-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[pull] main-19.07 from openwrt:openwrt-19.07 #23
base: main-19.07
Are you sure you want to change the base?
Commits on Oct 15, 2021
-
simple-adblock: update to 1.8.8-1
* update 'check' function Signed-off-by: Stan Grishin <[email protected]> (cherry picked from commit d11f310)
Configuration menu - View commit details
-
Copy full SHA for a5de193 - Browse repository at this point
Copy the full SHA a5de193View commit details -
Merge pull request #16900 from stangri/openwrt-19.07
[19.07] simple-adblock: update to 1.8.8-1
Configuration menu - View commit details
-
Copy full SHA for a669e1e - Browse repository at this point
Copy the full SHA a669e1eView commit details
Commits on Oct 16, 2021
-
python-importlib-metadata: Pin setuptools-scm version
While a pinned/working version of setuptools-scm is installed (by python-zipp) by the time this package is compiled, pinning the version in this package is still the correct thing to do. Signed-off-by: Jeffery To <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e933f6f - Browse repository at this point
Copy the full SHA e933f6fView commit details -
python-dateutil: Add missing HOST_PYTHON3_PACKAGE_BUILD_DEPENDS
Signed-off-by: Jeffery To <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 20a9e87 - Browse repository at this point
Copy the full SHA 20a9e87View commit details
Commits on Oct 17, 2021
-
vpn-policy-routing: downgrade to 0.2.1-13
* there are reports that newer versions don't work on 19.07.x * revert to older README to describe this older version Signed-off-by: Stan Grishin <[email protected]> (cherry picked from commit 7bb2ccd)
Configuration menu - View commit details
-
Copy full SHA for c493a60 - Browse repository at this point
Copy the full SHA c493a60View commit details -
Merge pull request #16906 from stangri/openwrt-19.07
[19.07] vpn-policy-routing: downgrade to 0.2.1-13
Configuration menu - View commit details
-
Copy full SHA for d77d598 - Browse repository at this point
Copy the full SHA d77d598View commit details
Commits on Oct 18, 2021
-
Merge pull request #16903 from jefferyto/python-package-host-dependen…
…cies-openwrt-19.07 [openwrt-19.07] python-packages: Fix host package build dependencies
Configuration menu - View commit details
-
Copy full SHA for 30935b2 - Browse repository at this point
Copy the full SHA 30935b2View commit details
Commits on Oct 22, 2021
-
nextdns: Update to version 1.37.3
Signed-off-by: Olivier Poitrey <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for bb0ed00 - Browse repository at this point
Copy the full SHA bb0ed00View commit details
Commits on Oct 25, 2021
-
bind: update to version 9.16.21
- Remove patch, which is part of this release, it was backported from upstream Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 18af9b9 - Browse repository at this point
Copy the full SHA 18af9b9View commit details
Commits on Oct 28, 2021
-
tvheadend: update libhdhomerun
Recently, silicondust (developers of hdhomerun) did some cleanup and removed old versions for hdhomerun library. ``` WGET http://download.silicondust.com/hdhomerun/libhdhomerun_20150826.tgz http://download.silicondust.com/hdhomerun/libhdhomerun_20150826.tgz: 2021-10-26 05:15:14 ERROR 404: Not Found. ``` And because of that, it is not possible to compile tvheadend, it ends with following error: ``` In file included from src/input/mpegts/tvhdhomerun/tvhdhomerun.c:25:0: src/input/mpegts/tvhdhomerun/tvhdhomerun_private.h:27:10: fatal error: libhdhomerun/hdhomerun.h: No such file or directory #include <libhdhomerun/hdhomerun.h> ^~~~~~~~~~~~~~~~~~~~~~~~~~ compilation terminated. ``` Let's fix it by updating libdhdhomerun to newer version. Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for cb4433c - Browse repository at this point
Copy the full SHA cb4433cView commit details
Commits on Oct 29, 2021
-
The following CVEs are addressed: * CVE-2021-25219: The "lame-ttl" option is now forcibly set to 0. This effectively disables the lame server cache, as it could previously be abused by an attacker to significantly degrade resolver performance. Signed-off-by: Noah Meyerhans <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 9abe24f - Browse repository at this point
Copy the full SHA 9abe24fView commit details
Commits on Oct 30, 2021
-
ffmpeg: update to version 3.4.9 (security fix)
Fixes: CVE-2020-13904 CVE-2020-2044 CVE-2020-20453 CVE-2020-22015 CVE-2020-22019 CVE-2020-22033 CVE-2020-22021 CVE-2020-22037 CVE-2020-35965 CVE-2021-38114 CVE-2021-38171 CVE-2021-38291 Refresh patches Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 61741b3 - Browse repository at this point
Copy the full SHA 61741b3View commit details
Commits on Oct 31, 2021
-
syslog-ng: update to version 3.34.1
Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit d8e88ef)
Configuration menu - View commit details
-
Copy full SHA for 496f50a - Browse repository at this point
Copy the full SHA 496f50aView commit details
Commits on Nov 11, 2021
-
php7: Clean up and update distributed php.ini for php 7.2.34
Details: - Cleaned up whitespace and removed comments (refer to official PHP documentation for that) - Removed directives that no longer exist as of PHP 7.2.34 - Added '~E_DEPRECATED' to 'error_reporting' Directives removed that no longer exist as of PHP 7.2.34: - zend.ze1_compatibility_mode - y2k_compliance - register_globals - register_long_arrays - magic_quotes_gpc - magic_quotes_runtime - magic_quotes_sybase - always_populate_raw_post_data Signed-off-by: Giovanni Giacobbi <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 903d79b - Browse repository at this point
Copy the full SHA 903d79bView commit details
Commits on Nov 12, 2021
-
Merge pull request #17110 from thg2k/pr/19_php72_ini_1
[19.07] php7: Update and clean up distributed php7.ini
Configuration menu - View commit details
-
Copy full SHA for 1b3135b - Browse repository at this point
Copy the full SHA 1b3135bView commit details
Commits on Nov 13, 2021
-
cyrus-sasl: patch CVE-2019-19906
Signed-off-by: Michal Vasilek <[email protected]> (cherry picked from commit f7717bd)
Configuration menu - View commit details
-
Copy full SHA for af8fe23 - Browse repository at this point
Copy the full SHA af8fe23View commit details
Commits on Nov 14, 2021
-
Merge pull request #17114 from paper42/cve-2019-19906-19
[19.07] cyrus-sasl: patch CVE-2019-19906
Configuration menu - View commit details
-
Copy full SHA for 020756e - Browse repository at this point
Copy the full SHA 020756eView commit details
Commits on Nov 18, 2021
-
bind: update to version 9.16.23
Changelog: https://downloads.isc.org/isc/bind9/9.16.23/RELEASE-NOTES-bind-9.16.23.html Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for c559096 - Browse repository at this point
