summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* webkitgtk: 2.40.5 → 2.42.1•••https://github.com/WebKit/WebKit/commits/webkitgtk-2.42.1/Source/cmake/OptionsGTK.cmake https://webkitgtk.org/security/WSA-2023-0009.html JPEG XL is enabled by default. Remove support for OpenGL API in the web process; Remove GLX support: https://github.com/WebKit/WebKit/commit/cfe917fec45bf72c371087ece034feee8454f1b4 https://github.com/WebKit/WebKit/commit/320560f9e53ddcd53954059bd005e0c75eb91abf Other than ENABLE_GLES2 option can be dropped, it is unclear to me what can actually be dropped so keeping everything around. I assume we keep libGL mainly for egl. But we don't really need to worry about https://bugzilla.redhat.com/show_bug.cgi?id=2240428 and https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1050777 here, we are applying libgl-path.patch to libepoxy which should load the libGLESv2 thing in a hardcoded path. Tested yelp, newsflash and the bundled minibrowser and does not experience crash so far. Dropped pcre as mentioned in https://bugzilla.redhat.com/show_bug.cgi?id=2212686. (cherry picked from commit 21c06e3507bee5f0917bb1942df0793875dbb31f) origin/backport-259383-to-release-23.05Bobby Rong2023-10-062-8/+5
* Merge pull request #259258 from risicle/ris-woodpecker-0.15.11-CVE-2023-40034...•••[23.05] woodpecker-*: 0.15.8 -> 0.15.11, mark knownVulnerabilities CVE-2023-40034Robert Scott2023-10-063-10/+12
|\
| * woodpecker-*: mark knownVulnerabilities CVE-2023-40034Robert Scott2023-10-051-0/+3
| * woodpecker-*: 0.15.8 -> 0.15.11•••(cherry picked from commit 79a63f2841fc4fd5d11780dbe2de2da8f19062a6) Bruno BELANYI2023-10-051-2/+2
| * woodpecker-server, woodpecker-server.woodpecker-frontend: adapt update script...•••At the same time, we opportunistically switch to using the newer "hash" attribute. (cherry picked from commit 47cc11849cfcb78abdf67b778dd609ac121548c1) Theodore Ni2023-10-053-9/+8
* | snipe-it: 6.2.0 -> 6.2.1•••https://github.com/snipe/snipe-it/releases/tag/v6.2.1 (cherry picked from commit 0a54393ce9edfadd7c8c2ee801cafc6d19e382ec) Yaya2023-10-061-2/+2
* | Merge pull request #259409 from NixOS/backport-250974-to-release-23.05•••[Backport release-23.05] nixos/binfmt: use PE magic to detect Wine executablesK9002023-10-061-8/+2
|\ \
| * | nixos/binfmt: use PE magic to detect Wine executables•••Otherwise we break every Meson build because it creates native executables named foo.exe (cherry picked from commit c6cf85b0d5db3d4b617ba299bb2a1e09c60a1fef) origin/backport-250974-to-release-23.05K9002023-10-061-8/+2
|/ /
* | Merge pull request #259364 from NixOS/backport-253736-to-release-23.05•••[Backport release-23.05] go_1_19: 1.19.12 -> 1.19.13Nick Cao2023-10-061-2/+2
|\ \
| * | go_1_19: 1.19.12 -> 1.19.13•••Changelog: https://go.dev/doc/devel/release#go1.19 (cherry picked from commit 7dd2429e2e00c0c3a25545c4dbff9b15b1478d14) origin/backport-253736-to-release-23.05zowoq2023-10-061-2/+2
| |/
* / gnome.gnome-session: fix session crash in gnome-boxes•••(cherry picked from commit e1ee359d16a1886f0771cc433a00827da98d861c) Co-authored-by: Julian Stecklina <julian.stecklina@cyberus-technology.de>github-actions[bot]2023-10-061-0/+7
|/
* Merge pull request #259184 from NixOS/backport-258532-to-release-23.05•••[Backport release-23.05] imagemagick: 7.1.1-18 -> 7.1.1-19Kerstin2023-10-051-2/+2
|\
| * imagemagick: 7.1.1-18 -> 7.1.1-19•••Diff: https://github.com/ImageMagick/ImageMagick/compare/7.1.1-18...7.1.1-19 Changelog: https://github.com/ImageMagick/Website/blob/main/ChangeLog.md (cherry picked from commit 087eac2653882ca3a8fe7e804e5d937129e41e3b) Robert Schütz2023-10-051-2/+2
