Franz Pletz
ab76618924
fuseiso: fix CVE-2015-8836 & CVE-2015-8837
...
(cherry picked from commit 668572753c
)
2016-09-25 17:39:00 +02:00
Joachim Fasting
5fc3e32c44
spl: fix eval
...
xref: 30ae939142
(cherry picked from commit e1395365ea
)
2016-09-25 16:53:08 +02:00
Aneesh Agrawal
38eac14061
jq: Fix CVE-2015-8863 and CVE-2016-4074 ( #18908 )
...
jq has not had a release since v1.5 in August 2015, so backport both of
these patches (the fix for CVE-2015-8863 is in the current master, while
the fix for CVE-2016-4074 is not yet in master).
(cherry picked from commit bfbca9dacd
)
2016-09-25 15:15:51 +02:00
Franz Pletz
f0c5eb5bbd
linuxPackages.spl: don't mark as broken on kernel >= 4.7
...
Compatibility added in c8c688b0c9
.
(cherry picked from commit 30ae939142
)
2016-09-25 14:56:53 +02:00
Franz Pletz
7cd53afee3
linuxPackages.jool: 3.4.4 -> 3.4.5
...
(cherry picked from commit 6e063a49b1
)
2016-09-25 14:24:18 +02:00
Franz Pletz
5f00e952a4
linuxPackages.zfs: 0.6.5.7 -> 0.6.5.8
...
Adds compatibility for 4.7 & 4.8 Linux kernels.
(cherry picked from commit c8c688b0c9
)
2016-09-25 14:24:18 +02:00
Franz Pletz
06fd031d35
linux: 4.7.4 -> 4.7.5
...
(cherry picked from commit 3a4a425728
)
2016-09-25 14:24:17 +02:00
Franz Pletz
58c9032106
linux: 4.4.20 -> 4.4.22
...
(cherry picked from commit c83f8a536a
)
2016-09-25 14:24:17 +02:00
Franz Pletz
dcda10ce16
linux: 4.1.31 -> 4.1.33
...
(cherry picked from commit fdf239fb83
)
2016-09-25 14:24:17 +02:00
Franz Pletz
31568f1bac
linux: 3.18.40 -> 3.18.42
...
(cherry picked from commit 17402fc4a3
)
2016-09-25 14:24:16 +02:00
Franz Pletz
50290c5cdb
kernelPatches: remove unneeded patches
...
(cherry picked from commit 31ff655e46
)
2016-09-25 14:24:16 +02:00
Franz Pletz
c95e120dc9
linux: 3.12.62 -> 3.12.63
...
(cherry picked from commit 01f465c82b
)
2016-09-25 14:24:16 +02:00
Franz Pletz
e2b5b744b1
linux: 3.10.102 -> 3.10.103
...
(cherry picked from commit b1029abe56
)
2016-09-25 14:24:15 +02:00
Franz Pletz
f7c817a3ab
linux_4_6: remove, not maintained anymore
...
(cherry picked from commit e8cd27dd8a
)
2016-09-25 14:23:52 +02:00
Vladimír Čunát
89f6c01adc
Merge #18925 : nettle: 3.1.1 -> 3.2
...
It fixes bugs in crypto calculations.
(cherry picked from commit 265a4752f6
)
2016-09-25 13:39:49 +02:00
Vladimír Čunát
052eaed013
Merge #18909 : flex: 2.6.0 -> 2.6.1
...
It contains security fixes.
(cherry picked from commit aaa29843c3
)
2016-09-25 13:39:44 +02:00
Vladimír Čunát
66ed92d63b
Merge branch 'release-16.09' into staging-16.09
2016-09-25 13:39:18 +02:00
Graham Christensen
ad3d15c0b6
davfs2: 1.5.2 -> 1.5.3
...
(cherry picked from commit 70bf407cf8
)
2016-09-25 07:35:45 -04:00
Graham Christensen
3d089ae7c2
mailman: 2.1.18 -> 2.1.23
...
