feed/packages.git
6 years agolibvpx: add PKG_CPE_ID id
Luiz Angelo Daros de Luca [Sun, 26 Aug 2018 05:28:37 +0000 (02:28 -0300)]
libvpx: add PKG_CPE_ID id

Signed-off-by: Luiz Angelo Daros de Luca <luizluca@gmail.com>
6 years agoruby: add PKG_CPE_ID id
Luiz Angelo Daros de Luca [Sun, 26 Aug 2018 05:27:52 +0000 (02:27 -0300)]
ruby: add PKG_CPE_ID id

Signed-off-by: Luiz Angelo Daros de Luca <luizluca@gmail.com>
6 years agoMerge pull request #6848 from TDT-AG/pr/20180823-libiio-dependency
Michael Heimpold [Thu, 23 Aug 2018 20:17:11 +0000 (22:17 +0200)]
Merge pull request #6848 from TDT-AG/pr/20180823-libiio-dependency

libiio: add missing dependency to zlib

6 years agophp7: update to 7.2.9
Michael Heimpold [Thu, 23 Aug 2018 20:11:24 +0000 (22:11 +0200)]
php7: update to 7.2.9

Signed-off-by: Michael Heimpold <mhei@heimpold.de>
6 years agophp7: add dependency to hash for mysqlnd
Michael Heimpold [Thu, 23 Aug 2018 20:04:31 +0000 (22:04 +0200)]
php7: add dependency to hash for mysqlnd

The following error shows that mysqlnd depends on functions
provided by hash:

root@OpenWrt:/etc/php7# php-cli -m
PHP Warning:  PHP Startup: Unable to load dynamic library
'mysqlnd.so' (tried: /usr/lib/php/mysqlnd.so (Error
relocating /usr/lib/php/mysqlnd.so: PHP_SHA256Final: symbol
not found), /usr/lib/php/mysqlnd.so.so (Error loading shared
library /usr/lib/php/mysqlnd.so.so: No such file or
directory)) in Unknown on line 0

So let's model this dep in package metadata.

Signed-off-by: Michael Heimpold <mhei@heimpold.de>
6 years agolibiio: add missing dependency to zlib
Martin Schiller [Thu, 23 Aug 2018 06:52:59 +0000 (08:52 +0200)]
libiio: add missing dependency to zlib

Signed-off-by: Martin Schiller <ms@dev.tdt.de>
6 years agoMerge pull request #6828 from neheb/patch-32
Ted Hess [Wed, 22 Aug 2018 22:42:59 +0000 (18:42 -0400)]
Merge pull request #6828 from neheb/patch-32

freetype: Add PKG_CPE_ID for proper CVE tracking

6 years agoMerge pull request #6816 from neheb/patch-4
Ted Hess [Wed, 22 Aug 2018 20:03:41 +0000 (16:03 -0400)]
Merge pull request #6816 from neheb/patch-4

avahi: Add CPE ID to track CVEs

6 years agoMerge pull request #6837 from neheb/patch-33
Ted Hess [Wed, 22 Aug 2018 19:58:48 +0000 (15:58 -0400)]
Merge pull request #6837 from neheb/patch-33

giflib: Add PKG_CPE_ID for proper CVE tracking

6 years agoMerge pull request #6818 from neheb/patch-31
Ted Hess [Wed, 22 Aug 2018 19:57:56 +0000 (15:57 -0400)]
Merge pull request #6818 from neheb/patch-31

ffmpeg: Add CPE ID for proper CVE tracking

6 years agoMerge pull request #6827 from neheb/flac
Ted Hess [Wed, 22 Aug 2018 19:57:16 +0000 (15:57 -0400)]
Merge pull request #6827 from neheb/flac

flac: Fix CVE-2017-6888

6 years agoMerge pull request #6839 from neheb/xml2
Michael Heimpold [Wed, 22 Aug 2018 19:24:38 +0000 (21:24 +0200)]
Merge pull request #6839 from neheb/xml2

