ALT Linux Sisyphus cybertalk
 help / color / mirror / Atom feed
From: QA Team Robot <qa@altlinux.org>
To: sisyphus-cybertalk@lists.altlinux.org
Subject: [cyber] I: p11/branch packages: +1! +15 (20640)
Date: Fri, 28 Aug 2026 00:22:04 +0000
Message-ID: <apDUrJ8R5ELzgOFe@beehive.mskdc.altlinux.org> (raw)

	1 ADDED package

gnome-shell-extension-unblank - Unblank screen when screen saver becomes active
* Wed Aug 12 2026 Alexander Makeenkov <amakeenk@altlinux> 20260317-alt1
- Initial build for ALT.

	15 UPDATED packages

EekBoek - Bookkeeping software for small and medium-size businesses
* Thu Aug 27 2026 Alexei Takaseev <taf@altlinux> 2.051-alt3
- Fix FTBS with new DBD-Pg (disable PostgreSQL tests)
* Sat Dec 24 2022 Ilya Mashkin <oddity@altlinux> 2.051-alt2

alterator-quota - alterator module for managing filesystem quotas
* Mon Aug 17 2026 Ivan Khanas <xeno@altlinux> 1.6.6-alt1
- Enable quota when fstab already.
* Tue Apr 07 2026 Mikhail Efremov <sem@altlinux> 1.6.5-alt1

angie - Efficient, powerful and scalable reverse proxy and web server
* Wed Aug 12 2026 Anton Farygin <rider@altlinux> 1.12.1-alt2
- Fixed dynamic module discovery in tests (closes: #60140).
- Fixed Perl module packaging by using a private upstream-compatible path.
- Hardened the systemd unit.
* Mon Jul 27 2026 Anton Farygin <rider@altlinux> 1.12.1-alt1

chrony - Chrony clock synchronization program
* Thu Aug 13 2026 Anton Farygin <rider@altlinux> 4.8-alt2
- default chrony.conf: restore the vendor zone prefix lost after
  the upstream example switched to a single pool directive, use
  2.ru.pool.ntp.org (the only prefix with AAAA records)
* Mon Sep 08 2025 Anton Farygin <rider@altlinux> 4.8-alt1

