Skip to content
Permalink

Comparing changes

Choose two branches to see what’s changed or to start a new pull request. If you need to, you can also or learn more about diff comparisons.

Open a pull request

Create a new pull request by comparing changes across two branches. If you need to, you can also . Learn more about diff comparisons here.
base repository: NixOS/nixpkgs
base: 728a9578e31a
Choose a base ref
...
head repository: NixOS/nixpkgs
compare: 5f69faa2694c
Choose a head ref
  • 6 commits
  • 6 files changed
  • 2 contributors

Commits on Nov 24, 2016

  1. graphicsmagick: Update URLs for patches

    (cherry picked from commit c823eae)
    grahamc committed Nov 24, 2016
    Configuration menu
    Copy the full SHA
    2292d85 View commit details
    Browse the repository at this point in the history
  2. libtiff: 4.0.6 -> 4.0.7 for many CVEs

    This release includes all our previous CVE patches, and suggets new ones:
    
     - CVE-2016-3945
     - CVE-2016-3990
     - CVE-2016-3991
     - CVE-2016-3622
     - CVE-2016-9453
     - CVE-2016-8127 (duplicate of CVE-2016-3658)
     - CVE-2016-9297
     - CVE-2016-9448
    
    (cherry picked from commit 9de6029)
    grahamc committed Nov 24, 2016
    Configuration menu
    Copy the full SHA
    ee38d13 View commit details
    Browse the repository at this point in the history
  3. qemu: add patch to fix CVE-2016-7907

    cc #20647
    
    (cherry picked from commit 336bacf)
    fpletz authored and grahamc committed Nov 24, 2016
    Configuration menu
    Copy the full SHA
    386c980 View commit details
    Browse the repository at this point in the history
  4. Configuration menu
    Copy the full SHA
    27c390f View commit details
    Browse the repository at this point in the history
  5. gnuchess: 6.2.3 -> 6.2.4 for CVEs

    CVE-2015-8972: stack buffer overflow related to user move input, where 160 characters of input can crash gnuchess
    (cherry picked from commit 4a5c661)
    grahamc committed Nov 24, 2016
    Configuration menu
    Copy the full SHA
    1980c26 View commit details
    Browse the repository at this point in the history
  6. libarchive: 3.2.1 -> 3.2.2 for unspecified vulnerabilities

    The release notes don't cover anything in particular:
    
    https://github.com/libarchive/libarchive/blob/ba3dec4495496280226a463b3270a60c8864a4f1/NEWS#L3
    (cherry picked from commit 9118702)
    grahamc committed Nov 24, 2016
    Configuration menu
    Copy the full SHA
    5f69faa View commit details
    Browse the repository at this point in the history