libxml2: Fix CVE-2018-14404

6 years agoMerge pull request #6822 from ClaymorePT/boost_1.68.0
Hannu Nyman [Wed, 22 Aug 2018 15:02:38 +0000 (18:02 +0300)]
Merge pull request #6822 from ClaymorePT/boost_1.68.0

boost: Package Version Update -> 1.68.0

6 years agoMerge pull request #6840 from micmac1/maria-10217
Dirk Brenken [Wed, 22 Aug 2018 14:54:37 +0000 (16:54 +0200)]
Merge pull request #6840 from micmac1/maria-10217

mariadb: bump to 10.2.17

6 years agoMerge pull request #6825 from neheb/patch-21
Dirk Brenken [Wed, 22 Aug 2018 14:50:48 +0000 (16:50 +0200)]
Merge pull request #6825 from neheb/patch-21

confuse: Update to 3.2.2

6 years agoMerge pull request #6790 from MikePetullo/dmapd
Dirk Brenken [Wed, 22 Aug 2018 14:47:46 +0000 (16:47 +0200)]
Merge pull request #6790 from MikePetullo/dmapd

dmapd: update to 0.0.76

6 years agoMerge pull request #6645 from neheb/patch-16
Dirk Brenken [Wed, 22 Aug 2018 14:47:03 +0000 (16:47 +0200)]
Merge pull request #6645 from neheb/patch-16

libdmapsharing: Update to 3.9.2

6 years agoMerge pull request #6691 from neheb/ola
Dirk Brenken [Wed, 22 Aug 2018 14:43:40 +0000 (16:43 +0200)]
Merge pull request #6691 from neheb/ola

ola: Update to 0.10.7 and switch to codeload

6 years agoMerge pull request #6734 from neheb/shadow
Dirk Brenken [Wed, 22 Aug 2018 14:41:52 +0000 (16:41 +0200)]
Merge pull request #6734 from neheb/shadow

shadow: Update to 4.6

6 years agoMerge pull request #6715 from neheb/patch-25
Dirk Brenken [Wed, 22 Aug 2018 14:38:34 +0000 (16:38 +0200)]
Merge pull request #6715 from neheb/patch-25

grilo: Update to 0.3.6

6 years agoMerge pull request #6770 from diizzyy/patch-7
Dirk Brenken [Wed, 22 Aug 2018 14:35:05 +0000 (16:35 +0200)]
Merge pull request #6770 from diizzyy/patch-7

net/stunnel: Update to 5.48

6 years agoMerge pull request #6778 from neheb/proto
Dirk Brenken [Wed, 22 Aug 2018 14:34:34 +0000 (16:34 +0200)]
Merge pull request #6778 from neheb/proto

protobuf-c: Update to 1.3.1

6 years agoMerge pull request #6845 from wodu/linuxptp_maint
Dirk Brenken [Wed, 22 Aug 2018 14:29:57 +0000 (16:29 +0200)]
Merge pull request #6845 from wodu/linuxptp_maint

linuxptp: Upgrade to v2.0

6 years agoMerge pull request #6829 from zhaojh329/libuwsc
Dirk Brenken [Wed, 22 Aug 2018 14:27:35 +0000 (16:27 +0200)]
Merge pull request #6829 from zhaojh329/libuwsc

libuwsc: Update to 2.0.5

6 years agoacme: Fix bugs from upstream's change to socat
Toke Høiland-Jørgensen [Wed, 22 Aug 2018 14:03:15 +0000 (16:03 +0200)]
acme: Fix bugs from upstream's change to socat

The upstream acme.sh package changed to using socat instead of netcat;
update the dependencies to reflect this, and pass --listen-v6 when running
in standalone mode (since socat only listens on IPv4 by default).

Also add a missing cleanup call when certificate issuance fails.

