This repository was archived by the owner on Apr 12, 2021. It is now read-only.
-
-
Notifications
You must be signed in to change notification settings - Fork 105
Permalink
Choose a base ref
{{ refName }}
default
Choose a head ref
{{ refName }}
default
Comparing changes
Choose two branches to see what’s changed or to start a new pull request.
If you need to, you can also or
learn more about diff comparisons.
Open a pull request
Create a new pull request by comparing changes across two branches. If you need to, you can also .
Learn more about diff comparisons here.
base repository: NixOS/nixpkgs-channels
Failed to load repositories. Confirm that selected base ref is valid, then try again.
Loading
base: 08bcfe14ae29
Could not load branches
Nothing to show
Loading
Could not load tags
Nothing to show
{{ refName }}
default
Loading
...
head repository: NixOS/nixpkgs-channels
Failed to load repositories. Confirm that selected head ref is valid, then try again.
Loading
compare: 1f99fd2fdbef
Could not load branches
Nothing to show
Loading
Could not load tags
Nothing to show
{{ refName }}
default
Loading
- 7 commits
- 7 files changed
- 5 contributors
Commits on Mar 4, 2020
-
openssl_1_0_2: mark as insecure; fixes #77503 (kinda)
No vulnerabilities are know so far (to me), but still I'd go this way. Especially for 20.03 it seems better to deprecate it before official release happens. Current casualties: $ ./maintainers/scripts/rebuild-amount.sh --print HEAD HEAD^ Estimating rebuild amount by counting changed Hydra jobs. 87 x86_64-darwin 161 x86_64-linux (cherry picked from commit 7cda282)
Configuration menu - View commit details
-
Copy full SHA for 7dfb444 - Browse repository at this point
Copy the full SHA 7dfb444View commit details
Commits on Mar 5, 2020
-
signal-desktop: 1.30.1 -> 1.31.0
Changelog: https://github.com/signalapp/Signal-Desktop/releases/tag/v1.31.0 (cherry picked from commit 7d92767)
Configuration menu - View commit details
-
Copy full SHA for a6ac7bf - Browse repository at this point
Copy the full SHA a6ac7bfView commit details -
Configuration menu - View commit details
-
Copy full SHA for 1019f56 - Browse repository at this point
Copy the full SHA 1019f56View commit details -
nixos/release-notes: fix a tiny typo
(cherry picked from commit 1cf4fea)
Configuration menu - View commit details
-
Copy full SHA for 3a820f0 - Browse repository at this point
Copy the full SHA 3a820f0View commit details -
nix-bash-completions: 0.6.7 -> 0.6.8 (#81019)
(cherry picked from commit 0e5d457)
Configuration menu - View commit details
-
Copy full SHA for 0b6df0b - Browse repository at this point
Copy the full SHA 0b6df0bView commit details -
gitlab: 12.8.1 -> 12.8.2 (#81803)
Includes multiple security fixes mentioned in https://about.gitlab.com/releases/2020/03/04/gitlab-12-dot-8-dot-2-released/ (unfortunately, no CVE numbers as of yet) - Directory Traversal to Arbitrary File Read - Account Takeover Through Expired Link - Server Side Request Forgery Through Deprecated Service - Group Two-Factor Authentication Requirement Bypass - Stored XSS in Merge Request Pages - Stored XSS in Merge Request Submission Form - Stored XSS in File View - Stored XSS in Grafana Integration - Contribution Analytics Exposed to Non-members - Incorrect Access Control in Docker Registry via Deploy Tokens - Denial of Service via Permission Checks - Denial of Service in Design For Public Issue - GitHub Tokens Displayed in Plaintext on Integrations Page - Incorrect Access Control via LFS Import - Unescaped HTML in Header - Private Merge Request Titles Leaked via Widget - Project Namespace Exposed via Vulnerability Feedback Endpoint - Denial of Service Through Recursive Requests - Project Authorization Not Being Updated - Incorrect Permission Level For Group Invites - Disclosure of Private Group Epic Information - User IP Address Exposed via Badge images - Update postgresql (GitLab Omnibus) (cherry-picked from commit c25756f)
Milan committedMar 5, 2020 Configuration menu - View commit details
-
Copy full SHA for c174670 - Browse repository at this point
Copy the full SHA c174670View commit details -
Merge pull request #81718 from worldofpeace/backport-80746
[20.03] openssl_1_0_2: mark as insecure; fixes #77503 (kinda)
Configuration menu - View commit details
-
Copy full SHA for 1f99fd2 - Browse repository at this point
Copy the full SHA 1f99fd2View commit details
There are no files selected for viewing
Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.