about summary refs log tree commit diff
AgeCommit message (Collapse)AuthorFilesLines
2024-06-07Merge pull request #317916 from NixOS/backport-317830-to-release-23.11Pol Dellaiera3-16/+8
[Backport release-23.11] php: June 2024 Bumps - Security update
2024-06-07php83: 8.3.7 -> 8.3.8Pol Dellaiera1-2/+2
diff: https://github.com/php/php-src/compare/php-8.3.7..php-8.3.8 changelog: https://github.com/php/php-src/blob/PHP-8.3.8/NEWS Fix: CVE-2024-4577, CVE-2024-5458, CVE-2024-2408, CVE-2024-5585 (cherry picked from commit 3b58ac5892203e264d7d66bbf866615b90762cf2)
2024-06-07php82: 8.2.19 -> 8.2.20Pol Dellaiera1-2/+2
diff: https://github.com/php/php-src/compare/php-8.2.19..php-8.2.20 changelog: https://github.com/php/php-src/blob/PHP-8.2.20/NEWS Fix: CVE-2024-4577, CVE-2024-5458, CVE-2024-2408, CVE-2024-5585 (cherry picked from commit 68b4e2b8112c8d1dc3b7a0ed5942dead05a4b157)
2024-06-07php81: 8.1.28 -> 8.1.29Pol Dellaiera1-12/+4
diff: https://github.com/php/php-src/compare/php-8.1.28..php-8.1.29 changelog: https://github.com/php/php-src/blob/PHP-8.1.29/NEWS Fix: CVE-2024-4577, CVE-2024-5458, CVE-2024-2408, CVE-2024-5585 (cherry picked from commit f7dea8a84a7188e5e5d4f7c8e6fa440480e5ead0)
2024-06-06Merge pull request #317712 from NixOS/backport-313207-to-release-23.11Pol Dellaiera1-2/+2
[Backport release-23.11] slack: 4.38.121 -> 4.38.125
2024-06-06slack: 4.38.121 -> 4.38.125Ashish SHUKLA1-2/+2
(cherry picked from commit d3e608716f7660d7a9d54445d05c7b63e1290031)
2024-06-05Merge pull request #317327 from NixOS/backport-283621-to-release-23.11Peder Bergebakken Sundt1-0/+33
[Backport release-23.11] payloadsallthethings: init at 3.0-unstable-2024-01-21
2024-06-05Merge pull request #316739 from NixOS/backport-316581-to-release-23.11Robert Schütz6-40/+41
[Backport release-23.11] nextcloud27: 27.1.9 -> 27.1.10
2024-06-05Merge pull request #317471 from NixOS/backport-317228-to-release-23.11Matthias Beyer1-0/+2
[Backport release-23.11] meli: add gpgme to runtime lib path
2024-06-05meli: add gpgme to runtime lib patheuxane1-0/+2
Meli looks for libgpgme at runtime to handle message encryption and decryption. This patch solves the error: Decryption failed: libgpgme.so: cannot open shared object file: No such file or directory GitHub: closes https://github.com/NixOS/nixpkgs/issues/174767 (cherry picked from commit 195fa9872c57e69cf5cfd9f6656843deacaeb1b6)
2024-06-05doc: fix make-disk-image.nix exampleAlyssa Ross1-4/+2
(cherry picked from commit 1a297df41b2e7c5ad96327298749457cba817afa)
2024-06-05payloadsallthethings: init at 3.0-unstable-2024-01-21shard71-0/+33
(cherry picked from commit 8adaa32ad38d2c7239225c4a56ad3944234be4d1)
2024-06-04Merge pull request #317191 from Ma27/grafana-2311Maximilian Bosch1-4/+4
[23.11] grafana: 10.2.6 -> 10.2.7
2024-06-04grafana: 10.2.6 -> 10.2.7Maximilian Bosch1-4/+4
ChangeLog: https://github.com/grafana/grafana/releases/tag/v10.2.7 Had to wait for a moment since this requires Go 1.21.10 at least.
2024-06-03Merge pull request #315929 from NixOS/backport-315550-to-release-23.11Nick Cao1-3/+3
[Backport release-23.11] netbird: 0.27.7 -> 0.27.10
2024-06-02nixos/nextcloud-notify_push: use `Type=notify`Eric Wolf1-1/+2
This prevents the post start script from running before necessary sockets have been created. It also prevents an unused shell from being kept around by using `exec` to make `notify_push` the main process.