|/
* Merge pull request #249414 from atalii/cherry-pick-helix-ub-fixArtturi2023-10-051-2/+7
|\
| * helix: fix UB in diff gutter•••Applies https://github.com/helix-editor/helix/pull/7227 as a patch until the fix is included in the next release. Frederick Schwalbe2023-08-151-2/+7
* | Merge pull request #259082 from NixOS/backport-259031-to-release-23.05•••[Backport release-23.05] python311Packages.django_4: 4.2.5 -> 4.2.6Martin Weinelt2023-10-051-2/+2
|\ \
| * | python311Packages.django_4: 4.2.5 -> 4.2.6•••https://docs.djangoproject.com/en/4.2/releases/4.2.6/ https://www.djangoproject.com/weblog/2023/oct/04/security-releases/ Fixes: CVE-2023-43665 (cherry picked from commit 42f03e6d5ac5117d4478a2ce4285f89a714074aa) Martin Weinelt2023-10-051-2/+2
|/ /
* | Merge pull request #259007 from NixOS/backport-258769-to-release-23.05•••[Backport release-23.05] nss_latest: 3.93 -> 3.94; firefox-{beta,devedition}-unwrapped: 118.0b7 -> 119.0b4Martin Weinelt2023-10-042-6/+6
|\ \
| * | firefox-devedition-unwrapped: 118.0b7 -> 119.0b4•••(cherry picked from commit 650e9ff5e14cd6eae9ee90b859e21dc08e9c0029) Martin Weinelt2023-10-041-2/+2
| * | firefox-beta-unwrapped: 118.0b7 -> 119.0b4•••(cherry picked from commit 1b4851c264d27cf519e12c1f6d5a9bd9c188102a) Martin Weinelt2023-10-041-2/+2
| * | nss_latest: 3.93 -> 3.94•••https://groups.google.com/a/mozilla.org/g/dev-tech-crypto/c/NHYt2D5xRAo (cherry picked from commit ef1f2c8e15f623c8dca96e37729e62951e69f1b4) Martin Weinelt2023-10-041-2/+2
|/ /
* | Merge pull request #258805 from NixOS/backport-258699-to-release-23.05•••[Backport release-23.05] sing-box: 1.5.0 -> 1.5.1Nick Cao2023-10-031-3/+3
|\ \
| * | sing-box: 1.5.0 -> 1.5.1•••Diff: https://github.com/SagerNet/sing-box/compare/v1.5.0...v1.5.1 (cherry picked from commit f621c8d93d7a351a9a9a17b99693b1914575acd7) origin/backport-258699-to-release-23.05Nick Cao2023-10-031-3/+3
* | | Merge pull request #258653 from panicgh/keepassxc-23.05•••[23.05] keepassxc: 2.7.4 -> 2.7.6Fabián Heredia Montiel2023-10-032-3/+12
|\ \ \
| * | | keepassxc: 2.7.5 -> 2.7.6•••(cherry picked from commit db522ccd096603be4bb3bd6fe11b6c096c85d779) Manually resolve a conflict in the meta.maintainers list. BlankParticle2023-10-021-3/+3
| * | | maintainers: add blankparticle to maintainer-list•••(cherry picked from commit 2058c02bad2e5840a2d06d289e98402088d6e411) BlankParticle2023-10-021-0/+9
| * | | keepassxc: 2.7.4 -> 2.7.5•••(cherry picked from commit cc23d764f113d98073e81f357b459c354e93a56b) R. Ryantm2023-10-021-2/+2
* | | | Merge pull request #258859 from NixOS/backport-258525-to-release-23.05Artturi2023-10-042-7/+22
|\ \ \ \ | |_|/ / |/| | |
| * | | discord-ptb: 0.0.77 -> 0.0.79•••(cherry picked from commit 30fac10dbcd7cf941ae8360984c50afeed315187) Artturin2023-10-031-2/+2
| * | | discord-development: 0.0.8795 -> 0.0.8797•••(cherry picked from commit 51c30df0c783d9f016768b5b94c913e4ac70f176) Artturin2023-10-031-2/+2
| * | | discord-canary: 0.0.312 -> 0.0.314•••(cherry picked from commit cec7bbec36bda4f48d698310a48c92ff3a79e5d6) Artturin2023-10-031-2/+2
| * | | discord: Add update script for darwin•••Runnable on linux with ``` nix-shell maintainers/scripts/update.nix --argstr commit true --argstr package pkgsCross.aarch64-darwin.discord ``` The generated commit will have the pkgsCross prefix so that has to be removed manually `pkgsCross.aarch64-darwin.discord-canary: 0.0.312 -> 0.0.314` (cherry picked from commit 2958e1b60ae7ca80d07c69b1c7c9582616b4c3c3) Artturin2023-10-031-1/+16
