Commit Graph

2044 Commits

Author SHA1 Message Date
Arne Fitzenreiter
7f76d8cb4a GeoIP: update database to 01052012. 2012-05-12 19:15:38 +02:00
Arne Fitzenreiter
4a3ae7fa37 dhcpcd: ignore MTU Smaller than 577.
Normally 576 is the smallest valid mtu but some cable provider set this
also if they support much higher mtu's. Fedora does not accept
this to prevent speed problems with such isp connections so we do the same.
If you really need mtu=576 you can still force at at the setup.
2012-05-12 17:13:45 +02:00
Arne Fitzenreiter
be5a3b36a7 php: security update to 5.3.13 (CVE-2012-2311). 2012-05-12 15:33:42 +02:00
Arne Fitzenreiter
a526de38bc strongswan: update to 4.6.3. 2012-05-05 23:25:07 +02:00
Arne Fitzenreiter
6bdc390235 python: update to 2.7.3. 2012-05-05 23:23:53 +02:00
Arne Fitzenreiter
b5c3859e30 fix core58 merge problem. 2012-05-05 23:21:18 +02:00
Arne Fitzenreiter
717470058f core59: add openssl to core update. 2012-05-05 23:19:36 +02:00
Arne Fitzenreiter
8f17b54f96 openssl: security update to 0.9.8w. (CVE-2012-2131).
SN1 BIO incomplete fix (CVE-2012-2131)
=======================================

It was discovered that the fix for CVE-2012-2110 released on 19 Apr
2012 was not sufficient to correct the issue for OpenSSL 0.9.8.

Please see http://www.openssl.org/news/secadv_20120419.txt for details
of that vulnerability.

This issue only affects OpenSSL 0.9.8v.  OpenSSL 1.0.1a and 1.0.0i
already contain a patch sufficient to correct CVE-2012-2110.

Thanks to Red Hat for discovering and fixing this issue.

Affected users should upgrade to 0.9.8w.

References
==========

URL for this Security Advisory:
http://www.openssl.org/news/secadv_20120424.txt
2012-05-02 19:42:02 +02:00
Arne Fitzenreiter
fdec431835 started core59. 2012-04-09 12:19:06 +02:00
Arne Fitzenreiter
6560ecaa51 Merge branch 'master' into next
Conflicts:
	config/rootfiles/core/58/filelists/files
	make.sh
2012-04-09 12:15:59 +02:00
Arne Fitzenreiter
8969d075e0 hwdata: updata usb and pci ids database. 2012-04-07 11:38:23 +02:00
Arne Fitzenreiter
b7d1e1c4a4 GeoIP: update database to 03032012. 2012-04-07 11:37:35 +02:00
Arne Fitzenreiter
2d40b8174b core58: add cryptodev module to updater. 2012-04-07 11:37:03 +02:00
Arne Fitzenreiter
844d37795d clamav: updated to 0.97.4. 2012-04-07 11:35:28 +02:00
Arne Fitzenreiter
ef5d80c033 openssl: update to 0.9.8u. 2012-04-07 11:35:01 +02:00
Michael Tremer
25a063e66d git: Update to 1.7.9.3. 2012-04-07 11:33:52 +02:00
Michael Tremer
88511b6145 fireinfo: Update to 2.1.4.
Fixes an issue with the detection of online CPUs on ARM.
2012-04-07 11:32:51 +02:00
Arne Fitzenreiter
d2bbe7f46e usb_modeswitch: update to 1.2.3. 2012-04-07 11:32:16 +02:00
Arne Fitzenreiter
5d934a73dc strongswan: update to 4.6.2.
fixes #10037
2012-04-07 11:31:34 +02:00
Michael Tremer
16ada955ac Add libpng update to core update 58. 2012-04-07 11:31:05 +02:00
Michael Tremer
8cbc8e01b3 libpng: Update to 1.2.46.
Fixes several security issues from 2011.
2012-04-07 11:30:03 +02:00
Michael Tremer
0f0a5a6e5f Open core update 58 and import changes that were already commited. 2012-04-07 11:23:15 +02:00
Michael Tremer
524fc72621 openvpn: Update to 2.2.2.
Add --enable-password-save switch that was requested by the
community.