Signed-off-by: Toke Høiland-Jørgensen <toke@toke.dk>
6 years agolinuxptp: Upgrade to v2.0
Wojciech Dubowik [Wed, 22 Aug 2018 11:03:06 +0000 (13:03 +0200)]
linuxptp: Upgrade to v2.0

Signed-off-by: Wojciech Dubowik <Wojciech.Dubowik@neratec.com>
6 years agoMerge pull request #6838 from neheb/patch-34
Nikos Mavrogiannopoulos [Wed, 22 Aug 2018 05:42:02 +0000 (07:42 +0200)]
Merge pull request #6838 from neheb/patch-34

gnutls: Add PKG_CPE_ID for proper CVE tracking

6 years agomariadb: bump to 10.2.17
Sebastian Kemper [Tue, 21 Aug 2018 21:19:26 +0000 (23:19 +0200)]
mariadb: bump to 10.2.17

From Release Notes:

 - New variable innodb_log_optimize_ddl for avoiding delay due to page flushing and allowing concurrent backup
 - InnoDB updated to 5.7.23
 - ALTER TABLE fixes:
    MDEV-14637 - Fix hang due to DDL with FOREIGN KEY or persistent statistics
    MDEV-15953 - Alter InnoDB Partitioned Table Moves Files (which were originally not in the datadir) to the datadir
    MDEV-16515 - InnoDB: Failing assertion: ++retries < 10000 in file dict0dict.cc line 2737
    MDEV-16809 - Allow full redo logging for ALTER TABLE
 - Temporary tables: MDEV-16713 - InnoDB hang with repeating log entry
 - indexed virtual columns: MDEV-15855 - Deadlock between purge thread and DDL statement
 - locking: MDEV-16664 - Change the default to innodb_lock_schedule_algorithm=fcfs
 - Galera: MDEV-15822 - WSREP: BF lock wait long for trx
 - Fixes for the following security vulnerabilities:
    CVE-2018-3060
    CVE-2018-3064
    CVE-2018-3063
    CVE-2018-3058
    CVE-2018-3066

Signed-off-by: Sebastian Kemper <sebastian_ml@gmx.net>
6 years agolibxml2: Fix CVE-2018-14404
Rosen Penev [Tue, 21 Aug 2018 20:57:28 +0000 (13:57 -0700)]
libxml2: Fix CVE-2018-14404

Embarrasingly, I missed this one last time.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agognutls: Add PKG_CPE_ID for proper CVE tracking
Rosen Penev [Tue, 21 Aug 2018 19:47:25 +0000 (12:47 -0700)]
gnutls: Add PKG_CPE_ID for proper CVE tracking

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agogiflib: Add PKG_CPE_ID for proper CVE tracking
Rosen Penev [Tue, 21 Aug 2018 19:44:24 +0000 (12:44 -0700)]
giflib: Add PKG_CPE_ID for proper CVE tracking

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agoopenvswitch: bump to version 2.10.0
Yousong Zhou [Tue, 21 Aug 2018 00:39:58 +0000 (00:39 +0000)]
openvswitch: bump to version 2.10.0

 - Rebased the python target/host separation patch
 - Dropped the now-in-upstream openssl-1.1 compat patch
 - Added a patch to disable tests/

Signed-off-by: Yousong Zhou <yszhou4tech@gmail.com>
6 years agoMerge pull request #6819 from tru7/emailrelay
Jo-Philipp Wich [Tue, 21 Aug 2018 13:33:19 +0000 (15:33 +0200)]
Merge pull request #6819 from tru7/emailrelay

emailrelay: add some runtime options

6 years agolibuwsc: Update to 2.0.5
Jianhui Zhao [Tue, 21 Aug 2018 09:16:41 +0000 (17:16 +0800)]
libuwsc: Update to 2.0.5

Signed-off-by: Jianhui Zhao <jianhuizhao329@gmail.com>
6 years agoMerge pull request #6679 from zhouruixi/nginx_dav_master
Hannu Nyman [Tue, 21 Aug 2018 08:50:06 +0000 (11:50 +0300)]
Merge pull request #6679 from zhouruixi/nginx_dav_master

nginx: Add missing WebDAV methods support (PROPFIND & OPTIONS)

