Commit Graph

4768 Commits

Author SHA1 Message Date
Michael Tremer
fdde104f2d Merge branch 'master' into next 2012-02-08 21:54:26 +01:00
Michael Tremer
9e31e76b8b Merge branch 'master' of ssh://git.ipfire.org/pub/git/ipfire-2.x 2012-02-08 21:47:09 +01:00
Michael Tremer
39d36c000a Remove donation button from credits.cgi. 2012-02-08 21:39:26 +01:00
Arne Fitzenreiter
261f88ebe6 apache: fix typo. 2012-02-08 19:59:36 +01:00
Arne Fitzenreiter
2b5d1d8f70 cups: update to 1.4.8. 2012-02-08 07:50:17 +01:00
Arne Fitzenreiter
da997327ad core57: add apache and squid to updater. 2012-02-08 07:49:48 +01:00
Arne Fitzenreiter
5971e9a1aa squid: update to 3.19. 2012-02-08 07:48:52 +01:00
Arne Fitzenreiter
7e4506e9c7 apache: security update to 2.2.22.
Fix six low and moderate security flaws. Most of them are not important for ipfire.
low: mod_setenvif .htaccess privilege escalation CVE-2011-3607
low: mod_log_config crash CVE-2012-0021
low: scoreboard parent DoS CVE-2012-0031
moderate: mod_proxy reverse proxy exposure CVE-2011-4317
moderate: error responses can expose cookies CVE-2012-0053
moderate: mod_proxy reverse proxy exposure CVE-2011-3368

For details check: http://httpd.apache.org/security/vulnerabilities_22.html
2012-02-08 07:43:48 +01:00
Arne Fitzenreiter
7d5fdf7954 core57: add php update to updater. 2012-02-05 19:11:17 +01:00
Arne Fitzenreiter
144815dabe php: security update to 5.3.10.
5.3.10 Fixes arbitary remote code execution CVE-2012-0830
5.3.9 Fixes for CVE-2011-4566 and CVE-2011-4885
...
2012-02-05 19:05:18 +01:00
Arne Fitzenreiter
6acda73be0 started core57. 2012-02-05 16:49:37 +01:00
Arne Fitzenreiter
184bee29d0 core56: add static-rules startfiles to updater. 2012-02-05 16:46:57 +01:00
Arne Fitzenreiter
792ff4fa0b core56: don't reset ssh/ssl config at update. 2012-01-28 12:26:03 +01:00
Arne Fitzenreiter
2d57443beb fs-resize: answer yes at fsck to continue at last mount in future. 2012-01-27 09:22:15 +01:00
Arne Fitzenreiter
5db3741f37 Merge branch 'master' into core56 2012-01-26 17:46:56 +01:00
Arne Fitzenreiter
c0ec89791d finish core56. 2012-01-26 17:43:59 +01:00
Arne Fitzenreiter
834ca786da initscripts: rootfile update. 2012-01-26 17:39:00 +01:00
Arne Fitzenreiter
2a3329bce4 Merge commit 'origin/static-routes' 2012-01-24 21:44:16 +01:00
Arne Fitzenreiter
1ccf0a2b88 Merge commit 'origin/next' 2012-01-24 20:53:06 +01:00
Arne Fitzenreiter
edc2be7080 flash-images: activate autoresize also on arm. 2012-01-24 18:17:14 +01:00
Michael Tremer
b4c77ffb89 Reload static routes after a connecting to the internet.
BUg 10007. Some users claimed, that not all static routes are
set up correctly at boot time.
2012-01-23 22:32:32 +01:00
Michael Tremer
e247eb7cec Allow : character in configuration files.
According to bug #10006, it is needed in some DSL credentials.

