From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: DKIM-Filter: OpenDKIM Filter v2.11.0 mskdc-relay.altlinux.org 3C3A26002E DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=altlinux.org; s=relay-alt2025; t=1787876524; bh=foPbkJKOIVS8PsPskGpiRMgeh3qAZQOczpKcjSqyVnI=; h=Date:From:To:Subject:From; b=C6jmHfCSVlTrY+YBjq4GGhsurZAUa/iSMWPZ3yDiTn763SOpTAMK3q2V5L69DZZ3c J2BMlcAPGKJXf8fyb6+kvhBhoeJ164fccB589r7E6apHAGeFQC5hzWaGANu6CCvZbU LX/Tfn0g2/luzIB42aiSfuhv1apiDA+cuOushKTM= Date: Fri, 28 Aug 2026 00:22:04 +0000 From: QA Team Robot To: sisyphus-cybertalk@lists.altlinux.org Message-ID: Mail-Followup-To: sisyphus-cybertalk@lists.altlinux.org MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Subject: [cyber] I: p11/branch packages: +1! +15 (20640) X-BeenThere: sisyphus-cybertalk@lists.altlinux.org X-Mailman-Version: 2.1.12 Precedence: list Reply-To: devel@lists.altlinux.org List-Id: ALT Linux Sisyphus cybertalk List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 28 Aug 2026 00:22:04 -0000 Archived-At: List-Archive: 1 ADDED package gnome-shell-extension-unblank - Unblank screen when screen saver becomes active * Wed Aug 12 2026 Alexander Makeenkov 20260317-alt1 - Initial build for ALT. 15 UPDATED packages EekBoek - Bookkeeping software for small and medium-size businesses * Thu Aug 27 2026 Alexei Takaseev 2.051-alt3 - Fix FTBS with new DBD-Pg (disable PostgreSQL tests) * Sat Dec 24 2022 Ilya Mashkin 2.051-alt2 alterator-quota - alterator module for managing filesystem quotas * Mon Aug 17 2026 Ivan Khanas 1.6.6-alt1 - Enable quota when fstab already. * Tue Apr 07 2026 Mikhail Efremov 1.6.5-alt1 angie - Efficient, powerful and scalable reverse proxy and web server * Wed Aug 12 2026 Anton Farygin 1.12.1-alt2 - Fixed dynamic module discovery in tests (closes: #60140). - Fixed Perl module packaging by using a private upstream-compatible path. - Hardened the systemd unit. * Mon Jul 27 2026 Anton Farygin 1.12.1-alt1 chrony - Chrony clock synchronization program * Thu Aug 13 2026 Anton Farygin 4.8-alt2 - default chrony.conf: restore the vendor zone prefix lost after the upstream example switched to a single pool directive, use 2.ru.pool.ntp.org (the only prefix with AAAA records) * Mon Sep 08 2025 Anton Farygin 4.8-alt1 firefox - Fast, private and secure web browser [749M] * Tue Aug 18 2026 Ajrat Makhmutov 154.0-alt1 - New version. - Fixes: + CVE-2026-75874: Sandbox escape in the Remote Settings Client component + CVE-2026-74934: Site isolation issue in the Graphics: CanvasWebGL component + CVE-2026-74935: Privilege escalation in the DOM: Networking component + CVE-2026-74936: Use-after-free in the JavaScript: WebAssembly component + CVE-2026-74937: Use-after-free in the JavaScript: GC component + CVE-2026-74938: Mitigation bypass in the JavaScript: GC component + CVE-2026-74939: Privilege escalation in the DOM: Navigation component + CVE-2026-74940: Use-after-free in the Graphics: Text component + CVE-2026-74941: Privilege escalation in the Graphics: CanvasWebGL component + CVE-2026-74942: Privilege escalation in the Remote Settings Client component + CVE-2026-74943: Use-after-free in the Graphics: ImageLib component + CVE-2026-74944: Use-after-free