Commit graph

360 commits

Author SHA1 Message Date
Patrick J Volkerding
750befe72f Mon Feb 27 20:41:05 UTC 2023
ap/sudo-1.9.13p2-x86_64-1.txz:  Upgraded.
d/make-4.4.1-x86_64-1.txz:  Upgraded.
d/strace-6.2-x86_64-1.txz:  Upgraded.
x/ibus-libpinyin-1.15.1-x86_64-2.txz:  Rebuilt.
  [PATCH] fix awk scripts to work properly when used against sqlite 3.41.0.
  Thanks to lucabon.
2023-02-27 22:41:55 +01:00
Patrick J Volkerding
7645878c71 Fri Feb 24 19:54:11 UTC 2023
d/meson-1.0.1-x86_64-1.txz:  Upgraded.
l/gjs-1.74.2-x86_64-1.txz:  Upgraded.
x/mesa-22.3.6-x86_64-2.txz:  Rebuilt.
  Hardlink duplicated Amber drivers. Thanks to e5150.
2023-02-24 21:34:53 +01:00
Patrick J Volkerding
b2b4f6942b Thu Feb 23 20:47:06 UTC 2023
ap/sqlite-3.41.0-x86_64-1.txz:  Upgraded.
d/parallel-20230222-noarch-1.txz:  Upgraded.
kde/kidletime-5.103.0-x86_64-2.txz:  Rebuilt.
  [PATCH] wayland: Guard wayland object destructors.
  Thanks to marav.
l/glib2-2.74.6-x86_64-1.txz:  Upgraded.
l/nodejs-19.7.0-x86_64-1.txz:  Upgraded.
l/v4l-utils-1.24.0-x86_64-1.txz:  Upgraded.
n/NetworkManager-1.42.2-x86_64-1.txz:  Upgraded.
x/font-util-1.4.0-x86_64-1.txz:  Upgraded.
x/mesa-22.3.6-x86_64-1.txz:  Upgraded.
x/xbitmaps-1.1.3-x86_64-1.txz:  Upgraded.
x/xcursor-themes-1.0.7-noarch-1.txz:  Upgraded.
x/xf86-video-amdgpu-23.0.0-x86_64-1.txz:  Upgraded.
x/xorg-cf-files-1.0.8-x86_64-1.txz:  Upgraded.
xap/gimp-2.10.34-x86_64-1.txz:  Upgraded.
xap/gparted-1.5.0-x86_64-1.txz:  Upgraded.
xfce/thunar-4.18.4-x86_64-1.txz:  Upgraded.
2023-02-23 22:38:18 +01:00
Patrick J Volkerding
c37e54c60e Tue Feb 21 19:15:06 UTC 2023
ap/vim-9.0.1337-x86_64-1.txz:  Upgraded.
  OK, so the upstream runtime update didn't fix sh syntax highlighting, so we
  patched it. Thanks to marav.
  Also, we needed this version number. ;-)
d/autoconf-archive-2023.02.20-noarch-1.txz:  Upgraded.
l/babl-0.1.100-x86_64-1.txz:  Upgraded.
l/gegl-0.4.42-x86_64-1.txz:  Upgraded.
x/ibus-1.5.28-x86_64-1.txz:  Upgraded.
x/ibus-libpinyin-1.15.1-x86_64-1.txz:  Upgraded.
xap/vim-gvim-9.0.1337-x86_64-1.txz:  Upgraded.
2023-02-21 21:32:37 +01:00
Patrick J Volkerding
a38ab2e72c Thu Feb 16 22:07:06 UTC 2023
ap/vim-9.0.1314-x86_64-1.txz:  Upgraded.
l/pipewire-0.3.66-x86_64-1.txz:  Upgraded.
n/bind-9.18.12-x86_64-1.txz:  Upgraded.
x/xf86-video-s3virge-1.11.1-x86_64-1.txz:  Added.
x/xf86-video-trident-1.4.0-x86_64-1.txz:  Added.
x/xterm-379-x86_64-1.txz:  Upgraded.
xap/freerdp-2.10.0-x86_64-1.txz:  Upgraded.
xap/mozilla-thunderbird-102.8.0-x86_64-1.txz:  Upgraded.
  This release contains security fixes and improvements.
  For more information, see:
    https://www.mozilla.org/en-US/thunderbird/102.8.0/releasenotes/
    https://www.mozilla.org/en-US/security/advisories/mfsa2023-07/
    https://www.cve.org/CVERecord?id=CVE-2023-0616
    https://www.cve.org/CVERecord?id=CVE-2023-25728
    https://www.cve.org/CVERecord?id=CVE-2023-25730
    https://www.cve.org/CVERecord?id=CVE-2023-0767
    https://www.cve.org/CVERecord?id=CVE-2023-25735
    https://www.cve.org/CVERecord?id=CVE-2023-25737
    https://www.cve.org/CVERecord?id=CVE-2023-25738
    https://www.cve.org/CVERecord?id=CVE-2023-25739
    https://www.cve.org/CVERecord?id=CVE-2023-25729
    https://www.cve.org/CVERecord?id=CVE-2023-25732
    https://www.cve.org/CVERecord?id=CVE-2023-25734
    https://www.cve.org/CVERecord?id=CVE-2023-25742
    https://www.cve.org/CVERecord?id=CVE-2023-25746
  (* Security fix *)
xap/vim-gvim-9.0.1314-x86_64-1.txz:  Upgraded.
2023-02-16 23:37:25 +01:00
Patrick J Volkerding
88d937fb4e Wed Feb 15 03:05:40 UTC 2023
a/kernel-firmware-20230214_a253a37-noarch-1.txz:  Upgraded.
a/kernel-generic-6.1.12-x86_64-1.txz:  Upgraded.
a/kernel-huge-6.1.12-x86_64-1.txz:  Upgraded.
a/kernel-modules-6.1.12-x86_64-1.txz:  Upgraded.
d/kernel-headers-6.1.12-x86-1.txz:  Upgraded.
d/rust-1.66.1-x86_64-1.txz:  Upgraded.
k/kernel-source-6.1.12-noarch-1.txz:  Upgraded.
kde/bluedevil-5.27.0-x86_64-1.txz:  Upgraded.
kde/breeze-5.27.0-x86_64-1.txz:  Upgraded.
kde/breeze-grub-5.27.0-x86_64-1.txz:  Upgraded.
kde/breeze-gtk-5.27.0-x86_64-1.txz:  Upgraded.
kde/drkonqi-5.27.0-x86_64-1.txz:  Upgraded.
kde/kactivitymanagerd-5.27.0-x86_64-1.txz:  Upgraded.
kde/kde-cli-tools-5.27.0-x86_64-1.txz:  Upgraded.
kde/kde-gtk-config-5.27.0-x86_64-1.txz:  Upgraded.
kde/kdecoration-5.27.0-x86_64-1.txz:  Upgraded.
kde/kdeplasma-addons-5.27.0-x86_64-1.txz:  Upgraded.
kde/kgamma5-5.27.0-x86_64-1.txz:  Upgraded.
kde/khotkeys-5.27.0-x86_64-1.txz:  Upgraded.
kde/kinfocenter-5.27.0-x86_64-1.txz:  Upgraded.
kde/kmenuedit-5.27.0-x86_64-1.txz:  Upgraded.
kde/kpipewire-5.27.0-x86_64-1.txz:  Upgraded.
kde/kscreen-5.27.0-x86_64-1.txz:  Upgraded.
kde/kscreenlocker-5.27.0-x86_64-1.txz:  Upgraded.
kde/ksshaskpass-5.27.0-x86_64-1.txz:  Upgraded.
kde/ksystemstats-5.27.0-x86_64-1.txz:  Upgraded.
kde/kwallet-pam-5.27.0-x86_64-1.txz:  Upgraded.
kde/kwayland-integration-5.27.0-x86_64-1.txz:  Upgraded.
kde/kwin-5.27.0-x86_64-1.txz:  Upgraded.
kde/kwrited-5.27.0-x86_64-1.txz:  Upgraded.
kde/layer-shell-qt-5.27.0-x86_64-1.txz:  Upgraded.
kde/libkscreen-5.27.0-x86_64-1.txz:  Upgraded.
kde/libksysguard-5.27.0-x86_64-1.txz:  Upgraded.
kde/milou-5.27.0-x86_64-1.txz:  Upgraded.
kde/oxygen-5.27.0-x86_64-1.txz:  Upgraded.
kde/oxygen-sounds-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-browser-integration-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-desktop-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-disks-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-firewall-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-integration-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-nm-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-pa-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-sdk-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-systemmonitor-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-vault-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-workspace-5.27.0-x86_64-1.txz:  Upgraded.
kde/plasma-workspace-wallpapers-5.27.0-x86_64-1.txz:  Upgraded.
kde/polkit-kde-agent-1-5.27.0-x86_64-1.txz:  Upgraded.
kde/powerdevil-5.27.0-x86_64-1.txz:  Upgraded.
kde/qqc2-breeze-style-5.27.0-x86_64-1.txz:  Upgraded.
kde/sddm-kcm-5.27.0-x86_64-1.txz:  Upgraded.
kde/systemsettings-5.27.0-x86_64-1.txz:  Upgraded.
kde/xdg-desktop-portal-kde-5.27.0-x86_64-1.txz:  Upgraded.
l/mozjs102-102.8.0esr-x86_64-1.txz:  Upgraded.
n/php-7.4.33-x86_64-3.txz:  Rebuilt.
  This update fixes security issues:
  Core: Password_verify() always return true with some hash.
  Core: 1-byte array overrun in common path resolve code.
  SAPI: DOS vulnerability when parsing multipart request body.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2023-0567
    https://www.cve.org/CVERecord?id=CVE-2023-0568
    https://www.cve.org/CVERecord?id=CVE-2023-0662
  (* Security fix *)
xap/mozilla-firefox-110.0-x86_64-1.txz:  Upgraded.
  This update contains security fixes and improvements.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/110.0/releasenotes/
    https://www.mozilla.org/en-US/security/advisories/mfsa2023-05/
    https://www.cve.org/CVERecord?id=CVE-2023-25728
    https://www.cve.org/CVERecord?id=CVE-2023-25730
    https://www.cve.org/CVERecord?id=CVE-2023-25743
    https://www.cve.org/CVERecord?id=CVE-2023-0767
    https://www.cve.org/CVERecord?id=CVE-2023-25735
    https://www.cve.org/CVERecord?id=CVE-2023-25737
    https://www.cve.org/CVERecord?id=CVE-2023-25738
    https://www.cve.org/CVERecord?id=CVE-2023-25739
    https://www.cve.org/CVERecord?id=CVE-2023-25729
    https://www.cve.org/CVERecord?id=CVE-2023-25732
    https://www.cve.org/CVERecord?id=CVE-2023-25734
    https://www.cve.org/CVERecord?id=CVE-2023-25740
    https://www.cve.org/CVERecord?id=CVE-2023-25731
    https://www.cve.org/CVERecord?id=CVE-2023-25733
    https://www.cve.org/CVERecord?id=CVE-2023-25736
    https://www.cve.org/CVERecord?id=CVE-2023-25741
    https://www.cve.org/CVERecord?id=CVE-2023-25742
    https://www.cve.org/CVERecord?id=CVE-2023-25744
    https://www.cve.org/CVERecord?id=CVE-2023-25745
  (* Security fix *)
extra/php80/php80-8.0.28-x86_64-1.txz:  Upgraded.
  This update fixes security issues:
  Core: Password_verify() always return true with some hash.
  Core: 1-byte array overrun in common path resolve code.
  SAPI: DOS vulnerability when parsing multipart request body.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2023-0567
    https://www.cve.org/CVERecord?id=CVE-2023-0568
    https://www.cve.org/CVERecord?id=CVE-2023-0662
  (* Security fix *)
extra/php81/php81-8.1.16-x86_64-1.txz:  Upgraded.
  This update fixes security issues:
  Core: Password_verify() always return true with some hash.
  Core: 1-byte array overrun in common path resolve code.
  SAPI: DOS vulnerability when parsing multipart request body.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2023-0567
    https://www.cve.org/CVERecord?id=CVE-2023-0568
    https://www.cve.org/CVERecord?id=CVE-2023-0662
  (* Security fix *)
isolinux/initrd.img:  Rebuilt.
kernels/*:  Upgraded.
testing/packages/rust-1.67.1-x86_64-1.txz:  Upgraded.
usb-and-pxe-installers/usbboot.img:  Rebuilt.
2023-02-15 06:50:13 +01:00
Patrick J Volkerding
52ac228489 Mon Feb 13 20:03:36 UTC 2023
ap/man-pages-6.03-noarch-1.txz:  Upgraded.
l/atkmm-2.28.3-x86_64-1.txz:  Upgraded.
l/cairomm-1.14.4-x86_64-1.txz:  Upgraded.
l/glibmm-2.66.5-x86_64-1.txz:  Upgraded.
l/imagemagick-7.1.0_62-x86_64-1.txz:  Upgraded.
n/nghttp2-1.52.0-x86_64-1.txz:  Upgraded.
x/util-macros-1.20.0-noarch-1.txz:  Upgraded.
2023-02-13 21:32:54 +01:00
Patrick J Volkerding
dfd380d502 Sun Feb 5 20:39:36 UTC 2023
ap/htop-3.2.2-x86_64-1.txz:  Upgraded.
l/fuse3-3.13.1-x86_64-1.txz:  Upgraded.
l/pangomm-2.46.3-x86_64-1.txz:  Upgraded.
l/tevent-0.14.1-x86_64-1.txz:  Upgraded.
n/dnsmasq-2.89-x86_64-1.txz:  Upgraded.
x/libX11-1.8.4-x86_64-1.txz:  Upgraded.
x/xkeyboard-config-2.38-noarch-1.txz:  Upgraded.
x/xvidtune-1.0.4-x86_64-1.txz:  Upgraded.
2023-02-05 22:33:59 +01:00
Patrick J Volkerding
36e934ce2f Sun Jan 29 19:01:47 UTC 2023
l/imagemagick-7.1.0_59-x86_64-1.txz:  Upgraded.
n/c-ares-1.19.0-x86_64-1.txz:  Upgraded.
n/fetchmail-6.4.36-x86_64-1.txz:  Upgraded.
x/beforelight-1.0.6-x86_64-1.txz:  Upgraded.
2023-01-29 20:32:43 +01:00
Patrick J Volkerding
de5210c726 Fri Jan 27 20:08:12 UTC 2023
n/samba-4.17.5-x86_64-1.txz:  Upgraded.
  BUG 15240: CVE-2022-38023 [SECURITY] Samba should refuse RC4 (aka md5)
  based SChannel on NETLOGON (additional changes).
  For more information, see:
    https://www.samba.org/samba/security/CVE-2022-38023.html
    https://www.cve.org/CVERecord?id=CVE-2022-38023
  (* Security fix *)
x/mesa-22.3.4-x86_64-1.txz:  Upgraded.
x/xf86-video-vmware-13.4.0-x86_64-1.txz:  Upgraded.
2023-01-27 21:32:41 +01:00
Patrick J Volkerding
14094b8867 Thu Jan 19 21:07:32 UTC 2023
a/pkgtools-15.1-noarch-4.txz:  Rebuilt.
  makepkg: also let xz decide how many threads to use on ARM platforms aarch64
  and riscv64. Thanks to Stuart Winter.
  installpkg: fix reversed test for if a --threads option was given. It appears
  that it's been wrong for years but since xz didn't support threaded
  decompression yet it wasn't noticed.
a/xz-5.4.1-x86_64-2.txz:  Rebuilt.