firefox - Fast, private and secure web browser                  	[749M]
* Tue Aug 18 2026 Ajrat Makhmutov <rauty@altlinux> 154.0-alt1
- New version.
- Fixes:
  + CVE-2026-75874: Sandbox escape in the Remote Settings Client component
  + CVE-2026-74934: Site isolation issue in the Graphics: CanvasWebGL component
  + CVE-2026-74935: Privilege escalation in the DOM: Networking component
  + CVE-2026-74936: Use-after-free in the JavaScript: WebAssembly component
  + CVE-2026-74937: Use-after-free in the JavaScript: GC component
  + CVE-2026-74938: Mitigation bypass in the JavaScript: GC component
  + CVE-2026-74939: Privilege escalation in the DOM: Navigation component
  + CVE-2026-74940: Use-after-free in the Graphics: Text component
  + CVE-2026-74941: Privilege escalation in the Graphics: CanvasWebGL component
  + CVE-2026-74942: Privilege escalation in the Remote Settings Client component
  + CVE-2026-74943: Use-after-free in the Graphics: ImageLib component
  + CVE-2026-74944: Use-after-free in the DOM: Core & HTML component
  + CVE-2026-74945: Information disclosure in the Graphics: Text component
  + CVE-2026-74946: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component
  + CVE-2026-74947: Privilege escalation due to invalid pointer in the Graphics component
  + CVE-2026-74948: Information disclosure in the Graphics component
  + CVE-2026-74949: Privilege escalation due to use-after-free in the Graphics: Canvas2D component
  + CVE-2026-74950: Privilege escalation in the Downloads API component
  + CVE-2026-74951: Clickjacking issue in Firefox for Android
  + CVE-2026-74952: Privilege escalation in the Application Update component
  + CVE-2026-74953: Privilege escalation in the Networking: Cookies component
  + CVE-2026-74954: Information disclosure due to side-channel in the Storage: Cache API component
  + CVE-2026-74955: Privilege escalation in the Request Handling component
  + CVE-2026-74956: Same-origin policy bypass in the DOM: Service Workers component
  + CVE-2026-74957: Mitigation bypass in the Safe Browsing component
  + CVE-2026-74958: Information disclosure in the WebRTC component
  + CVE-2026-74959: Mitigation bypass in the Storage: Cache API component
  + CVE-2026-74960: Site isolation issue in the WebExtensions component
  + CVE-2026-74961: Side-channel in the Web Audio component
  + CVE-2026-74962: Site isolation issue in the Networking: Cookies component
  + CVE-2026-74963: Same-origin policy bypass in the Networking: Cookies component
  + CVE-2026-74964: Integer overflow in the Graphics component
  + CVE-2026-74965: Privilege escalation in the Shell Integration component
  + CVE-2026-74966: Information disclosure in the Form Autofill component
  + CVE-2026-74967: Same-origin policy bypass in the Audio/Video: Playback component
  + CVE-2026-74968: Site isolation issue in the Graphics: WebRender component
  + CVE-2026-74969: Use-after-free in the Layout: Text and Fonts component
  + CVE-2026-74970: Site isolation issue in the Graphics component
  + CVE-2026-74971: Information disclosure in the DOM: UI Events & Focus Handling component
  + CVE-2026-74972: Information disclosure in the DOM: Push Subscriptions component
  + CVE-2026-74973: Race condition, use-after-free in the Graphics component
  + CVE-2026-74974: Same-origin policy bypass in the Graphics: ImageLib component
  + CVE-2026-74975: Spoofing issue in the Downloads component in Firefox for Android
  + CVE-2026-74976: JIT miscompilation in the JavaScript Engine: JIT component
  + CVE-2026-74977: Integer overflow in the Graphics component
  + CVE-2026-74978: Clickjacking issue in the Widget component
  + CVE-2026-74979: Mitigation bypass in the Add-ons Manager component
  + CVE-2026-74980: Clickjacking issue in the Downloads component in Firefox for Android
  + CVE-2026-74981: Site isolation issue in the Audio/Video: Web Codecs component
  + CVE-2026-74982: Denial-of-service in the Widget component
  + CVE-2026-74983: Mitigation bypass in the Data Loss Prevention component
  + CVE-2026-74984: Race condition in the JavaScript Engine component
  + CVE-2026-74985: Privilege escalation in the Enterprise Policies component
  + CVE-2026-74986: Site isolation issue in the CSS Parsing and Computation component
  + CVE-2026-74987: Internally found bugs fixed in Firefox ESR 140.14, Firefox ESR 153.1 and Firefox 154
  + CVE-2026-74988: Internally found bugs fixed in Firefox ESR 153.1 and Firefox 154
  + CVE-2026-74989: Internally found bugs fixed in Firefox 154
  + CVE-2026-74990: Internally found bugs fixed in Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1 and Firefox 154
* Tue Aug 11 2026 Ajrat Makhmutov <rauty@altlinux> 153.0.4-alt1
- New version.
* Tue Aug 04 2026 Ajrat Makhmutov <rauty@altlinux> 153.0.3-alt1
- New version.
* Thu Jul 30 2026 Ajrat Makhmutov <rauty@altlinux> 153.0.1-alt1
- New version.
* Wed Jul 22 2026 Ajrat Makhmutov <rauty@altlinux> 153.0-alt1

nss - Netscape Network Security Services(NSS)                   	[52M]
* Wed Aug 19 2026 Ajrat Makhmutov <rauty@altlinux> 3.127-alt1
- New version.
* Wed Jul 22 2026 Ajrat Makhmutov <rauty@altlinux> 3.126-alt1

os-prober - Operating systems detector
* Thu Aug 13 2026 Egor Ignatov <egori@altlinux> 1.85-alt1
- New version 1.85.
* Mon Jun 22 2026 Egor Ignatov <egori@altlinux> 1.84-alt3

perl-DBD-Pg - PostgreSQL database driver for the DBI module
* Tue Aug 25 2026 Alexei Takaseev <taf@altlinux> 3.21.1-alt1
- 3.21.1 (Fixes CVE-2026-78183)
* Fri Dec 08 2023 Igor Vlasenko <viy@altlinux> 3.18.0-alt1

perl-Imager - Perl module for generating 24 bit Images
* Wed Aug 26 2026 Anton Farygin <rider@altlinux> 1.034-alt2
- Fixes:
  * CVE-2026-73639: d973bd7e PNG: fix mishandling of a volatile
    alias for a parameter
  * CVE-2026-73638: 48ba8ac0 EXIF: add missing checks for the start
    of an ifd entry offset; 6f1fd003 EXIF: add more EXIF limit
    checks and tests
* Sun Aug 16 2026 Anton Farygin <rider@altlinux> 1.034-alt1
- 1.033 -> 1.034
* Wed Jul 22 2026 Anton Farygin <rider@altlinux> 1.033-alt1
- 1.031 -> 1.033
* Tue May 26 2026 Anton Farygin <rider@altlinux> 1.031-alt1
- 1.029 -> 1.031
* Mon Oct 06 2025 Constantin Sunzow <protvin@altlinux> 1.029-alt1
- New version.
* Tue Sep 30 2025 Constantin Sunzow <protvin@altlinux> 1.028-alt1