in the DOM: Core & HTML component + CVE-2026-74945: Information disclosure in the Graphics: Text component + CVE-2026-74946: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component + CVE-2026-74947: Privilege escalation due to invalid pointer in the Graphics component + CVE-2026-74948: Information disclosure in the Graphics component + CVE-2026-74949: Privilege escalation due to use-after-free in the Graphics: Canvas2D component + CVE-2026-74950: Privilege escalation in the Downloads API component + CVE-2026-74951: Clickjacking issue in Firefox for Android + CVE-2026-74952: Privilege escalation in the Application Update component + CVE-2026-74953: Privilege escalation in the Networking: Cookies component + CVE-2026-74954: Information disclosure due to side-channel in the Storage: Cache API component + CVE-2026-74955: Privilege escalation in the Request Handling component + CVE-2026-74956: Same-origin policy bypass in the DOM: Service Workers component + CVE-2026-74957: Mitigation bypass in the Safe Browsing component + CVE-2026-74958: Information disclosure in the WebRTC component + CVE-2026-74959: Mitigation bypass in the Storage: Cache API component + CVE-2026-74960: Site isolation issue in the WebExtensions component + CVE-2026-74961: Side-channel in the Web Audio component + CVE-2026-74962: Site isolation issue in the Networking: Cookies component + CVE-2026-74963: Same-origin policy bypass in the Networking: Cookies component + CVE-2026-74964: Integer overflow in the Graphics component + CVE-2026-74965: Privilege escalation in the Shell Integration component + CVE-2026-74966: Information disclosure in the Form Autofill component + CVE-2026-74967: Same-origin policy bypass in the Audio/Video: Playback component + CVE-2026-74968: Site isolation issue in the Graphics: WebRender component + CVE-2026-74969: Use-after-free in the Layout: Text and Fonts component + CVE-2026-74970: Site isolation issue in the Graphics component + CVE-2026-74971: Information disclosure in the DOM: UI Events & Focus Handling component + CVE-2026-74972: Information disclosure in the DOM: Push Subscriptions component + CVE-2026-74973: Race condition, use-after-free in the Graphics component + CVE-2026-74974: Same-origin policy bypass in the Graphics: ImageLib component + CVE-2026-74975: Spoofing issue in the Downloads component in Firefox for Android + CVE-2026-74976: JIT miscompilation in the JavaScript Engine: JIT component + CVE-2026-74977: Integer overflow in the Graphics component + CVE-2026-74978: Clickjacking issue in the Widget component + CVE-2026-74979: Mitigation bypass in the Add-ons Manager component + CVE-2026-74980: Clickjacking issue in the Downloads component in Firefox for Android + CVE-2026-74981: Site isolation issue in the Audio/Video: Web Codecs component + CVE-2026-74982: Denial-of-service in the Widget component + CVE-2026-74983: Mitigation bypass in the Data Loss Prevention component + CVE-2026-74984: Race condition in the JavaScript Engine component + CVE-2026-74985: Privilege escalation in the Enterprise Policies component + CVE-2026-74986: Site isolation issue in the CSS Parsing and Computation component + CVE-2026-74987: Internally found bugs fixed