Copy the full SHA c559096View commit details
Commits on Nov 26, 2021
-
ddns-scripts: Fix wrong whitespace in preinst and postinst scripts
Signed-off-by: Martin Pecka <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e1feccd - Browse repository at this point
Copy the full SHA e1feccdView commit details
Commits on Nov 29, 2021
-
icu: Fix memory bug w/ baseName
CVE-2021-30535 : Double free in ICU https://nvd.nist.gov/vuln/detail/CVE-2021-30535 https://security-tracker.debian.org/tracker/CVE-2021-30535 ICU-21587 : Fix memory bug w/ baseName unicode-org/icu#1698 Signed-off-by: Hirokazu MORIKAWA <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1d5b649 - Browse repository at this point
Copy the full SHA 1d5b649View commit details
Commits on Nov 30, 2021
-
Merge pull request #17209 from peci1/patch-1
ddns-scripts: Fix wrong whitespace in preinst and postinst scripts
Configuration menu - View commit details
-
Copy full SHA for 5c88f28 - Browse repository at this point
Copy the full SHA 5c88f28View commit details -
syslog-ng: update to version 3.35.1
Also bump the version in syslog-ng config file. Removes this warning: Nov 16 14:19:41 turris syslog-ng[15159]: WARNING: Configuration file format is too old, syslog-ng is running in compatibility mode. Please update it to use the syslog-ng 3.35 format at your time of convenience. To upgrade the configuration, please review the warnings about incompatible changes printed by syslog-ng, and once completed change the @Version header at the top of the configuration file; config-version='3.33' Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit 2d2fd36)
Configuration menu - View commit details
-
Copy full SHA for d216572 - Browse repository at this point
Copy the full SHA d216572View commit details -
msmtp: update to version 1.8.17
Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit 18261fc)
Configuration menu - View commit details
-
Copy full SHA for 45218f2 - Browse repository at this point
Copy the full SHA 45218f2View commit details
Commits on Dec 2, 2021
-
libs/c-ares: fix domain hijacking CVE-2021-3672
Missing input validation of host names returned by Domain Name Servers in the c-ares library can lead to output of wrong hostnames (leading to Domain Hijacking). I've just taken patch from the advisory[1] and rebased it onto 1.15.0 version. 1. https://github.com/c-ares/c-ares/compare/809d5e8..44c009b.patch Fixes: CVE-2021-3672 Signed-off-by: Petr Štetiar <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e93fc5a - Browse repository at this point
Copy the full SHA e93fc5aView commit details
Commits on Dec 4, 2021
-
postgresql: security update to version 11.14
Patch 001-configure_fixes does not apply anymore. Other patches were refreshed. Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 535f480 - Browse repository at this point
Copy the full SHA 535f480View commit details -
msmtp: update to version 1.8.1.9
Changelog: https://marlam.de/msmtp/news/msmtp-1-8-19/ Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit 173faad)
Configuration menu - View commit details
-
Copy full SHA for e1a2d90 - Browse repository at this point
Copy the full SHA e1a2d90View commit details
Commits on Dec 12, 2021
-
Merge pull request #17267 from BKPepe/postgresql-update
[19.07] postgresql: security update to version 11.14
Configuration menu - View commit details
-
Copy full SHA for a135aed - Browse repository at this point
Copy the full SHA a135aedView commit details -
Merge pull request #17250 from ynezz/ynezz/cares-fix-CVE-2021-3672
[19.07] libs/c-ares: fix domain hijacking CVE-2021-3672
Configuration menu - View commit details
-
Copy full SHA for 7db6f87 - Browse repository at this point
Copy the full SHA 7db6f87View commit details
Commits on Dec 16, 2021
-
Update nano editor to version 6.0 Version 6.0 enable toggling the display of the line numbers with the shortcut key M-N (Alt-n). Also the cmdline option "-l" works. Remove earlier patch regarding that. Signed-off-by: Hannu Nyman <[email protected]> (backported from commits 0571f54, 9023845 and ae7f62d)
Configuration menu - View commit details
-
Copy full SHA for 5a9b5ee - Browse repository at this point
Copy the full SHA 5a9b5eeView commit details
Commits on Dec 17, 2021
-
zsh: fix invalid postrm script and little refactor of scripts
The postrm script was missing shebang. Postrm scripts are packaged and executed directly and not sourced by default script (as in case of prerm and postinst). Also move some indents around to not confuse reader. The section in postinst was indented to same level as grep "condition" but is on same level as initial grep (not part of that "condition"). Signed-off-by: Karel Kočí <[email protected]> (cherry picked from commit d2d193d)
Configuration menu - View commit details
-
Copy full SHA for ea3e54a - Browse repository at this point
Copy the full SHA ea3e54aView commit details -
zsh: drop bash syntax in postinst
Signed-off-by: Karel Kočí <[email protected]> (cherry picked from commit c09d604)
Configuration menu - View commit details
-
Copy full SHA for 64d0238 - Browse repository at this point
Copy the full SHA 64d0238View commit details
Commits on Jan 2, 2022
-
treewide: add missing BUILDONLY
Fixes Makefile warnings: WARNING: skipping X -- package has no install section Signed-off-by: Rosen Penev <[email protected]> (cherry picked from commit 5a7148d)
Configuration menu - View commit details
-
Copy full SHA for f299c29 - Browse repository at this point
Copy the full SHA f299c29View commit details
Commits on Jan 3, 2022
-
Merge pull request #17476 from BKPepe/buildonly
treewide: add missing BUILDONLY
Configuration menu - View commit details
-
Copy full SHA for 0e3869c - Browse repository at this point
Copy the full SHA 0e3869cView commit details
Commits on Jan 9, 2022
-
Update havged to version 1.9.17. Signed-off-by: Hannu Nyman <[email protected]> (cherry picked from commit e065ccd) (Autorelease removed)
Configuration menu - View commit details
-
Copy full SHA for 4af8afe - Browse repository at this point
Copy the full SHA 4af8afeView commit details
Commits on Jan 13, 2022
-
apache: security bump to 2.4.51
Fixes (see [1] for details): CVE-2021-33193 CVE-2021-41524 CVE-2021-41773 CVE-2021-42013 [1] https://httpd.apache.org/security/vulnerabilities_24.html Signed-off-by: Sebastian Kemper <[email protected]> (cherry picked from commit da4b1ca)
Configuration menu - View commit details
-
Copy full SHA for 6317eab - Browse repository at this point
Copy the full SHA 6317eabView commit details -
netdata: Update init script to use -D rather than -nd
The current init script is using the deprecated -nd flag. This updates netdata to be started with -D. Signed-off-by: James White <[email protected]> (cherry picked from commit cf9d5a8)
