summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* tinyproxy: add patch for CVE-2022-40468•••(cherry picked from commit 32f4104b6610d31a17cc06f71a88bc27a677f538) origin/backport-192127-to-release-22.05Robert Scott2022-09-221-1/+16
* Merge pull request #192448 from NixOS/backport-192304-to-release-22.05•••[Backport release-22.05] signal-desktop: 5.59.0 -> 5.60.0Christian Kögler2022-09-221-2/+2
|\
| * signal-desktop: 5.59.0 -> 5.60.0•••(cherry picked from commit 2c030b2e9e276e34596355accc9db171fbc026a9) origin/backport-192304-to-release-22.05Eduardo Quiros2022-09-221-2/+2
* | Merge pull request #192408 from Ma27/grafana-security-backport•••[22.05] grafana: 8.5.11 -> 8.5.13, fix CVE-2022-35957 & CVE-2022-36062Maximilian Bosch2022-09-221-3/+3
|\ \
| * | grafana: 8.5.11 -> 8.5.13, fix CVE-2022-35957 & CVE-2022-36062•••ChangeLog: https://github.com/grafana/grafana/releases/tag/v8.5.13 Maximilian Bosch2022-09-221-3/+3
* | | Merge pull request #192407 from NixOS/backport-192013-to-release-22.05Martin Weinelt2022-09-221-7/+16
|\ \ \
| * | | teams: 1.5.00.10453 -> 1.5.00.23861 (linux), 1.5.00.22362 (darwin)•••(cherry picked from commit f0c3d89c03b902f2cb5f405f348ae49f3cb7903d) Markus S. Wamser2022-09-221-7/+16
| |/ /
* | | Merge pull request #192327 from NixOS/backport-192221-to-release-22.05Martin Weinelt2022-09-221-265/+265
|\ \ \ | |_|/ |/| |
| * | thunderbird-bin: 102.2.2 -> 102.3.0•••https://www.thunderbird.net/en-US/thunderbird/102.3.0/releasenotes/ (cherry picked from commit 88cb8dd07d5a124afdc494d48b87e882a10558dc) Vladimír Čunát2022-09-211-265/+265
* | | wiki-js: 2.5.288 -> 2.5.289•••(cherry picked from commit c15ada5b918ab5239a3d80558fa1268479fa66af) R. Ryantm2022-09-221-2/+2
* | | Merge pull request #191909 from NixOS/backport-191871-to-release-22.05•••[Backport release-22.05] wiki-js: 2.5.287 -> 2.5.288Maximilian Bosch2022-09-221-2/+2
|\ \ \
| * | | wiki-js: 2.5.287 -> 2.5.288•••(cherry picked from commit c5be74c76983cde75fd9d869c588bfb113baa5cd) R. Ryantm2022-09-191-2/+2
* | | | Merge pull request #191689 from risicle/ris-rizin-CVEs-22.05•••[22.05] rizin: add patches for multiple CVEsAnderson Torres2022-09-221-0/+34
|\ \ \ \
| * | | | rizin: add patches for multiple CVEs•••CVE-2022-36039 CVE-2022-36040 CVE-2022-36041 CVE-2022-36043 CVE-2022-36044 CVE-2022-36042 doesn't appear to affect 0.3.4 Robert Scott2022-09-171-0/+34
* | | | | Merge pull request #192406 from NixOS/backport-191670-to-release-22.05•••[Backport release-22.05] linux/hardened: fix update script and build for 5.19superherointj2022-09-227-14/+24
|\ \ \ \ \ | |_|_|_|/ |/| | | |
| * | | | linux/hardened/5.19: fix build•••The options GCC_PLUGIN_RANDSTRUCT{,_PERFORMANCE} have been renamed to `RANDSTRUCT_*` in 595b893e2087de306d0781795fb8ec47873596a6 since CLang is about to support this as well and thus the options had to be generalized. Also, the file that is used to generate the seed has changed, only the reference to the file in the patch was changed on adding Linux 5.19[1] [1] b4d0cb44975e069e926a2c8963aded9557040541 (cherry picked from commit dd6727e7b8a346f573770b5f9916914ccf919068) Maximilian Bosch2022-09-222-7/+14