See bug #10036.
2012-04-07 11:22:53 +02:00
Arne Fitzenreiter
42fb65f0f3 core57: stop/start ipsec at update. 2012-04-07 11:21:31 +02:00
Arne Fitzenreiter
818f334465 hwdata: updata usb and pci ids database. 2012-04-06 19:30:24 +02:00
Arne Fitzenreiter
2b965cc534 GeoIP: update database to 03032012. 2012-04-06 19:22:23 +02:00
Arne Fitzenreiter
a183bc774f core58: add cryptodev module to updater. 2012-04-06 18:49:20 +02:00
Arne Fitzenreiter
da43373bdb clamav: updated to 0.97.4. 2012-03-18 13:14:59 +01:00
Arne Fitzenreiter
d5e982c11b openssl: update to 0.9.8u. 2012-03-13 21:16:25 +01:00
Michael Tremer
6826896546 Add VPN changes to core update. 2012-03-12 11:13:51 +01:00
Michael Tremer
9368775639 git: Update to 1.7.9.3. 2012-03-11 16:53:32 +01:00
Michael Tremer
06b197d817 fireinfo: Update to 2.1.4.
Fixes an issue with the detection of online CPUs on ARM.
2012-03-11 14:50:44 +01:00
Arne Fitzenreiter
b7be421741 usb_modeswitch: update to 1.2.3. 2012-03-10 17:37:23 +01:00
Arne Fitzenreiter
b21c471b73 strongswan: update to 4.6.2.
fixes #10037
2012-03-10 17:32:31 +01:00
Michael Tremer
54fd05358b Import VPN changes by the Special Interest Group.
See here for more details:
  http://lists.ipfire.org/pipermail/sig-vpn/2012-March/000031.html
2012-03-06 22:53:07 +01:00
Michael Tremer
650a4d8097 Add libpng update to core update 58. 2012-03-06 22:26:22 +01:00
Michael Tremer
9e7e1c143d Merge branch 'libpng-update' into next 2012-03-06 22:24:28 +01:00
Michael Tremer
25057c911b Open core update 58 and import changes that were already commited. 2012-03-06 22:23:29 +01:00
Michael Tremer
eb12fca108 openvpn: Update to 2.2.2.
Add --enable-password-save switch that was requested by the
community.

See bug #10036.
2012-02-25 12:10:25 +01:00
Arne Fitzenreiter
a5bc82a447 core57: stop/start ipsec at update. 2012-02-19 13:04:06 +01:00
Arne Fitzenreiter
fa4762fbf8 network: don't set ip address "1.1.1.1".
This change made also green-only with dhcp possible.
configure green to 1.1.1.1 and red to dhcp client and RED_DEV=green0.
2012-02-19 12:48:42 +01:00
Dirk Wagner
38d3bcd5c1 nut: fixed wrong version in filename 2012-02-10 22:23:44 +01:00
Michael Tremer
a73f60abb8 strongswan: Customize the welcome banner.
References:
 http://forum.ipfire.org/index.php/topic,5993.0.html
 http://forum.ipfire.org/index.php/topic,3329.0.html
2012-02-10 11:01:42 +01:00
Michael Tremer
d02a7f9d05 vim: Create configuration files for better usage.
This commits also ships all syntax highlighting information
and among others in /usr/share/vim.

References bug #10021.
2012-02-08 22:35:30 +01:00
Arne Fitzenreiter
2b5d1d8f70 cups: update to 1.4.8. 2012-02-08 07:50:17 +01:00
Arne Fitzenreiter
da997327ad core57: add apache and squid to updater. 2012-02-08 07:49:48 +01:00
Arne Fitzenreiter
7e4506e9c7 apache: security update to 2.2.22.
Fix six low and moderate security flaws. Most of them are not important for ipfire.
low: mod_setenvif .htaccess privilege escalation CVE-2011-3607
low: mod_log_config crash CVE-2012-0021
low: scoreboard parent DoS CVE-2012-0031
moderate: mod_proxy reverse proxy exposure CVE-2011-4317
moderate: error responses can expose cookies CVE-2012-0053
moderate: mod_proxy reverse proxy exposure CVE-2011-3368

For details check: http://httpd.apache.org/security/vulnerabilities_22.html
2012-02-08 07:43:48 +01:00
Arne Fitzenreiter
7d5fdf7954 core57: add php update to updater. 2012-02-05 19:11:17 +01:00
Arne Fitzenreiter
144815dabe php: security update to 5.3.10.
5.3.10 Fixes arbitary remote code execution CVE-2012-0830
5.3.9 Fixes for CVE-2011-4566 and CVE-2011-4885
...
2012-02-05 19:05:18 +01:00
Arne Fitzenreiter
6acda73be0 started core57. 2012-02-05 16:49:37 +01:00