From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.1 (2015-04-28) on sa.local.altlinux.org X-Spam-Level: X-Spam-Status: No, score=-3.3 required=5.0 tests=BAYES_00,RP_MATCHES_RCVD autolearn=ham autolearn_force=no version=3.4.1 Date: Tue, 4 Feb 2025 00:16:16 +0000 From: QA Team Robot To: sisyphus-cybertalk@lists.altlinux.org Message-ID: Mail-Followup-To: sisyphus-cybertalk@lists.altlinux.org MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Subject: [cyber] I: p11/branch packages: +5! +27 (19625) X-BeenThere: sisyphus-cybertalk@lists.altlinux.org X-Mailman-Version: 2.1.12 Precedence: list Reply-To: devel@lists.altlinux.org List-Id: ALT Linux Sisyphus cybertalk List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 04 Feb 2025 00:16:20 -0000 Archived-At: List-Archive: 5 ADDED packages alt-chksum - ALT distro checksum downloader * Fri Nov 01 2024 Paul Wolneykien 0.1.4-alt1 - Change the default URL to https://checksum.altsp.su/alt-checksum/checksums.git. * Mon Sep 30 2024 Paul Wolneykien 0.1.3-alt1 - Run "git gc" after a branch is deleted. - Verify git commit signatures too. - Fix: Fetch using plain "git pull" (without the branch name). - Fix: Don't use --set-upstream option with "git fetch". - Switch the default URL to https://gitlab.basealt.space/alt-checksum/checksums.git. - Require verify-checksums >= 1.0.11. * Thu Sep 05 2024 Paul Wolneykien 0.1.2-alt1 - Invoke verify-checksums with --dir argument for each branch. - Fix: Remove worktree with --force on 'del'. - Fix: Check git status when validate. - Make 'validate' report error when the repo is uninitialized or there is no branches. * Mon Sep 02 2024 Paul Wolneykien 0.1.1-alt1 icingaweb2-style-altsp - ALT SP styling for Icinga Web 2 * Thu Oct 24 2024 Paul Wolneykien 0.1.1-alt1 - Hide the first two social icons on the about page. - Hide the first two social icons on the login page. - Added icinga-logo-big.png and favicon.png (closes: 50792). * Tue Jun 18 2024 Paul Wolneykien 0.1.0-alt1 integalert-postgresql - PostgreSQL checking module for Integalert * Thu Oct 10 2024 Paul Wolneykien 0.1.4-alt1 - Run %post_service and %preun_service for integalert_postgresql.service. - Switch to standard sender script (requires integalert >= 0.5.0). * Sat Sep 28 2024 Paul Wolneykien 0.1.3-alt2 - Fix: Own /etc/osec/integalert_postgresql/trigger.d. * Thu Sep 19 2024 Paul Wolneykien 0.1.3-alt1 - Fixed sender script access mode: 0755. * Thu Sep 05 2024 Paul Wolneykien 0.1.2-alt1 postgresql-deploy-cert - deploy script for postgresql cert config * Tue Oct 22 2024 Denis Medvedev 0.8-alt8 - audit and other changes in conf * Thu Oct 17 2024 Denis Medvedev 0.8-alt7 - fixed initial contents of config, added additional logging * Tue Oct 15 2024 Denis Medvedev 0.8-alt6 - corrected pg_hba transport, redesigned config for blocking script * Wed Oct 02 2024 Denis Medvedev 0.8-alt5 postgresql17-postgis - Geographic Information Systems Extensions to PostgreSQL 17 [15M] * Sun Feb 02 2025 Andrey Cherepanov 3.5.2-alt1 - New version. * Fri Oct 04 2024 Andrey Cherepanov 3.5.0-alt1 27 UPDATED packages AFLplusplus - American Fuzzy Lop plus plus (AFL++) * Wed Aug 14 2024 Alexander Kuznetsov 4.21c-alt3 - Revert performance options: appears to be CPU-specific. * Wed Aug 14 2024 Alexander Kuznetsov 4.21c-alt2 - Build with arch-dependent performance options. * Fri Aug 02 2024 Andrey Kovalev 4.21c-alt1 - 4.21c * Mon Apr 15 2024 Egor Ignatov 4.20c-alt1 LibreOffice-still - LibreOffice Productivity Suite (Still version) [812M] * Fri Jan 31 2025 Andrey Cherepanov 24.8.4.2-alt1 - New version. - Security fixes: + CVE-2024-12425 Path traversal leading to