  Reduce default verbosity from V_WARNING to V_ERROR to avoid sending non-fatal
  memory usage information to stderr.
kde/plasma-wayland-protocols-1.10.0-x86_64-1.txz:  Upgraded.
l/exiv2-0.27.6-x86_64-1.txz:  Upgraded.
l/tdb-1.4.8-x86_64-1.txz:  Upgraded.
x/igt-gpu-tools-1.27.1-x86_64-1.txz:  Upgraded.
x/libX11-1.8.3-x86_64-2.txz:  Rebuilt.
  [PATCH] Fix a9e845 and 797755 Allow X*IfEvent() to reenter libX11
  Thanks to marav.
2023-01-19 22:32:40 +01:00
Patrick J Volkerding
9cc1c3b360 Wed Jan 18 06:11:54 UTC 2023
ap/diffutils-3.9-x86_64-1.txz:  Upgraded.
ap/lsof-4.97.0-x86_64-1.txz:  Upgraded.
ap/mpg123-1.31.2-x86_64-1.txz:  Upgraded.
d/binutils-2.40-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
d/git-2.39.1-x86_64-1.txz:  Upgraded.
d/oprofile-1.4.0-x86_64-11.txz:  Rebuilt.
  Recompiled against binutils-2.40.
n/httpd-2.4.55-x86_64-1.txz:  Upgraded.
  This update fixes bugs and the following security issues:
  mod_proxy allows a backend to trigger HTTP response splitting.
  mod_proxy_ajp possible request smuggling.
  mod_dav out of bounds read, or write of zero byte.
  For more information, see:
    https://downloads.apache.org/httpd/CHANGES_2.4.55
    https://www.cve.org/CVERecord?id=CVE-2022-37436
    https://www.cve.org/CVERecord?id=CVE-2022-36760
    https://www.cve.org/CVERecord?id=CVE-2006-20001
  (* Security fix *)
x/ibus-libpinyin-1.15.0-x86_64-1.txz:  Upgraded.
  Compiled against libpinyin-2.8.1.
x/igt-gpu-tools-1.27-x86_64-1.txz:  Upgraded.
x/libXpm-3.5.15-x86_64-1.txz:  Upgraded.
  This update fixes security issues:
  Infinite loop on unclosed comments.
  Runaway loop with width of 0 and enormous height.
  Compression commands depend on $PATH.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2022-46285
    https://www.cve.org/CVERecord?id=CVE-2022-44617
    https://www.cve.org/CVERecord?id=CVE-2022-4883
  (* Security fix *)
x/libinput-1.22.1-x86_64-1.txz:  Upgraded.
x/libpinyin-2.8.1-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
xap/mozilla-firefox-109.0-x86_64-1.txz:  Upgraded.
  This update contains security fixes and improvements.
  Thanks to marav for the build help.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/109.0/releasenotes/
    https://www.mozilla.org/en-US/security/advisories/mfsa2023-01/
    https://www.cve.org/CVERecord?id=CVE-2023-23597
    https://www.cve.org/CVERecord?id=CVE-2023-23598
    https://www.cve.org/CVERecord?id=CVE-2023-23599
    https://www.cve.org/CVERecord?id=CVE-2023-23600
    https://www.cve.org/CVERecord?id=CVE-2023-23601
    https://www.cve.org/CVERecord?id=CVE-2023-23602
    https://www.cve.org/CVERecord?id=CVE-2023-23603
    https://www.cve.org/CVERecord?id=CVE-2023-23604
    https://www.cve.org/CVERecord?id=CVE-2023-23605
    https://www.cve.org/CVERecord?id=CVE-2023-23606
  (* Security fix *)
2023-01-18 08:41:55 +01:00
Patrick J Volkerding
5d902bcdde Sun Dec 25 23:21:25 UTC 2022
Hey folks, Merry Christmas and Hanukkah Sameach! Figured it was about time to
get some kind of kernel activity going again, but it most definitely belongs
in /testing for now. I've been trying to shape this up for weeks, but there
are still issues, and maybe someone out there can help. The biggest problem
is that the 32-bit kernels crash on boot. Initially there's some sort of
Intel ME failure (this is on a Thinkpad X1E). If those modules are
blacklisted, then the kernel will go on to crash loading the snd_hda_intel
module. The other issue is that I've got a 4K panel in this machine, and
have always appended the kernel option video=1920x1080@60 to put the console
in HD instead, and then loaded a Terminus console font to make the text even
larger. With these kernels, that option is completely ignored. I've tried some
other syntax I've seen online to no avail. And when the Terminus font is
loaded the text gets *even smaller* for some reason.
So be careful of these kernels (especially the 32-bit ones), but I welcome
any hints about what's going on here or if there are config changes that
might get this working properly. Is anyone out there running a 6.x kernel on
bare metal 32-bit x86?
Cheers!
ap/vim-9.0.1091-x86_64-1.txz:  Upgraded.
d/meson-1.0.0-x86_64-1.txz:  Upgraded.
d/ruby-3.2.0-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
d/subversion-1.14.2-x86_64-3.txz:  Rebuilt.
  Recompiled against ruby-3.2.0.
l/glib2-2.74.4-x86_64-1.txz:  Upgraded.
l/netpbm-11.00.03-x86_64-1.txz:  Upgraded.
l/rubygem-asciidoctor-2.0.18-x86_64-1.txz:  Upgraded.
  Compiled against ruby-3.2.0.
n/epic5-2.1.12-x86_64-2.txz:  Rebuilt.
  Recompiled against ruby-3.2.0.
x/marisa-0.2.6-x86_64-6.txz:  Rebuilt.
  Recompiled against ruby-3.2.0.
xap/vim-gvim-9.0.1091-x86_64-1.txz:  Upgraded.
testing/packages/linux-6.1.x/kernel-generic-6.1.1-x86_64-1.txz:  Added.
testing/packages/linux-6.1.x/kernel-headers-6.1.1-x86-1.txz:  Added.
testing/packages/linux-6.1.x/kernel-huge-6.1.1-x86_64-1.txz:  Added.
testing/packages/linux-6.1.x/kernel-modules-6.1.1-x86_64-1.txz:  Added.
testing/packages/linux-6.1.x/kernel-source-6.1.1-noarch-1.txz:  Added.
2022-12-26 01:38:31 +01:00
Patrick J Volkerding
a1d6f79ce8 Tue Dec 20 20:40:18 UTC 2022
d/p2c-2.02-x86_64-1.txz:  Upgraded.
kde/dolphin-22.12.0-x86_64-2.txz:  Rebuilt.
  [PATCH] Revert "portalize drag urls"
  Thanks to marav.
l/gst-plugins-bad-free-1.20.5-x86_64-1.txz:  Upgraded.
l/gst-plugins-base-1.20.5-x86_64-1.txz:  Upgraded.
l/gst-plugins-good-1.20.5-x86_64-1.txz:  Upgraded.
l/gst-plugins-libav-1.20.5-x86_64-1.txz:  Upgraded.
l/gstreamer-1.20.5-x86_64-1.txz:  Upgraded.
l/libqalculate-4.5.0-x86_64-1.txz:  Upgraded.
l/libvncserver-0.9.14-x86_64-1.txz:  Upgraded.
l/sdl-1.2.15-x86_64-14.txz:  Rebuilt.
  This update fixes a heap overflow problem in video/SDL_pixels.c in SDL.
  By crafting a malicious .BMP file, an attacker can cause the application
  using this library to crash, denial of service, or code execution.
  Thanks to marav for the heads-up.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2021-33657
  (* Security fix *)
n/gnupg2-2.2.41-x86_64-1.txz:  Upgraded.
n/libksba-1.6.3-x86_64-1.txz:  Upgraded.
  Fix another integer overflow in the CRL's signature parser.
  (* Security fix *)
x/libSM-1.2.4-x86_64-1.txz:  Upgraded.
x/xcb-util-0.4.1-x86_64-1.txz:  Upgraded.
x/xdriinfo-1.0.7-x86_64-1.txz:  Upgraded.
2022-12-20 22:34:22 +01:00
Patrick J Volkerding
4f53dfead2 Mon Dec 19 21:18:22 UTC 2022
a/logrotate-3.21.0-x86_64-1.txz:  Upgraded.
kde/gwenview-22.12.0-x86_64-2.txz:  Rebuilt.
  Recompiled against cfitsio-4.2.0.
kde/kstars-3.6.2-x86_64-2.txz:  Rebuilt.
  Recompiled against cfitsio-4.2.0.
l/cfitsio-4.2.0-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
l/gsettings-desktop-schemas-43.0-x86_64-1.txz:  Upgraded.
l/gtk4-4.8.2-x86_64-1.txz:  Upgraded.
x/xorg-server-21.1.6-x86_64-1.txz:  Upgraded.
  This release fixes an invalid event type mask in XTestSwapFakeInput which
  was inadvertently changed from octal 0177 to hexadecimal 0x177 in the fix
  for CVE-2022-46340.
x/xorg-server-xephyr-21.1.6-x86_64-1.txz:  Upgraded.
x/xorg-server-xnest-21.1.6-x86_64-1.txz:  Upgraded.
x/xorg-server-xvfb-21.1.6-x86_64-1.txz:  Upgraded.
x/xorg-server-xwayland-22.1.7-x86_64-1.txz:  Upgraded.
  This release fixes an invalid event type mask in XTestSwapFakeInput which
  was inadvertently changed from octal 0177 to hexadecimal 0x177 in the fix
  for CVE-2022-46340.
testing/packages/rust-1.66.0-x86_64-1.txz:  Added.
2022-12-19 23:42:51 +01:00
Patrick J Volkerding
5eda6aabe1 Sat Dec 17 02:40:06 UTC 2022
a/aaa_libraries-15.1-x86_64-14.txz:  Rebuilt.
  Upgraded:  liblzma.so.5.2.9, libpcre2-8.so.0.11.2, libglib-2.0.so.0.7400.3,
  libgmodule-2.0.so.0.7400.3, libpng16.so.16.39.0.
  Removed:  libFLAC++.so.6.3.0, libFLAC.so.8.3.0, libicudata.so.71.1,
  libicui18n.so.71.1, libicuio.so.71.1, libicutest.so.71.1, libicutu.so.71.1,
  libicuuc.so.71.1, libjasper.so.6.0.0.
  Added:  libboost_atomic.so.1.80.0, libboost_chrono.so.1.80.0,
  libboost_container.so.1.80.0, libboost_context.so.1.80.0,
  libboost_contract.so.1.80.0, libboost_coroutine.so.1.80.0,
  libboost_date_time.so.1.80.0, libboost_fiber.so.1.80.0,
  libboost_filesystem.so.1.80.0, libboost_graph.so.1.80.0,
  libboost_iostreams.so.1.80.0, libboost_json.so.1.80.0,
  libboost_locale.so.1.80.0, libboost_log.so.1.80.0,
  libboost_log_setup.so.1.80.0, libboost_math_c99.so.1.80.0,
  libboost_math_c99f.so.1.80.0, libboost_math_c99l.so.1.80.0,
  libboost_math_tr1.so.1.80.0, libboost_math_tr1f.so.1.80.0,
  libboost_math_tr1l.so.1.80.0, libboost_nowide.so.1.80.0,
  libboost_prg_exec_monitor.so.1.80.0, libboost_program_options.so.1.80.0,
  libboost_python27.so.1.80.0, libboost_python39.so.1.80.0,
  libboost_random.so.1.80.0, libboost_regex.so.1.80.0,
  libboost_serialization.so.1.80.0, libboost_stacktrace_addr2line.so.1.80.0,
  libboost_stacktrace_basic.so.1.80.0, libboost_stacktrace_noop.so.1.80.0,
  libboost_system.so.1.80.0, libboost_thread.so.1.80.0,
  libboost_timer.so.1.80.0, libboost_type_erasure.so.1.80.0,
  libboost_unit_test_framework.so.1.80.0, libboost_wave.so.1.80.0,
  libboost_wserialization.so.1.80.0.
ap/pamixer-1.5-x86_64-5.txz:  Rebuilt.
  Recompiled against boost-1.81.0.
kde/kig-22.12.0-x86_64-2.txz:  Rebuilt.
  Recompiled against boost-1.81.0.
kde/kopeninghours-22.12.0-x86_64-2.txz:  Rebuilt.
  Recompiled against boost-1.81.0.
kde/krita-5.1.4-x86_64-2.txz:  Rebuilt.
  Recompiled against boost-1.81.0.
l/boost-1.81.0-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
l/cryfs-0.10.3-x86_64-7.txz:  Rebuilt.
  Recompiled against boost-1.81.0.
x/fcitx5-chinese-addons-5.0.16-x86_64-2.txz:  Rebuilt.
  Recompiled against boost-1.81.0.
x/libime-1.0.16-x86_64-2.txz:  Rebuilt.
  Recompiled against boost-1.81.0.
xap/mozilla-firefox-108.0.1-x86_64-1.txz:  Upgraded.
  This is a bugfix release.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/108.0.1/releasenotes/
xfce/elementary-xfce-0.17-x86_64-1.txz:  Upgraded.
2022-12-17 04:39:07 +01:00
Patrick J Volkerding
fc0ff5a5d7 Wed Dec 14 21:19:34 UTC 2022
a/bash-5.2.015-x86_64-1.txz:  Upgraded.
a/tcsh-6.24.06-x86_64-1.txz:  Upgraded.
ap/inxi-3.3.24_1-noarch-1.txz:  Upgraded.
ap/nano-7.1-x86_64-1.txz:  Upgraded.
d/git-2.39.0-x86_64-1.txz:  Upgraded.
d/rust-1.65.0-x86_64-1.txz:  Upgraded.
d/strace-6.1-x86_64-1.txz:  Upgraded.
kde/krita-5.1.4-x86_64-1.txz:  Upgraded.
l/imagemagick-7.1.0_54-x86_64-1.txz:  Upgraded.
l/nodejs-19.3.0-x86_64-1.txz:  Upgraded.
l/pcre2-10.42-x86_64-1.txz:  Upgraded.
n/iproute2-6.1.0-x86_64-1.txz:  Upgraded.
x/makedepend-1.0.8-x86_64-1.txz:  Upgraded.
x/xhost-1.0.9-x86_64-1.txz:  Upgraded.
x/xorg-server-21.1.5-x86_64-1.txz:  Upgraded.
  This release fixes 6 recently reported security vulnerabilities in
  various extensions.
  For more information, see:
    https://lists.x.org/archives/xorg-announce/2022-December/003302.html
    https://www.cve.org/CVERecord?id=CVE-2022-46340
    https://www.cve.org/CVERecord?id=CVE-2022-46341
    https://www.cve.org/CVERecord?id=CVE-2022-46342
    https://www.cve.org/CVERecord?id=CVE-2022-46343
    https://www.cve.org/CVERecord?id=CVE-2022-46344
    https://www.cve.org/CVERecord?id=CVE-2022-4283
  (* Security fix *)
x/xorg-server-xephyr-21.1.5-x86_64-1.txz:  Upgraded.
x/xorg-server-xnest-21.1.5-x86_64-1.txz:  Upgraded.
x/xorg-server-xvfb-21.1.5-x86_64-1.txz:  Upgraded.
x/xorg-server-xwayland-22.1.6-x86_64-1.txz:  Upgraded.
  This release fixes 6 recently reported security vulnerabilities in
  various extensions.
