| Commit message (Expand) | Author | Age | Files | Lines | |
|---|---|---|---|---|---|
| * | chromium: 96.0.4664.93 -> 96.0.4664.110•••https://chromereleases.googleblog.com/2021/12/stable-channel-update-for-desktop_13.html This update includes 5 security fixes. Google is aware of reports that an exploit for CVE-2021-4102 exists in the wild. CVEs: CVE-2021-4098 CVE-2021-4099 CVE-2021-4100 CVE-2021-4101 CVE-2021-4102 (cherry picked from commit 9528f0d87e3134b8ce272161a9315c0569149e1b) origin/backport-150715-to-release-21.05 | Michael Weiss | 2021-12-14 | 1 | -3/+3 |
| * | Merge pull request #150716 from NixOS/backport-139673-to-release-21.05 | Martin Weinelt | 2021-12-14 | 1 | -2/+2 |
| |\ | |||||
| | * | edk2: 202102 -> 202108•••(cherry picked from commit ccbdef3b206c14c588ae6fa2bbd37695a09f998f) | Martin Weinelt | 2021-12-14 | 1 | -2/+2 |
| |/ | |||||
| * | Merge pull request #150526 from Ma27/signald-cve-2021-44228-21.05•••[21.05] signald: incorporate log4j update for CVE-2021-44228 | Maximilian Bosch | 2021-12-13 | 1 | -3/+9 |
| |\ | |||||
| | * | signald: incorporate log4j update for CVE-2021-44228•••Equivalent to 79ab6a83828ecee660e362e6c97384ff0489f9b2 on `master`, but against 0.14.1. Relevant for #150288 | Maximilian Bosch | 2021-12-13 | 1 | -3/+9 |
| |/ | |||||
| * | Merge pull request #150426 from pennae/backport-150329-to-release-21.05 | Janne Heß | 2021-12-13 | 1 | -0/+1 |
| |\ | |||||
| | * | nixos/unifi: Apply log4j2 mitigation•••(cherry picked from commit e992604bf0b4afb4c3e8ccad04d6ea69bba49681) | Zhaofeng Li | 2021-12-12 | 1 | -0/+1 |
| * | | Merge pull request #150466 from Ma27/grafana-security-21.05•••[21.05] grafana: 7.5.11 -> 7.5.12, fix CVE-2021-43813 | Maximilian Bosch | 2021-12-12 | 1 | -3/+3 |
| |\ \ | |||||
| | * | | grafana: 7.5.11 -> 7.5.12•••Fixes CVE-2021-43813[1], a directory-traversal vulnerability for `.md`-files (for authenticated users only). ChangeLog: https://github.com/grafana/grafana/releases/tag/v7.5.12 [1] https://nvd.nist.gov/vuln/detail/CVE-2021-43813 | Maximilian Bosch | 2021-12-12 | 1 | -3/+3 |
| |/ / | |||||
| * | | Merge pull request #150389 from vcunat/p/thunderbird-21.05•••[21.05] thunderbird: 91.3.1 -> 91.4.0 | Thiago Kenji Okada | 2021-12-12 | 1 | -2/+2 |
| |\ \ | |/ |/| | |||||
| | * | thunderbird: 91.3.1 -> 91.4.0•••(Cherry-picked from 901064350e0, skipping 91.3.2.) | Vladimír Čunát | 2021-12-12 | 1 | -2/+2 |
| |/ | |||||
| * | Merge pull request #150159 from ius/ghidra-21.05•••[21.05] ghidra: 9.2.3 -> 9.2.4 | Jörg Thalheim | 2021-12-11 | 1 | -3/+21 |
| |\ | |||||
| | * | ghidra: fix CVE-2021-44228 | Joerie de Gram | 2021-12-11 | 1 | -0/+18 |
| | * | ghidra: 9.2.3 -> 9.2.4 | Joerie de Gram | 2021-12-11 | 1 | -3/+3 |
| * | | Merge #149902: knot-resolver: patch an issue | Vladimír Čunát | 2021-12-10 | 1 | -1/+9 |
| |\ \ | |/ |/| | |||||
| | * | knot-resolver: patch a possibly unpleasant issue•••No more releasing in 2021. (cherry picked from commit 02d8ed2eb1746e4ed35482bf558246ac261bb3d2) | Vladimír Čunát | 2021-12-09 | 1 | -1/+9 |
| |/ | |||||
| * | Merge pull request #149855 from NixOS/backport-149844-to-release-21.05•••[Backport release-21.05] privoxy: 3.0.32 -> 3.0.33 | Thiago Kenji Okada | 2021-12-09 | 1 | -2/+2 |
