 3.3 2016-09-26 19:47:47 +02:00
Fredrik Rinnestam
0e00842c7a [notify] openssl: updated to 1.0.2j. Fix for CVE-2016-7052.
https://www.openssl.org/news/secadv/20160926.txt
2016-09-26 19:47:20 +02:00
Fredrik Rinnestam
7edba65143 updated signatures 2016-09-24 18:38:31 +02:00
Fredrik Rinnestam
65c3affda4 Merge branch '3.2' into 3.3 2016-09-24 18:37:39 +02:00
9d3a6c867d dash: update to 5.9.1 2016-09-24 18:21:14 +02:00
1fe893ba08 sudo: update to 1.8.18 2016-09-24 18:19:46 +02:00