6 years agofreetype: Add PKG_CPE_ID for proper CVE tracking
Rosen Penev [Tue, 21 Aug 2018 04:40:57 +0000 (21:40 -0700)]
freetype: Add PKG_CPE_ID for proper CVE tracking

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agoflac: Fix CVE-2017-6888
Rosen Penev [Tue, 21 Aug 2018 04:12:50 +0000 (21:12 -0700)]
flac: Fix CVE-2017-6888

Added PKG_CPE_ID for proper CVE tracking.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agoconfuse: Update to 3.2.2
Rosen Penev [Tue, 21 Aug 2018 03:48:17 +0000 (20:48 -0700)]
confuse: Update to 3.2.2

Fix for CVE-2018-14447

God rid of pointless autoreconf.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agoboost: Package Version Update -> 1.68.0
Carlos Miguel Ferreira [Tue, 21 Aug 2018 01:13:59 +0000 (02:13 +0100)]
boost: Package Version Update -> 1.68.0

This package update provides one new library:
 - YAP: An expression template library for C++14 and later, from Zach Laine [1].

More info can be found at the usual place [2].

[1] : https://www.boost.org/libs/yap/
[2] : https://www.boost.org/users/history/version_1_68_0.html

Signed-off-by: Carlos Miguel Ferreira <carlosmf.pt@gmail.com>
6 years agonginx: Add missing WebDAV methods support (PROPFIND & OPTIONS)
Ruixi Zhou [Sun, 12 Aug 2018 06:23:50 +0000 (14:23 +0800)]
nginx: Add missing WebDAV methods support (PROPFIND & OPTIONS)

Nginx provide WebDAV methods PUT, DELETE, MKCOL, COPY, and MOVE with
http_dav_module. But most WebDAV clients that require additional WebDAV
methods (PROPFIND & OPTIONS) to operate. Add missing methods support
with Arutyunyan Roman (arutyunyan.roman@gmail.com)'s nginx-dav-ext-module.
(see: http://nginx.org/en/docs/http/ngx_http_dav_module.html
https://github.com/arut/nginx-dav-ext-module)

Example config:
location / {
dav_methods PUT DELETE MKCOL COPY MOVE;
dav_ext_methods PROPFIND OPTIONS;

root /var/root/;
}

Signed-off-by: Ruixi Zhou <zhouruixi@gmail.com>
6 years agoemailrelay: add some runtime options
Othmar Truniger [Mon, 20 Aug 2018 17:18:08 +0000 (19:18 +0200)]
emailrelay: add some runtime options

Signed-off-by: Othmar Truniger <github@truniger.ch>
6 years agoMerge pull request #6602 from neheb/patch-17
Hannu Nyman [Mon, 20 Aug 2018 17:08:43 +0000 (20:08 +0300)]
Merge pull request #6602 from neheb/patch-17

evtest: Switch to tarballs

6 years agoMerge pull request #6668 from cotequeiroz/emailrelay_pam
Dirk Brenken [Mon, 20 Aug 2018 16:14:56 +0000 (18:14 +0200)]
Merge pull request #6668 from cotequeiroz/emailrelay_pam

emailrelay: avoind linking with -lpam

6 years agoMerge pull request #6747 from mark0n/fix-curl-variable
Dirk Brenken [Mon, 20 Aug 2018 16:04:16 +0000 (18:04 +0200)]
Merge pull request #6747 from mark0n/fix-curl-variable

ddns-scripts: Fix problems detecting if curl is SSL capable

6 years agoddns-scripts_route53-v1: Fix problems detecting curl
Martin Konrad [Mon, 13 Aug 2018 03:19:08 +0000 (23:19 -0400)]
ddns-scripts_route53-v1: Fix problems detecting curl

Ensure cURL is installed and has SSL support. This fixes
issue 6744.