  For more information, see:
    https://lists.x.org/archives/xorg-announce/2022-December/003302.html
    https://www.cve.org/CVERecord?id=CVE-2022-46340
    https://www.cve.org/CVERecord?id=CVE-2022-46341
    https://www.cve.org/CVERecord?id=CVE-2022-46342
    https://www.cve.org/CVERecord?id=CVE-2022-46343
    https://www.cve.org/CVERecord?id=CVE-2022-46344
    https://www.cve.org/CVERecord?id=CVE-2022-4283
  (* Security fix *)
xap/mozilla-thunderbird-102.6.0-x86_64-1.txz:  Upgraded.
  This release contains security fixes and improvements.
  For more information, see:
    https://www.mozilla.org/en-US/security/advisories/mfsa2022-53/
    https://www.cve.org/CVERecord?id=CVE-2022-46880
    https://www.cve.org/CVERecord?id=CVE-2022-46872
    https://www.cve.org/CVERecord?id=CVE-2022-46881
    https://www.cve.org/CVERecord?id=CVE-2022-46874
    https://www.cve.org/CVERecord?id=CVE-2022-46875
    https://www.cve.org/CVERecord?id=CVE-2022-46882
    https://www.cve.org/CVERecord?id=CVE-2022-46878
  (* Security fix *)
xap/xscreensaver-6.06-x86_64-1.txz:  Upgraded.
testing/packages/mozilla-firefox-108.0-x86_64-1.txz:  Upgraded.
  Starting this out in /testing for now, since I've been trying for 2 days to
  get it to compile on 32-bit with no luck. It ends up failing with a bunch of
  errors like this:
  ld.lld: error: undefined hidden symbol: tabs_4d51_TabsStore_sync
  Any help getting this to build on 32-bit would be greatly appreciated.
  I've tried most of ponce's bag of tricks already. :-)
2022-12-14 23:46:49 +01:00
Patrick J Volkerding
ac5857bb77 Sat Dec 10 19:28:02 UTC 2022
kde/attica-5.101.0-x86_64-1.txz:  Upgraded.
kde/baloo-5.101.0-x86_64-1.txz:  Upgraded.
kde/bluez-qt-5.101.0-x86_64-1.txz:  Upgraded.
kde/breeze-icons-5.101.0-noarch-1.txz:  Upgraded.
kde/extra-cmake-modules-5.101.0-x86_64-1.txz:  Upgraded.
kde/frameworkintegration-5.101.0-x86_64-1.txz:  Upgraded.
kde/kactivities-5.101.0-x86_64-1.txz:  Upgraded.
kde/kactivities-stats-5.101.0-x86_64-1.txz:  Upgraded.
kde/kapidox-5.101.0-x86_64-1.txz:  Upgraded.
kde/karchive-5.101.0-x86_64-1.txz:  Upgraded.
kde/kauth-5.101.0-x86_64-1.txz:  Upgraded.
kde/kbookmarks-5.101.0-x86_64-1.txz:  Upgraded.
kde/kcalendarcore-5.101.0-x86_64-1.txz:  Upgraded.
kde/kcmutils-5.101.0-x86_64-1.txz:  Upgraded.
kde/kcodecs-5.101.0-x86_64-1.txz:  Upgraded.
kde/kcompletion-5.101.0-x86_64-1.txz:  Upgraded.
kde/kconfig-5.101.0-x86_64-1.txz:  Upgraded.
kde/kconfigwidgets-5.101.0-x86_64-1.txz:  Upgraded.
kde/kcontacts-5.101.0-x86_64-1.txz:  Upgraded.
kde/kcoreaddons-5.101.0-x86_64-1.txz:  Upgraded.
kde/kcrash-5.101.0-x86_64-1.txz:  Upgraded.
kde/kdav-5.101.0-x86_64-1.txz:  Upgraded.
kde/kdbusaddons-5.101.0-x86_64-1.txz:  Upgraded.
kde/kdeclarative-5.101.0-x86_64-1.txz:  Upgraded.
kde/kded-5.101.0-x86_64-1.txz:  Upgraded.
kde/kdelibs4support-5.101.0-x86_64-1.txz:  Upgraded.
kde/kdesignerplugin-5.101.0-x86_64-1.txz:  Upgraded.
kde/kdesu-5.101.0-x86_64-1.txz:  Upgraded.
kde/kdewebkit-5.101.0-x86_64-1.txz:  Upgraded.
kde/kdnssd-5.101.0-x86_64-1.txz:  Upgraded.
kde/kdoctools-5.101.0-x86_64-1.txz:  Upgraded.
kde/kemoticons-5.101.0-x86_64-1.txz:  Upgraded.
kde/kfilemetadata-5.101.0-x86_64-1.txz:  Upgraded.
kde/kglobalaccel-5.101.0-x86_64-1.txz:  Upgraded.
kde/kguiaddons-5.101.0-x86_64-1.txz:  Upgraded.
kde/kholidays-5.101.0-x86_64-1.txz:  Upgraded.
kde/khtml-5.101.0-x86_64-1.txz:  Upgraded.
kde/ki18n-5.101.0-x86_64-1.txz:  Upgraded.
kde/kiconthemes-5.101.0-x86_64-1.txz:  Upgraded.
kde/kidletime-5.101.0-x86_64-1.txz:  Upgraded.
kde/kimageformats-5.101.0-x86_64-1.txz:  Upgraded.
kde/kinit-5.101.0-x86_64-1.txz:  Upgraded.
kde/kio-5.101.0-x86_64-1.txz:  Upgraded.
kde/kirigami2-5.101.0-x86_64-1.txz:  Upgraded.
kde/kitemmodels-5.101.0-x86_64-1.txz:  Upgraded.
kde/kitemviews-5.101.0-x86_64-1.txz:  Upgraded.
kde/kjobwidgets-5.101.0-x86_64-1.txz:  Upgraded.
kde/kjs-5.101.0-x86_64-1.txz:  Upgraded.
kde/kjsembed-5.101.0-x86_64-1.txz:  Upgraded.
kde/kmediaplayer-5.101.0-x86_64-1.txz:  Upgraded.
kde/knewstuff-5.101.0-x86_64-1.txz:  Upgraded.
kde/knotifications-5.101.0-x86_64-1.txz:  Upgraded.
kde/knotifyconfig-5.101.0-x86_64-1.txz:  Upgraded.
kde/kpackage-5.101.0-x86_64-1.txz:  Upgraded.
kde/kparts-5.101.0-x86_64-1.txz:  Upgraded.
kde/kpeople-5.101.0-x86_64-1.txz:  Upgraded.
kde/kplotting-5.101.0-x86_64-1.txz:  Upgraded.
kde/kpty-5.101.0-x86_64-1.txz:  Upgraded.
kde/kquickcharts-5.101.0-x86_64-1.txz:  Upgraded.
kde/kross-5.101.0-x86_64-1.txz:  Upgraded.
kde/krunner-5.101.0-x86_64-1.txz:  Upgraded.
kde/kservice-5.101.0-x86_64-1.txz:  Upgraded.
kde/ktexteditor-5.101.0-x86_64-1.txz:  Upgraded.
kde/ktextwidgets-5.101.0-x86_64-1.txz:  Upgraded.
kde/kunitconversion-5.101.0-x86_64-1.txz:  Upgraded.
kde/kwallet-5.101.0-x86_64-1.txz:  Upgraded.
kde/kwayland-5.101.0-x86_64-1.txz:  Upgraded.
kde/kwidgetsaddons-5.101.0-x86_64-1.txz:  Upgraded.
kde/kwindowsystem-5.101.0-x86_64-1.txz:  Upgraded.
kde/kxmlgui-5.101.0-x86_64-1.txz:  Upgraded.
kde/kxmlrpcclient-5.101.0-x86_64-1.txz:  Upgraded.
kde/modemmanager-qt-5.101.0-x86_64-1.txz:  Upgraded.
kde/networkmanager-qt-5.101.0-x86_64-1.txz:  Upgraded.
kde/oxygen-icons5-5.101.0-noarch-1.txz:  Upgraded.
kde/plasma-framework-5.101.0-x86_64-1.txz:  Upgraded.
kde/prison-5.101.0-x86_64-1.txz:  Upgraded.
kde/purpose-5.101.0-x86_64-1.txz:  Upgraded.
kde/qqc2-desktop-style-5.101.0-x86_64-1.txz:  Upgraded.
kde/solid-5.101.0-x86_64-1.txz:  Upgraded.
kde/sonnet-5.101.0-x86_64-1.txz:  Upgraded.
kde/syndication-5.101.0-x86_64-1.txz:  Upgraded.
kde/syntax-highlighting-5.101.0-x86_64-1.txz:  Upgraded.
kde/threadweaver-5.101.0-x86_64-1.txz:  Upgraded.
x/xf86-video-vesa-2.6.0-x86_64-1.txz:  Upgraded.
2022-12-10 21:34:44 +01:00
Patrick J Volkerding
b98f1614c2 Wed Dec 7 18:48:07 UTC 2022
d/cargo-vendor-filterer-0.5.7-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
d/cbindgen-0.24.3-x86_64-1.txz:  Added.
d/python3-3.9.16-x86_64-1.txz:  Upgraded.
  This update fixes security issues:
  gh-98739: Updated bundled libexpat to 2.5.0 to fix CVE-2022-43680
  (heap use-after-free).
  gh-98433: The IDNA codec decoder used on DNS hostnames by socket or asyncio
  related name resolution functions no longer involves a quadratic algorithm
  to fix CVE-2022-45061. This prevents a potential CPU denial of service if an
  out-of-spec excessive length hostname involving bidirectional characters were
  decoded. Some protocols such as urllib http 3xx redirects potentially allow
  for an attacker to supply such a name.
  gh-100001: python -m http.server no longer allows terminal control characters
  sent within a garbage request to be printed to the stderr server log.
  gh-87604: Avoid publishing list of active per-interpreter audit hooks via the
  gc module.
  gh-97514: On Linux the multiprocessing module returns to using filesystem
  backed unix domain sockets for communication with the forkserver process
  instead of the Linux abstract socket namespace. Only code that chooses to use
  the "forkserver" start method is affected. This prevents Linux CVE-2022-42919
  (potential privilege escalation) as abstract sockets have no permissions and
  could allow any user on the system in the same network namespace (often the
  whole system) to inject code into the multiprocessing forkserver process.
  Filesystem based socket permissions restrict this to the forkserver process
  user as was the default in Python 3.8 and earlier.
  gh-98517: Port XKCP's fix for the buffer overflows in SHA-3 to fix
  CVE-2022-37454.
  gh-68966: The deprecated mailcap module now refuses to inject unsafe text
  (filenames, MIME types, parameters) into shell commands to address
  CVE-2015-20107. Instead of using such text, it will warn and act as if a
  match was not found (or for test commands, as if the test failed).
  For more information, see:
    https://pythoninsider.blogspot.com/2022/12/python-3111-3109-3916-3816-3716-and.html
    https://www.cve.org/CVERecord?id=CVE-2022-43680
    https://www.cve.org/CVERecord?id=CVE-2022-45061
    https://www.cve.org/CVERecord?id=CVE-2022-42919
    https://www.cve.org/CVERecord?id=CVE-2022-37454
    https://www.cve.org/CVERecord?id=CVE-2015-20107
  (* Security fix *)
d/rust-bindgen-0.63.0-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
l/pcre2-10.41-x86_64-1.txz:  Upgraded.
n/proftpd-1.3.8-x86_64-1.txz:  Upgraded.
x/mesa-22.3.0-x86_64-1.txz:  Upgraded.
  Compiled with Rusticl support. Thanks to Heinz Wiesinger.
x/xdm-1.1.14-x86_64-1.txz:  Upgraded.
2022-12-07 22:19:17 +01:00
Patrick J Volkerding
6229c1ff54 Mon Dec 5 02:40:12 UTC 2022
x/OpenCC-1.1.5-x86_64-1.txz:  Upgraded.
x/libXScrnSaver-1.2.4-x86_64-1.txz:  Upgraded.
x/libXcomposite-0.4.6-x86_64-1.txz:  Upgraded.
x/libXdamage-1.1.6-x86_64-1.txz:  Upgraded.
x/libXres-1.2.2-x86_64-1.txz:  Upgraded.
x/libXv-1.0.12-x86_64-1.txz:  Upgraded.
x/libXxf86dga-1.1.6-x86_64-1.txz:  Upgraded.
x/lndir-1.0.4-x86_64-1.txz:  Upgraded.
2022-12-05 07:00:11 +01:00
Patrick J Volkerding
2d4b9b1926 Sat Dec 3 21:07:32 UTC 2022
a/tcsh-6.24.04-x86_64-1.txz:  Upgraded.
ap/texinfo-7.0.1-x86_64-1.txz:  Upgraded.
l/vte-0.70.2-x86_64-1.txz:  Upgraded.
x/transset-1.0.3-x86_64-1.txz:  Upgraded.
x/xcursorgen-1.0.8-x86_64-1.txz:  Upgraded.
2022-12-04 06:59:45 +01:00
Patrick J Volkerding
f5b2119f53 Wed Nov 30 21:39:29 UTC 2022
kde/kstars-3.6.2-x86_64-1.txz:  Upgraded.
l/libbluray-1.3.4-x86_64-1.txz:  Upgraded.
l/newt-0.52.23-x86_64-1.txz:  Upgraded.
l/nodejs-19.2.0-x86_64-1.txz:  Upgraded.
x/wayland-protocols-1.31-noarch-1.txz:  Upgraded.
extra/php80/php80-8.0.26-x86_64-1.txz:  Upgraded.
extra/php81/php81-8.1.13-x86_64-1.txz:  Upgraded.
2022-12-01 07:00:13 +01:00
Patrick J Volkerding
65b9f8df0a Wed Nov 23 19:51:17 UTC 2022
a/gawk-5.2.1-x86_64-1.txz:  Upgraded.
a/rpm2tgz-1.2.2-x86_64-7.txz:  Rebuilt.
  Take rpmoffset fixes from Gentoo.
  Thanks to allend.
d/ccache-4.7.4-x86_64-1.txz:  Upgraded.
d/meson-0.64.1-x86_64-1.txz:  Upgraded.
d/parallel-20221122-noarch-1.txz:  Upgraded.
kde/fcitx5-configtool-5.0.16-x86_64-1.txz:  Upgraded.
l/SDL2-2.26.0-x86_64-1.txz:  Upgraded.
l/glib2-2.74.1-x86_64-2.txz:  Rebuilt.
  [PATCH 1/2] Revert "Handling collision between standard i/o file descriptors
  and newly created ones."
  [PATCH 2/2] glib-unix: Add test to make sure g_unix_open_pipe will intrude
  standard range.
  Thanks to marav.
l/newt-0.52.22-x86_64-1.txz:  Upgraded.
l/pipewire-0.3.60-x86_64-2.txz:  Rebuilt.
  [PATCH] alsa: force playback start when buffer is full.
  Thanks to marav.
tcl/tcl-8.6.13-x86_64-1.txz:  Upgraded.
tcl/tk-8.6.13-x86_64-1.txz:  Upgraded.
x/libglvnd-1.6.0-x86_64-1.txz:  Upgraded.
x/wayland-protocols-1.30-noarch-1.txz:  Upgraded.
xap/blueman-2.3.5-x86_64-1.txz:  Upgraded.