| |\ | |||||
| | * | privoxy: 3.0.32 -> 3.0.33•••(cherry picked from commit 9a4da4a8a0ddb1276b401ca4aed20718f5369841) | Martin Weinelt | 2021-12-09 | 1 | -2/+2 |
| |/ | |||||
| * | Merge pull request #149752 from NixOS/backport-147994-to-release-21.05 | Martin Weinelt | 2021-12-09 | 1 | -1/+3 |
| |\ | |||||
| | * | pythonPackages.requests-toolbelt: disable time-dependant tests•••Tests include certificates and fail because they are expired. Upstream issue exists but has been ignored: https://github.com/requests/toolbelt/issues/306 closes #147776 (cherry picked from commit 62df72857c2987a270e0bdb7c6f2738f56132e4a) | Jamie McClymont | 2021-12-09 | 1 | -1/+3 |
| |/ | |||||
| * | Merge pull request #149702 from NixOS/backport-149691-to-release-21.05•••[Backport release-21.05] ungoogled-chromium: 96.0.4664.45 -> 96.0.4664.93 | Thiago Kenji Okada | 2021-12-08 | 1 | -5/+5 |
| |\ | |||||
| | * | ungoogled-chromium: 96.0.4664.45 -> 96.0.4664.93•••(cherry picked from commit a5782a2b53e2bb77d1cb7cb9aa1242b2b296f247) | Michael Weiss | 2021-12-08 | 1 | -5/+5 |
| * | | Merge pull request #149682 from NixOS/backport-149650-to-release-21.05•••[Backport release-21.05] steam: 1.0.0.73 -> 1.0.0.74 | Thiago Kenji Okada | 2021-12-08 | 1 | -3/+4 |
| |\ \ | |||||
| | * | | steam: 1.0.0.73 -> 1.0.0.74•••(cherry picked from commit 9deb6bf33612e07df6deb4db6811d84039a2e4f1) | lassulus | 2021-12-08 | 1 | -3/+4 |
| | |/ | |||||
| * | | Merge pull request #149674 from mweinelt/21.05/firefox | Martin Weinelt | 2021-12-08 | 3 | -12/+34 |
| |\ \ | |/ |/| | |||||
| | * | firefox-esr-91-unwrapped: 91.3.0esr -> 91.4.0esr•••(cherry picked from commit 8474bbde7480d3e284f6c7c39004610ea6370566) | R. Ryantm | 2021-12-08 | 1 | -2/+2 |
| | * | firefox: 94.0.2 -> 95.0•••(cherry picked from commit 340ede9984c2e38890d1be5201efb581f1abe938) | ajs124 | 2021-12-08 | 3 | -10/+32 |
| |/ | |||||
| * | apk-tools: 2.12.7 -> 2.12.8•••(cherry picked from commit c283a575ab7bcda0cefc3c6ddfe7b481783d7850) | Alyssa Ross | 2021-12-08 | 1 | -2/+2 |
| * | Merge pull request #148718 from NixOS/backport-143649-to-release-21.05 | Martin Weinelt | 2021-12-07 | 1 | -2/+2 |
| |\ | |||||
| | * | exiv2: 0.27.4 -> 0.27.5•••(cherry picked from commit 7127f494eff4169b716a01ffa5c4045f789561e2) | R. Ryantm | 2021-12-05 | 1 | -2/+2 |
| * | | Merge pull request #149451 from NixOS/backport-149438-to-release-21.05•••[Backport release-21.05] chromium: 96.0.4664.45 -> 96.0.4664.93 | Thiago Kenji Okada | 2021-12-07 | 1 | -6/+6 |
| |\ \ | |||||
| | * | | chromium: 96.0.4664.45 -> 96.0.4664.93•••https://chromereleases.googleblog.com/2021/12/stable-channel-update-for-desktop.html This update includes 22 security fixes. CVEs: CVE-2021-4052 CVE-2021-4053 CVE-2021-4079 CVE-2021-4054 CVE-2021-4078 CVE-2021-4055 CVE-2021-4056 CVE-2021-4057 CVE-2021-4058 CVE-2021-4059 CVE-2021-4061 CVE-2021-4062 CVE-2021-4063 CVE-2021-4064 CVE-2021-4065 CVE-2021-4066 CVE-2021-4067 CVE-2021-4068 (cherry picked from commit 4939140e0ff8015857005d759ab749ea615d85b3) | Michael Weiss | 2021-12-07 | 1 | -6/+6 |
| |/ / | |||||
| * | | Merge pull request #149369 from NixOS/backport-149318-to-release-21.05•••[Backport release-21.05] tmate-ssh-server: mark as insecure | Janne Heß | 2021-12-07 | 1 | -0/+1 |