As : is not a special character in shell code (at least if
{} is not allowed either) we can safely use it.
2012-01-23 22:17:10 +01:00
Arne Fitzenreiter
76b8277500 flash-images: increase size of root partition.
Minimal media-size is now 2GB.
2012-01-22 10:57:35 +01:00
Arne Fitzenreiter
55bec7f58f core56: stop/start sshd and apache while updateing. 2012-01-21 20:26:26 +01:00
Arne Fitzenreiter
9f212a9607 core56: add openvpnctrl to updater. 2012-01-21 20:24:09 +01:00
Arne Fitzenreiter
4de55e0b3d initskripts: add disc sync before unmounting filesystems. 2012-01-21 20:20:57 +01:00
Arne Fitzenreiter
9347464405 core56: add Crypt-PasswdMD5 to updater. 2012-01-21 20:19:25 +01:00
Arne Fitzenreiter
18e7404874 chpasswd.cgi: fixed for new MD5 password hashes. 2012-01-21 20:13:54 +01:00
Arne Fitzenreiter
d8799d9280 Crypt-PasswdMD5: add new perl modul to use apache md5 passwords. 2012-01-21 20:11:01 +01:00
Arne Fitzenreiter
120cedf285 python-m2crypto: rootfile update. 2012-01-21 17:17:35 +01:00
Arne Fitzenreiter
18252bf794 usb-modeswitch: update to 1.2.2 and data 20120120. 2012-01-21 17:10:05 +01:00
Arne Fitzenreiter
0b236f6067 rsync: update to 3.0.9. 2012-01-21 14:09:34 +01:00
Arne Fitzenreiter
fbb2ebd684 flash-image: improve mount/dismount at partition resize.
fix missing parameters at mount.
remount / ro before reboot to leave a clean rootfs.
2012-01-20 21:06:45 +01:00
Arne Fitzenreiter
a6d0d790eb flash-image: add automatic resizing /var partition at first boot. 2012-01-20 08:02:31 +01:00
Arne Fitzenreiter
6333b4e725 openssl: security update to 0.9.8t.
prevent DTLS DoS attak (CVE-2012-0050)
2012-01-19 21:39:58 +01:00
Arne Fitzenreiter
7d87d796c7 Revert "kernel: Enable support for UFS."
This reverts commit 6f5ef200b3.

This has to wait until next kernel release.
2012-01-19 19:28:21 +01:00
Arne Fitzenreiter
e18e19d291 Revert "Support BSD partition tables."
This reverts commit 977fc44e20.
This has to wait until next kernel release.
Than we should revert the revert.
2012-01-19 19:27:19 +01:00
Arne Fitzenreiter
a6b7619bab serial console: set baudrate to 115200. 2012-01-17 20:29:36 +01:00
Arne Fitzenreiter
269e21c662 Fix block device detection for graphs and other scripts. 2012-01-16 22:22:17 +01:00
Arne Fitzenreiter
d520da1704 start core56. 2012-01-15 10:22:25 +01:00
Michael Tremer
99b01b8485 openvpn: Fix starting/stopping errors in the control binary.
net2net connection were not started when roadwarrior connections
were existant.
2012-01-07 22:21:08 +01:00
Arne Fitzenreiter
11cbd00d1f core55: don't overwrite ssl/ssh config. 2012-01-05 15:20:28 +01:00
Arne Fitzenreiter
1bafefd5fb Merge branch 'next' of git.ipfire.org:/pub/git/ipfire-2.x into next 2012-01-05 15:00:42 +01:00
Arne Fitzenreiter
b8db3d70ed Merge branch 'next' of ssh://arne_f@git.ipfire.org/pub/git/ipfire-2.x into next 2012-01-05 15:00:04 +01:00
Arne Fitzenreiter
dc29e3d019 Merge branch 'master' into next 2012-01-05 14:59:54 +01:00
Arne Fitzenreiter
5db5319e40 Merge branch 'next' of git.ipfire.org:/pub/git/ipfire-2.x into next 2012-01-05 14:59:25 +01:00
Arne Fitzenreiter
9ad2f534d9 finish core55. 2012-01-05 14:51:05 +01:00
Arne Fitzenreiter
0bd6df5798 core55: add openssh to updater. 2012-01-05 14:50:25 +01:00
Arne Fitzenreiter
8384f58553 openssh: update to 5.9p1. 2012-01-05 14:38:01 +01:00
Arne Fitzenreiter
5d098ffb5a openssl: security update to 0.9.8s.
DTLS Plaintext Recovery Attack (CVE-2011-4108)
Double-free in Policy Checks (CVE-2011-4109)
Uninitialized SSL 3.0 Padding (CVE-2011-4576)
Malformed RFC 3779 Data Can Cause Assertion Failures (CVE-2011-4577)
Affected users should upgrade to OpenSSL 1.0.0f or 0.9.8s.
SGC Restart DoS Attack (CVE-2011-4619)

http://www.openssl.org/news/secadv_20120104.txt
2012-01-05 14:31:26 +01:00