2022-11-24 07:00:17 +01:00
Patrick J Volkerding
7354944bf0 Mon Nov 21 20:23:13 UTC 2022
a/libpwquality-1.4.5-x86_64-1.txz:  Upgraded.
a/pciutils-3.9.0-x86_64-1.txz:  Upgraded.
ap/qpdf-11.2.0-x86_64-1.txz:  Upgraded.
d/mercurial-6.3.1-x86_64-1.txz:  Upgraded.
kde/krusader-2.8.0-x86_64-1.txz:  Upgraded.
l/libpng-1.6.39-x86_64-1.txz:  Upgraded.
l/mlt-7.12.0-x86_64-1.txz:  Upgraded.
x/fcitx5-5.0.20-x86_64-1.txz:  Upgraded.
x/fcitx5-anthy-5.0.13-x86_64-1.txz:  Upgraded.
x/fcitx5-chinese-addons-5.0.16-x86_64-1.txz:  Upgraded.
x/fcitx5-gtk-5.0.20-x86_64-1.txz:  Upgraded.
x/fcitx5-kkc-5.0.11-x86_64-1.txz:  Upgraded.
x/fcitx5-m17n-5.0.11-x86_64-1.txz:  Upgraded.
x/fcitx5-qt-5.0.16-x86_64-1.txz:  Upgraded.
x/fcitx5-table-extra-5.0.12-x86_64-1.txz:  Upgraded.
x/fcitx5-unikey-5.0.12-x86_64-1.txz:  Upgraded.
x/libXdmcp-1.1.4-x86_64-1.txz:  Upgraded.
x/libXpm-3.5.14-x86_64-1.txz:  Upgraded.
x/libXrandr-1.5.3-x86_64-1.txz:  Upgraded.
x/libime-1.0.15-x86_64-1.txz:  Upgraded.
x/libinput-1.22.0-x86_64-1.txz:  Upgraded.
x/xcb-imdkit-1.0.4-x86_64-1.txz:  Upgraded.
2022-11-22 07:00:14 +01:00
Patrick J Volkerding
7925f7cd17 Tue Nov 15 01:28:38 UTC 2022
a/xz-5.2.8-x86_64-1.txz:  Upgraded.
d/mercurial-6.3.0-x86_64-1.txz:  Upgraded.
d/rust-1.64.0-x86_64-1.txz:  Upgraded.
kde/attica-5.100.0-x86_64-1.txz:  Upgraded.
kde/baloo-5.100.0-x86_64-1.txz:  Upgraded.
kde/bluez-qt-5.100.0-x86_64-1.txz:  Upgraded.
kde/breeze-icons-5.100.0-noarch-1.txz:  Upgraded.
kde/extra-cmake-modules-5.100.0-x86_64-1.txz:  Upgraded.
kde/frameworkintegration-5.100.0-x86_64-1.txz:  Upgraded.
kde/kactivities-5.100.0-x86_64-1.txz:  Upgraded.
kde/kactivities-stats-5.100.0-x86_64-1.txz:  Upgraded.
kde/kapidox-5.100.0-x86_64-1.txz:  Upgraded.
kde/karchive-5.100.0-x86_64-1.txz:  Upgraded.
kde/kauth-5.100.0-x86_64-1.txz:  Upgraded.
kde/kbookmarks-5.100.0-x86_64-1.txz:  Upgraded.
kde/kcalendarcore-5.100.0-x86_64-1.txz:  Upgraded.
kde/kcmutils-5.100.0-x86_64-1.txz:  Upgraded.
kde/kcodecs-5.100.0-x86_64-1.txz:  Upgraded.
kde/kcompletion-5.100.0-x86_64-1.txz:  Upgraded.
kde/kconfig-5.100.0-x86_64-1.txz:  Upgraded.
kde/kconfigwidgets-5.100.0-x86_64-1.txz:  Upgraded.
kde/kcontacts-5.100.0-x86_64-1.txz:  Upgraded.
kde/kcoreaddons-5.100.0-x86_64-1.txz:  Upgraded.
kde/kcrash-5.100.0-x86_64-1.txz:  Upgraded.
kde/kdav-5.100.0-x86_64-1.txz:  Upgraded.
kde/kdbusaddons-5.100.0-x86_64-1.txz:  Upgraded.
kde/kdeclarative-5.100.0-x86_64-1.txz:  Upgraded.
kde/kded-5.100.0-x86_64-1.txz:  Upgraded.
kde/kdelibs4support-5.100.0-x86_64-1.txz:  Upgraded.
kde/kdesignerplugin-5.100.0-x86_64-1.txz:  Upgraded.
kde/kdesu-5.100.0-x86_64-1.txz:  Upgraded.
kde/kdewebkit-5.100.0-x86_64-1.txz:  Upgraded.
kde/kdnssd-5.100.0-x86_64-1.txz:  Upgraded.
kde/kdoctools-5.100.0-x86_64-1.txz:  Upgraded.
kde/kemoticons-5.100.0-x86_64-1.txz:  Upgraded.
kde/kfilemetadata-5.100.0-x86_64-1.txz:  Upgraded.
kde/kglobalaccel-5.100.0-x86_64-1.txz:  Upgraded.
kde/kguiaddons-5.100.0-x86_64-1.txz:  Upgraded.
kde/kholidays-5.100.0-x86_64-1.txz:  Upgraded.
kde/khtml-5.100.0-x86_64-1.txz:  Upgraded.
kde/ki18n-5.100.0-x86_64-1.txz:  Upgraded.
kde/kiconthemes-5.100.0-x86_64-1.txz:  Upgraded.
kde/kidletime-5.100.0-x86_64-1.txz:  Upgraded.
kde/kimageformats-5.100.0-x86_64-1.txz:  Upgraded.
kde/kinit-5.100.0-x86_64-1.txz:  Upgraded.
kde/kio-5.100.0-x86_64-1.txz:  Upgraded.
kde/kirigami2-5.100.0-x86_64-1.txz:  Upgraded.
kde/kitemmodels-5.100.0-x86_64-1.txz:  Upgraded.
kde/kitemviews-5.100.0-x86_64-1.txz:  Upgraded.
kde/kjobwidgets-5.100.0-x86_64-1.txz:  Upgraded.
kde/kjs-5.100.0-x86_64-1.txz:  Upgraded.
kde/kjsembed-5.100.0-x86_64-1.txz:  Upgraded.
kde/kmediaplayer-5.100.0-x86_64-1.txz:  Upgraded.
kde/knewstuff-5.100.0-x86_64-1.txz:  Upgraded.
kde/knotifications-5.100.0-x86_64-1.txz:  Upgraded.
kde/knotifyconfig-5.100.0-x86_64-1.txz:  Upgraded.
kde/kpackage-5.100.0-x86_64-1.txz:  Upgraded.
kde/kparts-5.100.0-x86_64-1.txz:  Upgraded.
kde/kpeople-5.100.0-x86_64-1.txz:  Upgraded.
kde/kplotting-5.100.0-x86_64-1.txz:  Upgraded.
kde/kpty-5.100.0-x86_64-1.txz:  Upgraded.
kde/kquickcharts-5.100.0-x86_64-1.txz:  Upgraded.
kde/kross-5.100.0-x86_64-1.txz:  Upgraded.
kde/krunner-5.100.0-x86_64-1.txz:  Upgraded.
kde/kservice-5.100.0-x86_64-1.txz:  Upgraded.
kde/ktexteditor-5.100.0-x86_64-1.txz:  Upgraded.
kde/ktextwidgets-5.100.0-x86_64-1.txz:  Upgraded.
kde/kunitconversion-5.100.0-x86_64-1.txz:  Upgraded.
kde/kwallet-5.100.0-x86_64-1.txz:  Upgraded.
kde/kwayland-5.100.0-x86_64-1.txz:  Upgraded.
kde/kwidgetsaddons-5.100.0-x86_64-1.txz:  Upgraded.
kde/kwindowsystem-5.100.0-x86_64-1.txz:  Upgraded.
kde/kxmlgui-5.100.0-x86_64-1.txz:  Upgraded.
kde/kxmlrpcclient-5.100.0-x86_64-1.txz:  Upgraded.
kde/modemmanager-qt-5.100.0-x86_64-1.txz:  Upgraded.
kde/networkmanager-qt-5.100.0-x86_64-1.txz:  Upgraded.
kde/oxygen-icons5-5.100.0-noarch-1.txz:  Upgraded.
kde/plasma-framework-5.100.0-x86_64-1.txz:  Upgraded.
kde/prison-5.100.0-x86_64-1.txz:  Upgraded.
kde/purpose-5.100.0-x86_64-1.txz:  Upgraded.
kde/qqc2-desktop-style-5.100.0-x86_64-1.txz:  Upgraded.
kde/solid-5.100.0-x86_64-1.txz:  Upgraded.
kde/sonnet-5.100.0-x86_64-1.txz:  Upgraded.
kde/syndication-5.100.0-x86_64-1.txz:  Upgraded.
kde/syntax-highlighting-5.100.0-x86_64-1.txz:  Upgraded.
kde/threadweaver-5.100.0-x86_64-1.txz:  Upgraded.
l/babl-0.1.98-x86_64-1.txz:  Upgraded.
l/gegl-0.4.40-x86_64-1.txz:  Upgraded.
l/grantlee-5.3.1-x86_64-1.txz:  Upgraded.
l/nodejs-19.1.0-x86_64-1.txz:  Upgraded.
n/libqmi-1.32.2-x86_64-1.txz:  Upgraded.
n/mutt-2.2.9-x86_64-1.txz:  Upgraded.
n/nghttp2-1.51.0-x86_64-1.txz:  Upgraded.
x/xcompmgr-1.1.9-x86_64-1.txz:  Upgraded.
x/xkbevd-1.1.5-x86_64-1.txz:  Upgraded.
x/xkill-1.0.6-x86_64-1.txz:  Upgraded.
x/xlogo-1.0.6-x86_64-1.txz:  Upgraded.
x/xlsatoms-1.1.4-x86_64-1.txz:  Upgraded.
x/xlsclients-1.1.5-x86_64-1.txz:  Upgraded.
testing/packages/rust-1.65.0-x86_64-1.txz:  Upgraded.
2022-11-15 07:00:12 +01:00
Patrick J Volkerding
e008ee0ca4 Wed Nov 2 20:01:17 UTC 2022
a/hwdata-0.364-noarch-1.txz:  Upgraded.
ap/inxi-3.3.23_1-noarch-1.txz:  Upgraded.
ap/mpg123-1.31.1-x86_64-1.txz:  Upgraded.
d/cmake-3.24.3-x86_64-1.txz:  Upgraded.
l/SDL2-2.24.2-x86_64-1.txz:  Upgraded.
l/liburing-2.3-x86_64-1.txz:  Upgraded.
l/speech-dispatcher-0.11.4-x86_64-1.txz:  Upgraded.
n/irssi-1.4.3-x86_64-1.txz:  Upgraded.
n/stunnel-5.67-x86_64-1.txz:  Upgraded.
x/ibus-table-1.16.13-x86_64-1.txz:  Upgraded.
x/pixman-0.42.2-x86_64-1.txz:  Upgraded.
x/xorg-server-xwayland-22.1.5-x86_64-1.txz:  Upgraded.
2022-11-03 07:00:18 +01:00
Patrick J Volkerding
f866235e9a Mon Oct 31 23:31:36 UTC 2022
a/ntfs-3g-2022.10.3-x86_64-1.txz:  Upgraded.
ap/mpg123-1.31.0-x86_64-1.txz:  Upgraded.
ap/vim-9.0.0814-x86_64-1.txz:  Upgraded.
  A vulnerability was found in vim and classified as problematic. Affected by
  this issue is the function qf_update_buffer of the file quickfix.c of the
  component autocmd Handler. The manipulation leads to use after free. The
  attack may be launched remotely. Upgrading to version 9.0.0805 is able to
  address this issue.
  Thanks to marav for the heads-up.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2022-3705
  (* Security fix *)
d/ccache-4.7.2-x86_64-1.txz:  Upgraded.
d/make-4.4-x86_64-1.txz:  Upgraded.
d/patchelf-0.16.1-x86_64-1.txz:  Upgraded.
d/strace-6.0-x86_64-1.txz:  Upgraded.
kde/kwin-5.26.2.1-x86_64-2.txz:  Rebuilt.
  [PATCH] x11window: revert more from 3a28c02f.
  Thanks to Heinz Wiesinger.
  [PATCH] x11: Don't force QT_NO_GLIB=1.
  [PATCH] x11: Don't force QT_QPA_PLATFORM=xcb.
  Thanks to marav.
l/libedit-20221030_3.1-x86_64-1.txz:  Upgraded.
l/python-importlib_metadata-5.0.0-x86_64-1.txz:  Upgraded.
l/taglib-1.13-x86_64-1.txz:  Upgraded.
l/utf8proc-2.8.0-x86_64-1.txz:  Upgraded.
n/openvpn-2.5.8-x86_64-1.txz:  Upgraded.
n/socat-1.7.4.4-x86_64-1.txz:  Upgraded.
x/libXext-1.3.5-x86_64-1.txz:  Upgraded.
x/libXinerama-1.1.5-x86_64-1.txz:  Upgraded.
x/makedepend-1.0.7-x86_64-1.txz:  Upgraded.
x/rgb-1.1.0-x86_64-1.txz:  Upgraded.
x/sessreg-1.1.3-x86_64-1.txz:  Upgraded.
x/x11perf-1.6.2-x86_64-1.txz:  Upgraded.
x/xsetroot-1.1.3-x86_64-1.txz:  Upgraded.
xap/mozilla-firefox-106.0.3-x86_64-1.txz:  Upgraded.
  This is a bugfix release.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/106.0.3/releasenotes/
xap/mozilla-thunderbird-102.4.1-x86_64-1.txz:  Upgraded.
  This is a bugfix release.
  For more information, see:
    https://www.mozilla.org/en-US/thunderbird/102.4.1/releasenotes/
xap/vim-gvim-9.0.0814-x86_64-1.txz:  Upgraded.
extra/php80/php80-8.0.25-x86_64-1.txz:  Upgraded.
  This update fixes security issues:
  GD: OOB read due to insufficient input validation in imageloadfont().
  Hash: buffer overflow in hash_update() on long parameter.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2022-31630
    https://www.cve.org/CVERecord?id=CVE-2022-37454
  (* Security fix *)
extra/php81/php81-8.1.12-x86_64-1.txz:  Upgraded.
  This update fixes security issues:
  GD: OOB read due to insufficient input validation in imageloadfont().
  Hash: buffer overflow in hash_update() on long parameter.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2022-31630
    https://www.cve.org/CVERecord?id=CVE-2022-37454
  (* Security fix *)
2022-11-01 07:00:17 +01:00
Patrick J Volkerding
58dca16531 Thu Oct 27 02:30:15 UTC 2022
a/aaa_libraries-15.1-x86_64-12.txz:  Rebuilt.
  Upgraded: libexpat.so.1.8.10, libffi.so.8.1.2.
  Added (temporarily): libicudata.so.71.1, libicui18n.so.71.1,
  libicuio.so.71.1, libicutest.so.71.1, libicutu.so.71.1, libicuuc.so.71.1.
a/xfsprogs-5.13.0-x86_64-4.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
ap/sqlite-3.39.4-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
kde/bluedevil-5.26.2-x86_64-1.txz:  Upgraded.
kde/breeze-5.26.2-x86_64-1.txz:  Upgraded.
kde/breeze-grub-5.26.2-x86_64-1.txz:  Upgraded.
kde/breeze-gtk-5.26.2-x86_64-1.txz:  Upgraded.
kde/drkonqi-5.26.2-x86_64-1.txz:  Upgraded.
kde/kactivitymanagerd-5.26.2-x86_64-1.txz:  Upgraded.
kde/kde-cli-tools-5.26.2-x86_64-1.txz:  Upgraded.
kde/kde-gtk-config-5.26.2-x86_64-1.txz:  Upgraded.
kde/kdecoration-5.26.2-x86_64-1.txz:  Upgraded.
kde/kdeplasma-addons-5.26.2-x86_64-1.txz:  Upgraded.