Configuration menu - View commit details
-
Copy full SHA for 7bb0a7e - Browse repository at this point
Copy the full SHA 7bb0a7eView commit details
Commits on Jan 19, 2022
-
domoticz: Fix compilation without deprecated OpenSSL APIs
Signed-off-by: Rosen Penev <[email protected]> (cherry picked from commit 8c77bcc)
Configuration menu - View commit details
-
Copy full SHA for 8d91ba8 - Browse repository at this point
Copy the full SHA 8d91ba8View commit details -
Signed-off-by: Stijn Tintel <[email protected]> (cherry picked from commit 7e50722)
Configuration menu - View commit details
-
Copy full SHA for 572392a - Browse repository at this point
Copy the full SHA 572392aView commit details -
domoticz: backport patch to fix compilation with uClibc-ng
This helps to compile domoticz on arc target. Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 7653077 - Browse repository at this point
Copy the full SHA 7653077View commit details
Commits on Jan 25, 2022
-
tvheadend: fix conffiles section
The previous one was wrong, and it did not work. It could be checked inside compiled package in control.tar.gz that there was missing ``conffiles`` file with content `/etc/config/tvheadend` It is also possible to verify that the config is not overwritten on the router by running ``opkg install tvheadend --force-reinstall`` Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit 752d1ff)
Configuration menu - View commit details
-
Copy full SHA for 0578037 - Browse repository at this point
Copy the full SHA 0578037View commit details
Commits on Jan 30, 2022
-
Several Makefile rearrangements for consistency between packages. Signed-off-by: Rosen Penev <[email protected]> (cherry picked from commit 73d29b9)
Configuration menu - View commit details
-
Copy full SHA for 498bcd4 - Browse repository at this point
Copy the full SHA 498bcd4View commit details -
prosody: /etc/prosody permissions fix
Signed-off-by: Sergio E. Nemirowski <[email protected]> (cherry picked from commit 838306c)
Configuration menu - View commit details
-
Copy full SHA for 199860f - Browse repository at this point
Copy the full SHA 199860fView commit details -
Signed-off-by: Vieno Hakkerinen <[email protected]> (cherry picked from commit bc50029)
Configuration menu - View commit details
-
Copy full SHA for 22a3a54 - Browse repository at this point
Copy the full SHA 22a3a54View commit details -
Signed-off-by: Rosen Penev <[email protected]> (cherry picked from commit 68a3a06)
Configuration menu - View commit details
-
Copy full SHA for 0319712 - Browse repository at this point
Copy the full SHA 0319712View commit details -
prosody: fix shellcheck warnings
Remove paxctl stuff. pax is not packaged in OpenWrt. Add reload support. Install lua cfg file as 644. It's needed to be readable as prosody user Signed-off-by: Rosen Penev <[email protected]> (cherry picked from commit eb46e23)
Configuration menu - View commit details
-
Copy full SHA for 20e42ca - Browse repository at this point
Copy the full SHA 20e42caView commit details -
prosody: update to version 0.11.13
Fixes CVEs: - CVE-2022-0217 - CVE-2021-37601 - CVE-2021-32918 - CVE-2021-32920 - CVE-2021-32921 - CVE-2021-32917 - CVE-2021-32919 Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit dcedbe8)
Configuration menu - View commit details
-
Copy full SHA for 0af741c - Browse repository at this point
Copy the full SHA 0af741cView commit details
Commits on Jan 31, 2022
-
nss: backport patch for CVE-2021-43527
Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 864ffb6 - Browse repository at this point
Copy the full SHA 864ffb6View commit details
Commits on Feb 1, 2022
-
nano: Add a plus variant with more features
Nano is by default built as "tiny" with most features disabled. That is suitable for basic tasks in routers with small flash. Add a new nano-plus variant that enables selected additional features in the build config: * multiple files (multibuffer) * Unicode/utf8 * justify * .nanorc support * help * also some key bindings get enabled as "tiny" configure option is removed. Signed-off-by: Hannu Nyman <[email protected]> (cherry picked from commit 85cb71d)
Configuration menu - View commit details
-
Copy full SHA for 5578d60 - Browse repository at this point
Copy the full SHA 5578d60View commit details
Commits on Feb 2, 2022
-
Merge pull request #17756 from BKPepe/nss-cve-2021-43527
nss: backport patch for CVE-2021-43527
Configuration menu - View commit details
-
Copy full SHA for b61f1d4 - Browse repository at this point
Copy the full SHA b61f1d4View commit details -
CI: fix runtime testing for non master branch
The runtime testing always ran on master branch aka snapshots since the branch wasn't passed over to the container execution! Signed-off-by: Paul Spooren <[email protected]> (cherry picked from commit f535d77)
Configuration menu - View commit details
-
Copy full SHA for 56cf180 - Browse repository at this point
Copy the full SHA 56cf180View commit details -
bind: update to version 9.16.25
Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for c0c89af - Browse repository at this point
Copy the full SHA c0c89afView commit details -
Merge pull request #17778 from turris-cz/bind-19.07
bind: update to version 9.16.25
Configuration menu - View commit details
-
Copy full SHA for 7a1df41 - Browse repository at this point
Copy the full SHA 7a1df41View commit details
Commits on Feb 6, 2022
-
* fixes CVE-2021-41817 and CVE-2021-41819 Signed-off-by: Michal Vasilek <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e234ea1 - Browse repository at this point
Copy the full SHA e234ea1View commit details
Commits on Feb 9, 2022
-
Update nano to version 6.1. Signed-off-by: Hannu Nyman <[email protected]> (cherry picked from commit 717efb8) [removed aurorelease]
Configuration menu - View commit details
-
Copy full SHA for 8129d30 - Browse repository at this point
Copy the full SHA 8129d30View commit details
Commits on Feb 22, 2022
-
Update nano to 6.2. Remove inactive second maintainer. Signed-off-by: Hannu Nyman <[email protected]> (cherry picked from commit a3f14c5) [removed AUTORELEASE]
Configuration menu - View commit details
-
Copy full SHA for 4c461f9 - Browse repository at this point
Copy the full SHA 4c461f9View commit details
Commits on Feb 23, 2022
-
htpdate: drop www.freebsd.org from default server list
The FreeBSD project stopped publishing HTTP date headers and seeks to limit further resource taxing by distributed htpdate clients using the www.freebsd.org host as default time source. Fixes: #17924 Reported-by: Allan Jude <[email protected]> Signed-off-by: Jo-Philipp Wich <[email protected]> (cherry picked from commit e871318)
Configuration menu - View commit details
-
Copy full SHA for 31098bd - Browse repository at this point
