This repository was archived by the owner on Apr 12, 2021. It is now read-only.
-
-
Notifications
You must be signed in to change notification settings - Fork 104
Permalink
Choose a base ref
{{ refName }}
default
Choose a head ref
{{ refName }}
default
Comparing changes
Choose two branches to see what’s changed or to start a new pull request.
If you need to, you can also or
learn more about diff comparisons.
Open a pull request
Create a new pull request by comparing changes across two branches. If you need to, you can also .
Learn more about diff comparisons here.
base repository: NixOS/nixpkgs-channels
Failed to load repositories. Confirm that selected base ref is valid, then try again.
Loading
base: d77e3bd66135
Could not load branches
Nothing to show
Loading
Could not load tags
Nothing to show
{{ refName }}
default
Loading
...
head repository: NixOS/nixpkgs-channels
Failed to load repositories. Confirm that selected head ref is valid, then try again.
Loading
compare: 30a82bba734b
Could not load branches
Nothing to show
Loading
Could not load tags
Nothing to show
{{ refName }}
default
Loading
- 6 commits
- 3 files changed
- 4 contributors
Commits on Jun 14, 2019
-
Configuration menu - View commit details
-
Copy full SHA for 640c50b - Browse repository at this point
Copy the full SHA 640c50bView commit details
Commits on Jun 18, 2019
-
Merge pull request #63137 from ivan/chromium-75.0.3770.90-backport
[19.03] chromium: 75.0.3770.80 -> 75.0.3770.90 (backport)
Configuration menu - View commit details
-
Copy full SHA for d6da20c - Browse repository at this point
Copy the full SHA d6da20cView commit details -
gvfs: fix CVE-2019-1244{7.8.9}
CVE-2019-12447: daemon/gvfsbackendadmin.c mishandles file ownership because setfsuid is not used. CVE-2019-12448: daemon/gvfsbackendadmin.c has race conditions because the admin backend doesn't implement query_info_on_read/write. CVE-2019-12449: daemon/gvfsbackendadmin.c mishandles a file's user and group ownership during move (and copy with G_FILE_COPY_ALL_METADATA) operations from admin:// to file:// URIs, because root privileges are unavailable. Upstream MR: https://gitlab.gnome.org/GNOME/gvfs/merge_requests/48 Closes #63067
Configuration menu - View commit details
-
Copy full SHA for d2bfd7a - Browse repository at this point
Copy the full SHA d2bfd7aView commit details -
Vulnerability Description: daemon/gvfsdaemon.c in gvfsd from GNOME gvfs before 1.38.3, 1.40.x before 1.40.2, and 1.41.x before 1.41.3 opened a private D-Bus server socket without configuring an authorization rule. A local attacker could connect to this server socket and issue D-Bus method calls. Note that the server socket only accepts a single connection, so the attacker would have to discover the server and connect to the socket before its owner does. Closes #63301
Configuration menu - View commit details
-
Copy full SHA for 6ac7c77 - Browse repository at this point
Copy the full SHA 6ac7c77View commit details
Commits on Jun 19, 2019
-
Merge pull request #63481 from worldofpeace/gvfs/security-fixes
[19.03] gvfs: security fixes
Configuration menu - View commit details
-
Copy full SHA for be7c1a3 - Browse repository at this point
Copy the full SHA be7c1a3View commit details -
dcm2niix: 1.0.20170130 -> 1.0.20190410 (#63479)
(cherry picked from commit 2458209)
Configuration menu - View commit details
-
Copy full SHA for 30a82bb - Browse repository at this point
Copy the full SHA 30a82bbView commit details
There are no files selected for viewing