| * | | | nixos/kernel-generic: build linux_5_19_hardened•••(cherry picked from commit 073f7b179c18ec771d3a3bd06aba16a8de70dfcc) Maximilian Bosch2022-09-222-0/+3
| * | | | linux-hardened: fix update script•••We now have releases called `v5.19.x-hardened2` so make sure that the update script doesn't stumble upon this. (cherry picked from commit 80228b73e9cf9f8dd266ae58c2eeb7b554a2ddd2) Maximilian Bosch2022-09-221-1/+1
| * | | | linux/hardened/patches/5.19: 5.19.8-hardened1 -> 5.19.8-hardened2•••(cherry picked from commit c2d301f7af8c9dd1cca195540a2132c0693687ea) Maximilian Bosch2022-09-221-4/+4
| * | | | linux_latest-libre: 18911 -> 18916•••(cherry picked from commit b3dc6e35e018328a654f8669767e064f9fd7d00d) Maximilian Bosch2022-09-221-2/+2
|/ / / /
* | | | Merge pull request #188643 from risicle/ris-mod-wsgi-CVE-2022-2255-r22.05Martin Weinelt2022-09-221-2/+10
|\ \ \ \
| * | | | apacheHttpdPackages.mod_wsgi: add patch for CVE-2022-2255Robert Scott2022-08-281-2/+10
* | | | | Merge pull request #192248 from NixOS/backport-192204-to-release-22.05Martin Weinelt2022-09-221-2/+2
|\ \ \ \ \
| * | | | | thunderbird-unwrapped: 102.2.2 -> 102.3.0•••(cherry picked from commit 44d3703d62e635ea0b39f8a25c60d179c3217b67) R. Ryantm2022-09-211-2/+2
* | | | | | lighttpd: 1.4.66 -> 1.4.67•••(cherry picked from commit 1ca49a3cf4b68431c59d90d5ecce2299f8f07fa3) R. Ryantm2022-09-221-2/+2
* | | | | | Merge pull request #192094 from NixOS/backport-192088-to-release-22.05Martin Weinelt2022-09-221-393/+393
|\ \ \ \ \ \
| * | | | | | firefox-bin: 104.0.2 -> 105.0•••https://www.mozilla.org/en-US/firefox/105.0/releasenotes/ (cherry picked from commit 07e9c317b4739a7c2337f58191dcb853c6a46a49) Vladimír Čunát2022-09-201-393/+393
* | | | | | | Merge pull request #192214 from NixOS/backport-192202-to-release-22.05Martin Weinelt2022-09-221-2/+2
|\ \ \ \ \ \ \ | |_|_|_|_|_|/ |/| | | | | |
| * | | | | | thunderbird-91-unwrapped: 91.13.0 -> 91.13.1•••(cherry picked from commit 28830d30e645d3c506f4e6b63e896b8455dbb4fe) R. Ryantm2022-09-211-2/+2
* | | | | | | Merge pull request #192275 from NixOS/backport-192272-to-release-22.05Martin Weinelt2022-09-211-2/+2
|\ \ \ \ \ \ \ | |_|_|/ / / / |/| | | | | |
| * | | | | | pdns-recursor: 4.7.2 -> 4.7.3•••(cherry picked from commit 7cc305fa594353ef5084dae6329d2646d6789513) rnhmjoj2022-09-211-2/+2
|/ / / / / /
* | | | | | Merge pull request #192093 from mweinelt/22.05/firefoxMartin Weinelt2022-09-212-7/+7
|\ \ \ \ \ \ | |/ / / / / |/| | | | |
| * | | | | buildMozillaMach: use rust 1.61Martin Weinelt2022-09-201-3/+3
| * | | | | firefox-esr-102-unwrapped: 102.2.0esr -> 102.3.0esr•••https://www.mozilla.org/en-US/firefox/102.3.0/releasenotes/ https://www.mozilla.org/en-US/security/advisories/mfsa2022-41/ Fixes: CVE-2022-40959, CVE-2022-40960, CVE-2022-40958, CVE-2022-40956 CVE-2022-40957, CVE-2022-40962 (cherry picked from commit f559d89cd03c7fa9cea1b534e97a20d1f9b1fb13) Martin Weinelt2022-09-201-2/+2
