Jan Lentfer
477e28cf0d
foomatic: Clean out /usr/share/foomatic prior to build to prevent hangs
2012-06-17 20:23:35 +02:00
Arne Fitzenreiter
4bd2536f4b
core59: start/stop ipsec and ssh at update.
2012-05-12 19:40:41 +02:00
Arne Fitzenreiter
a18da317d3
finished core59.
2012-05-12 19:35:42 +02:00
Arne Fitzenreiter
c7c8b4aaec
GeoIP: update database to 01052012.
2012-05-12 19:35:10 +02:00
Arne Fitzenreiter
db083dd81e
dhcpcd: ignore MTU Smaller than 577.
...
Normally 576 is the smallest valid mtu but some cable provider set this
also if they support much higher mtu's. Fedora does not accept
this to prevent speed problems with such isp connections so we do the same.
If you really need mtu=576 you can still force at at the setup.
2012-05-12 19:34:47 +02:00
Arne Fitzenreiter
58574e318b
php: security update to 5.3.13 (CVE-2012-2311).
2012-05-12 19:34:19 +02:00
Arne Fitzenreiter
dc7239d678
openssh: update to 6.0p1.
2012-05-12 19:33:54 +02:00
Arne Fitzenreiter
8074eed711
openssl: security update to 0.9.8x (CVE-2012-2333).
...
Invalid TLS/DTLS record attack (CVE-2012-2333)
===============================================
A flaw in the OpenSSL handling of CBC mode ciphersuites in TLS 1.1, 1.2 and
DTLS can be exploited in a denial of service attack on both clients and
servers.
DTLS applications are affected in all versions of OpenSSL. TLS is only
affected in OpenSSL 1.0.1 and later.
Thanks to Codenomicon for discovering this issue using Fuzz-o-Matic fuzzing
as a service testing platform.
The fix was developed by Stephen Henson of the OpenSSL core team.
Affected users should upgrade to OpenSSL 1.0.1c, 1.0.0j or 0.9.8x
References
==========
URL for this Security Advisory:
http://www.openssl.org/news/secadv_20120510.txt
2012-05-12 19:33:31 +02:00
Arne Fitzenreiter
68eeed8285
traceroute: update to 2.0.18 and fix name resolution.
...
fixes #10097
2012-05-12 19:32:23 +02:00
Arne Fitzenreiter
d66d6f8827
strongswan: update to 4.6.3.
2012-05-12 19:31:46 +02:00
Arne Fitzenreiter
36585d00bd
python: update to 2.7.3.
2012-05-12 19:31:17 +02:00
Arne Fitzenreiter
8f6a5178e8
fix core58 merge problem.
...
Conflicts:
config/rootfiles/core/58/filelists/files
2012-05-12 19:30:30 +02:00
Arne Fitzenreiter
5479803667
core59: add openssl to core update.
2012-05-12 19:28:46 +02:00
Arne Fitzenreiter
a6f4183e83
openssl: security update to 0.9.8w. (CVE-2012-2131).
...
SN1 BIO incomplete fix (CVE-2012-2131)
=======================================
It was discovered that the fix for CVE-2012-2110 released on 19 Apr
2012 was not sufficient to correct the issue for OpenSSL 0.9.8.
Please see http://www.openssl.org/news/secadv_20120419.txt for details
of that vulnerability.
This issue only affects OpenSSL 0.9.8v. OpenSSL 1.0.1a and 1.0.0i
already contain a patch sufficient to correct CVE-2012-2110.
Thanks to Red Hat for discovering and fixing this issue.
Affected users should upgrade to 0.9.8w.
References
==========
URL for this Security Advisory:
http://www.openssl.org/news/secadv_20120424.txt
2012-05-12 19:28:24 +02:00
Arne Fitzenreiter
75c2cf6f51
started core59.
2012-05-12 19:24:46 +02:00
Arne Fitzenreiter
9f82cdb1f8
samba: security update to 3.5.15. (CVE-2012-2111).
...
This security release addresses CVE-2012-2111 (incorrect permission checks when
granting/removing privileges could compromise file server security).
2012-05-02 10:10:07 +02:00
Arne Fitzenreiter
de887913ee
samba: security update to 3.5.14. (CVE-2012-1182).
...
Further information can be found in the security advisory:
http://www.samba.org/samba/security/CVE-2012-1182
2012-04-10 20:21:37 +02:00
Arne Fitzenreiter
5cbbd5f1ed
finished core58.
2012-04-07 11:39:23 +02:00
Arne Fitzenreiter
8969d075e0
hwdata: updata usb and pci ids database.
2012-04-07 11:38:23 +02:00
Arne Fitzenreiter
b7d1e1c4a4
GeoIP: update database to 03032012.
2012-04-07 11:37:35 +02:00
Arne Fitzenreiter
2d40b8174b
core58: add cryptodev module to updater.
