Commit graph

10 commits

Author SHA1 Message Date
Patrick J Volkerding
c9ced48b11 Tue Jul 23 18:54:25 UTC 2024
Hey folks, we got a new glibc and are beginning the process of baking the new
default compile flags into the toolchain, the graphics stack, and whatever else
happens along. Enjoy! :-)
a/aaa_glibc-solibs-2.40-x86_64-1.txz:  Upgraded.
a/libblockdev-3.1.1_1-x86_64-2.txz:  Rebuilt.
  Fix build against recent ext2fs.h. Thanks to shipujin.
a/xfsprogs-6.9.0-x86_64-1.txz:  Upgraded.
ap/rpm-4.19.1.1-x86_64-3.txz:  Rebuilt.
ap/slackpkg-15.0.10-noarch-4.txz:  Rebuilt.
  Prefer gpg1 again. Going with the modern gpg with more dependencies was
  a mistake in this case. (now we know why gnupg-1 is still around :-)
  Thanks to Petri Kaukasoina.
d/binutils-2.42-x86_64-3.txz:  Rebuilt.
d/cargo-vendor-filterer-0.5.14-x86_64-2.txz:  Rebuilt.
d/cbindgen-0.26.0-x86_64-2.txz:  Rebuilt.
d/ccache-4.10.2-x86_64-1.txz:  Upgraded.
d/cmake-3.30.1-x86_64-2.txz:  Rebuilt.
d/gcc-14.1.0-x86_64-2.txz:  Rebuilt.
d/gcc-g++-14.1.0-x86_64-2.txz:  Rebuilt.
d/gcc-gdc-14.1.0-x86_64-2.txz:  Rebuilt.
d/gcc-gfortran-14.1.0-x86_64-2.txz:  Rebuilt.
d/gcc-gm2-14.1.0-x86_64-2.txz:  Rebuilt.
d/gcc-gnat-14.1.0-x86_64-2.txz:  Rebuilt.
d/gcc-go-14.1.0-x86_64-2.txz:  Rebuilt.
d/gcc-objc-14.1.0-x86_64-2.txz:  Rebuilt.
d/libgccjit-14.1.0-x86_64-2.txz:  Rebuilt.
d/libtool-2.4.7-x86_64-8.txz:  Rebuilt.
d/parallel-20240722-noarch-1.txz:  Upgraded.
d/pkg-config-0.29.2-x86_64-5.txz:  Rebuilt.
d/python-setuptools-71.1.0-x86_64-1.txz:  Upgraded.
d/ruby-3.3.4-x86_64-2.txz:  Rebuilt.
d/rust-bindgen-0.69.4-x86_64-2.txz:  Rebuilt.
d/strace-6.10-x86_64-1.txz:  Upgraded.
d/subversion-1.14.3-x86_64-3.txz:  Rebuilt.
e/emacs-29.4-x86_64-2.txz:  Rebuilt.
l/PyQt-builder-1.16.4-x86_64-2.txz:  Rebuilt.
l/PyQt5-5.15.11-x86_64-1.txz:  Upgraded.
l/PyQt5_sip-12.15.0-x86_64-2.txz:  Rebuilt.
l/argon2-20190702-x86_64-6.txz:  Rebuilt.
l/ffmpeg-6.1.1-x86_64-5.txz:  Rebuilt.
l/glibc-2.40-x86_64-1.txz:  Upgraded.
  This update fixes security issues:
  nscd: Stack-based buffer overflow in netgroup cache.
  nscd: Null pointer crash after notfound response.
  nscd: netgroup cache may terminate daemon on memory allocation failure.
  nscd: netgroup cache assumes NSS callback uses in-buffer strings.
  These vulnerabilities were only present in the nscd binary.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2024-33599
    https://www.cve.org/CVERecord?id=CVE-2024-33600
    https://www.cve.org/CVERecord?id=CVE-2024-33601
    https://www.cve.org/CVERecord?id=CVE-2024-33602
  (* Security fix *)
l/glibc-i18n-2.40-x86_64-1.txz:  Upgraded.
l/glibc-profile-2.40-x86_64-1.txz:  Upgraded.
l/gst-plugins-good-1.24.5-x86_64-2.txz:  Rebuilt.
l/libcdio-paranoia-10.2+2.0.2-x86_64-1.txz:  Upgraded.
l/libclc-18.1.8-x86_64-3.txz:  Rebuilt.
l/libproxy-0.5.8-x86_64-1.txz:  Upgraded.
l/lz4-1.10.0-x86_64-1.txz:  Upgraded.
l/poppler-24.07.0-x86_64-2.txz:  Rebuilt.
