From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: DKIM-Filter: OpenDKIM Filter v2.11.0 mskdc-relay.altlinux.org BC2A56019F DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=altlinux.org; s=relay-alt2025; t=1784074737; bh=8/vcId1NpUZwhYOB+Ic9kHRF+k0VaQy5Y9u+1CTQXiM=; h=Date:From:To:Subject:From; b=LYRop54kHwJynMOskXxUHUonG5ayaGEB9JN2yXVYGwRyUMXovLDz5P1SCVnH6pXhc I/EwAj3vHcEufQ62okLBNQmcEwGLgasPbhiU/6KsA8ttl53NkxNtiIlXE9Q+k3k7Yb WpExAv8nLOc5MQ1yeA7+rZx7Imv9w7ZdpsM/Jfpk= Date: Wed, 15 Jul 2026 00:18:57 +0000 From: QA Team Robot To: sisyphus-cybertalk@lists.altlinux.org Message-ID: Mail-Followup-To: sisyphus-cybertalk@lists.altlinux.org MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Subject: [cyber] I: p11/branch packages: +1! +14 (20558) X-BeenThere: sisyphus-cybertalk@lists.altlinux.org X-Mailman-Version: 2.1.12 Precedence: list Reply-To: devel@lists.altlinux.org List-Id: ALT Linux Sisyphus cybertalk List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 15 Jul 2026 00:18:57 -0000 Archived-At: List-Archive: 1 ADDED package system-restore - ALT System Restore and Deployment * Thu Jun 18 2026 Anton Midyukov 0.85-alt0.p11.1 - Build on p11 without shellcheck. * Mon Mar 30 2026 Leonid Krivoshein 0.85-alt1 14 UPDATED packages alt-workstation-10-11-upgrade - A simple tool for ALT Workstation upgrade from 10 to 11 * Sat Jul 11 2026 Alexey Volkov 1.4.3-alt1 - new version 1.4.3 * Wed Apr 15 2026 Alexey Volkov 1.4.2-alt1 docs-alt-virtualization-one - ALT Virtualization OpenNebula Edition documentation [12M] * Tue Jun 30 2026 Elena Mishina 11.0-alt2 - update to ALT Virtualization ONE 11.0RC2 - update install packages (ALT 57879) * Mon Jan 26 2026 Elena Mishina 11.0-alt1 keycloak - Open Source Identity and Access Management For Modern Applications and Services [1085M] * Thu Jul 09 2026 Andrey Cherepanov 26.7.0-alt1 - New version (fixes: CVE-2026-9796, CVE-2026-9689, CVE-2026-9798, CVE-2026-11986). * Fri Jun 26 2026 Andrey Cherepanov 26.6.4-alt1 libXfont2 - X.Org libXfont runtime library * Wed Jul 08 2026 Valery Inozemtsev 2.0.8-alt1 - 2.0.8 * Mon Aug 29 2022 Valery Inozemtsev 2.0.6-alt1 nats-server - High-Performance server for NATS, the cloud and edge native messaging system * Mon Jul 13 2026 Anton Zhukharev 2.14.3-alt2 - Fixed paths in nats-server-hardened.service (ALT#59811). * Thu Jul 09 2026 Alexander Danilov 2.14.3-alt1 - Updated to 2.14.3. * Tue Jun 09 2026 Artem Krasovskiy 2.14.2-alt1 - Updated to 2.14.2. * Wed Apr 01 2026 Alexander Danilov 2.12.6-alt1 nushell - A new type of shell [61M] * Mon Jul 13 2026 Sergey Zhidkih 0.114.1-alt1 - Updated to upstream version 0.114.1 * Tue Jun 16 2026 Sergey Zhidkih 0.113.1-alt1 openbao - Secure secrets and encryption management system [36M] * Wed Jul 08 2026 Maxim Tulskiy 2.5.5-alt1 - Updated to new version 2.5.5. - Fixes: + CVE-2026-55770: prevent LDAP injection via bind DN to group resolution (auth/ldap, secrets/ldap) + CVE-2026-55776: fix server crash from unlock of unlocked mutex for RSA keys created with derived=true (secrets/transit) + CVE-2026-55774: fix unauthorized cross-namespace lease revocation via leaked lease identifiers (core/leases) + CVE-2026-55775: fix namespace path canonicalization of "root" enabling unauthorized operations on the parent namespace (core/namespaces) - Require golang >= 1.26.4 to close Go stdlib CVEs found in the build toolchain. - Bumped vendored go-ntlmssp to 0.1.1 to fix CVE-2026-32952. - Bumped vendored jackc/pgx/v5 to 5.9.2 to fix CVE-2026-41889. * Tue Jun 09 2026 Maxim Tulskiy 2.5.4-alt1 - Updated to new version 2.5.4. - Fixes: + CVE-2026-46358: fix audit logs dropping custom headers when using inline auth (core/auth) + CVE-2026-46405: prevent hidden default token issuance from auth plugin endpoints (core) + CVE-2026-45808: remove legacy lease endpoints due to cross-namespace lease modification (core) * Wed Apr 22 2026 Maxim Tulskiy 2.5.3-alt1 plasma-addon-alt-weather - KDE Workspace 6 Plasma weather addon * Tue Jun 30 2026 Ajrat Makhmutov 2.2.4-alt1 - Install wind/pressure/humidity status icons into hicolor so themes that do not inherit breeze can find them. * Wed Apr 15 2026 Daniil-Viktor Ratkin 2.2.3-alt2 rust - The Rust Programming Language [282M] * Thu Jul 09 2026 Sergey Zhidkih 1:1.97.0-alt1 - New version (1.97.0). - Security fixes: + CVE-2026-55200: libssh2 heap buffer over-read in SFTP handling allows memory disclosure or crash. + CVE-2026-55199: libssh2 pre-authentication denial of service via CPU exhaustion in SSH_MSG_EXT_INFO handling + CVE-2025-15661: libssh2 out-of-bounds write in SSH packet handling may enable remote code execution * Mon Jun 01 2026 Sergey Zhidkih 1:1.96.0-alt1 selinux-policy-alt - SELinux alt policy * Mon Jul 13 2026 Anton Midyukov 0.1.0-alt17 - Update to sp_128 from IVK. * Mon Jul 06 2026 Anton Midyukov 0.1.0-alt16 wireshark - The BugTraq Award Winning Network Traffic Analyzer [53M] * Sun Jul 12 2026 Anton Farygin 4.6.7-alt1 - 4.6.6 -> 4.6.7 * Thu May 21 2026 Anton Farygin 4.6.6-alt1 xorg-server - Xserver - X Window System display server * Wed Jul 08 2026 Valery Inozemtsev 2:21.1.24-alt1 - 21.1.24 * Tue Jun 02 2026 Valery Inozemtsev 2:21.1.23-alt1 xorg-xwayland - Wayland X server * Wed Jul 08 2026 Valery Inozemtsev 2:24.1.13-alt1 - 24.1.13 * Tue Jun 02 2026 Valery Inozemtsev 2:24.1.12-alt1 zoryn - Maintainer assistant for ALT Linux package maintenance * Sun Jul 12 2026 Anton Farygin 0.46.0-alt1 - added task refresh detection of subtasks built from a different source - added check upstream local worktree scan and copy:/bare watch file support - added clone_url API endpoint config via [clone] api_url - added stalled-build re-verification to --verify-failures - changed clone to resolve repo URL from RDB clone_url, dropped [clone] url - fixed task batch CONFIG argument TAB completion - fixed gen environment local build command to pass hasher_dir - fixed check upstream to probe .gear/watch without .gear/rules - fixed build parallel progress table showing stale log stages * Tue Jul 07 2026 Anton Farygin 0.45.0-alt1 Total 20558 source packages.