Commit graph

2 commits

Author SHA1 Message Date
Patrick J Volkerding
c3e723e555 Mon Jan 22 20:57:12 UTC 2024
l/SDL2_mixer-2.8.0-x86_64-1.txz:  Upgraded.
l/glib2-2.78.4-x86_64-1.txz:  Upgraded.
l/mozilla-nss-3.97-x86_64-1.txz:  Upgraded.
n/postfix-3.8.5-x86_64-1.txz:  Upgraded.
  Security (inbound SMTP smuggling): with "smtpd_forbid_bare_newline
  = normalize" (default "no" for Postfix < 3.9), the Postfix
  SMTP server requires the standard End-of-DATA sequence
  <CR><LF>.<CR><LF>, and otherwise allows command or message
  content lines ending in the non-standard <LF>, processing
  them as if the client sent the standard <CR><LF>.
  The alternative setting, "smtpd_forbid_bare_newline = reject"
  will reject any command or message that contains a bare
  <LF>, and is more likely to cause problems with legitimate
  clients.
  For backwards compatibility, local clients are excluded by
  default with "smtpd_forbid_bare_newline_exclusions =
  $mynetworks".
  For more information, see:
    https://www.postfix.org/smtp-smuggling.html
  (* Security fix *)
2024-01-22 22:30:21 +01:00
Patrick J Volkerding
2dbea3b2b0 Sat Aug 20 20:04:15 UTC 2022
ap/vim-9.0.0231-x86_64-1.txz:  Upgraded.
  Fix use after free.
  Thanks to marav for the heads-up.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2889
  (* Security fix *)
l/SDL2-2.24.0-x86_64-1.txz:  Upgraded.
l/SDL2_image-2.6.2-x86_64-1.txz:  Upgraded.
l/SDL2_mixer-2.6.2-x86_64-1.txz:  Upgraded.
l/SDL2_net-2.2.0-x86_64-1.txz:  Upgraded.
l/SDL2_ttf-2.20.1-x86_64-1.txz:  Upgraded.
l/gmime-3.2.13-x86_64-1.txz:  Upgraded.
l/gtk+3-3.24.34-x86_64-1.txz:  Upgraded.
l/gtk4-4.6.7-x86_64-1.txz:  Upgraded.
l/libxslt-1.1.36-x86_64-1.txz:  Upgraded.
x/ibus-libpinyin-1.13.0-x86_64-1.txz:  Upgraded.
xap/vim-gvim-9.0.0231-x86_64-1.txz:  Upgraded.
2022-08-21 07:00:13 +02:00