Commit Graph

2540 Commits

Author SHA1 Message Date
Arne Fitzenreiter
2b5d1d8f70 cups: update to 1.4.8. 2012-02-08 07:50:17 +01:00
Arne Fitzenreiter
da997327ad core57: add apache and squid to updater. 2012-02-08 07:49:48 +01:00
Arne Fitzenreiter
7e4506e9c7 apache: security update to 2.2.22.
Fix six low and moderate security flaws. Most of them are not important for ipfire.
low: mod_setenvif .htaccess privilege escalation CVE-2011-3607
low: mod_log_config crash CVE-2012-0021
low: scoreboard parent DoS CVE-2012-0031
moderate: mod_proxy reverse proxy exposure CVE-2011-4317
moderate: error responses can expose cookies CVE-2012-0053
moderate: mod_proxy reverse proxy exposure CVE-2011-3368

For details check: http://httpd.apache.org/security/vulnerabilities_22.html
2012-02-08 07:43:48 +01:00
Arne Fitzenreiter
7d5fdf7954 core57: add php update to updater. 2012-02-05 19:11:17 +01:00
Arne Fitzenreiter
144815dabe php: security update to 5.3.10.
5.3.10 Fixes arbitary remote code execution CVE-2012-0830
5.3.9 Fixes for CVE-2011-4566 and CVE-2011-4885
...
2012-02-05 19:05:18 +01:00
Arne Fitzenreiter
6acda73be0 started core57. 2012-02-05 16:49:37 +01:00
Arne Fitzenreiter
184bee29d0 core56: add static-rules startfiles to updater. 2012-02-05 16:46:57 +01:00
Arne Fitzenreiter
792ff4fa0b core56: don't reset ssh/ssl config at update. 2012-01-28 12:26:03 +01:00
Arne Fitzenreiter
5db3741f37 Merge branch 'master' into core56 2012-01-26 17:46:56 +01:00
Arne Fitzenreiter
834ca786da initscripts: rootfile update. 2012-01-26 17:39:00 +01:00
Michael Tremer
e247eb7cec Allow : character in configuration files.
According to bug #10006, it is needed in some DSL credentials.

As : is not a special character in shell code (at least if
{} is not allowed either) we can safely use it.
2012-01-23 22:17:10 +01:00
Arne Fitzenreiter
55bec7f58f core56: stop/start sshd and apache while updateing. 2012-01-21 20:26:26 +01:00
Arne Fitzenreiter
9f212a9607 core56: add openvpnctrl to updater. 2012-01-21 20:24:09 +01:00
Arne Fitzenreiter
4de55e0b3d initskripts: add disc sync before unmounting filesystems. 2012-01-21 20:20:57 +01:00
Arne Fitzenreiter
9347464405 core56: add Crypt-PasswdMD5 to updater. 2012-01-21 20:19:25 +01:00
Arne Fitzenreiter
18e7404874 chpasswd.cgi: fixed for new MD5 password hashes. 2012-01-21 20:13:54 +01:00
Arne Fitzenreiter
d8799d9280 Crypt-PasswdMD5: add new perl modul to use apache md5 passwords. 2012-01-21 20:11:01 +01:00
Arne Fitzenreiter
120cedf285 python-m2crypto: rootfile update. 2012-01-21 17:17:35 +01:00
Arne Fitzenreiter
18252bf794 usb-modeswitch: update to 1.2.2 and data 20120120. 2012-01-21 17:10:05 +01:00
Arne Fitzenreiter
a6d0d790eb flash-image: add automatic resizing /var partition at first boot. 2012-01-20 08:02:31 +01:00
Arne Fitzenreiter
6333b4e725 openssl: security update to 0.9.8t.
prevent DTLS DoS attak (CVE-2012-0050)
2012-01-19 21:39:58 +01:00
Arne Fitzenreiter
7d87d796c7 Revert "kernel: Enable support for UFS."
This reverts commit 6f5ef200b3.