Copy the full SHA 31098bdView commit details
Commits on Feb 24, 2022
-
Signed-off-by: Rosen Penev <[email protected]> (cherry picked from commit c69160e)
Configuration menu - View commit details
-
Copy full SHA for 448eb6e - Browse repository at this point
Copy the full SHA 448eb6eView commit details -
expat: import patches for CVEs
* import patches for CVEs from alpine 3.13 CVE-2021-45960, CVE-2021-46143, CVE-2022-22822, CVE-2022-23852, CVE-2022-23990 CVE-2022-25235, CVE-2022-25236, CVE-2022-25313, CVE-2022-25314, CVE-2022-25315 Signed-off-by: Michal Vasilek <[email protected]> (cherry picked from commit 584c0c4)
Configuration menu - View commit details
-
Copy full SHA for 79db9a8 - Browse repository at this point
Copy the full SHA 79db9a8View commit details
Commits on Mar 12, 2022
-
syslog-ng: update to version 3.36.1
- Bump version in config file Release notes: https://github.com/syslog-ng/syslog-ng/releases/tag/syslog-ng-3.36.1 Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit 110d46e)
Configuration menu - View commit details
-
Copy full SHA for 17e7ca6 - Browse repository at this point
Copy the full SHA 17e7ca6View commit details
Commits on Mar 18, 2022
-
Fixes security issues: * CVE-2022-0396 -- A synchronous call to closehandle_cb() caused isc__nm_process_sock_buffer() to be called recursively, which in turn left TCP connections hanging in the CLOSE_WAIT state blocking indefinitely when out-of-order processing was disabled. * CVE-2021-25220 -- The rules for acceptance of records into the cache have been tightened to prevent the possibility of poisoning if forwarders send records outside the configured bailiwick. Signed-off-by: Noah Meyerhans <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e8dc427 - Browse repository at this point
Copy the full SHA e8dc427View commit details
Commits on Mar 21, 2022
-
python3: Update to 3.7.13, refresh patches
Includes fixes for: * Windows builds updated to bzip2 1.0.8 to mitigate CVE-2016-3189 and CVE-2019-12900 * CVE-2022-26488: Escalation of privilege via Windows Installer Signed-off-by: Jeffery To <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 3398ed2 - Browse repository at this point
Copy the full SHA 3398ed2View commit details
Commits on Mar 23, 2022
-
Merge pull request #18127 from jefferyto/python-3.7.13-openwrt-19.07
[openwrt-19.07] python3: Update to 3.7.13, refresh patches
Configuration menu - View commit details
-
Copy full SHA for c2f4c30 - Browse repository at this point
Copy the full SHA c2f4c30View commit details -
Remove upstreamed patches. Added patch to fix compilation. Signed-off-by: Rosen Penev <[email protected]> (cherry picked from commit 68b5a71)
Configuration menu - View commit details
-
Copy full SHA for 944bae0 - Browse repository at this point
Copy the full SHA 944bae0View commit details -
Upstream was sloppy when cutting the release. Signed-off-by: Rosen Penev <[email protected]> (cherry picked from commit df20377)
Configuration menu - View commit details
-
Copy full SHA for 384c9dc - Browse repository at this point
Copy the full SHA 384c9dcView commit details -
coova-chilli: remove dnslog option
dnslog feature has been removed since v1.4. Signed-off-by: Sungbo Eo <[email protected]> (cherry picked from commit 95954b8)
Configuration menu - View commit details
-
Copy full SHA for 6ac4167 - Browse repository at this point
Copy the full SHA 6ac4167View commit details -
coova-chilli: clean up Makefile
- add missing configs to PKG_CONFIG_DEPENDS and sort it - remove redundant INSTALL_DIR Signed-off-by: Sungbo Eo <[email protected]> (cherry picked from commit 2c71fb2)
Configuration menu - View commit details
-
Copy full SHA for 6732d05 - Browse repository at this point
Copy the full SHA 6732d05View commit details -
coova-chilli: add dependency for miniportal
If miniportal option is enabled, some haserl scripts are provided which present a simple login web page. To make it functional haserl is required. Signed-off-by: Sungbo Eo <[email protected]> (cherry picked from commit 5320888)
Configuration menu - View commit details
-
Copy full SHA for 7b9c8fd - Browse repository at this point
Copy the full SHA 7b9c8fdView commit details
Commits on Mar 24, 2022
-
netatalk: update to version 3.1.13
Please update to this latest release as soon as possible as this releases fixes the following major security issues: CVE-2021-31439, CVE-2022-23121, CVE-2022-23122, CVE-2022-23123, CVE-2022-23124, CVE-2022-23125 and CVE-2022-0194. For a summary of news and a detailed list of changes see the ReleaseNotes[1]. [1]: https://netatalk.sourceforge.io/3.1/ReleaseNotes3.1.13.html Signed-off-by: Daniel Golle <[email protected]> (cherry picked from commit 951ef67)
Configuration menu - View commit details
-
Copy full SHA for 165c562 - Browse repository at this point
Copy the full SHA 165c562View commit details -
nano: provide nano-full with most features enabled
Provide a new variant, nano-full, that enables almost all functionality of nano. Only libmagic file type detection has been left out. Ship with a minimal /etc/nanorc that the user can modify. nanorc documentation at https://www.nano-editor.org/dist/latest/nanorc.5.html Provide color highlighting for the uci config files. Signed-off-by: Hannu Nyman <[email protected]> (cherry picked from commit 6a51794)
Configuration menu - View commit details
-
Copy full SHA for 5a84263 - Browse repository at this point
Copy the full SHA 5a84263View commit details
Commits on Apr 16, 2022
-
zabbix: update to version 4.0.37
- Fixes CVE-2020-15803, CVE-2021-27927 - SourceForge does not provide tarball for version 4.0.37 and it was necessary to use Zabbix CDN to download it. Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1c5e4c8 - Browse repository at this point
Copy the full SHA 1c5e4c8View commit details
Commits on Apr 22, 2022
-
sane-backends: revert BUILDONLY flag
BUILDONLY was disabling SANE backends (drivers) build. Closes #14484 Signed-off-by: Luiz Angelo Daros de Luca <[email protected]> (cherry picked from commit bf4340e)
Configuration menu - View commit details
-
Copy full SHA for cae913f - Browse repository at this point
Copy the full SHA cae913fView commit details
Commits on Apr 23, 2022
-
Fixes from 2.6.9: - CVE-2021-41817: Regular Expression Denial of Service Vulnerability of Date Parsing Methods - CVE-2021-41819: Cookie Prefix Spoofing in CGI::Cookie.parse Fixes from 2.6.10: - CVE-2022-28739: Buffer overrun in String-to-Float conversion After this release, Ruby 2.6 reaches EOL. Signed-off-by: Luiz Angelo Daros de Luca <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 9c39582 - Browse repository at this point
Copy the full SHA 9c39582View commit details
Commits on Apr 24, 2022
-
bind: update to version 9.16.28
