From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Date: Mon, 2 Aug 2010 01:23:15 +0000 From: QA Team Robot To: sisyphus-cybertalk@lists.altlinux.org Message-ID: <20100802012315.GA15677@granary.armor.altlinux.org> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Subject: [cyber] I: Sisyphus-20100802 packages: +4! +10 (10016) X-BeenThere: sisyphus-cybertalk@lists.altlinux.org X-Mailman-Version: 2.1.12 Precedence: list Reply-To: devel@lists.altlinux.org List-Id: ALT Linux Sisyphus cybertalk List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 02 Aug 2010 01:23:15 -0000 Archived-At: List-Archive: 4 ADDED packages buzztard - A free replacement of closed source software Buzz * Sun Aug 01 2010 Egor Glukhov 0.6.0-alt2.svn20100715 - Cleanup * Sun Aug 01 2010 Egor Glukhov 0.6.0-alt1.svn20100715 - Snapshot 20100715 * Thu Jan 07 2010 Eugeny A. Rostovtsev (REAL) 0.6.0-alt1.svn20091224 tmw - The Mana World is a free 2D MMORPG * Sun Aug 01 2010 Egor Glukhov 0.0.29.1-alt1 - Initial build for Sisyphus (closes: #22285) tmw-music - Music files for The Mana World [24M] * Sun Aug 01 2010 Egor Glukhov 0.1-alt1 - Initial build for Sisyphus xulrunner-kmozillahelper - xulrunner provides for KDE * Sun Aug 01 2010 Alexey Gladkov 0.0.0-alt1 - First build for sisyphus. 10 UPDATED packages firefox-3.6 - The Mozilla Firefox project is a redesign of Mozilla's browser [40M] * Thu Jul 29 2010 Alexey Gladkov 3.6.9-alt1.20100725 - New release (3.6.8). - Fixed: + MFSA 2010-48 Dangling pointer crash regression from plugin parameter array fix + MFSA 2010-47 Cross-origin data leakage from script filename in error messages + MFSA 2010-46 Cross-domain data theft using CSS + MFSA 2010-45 Multiple location bar spoofing vulnerabilities + MFSA 2010-44 Characters mapped to U+FFFD in 8 bit encodings cause subsequent character to vanish + MFSA 2010-43 Same-origin bypass using canvas context + MFSA 2010-42 Cross-origin data disclosure via Web Workers and importScripts + MFSA 2010-41 Remote code execution using malformed PNG image + MFSA 2010-40 nsTreeSelection dangling pointer remote code execution vulnerability + MFSA 2010-39 nsCSSValue::Array index integer overflow + MFSA 2010-38 Arbitrary code execution using SJOW and fast native function + MFSA 2010-37 Plugin parameter EnsureCachedAttrParamArrays remote code execution vulnerability + MFSA 2010-36 Use-after-free error in NodeIterator + MFSA 2010-35 DOM attribute cloning remote code execution vulnerability + MFSA 2010-34 Miscellaneous memory safety hazards (rv:1.9.2.7/ 1.9.1.11) * Sun Jun 27 2010 Alexey Gladkov 3.6.6-alt1.20100626 flacon - Audio File Encoder * Sun Aug 01 2010 Nazarov Denis 0.4.4-alt1 - Version 0.4.4 * Sat Jul 24 2010 Nazarov Denis 0.4.3-alt0.M51.1 Note: changelog entry for 0.4.3-alt1 not found. kvirc4 - KDE Enhanced Visual IRC Client * Sun Aug 01 2010 Andrey Rahmatullin 4.0.2-alt1 - 4.0.2 * Tue Jul 27 2010 Andrey Rahmatullin 4.0.1-alt1.r4696 libimobiledevice - Library for connecting to Apple iPhone and iPod touch * Sun Aug 01 2010 Yuri N. Sedunov 1.0.2-alt2 - fixed swig-2.0.0 detection * Tue Jun 22 2010 Yuri N. Sedunov 1.0.2-alt1 magit - A Emacs mode for Git * Sun Aug 01 2010 Terechkov Evgenii 0.7-alt5 - Upstream git-20100801 * Tue Apr 13 2010 Terechkov Evgenii 0.7-alt4 python-module-objects.inv - Resource for build documentarion by Sphinx * Sun Aug 01 2010 Repocop Q. A. Robot 1.2.7.20100801-alt1 - online db update 20100801. At your service. * Sat Jul 31 2010 Repocop Q. A. Robot 1.2.7.20100731-alt1 typo3-dummy - Dummy site for TYPO3 * Sun Aug 01 2010 Michael Shigorin 4.3.4-alt1 - 4.3.4 * Tue Feb 23 2010 Michael Shigorin 4.3.2-alt1 typo3_src - A free, feature rich, Content Management Framework/System [12M] * Sun Aug 01 2010 Michael Shigorin 4.3.4-alt1 - 4.3.4: major/medium security fixes: + several XSS in backend (valid backend login required) + open redirection in backend (valid backend login required) + SQL injection in some backend record editing forms (special backend login/configuration required) + arbitrary code execution depending on server configuration (valid backend login required to upload .phtml) + webroot path disclosure possible with defective extensions + Extension Manager: XSS and arbitrary file access (valid backend admin login required) + user auth, "forgot password": PHP insecure randomness + form content element data check failure (spam abuse) + header injection with jumpurl feature + frontend login box: open redirection, XSS + install tool: session fixation + extbase XSS possible with FLUID Templating Engine + t3lib_htmlmail includes the exact CMS version in headers * Tue Feb 23 2010 Michael Shigorin 4.3.2-alt1 vdr - Digital satellite receiver box with advanced features * Mon Aug 02 2010 Sergey Bolshakov 1.7.14-alt4 - vnsiserver plugin updated to svn rev.32024 * Sat May 29 2010 Sergey Bolshakov 1.7.14-alt3 xulrunner-192 - XUL Runner [40M] * Sun Jul 25 2010 Alexey Gladkov 1.9.2.9-alt1.20100725 - New development snapshot 1.9.2.7pre (20100725). - Fixed: + MFSA 2010-48 Dangling pointer crash regression from plugin parameter array fix + MFSA 2010-47 Cross-origin data leakage from script filename in error messages + MFSA 2010-46 Cross-domain data theft using CSS + MFSA 2010-45 Multiple location bar spoofing vulnerabilities + MFSA 2010-44 Characters mapped to U+FFFD in 8 bit encodings cause subsequent character to vanish + MFSA 2010-43 Same-origin bypass using canvas context + MFSA 2010-42 Cross-origin data disclosure via Web Workers and importScripts + MFSA 2010-41 Remote code execution using malformed PNG image + MFSA 2010-40 nsTreeSelection dangling pointer remote code execution vulnerability + MFSA 2010-39 nsCSSValue::Array index integer overflow + MFSA 2010-38 Arbitrary code execution using SJOW and fast native function + MFSA 2010-37 Plugin parameter EnsureCachedAttrParamArrays remote code execution vulnerability + MFSA 2010-36 Use-after-free error in NodeIterator + MFSA 2010-35 DOM attribute cloning remote code execution vulnerability + MFSA 2010-34 Miscellaneous memory safety hazards (rv:1.9.2.7/ 1.9.1.11) * Sun Jun 27 2010 Alexey Gladkov 1.9.2.7-alt1.20100626 Total 10016 source packages.