Commit Graph

4806 Commits

Author SHA1 Message Date
Arne Fitzenreiter
36585d00bd python: update to 2.7.3. 2012-05-12 19:31:17 +02:00
Arne Fitzenreiter
8f6a5178e8 fix core58 merge problem.
Conflicts:

	config/rootfiles/core/58/filelists/files
2012-05-12 19:30:30 +02:00
Arne Fitzenreiter
5479803667 core59: add openssl to core update. 2012-05-12 19:28:46 +02:00
Arne Fitzenreiter
a6f4183e83 openssl: security update to 0.9.8w. (CVE-2012-2131).
SN1 BIO incomplete fix (CVE-2012-2131)
=======================================

It was discovered that the fix for CVE-2012-2110 released on 19 Apr
2012 was not sufficient to correct the issue for OpenSSL 0.9.8.

Please see http://www.openssl.org/news/secadv_20120419.txt for details
of that vulnerability.

This issue only affects OpenSSL 0.9.8v.  OpenSSL 1.0.1a and 1.0.0i
already contain a patch sufficient to correct CVE-2012-2110.

Thanks to Red Hat for discovering and fixing this issue.

Affected users should upgrade to 0.9.8w.

References
==========

URL for this Security Advisory:
http://www.openssl.org/news/secadv_20120424.txt
2012-05-12 19:28:24 +02:00
Arne Fitzenreiter
75c2cf6f51 started core59. 2012-05-12 19:24:46 +02:00
Arne Fitzenreiter
9f82cdb1f8 samba: security update to 3.5.15. (CVE-2012-2111).
This security release addresses CVE-2012-2111 (incorrect permission checks when
granting/removing privileges could compromise file server security).
2012-05-02 10:10:07 +02:00
Arne Fitzenreiter
de887913ee samba: security update to 3.5.14. (CVE-2012-1182).
Further information can be found in the security advisory:
http://www.samba.org/samba/security/CVE-2012-1182
2012-04-10 20:21:37 +02:00
Arne Fitzenreiter
5cbbd5f1ed finished core58. 2012-04-07 11:39:23 +02:00
Arne Fitzenreiter
8969d075e0 hwdata: updata usb and pci ids database. 2012-04-07 11:38:23 +02:00
Arne Fitzenreiter
b7d1e1c4a4 GeoIP: update database to 03032012. 2012-04-07 11:37:35 +02:00
Arne Fitzenreiter
2d40b8174b core58: add cryptodev module to updater. 2012-04-07 11:37:03 +02:00
Arne Fitzenreiter
2c0a849f7a cryptodev: update to 1.4. 2012-04-07 11:36:40 +02:00
Arne Fitzenreiter
f028065fd1 openssl: fix aes accleration via cryptodev. 2012-04-07 11:36:20 +02:00
Michael Tremer
a4826680bc pound: Add patch to select certificates by their SANs.
http://www.apsis.ch/pound/pound_list/archive/2012/2012-02/1329442080000#1329442080000
2012-04-07 11:35:46 +02:00
Arne Fitzenreiter
844d37795d clamav: updated to 0.97.4. 2012-04-07 11:35:28 +02:00
Arne Fitzenreiter
ef5d80c033 openssl: update to 0.9.8u. 2012-04-07 11:35:01 +02:00
Arne Fitzenreiter
67ab1d6206 samba: update to 3.5.13. 2012-04-07 11:34:31 +02:00
Michael Tremer
25a063e66d git: Update to 1.7.9.3. 2012-04-07 11:33:52 +02:00
Michael Tremer
88511b6145 fireinfo: Update to 2.1.4.
Fixes an issue with the detection of online CPUs on ARM.
2012-04-07 11:32:51 +02:00
Arne Fitzenreiter
d2bbe7f46e usb_modeswitch: update to 1.2.3. 2012-04-07 11:32:16 +02:00
Arne Fitzenreiter
5d934a73dc strongswan: update to 4.6.2.
fixes #10037
2012-04-07 11:31:34 +02:00
Michael Tremer
16ada955ac Add libpng update to core update 58. 2012-04-07 11:31:05 +02:00
Michael Tremer
8cbc8e01b3 libpng: Update to 1.2.46.
Fixes several security issues from 2011.
2012-04-07 11:30:03 +02:00
Michael Tremer
0f0a5a6e5f Open core update 58 and import changes that were already commited. 2012-04-07 11:23:15 +02:00
Michael Tremer
524fc72621 openvpn: Update to 2.2.2.
Add --enable-password-save switch that was requested by the
community.