Changelog: https://downloads.isc.org/isc/bind9/9.16.28/RELEASE-NOTES-bind-9.16.28.html Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 9377a39 - Browse repository at this point
Copy the full SHA 9377a39View commit details
Commits on May 5, 2022
-
This fixes CVE-2022-24884. Also update the package URL to match the source repository. Signed-off-by: Matthias Schiffer <[email protected]> (cherry picked from commit de5671e)
Configuration menu - View commit details
-
Copy full SHA for c215473 - Browse repository at this point
Copy the full SHA c215473View commit details
Commits on May 6, 2022
-
youtube-dl: update to version 2021.6.6
Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit fbe3079)
Configuration menu - View commit details
-
Copy full SHA for 6aeedcd - Browse repository at this point
Copy the full SHA 6aeedcdView commit details -
youtube-dl: update to 2021.12.17
Signed-off-by: Michal Vasilek <[email protected]> (cherry picked from commit ef29bf0)
Configuration menu - View commit details
-
Copy full SHA for 58036e0 - Browse repository at this point
Copy the full SHA 58036e0View commit details
Commits on May 15, 2022
-
postgresql: security update to 11.16
* fixes CVE-2022-1552 Signed-off-by: Michal Vasilek <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 58a5dd8 - Browse repository at this point
Copy the full SHA 58a5dd8View commit details -
lxc: export systemd cgroups after install
otherwise, a user would have to either manually run /etc/init.d/lxc-auto boot or reboot the system to start using lxc. Signed-off-by: Michal Vasilek <[email protected]> (cherry picked from commit 2cde10b)
Configuration menu - View commit details
-
Copy full SHA for a44cb1e - Browse repository at this point
Copy the full SHA a44cb1eView commit details
Commits on May 20, 2022
-
Revert "netatalk: update to version 3.1.13"
We received a report from Turris user on Turris support department that netatalk version 3.1.13 does not work properly. Process afpd says: INTERNAL ERROR Signal 11 because of that Apple Time Machine does not work as it should This was already reported to netatalk by different people on various GNU/Linux distributions like CentOS, AlmaLinux [1] [2] netatalk developer states [3]: ``` Generally, at this point I can only advice to stop using Netatalk. There are more pending CVEs that I currently don't have the bandwidth to work on. ``` [1] https://sourceforge.net/p/netatalk/bugs/669/ [2] https://sourceforge.net/p/netatalk/bugs/670/ [3] https://sourceforge.net/p/netatalk/mailman/message/37638871/ This reverts commit 165c562. Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for bfe2550 - Browse repository at this point
Copy the full SHA bfe2550View commit details
Commits on Jun 1, 2022
-
openwisp-config: update to 1.0.0
Signed-off-by: Federico Capoano <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for f0e94f3 - Browse repository at this point
Copy the full SHA f0e94f3View commit details -
* follow upstream ressources to github * rename /usr/sbin/munin-node to /usr/sbin/muninlite (following the chane of upstream) * change plugin directory from /usr/sbin/munin-node-plugin.d/ to /etc/munin/plugins (compatible to upstream / munin-node) * all patches (except one OpenWrt-specific patch) were merged upstream Signed-off-by: Lars Kruse <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e278864 - Browse repository at this point
Copy the full SHA e278864View commit details -
muninlite: remove unused sections from Makefile
Signed-off-by: Lars Kruse <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for b85f7ea - Browse repository at this point
Copy the full SHA b85f7eaView commit details -
muninlite: remove patch "hostname"
Since muninlite 2.0 the unpatched upstream also uses /proc/sys/kernel/hostname. Thus the patch is not necessary anymore. Signed-off-by: Lars Kruse <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for f5ae7f7 - Browse repository at this point
Copy the full SHA f5ae7f7View commit details -
muninlite: Fixes munin xinetd service not launching.
Signed-off-by: Francois Dechery <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 8ee79c9 - Browse repository at this point
Copy the full SHA 8ee79c9View commit details -
Signed-off-by: Francois Dechery <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for ff14d38 - Browse repository at this point
Copy the full SHA ff14d38View commit details -
muninlite: update to new upstream release (2.1.0)
Signed-off-by: Lars Kruse <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 324087f - Browse repository at this point
Copy the full SHA 324087fView commit details -
muninlite: update to new upstream release (2.1.1)
Signed-off-by: Kim B. Heino <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 00386db - Browse repository at this point
Copy the full SHA 00386dbView commit details -
muninlite: update to new upstream release (2.1.2)
Signed-off-by: Lars Kruse <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for d7b0f76 - Browse repository at this point
Copy the full SHA d7b0f76View commit details
Commits on Jun 2, 2022
-
db47: don't depend on libxml2 at run-time
libxml2 seems to be required only during build, hence no need to depend on it in run-time. Signed-off-by: Daniel Golle <[email protected]> (cherry picked from commit 1f3585a)
Configuration menu - View commit details
-
Copy full SHA for 6dbc752 - Browse repository at this point
Copy the full SHA 6dbc752View commit details -
Signed-off-by: Michael Heimpold <[email protected]> (cherry picked from commit 10e867d) [remove no longer needed CVE-2019-19956 patch (fixed in libxml2 2.9.10)] Signed-off-by: Šimon Bořek <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a23bfc9 - Browse repository at this point
Copy the full SHA a23bfc9View commit details -
Signed-off-by: Michael Heimpold <[email protected]> (cherry picked from commit 6b932d3) Signed-off-by: Šimon Bořek <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a3557e5 - Browse repository at this point
Copy the full SHA a3557e5View commit details -
This fixes CVE-2022-23308. Also switch to GNOME as download source and xz tarball. Signed-off-by: Michael Heimpold <[email protected]> (cherry picked from commit 81fd836) Signed-off-by: Šimon Bořek <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 0da04ff - Browse repository at this point
Copy the full SHA 0da04ffView commit details -
This fixes CVE-2022-29824. Signed-off-by: Michael Heimpold <[email protected]> (cherry picked from commit c12e1cf) Signed-off-by: Šimon Bořek <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1ad2e67 - Browse repository at this point
Copy the full SHA 1ad2e67View commit details -
Merge pull request #18671 from turris-cz/libxml_2.9.14_backport
libxml2: backport 2.9.14 version bump