  Compiled against icu4c-72.1.
kde/kgamma5-5.26.2-x86_64-1.txz:  Upgraded.
kde/khotkeys-5.26.2-x86_64-1.txz:  Upgraded.
kde/kinfocenter-5.26.2-x86_64-1.txz:  Upgraded.
kde/kmenuedit-5.26.2-x86_64-1.txz:  Upgraded.
kde/kpipewire-5.26.2-x86_64-1.txz:  Upgraded.
kde/kscreen-5.26.2-x86_64-1.txz:  Upgraded.
kde/kscreenlocker-5.26.2-x86_64-1.txz:  Upgraded.
kde/ksshaskpass-5.26.2-x86_64-1.txz:  Upgraded.
kde/ksystemstats-5.26.2-x86_64-1.txz:  Upgraded.
kde/kwallet-pam-5.26.2-x86_64-1.txz:  Upgraded.
kde/kwayland-integration-5.26.2-x86_64-1.txz:  Upgraded.
kde/kwin-5.26.2.1-x86_64-1.txz:  Upgraded.
kde/kwrited-5.26.2-x86_64-1.txz:  Upgraded.
kde/layer-shell-qt-5.26.2-x86_64-1.txz:  Upgraded.
kde/libkscreen-5.26.2-x86_64-1.txz:  Upgraded.
kde/libksysguard-5.26.2-x86_64-1.txz:  Upgraded.
kde/milou-5.26.2-x86_64-1.txz:  Upgraded.
kde/oxygen-5.26.2-x86_64-1.txz:  Upgraded.
kde/oxygen-sounds-5.26.2-x86_64-1.txz:  Upgraded.
kde/plasma-browser-integration-5.26.2-x86_64-1.txz:  Upgraded.
kde/plasma-desktop-5.26.2-x86_64-1.txz:  Upgraded.
kde/plasma-disks-5.26.2-x86_64-1.txz:  Upgraded.
kde/plasma-firewall-5.26.2-x86_64-1.txz:  Upgraded.
kde/plasma-integration-5.26.2-x86_64-1.txz:  Upgraded.
kde/plasma-nm-5.26.2-x86_64-1.txz:  Upgraded.
kde/plasma-pa-5.26.2-x86_64-1.txz:  Upgraded.
kde/plasma-sdk-5.26.2-x86_64-1.txz:  Upgraded.
kde/plasma-systemmonitor-5.26.2-x86_64-1.txz:  Upgraded.
kde/plasma-vault-5.26.2-x86_64-1.txz:  Upgraded.
kde/plasma-workspace-5.26.2-x86_64-1.txz:  Upgraded.
  Compiled against icu4c-72.1.
kde/plasma-workspace-wallpapers-5.26.2-x86_64-1.txz:  Upgraded.
kde/polkit-kde-agent-1-5.26.2-x86_64-1.txz:  Upgraded.
kde/powerdevil-5.26.2-x86_64-1.txz:  Upgraded.
kde/qqc2-breeze-style-5.26.2-x86_64-1.txz:  Upgraded.
kde/sddm-kcm-5.26.2-x86_64-1.txz:  Upgraded.
kde/systemsettings-5.26.2-x86_64-1.txz:  Upgraded.
kde/xdg-desktop-portal-kde-5.26.2-x86_64-1.txz:  Upgraded.
l/boost-1.80.0-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
l/harfbuzz-5.3.1-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
l/icu4c-72.1-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
l/libical-3.0.16-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
l/libqalculate-4.4.0-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
l/libvisio-0.1.7-x86_64-10.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
l/nodejs-19.0.0-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
l/qt5-5.15.6_20221026_0402bce0-x86_64-1.txz:  Upgraded.
  Compiled against icu4c-72.1.
l/qt5-webkit-5.212.0_alpha4-x86_64-10.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
l/vte-0.68.0-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
n/curl-7.86.0-x86_64-1.txz:  Upgraded.
  This update fixes security issues:
  HSTS bypass via IDN.
  HTTP proxy double-free.
  .netrc parser out-of-bounds access.
  POST following PUT confusion.
  For more information, see:
    https://curl.se/docs/CVE-2022-42916.html
    https://curl.se/docs/CVE-2022-42915.html
    https://curl.se/docs/CVE-2022-35260.html
    https://curl.se/docs/CVE-2022-32221.html
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42916
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42915
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-35260
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32221
  (* Security fix *)
n/dovecot-2.3.19.1-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
n/php-7.4.32-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
n/postfix-3.7.3-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
n/samba-4.17.2-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
n/tin-2.6.1-x86_64-4.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
t/texlive-2022.220801-x86_64-3.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
x/xorg-server-xwayland-22.1.4-x86_64-2.txz:  Rebuilt.
  [PATCH] xwayland/input: Do not ignore leave events.
  Thanks to marav.
xap/mozilla-firefox-106.0.2-x86_64-1.txz:  Upgraded.
  This is a bugfix release.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/106.0.2/releasenotes/
extra/brltty/brltty-6.5-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
extra/php80/php80-8.0.24-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
extra/php81/php81-8.1.11-x86_64-2.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
extra/sendmail/sendmail-8.17.1-x86_64-6.txz:  Rebuilt.
  Recompiled against icu4c-72.1.
extra/sendmail/sendmail-cf-8.17.1-noarch-6.txz:  Rebuilt.
2022-10-27 09:00:17 +02:00
Patrick J Volkerding
af2cb09097 Sat Oct 22 18:40:34 UTC 2022
d/parallel-20221022-noarch-1.txz:  Upgraded.
l/gc-8.2.2-x86_64-1.txz:  Upgraded.
x/libXrender-0.9.11-x86_64-1.txz:  Upgraded.
x/xfsinfo-1.0.7-x86_64-1.txz:  Upgraded.
2022-10-23 07:00:16 +02:00
Patrick J Volkerding
cc9100112b Thu Oct 20 18:39:03 UTC 2022
l/harfbuzz-5.3.1-x86_64-1.txz:  Upgraded.
l/qca-2.3.5-x86_64-1.txz:  Upgraded.
x/mesa-22.2.2-x86_64-1.txz:  Upgraded.
x/xorg-server-xwayland-22.1.4-x86_64-1.txz:  Upgraded.
xap/mozilla-firefox-106.0.1-x86_64-1.txz:  Upgraded.
  This is a bugfix release.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/106.0.1/releasenotes/
xap/mozilla-thunderbird-102.4.0-x86_64-1.txz:  Upgraded.
  This is a bugfix release.
  For more information, see:
    https://www.mozilla.org/en-US/thunderbird/102.4.0/releasenotes/
2022-10-21 07:00:16 +02:00
Patrick J Volkerding
6df8986241 Wed Oct 19 20:06:33 UTC 2022
a/aaa_libraries-15.1-x86_64-11.txz:  Rebuilt.
  Upgraded: libcap.so.2.66, liblzma.so.5.2.7, libpopt.so.0.0.2,
  libexpat.so.1.8.9, libglib-2.0.so.0.7200.4, libgmodule-2.0.so.0.7200.4,
  libgobject-2.0.so.0.7200.4, libgthread-2.0.so.0.7200.4, libhistory.so.8.2,
  libreadline.so.8.2.
  Added: libunistring.so.2.1.0, libunistring.so.5.0.0.
  Removed: libffi.so.7.1.0.
a/gettext-0.21.1-x86_64-2.txz:  Rebuilt.
ap/lsof-4.96.4-x86_64-1.txz:  Upgraded.
ap/man-pages-6.01-noarch-1.txz:  Upgraded.
d/clisp-2.50_20220927_acb1266ee-x86_64-1.txz:  Upgraded.
  Compiled against libunistring-1.1.
d/gettext-tools-0.21.1-x86_64-2.txz:  Rebuilt.
  Recompiled against libunistring-1.1.
d/guile-3.0.8-x86_64-3.txz:  Rebuilt.
  Recompiled against libunistring-1.1.
kde/kguiaddons-5.99.0-x86_64-2.txz:  Rebuilt.
  [PATCH] systemclipboard: Don't signal data source cancellation.
  Thanks to marav.
l/libidn2-2.3.3-x86_64-2.txz:  Rebuilt.
l/libpsl-0.21.1-x86_64-5.txz:  Rebuilt.
  Recompiled against libunistring-1.1.
l/libunistring-1.1-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
n/bind-9.18.8-x86_64-1.txz:  Upgraded.
n/gnutls-3.7.8-x86_64-2.txz:  Rebuilt.
  Recompiled against libunistring-1.1.
n/samba-4.17.1-x86_64-1.txz:  Upgraded.
  This update fixes the following security issue:
  Bad password count not incremented atomically.
  For more information, see:
    https://bugzilla.samba.org/show_bug.cgi?id=14611
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-20251
  (* Security fix *)
n/wget-1.21.3-x86_64-2.txz:  Rebuilt.
  Recompiled against libunistring-1.1.
x/imake-1.0.9-x86_64-1.txz:  Upgraded.
x/xcb-util-errors-1.0.1-x86_64-1.txz:  Upgraded.
x/xcb-util-image-0.4.1-x86_64-1.txz:  Upgraded.
x/xcb-util-keysyms-0.4.1-x86_64-1.txz:  Upgraded.
x/xcb-util-renderutil-0.3.10-x86_64-1.txz:  Upgraded.
x/xcb-util-wm-0.4.2-x86_64-1.txz:  Upgraded.
2022-10-20 17:00:19 +02:00
Patrick J Volkerding
f342454223 Tue Oct 18 20:29:54 UTC 2022
ap/vim-9.0.0790-x86_64-1.txz:  Upgraded.
d/ccache-4.7-x86_64-1.txz:  Upgraded.
d/git-2.38.1-x86_64-1.txz:  Upgraded.
  This release fixes two security issues:
  * CVE-2022-39253:
  When relying on the `--local` clone optimization, Git dereferences
  symbolic links in the source repository before creating hardlinks
  (or copies) of the dereferenced link in the destination repository.
  This can lead to surprising behavior where arbitrary files are
  present in a repository's `$GIT_DIR` when cloning from a malicious
  repository.
  Git will no longer dereference symbolic links via the `--local`
  clone mechanism, and will instead refuse to clone repositories that
  have symbolic links present in the `$GIT_DIR/objects` directory.
  Additionally, the value of `protocol.file.allow` is changed to be
  "user" by default.
  * CVE-2022-39260:
  An overly-long command string given to `git shell` can result in
  overflow in `split_cmdline()`, leading to arbitrary heap writes and
  remote code execution when `git shell` is exposed and the directory
  `$HOME/git-shell-commands` exists.
  `git shell` is taught to refuse interactive commands that are
  longer than 4MiB in size. `split_cmdline()` is hardened to reject
  inputs larger than 2GiB.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-39253
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-39260
  (* Security fix *)
kde/bluedevil-5.26.1-x86_64-1.txz:  Upgraded.
kde/breeze-5.26.1-x86_64-1.txz:  Upgraded.
kde/breeze-grub-5.26.1-x86_64-1.txz:  Upgraded.
kde/breeze-gtk-5.26.1-x86_64-1.txz:  Upgraded.
kde/drkonqi-5.26.1-x86_64-1.txz:  Upgraded.
kde/kactivitymanagerd-5.26.1-x86_64-1.txz:  Upgraded.
kde/kde-cli-tools-5.26.1-x86_64-1.txz:  Upgraded.
kde/kde-gtk-config-5.26.1-x86_64-1.txz:  Upgraded.
kde/kdecoration-5.26.1-x86_64-1.txz:  Upgraded.
kde/kdeplasma-addons-5.26.1-x86_64-1.txz:  Upgraded.
kde/kgamma5-5.26.1-x86_64-1.txz:  Upgraded.
kde/khotkeys-5.26.1-x86_64-1.txz:  Upgraded.
kde/kinfocenter-5.26.1-x86_64-1.txz:  Upgraded.
kde/kmenuedit-5.26.1-x86_64-1.txz:  Upgraded.
kde/kpipewire-5.26.1-x86_64-1.txz:  Upgraded.
kde/kscreen-5.26.1-x86_64-1.txz:  Upgraded.
kde/kscreenlocker-5.26.1-x86_64-1.txz:  Upgraded.
kde/ksshaskpass-5.26.1-x86_64-1.txz:  Upgraded.
kde/ksystemstats-5.26.1-x86_64-1.txz:  Upgraded.
kde/kwallet-pam-5.26.1-x86_64-1.txz:  Upgraded.
kde/kwayland-integration-5.26.1-x86_64-1.txz:  Upgraded.
kde/kwin-5.26.1-x86_64-1.txz:  Upgraded.
kde/kwrited-5.26.1-x86_64-1.txz:  Upgraded.
kde/layer-shell-qt-5.26.1-x86_64-1.txz:  Upgraded.
kde/libkscreen-5.26.1-x86_64-1.txz:  Upgraded.
kde/libksysguard-5.26.1-x86_64-1.txz:  Upgraded.
kde/milou-5.26.1-x86_64-1.txz:  Upgraded.
kde/oxygen-5.26.1-x86_64-1.txz:  Upgraded.
kde/oxygen-sounds-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-browser-integration-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-desktop-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-disks-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-firewall-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-integration-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-nm-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-pa-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-sdk-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-systemmonitor-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-vault-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-workspace-5.26.1-x86_64-1.txz:  Upgraded.
kde/plasma-workspace-wallpapers-5.26.1-x86_64-1.txz:  Upgraded.
kde/polkit-kde-agent-1-5.26.1-x86_64-1.txz:  Upgraded.
kde/powerdevil-5.26.1-x86_64-1.txz:  Upgraded.
kde/qqc2-breeze-style-5.26.1-x86_64-1.txz:  Upgraded.
kde/sddm-kcm-5.26.1-x86_64-1.txz:  Upgraded.
kde/systemsettings-5.26.1-x86_64-1.txz:  Upgraded.
kde/xdg-desktop-portal-kde-5.26.1-x86_64-1.txz:  Upgraded.
l/libical-3.0.16-x86_64-1.txz:  Upgraded.
l/nodejs-19.0.0-x86_64-1.txz:  Upgraded.
n/NetworkManager-1.40.2-x86_64-1.txz:  Upgraded.
n/whois-5.5.14-x86_64-1.txz:  Upgraded.
x/libXmu-1.1.4-x86_64-1.txz:  Upgraded.
x/libXpresent-1.0.1-x86_64-1.txz:  Upgraded.
x/libpciaccess-0.17-x86_64-1.txz:  Upgraded.
x/libxkbfile-1.1.1-x86_64-1.txz:  Upgraded.
x/libxshmfence-1.3.1-x86_64-1.txz:  Upgraded.
x/pixman-0.42.0-x86_64-1.txz:  Upgraded.
x/xcb-util-cursor-0.1.4-x86_64-1.txz:  Upgraded.
xap/mozilla-firefox-106.0-x86_64-1.txz:  Upgraded.
  This update contains security fixes and improvements.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/106.0/releasenotes/
    https://www.mozilla.org/security/advisories/mfsa2022-44/
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42927
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42928
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42929
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42930
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42931
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42932
  (* Security fix *)
xap/vim-gvim-9.0.0790-x86_64-1.txz:  Upgraded.