2012-04-07 11:37:03 +02:00
Arne Fitzenreiter
2c0a849f7a
cryptodev: update to 1.4.
2012-04-07 11:36:40 +02:00
Arne Fitzenreiter
f028065fd1
openssl: fix aes accleration via cryptodev.
2012-04-07 11:36:20 +02:00
Michael Tremer
a4826680bc
pound: Add patch to select certificates by their SANs.
...
http://www.apsis.ch/pound/pound_list/archive/2012/2012-02/1329442080000#1329442080000
2012-04-07 11:35:46 +02:00
Arne Fitzenreiter
844d37795d
clamav: updated to 0.97.4.
2012-04-07 11:35:28 +02:00
Arne Fitzenreiter
ef5d80c033
openssl: update to 0.9.8u.
2012-04-07 11:35:01 +02:00
Arne Fitzenreiter
67ab1d6206
samba: update to 3.5.13.
2012-04-07 11:34:31 +02:00
Michael Tremer
25a063e66d
git: Update to 1.7.9.3.
2012-04-07 11:33:52 +02:00
Michael Tremer
88511b6145
fireinfo: Update to 2.1.4.
...
Fixes an issue with the detection of online CPUs on ARM.
2012-04-07 11:32:51 +02:00
Arne Fitzenreiter
d2bbe7f46e
usb_modeswitch: update to 1.2.3.
2012-04-07 11:32:16 +02:00
Arne Fitzenreiter
5d934a73dc
strongswan: update to 4.6.2.
...
fixes #10037
2012-04-07 11:31:34 +02:00
Michael Tremer
16ada955ac
Add libpng update to core update 58.
2012-04-07 11:31:05 +02:00
Michael Tremer
8cbc8e01b3
libpng: Update to 1.2.46.
...
Fixes several security issues from 2011.
2012-04-07 11:30:03 +02:00
Michael Tremer
0f0a5a6e5f
Open core update 58 and import changes that were already commited.
2012-04-07 11:23:15 +02:00
Michael Tremer
524fc72621
openvpn: Update to 2.2.2.
...
Add --enable-password-save switch that was requested by the
community.
See bug #10036 .
2012-04-07 11:22:53 +02:00
Michael Tremer
870f68d7f2
vim: Add "set ruler" option to configuration file.
...
This will show a small line at the bottom which displays
the current cursor position and more.
References bug #10021 .
2012-04-07 11:22:01 +02:00
Arne Fitzenreiter
42fb65f0f3
core57: stop/start ipsec at update.
2012-04-07 11:21:31 +02:00
Arne Fitzenreiter
eb17d0fd69
finished core57.
2012-02-19 12:51:12 +01:00
Arne Fitzenreiter
fa4762fbf8
network: don't set ip address "1.1.1.1".
...
This change made also green-only with dhcp possible.
configure green to 1.1.1.1 and red to dhcp client and RED_DEV=green0.
2012-02-19 12:48:42 +01:00
Dirk Wagner
36661efeec
pound: update to latest stable 2.6
2012-02-11 18:28:13 +01:00
Dirk Wagner
dc083d18df
pound: update to latest stable 2.6
2012-02-11 18:27:13 +01:00
Dirk Wagner
38d3bcd5c1
nut: fixed wrong version in filename
2012-02-10 22:23:44 +01:00
Dirk Wagner
3412d9ef01
Merge branch 'next' of ssh://git.ipfire.org/pub/git/ipfire-2.x into next
2012-02-10 20:46:44 +01:00
Dirk Wagner
bc48f66315
nut: update to latest version 2.6.3
2012-02-10 20:45:52 +01:00
Michael Tremer
9da0695da7
outgoingfw.cgi: Fix enabled checkbox when editing rules.
...
When a rule was edited, the enabled checkbox was always unchecked.
References bug #10022 .
2012-02-10 11:10:14 +01:00
Michael Tremer
a73f60abb8
strongswan: Customize the welcome banner.
...
References:
http://forum.ipfire.org/index.php/topic,5993.0.html
http://forum.ipfire.org/index.php/topic,3329.0.html
2012-02-10 11:01:42 +01:00
Michael Tremer
732447b9b3
installer: Enhance mountsource.sh script.
...
Searches for installation images on all partitions on external
media.
References bug #10020 .
2012-02-08 22:38:29 +01:00
Michael Tremer
d02a7f9d05
vim: Create configuration files for better usage.
...
This commits also ships all syntax highlighting information
and among others in /usr/share/vim.
References bug #10021 .
2012-02-08 22:35:30 +01:00
Michael Tremer
fdde104f2d
Merge branch 'master' into next
2012-02-08 21:54:26 +01:00
Michael Tremer
9e31e76b8b
Merge branch 'master' of ssh://git.ipfire.org/pub/git/ipfire-2.x
2012-02-08 21:47:09 +01:00