in Firefox ESR 140.14, Firefox ESR 153.1 and Firefox 154 + CVE-2026-74988: Internally found bugs fixed in Firefox ESR 153.1 and Firefox 154 + CVE-2026-74989: Internally found bugs fixed in Firefox 154 + CVE-2026-74990: Internally found bugs fixed in Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1 and Firefox 154 * Tue Aug 11 2026 Ajrat Makhmutov 153.0.4-alt1 - New version. * Tue Aug 04 2026 Ajrat Makhmutov 153.0.3-alt1 - New version. * Thu Jul 30 2026 Ajrat Makhmutov 153.0.1-alt1 - New version. * Wed Jul 22 2026 Ajrat Makhmutov 153.0-alt1 nss - Netscape Network Security Services(NSS) [52M] * Wed Aug 19 2026 Ajrat Makhmutov 3.127-alt1 - New version. * Wed Jul 22 2026 Ajrat Makhmutov 3.126-alt1 os-prober - Operating systems detector * Thu Aug 13 2026 Egor Ignatov 1.85-alt1 - New version 1.85. * Mon Jun 22 2026 Egor Ignatov 1.84-alt3 perl-DBD-Pg - PostgreSQL database driver for the DBI module * Tue Aug 25 2026 Alexei Takaseev 3.21.1-alt1 - 3.21.1 (Fixes CVE-2026-78183) * Fri Dec 08 2023 Igor Vlasenko 3.18.0-alt1 perl-Imager - Perl module for generating 24 bit Images * Wed Aug 26 2026 Anton Farygin 1.034-alt2 - Fixes: * CVE-2026-73639: d973bd7e PNG: fix mishandling of a volatile alias for a parameter * CVE-2026-73638: 48ba8ac0 EXIF: add missing checks for the start of an ifd entry offset; 6f1fd003 EXIF: add more EXIF limit checks and tests * Sun Aug 16 2026 Anton Farygin 1.034-alt1 - 1.033 -> 1.034 * Wed Jul 22 2026 Anton Farygin 1.033-alt1 - 1.031 -> 1.033 * Tue May 26 2026 Anton Farygin 1.031-alt1 - 1.029 -> 1.031 * Mon Oct 06 2025 Constantin Sunzow 1.029-alt1 - New version. * Tue Sep 30 2025 Constantin Sunzow 1.028-alt1 thunderbird - Thunderbird is Mozilla's e-mail client [957M] * Wed Aug 12 2026 Ajrat Makhmutov 153.0.3-alt1 - New version. * Tue Aug 04 2026 Ajrat Makhmutov 153.0.2-alt1 - New version. * Fri Jul 24 2026 Ajrat Makhmutov 153.0.1-alt1 - New version. * Wed Jul 22 2026 Ajrat Makhmutov 153.0-alt1 tomcat10 - Apache Servlet/JSP Engine, RI for Servlet 6.0/JSP 3.1 API * Wed Aug 26 2026 Stanislav Levin 1:10.1.59-alt0.p11.1 - Backported to p11. * Wed Aug 26 2026 Stanislav Levin 1:10.1.59-alt1 - 10.1.57 -> 10.1.59 (fixes: CVE-2026-65182, CVE-2026-65183, CVE-2026-65637, CVE-2026-65905, CVE-2026-65927, CVE-2026-66422, CVE-2026-68525, CVE-2026-68569, CVE-2026-68763, CVE-2026-73180). * Tue Jul 14 2026 Stanislav Levin 1:10.1.57-alt0.p11.1 zabbix - A network monitor [36M] * Wed Aug 26 2026 Alexei Takaseev 1:7.0.30-alt0.p11.1 - 7.0.30 (Fixes: CVE-2026-23929, CVE-2026-23930, CVE-2026-23935, CVE-2026-23937, CVE-2026-23938) * Tue Jul 28 2026 Alexei Takaseev 1:7.0.29-alt0.p11.1 zabbix-agent2-plugin-mongodb - Provides native Zabbix solution for monitoring MongoDB * Wed Aug 26 2026 Alexei Takaseev 7.0.30-alt1 - 7.0.30 * Tue Jul 28 2026 Alexei Takaseev 7.0.29-alt1 zabbix-agent2-plugin-mssql - Provides native Zabbix solution for monitoring MS-SQL * Wed Aug 26 2026 Alexei Takaseev 7.0.30-alt1 - 7.0.30 * Tue Jul 28 2026 Alexei Takaseev 7.0.29-alt1 zabbix-agent2-plugin-postgresql - Provides native Zabbix solution for monitoring PostgreSQL * Wed Aug 26 2026 Alexei Takaseev 7.0.30-alt1 - 7.0.30 * Tue Jul 28 2026 Alexei Takaseev 7.0.29-alt1 Total 20640 source packages.