Robert Scott
e1e3df423a
allowInsecureDefaultPredicate: fix to use getName
...
this allows correct operation with packages only having pname and version
specified, resolving issue #73737
2019-12-15 18:01:19 +00:00
Robert Scott
183ef82f98
libreswan: 3.18 -> 3.29 (security)
...
addressing CVE-2019-12312 & CVE-2019-10155
2019-12-15 18:48:53 +01:00
Robert Scott
d17ecebcf0
unbound: install headers etc for libevent support as postInstall step
2019-12-15 18:48:53 +01:00
Robert Scott
46460d3d7a
crun: 0.8 -> 0.10.6 (security) ( #75304 )
...
addressing CVE-2019-18837
2019-12-14 18:49:18 +01:00
Robert Scott
c676063047
btor2tools: correct meta information
2019-12-12 10:37:02 -06:00
Robert Scott
b9185a96be
boolector: add patch for CVE-2019-7560
2019-12-12 10:37:02 -06:00
Robert Scott
9234d1d6db
glibc: add patch for CVE-2019-19126
...
including patch in-repo as it needs modification to remove the changes to
NEWS but fetchpatch doesn't work here
2019-12-10 18:51:16 +01:00
Robert Scott
2611887c2e
lingeling: enable for darwin
2019-12-08 18:32:04 +00:00
Robert Scott
dc6233b972
aiger: enable for darwin
2019-12-08 18:31:49 +00:00
Robert Scott
8169d30c0c
libofx: enable for darwin
2019-12-07 13:11:50 +00:00
Robert Scott
0351829bf8
libofx: 0.9.14 -> 0.9.15 (security)
...
resolving CVE-2019-9656
2019-12-07 13:01:03 +00:00
Robert Scott
c0c3979c93
haproxy: 2.0.8 -> 2.0.10 (security)
...
addressing CVE-2019-19330
2019-12-01 14:51:06 +00:00
Robert Scott
53b523b4ed
gmic-qt: switch to opencv3
...
opencv2 is essentially EOL and has security concerns
2019-11-27 01:09:02 +00:00
Robert Scott
81d24990bb
gmic: switch to opencv3
...
opencv2 is essentially EOL and has security concerns
2019-11-27 01:08:54 +00:00
Robert Scott
8361442cf7
facedetect: switch to opencv4
...
opencv2 is essentially EOL and has security concerns
2019-11-26 20:01:37 +01:00
Robert Scott
817b066f4b
nomacs: switch to using opencv4 ( #72749 )
...
opencv2 has known, unfixed security vulnerabilities. nomacs itself
states the minimum supported version is 3.4 & includes a script to
install opencv4, suggesting it is supported
darwin requires a patch to update its cmake file to make it less
restrictive over this
2019-11-25 00:14:51 +01:00
Robert Scott
2482f8b8dc
tightvnc: add patches for four CVEs
...
Security fixes for:
* CVE-2019-8287
* CVE-2019-15678
* CVE-2019-15679
* CVE-2019-15680
mostly adapted from patches fixing similar issues in the actively
maintained libvnc
(#73970 )
2019-11-24 19:44:01 +01:00
Robert Scott
b9d458d91c
tnef: 1.4.17 -> 1.4.18 (security) ( #73882 )
...
addresses CVE-2019-18849
2019-11-24 16:09:04 +01:00
Robert Scott
593def2396
libextractor: add patch for CVE-2019-15531
2019-11-17 16:12:50 +00:00
Robert Scott
783d66d827
odp-dpdk: internal dpdk 17.11.6 -> 17.11.9 (security)
...
addressing CVE-2019-14818
2019-11-17 01:21:44 +00:00
Robert Scott
fa9a372e18
dpdk: 19.08 -> 19.08.2 (security)
...
addressing CVE-2019-14818
2019-11-17 01:21:19 +00:00
Robert Scott
55b583d334
fribidi: add patch for CVE-2019-18397
2019-11-16 19:55:48 +00:00
Robert Scott
6217e94778
ghostscript: add patch for CVE-2019-14869
2019-11-16 13:36:25 +00:00
Robert Scott
4fec9d582b
libxslt: 1.1.33 -> 1.1.34 (security)
...
addresses CVE-2019-18197
2019-11-11 01:18:40 +00:00
Robert Scott
c3c77ecfde
libxml2: 2.9.9 -> 2.9.10
...