|/ / /
* / / brave: 1.58.129 -> 1.58.135•••https://community.brave.com/t/release-channel-1-58-135/507927 (cherry picked from commit 1d5b5b5062db1fd026ffaac22beeb688cbfa33a8) Sean Buckley2023-10-031-2/+2
|/ /
* | Merge pull request #256937 from LeSuisse/erofs-utils-1.7-23.05•••[23.05] erofs-utils: 1.6 -> 1.7Weijia Wang2023-10-022-8/+11
|\ \
| * | erofs-utils: disable running/building on darwinThomas Gerbet2023-10-011-1/+1
| * | erofs-utils: 1.6 -> 1.7•••Fixes CVE-2023-33552 and CVE-2023-33551. Changelog: https://git.kernel.org/pub/scm/linux/kernel/git/xiang/erofs-utils.git/tree/ChangeLog?h=v1.7 (cherry picked from commit 943da8b1a78bc1701666d9c6b34e555af4ac04b1) Thomas Gerbet2023-10-011-4/+4
| * | erofs-utils: enable running on darwin•••(cherry picked from commit a3d60923a5427ad6a772270b040638ca44b8152e) nikstur2023-10-012-7/+10
* | | linux-rt_5_4: 5.4.254-rt85 -> 5.4.257-rt87•••(cherry picked from commit 1bf420fb6fd071f3893ceb51bd4ff6df81a123d2) Alyssa Ross2023-10-021-3/+3
* | | linux-rt_5_15: 5.15.129-rt67 -> 5.15.133-rt69•••(cherry picked from commit a012fd2df1b1d9e92d366b726c220678b5c6c0e2) Alyssa Ross2023-10-021-3/+3
* | | linux-rt_5_10: 5.10.180-rt89 -> 5.10.194-rt95•••(cherry picked from commit d928e497d596086a8b4ea65255eab15838def8d2) Alyssa Ross2023-10-021-3/+3
* | | linux_testing: 6.6-rc3 -> 6.6-rc4•••(cherry picked from commit e4301a7b8e97399b39e2e9da23da860d653cc3c6) Alyssa Ross2023-10-021-2/+2
* | | Merge pull request #258583 from NixOS/backport-258581-to-release-23.05•••[Backport release-23.05] exim: 4.96 -> 4.96.1Janne Heß2023-10-021-2/+2
|\ \ \
| * | | exim: 4.96 -> 4.96.1•••Fixes CVE-2023-42114, CVE-2023-42115, CVE-2023-42116 See https://exim.org/static/doc/security/CVE-2023-zdi.txt for details. (cherry picked from commit b5e505b44002321d0728ba5bcc3a86964595ecaa) ajs1242023-10-021-2/+2
|/ / /
* | | gitlab: 16.3.4 -> 16.4.1•••(cherry picked from commit 97196f08cfa9efc07d1b1d3c4fb18b5aca7355eb) ajs1242023-10-0212-279/+287
* | | ruby-modules/gem-config/re2: use our re2 instead of vendored•••required after 2.0.0 (cherry picked from commit 0d852914e7cc6bd16d3439ffade028eacd7d6e0a) ajs1242023-10-021-0/+3
* | | linux_testing: 6.6-rc2 -> 6.6-rc3•••(cherry picked from commit ae95f92da846f58c4d532dd3383cdb2385b29805) Alyssa Ross2023-10-021-2/+2
* | | Merge pull request #258449 from NixOS/backport-258325-to-release-23.05•••[Backport release-23.05] tor: 0.4.8.6 -> 0.4.8.7Pavol Rusnak2023-10-021-2/+2
|\ \ \
| * | | tor: 0.4.8.6 -> 0.4.8.7•••(cherry picked from commit 1ab8064141165c8fb55369715b0219463e411bad) R. Ryantm2023-10-011-2/+2
* | | | fdk-aac: change license to fraunhofer-fdk•••This library was originally mislicensed as Apache 2.0, as that's the license used by the project that has this library. However the library still has the original license on it, so i'm fairly certain that's the wrong license. (cherry picked from commit 73fbd396790ab94e8a36158e7e82abf383703716) FavoritoHJS2023-10-021-1/+1
* | | | licenses: add Fraunhofer FDK AAC Codec Library•••This license is used by the Fraunhofer FDK codec, which is currently mislicensed to Apache 2.0. Of course, this can't be corrected without having the proper license available in lib.licenses can't it?? Thanks @trofi for noticing this has an SPDX ID. (cherry picked from commit 5d5c872bdffb0542662516aec96ae05d3762fbe1) FavoritoHJS2023-10-021-0/+5