Configuration menu - View commit details
-
Copy full SHA for 1f7513c - Browse repository at this point
Copy the full SHA 1f7513cView commit details
Commits on Jun 6, 2022
-
Revert "Revert "netatalk: update to version 3.1.13""
This can be finally re-reverted, so we can use version 3.1.13, which fixes multiple security vulnerabilities, but it segfaults almost immediately. There is currently pending pull request, which fixes this, and multiple users confirmed that it works on different GNU/Linux distributions. This reverts commit bfe2550. Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1f7164e - Browse repository at this point
Copy the full SHA 1f7164eView commit details -
netatalk: backport pending PR to fix segfaults
This commit backports pending PR, which solves segfaults: - Netatalk/netatalk#174 To fix issues with segfaults described here: - #18571 - Netatalk/netatalk#175 Signed-off-by: Šimon Bořek <[email protected]> (cherry picked from commit ab76857)
Configuration menu - View commit details
-
Copy full SHA for cc81050 - Browse repository at this point
Copy the full SHA cc81050View commit details
Commits on Jun 8, 2022
-
Merge pull request #18696 from BKPepe/netatalk-1907
[19.07] netatalk: re-introduce 3.1.13 and backport pending fixes
Configuration menu - View commit details
-
Copy full SHA for b4f1cdb - Browse repository at this point
Copy the full SHA b4f1cdbView commit details
Commits on Jun 10, 2022
-
beep: add missing PKG_MIRROR_HASH
Signed-off-by: Yanase Yuki <[email protected]> (cherry picked from commit ac52356)
Configuration menu - View commit details
-
Copy full SHA for 21ee1aa - Browse repository at this point
Copy the full SHA 21ee1aaView commit details -
beep: fix dependency to support non-x86 target and kmod-gpio-beeper
Beep is a target-independent software that can handle buzzers controlled by kmod-gpio-beeper. This change is useful for some non-x86 enterprise APs and development boards that have a buzzer connected to GPIO. Compile-tested: ath79, ELECOM WAB-I1750-PS, 3fab4ac + device support patch Run-tested: ath79, ELECOM WAB-I1750-PS, 3fab4ac + device support patch Signed-off-by: Yanase Yuki <[email protected]> (cherry picked from commit 9bcea2d)
Configuration menu - View commit details
-
Copy full SHA for 02d4a71 - Browse repository at this point
Copy the full SHA 02d4a71View commit details -
beep: restore a dependency definition to the previous one on x86 target
Commit 9bcea2d causes a dependency problem with some out-of-tree packages which expect "DEPENDS:=+kmod-pcspkr". To fix this problem, this commit restores a dependency definition to the previous one on x86 target. Signed-off-by: Yanase Yuki <[email protected]> (cherry picked from commit 8b1216f)
Configuration menu - View commit details
-
Copy full SHA for e0a2e6f - Browse repository at this point
Copy the full SHA e0a2e6fView commit details -
beep: change git repository to fix CVE-2018-0492 and CVE-2018-1000532
1. Changed Git repository, which is used for Fedora packaging johnath/beep#11 (comment) Fixed CVEs: CVE-2018-0492 - https://nvd.nist.gov/vuln/detail/CVE-2018-0492 CVE-2018-1000532 - https://nvd.nist.gov/vuln/detail/CVE-2018-1000532 2. Fixed SPDX License Identifier 3. Add patch to comment out -D_FORTIFY_SOURCE Otherwise, it can not be built by default. Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit 6488eaf)
Configuration menu - View commit details
-
Copy full SHA for 685893c - Browse repository at this point
Copy the full SHA 685893cView commit details -
openldap: drop use of HTTP in favor of HTTPS
Signed-off-by: W. Michael Petullo <[email protected]> (cherry picked from commit bab2f02)
Configuration menu - View commit details
-
Copy full SHA for f08dae8 - Browse repository at this point
Copy the full SHA f08dae8View commit details
Commits on Jun 22, 2022
-
luajit: fix build on macos (ldconfig issue)
fix ldconfig build issue. This patch is a backport from upstream: LuaJIT/LuaJIT@18c9cf7 Signed-off-by: Sergey V. Lobanov <[email protected]> (cherry picked from commit 42c4d25)
Configuration menu - View commit details
-
Copy full SHA for 998fac7 - Browse repository at this point
Copy the full SHA 998fac7View commit details
Commits on Jun 23, 2022
-
luajit: backport softfloat ppc support
Signed-off-by: Rosen Penev <[email protected]> (cherry picked from commit 24c0007)
Configuration menu - View commit details
-
Copy full SHA for c6a780c - Browse repository at this point
Copy the full SHA c6a780cView commit details -
Signed-off-by: Michal Vasilek <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 90ff2ed - Browse repository at this point
Copy the full SHA 90ff2edView commit details
Commits on Jun 24, 2022
-
bind: update to version 9.16.30
Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for f172d67 - Browse repository at this point
Copy the full SHA f172d67View commit details -
lxc: export systemd cgroups after install
otherwise, a user would have to either manually run /etc/init.d/lxc-auto boot or reboot the system to start using lxc. originally committed in 2cde10b reverted in 039912d Signed-off-by: Michal Vasilek <[email protected]> (cherry picked from commit 7da7356)
Configuration menu - View commit details
-
Copy full SHA for 70b0ff8 - Browse repository at this point
Copy the full SHA 70b0ff8View commit details -
Revert "lxc: export systemd cgroups after install"
The postinst script is sourced during image build, which causes the follow failure: /home/stijn/Development/OpenWrt/openwrt/build_dir/target-x86_64_musl/root-x86/etc/init.d/lxc-auto: line 3: /lib/functions.sh: No such file or directory postinst script ./usr/lib/opkg/info/lxc-auto.postinst has failed with exit code 1 Sourcing /lib/functions.sh is not needed, as /etc/rc.common does so already. Unfortunately removing that line from the init script is not enough to fix the problem. The postinst script should also check IPKG_INSTROOT. As these two changes are unrelated, they should go in separate commits, and the solution to the image build problem is to revert the commit that introduced the breakage. This reverts commit 2cde10b. Signed-off-by: Stijn Tintel <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for cf0d586 - Browse repository at this point
Copy the full SHA cf0d586View commit details
Commits on Jun 25, 2022
-
syslog-ng: update to version 3.37.1
- Changelog: https://github.com/syslog-ng/syslog-ng/releases/tag/syslog-ng-3.37.1 - Bump config version Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit ae7aefe)
Configuration menu - View commit details
-
Copy full SHA for 7d08804 - Browse repository at this point
Copy the full SHA 7d08804View commit details
Commits on Jun 30, 2022
-
openwisp-monitoring: added 0.1.1
Signed-off-by: Federico Capoano <[email protected]> (cherry picked from commit 0419a79)