disable python test which was previously failing anyway, but in previous
versions it was being ignored
2019-11-11 01:18:39 +00:00
Robert Scott
baa8892616
opencv3: 3.4.7 -> 3.4.8 (security)
...
addressing CVE-2019-14491, CVE-2019-14492 & CVE-2019-15939
all internal downloads are unchanged for this release
2019-11-06 13:20:15 +00:00
Robert Scott
e3e9af4d03
jack2: 1.9.12 -> 1.9.13 (security)
...
addressing CVE-2019-13351
removing now-redundant patch fixing build on macos
2019-11-03 10:35:36 +01:00
Robert Scott
d623837d64
opencv4: 4.1.0 -> 4.1.2 (security)
...
resolving CVE-2019-14491, CVE-2019-14492 & CVE-2019-15939
most internal downloads are unchanged except for "ade" which was bumped
from v0.1.1d to v0.1.1f between these releases
2019-11-02 17:00:59 +00:00
Robert Scott
7dacaa056c
jhead: add patches for CVE-2019-1010301, CVE-2019-1010302
2019-10-31 21:02:34 +00:00
Robert Scott
03d6145cb0
keepalived: add patch for CVE-2018-19115
2019-10-29 22:56:51 +00:00
Robert Scott
5e8eaa6769
keepalived: 1.4.2 -> 1.4.5
2019-10-29 22:56:34 +00:00
Robert Scott
605a7b31d7
pythonPackages.koji: 1.13.0 -> 1.14.3 (security)
...
Addressing CVE-2019-17109
Also added missing description, homepage & license. Re-disabled for py3k
as the kojira executable doesn't seem to be happy with it.
2019-10-29 21:42:55 +00:00
Robert Scott
0b32782d33
ghostscript: 9.27 -> 9.50
2019-10-29 13:31:22 +01:00
Robert Scott
14e2d5d9a7
jbig2dec: 0.16 -> 0.17
2019-10-29 13:31:22 +01:00
Robert Scott
84ab228a85
xapian: 1.4.12 -> 1.4.13
...
update darwin patch
2019-10-27 19:26:05 +00:00
Robert Scott
e5f671a7dc
pythonPackages.rpyc: fix tests to actually execute
2019-10-27 11:47:10 -07:00
Robert Scott
1b44b12c57
imagemagick7: 7.0.8-68 -> 7.0.9-0
2019-10-27 13:06:55 +00:00
Robert Scott
11933c37cf
imagemagick: 6.9.10-68 -> 6.9.10-69
2019-10-27 13:06:27 +00:00
Robert Scott
def17695b9
gdal: add patch for CVE-2019-17545
2019-10-26 21:06:23 +01:00
Robert Scott
f82fb81af8
gdal_2: add patch for CVE-2019-17545
2019-10-26 21:06:15 +01:00
Robert Scott
68d4a1ba0b
perlPackages.libapreq2: add patch for CVE-2019-12412
2019-10-26 18:24:56 +01:00
Robert Scott
99273fc555
file: add patch for CVE-2019-18218
...
upstream patch https://github.com/file/file/commit/46a8443f76cec4b41ec736eca396984c74664f84.patch
doesn't apply directly, debian have a version which has been adapted for
5.37.
2019-10-26 18:13:12 +01:00
Robert Scott
4bf03aa616
ghostscript: add patches for CVE-2019-10216, CVE-2019-14811, CVE-2019-14812, CVE-2019-14813 and most of CVE-2019-14817
...
the latter's patch is only partially applied because it doesn't apply
cleanly to 9.27, still the fixes that do apply work and are better than
nothing
2019-10-22 09:48:50 +02:00
Robert Scott
6882778e26
ghostscript: 9.26 -> 9.27 (security)
2019-10-22 09:48:50 +02:00
Robert Scott
90a48bbfa9
jbig2dec: 0.14 -> 0.16
2019-10-22 09:48:50 +02:00
Robert Scott
a3ea286627
putty: 0.71 -> 0.73 (security)
...
fixing CVE-2019-17069
the AM subsitutions appear to be very old - they break 0.73's build and
modern releases seem to do without them fine
2019-10-18 21:35:20 +01:00
Robert Scott
3fa2864aac
poppler: add patch for CVE-2019-9959
2019-10-13 16:57:10 +01:00
Robert Scott
2a8e53efce
imagemagick: 6.9.9-34 -> 6.9.10-68 (security)
...
fixing numerous CVEs
2019-10-13 15:00:26 +01:00
Robert Scott
0086b03be5
openmpt123: 0.4.1 -> 0.4.9 (security?)