This has to wait until next kernel release.
2012-01-19 19:28:21 +01:00
Arne Fitzenreiter
e18e19d291 Revert "Support BSD partition tables."
This reverts commit 977fc44e20.
This has to wait until next kernel release.
Than we should revert the revert.
2012-01-19 19:27:19 +01:00
Arne Fitzenreiter
a6b7619bab serial console: set baudrate to 115200. 2012-01-17 20:29:36 +01:00
Arne Fitzenreiter
269e21c662 Fix block device detection for graphs and other scripts. 2012-01-16 22:22:17 +01:00
Arne Fitzenreiter
d520da1704 start core56. 2012-01-15 10:22:25 +01:00
Arne Fitzenreiter
11cbd00d1f core55: don't overwrite ssl/ssh config. 2012-01-05 15:20:28 +01:00
Arne Fitzenreiter
dc29e3d019 Merge branch 'master' into next 2012-01-05 14:59:54 +01:00
Arne Fitzenreiter
9ad2f534d9 finish core55. 2012-01-05 14:51:05 +01:00
Arne Fitzenreiter
0bd6df5798 core55: add openssh to updater. 2012-01-05 14:50:25 +01:00
Arne Fitzenreiter
5d098ffb5a openssl: security update to 0.9.8s.
DTLS Plaintext Recovery Attack (CVE-2011-4108)
Double-free in Policy Checks (CVE-2011-4109)
Uninitialized SSL 3.0 Padding (CVE-2011-4576)
Malformed RFC 3779 Data Can Cause Assertion Failures (CVE-2011-4577)
Affected users should upgrade to OpenSSL 1.0.0f or 0.9.8s.
SGC Restart DoS Attack (CVE-2011-4619)

http://www.openssl.org/news/secadv_20120104.txt
2012-01-05 14:31:26 +01:00
Arne Fitzenreiter
f4afa6ddf7 Merge branch 'master' into next 2011-12-31 10:33:39 +01:00
Arne Fitzenreiter
920b610fa0 toolchain: remove old uname hack. 2011-12-31 02:45:19 +01:00
Michael Tremer
977fc44e20 Support BSD partition tables. 2011-12-29 18:59:12 +01:00
Michael Tremer
f530902b81 Merge branch 'next' of ssh://git.ipfire.org/pub/git/ipfire-2.x into next 2011-12-29 16:30:21 +01:00
Michael Tremer
6f5ef200b3 kernel: Enable support for UFS.
Unix File System as it is used in FreeBSD 5.x.
No write support enabled.
2011-12-29 16:29:20 +01:00
Arne Fitzenreiter
7c3fec29d0 Merge branch 'core54' 2011-12-27 11:11:25 +01:00
Arne Fitzenreiter
ef9d89aa4e core54: add credits.cgi. 2011-12-27 11:09:04 +01:00
Arne Fitzenreiter
cac9daa61b initrd: fix build on i586. 2011-12-27 11:05:02 +01:00
Arne Fitzenreiter
ad768ac98b squid: update to 3.1.18.
enabled polish and russian error messages.
2011-12-18 13:41:34 +01:00
Arne Fitzenreiter
71d3bfd455 core54: fix build on arm. 2011-12-18 13:40:31 +01:00
Arne Fitzenreiter
99f96fa93d squid: update to 3.1.18.
enabled polish and russian error messages.
2011-12-18 13:30:26 +01:00
Arne Fitzenreiter
447dfa508d core54: fix build on arm. 2011-12-18 12:20:29 +01:00
Arne Fitzenreiter
e23114f49c core54: flush snort rules. 2011-12-11 01:15:07 +01:00
Arne Fitzenreiter
45abde762d core54: add GeoIP database to updater. 2011-12-11 01:14:23 +01:00
Arne Fitzenreiter
3f18f99624 start core55. 2011-12-09 19:34:14 +01:00
Arne Fitzenreiter
a3f7164f98 Merge branch 'next' of ssh://arne_f@git.ipfire.org/pub/git/ipfire-2.x into next 2011-12-09 19:25:03 +01:00
Arne Fitzenreiter
7cc4cbaae0 core54: add snort.conf to updater 2011-12-09 19:23:57 +01:00
Arne Fitzenreiter
68a3b9024c usb_modeswitch_data: update datebase to 20111023. 2011-12-09 19:22:11 +01:00
Arne Fitzenreiter
6c4eff0512 fw_ath9k_htc: updated firmware to 1.3. 2011-12-09 15:39:08 +01:00