2024-06-02nextcloud-notify_push: 0.6.11 -> 0.6.12Robert Schütz1-4/+4
Diff: https://github.com/nextcloud/notify_push/compare/v0.6.11...v0.6.12 Changelog: https://github.com/nextcloud/notify_push/releases/tag/v0.6.12 (cherry picked from commit 3039b5ddef1fd4dd18deabe799529417d8fbb018)
2024-06-02nextcloudPackages: updateRobert Schütz3-33/+33
(cherry picked from commit 80c129e782f918ec8bac5625b539f4bc7cac5504)
2024-06-02nextcloud27: 27.1.9 -> 27.1.10Robert Schütz1-2/+2
Changelog: https://nextcloud.com/changelog/#27-1-10 (cherry picked from commit 28b2e9ac03971f0e90c11871657d6a45428e9119)
2024-06-02Merge pull request #316533 from NixOS/backport-313971-to-release-23.11Pol Dellaiera1-2/+2
[Backport release-23.11] signal-desktop: 7.9.0 -> 7.10.0
2024-06-02Merge pull request #316681 from NixOS/backport-316343-to-release-23.11Atemu1-2/+2
[Backport release-23.11] microcodeIntel: 20240514 -> 20240531
2024-06-02microcodeIntel: 20240514 -> 20240531Martin Weinelt1-2/+2
https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20240531 (cherry picked from commit 44bfda1c46e68f5d180dacca6ab7bfc1cd7bd3cc)
2024-06-02Merge pull request #316632 from NixOS/backport-316611-to-release-23.11Nick Cao1-2/+2
[Backport release-23.11] google-chrome: 125.0.6422.112 -> 125.0.6422.141
2024-06-02google-chrome: 125.0.6422.112 -> 125.0.6422.141Clemens Fruhwirth1-2/+2
(cherry picked from commit 30b6cd6e1d8282002d0dce02e63dc6f701debd5a)
2024-06-01signal-desktop: 7.9.0 -> 7.10.0R. Ryantm1-2/+2
(cherry picked from commit e836d5a4be6155dc8fe45abca7c5617361cc522b)
2024-06-01Merge pull request #312904 from NixOS/backport-312727-to-release-23.11éclairevoyant1-2/+2
[Backport release-23.11] signal-desktop: 7.8.0 -> 7.9.0
2024-06-01Merge pull request #316375 from NixOS/backport-315683-to-release-23.11Weijia Wang1-6/+6
[Backport release-23.11] microsoft-edge: 125.0.2535.51 -> 125.0.2535.67
2024-06-01Merge pull request #316312 from NixOS/backport-316226-to-release-23.11Emily1-10/+10
[Backport release-23.11] chromedriver: 125.0.6422.78 -> 125.0.6422.141, {ungoogled-,}chromium: 125.0.6422.112 -> 125.0.6422.141
2024-06-01Merge pull request #316188 from NixOS/backport-314027-to-release-23.11Nick Cao1-5/+5
[Backport release-23.11] element-{desktop,web}: 1.11.66 -> 1.11.67
2024-06-01Merge pull request #316298 from gaykitty/stargazer-1.1.1Thomas Gerbet1-3/+3
startgazer: 1.1.0 -> 1.1.1
2024-06-01microsoft-edge: 125.0.2535.51 -> 125.0.2535.67R. Ryantm1-6/+6
(cherry picked from commit 0cb9e9f5d55fc15bfbd7ef06902fe11fdcb7e3a3)
2024-06-01ungoogled-chromium: 125.0.6422.112-1 -> 125.0.6422.141-1networkException1-4/+4
https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_30.html This update includes 11 security fixes. CVEs: CVE-2024-5493 CVE-2024-5494 CVE-2024-5495 CVE-2024-5496 CVE-2024-5497 CVE-2024-5498 CVE-2024-5499 (cherry picked from commit ffaf07420040a4413df8165cd4f39ee48fef35d1)
2024-06-01chromium: 125.0.6422.112 -> 125.0.6422.141emilylange1-2/+2
https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_30.html This update includes 11 security fixes. CVEs: CVE-2024-5493 CVE-2024-5494 CVE-2024-5495 CVE-2024-5496 CVE-2024-5497 CVE-2024-5498 CVE-2024-5499 (cherry picked from commit a329a6cdb65cec65bdaa68f90d0bbd4d71e72e0b)