...
addressing CVE-2019-17113
2019-10-13 12:49:56 +01:00
Robert Scott
b9593f1a20
poppler_0_61: 0.61.0 -> 0.61.1
2019-10-12 14:54:00 +01:00
Robert Scott
e6889d46e0
poppler_0_61: add patch for CVE-2019-9959
...
custom adapted patch to accommodate the openjpeg1/openjpeg2 split that
0.61 still has
2019-10-12 14:35:01 +01:00
Robert Scott
8044cf3668
pythonPackages.pandas: 0.25.0 -> 0.25.1
2019-10-07 07:57:12 -07:00
Robert Scott
d7cad2b8f9
pythonPackages.hug: enable tests
2019-09-14 15:16:00 +01:00
Robert Scott
5e0ec5a753
pythonPackages.pytest-mpl: fix & enable tests on darwin
...
dotfile is simply in a different place on macos
2019-09-07 12:53:55 +01:00
Robert Scott
daebef59d6
pythonPackages.colorcet: fix & enable all tests on darwin
...
dotfile is simply in a different place on macos
2019-09-07 12:53:55 +01:00
Robert Scott
d4713b6493
pythonPackages.pybind11: enable tests
2019-09-06 21:15:22 +02:00
Robert Scott
f8c2a8461e
cctz: enable for darwin
...
only minor tweaks needed
2019-08-26 14:07:07 +01:00
Robert Scott
bc26695334
poco: enable for darwin
2019-08-26 14:06:28 +01:00
Robert Scott
de0b514468
pythonPackages.django_silk: 3.0.2 -> 3.0.3
2019-08-24 16:59:20 +01:00
Robert Scott
9b6ae7a0f4
graphene-hardened-malloc: 1 -> 2
2019-08-24 16:52:32 +01:00
Robert Scott
6e921f77ff
cloudfoundry-cli: 6.45.0 -> 6.46.1
2019-08-24 16:21:37 +01:00
Robert Scott
0bbfd2d2dc
pythonPackages.django_compressor: fix build, flesh out comments
2019-07-20 13:00:06 +02:00
Robert Scott
8e709be9ba
pythonPackages.appconf: fix build, enable tests
2019-07-20 13:00:06 +02:00
Robert Scott
f60b221629
blockbook: increase ulimit -n on darwin for packr execution
...
macos default can cause build failures due to too many open files
2019-07-20 01:24:18 +01:00
Robert Scott
3e5ccd4300
openjpeg: enable tests
2019-07-17 10:34:41 +02:00
Robert Scott
5c85b24edc
pythonPackages.jpylyzer: init at 1.18.0
...
include as application too
2019-07-17 10:34:41 +02:00
Robert Scott
c996567948
zeromq: 4.3.1 -> 4.3.2
2019-07-17 10:25:35 +02:00
Robert Scott
5b0db58bc1
squid: add patch fixing CVE-2019-13345
2019-07-14 21:41:26 +01:00
Robert Scott
8872a08cde
squid4: 4.7 -> 4.8
...
fixing CVE-2019-13345
2019-07-14 21:41:05 +01:00
Robert Scott
428e215313
dosbox: 0.74-2 -> 0.74-3
...
fixes CVE-2019-7165, CVE-2019-12594
2019-07-14 12:39:15 +01:00
Robert Scott
49283ed802
cgit: add patch fixing remote DoS
...
issue assigned MGASA-2019-0203 by mageia
https://www.openwall.com/lists/oss-security/2019/05/19/3
2019-07-07 21:01:50 +02:00
Robert Scott
b306fc2766
cloudfoundry-cli: 6.41.0 -> 6.45.0
...
this addresses CVE-2019-3781
2019-07-07 17:52:49 +01:00
Robert Scott
9826490d5e
graphicsmagick: 1.3.31 -> 1.3.32
...
security release fixing numerous issues, darwin requires patch to fix issue
with pngs
2019-07-06 01:20:26 +01:00
Robert Scott
44b450592c
rdesktop: 1.8.3 -> 1.8.6
...
security release, fixing issue with as-yet-unassigned CVE. debian are using
DSA-4473-1/DLA-1837-1.
switching to github source because they don't seem to be keeping their
sourceforge tarballs up to date
2019-07-03 22:29:43 +01:00
Robert Scott
46dfe2bab9
powerdns: 4.1.7 -> 4.1.9
...