l/python-importlib_metadata-8.1.0-x86_64-1.txz:  Upgraded.
l/python-sphinx-7.4.7-x86_64-1.txz:  Upgraded.
l/qt5-5.15.14_20240716_ae0c8451-x86_64-1.txz:  Upgraded.
l/qt5-webkit-5.212.0_alpha4-x86_64-13.txz:  Rebuilt.
l/qt6-6.7.2_20240610_3f005f1e-x86_64-3.txz:  Rebuilt.
l/sip-6.8.6-x86_64-2.txz:  Rebuilt.
l/spirv-llvm-translator-18.1.2-x86_64-2.txz:  Rebuilt.
l/v4l-utils-1.28.0-x86_64-1.txz:  Upgraded.
n/bind-9.18.28-x86_64-1.txz:  Upgraded.
  This update fixes security issues:
  Remove SIG(0) support from named as a countermeasure for CVE-2024-1975.
  qctx-zversion was not being cleared when it should have been leading to
  an assertion failure if it needed to be reused.
  An excessively large number of rrtypes per owner can slow down database query
  processing, so a limit has been placed on the number of rrtypes that can be
  stored per owner (node) in a cache or zone database. This is configured with
  the new "max-rrtypes-per-name" option, and defaults to 100.
  Excessively large rdatasets can slow down database query processing, so a
  limit has been placed on the number of records that can be stored per
  rdataset in a cache or zone database. This is configured with the new
  "max-records-per-type" option, and defaults to 100.
  Malicious DNS client that sends many queries over TCP but never reads
  responses can cause server to respond slowly or not respond at all for other
  clients.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2024-1975
    https://www.cve.org/CVERecord?id=CVE-2024-4076
    https://www.cve.org/CVERecord?id=CVE-2024-1737
    https://www.cve.org/CVERecord?id=CVE-2024-0760
  (* Security fix *)
n/fetchmail-6.4.39-x86_64-1.txz:  Upgraded.
n/obexftp-0.24.2-x86_64-13.txz:  Rebuilt.
n/pinentry-1.3.1-x86_64-2.txz:  Rebuilt.
n/wpa_supplicant-2.11-x86_64-1.txz:  Upgraded.
x/fcitx5-qt-5.1.6-x86_64-3.txz:  Rebuilt.
x/ibus-m17n-1.4.30-x86_64-1.txz:  Upgraded.
x/libdrm-2.4.122-x86_64-2.txz:  Rebuilt.
x/marisa-0.2.6-x86_64-10.txz:  Rebuilt.
x/mesa-24.1.4-x86_64-2.txz:  Rebuilt.
x/vulkan-sdk-1.3.275.0-x86_64-3.txz:  Rebuilt.
xap/audacious-4.4-x86_64-2.txz:  Rebuilt.
xap/audacious-plugins-4.4-x86_64-2.txz:  Rebuilt.
xap/mozilla-thunderbird-128.0.1esr-x86_64-1.txz:  Upgraded.
  This is a bugfix release.
  For more information, see:
    https://www.mozilla.org/en-US/thunderbird/128.0.1esr/releasenotes/
xap/xaos-4.3.2-x86_64-2.txz:  Rebuilt.
extra/emacs-regular-build/emacs-29.4-x86_64-2_regular.txz:  Rebuilt.
2024-07-23 22:50:05 +02:00
Patrick J Volkerding
73b28184f0 Wed Jul 10 17:48:01 UTC 2024
a/grub-2.12-x86_64-11.txz:  Rebuilt.
  Build using --with-dejavufont=/usr/share/fonts/TTF/DejaVuSans.ttf so that
  the starfield theme is included. Thanks to opty.
d/mercurial-6.8-x86_64-1.txz:  Upgraded.
d/python-setuptools-70.3.0-x86_64-1.txz:  Upgraded.
d/rinutils-0.10.3-x86_64-1.txz:  Upgraded.
d/ruby-3.3.4-x86_64-1.txz:  Upgraded.
l/glib2-2.80.4-x86_64-1.txz:  Upgraded.
l/mozjs115-115.13.0esr-x86_64-1.txz:  Upgraded.
l/nodejs-20.15.1-x86_64-1.txz:  Upgraded.
l/qt6-6.7.2_20240610_3f005f1e-x86_64-2.txz:  Rebuilt.
  [PATCH] Client: Ensure that guessed popup parent has a shell surface.
  Thanks to ctrlaltca.
  Add another patch to fix race conditions building with ninja.
n/bluez-5.77-x86_64-1.txz:  Upgraded.
n/getmail-6.19.03-x86_64-1.txz:  Upgraded.
x/xdm-1.1.16-x86_64-2.txz:  Rebuilt.
