Age | Commit message (Collapse) | Author | Files | Lines |
|
Diff: https://github.com/opentofu/opentofu/compare/v1.6.1...v1.6.2
Changelog: https://github.com/opentofu/opentofu/blob/v1.6.2/CHANGELOG.md
(cherry picked from commit 55af7e2300a0b460a9703d9cb159a1c79b027794)
|
|
[Backport release-23.11] chromium: 124.0.6367.91 -> 124.0.6367.118, lower version range of `--ozone-platform-hint` patch
|
|
[Backport release-23.11] {tor,mullvad}-browser: fix font config patch
|
|
[Backport release-23.11] deltachat-desktop: 1.42.2 -> 1.44.0
|
|
[Backport release-23.11] signal-desktop(aarch64): 7.3.0 -> 7.5.1
|
|
Ref: fb10ea41b2a080cb4ecac34aa12cf056d8d3f90e
We had to apply this patch from M125 to M124 because at the time,
chromium hasn't backported this to M124 yet.
Until now!
Or at least somewhat.
124.0.6367.118 shipped and has an equivalent patch now, which means that
this patch is no longer needed.
(Ignoring the fact that it no longer applies because of this anyway)
At least on chromium.
The thing is, ungoogled-chromium hasn't caught up with chromium yet,
meaning it is still on < .118 and thus still needs that patch.
(cherry picked from commit 85dfe83a86658f3fba80c050a774195f08fb378d)
|
|
https://chromereleases.googleblog.com/2024/04/stable-channel-update-for-desktop_30.html
This update includes 2 security fixes.
CVEs:
CVE-2024-4331 CVE-2024-4368
(cherry picked from commit b71eeb5b2d7a3c7aed0cb089bfad25b23cc008fc)
|
|
[Backport release-23.11] git-hound: 1.4 -> 1.7.2 unbreak
|
|
(cherry picked from commit 67b3f5964f964c63841e5ec8a85efc75a1e1dc58)
|
|
(cherry picked from commit dd647021251a01a02e5bfe1af8465eab4f5423fb)
|
|
The new substituteInPlace commands will fail when they don't apply,
which will avoid some issues.
(cherry picked from commit f00481192ddbf75ada1ee02b324485104d1280c3)
|
|
(cherry picked from commit c69a216eec2f8f3ae1ddbaf051666d7eff424440)
|
|
[23.11] gitea: backport CSP patch in markdown renderer
|
|
https://www.mozilla.org/en-US/firefox/125.0.3/releasenotes/
(cherry picked from commit cade5ad06a0d926dcd5ac37067dfff99dbc7dfdd)
|
|
https://www.mozilla.org/en-US/firefox/125.0.3/releasenotes/
(cherry picked from commit 0a694771751e1d37fa4cdef85ae550aa17104eb4)
|
|
risicle/ris-sngrep-CVE-2024-3119-CVE-2024-3120-r23.11
[23.11] sngrep: add patch for CVE-2024-3119 & CVE-2024-3120
|
|
[Backport release-23.11] Discord updates
|
|
[Backport release-23.11] palemoon-bin: 33.0.2 -> 33.1.0
|
|
(cherry picked from commit 89e1ebb1e06b6fd415397f9cd76b9ff38488e511)
|
|
(cherry picked from commit 5c88cde0ba69605ce17fb99fc80b21d12c812eda)
|
|
(cherry picked from commit e2a67424fdbeb80a0f190c7cd8476c38f7bb4c42)
|
|
(cherry picked from commit 2ebc5bd3f59f64f5d0ffd21767d716e069a07ac9)
|
|
(cherry picked from commit ce38e7a4afebcf07cc6fffedad45e7f156f9d787)
|
|
(cherry picked from commit 9511e7af23bbf4ad7f57f5cc5015232b007bd9b1)
|
|
(cherry picked from commit 44658c14579e127aaa3b58c240028ad31e51713d)
|
|
Note that there's currently no release blog entry
for .91 specifically.
https://chromereleases.googleblog.com/2024/04/stable-channel-update-for-desktop_24.html
This update includes 4 security fixes.