Signed-off-by: Martin Konrad <info@martin-konrad.net>
6 years agoMerge pull request #6789 from Ansuel/fixuwsgi
Hannu Nyman [Mon, 20 Aug 2018 15:04:29 +0000 (18:04 +0300)]
Merge pull request #6789 from Ansuel/fixuwsgi

uwsgi-cgi: improve luci support

6 years agoMerge pull request #6788 from Ansuel/fixnginx
Hannu Nyman [Mon, 20 Aug 2018 15:04:05 +0000 (18:04 +0300)]
Merge pull request #6788 from Ansuel/fixnginx

nginx: improve luci config

6 years agouwsgi-cgi: improve luci support
Ansuel Smith [Sat, 18 Aug 2018 17:04:47 +0000 (19:04 +0200)]
uwsgi-cgi: improve luci support

Signed-off-by: Ansuel Smith <ansuelsmth@gmail.com>
6 years agonginx: improve luci config
Ansuel Smith [Sat, 18 Aug 2018 17:11:33 +0000 (19:11 +0200)]
nginx: improve luci config

Signed-off-by: Ansuel Smith <ansuelsmth@gmail.com>
6 years agonet/mosquitto: update to 1.5.1
Karl Palsson [Mon, 20 Aug 2018 09:30:12 +0000 (09:30 +0000)]
net/mosquitto: update to 1.5.1

Bugfix release.  Full changelog at:
https://mosquitto.org/blog/2018/08/version-151-released/

Of most interest to OpenWrt:
* Remove use of AI_ADDRCONFIG, which means the broker can be used on systems where only the loopback interface is defined.
* Fix IPv6 addresses not being able to be used as bridge addresses.
* Fix problem opening listeners on Pi caused by unsigned char being default.
* Fix segfault on startup if bridge CA certificates could not be read.
* Fix possible endian issue when reading the memory_limit option.
* library and client bugfixes including: https://github.com/openwrt/packages/issues/6765

Signed-off-by: Karl Palsson <karlp@etactica.com>
6 years agoMerge pull request #6810 from Andy2244/rpcbind-update
Dirk Brenken [Mon, 20 Aug 2018 08:17:57 +0000 (10:17 +0200)]
Merge pull request #6810 from Andy2244/rpcbind-update

rpcbind: update to 1.2.5

6 years agoMerge pull request #6784 from neheb/patch-21
Dirk Brenken [Mon, 20 Aug 2018 07:49:01 +0000 (09:49 +0200)]
Merge pull request #6784 from neheb/patch-21

python-pyasn1: Update to 0.4.4

6 years agoMerge pull request #6785 from neheb/patch-22
Dirk Brenken [Mon, 20 Aug 2018 07:25:32 +0000 (09:25 +0200)]
Merge pull request #6785 from neheb/patch-22

python-urllib3: Update to 1.2.3

6 years agoMerge pull request #6813 from neheb/sudo
Dirk Brenken [Mon, 20 Aug 2018 07:24:07 +0000 (09:24 +0200)]
Merge pull request #6813 from neheb/sudo

sudo: Update to 1.8.24

6 years agopython-urllib3: Update to 1.23
Rosen Penev [Sat, 18 Aug 2018 06:20:08 +0000 (23:20 -0700)]
python-urllib3: Update to 1.23

Use a better URL.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agoqemu: tighten up CONFIGURE_ARGS spec
Yousong Zhou [Mon, 20 Aug 2018 02:38:58 +0000 (02:38 +0000)]
qemu: tighten up CONFIGURE_ARGS spec

This is more for readability, no functional change

Signed-off-by: Yousong Zhou <yszhou4tech@gmail.com>
6 years agoqemu: bump to version 3.0.0
Yousong Zhou [Mon, 20 Aug 2018 02:18:23 +0000 (02:18 +0000)]
qemu: bump to version 3.0.0

Also switch to domain download.qemu.org and .xz files

Signed-off-by: Yousong Zhou <yszhou4tech@gmail.com>
6 years agoffmpeg: Add CPE ID for proper CVE tracking
Rosen Penev [Sun, 19 Aug 2018 22:19:32 +0000 (15:19 -0700)]
ffmpeg: Add CPE ID for proper CVE tracking