fixing CVE-2019-10162, CVE-2019-10163
2019-07-01 01:07:22 +01:00
Robert Scott
8b3dc7a3a0
powerdns: fix build by supplying libressl_2_8 instead of the new default 2.9
...
this is a bit of a temporary fix to get powerdns back in a buildable state
because there's the added urgency of powerdns security issues forcing a
version bump
2019-07-01 00:27:59 +01:00
Robert Scott
8ac0f575d9
libvirt: 5.3.0 -> 5.4.0
...
including parallel bumps of pythonPackages.libvirt and perlPackages.SysVirt
also include patches for CVE-2019-10161, CVE-2019-10166, CVE-2019-10167
and CVE-2019-10168
2019-06-29 11:59:48 +01:00
Robert Scott
8008954579
pythonPackages.hdbscan: fix build by removing upstream patch, adding joblib
...
joblib is for the benefit of py27, whose scikitlearn doesn't include it.
also move cython to nativeBuildInputs
2019-06-22 19:06:52 +01:00
Robert Scott
cd24ce1c0f
samba: 4.10.4 -> 4.10.5
...
Security release fixing CVE-2019-12435 & CVE-2019-12436
2019-06-21 00:08:13 +01:00
Robert Scott
dbc5bcdb5c
pythonPackages.scikit-build: fix build by disabling test_source_distribution test
2019-06-18 11:11:16 +02:00
Robert Scott
102cc2c709
pythonPackages.pytest-server-fixtures: 1.6.2 -> 1.7.0
2019-06-18 11:11:16 +02:00
Robert Scott
a8d09312b3
pythonPackages.pytest-virtualenv: 1.6.0 -> 1.7.0
2019-06-18 11:11:16 +02:00
Robert Scott
9f446bd8d0
pythonPackages.pytest-fixture-config: 1.4.0 -> 1.7.0
2019-06-18 11:11:16 +02:00
Robert Scott
ec4f4c965e
pythonPackages.pytest-shutil: 1.6.0 -> 1.7.0
2019-06-18 11:11:16 +02:00
Robert Scott
2be7ccf2a3
pythonPackages.hdbscan: fix build by applying upstream patch
...
simple missing import in one of the test modules
2019-06-16 21:53:14 +01:00
Robert Scott
d67d182b4c
pythonPackages.django-sites: fix build, flesh out comments
2019-06-16 19:17:03 +02:00
Robert Scott
4dcbdbc416
pythonPackages.django_taggit: fix build, enable tests
2019-06-16 14:15:24 +01:00
Robert Scott
46ce40ba6a
pythonPackages.matchpy: 0.4.6 -> 0.5.1, fix build
2019-06-15 20:11:00 +02:00
Robert Scott
0d576d7eb8
pythonPackages.cmd2_8: remove
2019-06-12 11:56:39 +09:00
Robert Scott
48c8756157
pythonPackages.neuron: restrict to x86 platforms
2019-06-09 12:18:58 +02:00
Robert Scott
e0aec554eb
pythonPackages.neuron: fix for darwin
...
un-compensate for some of the darwin quirks the neuron
source is expecting
2019-06-09 12:18:58 +02:00
Robert Scott
17ab139b9b
pythonPackages.bjoern: 2.2.3 -> 3.0.1
2019-06-07 22:08:04 +01:00
Robert Scott
4929126ca9
sigrok-cli: enable for darwin
2019-06-07 10:05:59 +02:00
Robert Scott
2565718195
libsigrok: enable for darwin
2019-06-07 10:05:59 +02:00
Robert Scott
bbd2f649ce
libsigrokdecode: enable for darwin
2019-06-07 10:05:59 +02:00
Robert Scott
7209c43d66
librevisa: enable for darwin
2019-06-07 10:05:59 +02:00
Robert Scott
2c11bbd140
libserialport: enable for darwin
2019-06-07 10:05:59 +02:00
Robert Scott
b8c8bfa9f4
pythonPackages.spglib: add patch fixing darwin/py27 build, enabling assertions on all platforms
2019-06-05 22:12:54 +01:00
Robert Scott
3c79c31280
pythonPackages.gprof2dot: remove linux platform restriction
...
appears to work on darwin
2019-06-02 23:44:13 +01:00
Robert Scott
f24efd30fa
pythonPackages.gprof2dot: enable tests
2019-06-02 23:44:12 +01:00