2024-06-01chromedriver: 125.0.6422.78 -> 125.0.6422.141emilylange1-4/+4
(cherry picked from commit 6a88c78a443a23a97e9f9c41fb710887f291bf9a)
2024-05-31startgazer: 1.1.0 -> 1.1.1gaykitty1-3/+3
2024-06-01Merge pull request #316119 from LeSuisse/nginx-1.25.5-http3-cveRyan Lahfa2-2/+36
[23.11] nginxMainline: 1.25.4 -> 1.25.5, nginxQuic: apply patches for CVE-2024-32760, CVE-2024-31079, CVE-2024-35200 and CVE-2024-34161
2024-05-31Merge pull request #289988 from NixOS/backport-280948-to-release-23.11Nick Cao1-2/+2
[Backport release-23.11] python311Packages.hg-git: 1.0.3 -> 1.1.0
2024-05-31element-{desktop,web}: 1.11.66 -> 1.11.67Sandro Jäckel1-5/+5
Changelog: https://github.com/element-hq/element-web/releases/tag/v1.11.67 (cherry picked from commit 70a5dd01fe53341daa4451fc74eb617d351d5718)
2024-05-31Merge pull request #315992 from NixOS/backport-315930-to-release-23.11K9001-4/+4
[Backport release-23.11] Kernel updates for 2024-05-30
2024-05-31Merge pull request #315906 from NixOS/backport-296536-to-release-23.11Aleksana1-2/+2
[Backport release-23.11] vips: 8.15.1 -> 8.15.2
2024-05-31Merge pull request #315883 from NixOS/backport-315707-to-release-23.11Thomas Gerbet1-3/+3
[Backport release-23.11] palemoon-bin: 33.1.0 -> 33.1.1
2024-05-31nginxQuic: apply patches for CVE-2024-32760, CVE-2024-31079, CVE-2024-35200 ↵Thomas Gerbet1-0/+34
and CVE-2024-34161
2024-05-31nginxMainline: 1.25.4 -> 1.25.5Thomas Gerbet1-2/+2
Changes: ``` Changes with nginx 1.25.5 16 Apr 2024 *) Feature: virtual servers in the stream module. *) Feature: the ngx_stream_pass_module. *) Feature: the "deferred", "accept_filter", and "setfib" parameters of the "listen" directive in the stream module. *) Feature: cache line size detection for some architectures. Thanks to Piotr Sikora. *) Feature: support for Homebrew on Apple Silicon. Thanks to Piotr Sikora. *) Bugfix: Windows cross-compilation bugfixes and improvements. Thanks to Piotr Sikora. *) Bugfix: unexpected connection closure while using 0-RTT in QUIC. Thanks to Vladimir Khomutov. ```
2024-05-30Merge pull request #314936 from LeSuisse/cve-bin-tool-path-traversal-tarMaximilian Bosch1-0/+13
[23.11] cve-bin-tool: apply patch to avoid a patch traversal when opening a tar file
2024-05-30linux_6_8: 6.8.11 -> 6.8.12K9001-2/+2
(cherry picked from commit 97c87160f30e6ab0fb998715df672264a1f93080)
2024-05-30linux_6_9: 6.9.2 -> 6.9.3K9001-2/+2
(cherry picked from commit f53fb88ea154d2f54f558cde6d1d1dd61cc47d7e)
2024-05-30Merge pull request #315952 from erictapen/23.11/mastodonKerstin2-14/+25
[Backport release-23.11] mastodon: 4.2.8 -> 4.2.9
2024-05-30mastodon: 4.2.8 -> 4.2.9Kerstin Humm2-14/+25
(cherry picked from commit b5fe3210557b634a521e81357ae2af9637b09c46)
2024-05-30netbird: 0.27.7 -> 0.27.10R. Ryantm1-3/+3
(cherry picked from commit b769f587e137f3abcd60dc23d8d6a6fda2f1e60c)
2024-05-30vips: 8.15.1 -> 8.15.2R. Ryantm1-2/+2
(cherry picked from commit e588cd4ec273d4081bb2d36d55740668b1677902)