Configuration menu - View commit details
-
Copy full SHA for f645f5b - Browse repository at this point
Copy the full SHA f645f5bView commit details
Commits on Jul 1, 2022
-
Merge pull request #18829 from nemesisdesign/openwrt-19.07
[19.07] openwisp-config: update to 1.0.1
Configuration menu - View commit details
-
Copy full SHA for cdc90be - Browse repository at this point
Copy the full SHA cdc90beView commit details -
Update haveged to version 1.9.18 Signed-off-by: Hannu Nyman <[email protected]> (cherry picked from commit 8579494)
Configuration menu - View commit details
-
Copy full SHA for 5cc4212 - Browse repository at this point
Copy the full SHA 5cc4212View commit details -
openwisp-monitoring: added 0.1.1
Signed-off-by: Federico Capoano <[email protected]> (cherry picked from commit 0419a79)
Configuration menu - View commit details
-
Copy full SHA for 3ecffb6 - Browse repository at this point
Copy the full SHA 3ecffb6View commit details
Commits on Jul 4, 2022
-
Merge pull request #18846 from nemesisdesign/monitoring-openwrt-19
[19.07] openwisp-monitoring: added 0.1.1
Configuration menu - View commit details
-
Copy full SHA for 742ef3c - Browse repository at this point
Copy the full SHA 742ef3cView commit details
Commits on Jul 13, 2022
-
libarchive: fix ext2fs build race error condition
libarchive looks for ext2fs headers during configure, and if it finds them it will expect to find them during compile, or on the rare occasion when they aren't it will fail: libarchive/archive_entry.c:59:55: fatal error: ext2fs/ext2_fs.h: No such file or directory As we just need headers for some type constants, let's re-use headers from tools/e2fsprogs package which are always available. Reported-by: Adam Dov <[email protected]> Suggested-by: Paul Eggleton <[email protected]> References: https://git.yoctoproject.org/poky/commit/?id=f0b9a7cf9f80be1917e45266fa201f464a28c1e5 Signed-off-by: Petr Štetiar <[email protected]> (cherry picked from commit 797945d)
Configuration menu - View commit details
-
Copy full SHA for 0bab8ae - Browse repository at this point
Copy the full SHA 0bab8aeView commit details
Commits on Jul 17, 2022
-
cdn.postfix.johnriley.me serves a certificate for a different domain name. Signed-off-by: Michal Vasilek <[email protected]> (cherry picked from commit d4feef9)
Configuration menu - View commit details
-
Copy full SHA for c14c054 - Browse repository at this point
Copy the full SHA c14c054View commit details
Commits on Jul 18, 2022
-
cyrus-sasl: install pkg-config file and fine-tune installed files
Installing the .pc files helps other programs to detect the presence of libsasl2. While at, reduce the glob pattern a little bit to not include unneeded symlinks. Signed-off-by: Michael Heimpold <[email protected]> (cherry picked from commit c9ce769)
Configuration menu - View commit details
-
Copy full SHA for 5a399f1 - Browse repository at this point
Copy the full SHA 5a399f1View commit details
Commits on Aug 2, 2022
-
bind: update to version 9.16.31
Release notes: https://downloads.isc.org/isc/bind9/9.16.31/doc/arm/html/notes.html Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e2ce67c - Browse repository at this point
Copy the full SHA e2ce67cView commit details
Commits on Aug 6, 2022
-
luajit: patch: PPC/e500 SPE: use soft float instead of failing
makes LuaJit builds for mpc85xx targets with SPE ISA extension enabled possible Quoting inner commit message: This allows building LuaJit for systems with Power ISA SPE extension[^1] support by using soft float on LuaJit side. While e500 CPU cores support SPE instruction set extension allowing them to perform floating point arithmetic natively, this isn't required. They can function with software floating point to integer arithmetic translation as well, just like FPU-less PowerPC CPUs without SPE support. Therefore I see no need to prevent them from running LuaJit explicitly. [^1]: https://www.nxp.com/docs/en/reference-manual/SPEPEM.pdf Signed-off-by: Pali Rohár <[email protected]> Signed-off-by: Šimon Bořek <[email protected]> (cherry picked from commit a4a484f)
Configuration menu - View commit details
-
Copy full SHA for f81c55e - Browse repository at this point
Copy the full SHA f81c55eView commit details
Commits on Aug 10, 2022
-
cgi-io: update to latest Git HEAD
901b0f0 main: fix two one-byte overreads in header_value() Signed-off-by: Jo-Philipp Wich <[email protected]> (cherry picked from commit 443c6c1)
Configuration menu - View commit details
-
Copy full SHA for ca195cc - Browse repository at this point
Copy the full SHA ca195ccView commit details
Commits on Aug 24, 2022
-
vim: variants conflict with each other
This adds conflicts between the variants, because they provide the same files, and it should not be possible to install them side by side. Otherwise, it might happen that half files would be from one variant and the other half from the other. Also, adds provides as if you request to install ``vim`` and ``vim-full``, then the request could be satisfied even they collide, because ``vim-full`` provides ``vim`` package. Signed-off-by: Karel Kočí <[email protected]> Signed-off-by: Josef Schlehofer <[email protected]> [add commit message] (cherry picked from commit 46c0584)
Configuration menu - View commit details
-
Copy full SHA for e2885b9 - Browse repository at this point
Copy the full SHA e2885b9View commit details
Commits on Sep 7, 2022
-
* refresh patches Signed-off-by: Michal Vasilek <[email protected]> (cherry picked from commit 81e0fcb)
Configuration menu - View commit details
-
Copy full SHA for 7ac5407 - Browse repository at this point
Copy the full SHA 7ac5407View commit details -
Signed-off-by: Jan Hak <[email protected]> (cherry picked from commit 7aee9d1)
Configuration menu - View commit details
-
Copy full SHA for 1e66309 - Browse repository at this point
Copy the full SHA 1e66309View commit details -
Signed-off-by: Jan Hák <[email protected]> (cherry picked from commit 2d2f1e5)
Configuration menu - View commit details
-
Copy full SHA for 346b90d - Browse repository at this point
Copy the full SHA 346b90dView commit details -
Signed-off-by: Jan Hák <[email protected]> (cherry picked from commit 175087b)
Configuration menu - View commit details
-
Copy full SHA for 6d9ac1d - Browse repository at this point
Copy the full SHA 6d9ac1dView commit details -
Signed-off-by: Jan Hák <[email protected]> (cherry picked from commit 60a80b3)
Configuration menu - View commit details
-
Copy full SHA for 3276368 - Browse repository at this point
Copy the full SHA 3276368View commit details -
Signed-off-by: Jan Hák <[email protected]> (cherry picked from commit 2a56e47)
Configuration menu - View commit details
-
Copy full SHA for 6b3df86 - Browse repository at this point