  Patched to fix an issue drawing/erasing text in the login dialog.
  Thanks to GazL.
x/xorg-server-xwayland-24.1.1-x86_64-1.txz:  Upgraded.
xap/mozilla-firefox-128.0esr-x86_64-1.txz:  Upgraded.
  This update contains security fixes and improvements.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/128.0esr/releasenotes/
    https://www.mozilla.org/security/advisories/mfsa2024-29/
    https://www.cve.org/CVERecord?id=CVE-2024-6606
    https://www.cve.org/CVERecord?id=CVE-2024-6607
    https://www.cve.org/CVERecord?id=CVE-2024-6608
    https://www.cve.org/CVERecord?id=CVE-2024-6609
    https://www.cve.org/CVERecord?id=CVE-2024-6610
    https://www.cve.org/CVERecord?id=CVE-2024-6600
    https://www.cve.org/CVERecord?id=CVE-2024-6601
    https://www.cve.org/CVERecord?id=CVE-2024-6602
    https://www.cve.org/CVERecord?id=CVE-2024-6603
    https://www.cve.org/CVERecord?id=CVE-2024-6611
    https://www.cve.org/CVERecord?id=CVE-2024-6612
    https://www.cve.org/CVERecord?id=CVE-2024-6613
    https://www.cve.org/CVERecord?id=CVE-2024-6614
    https://www.cve.org/CVERecord?id=CVE-2024-6604
    https://www.cve.org/CVERecord?id=CVE-2024-6615
  (* Security fix *)
2024-07-10 20:43:22 +02:00
Patrick J Volkerding
5166171167 Fri Jun 21 00:44:39 UTC 2024
a/mcelog-200-x86_64-1.txz:  Upgraded.
a/shadow-4.16.0-x86_64-1.txz:  Upgraded.
d/llvm-18.1.8-x86_64-1.txz:  Upgraded.
  Build from git rather than individual tarballs (this simplifies things).
  Build additional projects: bolt, flang, mlir.
l/gmime-3.2.15-x86_64-1.txz:  Upgraded.
l/gst-plugins-bad-free-1.24.5-x86_64-1.txz:  Upgraded.
l/gst-plugins-base-1.24.5-x86_64-1.txz:  Upgraded.
l/gst-plugins-good-1.24.5-x86_64-1.txz:  Upgraded.
l/gst-plugins-libav-1.24.5-x86_64-1.txz:  Upgraded.
l/gstreamer-1.24.5-x86_64-1.txz:  Upgraded.
l/libclc-18.1.8-x86_64-1.txz:  Upgraded.
l/mujs-1.3.5-x86_64-1.txz:  Upgraded.
l/nodejs-20.15.0-x86_64-1.txz:  Upgraded.
l/python-importlib_metadata-7.2.0-x86_64-1.txz:  Upgraded.
l/qt6-6.7.2_20240610_3f005f1e-x86_64-1.txz:  Upgraded.
n/openvpn-2.6.11-x86_64-1.txz:  Upgraded.
x/libva-2.22.0-x86_64-1.txz:  Upgraded.
x/libva-utils-2.22.0-x86_64-1.txz:  Upgraded.
2024-06-21 04:38:16 +02:00
Patrick J Volkerding
5e846dcebf Sun Jun 9 18:41:17 UTC 2024
l/qt6-6.7.1_20240516_6977d02f-x86_64-3.txz:  Rebuilt.
  Fixed config option: -DINSTALL_MKSPECSDIR=lib${LIBDIRSUFFIX}/qt6/mkspecs
  Thanks to USUARIONUEVO.
x/fcitx5-qt-5.1.6-x86_64-2.txz:  Rebuilt.
  Recompiled against qt6-6.7.1_20240516_6977d02f to fix segfaults.
  Thanks to rinza.
x/mesa-24.1.1-x86_64-3.txz:  Rebuilt.
  Don't allow amber drivers to overwrite modern ones. Thanks to LuckyCyborg.
  Bundle the subprojects instead of allowing them to download.
xfce/xfce4-settings-4.18.5-x86_64-1.txz:  Upgraded.
2024-06-09 21:04:22 +02:00
Patrick J Volkerding
40d0483337 Wed Jun 5 19:06:36 UTC 2024
a/kernel-firmware-20240604_22643bb-noarch-1.txz:  Upgraded.
a/less-657-x86_64-1.txz:  Upgraded.
a/openssl-solibs-3.3.1-x86_64-1.txz:  Upgraded.
d/cmake-3.29.4-x86_64-1.txz:  Upgraded.
l/poppler-24.06.0-x86_64-1.txz:  Upgraded.
l/protobuf-27.0-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
l/python-zipp-3.19.2-x86_64-1.txz:  Upgraded.
l/qt6-6.7.1_20240516_6977d02f-x86_64-2.txz:  Rebuilt.