CVEs:
CVE-2024-4058 CVE-2024-4059 CVE-2024-4060
(cherry picked from commit 48f25ebe728c551bfb3bbafb237a28ecfda67bdc)
|
|
Note that there's currently no release blog entry
for .91 specifically.
https://chromereleases.googleblog.com/2024/04/stable-channel-update-for-desktop_24.html
This update includes 4 security fixes.
CVEs:
CVE-2024-4058 CVE-2024-4059 CVE-2024-4060
(cherry picked from commit 5072c7bb91802e6c0b8492a01b757771b161071d)
|
|
(cherry picked from commit 95c1ffd998b90138a4910076d22e03aa6d69d52c)
|
|
(cherry picked from commit dd7a10fac877d605b1cc91d3f3e94471d180622a)
|
|
[23.11] octoprint: apply patch for CVE-2024-28237
|
|
...into release-23.11
|
|
|
|
The 1.10.0 upgrade from #306861 seems to be too big to
be safely backported.
I also did not backport CVE-2024-23637: it is split across
a series of patches and impacts quite sensitive parts of OctoPrint.
I am not feeling confident enough to backport it and exploiting the issue
requires an admin level access.
|
|
(cherry picked from commit 1af4a76beaf7403f816d42fc8ec85614be54d41c)
|
|
(cherry picked from commit a7e26c5949710061c5ee1cb61829b254f432739c)
|
|
(cherry picked from commit ae8abf36cfcdad2ccc3bf3e9c4ca7089021c51e7)
|
|
(cherry picked from commit c21d0c384484712202bb9f5a69858739f31742f5)
|
|
[Backport release-23.11] brscan5: 1.3.0-0 -> 1.3.1-0
|
|
vscode-extensions.davidanson.vscode-markdownlint: 0.54.0 -> 0.55.0
|
|
[23.11] brave: 1.64.113 -> 1.65.122
|
|
(cherry picked from commit 58e73a098b6dcc2688c3b93aa40646262f911efa)
|
|
[Backport release-23.11] suricata: 7.0.3 -> 7.0.4
|
|
[Backport release-23.11] gitlab: 16.10.3 -> 16.10.4
|
|
https://community.brave.com/t/release-channel-1-65-122/545456
|
|
https://github.com/element-hq/element-desktop/releases/tag/v1.11.65
(cherry picked from commit 3164a8a3879c5cca1ba243d4b17766ffd8868b2f)
|
|
https://github.com/signalapp/Signal-Desktop/releases/tag/v7.3.1
https://github.com/signalapp/Signal-Desktop/releases/tag/v7.4.0
https://github.com/signalapp/Signal-Desktop/releases/tag/v7.5.0
https://github.com/signalapp/Signal-Desktop/releases/tag/v7.5.1
(cherry picked from commit 8df8f916b8801a6dbe82f3c9a41db82f66cd231a)
|
|
[23.11] signal-desktop: 7.4.0 -> 7.5.1; signal-desktop-beta: 7.3.0-beta.1 -> 7.6.0-beta.3
|
|
https://gitlab.com/gitlab-org/container-registry/-/blob/v3.93.0-gitlab/CHANGELOG.md
(cherry picked from commit d309651f6a1d95f540e7f4c3f8b69d059832fcc8)
|
|
https://gitlab.com/gitlab-org/gitlab/-/blob/v16.10.4-ee/CHANGELOG.md
Fixes CVE-2024-1347
Fixes CVE-2024-2434
Fixes CVE-2024-2829
Fixes CVE-2024-4006
Fixes CVE-2024-4024
(cherry picked from commit 15ac60c03ba2bca4744a70aa038a82c94e5a578e)
|
|
|