Copy the full SHA 6b3df86View commit details -
Signed-off-by: Jan Hák <[email protected]> (cherry picked from commit 4de863e)
Configuration menu - View commit details
-
Copy full SHA for 5d26dbb - Browse repository at this point
Copy the full SHA 5d26dbbView commit details -
Signed-off-by: Jan Hák <[email protected]> (cherry picked from commit f30da8c)
Configuration menu - View commit details
-
Copy full SHA for 1a22460 - Browse repository at this point
Copy the full SHA 1a22460View commit details -
libedit: update to version 20210419-3.1
Signed-off-by: Jan Hak <[email protected]> (cherry picked from commit b0870d7)
Configuration menu - View commit details
-
Copy full SHA for 5ad19e5 - Browse repository at this point
Copy the full SHA 5ad19e5View commit details -
libedit: update to version 20210522-3.1
Signed-off-by: Jan Hak <[email protected]> (cherry picked from commit 0b8f3ea)
Configuration menu - View commit details
-
Copy full SHA for b4016af - Browse repository at this point
Copy the full SHA b4016afView commit details
Commits on Sep 8, 2022
-
syslog-ng: update to version 3.38.1
- Release notes: https://github.com/syslog-ng/syslog-ng/releases/tag/syslog-ng-3.38.1 - Update the configuration file to use version 4.0 as mentioned in the release notes to try the latest changes Fixes: CVE-2022-38725 Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit 34b7af9)
Configuration menu - View commit details
-
Copy full SHA for 850d2ca - Browse repository at this point
Copy the full SHA 850d2caView commit details
Commits on Sep 25, 2022
-
bind: update to version 9.16.33
Changelog: https://downloads.isc.org/isc/bind9/9.16.33/RELEASE-NOTES-bind-9.16.33.html Fixes: - multiple CVEs (CVE-2022-2795, CVE-2022-3080, CVE-2022-38177, CVE-2022-38178) Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 72b0fb2 - Browse repository at this point
Copy the full SHA 72b0fb2View commit details
Commits on Sep 26, 2022
-
nss: disable PKG_BUILD_PARALLEL
This is similar to commit f303e87 ("nss: update to 3.67") as there is something wrong with NSS build system and otherwise this package fails to compile. Let's compile it single threaded. Signed-off-by: Josef Schlehofer <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1eeac01 - Browse repository at this point
Copy the full SHA 1eeac01View commit details
Commits on Oct 25, 2022
-
libwebsockets: full variant provides OpenSSL
For some time, it is not possible to install ttyd and mosquitto-ssl at the same time, so let's solve it that libwebsockets-full provides libwebsockets-openssl. This allows to install ttyd and mosquitto at the same time. Also, we need to add conflict, because we should not have installed libwebsockets-openssl and libwebsockets-full at the same time as they provides the same files. Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit 77e682a)
Configuration menu - View commit details
-
Copy full SHA for 13a3a41 - Browse repository at this point
Copy the full SHA 13a3a41View commit details -
libwebsockets: OpenSSL and mbedTLS variants should conflict
They provide the same files, but they don't conflict to each other, this means that users can install them side by side. Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit 676c5c7)
Configuration menu - View commit details
-
Copy full SHA for 7b1b79c - Browse repository at this point
Copy the full SHA 7b1b79cView commit details
Commits on Oct 27, 2022
-
libwebsockets: fix recursive dependency
While running `make menuconfig`, it was discovered then there is a recursive dependency like this: tmp/.config-package.in:59138:error: recursive dependency detected! tmp/.config-package.in:59138: symbol PACKAGE_libwebsockets-openssl is selected by PACKAGE_libwebsockets-mbedtls tmp/.config-package.in:59122: symbol PACKAGE_libwebsockets-mbedtls depends on PACKAGE_libwebsockets-openssl It is not possible with the recently added conflicts that two packages (OpenSSL and full variant, which uses OpenSSL as well), which are almost the same provides the same named package libwebsockets as their conflict - Mbed TLS. Fixes: 676c5c7 ("libwebsockets: OpenSSL and mbedTLS variants should conflict") Signed-off-by: Josef Schlehofer <[email protected]> (cherry picked from commit a4e8cbb)
Configuration menu - View commit details
-
Copy full SHA for e6ecebb - Browse repository at this point
Copy the full SHA e6ecebbView commit details
Commits on Jan 29, 2023
-
Fixes multiple CVEs. Upstream changelog is https://ftp.isc.org/isc/bind9/9.16.37/CHANGES CVEs fixed: CVE-2022-3924: Fix serve-stale crash when recursive clients soft quota is reached. CVE-2022-3736: Handle RRSIG lookups when serve-stale is active. CVE-2022-3094: An UPDATE message flood could cause named to exhaust all available memory. This flaw was addressed by adding a new "update-quota" statement that controls the number of simultaneous UPDATE messages that can be processed or forwarded. The default is 100. A stats counter has been added to record events when the update quota is exceeded, and the XML and JSON statistics version numbers have been updated. Signed-off-by: Noah Meyerhans <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 35667c5 - Browse repository at this point
Copy the full SHA 35667c5View commit details
Commits on Mar 16, 2023
-
python3: Update to 3.7.16, refresh patches
Includes fixes: * 3.7.14: * CVE-2020-10735: Prevent DoS by large int<->str conversions * CVE-2021-28861: http.server: Open Redirection if the URL path starts with // * 3.7.16: * CVE-2022-45061: Slow IDNA decoding with large strings * CVE-2022-37454: Buffer overflow in the _sha3 module * CVE-2015-20107: mailcap.findmatch: document shell command Injection danger in filename parameter Signed-off-by: Jeffery To <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 509f4e2 - Browse repository at this point
Copy the full SHA 509f4e2View commit details
Commits on Mar 30, 2023
-
Merge pull request #20676 from jefferyto/python-3.7.16-openwrt-19.07
[openwrt-19.07] python3: Update to 3.7.16, refresh patches
Configuration menu - View commit details
-
Copy full SHA for 39ddffe - Browse repository at this point
Copy the full SHA 39ddffeView commit details
Commits on Jun 12, 2023
-
This includes an updated patch for pip, as the bundled pip was also updated with this release. Signed-off-by: Jeffery To <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for f7a8607 - Browse repository at this point
Copy the full SHA f7a8607View commit details
Commits on Jun 13, 2023
-
Merge pull request #21348 from jefferyto/python-3.7.17-openwrt-19.07
[openwrt-19.07] python3: Update to 3.7.17
Configuration menu - View commit details
-
Copy full SHA for 6df6880 - Browse repository at this point
Copy the full SHA 6df6880View commit details