arbitrary .ttf file write + CVE-2024-12426 URL fetching can be used to exfiltrate arbitrary INI file values and environment variables * Fri Dec 20 2024 Andrey Cherepanov 24.8.3.2-alt1 bind - ISC BIND - DNS server * Thu Jan 30 2025 Stanislav Levin 9.18.33-alt1 - 9.18.32 -> 9.18.33 (fixes: CVE-2024-11187, CVE-2024-12705). * Thu Dec 12 2024 Stanislav Levin 9.18.32-alt1 bind-dyndb-ldap - LDAP back-end plug-in for BIND * Wed Jan 22 2025 Stanislav Levin 11.11-alt1 - 11.10 -> 11.11. * Wed Sep 04 2024 Stanislav Levin 11.10-alt8 chromium - An open source web browser developed by Google [2437M] * Fri Jan 31 2025 Andrey Cherepanov 132.0.6834.159-alt0.p11.1 - Backport new version with security fixes to p11 branch. * Wed Jan 29 2025 Andrew A. Vasilyev 132.0.6834.159-alt1 - New version (132.0.6834.159). - Change startup options (Closes: #52826). - Security fixes: + CVE-2025-0762: Use after free in DevTools * Sat Jan 25 2025 Andrey Cherepanov 132.0.6834.110-alt0.p11.1 icingaweb2 - Icinga Web * Tue Jun 18 2024 Paul Wolneykien 2.12.1-alt4 - Extract CSS and fonts to "icingaweb2-style-classic". - Extract images to the separate "icingaweb2-style-classic" package. * Tue Feb 13 2024 Paul Wolneykien 2.12.1-alt3 ima-evm-integrity-check - IMA/EVM integrity check * Thu Nov 21 2024 Paul Wolneykien 1:0.7.7-alt1 - Fix: Don't run update-grub if /etc/sysconfig/grub2 doesn't exist. - controls: Return error if specified configuration variable isn't defined anywhere. - Fix handling of /boot/boot.conf. - Provide next epoch of 'cert-distro-updater' and 'updater' packages to make upgrade possible (+ conflict them). * Thu Sep 05 2024 Paul Wolneykien 0.7.6-alt1 - Make the contents of /etc/sysconfig/integrity override values set in /etc/integrity/config. * Thu May 30 2024 Paul Wolneykien 0.7.5-alt1 - Use 0x80000002 as the default EVM mode. - Automatically enable --with-evm for integrity-sign --verify if EVM is enabled in the kernel. - Fix: Disable autoreq for integrity initrd script. - Added notes about new features (README and man). - Pass explicit EVM option via state file to Stage II. - Fix: Reconfigure bootloader on each stage. - Fix: Delete old /var/lib/integrity_update/default. - Don't touch filesystem immutable bit in EVM mode. - Added option --without-evm. - Run make-initrd with normal log output. - Allow to cancel loading the system if IMA policy fails to load. - Check loading of IMA and EVM policy at system boot (ima-check.service). - Load IMA policy at initrd stage only when ima_appraise=enforce. - Run make-initrd with normal log output. - Fixed OpenSSL GOST module path when copying to initrd. - Fix: Abort on some make-initrd errors. * Mon May 27 2024 Paul Wolneykien 0.7.4-alt1 - Fix file signing log output: stderr or file. - Fix log of errors when signing the files. - Write log to /var/log/integrity-sign.log by default. - Add --log-stderr option. * Wed May 22 2024 Paul Wolneykien 0.7.3-alt1 integalert-source - Osec-based integrity checking script and settings * Wed Nov 20 2024 Paul Wolneykien 1:0.5.1-alt3 - Provide next epoch of 'integ' package to make upgrade possible (+ conflict it). * Tue Nov 12 2024 Paul Wolneykien 0.5.1-alt2 - Fix: Evaluate paths and patterns listed in files.list properly. - Moved the temporary virtual directory list file to /run. * Thu Oct 10 2024 Paul Wolneykien 0.5.0-alt2 - Fix: Run %post_service and %preun_service for integalert_vm.service. * Thu Oct 10 2024 Paul Wolneykien 0.5.0-alt1 - Version: 0.5.0 - Remove the migration %post script. Use normal %post_service and %preun_service scripts. - Install the default /etc/osec/integalert.conf. - Triggers are now disabled