-
-
Notifications
You must be signed in to change notification settings - Fork 15.3k
Permalink
Choose a base ref
{{ refName }}
default
Choose a head ref
{{ refName }}
default
Comparing changes
Choose two branches to see what’s changed or to start a new pull request.
If you need to, you can also or
learn more about diff comparisons.
Open a pull request
Create a new pull request by comparing changes across two branches. If you need to, you can also .
Learn more about diff comparisons here.
base repository: NixOS/nixpkgs
Failed to load repositories. Confirm that selected base ref is valid, then try again.
Loading
base: d3be52c83bf0
Could not load branches
Nothing to show
Loading
Could not load tags
Nothing to show
{{ refName }}
default
Loading
...
head repository: NixOS/nixpkgs
Failed to load repositories. Confirm that selected head ref is valid, then try again.
Loading
compare: ede8a2f1ac80
Could not load branches
Nothing to show
Loading
Could not load tags
Nothing to show
{{ refName }}
default
Loading
- 7 commits
- 3 files changed
- 2 contributors
Commits on Oct 25, 2018
-
Stop using bin/mount.fuse from fuse3 for fuse2 (mount.fuse from fuse3 isn't guaranteed to remain backwards compatible). (cherry picked from commit c00b5bf)
Configuration menu - View commit details
-
Copy full SHA for c178111 - Browse repository at this point
Copy the full SHA c178111View commit details -
fuse3: install fuse.conf without execute bit
(cherry picked from commit 085eab7)
Configuration menu - View commit details
-
Copy full SHA for f486260 - Browse repository at this point
Copy the full SHA f486260View commit details -
Configuration menu - View commit details
-
Copy full SHA for ea1b61c - Browse repository at this point
Copy the full SHA ea1b61cView commit details -
Configuration menu - View commit details
-
Copy full SHA for 289390b - Browse repository at this point
Copy the full SHA 289390bView commit details -
fuse3: 3.2.4 -> 3.2.5 (security, CVE-2018-10906)
Upstream changelog: - SECURITY UPDATE: In previous versions of libfuse it was possible to for unprivileged users to specify the allow_other option even when this was forbidden in /etc/fuse.conf. The vulnerability is present only on systems where SELinux is active (including in permissive mode). - The fusermount binary has been hardened in several ways to reduce potential attack surface. Most importantly, mountpoints and mount options must now match a hard-coded whitelist. It is expected that this whitelist covers all regular use-cases. - Added a test of seekdir to test_syscalls. - Fixed readdir bug when non-zero offsets are given to filler and the filesystem client, after reading a whole directory, re-reads it from a non-zero offset e. g. by calling seekdir followed by readdir. (cherry picked from commit 46cd782)
Configuration menu - View commit details
-
Copy full SHA for 0e58950 - Browse repository at this point
Copy the full SHA 0e58950View commit details -
fuse: 2.9.7 -> 2.9.8 (security, CVE-2018-10906)
Upstream changelog: - SECURITY UPDATE: In previous versions of libfuse it was possible to for unprivileged users to specify the allow_other option even when this was forbidden in /etc/fuse.conf. The vulnerability is present only on systems where SELinux is active (including in permissive mode). - libfuse no longer segfaults when fuse_interrupted() is called outside the event loop. - The fusermount binary has been hardened in several ways to reduce potential attack surface. Most importantly, mountpoints and mount options must now match a hard-coded whitelist. It is expected that this whitelist covers all regular use-cases. - Fixed rename deadlock on FreeBSD. (cherry picked from commit ec1082c)
Configuration menu - View commit details
-
Copy full SHA for 228acdc - Browse repository at this point
Copy the full SHA 228acdcView commit details -
Merge pull request #48757 from primeos/security-backports-for-18.03
[18.03] Security backport for fuse (CVE-2018-10906)
Configuration menu - View commit details
-
Copy full SHA for ede8a2f - Browse repository at this point
Copy the full SHA ede8a2fView commit details
There are no files selected for viewing