(cherry picked from commit f7f4930912
)
2016-09-25 07:19:07 -04:00
Graham Christensen
e1e16af610
ikiwiki: 3.20150614 -> 3.20160905
...
(cherry picked from commit 5e043ffa45
)
2016-09-25 07:18:45 -04:00
Rok Garbas
210ebb529b
pypi2nix: 1.4.0 -> 1.5.0
2016-09-25 04:50:58 +02:00
Jörg Thalheim
dd4d0b1c1e
monit: 5.10 -> 5.19.0
...
monit disables SSLv23 now by default, see
- https://mmonit.com/monit/changes/
- https://lwn.net/Vulnerabilities/691497/
cc #18916
(cherry picked from commit 6b34a62ef8
)
2016-09-25 02:09:13 +02:00
Franz Pletz
0ce6bbd127
chromium: update to latest channel releases (security)
...
Fixes at least:
- CVE-2016-1667
- CVE-2016-1668
- CVE-2016-1669
- CVE-2016-1670
- CVE-2016-5170
- CVE-2016-5171
- CVE-2016-5172
- CVE-2016-5173
- CVE-2016-5174
- CVE-2016-5175
- CVE-2016-7395
cc #18856
(cherry picked from commit 072917ea5d
)
2016-09-24 22:07:09 +02:00
Franz Pletz
142ee90ef7
librsvg: 2.40.9 -> 2.40.16 (security)
...
Fixes CVE-2015-7558 & CVE-2016-6163.
cc #18856
(cherry picked from commit ee8fed4697
)
2016-09-24 22:07:08 +02:00
Franz Pletz
a6f58636d2
pcre: 8.38 -> 8.39 (security)
...
Fixes:
- CVE-2014-9769
- CVE-2015-2327
- CVE-2015-2328
- CVE-2015-8382
- CVE-2016-3191
cc #18856
(cherry picked from commit 6244be2d0a
)
2016-09-24 21:54:08 +02:00
Vladimír Čunát
0cba714395
wayland: resurrect version 1.9.0
...
It'll likely be useful because of #16779 , at least for some users.
Most of the change sneaked in c68850c6b
already, by mistake.
(cherry picked from commit 0593ad2b16
)
2016-09-24 19:38:09 +02:00
Vladimír Čunát
39f77eb8de
nixos opengl: use mesa_drivers.out
...
...instead of mesa_noglu.out. Closures of systems remain unchanged,
as both are in (and the .out output is very small anyway).
This is to make sure that we use lib*GL* that aren't slowed down by grsecurity.
(cherry picked from commit c68850c6be
)
2016-09-24 19:22:13 +02:00
Vladimír Čunát
c4469edac1
Merge #18905 : ffmpeg: 2.8.7 -> 2.8.8
...
It contains security fixes.
(cherry picked from commit c3d1caf97b
)
2016-09-24 17:40:49 +02:00
Franz Pletz
e891f0d16d
imagemagick: 6.9.5-2 -> 6.9.5-10
...
Fixes lots of CVEs, including the recent:
* CVE-2016-4562, CVE-2016-4563, CVE-2016-4564
* CVE-2016-5687
* CVE-2016-5010
* CVE-2016-5688
* CVE-2016-5689, CVE-2016-5690, CVE-2016-5691
* CVE-2016-5841 and CVE-2016-5842
* CVE-2016-6491
* CVE-2016-6520
cc #18856
(cherry picked from commit fa6c6dae76
)
2016-09-24 17:00:53 +02:00
Joachim Fasting
fa6208fe6b
grsecurity: 4.7.4-201609152234 -> 201609211951
...
(cherry picked from commit 64816cd972
)
2016-09-24 16:17:46 +02:00
Joachim Fasting
fc8c728f99
tor: 0.2.8.7 -> 0.2.8.8
...
Fixes two crashing bugs, nothing else of note.
(cherry picked from commit f0c85376b2
)
2016-09-24 16:17:34 +02:00
Wei-Ming Yang
fc1d57a4cf
murmur service: welcome -> welcometext
...
fixed incorrect option name `welcome` to `welcometext`.
joachifm added a rename for backwards compat.