| * | | | | firefox-unwrapped: 104.0.2 -> 105.0•••https://www.mozilla.org/en-US/firefox/105.0/releasenotes/ https://www.mozilla.org/en-US/security/advisories/mfsa2022-40 Fixes: CVE-2022-40959, CVE-2022-40960, CVE-2022-40958, CVE-2022-40961, CVE-2022-40956, CVE-2022-40957, CVE-2022-40962 (cherry picked from commit 11b3d696526c97246a9cc5b2aaa42a0acf7bed8d) Martin Weinelt2022-09-201-2/+2
| |/ / / /
* | | | | Merge pull request #191955 from risicle/ris-cmark-gfm-0.29.0.gfm.6-r22.05•••[22.05] cmark-gfm: 0.29.0.gfm.3 -> 0.29.0.gfm.6Robert Scott2022-09-201-2/+2
|\ \ \ \ \
| * | | | | cmark-gfm: 0.29.0.gfm.5 -> 0.29.0.gfm.6•••(cherry picked from commit 626445f1c731b03b41e785e765f56a15bb6306bc) Robert Scott2022-09-191-2/+2
| * | | | | cmark-gfm: 0.29.0.gfm.4 -> 0.29.0.gfm.5•••(cherry picked from commit 8fb82d80fe1133fbbae641b74472cb1bb3b63aae) R. Ryantm2022-09-191-2/+2
| * | | | | cmark-gfm: 0.29.0.gfm.3 -> 0.29.0.gfm.4•••(cherry picked from commit 55ac327102cf9acc731d7bbd484731592b493586) R. Ryantm2022-09-191-2/+2
* | | | | | Merge pull request #191368 from erictapen/22.05/kanidm•••[release-22.05] nixos/kanidm: Add cacerts path to unixd serviceKerstin2022-09-203-20/+27
|\ \ \ \ \ \ | |_|/ / / / |/| | | | |
| * | | | | nixos/kanidm: Add unixd test•••Test makes sure unixd is able to run and is able to query the server. (cherry picked from commit fb3f7d70b438a729f4f10d2e31f546d24bfeb6b2) Tako Marks2022-09-151-2/+10
| * | | | | nixos/kanidm: Bind mount cacert path in unixd service•••In order to be able to use the unixd service with the `verify_ca` and `verify_hostnames` set to `true` it needs to be able to read the certificate store. This change bind mounts the cacert paths for the unixd service. (cherry picked from commit 3df41451e3f5179e1d02cf8366f1646ff3eb94ae) Tako Marks2022-09-151-0/+2
| * | | | | nixos/tests/kanidm: Update recover_account commandline•••The username is now passed directly as an argument. (cherry picked from commit 9ac9449a0a50d8daf07b08f46a5b49bc28b045ca) Martin Weinelt2022-09-151-1/+1
| * | | | | kanidm: 1.1.0-alpha.8 -> 1.1.0-alpha.9•••https://github.com/kanidm/kanidm/releases/tag/v1.1.0-alpha.9 Uses a concrete rev, because it relies on additional commits from the release branch that provide build fixes. (cherry picked from commit b6f5b819203d044247f92204d235689640a42634) Martin Weinelt2022-09-151-17/+14
* | | | | | Merge pull request #192038 from NixOS/backport-192033-to-release-22.05•••[Backport release-22.05] srain: fix homepageBobby Rong2022-09-201-1/+1
|\ \ \ \ \ \
| * | | | | | srain: fix homepage•••See also https://srain.silverrainz.me/blog/migrate-domain.html (cherry picked from commit 198dd79a4a318a4f965763879b8b9541818bc1b4) Shengyu Zhang2022-09-201-1/+1
|/ / / / / /
* | | | | | Merge pull request #191728 from mweinelt/mark-firefox-91-vulnerableMartin Weinelt2022-09-201-0/+3
|\ \ \ \ \ \
| * | | | | | firefox-esr-91-unwrapped: mark vulnerableMartin Weinelt2022-09-181-0/+3
* | | | | | | Merge branch 'backport-191383-to-release-22.05' of https://github.com/SDAChes...Shea Levy2022-09-191-4/+3
|\ \ \ \ \ \ \
| * \ \ \ \ \ \ Merge branch 'release-22.05' into backport-191383-to-release-22.05Simon Scatton2022-09-17575-8980/+14859
| |\ \ \ \ \ \ \