by default (use config to enable). - Use the single sender script instead of per-profile sender scripts. - Read /etc/osec/integalert.conf before /etc/sysconfig/integalert. * Thu Sep 05 2024 Paul Wolneykien 0.4.14-alt1 - Place integalert into /usr/sbin/. - Install integalert with 0755 (world executable). - Source /etc/sysconfig/integalert in pipe.conf and sender.conf files. * Thu Sep 05 2024 Paul Wolneykien 0.4.13-alt1 - Make /etc/sysconfig/integalert optional (do not install the default version). * Thu Jul 04 2024 Paul Wolneykien 0.4.12-alt1 - Support virtual directory mode (files.list). - Install and package the default /etc/sysconfig/integalert. - Fixed quotation in the default configuration files. - FIX: Use separated databases for different profiles! * Fri Jun 28 2024 Paul Wolneykien 0.4.11-alt1 - Added integalert(8) manual page. - Search for additional profiles by /etc/osec/integalert_*/dirs.conf. - Add --help and --version. - Added copyleft information. * Mon Jun 03 2024 Paul Wolneykien 0.4.10-alt1 - Add new sender.conf to define logging properties. - Generate and install logrotate configuration (100 weekly). - Add profile name to log tag. - Write last log to /var/log/integalert/lastlog and continuous log to /var/log/integalert/integalert.log - Install and package the special failing targets. * Thu Mar 28 2024 Paul Wolneykien 0.4.9-alt1 kcm-howdy - KDE Workspace 6 Howdy configuration module * Wed Jan 29 2025 Anton Golubev 6.0.1-alt1 - reset the user interface after an action error * Fri Jan 24 2025 Anton Golubev 6.0.0-alt1 kernel-image-pine - The Linux kernel (the core of the Linux operating system) * Mon Feb 03 2025 Valery Inozemtsev 1:6.12.12-alt1 - 6.12.12 * Fri Jan 24 2025 Valery Inozemtsev 1:6.12.11-alt1 mkimage-profiles - ALT based distribution metaprofile * Fri Jan 31 2025 Anton Midyukov 1.7.1-alt1 - live: add use/cleanup to use/live - live: cleanup livecd-main-repo when use/live/repo - profile.mk: add fakeroot to COMMON_PACKAGES - rescue: cleanup all locales except C.UTF-8, set locale C.UTF-8 - rescue: do not use locale of ssh clients - cleanup: refactoring live/image-scripts.d/80-locales - sub.in/rootfs: add image-scripts.d/00-lang-C for set LANG=C.UTF-8 - live-install: add use/l10n for set one en_US locale by default - live: add image-scripts.d/50-openssh - live: enable root login via ssh using password in Live Rescue - tty: add setup serial console for grub to 50-serial * Thu Jan 30 2025 Anton Midyukov 1.7.0-alt1 nettle - A low-level cryptographic library * Tue Jan 28 2025 Mikhail Efremov 3.10.1-alt1 - Disabled assembler on ppc64le. - Updated to 3.10.1. * Wed Jun 19 2024 Mikhail Efremov 3.10-alt1 - Updated to 3.10. * Tue Jun 06 2023 Mikhail Efremov 3.9.1-alt1 papirus-icon-theme - All Papirus icon themes [21M] * Sat Feb 01 2025 Kirill Izmestev 20250201-alt1 - New version. * Thu May 02 2024 Kirill Izmestev 20240501-alt1 poppler-current - PDF rendering library * Fri Dec 27 2024 Dmitrii Fomchenkov 24.08.0-alt2 - add backend validation of signature signed with CryptoPro - set the CryptoPro backend by default - add tests for interfaction between the CryptoPro backend and Poppler - add tests for the signature verification class * Thu Dec 19 2024 Sergey V Turchin 24.08.0-alt1 postgresql13-postgis - Geographic Information Systems Extensions to PostgreSQL 13 [15M] * Sun Feb 02 2025 Andrey Cherepanov 3.5.2-alt1 - New version. * Fri Oct 04 2024 Andrey Cherepanov 3.5.0-alt1 - New version. * Tue Sep 24 2024 Andrey Cherepanov 3.4.3-alt1 - New version. * Tue May 07 2024 Alexey Sheplyakov 3.4.2-alt1.1 postgresql14-postgis - Geographic Information Systems