See bug #10036.
2012-04-07 11:22:53 +02:00
Michael Tremer
870f68d7f2 vim: Add "set ruler" option to configuration file.
This will show a small line at the bottom which displays
the current cursor position and more.

References bug #10021.
2012-04-07 11:22:01 +02:00
Arne Fitzenreiter
42fb65f0f3 core57: stop/start ipsec at update. 2012-04-07 11:21:31 +02:00
Arne Fitzenreiter
eb17d0fd69 finished core57. 2012-02-19 12:51:12 +01:00
Arne Fitzenreiter
fa4762fbf8 network: don't set ip address "1.1.1.1".
This change made also green-only with dhcp possible.
configure green to 1.1.1.1 and red to dhcp client and RED_DEV=green0.
2012-02-19 12:48:42 +01:00
Dirk Wagner
36661efeec pound: update to latest stable 2.6 2012-02-11 18:28:13 +01:00
Dirk Wagner
dc083d18df pound: update to latest stable 2.6 2012-02-11 18:27:13 +01:00
Dirk Wagner
38d3bcd5c1 nut: fixed wrong version in filename 2012-02-10 22:23:44 +01:00
Dirk Wagner
3412d9ef01 Merge branch 'next' of ssh://git.ipfire.org/pub/git/ipfire-2.x into next 2012-02-10 20:46:44 +01:00
Dirk Wagner
bc48f66315 nut: update to latest version 2.6.3 2012-02-10 20:45:52 +01:00
Michael Tremer
9da0695da7 outgoingfw.cgi: Fix enabled checkbox when editing rules.
When a rule was edited, the enabled checkbox was always unchecked.

References bug #10022.
2012-02-10 11:10:14 +01:00
Michael Tremer
a73f60abb8 strongswan: Customize the welcome banner.
References:
 http://forum.ipfire.org/index.php/topic,5993.0.html
 http://forum.ipfire.org/index.php/topic,3329.0.html
2012-02-10 11:01:42 +01:00
Michael Tremer
732447b9b3 installer: Enhance mountsource.sh script.
Searches for installation images on all partitions on external
media.

References bug #10020.
2012-02-08 22:38:29 +01:00
Michael Tremer
d02a7f9d05 vim: Create configuration files for better usage.
This commits also ships all syntax highlighting information
and among others in /usr/share/vim.

References bug #10021.
2012-02-08 22:35:30 +01:00
Michael Tremer
fdde104f2d Merge branch 'master' into next 2012-02-08 21:54:26 +01:00
Michael Tremer
9e31e76b8b Merge branch 'master' of ssh://git.ipfire.org/pub/git/ipfire-2.x 2012-02-08 21:47:09 +01:00
Michael Tremer
39d36c000a Remove donation button from credits.cgi. 2012-02-08 21:39:26 +01:00
Arne Fitzenreiter
261f88ebe6 apache: fix typo. 2012-02-08 19:59:36 +01:00
Arne Fitzenreiter
2b5d1d8f70 cups: update to 1.4.8. 2012-02-08 07:50:17 +01:00
Arne Fitzenreiter
da997327ad core57: add apache and squid to updater. 2012-02-08 07:49:48 +01:00
Arne Fitzenreiter
5971e9a1aa squid: update to 3.19. 2012-02-08 07:48:52 +01:00
Arne Fitzenreiter
7e4506e9c7 apache: security update to 2.2.22.
Fix six low and moderate security flaws. Most of them are not important for ipfire.
low: mod_setenvif .htaccess privilege escalation CVE-2011-3607
low: mod_log_config crash CVE-2012-0021
low: scoreboard parent DoS CVE-2012-0031
moderate: mod_proxy reverse proxy exposure CVE-2011-4317
moderate: error responses can expose cookies CVE-2012-0053
moderate: mod_proxy reverse proxy exposure CVE-2011-3368

For details check: http://httpd.apache.org/security/vulnerabilities_22.html
2012-02-08 07:43:48 +01:00
Arne Fitzenreiter
7d5fdf7954 core57: add php update to updater. 2012-02-05 19:11:17 +01:00
Arne Fitzenreiter
144815dabe php: security update to 5.3.10.
5.3.10 Fixes arbitary remote code execution CVE-2012-0830
5.3.9 Fixes for CVE-2011-4566 and CVE-2011-4885
...
2012-02-05 19:05:18 +01:00
Arne Fitzenreiter
6acda73be0 started core57. 2012-02-05 16:49:37 +01:00
Arne Fitzenreiter
184bee29d0 core56: add static-rules startfiles to updater. 2012-02-05 16:46:57 +01:00