2022-10-19 07:00:56 +02:00
Patrick J Volkerding
717971ecd6 Mon Oct 17 19:31:45 UTC 2022
l/libqalculate-4.4.0-x86_64-1.txz:  Upgraded.
l/netpbm-11.00.01-x86_64-1.txz:  Upgraded.
x/xorg-server-21.1.4-x86_64-2.txz:  Rebuilt.
  xkb: proof GetCountedString against request length attacks.
  xkb: fix some possible memleaks in XkbGetKbdByName.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3550
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3551
  (* Security fix *)
x/xorg-server-xephyr-21.1.4-x86_64-2.txz:  Rebuilt.
x/xorg-server-xnest-21.1.4-x86_64-2.txz:  Rebuilt.
x/xorg-server-xvfb-21.1.4-x86_64-2.txz:  Rebuilt.
x/xorg-server-xwayland-22.1.3-x86_64-2.txz:  Rebuilt.
  xkb: proof GetCountedString against request length attacks.
  xkb: fix some possible memleaks in XkbGetKbdByName.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3550
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3551
  (* Security fix *)
xap/blueman-2.3.4-x86_64-1.txz:  Upgraded.
2022-10-18 07:00:18 +02:00
Patrick J Volkerding
8640934374 Sat Oct 15 20:28:34 UTC 2022
a/kernel-firmware-20221013_49fccf6-noarch-1.txz:  Upgraded.
a/kernel-generic-5.19.16-x86_64-1.txz:  Upgraded.
a/kernel-huge-5.19.16-x86_64-1.txz:  Upgraded.
a/kernel-modules-5.19.16-x86_64-1.txz:  Upgraded.
ap/man-db-2.11.0-x86_64-1.txz:  Upgraded.
ap/man-pages-6.00-noarch-1.txz:  Upgraded.
d/kernel-headers-5.19.16-x86-1.txz:  Upgraded.
k/kernel-source-5.19.16-noarch-1.txz:  Upgraded.
l/libedit-20221009_3.1-x86_64-1.txz:  Upgraded.
l/mozilla-nss-3.84-x86_64-1.txz:  Upgraded.
l/nodejs-18.11.0-x86_64-1.txz:  Upgraded.
l/zlib-1.2.13-x86_64-1.txz:  Upgraded.
  Fixed a bug when getting a gzip header extra field with inflateGetHeader().
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-37434
  (* Security fix *)
n/fetchmail-6.4.34-x86_64-1.txz:  Upgraded.
n/gnupg2-2.2.40-x86_64-1.txz:  Upgraded.
x/bdftopcf-1.1.1-x86_64-1.txz:  Upgraded.
x/libwacom-2.5.0-x86_64-1.txz:  Upgraded.
x/smproxy-1.0.7-x86_64-1.txz:  Upgraded.
x/viewres-1.0.7-x86_64-1.txz:  Upgraded.
x/xditview-1.0.6-x86_64-1.txz:  Upgraded.
x/xf86-input-vmmouse-13.2.0-x86_64-1.txz:  Added.
x/xgc-1.0.6-x86_64-1.txz:  Upgraded.
x/xkbprint-1.0.6-x86_64-1.txz:  Upgraded.
isolinux/initrd.img:  Rebuilt.
kernels/*:  Upgraded.
usb-and-pxe-installers/usbboot.img:  Rebuilt.
2022-10-16 07:00:18 +02:00
Patrick J Volkerding
1af8dbc03d Mon Oct 10 18:45:33 UTC 2022
ap/diffstat-1.65-x86_64-1.txz:  Upgraded.
ap/moc-2.6_alpha3-x86_64-1.txz:  Upgraded.
  Compiled against ffmpeg-5.1.2.
kde/attica-5.99.0-x86_64-1.txz:  Upgraded.
kde/baloo-5.99.0-x86_64-1.txz:  Upgraded.
kde/bluez-qt-5.99.0-x86_64-1.txz:  Upgraded.
kde/breeze-icons-5.99.0-noarch-1.txz:  Upgraded.
kde/digikam-7.8.0-x86_64-3.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
kde/extra-cmake-modules-5.99.0-x86_64-1.txz:  Upgraded.
kde/ffmpegthumbs-22.08.1-x86_64-2.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
kde/frameworkintegration-5.99.0-x86_64-1.txz:  Upgraded.
kde/kactivities-5.99.0-x86_64-1.txz:  Upgraded.
kde/kactivities-stats-5.99.0-x86_64-1.txz:  Upgraded.
kde/kapidox-5.99.0-x86_64-1.txz:  Upgraded.
kde/karchive-5.99.0-x86_64-1.txz:  Upgraded.
kde/kauth-5.99.0-x86_64-1.txz:  Upgraded.
kde/kbookmarks-5.99.0-x86_64-1.txz:  Upgraded.
kde/kcalendarcore-5.99.0-x86_64-1.txz:  Upgraded.
kde/kcmutils-5.99.0-x86_64-1.txz:  Upgraded.
kde/kcodecs-5.99.0-x86_64-1.txz:  Upgraded.
kde/kcompletion-5.99.0-x86_64-1.txz:  Upgraded.
kde/kconfig-5.99.0-x86_64-1.txz:  Upgraded.
kde/kconfigwidgets-5.99.0-x86_64-1.txz:  Upgraded.
kde/kcontacts-5.99.0-x86_64-1.txz:  Upgraded.
kde/kcoreaddons-5.99.0-x86_64-1.txz:  Upgraded.
kde/kcrash-5.99.0-x86_64-1.txz:  Upgraded.
kde/kdav-5.99.0-x86_64-1.txz:  Upgraded.
kde/kdbusaddons-5.99.0-x86_64-1.txz:  Upgraded.
kde/kdeclarative-5.99.0-x86_64-1.txz:  Upgraded.
kde/kded-5.99.0-x86_64-1.txz:  Upgraded.
kde/kdelibs4support-5.99.0-x86_64-1.txz:  Upgraded.
kde/kdesignerplugin-5.99.0-x86_64-1.txz:  Upgraded.
kde/kdesu-5.99.0-x86_64-1.txz:  Upgraded.
kde/kdewebkit-5.99.0-x86_64-1.txz:  Upgraded.
kde/kdnssd-5.99.0-x86_64-1.txz:  Upgraded.
kde/kdoctools-5.99.0-x86_64-1.txz:  Upgraded.
kde/kemoticons-5.99.0-x86_64-1.txz:  Upgraded.
kde/kfilemetadata-5.99.0-x86_64-1.txz:  Upgraded.
  Compiled against ffmpeg-5.1.2.
kde/kglobalaccel-5.99.0-x86_64-1.txz:  Upgraded.
kde/kguiaddons-5.99.0-x86_64-1.txz:  Upgraded.
kde/kholidays-5.99.0-x86_64-1.txz:  Upgraded.
kde/khtml-5.99.0-x86_64-1.txz:  Upgraded.
kde/ki18n-5.99.0-x86_64-1.txz:  Upgraded.
kde/kiconthemes-5.99.0-x86_64-1.txz:  Upgraded.
kde/kidletime-5.99.0-x86_64-1.txz:  Upgraded.
kde/kimageformats-5.99.0-x86_64-1.txz:  Upgraded.
kde/kinit-5.99.0-x86_64-1.txz:  Upgraded.
kde/kio-5.99.0-x86_64-1.txz:  Upgraded.
kde/kirigami2-5.99.0-x86_64-1.txz:  Upgraded.
kde/kitemmodels-5.99.0-x86_64-1.txz:  Upgraded.
kde/kitemviews-5.99.0-x86_64-1.txz:  Upgraded.
kde/kjobwidgets-5.99.0-x86_64-1.txz:  Upgraded.
kde/kjs-5.99.0-x86_64-1.txz:  Upgraded.
kde/kjsembed-5.99.0-x86_64-1.txz:  Upgraded.
kde/kmediaplayer-5.99.0-x86_64-1.txz:  Upgraded.
kde/knewstuff-5.99.0-x86_64-1.txz:  Upgraded.
kde/knotifications-5.99.0-x86_64-1.txz:  Upgraded.
kde/knotifyconfig-5.99.0-x86_64-1.txz:  Upgraded.
kde/kpackage-5.99.0-x86_64-1.txz:  Upgraded.
kde/kparts-5.99.0-x86_64-1.txz:  Upgraded.
kde/kpeople-5.99.0-x86_64-1.txz:  Upgraded.
kde/kplotting-5.99.0-x86_64-1.txz:  Upgraded.
kde/kpty-5.99.0-x86_64-1.txz:  Upgraded.
kde/kquickcharts-5.99.0-x86_64-1.txz:  Upgraded.
kde/kross-5.99.0-x86_64-1.txz:  Upgraded.
kde/krunner-5.99.0-x86_64-1.txz:  Upgraded.
kde/kservice-5.99.0-x86_64-1.txz:  Upgraded.
kde/ktexteditor-5.99.0-x86_64-1.txz:  Upgraded.
kde/ktextwidgets-5.99.0-x86_64-1.txz:  Upgraded.
kde/kunitconversion-5.99.0-x86_64-1.txz:  Upgraded.
kde/kwallet-5.99.0-x86_64-1.txz:  Upgraded.
kde/kwayland-5.99.0-x86_64-1.txz:  Upgraded.
kde/kwidgetsaddons-5.99.0-x86_64-1.txz:  Upgraded.
kde/kwindowsystem-5.99.0-x86_64-1.txz:  Upgraded.
kde/kxmlgui-5.99.0-x86_64-1.txz:  Upgraded.
kde/kxmlrpcclient-5.99.0-x86_64-1.txz:  Upgraded.
kde/modemmanager-qt-5.99.0-x86_64-1.txz:  Upgraded.
kde/networkmanager-qt-5.99.0-x86_64-1.txz:  Upgraded.
kde/oxygen-icons5-5.99.0-noarch-1.txz:  Upgraded.
kde/plasma-framework-5.99.0-x86_64-1.txz:  Upgraded.
kde/prison-5.99.0-x86_64-1.txz:  Upgraded.
kde/purpose-5.99.0-x86_64-1.txz:  Upgraded.
kde/qqc2-desktop-style-5.99.0-x86_64-1.txz:  Upgraded.
kde/solid-5.99.0-x86_64-1.txz:  Upgraded.
kde/sonnet-5.99.0-x86_64-1.txz:  Upgraded.
kde/syndication-5.99.0-x86_64-1.txz:  Upgraded.
kde/syntax-highlighting-5.99.0-x86_64-1.txz:  Upgraded.
kde/threadweaver-5.99.0-x86_64-1.txz:  Upgraded.
l/QtAV-20220226_fdc613dc-x86_64-1.txz:  Upgraded.
  Compiled against ffmpeg-5.1.2.
l/alsa-plugins-1.2.7.1-x86_64-2.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
l/ffmpeg-5.1.2-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
  Enabled glslang and vulkan. Thanks to Heinz Wiesinger.
l/gegl-0.4.38-x86_64-2.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
l/gst-plugins-libav-1.20.3-x86_64-2.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
l/harfbuzz-5.3.0-x86_64-1.txz:  Upgraded.
l/imagemagick-7.1.0_50-x86_64-1.txz:  Upgraded.
l/libvncserver-0.9.13-x86_64-4.txz:  Rebuilt.
  Disabled ffmpeg support (not compatible with ffmpeg5).
l/mlt-7.8.0-x86_64-2.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
l/opencv-4.6.0-x86_64-2.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
l/pcre2-10.40-x86_64-2.txz:  Rebuilt.
  Moved shared libraries into /lib${LIBDIRSUFFIX}. Thanks to TommyC7.
l/pipewire-0.3.59-x86_64-2.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
l/qt5-5.15.6_20220928_06b700dd-x86_64-1.txz:  Upgraded.
  Compiled against ffmpeg-5.1.2.
n/libgpg-error-1.46-x86_64-2.txz:  Rebuilt.
  Rebuilt with --enable-install-gpg-error-config to fix regression building
  gpgme. Thanks to nobodino and ponce.
x/libva-utils-2.16.0-x86_64-1.txz:  Upgraded.
x/wayland-protocols-1.27-noarch-1.txz:  Upgraded.
xap/MPlayer-20221009-x86_64-1.txz:  Upgraded.
  Compiled against ffmpeg-5.1.2.
xap/audacious-plugins-4.2-x86_64-2.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
xap/ffmpegthumbnailer-2.2.2-x86_64-4.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
xap/freerdp-2.8.0-x86_64-2.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
xap/ssr-0.4.4-x86_64-1.txz:  Upgraded.
  Compiled against ffmpeg-5.1.2.
xap/xine-lib-1.2.12-x86_64-2.txz:  Rebuilt.
  Recompiled against ffmpeg-5.1.2.
2022-10-11 07:00:35 +02:00
Patrick J Volkerding
be4ce9e049 Sat Oct 8 19:23:31 UTC 2022
ap/inxi-3.3.22_1-noarch-1.txz:  Upgraded.
n/conntrack-tools-1.4.7-x86_64-1.txz:  Upgraded.
n/libgpg-error-1.46-x86_64-1.txz:  Upgraded.
n/libksba-1.6.2-x86_64-1.txz:  Upgraded.
  Detect a possible overflow directly in the TLV parser.
  This patch detects possible integer overflows immmediately when creating
  the TI object.
  Reported-by: ZDI-CAN-18927, ZDI-CAN-18928, ZDI-CAN-18929
  (* Security fix *)
n/postfix-3.7.3-x86_64-1.txz:  Upgraded.
x/freeglut-3.4.0-x86_64-1.txz:  Upgraded.
x/fstobdf-1.0.7-x86_64-1.txz:  Upgraded.
xap/mozilla-firefox-105.0.3-x86_64-1.txz:  Upgraded.
  This is a bugfix release.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/105.0.3/releasenotes/
2022-10-09 07:00:16 +02:00
Patrick J Volkerding
4191d96e29 Fri Sep 30 17:52:21 UTC 2022
a/dbus-1.14.2-x86_64-1.txz:  Upgraded.
ap/powertop-2.15-x86_64-1.txz:  Upgraded.
ap/sqlite-3.39.4-x86_64-1.txz:  Upgraded.
ap/vim-9.0.0623-x86_64-1.txz:  Upgraded.
  Fixed use-after-free and stack-based buffer overflow.
  Thanks to marav for the heads-up.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-3352
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-3324
  (* Security fix *)
kde/digikam-7.8.0-x86_64-2.txz:  Rebuilt.
  Recompiled against lensfun-0.3.3.
kde/kstars-3.6.1-x86_64-1.txz:  Upgraded.
kde/plasma-wayland-protocols-1.9.0-x86_64-1.txz:  Upgraded.
l/lensfun-0.3.3-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
l/netpbm-11.00.00-x86_64-1.txz:  Upgraded.
l/nodejs-18.10.0-x86_64-1.txz:  Upgraded.
l/pipewire-0.3.59-x86_64-1.txz:  Upgraded.
n/php-7.4.32-x86_64-1.txz:  Upgraded.
  This update fixes bugs and security issues:
  phar wrapper: DOS when using quine gzip file.
  Don't mangle HTTP variable names that clash with ones that have a specific
  semantic meaning.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-31628
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-31629
  (* Security fix *)
xap/mozilla-thunderbird-102.3.1-x86_64-1.txz:  Upgraded.
  This release contains security fixes and improvements.
  For more information, see:
    https://www.mozilla.org/en-US/thunderbird/102.3.1/releasenotes/
    https://www.mozilla.org/en-US/security/advisories/mfsa2022-43/
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-39249
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-39250
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-39251
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-39236
  (* Security fix *)
xap/seamonkey-2.53.14-x86_64-1.txz:  Upgraded.
  This update contains security fixes and improvements.
  For more information, see:
    https://www.seamonkey-project.org/releases/seamonkey2.53.14
  (* Security fix *)
xap/vim-gvim-9.0.0623-x86_64-1.txz:  Upgraded.
xap/xsnow-3.5.3-x86_64-1.txz:  Upgraded.
extra/php80/php80-8.0.24-x86_64-1.txz:  Upgraded.