Extensions to PostgreSQL 14 [15M] * Sun Feb 02 2025 Andrey Cherepanov 3.5.2-alt1 - New version. * Fri Oct 04 2024 Andrey Cherepanov 3.5.0-alt1 - New version. * Tue Sep 24 2024 Andrey Cherepanov 3.4.3-alt1 - New version. * Tue May 07 2024 Alexey Sheplyakov 3.4.2-alt1.1 postgresql15-postgis - Geographic Information Systems Extensions to PostgreSQL 15 [15M] * Sun Feb 02 2025 Andrey Cherepanov 3.5.2-alt1 - New version. * Fri Oct 04 2024 Andrey Cherepanov 3.5.0-alt1 - New version. * Tue Sep 24 2024 Andrey Cherepanov 3.4.3-alt1 - New version. * Tue May 07 2024 Alexey Sheplyakov 3.4.2-alt1.1 postgresql16-postgis - Geographic Information Systems Extensions to PostgreSQL 16 [15M] * Sun Feb 02 2025 Andrey Cherepanov 3.5.2-alt1 - New version. * Fri Oct 04 2024 Andrey Cherepanov 3.5.0-alt1 - New version. * Tue Sep 24 2024 Andrey Cherepanov 3.4.3-alt1 - New version. * Tue May 07 2024 Alexey Sheplyakov 3.4.2-alt1.1 python3-module-django - A high-level Python 3 Web framework that encourages rapid development and clean, pragmatic design. * Thu Jan 30 2025 Alexander Burmatov 4.2.18-alt1 - New version 4.2.18. - Fixes for the following security vulnerabilities: + CVE-2024-56374: Potential denial-of-service vulnerability in IPv6 validation * Wed Dec 18 2024 Alexander Burmatov 4.2.17-alt1 python3-module-drf-standardized-errors - Standardize your DRF API error responses. * Fri Jan 31 2025 Alexander Burmatov 0.14.1-alt1 - Update version to 0.14.1. * Mon Aug 05 2024 Dmitry Lyalyaev 0.14.0-alt1 qmmp2 - Qmmp - Qt-based multimedia player * Fri Jan 31 2025 Sergey V Turchin 1:2.2.3-alt1 - new version * Wed Sep 18 2024 Sergey V Turchin 1:2.1.9-alt1 rsync - A program for synchronizing files over a network * Fri Jan 31 2025 Gleb F-Malinovskiy 3.2.7-alt3 - Backported upstream bugfix commits: + rsync crashes with "*** buffer overflow detected ***: terminated (thx Jiri Slaby) (ALT#52889); + Fix FLAG_GOT_DIR_FLIST collission with FLAG_HLINKED (thx Natanael Copa); + Fix use-after-free in generator (thx Natanael Copa). * Tue Jan 14 2025 Gleb F-Malinovskiy 3.2.7-alt2 telegram-desktop - Telegram Desktop messaging app [55M] * Wed Jan 29 2025 Vitaly Lipatov 5.10.7-alt1 - new version (5.10.7) with rpmgs script * Tue Jan 28 2025 Vitaly Lipatov 5.10.6-alt1 - new version 5.10.6 (with rpmrb script) * Sat Jan 25 2025 Vitaly Lipatov 5.10.5-alt1 - new version (5.10.5) with rpmgs script * Sat Jan 18 2025 Vitaly Lipatov 5.10.3-alt1 - new version 5.10.3 (with rpmrb script) * Sun Jan 12 2025 Anton Midyukov 5.9.0-alt2 vcmi - Open-source project aiming to reimplement HMM3:WoG game engine * Sun Feb 02 2025 Anton Midyukov 1.6.4-alt1 - New version 1.6.4. * Sun Jan 12 2025 Anton Midyukov 1.6.3-alt1 veyon - Open source computer monitoring and classroom management * Sat Feb 01 2025 Ajrat Makhmutov 4.9.2-alt2 - Fix the Russian translation of the character '&&' (logical AND). * Thu Jan 30 2025 Ajrat Makhmutov 4.9.2-alt1 - New version. * Wed Dec 04 2024 Ajrat Makhmutov 4.9.1-alt1 volumes-profile-cliff-workstation - Volumes description for SP Workstation * Wed Oct 16 2024 Anton Midyukov 0.5-alt1 - decrease minimal size /home to 9,5 GiB * Mon Sep 02 2024 Anton Midyukov 0.4-alt2 - fix syntax errors for disk < 60 GiB (fix created /home for this case) * Wed Aug 21 2024 Anton Midyukov 0.4-alt1 - Always create a partition larger than 10GB * Mon Aug 19 2024 Anton Midyukov 0.3-alt1 - Set '/' = 50 GiB * Wed Aug 24 2022 Anton Midyukov 0.2-alt1 xfce4-notes-plugin - Sticky notes plugin for the Xfce panel * Sun Feb 02 2025 Mikhail Efremov 1.11.2-alt1 - Updated to 1.11.2. * Thu Jan 09 2025 Mikhail Efremov 1.11.1-alt1 Total 19625 source packages.