-
-
Notifications
You must be signed in to change notification settings - Fork 15.4k
Comparing changes
Open a pull request
base repository: NixOS/nixpkgs
base: 00564a7d0912
head repository: NixOS/nixpkgs
compare: 1c1c6c4b0057
- 16 commits
- 13 files changed
- 8 contributors
Commits on Mar 8, 2021
-
Configuration menu - View commit details
-
Copy full SHA for 175e921 - Browse repository at this point
Copy the full SHA 175e921View commit details
Commits on Mar 15, 2021
-
openssh: 8.4p1 -> 8.5p1 and refactor
Also split out the variants of the package because I'm sick of waiting for random patches to be updated before I can update my unpatched openssh. Also make pname correspond to the attribute name. (cherry picked from commit c99c499)
Configuration menu - View commit details
-
Copy full SHA for 8aabb84 - Browse repository at this point
Copy the full SHA 8aabb84View commit details -
openssh_hpn/openssh_gssapi: Add CVE-2021-28041
(cherry picked from commit 2b1011d)
Configuration menu - View commit details
-
Copy full SHA for 86f8de4 - Browse repository at this point
Copy the full SHA 86f8de4View commit details
Commits on Mar 20, 2021
-
libtiff: fix two security issues
CVE-2020-35523: An integer overflow flaw was found in libtiff that exists in the tif_getimage.c file. This flaw allows an attacker to inject and execute arbitrary code when a user opens a crafted TIFF file. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability. CVE-2020-35524: A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's TIFF2PDF tool. A specially crafted TIFF file can lead to arbitrary code execution. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability. Fixes: CVE-2020-35523, CVE-2020-35524
Configuration menu - View commit details
-
Copy full SHA for 3f40a5f - Browse repository at this point
Copy the full SHA 3f40a5fView commit details -
Merge pull request #115439 from maxeaubrey/20.09_glib_2.64.6
[20.09] glib: 2.64.5 -> 2.64.6
Configuration menu - View commit details
-
Copy full SHA for 98445ff - Browse repository at this point
Copy the full SHA 98445ffView commit details -
Merge pull request #116280 from mweinelt/20.09/libtiff
[20.09] libtiff: fix two security issues
Configuration menu - View commit details
-
Copy full SHA for 7b90c6f - Browse repository at this point
Copy the full SHA 7b90c6fView commit details
Commits on Mar 21, 2021
-
python3Packages.django_2: 2.2.18 -> 2.2.19
This fixes CVE-2021-23336: https://www.djangoproject.com/weblog/2021/feb/19/security-releases/ (cherry picked from commit c63208e)
Configuration menu - View commit details
-
Copy full SHA for 1e16bda - Browse repository at this point
Copy the full SHA 1e16bdaView commit details -
(cherry picked from commit 2e4e20f)
Configuration menu - View commit details
-
Copy full SHA for bf59c47 - Browse repository at this point
Copy the full SHA bf59c47View commit details
Commits on Mar 22, 2021
-
Merge pull request #116431 from helsinki-systems/bp/openssh85
[staging-20.09] openssh: 8.4p1 -> 8.5p1 and mark CVE-2021-28041
Configuration menu - View commit details
-
Copy full SHA for 44749ee - Browse repository at this point
Copy the full SHA 44749eeView commit details -
Merge pull request #117082 from dotlambda/django_2-2.2.19
[staging-20.09] python3Packages.django_2: 2.2.18 -> 2.2.19
Configuration menu - View commit details
-
Copy full SHA for ab8e228 - Browse repository at this point
Copy the full SHA ab8e228View commit details -
Merge #114192: gnutls: 3.6.15 -> 3.7.1
It includes a low-severity security fix: https://gnutls.org/security-new.html#GNUTLS-SA-2021-03-10 (cherry picked from commit a253ed2)
Configuration menu - View commit details
-
Copy full SHA for 653b9a1 - Browse repository at this point
Copy the full SHA 653b9a1View commit details -
nettle: 3.6 -> 3.7.2 (security)
https://lists.lysator.liu.se/pipermail/nettle-bugs/2021/009458.html It's meant to be fully compatible with 3.6, so we can fast-track it. (cherry picked from commit f688168)
Configuration menu - View commit details
-
Copy full SHA for f85d91e - Browse repository at this point
Copy the full SHA f85d91eView commit details -
Configuration menu - View commit details
-
Copy full SHA for a335aa6 - Browse repository at this point
Copy the full SHA a335aa6View commit details -
Merge pull request #117020 from dotlambda/popt-1.18
[staging-20.09] popt: 1.16 -> 1.18
Configuration menu - View commit details
-
Copy full SHA for 5ce64bf - Browse repository at this point
Copy the full SHA 5ce64bfView commit details
Commits on Mar 24, 2021
-
Configuration menu - View commit details
-
Copy full SHA for 3deaa4b - Browse repository at this point
Copy the full SHA 3deaa4bView commit details
Commits on Mar 25, 2021
-
Merge branch 'staging-20.09' into release-20.09
The jobset on Hydra is >90% complete, so let's merge to update -small. https://hydra.nixos.org/eval/1657620
Configuration menu - View commit details
-
Copy full SHA for 1c1c6c4 - Browse repository at this point
Copy the full SHA 1c1c6c4View commit details
There are no files selected for viewing