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agoavahi: Add CPE ID to track CVEs
Rosen Penev [Sun, 19 Aug 2018 22:05:41 +0000 (15:05 -0700)]
avahi: Add CPE ID to track CVEs

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agontpd: update to 4.2.8p12
Peter Wagner [Sun, 19 Aug 2018 21:37:05 +0000 (23:37 +0200)]
ntpd: update to 4.2.8p12

Signed-off-by: Peter Wagner <tripolar@gmx.at>
6 years agosudo: Update to 1.8.24
Rosen Penev [Sun, 19 Aug 2018 20:54:27 +0000 (13:54 -0700)]
sudo: Update to 1.8.24

Changed URLs to HTTPS

Rearranged Makefile for consistency.

Added PKG_BUILD_PARALLEL for faster compilation.

Added PKG_CPE_ID for CVE tracking.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agoMerge pull request #6812 from pprindeville/perl-cgi-4.40
Philip Prindeville [Sun, 19 Aug 2018 20:51:36 +0000 (14:51 -0600)]
Merge pull request #6812 from pprindeville/perl-cgi-4.40

perl-cgi: Update to 4.40

6 years agoperl-cgi: Update to 4.40
Philip Prindeville [Sun, 19 Aug 2018 20:26:15 +0000 (14:26 -0600)]
perl-cgi: Update to 4.40

Signed-off-by: Philip Prindeville <philipp@redfish-solutions.com>
6 years agoMerge pull request #6539 from neheb/patch-4
Hannu Nyman [Sun, 19 Aug 2018 17:15:39 +0000 (20:15 +0300)]
Merge pull request #6539 from neheb/patch-4

bluelog: Switch to GitHub tarball

6 years agoMerge pull request #6488 from neheb/patch-2
Hannu Nyman [Sun, 19 Aug 2018 17:14:34 +0000 (20:14 +0300)]
Merge pull request #6488 from neheb/patch-2

alpine: Update to 2.21.9999

6 years agoMerge pull request #6780 from neheb/tiff
Jiri Slachta [Sun, 19 Aug 2018 17:10:32 +0000 (19:10 +0200)]
Merge pull request #6780 from neheb/tiff

tiff: Fix remaining CVEs

6 years agoMerge pull request #6803 from neheb/monit
champtar [Sun, 19 Aug 2018 14:55:06 +0000 (10:55 -0400)]
Merge pull request #6803 from neheb/monit

monit: Update to 5.25.2

6 years agoMerge pull request #6802 from neheb/patch-30
champtar [Sun, 19 Aug 2018 14:51:11 +0000 (10:51 -0400)]
Merge pull request #6802 from neheb/patch-30

htop: Minor adjustments

6 years agorpcbind: update to 1.2.5
Andy Walsh [Sun, 19 Aug 2018 14:33:42 +0000 (16:33 +0200)]
rpcbind: update to 1.2.5

* update to 1.2.5
* fix wrong URL
* adapt to bin/sbin from new version

Signed-off-by: Andy Walsh <andy.walsh44+github@gmail.com>
6 years agomonit: Update to 5.25.2
Rosen Penev [Sun, 19 Aug 2018 04:52:21 +0000 (21:52 -0700)]
monit: Update to 5.25.2

Added PKG_BUILD_PARALLEL to speed up compilation times.

Added PKG_CPE_ID for proper CVE tracking.

A few other cosmetic changes.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agohtop: Minor adjustments
Rosen Penev [Sun, 19 Aug 2018 04:31:22 +0000 (21:31 -0700)]
htop: Minor adjustments

Added PKG_CPE_ID for proper CVE tracking.

Fixed URLs. Changed to HTTPS as well.

Removed autoreconf as there is no patching being done.