| |\ \ | |||||
| | * | | tmate-ssh-server: mark as insecure•••(cherry picked from commit 91bc99e964843ecfb03ff9636bef8ca6deaba279) | philipp | 2021-12-07 | 1 | -0/+1 |
| |/ / | |||||
| * | | Merge pull request #148792 from NixOS/backport-148776-to-release-21.05•••[Backport release-21.05] nginxModules.pam: 1.5.2 -> 1.5.3 | Janne Heß | 2021-12-06 | 1 | -3/+3 |
| |\ \ | |||||
| | * | | nginxModules.pam: 1.5.2 -> 1.5.3•••This fixes deny statements: https://github.com/sto/ngx_http_auth_pam_module/issues/25 (cherry picked from commit b9811a5aeb78ff11f146b60c2c4329a7be8eea81) | Janne Heß | 2021-12-05 | 1 | -3/+3 |
| * | | | Merge pull request #148288 from NixOS/backport-148271-to-release-21.05•••[Backport release-21.05] strace: 5.14 -> 5.15 | Maximilian Bosch | 2021-12-06 | 1 | -2/+2 |
| |\ \ \ | |/ / |/| | | |||||
| | * | | strace: 5.14 -> 5.15•••ChangeLog: https://github.com/strace/strace/releases/tag/v5.15 (cherry picked from commit a0909777c8626fcb6d7f3fd8b0f978bf867265fc) | Maximilian Bosch | 2021-12-02 | 1 | -2/+2 |
| * | | | Merge pull request #148697 from blitz/copy-desktop-items•••[21.05] copyDesktopItems: fix handling of plain paths | John Ericson | 2021-12-05 | 1 | -2/+2 |
| |\ \ \ | |_|/ |/| | | |||||
| | * | | copyDesktopItems: fix handling of plain paths•••(cherry picked from commit c6b024706771461bbb168b6c0e575ff07764fb63) | ash | 2021-12-05 | 1 | -2/+2 |
| |/ / | |||||
| * | | Merge pull request #148559 from NixOS/backport-148516-to-release-21.05•••[Backport release-21.05] electrum-ltc: 3.3.8.1 -> 4.0.9.3 | Pavol Rusnak | 2021-12-05 | 1 | -29/+146 |
| |\ \ | |||||
| | * | | electrum-ltc: 3.3.8.1 -> 4.0.9.3•••rewritten based on the electrum derivation (cherry picked from commit 719beec27a0bee55b6ee78987aedeadf1d08026d) | Louis Bettens | 2021-12-04 | 1 | -29/+146 |
| |/ / | |||||
| * | | agate: fix meta•••old link is dead (cherry picked from commit 161d757a3a4bf40a722816c814481353f4be18be) | Jonathan Ringer | 2021-12-03 | 1 | -2/+2 |
| * | | Merge pull request #148441 from thiagokokada/backport-148432-to-release-21.05•••[Backport release-21.05] isync 1.4.2 -> 1.4.4 | Thiago Kenji Okada | 2021-12-03 | 1 | -2/+2 |
| |\ \ | |||||
| | * | | isync: 1.4.3 -> 1.4.4•••Fixes CVE-2021-3657 and CVE-2021-44143 and closes #147884 (cherry picked from commit 8500a748bb7d941e40768a07988082ae94fd6c16) | Alvar Penning | 2021-12-03 | 1 | -2/+2 |
| | * | | isync: 1.4.2 -> 1.4.3•••(cherry picked from commit 09bbf2d3ec81a12767f3146c868f7735b12f8ea7) | Michael Weiss | 2021-12-03 | 1 | -2/+2 |
| |/ / | |||||
| * | | Merge pull request #148308 from NixOS/backport-147297-to-release-21.05 | Patrick Hilhorst | 2021-12-03 | 2 | -0/+47 |
| |\ \ | |||||
| | * | | wl-mirror: init at 0.5.0•••(cherry picked from commit b71ed45cfc402ee498b973dc919e8bcf433deeea) | Tom | 2021-12-02 | 2 | -0/+47 |
| | |/ | |||||
| * | | Merge pull request #148001 from mayflower/backport-freerdp•••[21.05] freerdp: 2.3.2 -> 2.4.1 | Linus Heckemann | 2021-12-03 | 1 | -2/+2 |
| |\ \ | |||||
| | * | | freerdp: 2.4.0 -> 2.4.1•••(cherry picked from commit 700c0c5be3ecfc58503a7efaf2e9bfa94c1150ea) | R. Ryantm | 2021-11-30 | 1 | -2/+2 |