thunderbird - Thunderbird is Mozilla's e-mail client            	[957M]
* Wed Aug 12 2026 Ajrat Makhmutov <rauty@altlinux> 153.0.3-alt1
- New version.
* Tue Aug 04 2026 Ajrat Makhmutov <rauty@altlinux> 153.0.2-alt1
- New version.
* Fri Jul 24 2026 Ajrat Makhmutov <rauty@altlinux> 153.0.1-alt1
- New version.
* Wed Jul 22 2026 Ajrat Makhmutov <rauty@altlinux> 153.0-alt1

tomcat10 - Apache Servlet/JSP Engine, RI for Servlet 6.0/JSP 3.1 API
* Wed Aug 26 2026 Stanislav Levin <slev@altlinux> 1:10.1.59-alt0.p11.1
- Backported to p11.
* Wed Aug 26 2026 Stanislav Levin <slev@altlinux> 1:10.1.59-alt1
- 10.1.57 -> 10.1.59 (fixes: CVE-2026-65182, CVE-2026-65183, CVE-2026-65637,
  CVE-2026-65905, CVE-2026-65927, CVE-2026-66422, CVE-2026-68525,
  CVE-2026-68569, CVE-2026-68763, CVE-2026-73180).
* Tue Jul 14 2026 Stanislav Levin <slev@altlinux> 1:10.1.57-alt0.p11.1

zabbix - A network monitor                                      	[36M]
* Wed Aug 26 2026 Alexei Takaseev <taf@altlinux> 1:7.0.30-alt0.p11.1
- 7.0.30 (Fixes: CVE-2026-23929, CVE-2026-23930, CVE-2026-23935, CVE-2026-23937, CVE-2026-23938)
* Tue Jul 28 2026 Alexei Takaseev <taf@altlinux> 1:7.0.29-alt0.p11.1

zabbix-agent2-plugin-mongodb - Provides native Zabbix solution for monitoring MongoDB
* Wed Aug 26 2026 Alexei Takaseev <taf@altlinux> 7.0.30-alt1
- 7.0.30
* Tue Jul 28 2026 Alexei Takaseev <taf@altlinux> 7.0.29-alt1

zabbix-agent2-plugin-mssql - Provides native Zabbix solution for monitoring MS-SQL
* Wed Aug 26 2026 Alexei Takaseev <taf@altlinux> 7.0.30-alt1
- 7.0.30
* Tue Jul 28 2026 Alexei Takaseev <taf@altlinux> 7.0.29-alt1

zabbix-agent2-plugin-postgresql - Provides native Zabbix solution for monitoring PostgreSQL
* Wed Aug 26 2026 Alexei Takaseev <taf@altlinux> 7.0.30-alt1
- 7.0.30
* Tue Jul 28 2026 Alexei Takaseev <taf@altlinux> 7.0.29-alt1

Total 20640 source packages.


                 reply	other threads:[~2026-08-28  0:22 UTC|newest]

Thread overview: [no followups] expand[flat|nested]  mbox.gz  Atom feed

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=apDUrJ8R5ELzgOFe@beehive.mskdc.altlinux.org \
    --to=qa@altlinux.org \
    --cc=devel@lists.altlinux.org \
    --cc=sisyphus-cybertalk@lists.altlinux.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link

ALT Linux Sisyphus cybertalk

This inbox may be cloned and mirrored by anyone:

	git clone --mirror http://lore.altlinux.org/sisyphus-cybertalk/0 sisyphus-cybertalk/git/0.git

	# If you have public-inbox 1.1+ installed, you may
	# initialize and index your mirror using the following commands:
	public-inbox-init -V2 sisyphus-cybertalk sisyphus-cybertalk/ http://lore.altlinux.org/sisyphus-cybertalk \
		sisyphus-cybertalk@lists.altlinux.org sisyphus-cybertalk@lists.altlinux.ru sisyphus-cybertalk@lists.altlinux.com
	public-inbox-index sisyphus-cybertalk

Example config snippet for mirrors.
Newsgroup available over NNTP:
	nntp://lore.altlinux.org/org.altlinux.lists.sisyphus-cybertalk


AGPL code for this site: git clone https://public-inbox.org/public-inbox.git