  Recompiled against protobuf-27.0.
n/ca-certificates-20240604-noarch-1.txz:  Upgraded.
  This update provides the latest CA certificates to check for the
  authenticity of SSL connections.
n/mosh-1.4.0-x86_64-2.txz:  Rebuilt.
  Recompiled against protobuf-27.0.
n/openssl-3.3.1-x86_64-1.txz:  Upgraded.
  This update fixes bugs and one low severity security issue:
  Calling the OpenSSL API function SSL_free_buffers may cause memory to be
  accessed that was previously freed in some situations. Our investigations
  indicate that this function is rarely used by applications.
  For more information, see:
    https://www.openssl.org/news/secadv/20240528.txt
    https://www.cve.org/CVERecord?id=CVE-2024-4741
  (* Security fix *)
2024-06-05 23:01:12 +02:00
Patrick J Volkerding
9e8b1d12ae Wed May 22 18:57:13 UTC 2024
a/e2fsprogs-1.47.1-x86_64-1.txz:  Upgraded.
a/iniparser-4.2.2-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
a/ndctl-79-x86_64-2.txz:  Rebuilt.
  Recompiled against iniparser-4.2.2.
d/python-setuptools-70.0.0-x86_64-1.txz:  Upgraded.
kde/calligra-3.2.1-x86_64-39.txz:  Rebuilt.
  Recompiled against poppler-24.05.0.
kde/cantor-23.08.5-x86_64-6.txz:  Rebuilt.
  Recompiled against poppler-24.05.0.
kde/kfilemetadata-5.116.0-x86_64-2.txz:  Rebuilt.
  Recompiled against poppler-24.05.0.
kde/kile-2.9.93-x86_64-33.txz:  Rebuilt.
  Recompiled against poppler-24.05.0.
kde/kitinerary-23.08.5-x86_64-4.txz:  Rebuilt.
  Recompiled against poppler-24.05.0.
kde/krita-5.2.2-x86_64-9.txz:  Rebuilt.
  Recompiled against poppler-24.05.0.
kde/okular-23.08.5-x86_64-4.txz:  Rebuilt.
  Recompiled against poppler-24.05.0.
kde/qqc2-desktop-style-5.116.1-x86_64-1.txz:  Upgraded.
l/hicolor-icon-theme-0.18-noarch-1.txz:  Upgraded.
l/libcupsfilters-2.0.0-x86_64-2.txz:  Rebuilt.
  Recompiled against poppler-24.05.0.
l/lmdb-0.9.33-x86_64-1.txz:  Upgraded.
l/poppler-24.05.0-x86_64-1.txz:  Upgraded.
  This seems to require C++20 now...
  Shared library .so-version bump.
l/python-requests-2.32.1-x86_64-1.txz:  Upgraded.
l/qt6-6.7.1_20240516_6977d02f-x86_64-1.txz:  Upgraded.
n/curl-8.8.0-x86_64-1.txz:  Upgraded.
n/openldap-2.6.8-x86_64-1.txz:  Upgraded.
x/xorg-server-xwayland-24.1.0-x86_64-1.txz:  Upgraded.
  Thanks to marav for the patch.
2024-05-22 22:54:38 +02:00
Patrick J Volkerding
b5abc7571b Tue Mar 26 22:24:59 UTC 2024
l/gjs-1.80.2-x86_64-1.txz:  Upgraded.
l/qt6-6.6.3_20240319_c2516323-x86_64-1.txz:  Upgraded.
2024-03-27 00:09:26 +01:00
Patrick J Volkerding
66e838eb2b Thu Mar 7 20:40:08 UTC 2024
ap/ghostscript-10.03.0-x86_64-1.txz:  Upgraded.
  This update addresses a security issue:
  A vulnerability was identified in the way Ghostscript/GhostPDL called
  tesseract for the OCR devices, which could allow arbitrary code execution.
  Thanks to J_W for the heads-up.
  (* Security fix *)
ap/lxc-4.0.12-x86_64-3.txz:  Rebuilt.
  lxc-slackware.in: include gnupg2 (not gnupg) for slackpkg.
ap/slackpkg-15.0.10-noarch-3.txz:  Rebuilt.
  core-functions.sh: use gpg2, not gpg.
d/Cython-3.0.9-x86_64-1.txz:  Upgraded.
d/git-2.44.0-x86_64-2.txz:  Rebuilt.