  This update fixes bugs and security issues:
  phar wrapper: DOS when using quine gzip file.
  Don't mangle HTTP variable names that clash with ones that have a specific
  semantic meaning.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-31628
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-31629
  (* Security fix *)
extra/php81/php81-8.1.11-x86_64-1.txz:  Upgraded.
  This update fixes bugs and security issues:
  phar wrapper: DOS when using quine gzip file.
  Don't mangle HTTP variable names that clash with ones that have a specific
  semantic meaning.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-31628
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-31629
  (* Security fix *)
2022-10-01 07:00:18 +02:00
Patrick J Volkerding
527f0eecaf Tue Sep 27 21:19:17 UTC 2022
a/kernel-firmware-20220927_0958301-noarch-1.txz:  Upgraded.
n/pinentry-1.2.1-x86_64-2.txz:  Rebuilt.
  Build pinentry-tty. Thanks to pek.
  Build pinentry-emacs.
x/fcitx5-gtk-5.0.19-x86_64-1.txz:  Upgraded.
x/libXtst-1.2.4-x86_64-1.txz:  Upgraded.
x/libXxf86vm-1.1.5-x86_64-1.txz:  Upgraded.
x/mesa-22.2.0-x86_64-1.txz:  Upgraded.
2022-09-28 07:00:19 +02:00
Patrick J Volkerding
59871e54c8 Wed Sep 14 04:53:53 UTC 2022
a/btrfs-progs-5.19.1-x86_64-1.txz:  Upgraded.
a/file-5.43-x86_64-1.txz:  Upgraded.
a/kernel-firmware-20220913_f09bebf-noarch-1.txz:  Upgraded.
d/cmake-3.24.2-x86_64-1.txz:  Upgraded.
kde/krita-5.1.1-x86_64-1.txz:  Upgraded.
l/kdsoap-2.1.0-x86_64-1.txz:  Upgraded.
n/krb5-1.20-x86_64-2.txz:  Rebuilt.
n/samba-4.17.0-x86_64-1.txz:  Upgraded.
x/libXp-1.0.4-x86_64-1.txz:  Upgraded.
2022-09-14 17:00:10 +02:00
Patrick J Volkerding
c81bf2d8e2 Sat Sep 10 18:29:38 UTC 2022
n/ModemManager-1.18.12-x86_64-1.txz:  Upgraded.
n/rsync-3.2.6-x86_64-1.txz:  Upgraded.
x/fslsfonts-1.0.6-x86_64-1.txz:  Upgraded.
x/ibus-m17n-1.4.13-x86_64-1.txz:  Upgraded.
x/ibus-table-1.16.12-x86_64-1.txz:  Upgraded.
x/libXft-2.3.6-x86_64-1.txz:  Upgraded.
xap/libnma-1.10.2-x86_64-1.txz:  Upgraded.
xap/xscreensaver-6.05-x86_64-1.txz:  Upgraded.
2022-09-11 07:00:14 +02:00
Patrick J Volkerding
64fbcd92b6 Tue Sep 6 20:21:24 UTC 2022
a/cracklib-2.9.8-x86_64-1.txz:  Upgraded.
a/gawk-5.2.0-x86_64-1.txz:  Upgraded.
a/grep-3.8-x86_64-1.txz:  Upgraded.
a/kernel-firmware-20220902_2f2f018-noarch-1.txz:  Upgraded.
a/kernel-generic-5.19.7-x86_64-1.txz:  Upgraded.
a/kernel-huge-5.19.7-x86_64-1.txz:  Upgraded.
a/kernel-modules-5.19.7-x86_64-1.txz:  Upgraded.
a/pcmciautils-018-x86_64-5.txz:  Rebuilt.
  rc.pcmcia: change fgrep to grep -F.
a/pkgtools-15.1-noarch-1.txz:  Upgraded.
  removepkg: change fgrep to grep -F.
a/sysvinit-functions-8.53-x86_64-6.txz:  Rebuilt.
  /etc/rc.d/init.d/functions: change egrep to grep -E.
a/sysvinit-scripts-15.1-noarch-2.txz:  Rebuilt.
  rc.cpufreq: command-line choice should take priority
  over /etc/default/cpufreq. Thanks to af7567.
  rc.6: change egrep to grep -E.
ap/sqlite-3.39.3-x86_64-1.txz:  Upgraded.
ap/vim-9.0.0396-x86_64-1.txz:  Upgraded.
  Fixed use after free.
  Thanks to marav for the heads-up.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3099
  (* Security fix *)
d/autoconf-2.71-noarch-2.txz:  Rebuilt.
  doinst.sh: change fgrep to grep -F.
d/autoconf-archive-2022.09.03-noarch-1.txz:  Upgraded.
d/automake-1.16.5-noarch-2.txz:  Rebuilt.
  doinst.sh: change fgrep to grep -F.
d/kernel-headers-5.19.7-x86-1.txz:  Upgraded.
d/libtool-2.4.7-x86_64-4.txz:  Rebuilt.
  doinst.sh: change fgrep to grep -F.
d/meson-0.63.2-x86_64-1.txz:  Upgraded.
d/vala-0.56.3-x86_64-1.txz:  Upgraded.
k/kernel-source-5.19.7-noarch-1.txz:  Upgraded.
kde/bluedevil-5.25.5-x86_64-1.txz:  Upgraded.
kde/breeze-5.25.5-x86_64-1.txz:  Upgraded.
kde/breeze-grub-5.25.5-x86_64-1.txz:  Upgraded.
kde/breeze-gtk-5.25.5-x86_64-1.txz:  Upgraded.
kde/drkonqi-5.25.5-x86_64-1.txz:  Upgraded.
kde/kactivitymanagerd-5.25.5-x86_64-1.txz:  Upgraded.
kde/kde-cli-tools-5.25.5-x86_64-1.txz:  Upgraded.
kde/kde-gtk-config-5.25.5-x86_64-1.txz:  Upgraded.
kde/kdecoration-5.25.5-x86_64-1.txz:  Upgraded.
kde/kdeplasma-addons-5.25.5-x86_64-1.txz:  Upgraded.
kde/kgamma5-5.25.5-x86_64-1.txz:  Upgraded.
kde/khotkeys-5.25.5-x86_64-1.txz:  Upgraded.
kde/kinfocenter-5.25.5-x86_64-1.txz:  Upgraded.
kde/kmenuedit-5.25.5-x86_64-1.txz:  Upgraded.
kde/kscreen-5.25.5-x86_64-1.txz:  Upgraded.
kde/kscreenlocker-5.25.5-x86_64-1.txz:  Upgraded.
kde/ksshaskpass-5.25.5-x86_64-1.txz:  Upgraded.
kde/ksystemstats-5.25.5-x86_64-1.txz:  Upgraded.
kde/kwallet-pam-5.25.5-x86_64-1.txz:  Upgraded.
kde/kwayland-integration-5.25.5-x86_64-1.txz:  Upgraded.
kde/kwin-5.25.5-x86_64-1.txz:  Upgraded.
kde/kwrited-5.25.5-x86_64-1.txz:  Upgraded.
kde/layer-shell-qt-5.25.5-x86_64-1.txz:  Upgraded.
kde/libkscreen-5.25.5-x86_64-1.txz:  Upgraded.
kde/libksysguard-5.25.5-x86_64-1.txz:  Upgraded.
kde/milou-5.25.5-x86_64-1.txz:  Upgraded.
kde/oxygen-5.25.5-x86_64-1.txz:  Upgraded.
kde/oxygen-sounds-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-browser-integration-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-desktop-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-disks-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-firewall-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-integration-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-nm-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-pa-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-sdk-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-systemmonitor-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-vault-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-wayland-protocols-1.8.0-x86_64-1.txz:  Upgraded.
kde/plasma-workspace-5.25.5-x86_64-1.txz:  Upgraded.
kde/plasma-workspace-wallpapers-5.25.5-x86_64-1.txz:  Upgraded.
kde/polkit-kde-agent-1-5.25.5-x86_64-1.txz:  Upgraded.
kde/powerdevil-5.25.5-x86_64-1.txz:  Upgraded.
kde/qqc2-breeze-style-5.25.5-x86_64-1.txz:  Upgraded.
kde/sddm-kcm-5.25.5-x86_64-1.txz:  Upgraded.
kde/systemsettings-5.25.5-x86_64-1.txz:  Upgraded.
kde/xdg-desktop-portal-kde-5.25.5-x86_64-1.txz:  Upgraded.
l/fluidsynth-2.2.9-x86_64-1.txz:  Upgraded.
l/libsoup3-3.0.8-x86_64-1.txz:  Upgraded.
l/libssh-0.10.3-x86_64-1.txz:  Upgraded.
l/neon-0.32.3-x86_64-1.txz:  Upgraded.
l/slang-2.3.3-x86_64-1.txz:  Upgraded.
n/nmap-7.93-x86_64-1.txz:  Upgraded.
x/ibus-m17n-1.4.11-x86_64-1.txz:  Upgraded.
x/libXft-2.3.5-x86_64-1.txz:  Upgraded.
xap/mozilla-firefox-104.0.2-x86_64-1.txz:  Upgraded.
  This is a bugfix release.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/104.0.2/releasenotes/
xap/vim-gvim-9.0.0396-x86_64-1.txz:  Upgraded.
xfce/xfce4-pulseaudio-plugin-0.4.4-x86_64-1.txz:  Upgraded.
isolinux/initrd.img:  Rebuilt.
kernels/*:  Upgraded.
usb-and-pxe-installers/usbboot.img:  Rebuilt.
2022-09-07 07:00:17 +02:00
Patrick J Volkerding
bca20c645a Thu Sep 1 03:08:39 UTC 2022
a/aaa_glibc-solibs-2.36-x86_64-3.txz:  Rebuilt.
a/kernel-generic-5.19.6-x86_64-1.txz:  Upgraded.
a/kernel-huge-5.19.6-x86_64-1.txz:  Upgraded.
a/kernel-modules-5.19.6-x86_64-1.txz:  Upgraded.
d/git-2.37.3-x86_64-1.txz:  Upgraded.
d/kernel-headers-5.19.6-x86-1.txz:  Upgraded.
d/ninja-1.11.1-x86_64-1.txz:  Upgraded.
k/kernel-source-5.19.6-noarch-1.txz:  Upgraded.
kde/krename-5.0.2-x86_64-1.txz:  Upgraded.
l/glibc-2.36-x86_64-3.txz:  Rebuilt.
  Applied all post-release patches from the 2.36 branch.
  This fixes a security issue introduced in glibc-2.36: When the syslog
  function is passed a crafted input string larger than 1024 bytes, it
  reads uninitialized memory from the heap and prints it to the target log
  file, potentially revealing a portion of the contents of the heap.
  Thanks to marav.
  The patches also help with several packages failing to build from source.
  Thanks to nobodino.
l/glibc-i18n-2.36-x86_64-3.txz:  Rebuilt.
l/glibc-profile-2.36-x86_64-3.txz:  Rebuilt.
l/libssh-0.10.1-x86_64-1.txz:  Upgraded.
n/curl-7.85.0-x86_64-1.txz:  Upgraded.
  This update fixes a security issue:
  control code in cookie denial of service.
  For more information, see:
    https://curl.se/docs/CVE-2022-35252.html
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-35252
  (* Security fix *)
x/fcitx5-gtk-5.0.18-x86_64-1.txz:  Upgraded.
x/fcitx5-qt-5.0.15-x86_64-1.txz:  Upgraded.
x/ico-1.0.6-x86_64-1.txz:  Upgraded.
x/libdrm-2.4.113-x86_64-1.txz:  Upgraded.
x/libfontenc-1.1.6-x86_64-1.txz:  Upgraded.
x/oclock-1.0.5-x86_64-1.txz:  Upgraded.
x/showfont-1.0.6-x86_64-1.txz:  Upgraded.
x/xmh-1.0.4-x86_64-1.txz:  Upgraded.
isolinux/initrd.img:  Rebuilt.
kernels/*:  Upgraded.
usb-and-pxe-installers/usbboot.img:  Rebuilt.
2022-09-01 06:59:48 +02:00
Patrick J Volkerding
b6e39b8bd0 Sat Aug 27 18:13:36 UTC 2022
ap/ksh93-1.0_20220825_b16c91f0-x86_64-1.txz:  Upgraded.
d/doxygen-1.9.5-x86_64-1.txz:  Upgraded.
d/python-pip-22.2.2-x86_64-1.txz:  Upgraded.
l/librsvg-2.54.5-x86_64-1.txz:  Upgraded.
l/libssh-0.10.0-x86_64-1.txz:  Upgraded.
n/NetworkManager-1.40.0-x86_64-1.txz:  Upgraded.
n/fetchmail-6.4.33-x86_64-1.txz:  Upgraded.
x/libFS-1.0.9-x86_64-1.txz:  Upgraded.
x/libXau-1.0.10-x86_64-1.txz:  Upgraded.
x/libXaw3d-1.6.4-x86_64-1.txz:  Upgraded.
x/libXfont2-2.0.6-x86_64-1.txz:  Upgraded.
x/libfontenc-1.1.5-x86_64-1.txz:  Upgraded.
xfce/xfce4-terminal-1.0.4-x86_64-1.txz:  Upgraded.
2022-08-28 07:00:12 +02:00
Patrick J Volkerding
af23b95c8e Fri Aug 26 04:02:20 UTC 2022
a/kernel-generic-5.19.4-x86_64-1.txz:  Upgraded.
a/kernel-huge-5.19.4-x86_64-1.txz:  Upgraded.
a/kernel-modules-5.19.4-x86_64-1.txz:  Upgraded.
a/mcelog-189-x86_64-1.txz:  Upgraded.
ap/cups-filters-1.28.16-x86_64-1.txz:  Upgraded.
ap/vim-9.0.0270-x86_64-1.txz:  Upgraded.
  Fixed use after free and null pointer dereference.
  Thanks to marav for the heads-up.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2946
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2923
  (* Security fix *)
d/kernel-headers-5.19.4-x86-1.txz:  Upgraded.
d/pahole-1.24-x86_64-1.txz:  Upgraded.
k/kernel-source-5.19.4-noarch-1.txz:  Upgraded.
l/babl-0.1.96-x86_64-1.txz:  Upgraded.
l/libtasn1-4.19.0-x86_64-1.txz:  Upgraded.
l/nodejs-18.8.0-x86_64-1.txz:  Upgraded.
n/gnupg2-2.2.37-x86_64-1.txz:  Upgraded.
n/pinentry-1.2.1-x86_64-1.txz:  Upgraded.
x/xisxwayland-2-x86_64-1.txz:  Upgraded.
xap/vim-gvim-9.0.0270-x86_64-1.txz:  Upgraded.
xap/xsnow-3.5.2-x86_64-1.txz:  Upgraded.
isolinux/initrd.img:  Rebuilt.
kernels/*:  Upgraded.
usb-and-pxe-installers/usbboot.img:  Rebuilt.
2022-08-26 07:00:17 +02:00
Patrick J Volkerding
c08e498a00 Tue Aug 23 19:27:56 UTC 2022
ap/inxi-3.3.21_1-noarch-1.txz:  Upgraded.
d/ccache-4.6.2-x86_64-1.txz:  Upgraded.
d/parallel-20220822-noarch-1.txz:  Upgraded.
kde/kleopatra-22.08.0-x86_64-2.txz:  Rebuilt.
  Patched to build with gpgme-1.18.0.
l/babl-0.1.94-x86_64-1.txz:  Upgraded.
l/hunspell-1.7.1-x86_64-1.txz:  Upgraded.