PKG_BUILD_PARALLEL was enabled for faster building.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agodmapd: update to 0.0.76
W. Michael Petullo [Sat, 18 Aug 2018 19:47:40 +0000 (15:47 -0400)]
dmapd: update to 0.0.76

Signed-off-by: W. Michael Petullo <mike@flyn.org>
6 years agoMerge pull request #6775 from neheb/patch-27
Ted Hess [Sat, 18 Aug 2018 19:33:03 +0000 (15:33 -0400)]
Merge pull request #6775 from neheb/patch-27

shairport-sync: Install /etc/config as 600

6 years agoMerge pull request #6781 from neheb/xml2
Michael Heimpold [Sat, 18 Aug 2018 11:13:29 +0000 (13:13 +0200)]
Merge pull request #6781 from neheb/xml2

libxml2: Fix CVE-2018-9251 and CVE-2018-14567

6 years agopython-pyasn1: Update to 0.4.4
Rosen Penev [Sat, 18 Aug 2018 06:12:33 +0000 (23:12 -0700)]
python-pyasn1: Update to 0.4.4

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agolibxml2: Fix CVE-2018-9251 and CVE-2018-14567
Rosen Penev [Sat, 18 Aug 2018 01:45:42 +0000 (18:45 -0700)]
libxml2: Fix CVE-2018-9251 and CVE-2018-14567

Also added the CPE ID.

Taken from Fedora.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agotiff: Fix remaining CVEs
Rosen Penev [Sat, 18 Aug 2018 00:42:20 +0000 (17:42 -0700)]
tiff: Fix remaining CVEs

Taken from Fedora. Reordered them so as to apply properly.

Added a CPE ID.

Added parallel build for faster compilation.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agophp7-pecl-http: update to 3.2.0
Michael Heimpold [Fri, 17 Aug 2018 21:14:31 +0000 (23:14 +0200)]
php7-pecl-http: update to 3.2.0

Drop already upstreamed patches.

Signed-off-by: Michael Heimpold <mhei@heimpold.de>
6 years agolibgpiod: update to 1.1.1
Michael Heimpold [Fri, 17 Aug 2018 20:13:00 +0000 (22:13 +0200)]
libgpiod: update to 1.1.1

Signed-off-by: Michael Heimpold <mhei@heimpold.de>
6 years agoprotobuf-c: Update to 1.3.1
Rosen Penev [Fri, 17 Aug 2018 19:11:11 +0000 (12:11 -0700)]
protobuf-c: Update to 1.3.1

Switched to regular tarballs. Makes updating easier and avoids having to
autoreconf. Simplifies Makefile slightly.

Updated project URL. Some Makefile reorganization was done for consistency
with other packages.

Added parallel build for faster building.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agoMerge pull request #6761 from neheb/patch-22
Dirk Brenken [Fri, 17 Aug 2018 16:26:20 +0000 (18:26 +0200)]
Merge pull request #6761 from neheb/patch-22

btrfs-progs: Update to 4.17.1

6 years agoMerge pull request #6673 from neheb/patch-21
Dirk Brenken [Fri, 17 Aug 2018 14:37:30 +0000 (16:37 +0200)]
Merge pull request #6673 from neheb/patch-21

scapy: Update to 2.4.0 and change URLs to new

6 years agoMerge pull request #6763 from neheb/patch-24
Dirk Brenken [Fri, 17 Aug 2018 12:33:08 +0000 (14:33 +0200)]
Merge pull request #6763 from neheb/patch-24

geth: Update to 1.8.13

6 years agoMerge pull request #6774 from EricLuehrsen/unbound_20180815
Dirk Brenken [Fri, 17 Aug 2018 12:28:44 +0000 (14:28 +0200)]
Merge pull request #6774 from EricLuehrsen/unbound_20180815

unbound: drop odhcpd leases with wrong field count

6 years agoMerge pull request #6659 from cshoredaniel/pr-update-gitolite3
Hannu Nyman [Fri, 17 Aug 2018 08:37:57 +0000 (11:37 +0300)]
Merge pull request #6659 from cshoredaniel/pr-update-gitolite3

Updates for gitolite package

6 years agoshairport-sync: Install /etc/config as 600
Rosen Penev [Fri, 17 Aug 2018 04:02:38 +0000 (21:02 -0700)]
shairport-sync: Install /etc/config as 600