Closes https://github.com/NixOS/nixpkgs/pull/18570
(cherry picked from commit e330807e1f
)
2016-09-24 16:17:05 +02:00
Franz Pletz
b762216a3d
a2ps: fix CVE-2001-1593 & CVE-2014-0466
...
(cherry picked from commit c39195d699
)
2016-09-24 15:36:28 +02:00
Graham Christensen
40ced8bf5d
mysql_jdbc: 5.1.38 -> 5.1.39
...
(cherry picked from commit 0e00ab37f8
)
2016-09-24 09:23:28 -04:00
Nikolay Amiantov
7e98bfd752
stage-1 module: remove check that swap device has a label
...
All swap device option sets "have" a label, it's just that sometimes it's
undefined. Because we set a `device` attribute when we have a label anyway it's
ok to just check device prefix.
Fixes #18891 .
(cherry picked from commit a63ca1bf3d
)
2016-09-24 13:09:29 +03:00
Nikolay Amiantov
cbaf36b5ed
quake3: refactor wrapper, fix pak collisions
...
(cherry picked from commit e80b22369d
)
2016-09-24 12:50:24 +03:00
Graham Christensen
4d4aaef3a4
lighttpd: 1.4.40 -> 1.4.41
...
(cherry picked from commit 33be079486
)
2016-09-24 11:25:45 +02:00
Aneesh Agrawal
2a082e112a
as31: Apply Debian patch for CVE-2012-0808 ( #18904 )
...
(cherry picked from commit 9f7d9def4c
)
2016-09-23 22:31:10 -04:00
Franz Pletz
8de2edfbf3
asterisk: fix source url
...
(cherry picked from commit 53c660dbc8
)
2016-09-24 03:01:28 +02:00
Franz Pletz
55a1fb157a
jansson: 2.7 -> 2.8
...
Fixes CVE-2016-4425.
cc #18856
(cherry picked from commit fc0f3ebb20
)
2016-09-24 03:01:27 +02:00
Franz Pletz
5a86378784
brogue: disable fortify hardening to fix runtime error
...
See #18888 .
(cherry picked from commit 89a5f7de83
)
2016-09-24 02:10:43 +02:00
Profpatsch
f77edcc879
brogue: fix crash by stackprotector hardening ( #18888 )
...
(cherry picked from commit 67bec77c68
)
2016-09-24 02:07:12 +02:00
Franz Pletz
4dbb81b375
bedup: 0.10 -> 0.10.1, fix eval
...
bedup is not available for Python 2, our current default.
(cherry picked from commit 06395c6baf
)
2016-09-24 02:04:36 +02:00
Tim Steinbach
38a00fc5ff
openjdk7: 1.7.0-91 -> 1.7.0-111
...
(cherry picked from commit 83a893c38a
)
2016-09-23 19:59:13 -04:00
Tim Steinbach
21a3733fd1
bind: 9.10.4 -> 9.10.4-P2 ( #18880 )
...
(cherry picked from commit dbbff67754
)
2016-09-24 01:56:47 +02:00
Alexander Ried
6261c79992
perlPackages.WWWCurl: fix broken build after curl update
...
upstream bugreport:
https://rt.cpan.org/Public/Bug/Display.html?id=117793
patch also taken from there
(cherry picked from commit 123f81b866
)
2016-09-23 18:59:25 -04:00
Tim Steinbach
0af39741ca
mariadb: 10.1.16 -> 10.1.17
...
(cherry picked from commit e525217269
)
2016-09-23 17:59:06 -04:00
Tim Steinbach
88600788e4
mysql55: 5.5.50 -> 5.5.52
...
(cherry picked from commit 85b6923ba9
)
2016-09-23 17:39:01 -04:00
Thomas Tuegel
4d26875e56
firefox-bin: update hashes
2016-09-23 14:47:41 -05:00
Thomas Tuegel
9e09814de5
emacs25: 25.1-rc2 -> 25.1
...
Backport Emacs 25.1 from master.
2016-09-23 14:47:41 -05:00