  Fixed invalid read operation in SuggestMgr::leftcommonsubstring
  in suggestmgr.cxx.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-16707
  (* Security fix *)
l/libqalculate-4.3.0-x86_64-1.txz:  Upgraded.
n/ethtool-5.19-x86_64-1.txz:  Upgraded.
n/gpgme-1.18.0-x86_64-1.txz:  Upgraded.
n/nghttp2-1.49.0-x86_64-1.txz:  Upgraded.
x/ibus-1.5.27-x86_64-1.txz:  Upgraded.
x/libglvnd-1.5.0-x86_64-1.txz:  Upgraded.
xap/mozilla-firefox-104.0-x86_64-1.txz:  Upgraded.
  This update contains security fixes and improvements.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/104.0/releasenotes/
    https://www.mozilla.org/security/advisories/mfsa2022-33/
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38472
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38473
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38474
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38475
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38477
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38478
  (* Security fix *)
xap/mozilla-thunderbird-102.2.0-x86_64-1.txz:  Upgraded.
  This release contains security fixes and improvements.
  For more information, see:
    https://www.mozilla.org/en-US/thunderbird/102.2.0/releasenotes/
    https://www.mozilla.org/en-US/security/advisories/mfsa2022-36/
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38472
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38473
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38476
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38477
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38478
  (* Security fix *)
extra/sendmail/sendmail-8.17.1-x86_64-4.txz:  Rebuilt.
  In recent versions of glibc, USE_INET6 has been removed which caused sendmail
  to reject mail from IPv6 addresses. Adding -DHAS_GETHOSTBYNNAME2=1 to the
  site.config.m4 allows the reverse lookups to work again fixing this issue.
  Thanks to talo.
extra/sendmail/sendmail-cf-8.17.1-noarch-4.txz:  Rebuilt.
2022-08-24 07:00:16 +02:00
Patrick J Volkerding
2dbea3b2b0 Sat Aug 20 20:04:15 UTC 2022
ap/vim-9.0.0231-x86_64-1.txz:  Upgraded.
  Fix use after free.
  Thanks to marav for the heads-up.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2889
  (* Security fix *)
l/SDL2-2.24.0-x86_64-1.txz:  Upgraded.
l/SDL2_image-2.6.2-x86_64-1.txz:  Upgraded.
l/SDL2_mixer-2.6.2-x86_64-1.txz:  Upgraded.
l/SDL2_net-2.2.0-x86_64-1.txz:  Upgraded.
l/SDL2_ttf-2.20.1-x86_64-1.txz:  Upgraded.
l/gmime-3.2.13-x86_64-1.txz:  Upgraded.
l/gtk+3-3.24.34-x86_64-1.txz:  Upgraded.
l/gtk4-4.6.7-x86_64-1.txz:  Upgraded.
l/libxslt-1.1.36-x86_64-1.txz:  Upgraded.
x/ibus-libpinyin-1.13.0-x86_64-1.txz:  Upgraded.
xap/vim-gvim-9.0.0231-x86_64-1.txz:  Upgraded.
2022-08-21 07:00:13 +02:00
Patrick J Volkerding
acedcf0daa Tue Aug 16 18:51:34 UTC 2022
a/btrfs-progs-5.19-x86_64-1.txz:  Upgraded.
a/kernel-firmware-20220815_8413c63-noarch-1.txz:  Upgraded.
ap/mariadb-10.6.9-x86_64-1.txz:  Upgraded.
  This update fixes bugs and several security issues.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32082
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32089
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32081
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-25032
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32091
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32084
  (* Security fix *)
l/glade-3.40.0-x86_64-1.txz:  Upgraded.
l/lz4-1.9.4-x86_64-1.txz:  Upgraded.
2022-08-17 07:00:13 +02:00
Patrick J Volkerding
522fb53c22 Mon Aug 15 20:23:47 UTC 2022
a/etc-15.1-x86_64-2.txz:  Rebuilt.
  Added support for $HOME/.profile.d/*.{csh,sh} scripts.
  Thanks to Heinz Wiesinger.
a/mcelog-188-x86_64-1.txz:  Upgraded.
kde/fcitx5-configtool-5.0.14-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
kde/fcitx5-theme-breeze-2.0.0-noarch-1.txz:  Added.
  Thanks to Heinz Wiesinger.
kde/kcm-fcitx-0.5.6-x86_64-4.txz:  Removed.
l/fmt-9.0.0-x86_64-1.txz:  Added.
  Thanks to Steven Voges.
l/librsvg-2.54.4-x86_64-2.txz:  Rebuilt.
  Removed dangling symlink. Thanks to marav.
n/rsync-3.2.5-x86_64-1.txz:  Upgraded.
  Added some file-list safety checking that helps to ensure that a rogue
  sending rsync can't add unrequested top-level names and/or include recursive
  names that should have been excluded by the sender. These extra safety
  checks only require the receiver rsync to be updated. When dealing with an
  untrusted sending host, it is safest to copy into a dedicated destination
  directory for the remote content (i.e. don't copy into a destination
  directory that contains files that aren't from the remote host unless you
  trust the remote host).
  For more information, see:
   https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-29154
  (* Security fix *)
x/anthy-9100h-x86_64-4.txz:  Removed.
x/anthy-unicode-1.0.0.20211224-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx-4.2.9.8-x86_64-3.txz:  Removed.
x/fcitx-anthy-0.2.4-x86_64-1.txz:  Removed.
x/fcitx-configtool-0.4.10-x86_64-3.txz:  Removed.
x/fcitx-hangul-0.3.1-x86_64-3.txz:  Removed.
x/fcitx-kkc-0.1.4-x86_64-3.txz:  Removed.
x/fcitx-libpinyin-0.5.4-x86_64-2.txz:  Removed.
x/fcitx-m17n-0.2.4-x86_64-3.txz:  Removed.
x/fcitx-qt5-1.2.7-x86_64-1.txz:  Removed.
x/fcitx-sayura-0.1.2-x86_64-3.txz:  Removed.
x/fcitx-table-extra-0.3.8-x86_64-3.txz:  Removed.
x/fcitx-table-other-0.2.4-x86_64-3.txz:  Removed.
x/fcitx-unikey-0.2.7-x86_64-3.txz:  Removed.
x/fcitx5-5.0.18-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx5-anthy-5.0.12-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx5-chinese-addons-5.0.14-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx5-gtk-5.0.17-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx5-hangul-5.0.10-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx5-kkc-5.0.10-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx5-m17n-5.0.10-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx5-qt-5.0.14-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx5-sayura-5.0.8-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx5-table-extra-5.0.11-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx5-table-other-5.0.10-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/fcitx5-unikey-5.0.11-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/ibus-1.5.26-x86_64-2.txz:  Rebuilt.
  Use correct path to kimpanel in ibus-autostart.
  Thanks to Lockywolf.
x/ibus-anthy-1.5.14-x86_64-2.txz:  Rebuilt.
  Recompiled against anthy-unicode-1.0.0.20211224.
  Thanks to Heinz Wiesinger.
x/libime-1.0.13-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
x/m17n-lib-1.8.0-x86_64-5.txz:  Rebuilt.
  Rebuilt to drop the dependency on anthy-9100h.
  Thanks to Heinz Wiesinger.
x/skkdic-20210919-noarch-1.txz:  Upgraded.
  Thanks to Heinz Wiesinger.
x/x11-skel-7.7-x86_64-9.txz:  Rebuilt.
  Added imconfig script for selecting the input method.
  Thanks to Heinz Wiesinger.
x/xcb-imdkit-1.0.3-x86_64-1.txz:  Added.
  Thanks to Heinz Wiesinger.
2022-08-16 07:00:14 +02:00
Patrick J Volkerding
8183d9218b Sun Aug 14 18:32:51 UTC 2022
a/sysklogd-2.4.4-x86_64-1.txz:  Upgraded.
kde/attica-5.97.0-x86_64-1.txz:  Upgraded.
kde/baloo-5.97.0-x86_64-1.txz:  Upgraded.
kde/bluez-qt-5.97.0-x86_64-1.txz:  Upgraded.
kde/breeze-icons-5.97.0-noarch-1.txz:  Upgraded.
kde/extra-cmake-modules-5.97.0-x86_64-1.txz:  Upgraded.
kde/frameworkintegration-5.97.0-x86_64-1.txz:  Upgraded.
kde/kactivities-5.97.0-x86_64-1.txz:  Upgraded.
kde/kactivities-stats-5.97.0-x86_64-1.txz:  Upgraded.
kde/kapidox-5.97.0-x86_64-1.txz:  Upgraded.
kde/karchive-5.97.0-x86_64-1.txz:  Upgraded.
kde/kauth-5.97.0-x86_64-1.txz:  Upgraded.
kde/kbookmarks-5.97.0-x86_64-1.txz:  Upgraded.
kde/kcalendarcore-5.97.0-x86_64-1.txz:  Upgraded.
kde/kcmutils-5.97.0-x86_64-1.txz:  Upgraded.
kde/kcodecs-5.97.0-x86_64-1.txz:  Upgraded.
kde/kcompletion-5.97.0-x86_64-1.txz:  Upgraded.
kde/kconfig-5.97.0-x86_64-1.txz:  Upgraded.
kde/kconfigwidgets-5.97.0-x86_64-1.txz:  Upgraded.
kde/kcontacts-5.97.0-x86_64-1.txz:  Upgraded.
kde/kcoreaddons-5.97.0-x86_64-1.txz:  Upgraded.
kde/kcrash-5.97.0-x86_64-1.txz:  Upgraded.
kde/kdav-5.97.0-x86_64-1.txz:  Upgraded.
kde/kdbusaddons-5.97.0-x86_64-1.txz:  Upgraded.
kde/kdeclarative-5.97.0-x86_64-1.txz:  Upgraded.
kde/kded-5.97.0-x86_64-1.txz:  Upgraded.
kde/kdelibs4support-5.97.0-x86_64-1.txz:  Upgraded.
kde/kdesignerplugin-5.97.0-x86_64-1.txz:  Upgraded.
kde/kdesu-5.97.0-x86_64-1.txz:  Upgraded.
kde/kdewebkit-5.97.0-x86_64-1.txz:  Upgraded.
kde/kdnssd-5.97.0-x86_64-1.txz:  Upgraded.
kde/kdoctools-5.97.0-x86_64-1.txz:  Upgraded.
kde/kemoticons-5.97.0-x86_64-1.txz:  Upgraded.
kde/kfilemetadata-5.97.0-x86_64-1.txz:  Upgraded.
kde/kglobalaccel-5.97.0-x86_64-1.txz:  Upgraded.
kde/kguiaddons-5.97.0-x86_64-1.txz:  Upgraded.
kde/kholidays-5.97.0-x86_64-1.txz:  Upgraded.
kde/khtml-5.97.0-x86_64-1.txz:  Upgraded.
kde/ki18n-5.97.0-x86_64-1.txz:  Upgraded.
kde/kiconthemes-5.97.0-x86_64-1.txz:  Upgraded.
kde/kidletime-5.97.0-x86_64-1.txz:  Upgraded.
kde/kimageformats-5.97.0-x86_64-1.txz:  Upgraded.
kde/kinit-5.97.0-x86_64-1.txz:  Upgraded.
kde/kio-5.97.0-x86_64-1.txz:  Upgraded.
kde/kirigami2-5.97.0-x86_64-1.txz:  Upgraded.
kde/kitemmodels-5.97.0-x86_64-1.txz:  Upgraded.
kde/kitemviews-5.97.0-x86_64-1.txz:  Upgraded.
kde/kjobwidgets-5.97.0-x86_64-1.txz:  Upgraded.
kde/kjs-5.97.0-x86_64-1.txz:  Upgraded.
kde/kjsembed-5.97.0-x86_64-1.txz:  Upgraded.
kde/kmediaplayer-5.97.0-x86_64-1.txz:  Upgraded.
kde/knewstuff-5.97.0-x86_64-1.txz:  Upgraded.
kde/knotifications-5.97.0-x86_64-1.txz:  Upgraded.
kde/knotifyconfig-5.97.0-x86_64-1.txz:  Upgraded.
kde/kpackage-5.97.0-x86_64-1.txz:  Upgraded.
kde/kparts-5.97.0-x86_64-1.txz:  Upgraded.
kde/kpeople-5.97.0-x86_64-1.txz:  Upgraded.
kde/kplotting-5.97.0-x86_64-1.txz:  Upgraded.
kde/kpty-5.97.0-x86_64-1.txz:  Upgraded.
kde/kquickcharts-5.97.0-x86_64-1.txz:  Upgraded.
kde/kross-5.97.0-x86_64-1.txz:  Upgraded.
kde/krunner-5.97.0-x86_64-1.txz:  Upgraded.
kde/kservice-5.97.0-x86_64-1.txz:  Upgraded.
kde/ktexteditor-5.97.0-x86_64-1.txz:  Upgraded.
kde/ktextwidgets-5.97.0-x86_64-1.txz:  Upgraded.
kde/kunitconversion-5.97.0-x86_64-1.txz:  Upgraded.
kde/kwallet-5.97.0-x86_64-1.txz:  Upgraded.
kde/kwayland-5.97.0-x86_64-1.txz:  Upgraded.
kde/kwidgetsaddons-5.97.0-x86_64-1.txz:  Upgraded.
kde/kwindowsystem-5.97.0-x86_64-1.txz:  Upgraded.
kde/kxmlgui-5.97.0-x86_64-1.txz:  Upgraded.
kde/kxmlrpcclient-5.97.0-x86_64-1.txz:  Upgraded.
kde/modemmanager-qt-5.97.0-x86_64-1.txz:  Upgraded.
kde/networkmanager-qt-5.97.0-x86_64-1.txz:  Upgraded.
kde/oxygen-icons5-5.97.0-noarch-1.txz:  Upgraded.
kde/plasma-framework-5.97.0-x86_64-1.txz:  Upgraded.
kde/prison-5.97.0-x86_64-1.txz:  Upgraded.
kde/purpose-5.97.0-x86_64-1.txz:  Upgraded.
kde/qqc2-desktop-style-5.97.0-x86_64-1.txz:  Upgraded.
kde/solid-5.97.0-x86_64-1.txz:  Upgraded.
kde/sonnet-5.97.0-x86_64-1.txz:  Upgraded.
kde/syndication-5.97.0-x86_64-1.txz:  Upgraded.
kde/syntax-highlighting-5.97.0-x86_64-1.txz:  Upgraded.
kde/threadweaver-5.97.0-x86_64-1.txz:  Upgraded.
x/xf86-video-mach64-6.9.7-x86_64-1.txz:  Added.
x/xf86-video-mga-2.0.1-x86_64-1.txz:  Added.
x/xf86-video-r128-20220127_7b0941d-x86_64-1.txz:  Added.
2022-08-14 23:00:17 +02:00
Patrick J Volkerding
a5f98c65b1 Tue Aug 9 19:25:22 UTC 2022
a/mcelog-187-x86_64-1.txz:  Upgraded.
l/zlib-1.2.12-x86_64-2.txz:  Rebuilt.
  Applied an upstream patch to restore the handling of CRC inputs to be the
  same as in previous releases of zlib. This fixes an issue with OpenJDK.
  Thanks to alienBOB.
x/xf86-input-wacom-1.1.0-x86_64-1.txz:  Upgraded.
xap/mozilla-thunderbird-102.1.2-x86_64-1.txz:  Upgraded.
  This is a bugfix release.
  For more information, see:
    https://www.mozilla.org/en-US/thunderbird/102.1.2/releasenotes/
2022-08-10 07:00:13 +02:00