ALT Linux Sisyphus cybertalk
 help / color / mirror / Atom feed
* [cyber] I: p9/branch packages: -1 +4 (18137)
@ 2021-02-04  0:16 QA Team Robot
  0 siblings, 0 replies; only message in thread
From: QA Team Robot @ 2021-02-04  0:16 UTC (permalink / raw)
  To: sisyphus-cybertalk

	1 REMOVED package

rutoken-plugin	2.8.9.0-alt1

	4 UPDATED packages

firefox-esr - The Mozilla Firefox project is a redesign of Mozilla's browser	[342M]
* Tue Jan 26 2021 Andrey Cherepanov <cas@altlinux> 78.7.0-alt0.1.p9
- Backport new version to p9 branch.
- Build with LLVM 11.0.
* Tue Jan 26 2021 Andrey Cherepanov <cas@altlinux> 78.7.0-alt1
- New version (78.7.0).
- Security fixes:
  + CVE-2021-23953 Cross-origin information leakage via redirected PDF requests
  + CVE-2021-23954 Type confusion when using logical assignment operators in JavaScript switch statements
  + CVE-2020-26976 HTTPS pages could have been intercepted by a registered service worker when they should not have been
  + CVE-2021-23960 Use-after-poison for incorrectly redeclared JavaScript variables during GC
  + CVE-2021-23964 Memory safety bugs fixed in Firefox 85 and Firefox ESR 78.7
* Thu Jan 07 2021 Andrey Cherepanov <cas@altlinux> 78.6.1-alt0.1.p9

imapfilter - mail filtering utility
* Fri Jan 29 2021 Aleksei Nikiforov <darktemplar@altlinux> 2.7.5-alt2
- Updated certificate paths to ALT-specific values.
* Fri Jan 22 2021 Aleksei Nikiforov <darktemplar@altlinux> 2.7.5-alt1
- 2.7.5 (Fixes CVE-2016-10937).
* Tue Jan 29 2019 Vladimir Lettiev <crux@altlinux> 2.6.12-alt1

task-rutoken - Metapackage to install all software for Rutoken support
* Thu Jan 21 2021 Andrey Cherepanov <cas@altlinux> 1.0-alt5
- Do not require missing rutoken-plugin.
* Wed Oct 16 2019 Michael Shigorin <mike@altlinux> 1.0-alt4

thunderbird - Thunderbird is Mozilla's e-mail client            	[361M]
* Wed Jan 27 2021 Andrey Cherepanov <cas@altlinux> 78.7.0-alt0.1.p9
- Backport new version to p9 branch.
* Wed Jan 27 2021 Andrey Cherepanov <cas@altlinux> 78.7.0-alt1
- New version (78.7.0).
- Security fixes:
  + CVE-2021-23953 Cross-origin information leakage via redirected PDF requests
  + CVE-2021-23954 Type confusion when using logical assignment operators in JavaScript switch statements
  + CVE-2020-15685 IMAP Response Injection when using STARTTLS
  + CVE-2020-26976 HTTPS pages could have been intercepted by a registered service worker when they should not have been
  + CVE-2021-23960 Use-after-poison for incorrectly redeclared JavaScript variables during GC
  + CVE-2021-23964 Memory safety bugs fixed in Thunderbird 78.7
* Wed Jan 13 2021 Andrey Cherepanov <cas@altlinux> 78.6.1-alt0.1.p9
- Backport new version to p9 branch.
* Tue Jan 12 2021 Andrey Cherepanov <cas@altlinux> 78.6.1-alt1
- New version (78.6.1).
- Security fixes:
  + CVE-2020-16044 Use-after-free write when handling a malicious COOKIE-ECHO SCTP chunk
* Tue Dec 15 2020 Andrey Cherepanov <cas@altlinux> 78.6.0-alt1
- New version (78.6.0).
- Security fixes:
  + CVE-2020-16042 Operations on a BigInt could have caused uninitialized memory to be exposed
  + CVE-2020-26971 Heap buffer overflow in WebGL
  + CVE-2020-26973 CSS Sanitizer performed incorrect sanitization
  + CVE-2020-26974 Incorrect cast of StyleGenericFlexBasis resulted in a heap use-after-free
  + CVE-2020-26978 Internal network hosts could have been probed by a malicious webpage
  + CVE-2020-35111 The proxy.onRequest API did not catch view-source URLs
  + CVE-2020-35112 Opening an extension-less download may have inadvertently launched an executable instead
  + CVE-2020-35113 Memory safety bugs fixed in Thunderbird 78.6
* Thu Dec 03 2020 Andrey Cherepanov <cas@altlinux> 78.5.1-alt0.1.p9
- Backport new version to p9 branch.
* Wed Dec 02 2020 Andrey Cherepanov <cas@altlinux> 78.5.1-alt1
- New version (78.5.1).
- Security fixes:
  + CVE-2020-26970 Stack overflow due to incorrect parsing of SMTP server response codes
* Sat Nov 21 2020 Andrey Cherepanov <cas@altlinux> 78.5.0-alt0.1.p9

Total 18137 source packages.


^ permalink raw reply	[flat|nested] only message in thread

only message in thread, other threads:[~2021-02-04  0:16 UTC | newest]

Thread overview: (only message) (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2021-02-04  0:16 [cyber] I: p9/branch packages: -1 +4 (18137) QA Team Robot

ALT Linux Sisyphus cybertalk

This inbox may be cloned and mirrored by anyone:

	git clone --mirror http://lore.altlinux.org/sisyphus-cybertalk/0 sisyphus-cybertalk/git/0.git

	# If you have public-inbox 1.1+ installed, you may
	# initialize and index your mirror using the following commands:
	public-inbox-init -V2 sisyphus-cybertalk sisyphus-cybertalk/ http://lore.altlinux.org/sisyphus-cybertalk \
		sisyphus-cybertalk@lists.altlinux.org sisyphus-cybertalk@lists.altlinux.ru sisyphus-cybertalk@lists.altlinux.com
	public-inbox-index sisyphus-cybertalk

Example config snippet for mirrors.
Newsgroup available over NNTP:
	nntp://lore.altlinux.org/org.altlinux.lists.sisyphus-cybertalk


AGPL code for this site: git clone https://public-inbox.org/public-inbox.git