/etc/config should not be readable by non-root.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agounbound: drop odhcpd leases with wrong field count
Eric Luehrsen [Fri, 17 Aug 2018 01:37:43 +0000 (21:37 -0400)]
unbound: drop odhcpd leases with wrong field count

Signed-off-by: Eric Luehrsen <ericluehrsen@gmail.com>
6 years agonet/stunnel: Update to 5.48
Daniel Engberg [Thu, 16 Aug 2018 21:09:47 +0000 (23:09 +0200)]
net/stunnel: Update to 5.48

Update stunnel to 5.48

Signed-off-by: Daniel Engberg <daniel.engberg.lists@pyret.net>
6 years agoMerge pull request #6729 from neheb/patch-28
Hannu Nyman [Thu, 16 Aug 2018 14:33:16 +0000 (17:33 +0300)]
Merge pull request #6729 from neheb/patch-28

grep: Update to 3.1

6 years agoMerge pull request #6755 from Andy2244/samba4-update
Hannu Nyman [Thu, 16 Aug 2018 14:30:20 +0000 (17:30 +0300)]
Merge pull request #6755 from Andy2244/samba4-update

samba4: update to 4.8.4

6 years agoMerge pull request #6698 from dedeckeh/pr-xtables-addons-rtsp
Jo-Philipp Wich [Thu, 16 Aug 2018 13:57:49 +0000 (15:57 +0200)]
Merge pull request #6698 from dedeckeh/pr-xtables-addons-rtsp

Pr xtables addons rtsp

6 years agoMerge pull request #6562 from KarlVogel/host_sanitize
Jo-Philipp Wich [Thu, 16 Aug 2018 13:44:28 +0000 (15:44 +0200)]
Merge pull request #6562 from KarlVogel/host_sanitize

ddns-scripts: sanitize host charset and shell escape characters

6 years agorpcbind: disable libwrap explicitly if it's not enabled to avoid linking against it
Peter Wagner [Thu, 16 Aug 2018 09:51:14 +0000 (11:51 +0200)]
rpcbind: disable libwrap explicitly if it's not enabled to avoid linking against it

Signed-off-by: Peter Wagner <tripolar@gmx.at>
6 years agogeth: Update to 1.8.13
Rosen Penev [Thu, 16 Aug 2018 02:21:36 +0000 (19:21 -0700)]
geth: Update to 1.8.13

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agobtrfs-progs: Update to 4.17.1
Rosen Penev [Thu, 16 Aug 2018 01:47:47 +0000 (18:47 -0700)]
btrfs-progs: Update to 4.17.1

Cosmetic adjustments

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agoshadow: Update to 4.6
Rosen Penev [Sat, 11 Aug 2018 06:27:13 +0000 (23:27 -0700)]
shadow: Update to 4.6

Switched dead URLs to new upstream.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
6 years agoMerge pull request #6726 from neheb/patch-27
Daniel Golle [Wed, 15 Aug 2018 22:49:49 +0000 (00:49 +0200)]
Merge pull request #6726 from neheb/patch-27

python-gnupg: Update to 0.4.3

6 years agoMerge pull request #6758 from micmac1/postgresql-master
Daniel Golle [Wed, 15 Aug 2018 22:48:26 +0000 (00:48 +0200)]
Merge pull request #6758 from micmac1/postgresql-master

postgresql: security bump to 9.6.10

6 years agoMerge pull request #6624 from neheb/lvm
Daniel Golle [Wed, 15 Aug 2018 22:47:24 +0000 (00:47 +0200)]
Merge pull request #6624 from neheb/lvm

LVM2: Update to 2.02.80

6 years agodevice-observatory: add new package
Moritz Warning [Thu, 17 May 2018 21:44:10 +0000 (23:44 +0200)]
device-observatory: add new package

Shows network/wireless activity on a local website
to increase awareness for privacy and security matters.

Signed-off-by: Moritz Warning <moritzwarning@web.de>