  Include git-subtree. Thanks to gwhl.
d/llvm-18.1.0-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
kde/kdevelop-23.08.5-x86_64-2.txz:  Rebuilt.
  Recompiled against llvm-18.1.0.
l/openexr-3.2.3-x86_64-1.txz:  Upgraded.
l/python-importlib_metadata-7.0.2-x86_64-1.txz:  Upgraded.
l/python-trove-classifiers-2024.3.3-x86_64-1.txz:  Upgraded.
l/qt5-5.15.12_20240228_6609503f-x86_64-1.txz:  Upgraded.
  Compiled against llvm-18.1.0.
l/qt6-6.6.2_20240210_15b7e743-x86_64-3.txz:  Rebuilt.
  Recompiled against llvm-18.1.0.
l/spirv-llvm-translator-18.1.0-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
n/gnupg2-2.4.5-x86_64-1.txz:  Upgraded.
n/libassuan-2.5.7-x86_64-1.txz:  Upgraded.
n/postfix-3.9.0-x86_64-1.txz:  Upgraded.
x/mesa-24.0.2-x86_64-2.txz:  Rebuilt.
  Recompiled against llvm-18.1.0 and spirv-llvm-translator-18.1.0.
isolinux/initrd.img:  Rebuilt.
  Fixed kernel version. Thanks to chrisVV.
usb-and-pxe-installers/usbboot.img:  Rebuilt.
  Fixed kernel version. Thanks to chrisVV.
2024-03-07 22:49:08 +01:00
Patrick J Volkerding
eabd4b9fab Sun Mar 3 20:50:24 UTC 2024
d/gdb-14.2-x86_64-1.txz:  Upgraded.
l/python-PyYAML-6.0.1-x86_64-2.txz:  Rebuilt.
  Fixed build with Cython >= 3. Thanks to Stuart Winter.
l/qt6-6.6.2_20240210_15b7e743-x86_64-2.txz:  Rebuilt.
  Fixed the sdpscanner6 symlink by moving INSTALL_LIBEXECDIR to the expected
  location.
x/editres-1.0.9-x86_64-1.txz:  Upgraded.
x/encodings-1.1.0-noarch-1.txz:  Upgraded.
x/gccmakedep-1.0.4-noarch-1.txz:  Upgraded.
x/libXaw3d-1.6.6-x86_64-1.txz:  Upgraded.
x/libXcursor-1.2.2-x86_64-1.txz:  Upgraded.
x/libXdmcp-1.1.5-x86_64-1.txz:  Upgraded.
x/libfontenc-1.1.8-x86_64-1.txz:  Upgraded.
x/libxcb-1.16.1-x86_64-1.txz:  Upgraded.
x/listres-1.0.6-x86_64-1.txz:  Upgraded.
x/mkfontscale-1.2.3-x86_64-1.txz:  Upgraded.
x/xauth-1.1.3-x86_64-1.txz:  Upgraded.
x/xlsfonts-1.0.8-x86_64-1.txz:  Upgraded.
2024-03-03 22:35:28 +01:00
Patrick J Volkerding
72065739ec Wed Feb 28 18:36:48 UTC 2024
d/parallel-20240222-noarch-1.txz:  Upgraded.
kde/krita-5.2.2-x86_64-4.txz:  Rebuilt.
  Recompiled against libunibreak-6.0.
l/accountsservice-23.13.9-x86_64-1.txz:  Upgraded.
  Thanks to reddog83.
l/libass-0.17.1-x86_64-2.txz:  Rebuilt.
  Recompiled against libunibreak-6.0.
l/libunibreak-6.0-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
l/orc-0.4.38-x86_64-1.txz:  Upgraded.
l/python-requests-2.31.0-x86_64-1.txz:  Upgraded.
l/python-urllib3-2.2.1-x86_64-1.txz:  Upgraded.
l/qt6-6.6.2_20240210_15b7e743-x86_64-1.txz:  Added.
n/wpa_supplicant-2.10-x86_64-3.txz:  Rebuilt.
  Patched the implementation of PEAP in wpa_supplicant to prevent an
  authentication bypass. For a successful attack, wpa_supplicant must be
  configured to not verify the network's TLS certificate during Phase 1
  authentication, and an eap_peap_decrypt vulnerability can then be abused
  to skip Phase 2 authentication. The attack vector is sending an EAP-TLV
  Success packet instead of starting Phase 2. This allows an adversary to
  impersonate Enterprise Wi-Fi networks.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2023-52160
  (* Security fix *)
xap/gparted-1.6.0-x86_64-1.txz:  Upgraded.
2024-02-28 20:34:19 +01:00