-
Notifications
You must be signed in to change notification settings - Fork 53
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Weekly portage-stable package updates 2024-01-01 #1535
Changes from 206 commits
93d6e73
f137f50
16469d4
d413478
02f851e
2d6a4fc
f3e343c
b377cf8
e2830be
88e7d32
478e4d2
a0da9b5
8278388
d1221e9
fcd680f
06e3a32
eb231a7
0756c4d
81b5e8e
d30f631
5a6243e
8ace9c3
80326b4
dd0573d
2a3ceaa
621f20d
32e7830
b8b07bd
33b206f
bdfb2ac
71981d2
771e7bb
62a22df
7c9af23
0a2da9e
cd503f6
8e0f394
6c17b40
37c1aaa
e672f68
4b76797
1349343
d9e7ae0
6325584
95c9971
ac9192e
c57de91
7edd456
dfb4ee7
12bb1ef
c4f57fc
6731ab3
e6364c2
626c16e
3698dd0
b4079d5
10152c0
b6ca4b4
f5a9d3d
f17bedc
8d05aee
41a2a1e
e8ba9df
14421db
18f88c1
cf6dcbe
d8d0006
73de368
4640708
9237346
238488d
3e21b50
d8b23cf
5ec97a6
047d924
95974b8
dbd7b9a
ab1c1d7
ad023d5
3d09b0a
32ff049
750205c
345c6b2
cf3c4e4
510d89b
6885e52
57ca2d5
634a53a
02ca55f
f7ba835
a460ee8
b4c0e12
3112743
febb92a
ee367c5
fcacf90
87c0a18
cfac3da
242dc44
8cfb3c9
a9877bf
479ffa1
4f9c156
c5f7eae
1b069dc
2abaf36
10508d6
231f8aa
1d51a14
9e9faec
b4634b3
7bf5aa6
6fb33aa
a907deb
70d96f6
8641b49
923a320
03b6e2d
fb0acc2
6c53457
deb4cd3
9747b88
7f062f5
c7a657b
5adc69e
f4a9cda
11b6f31
41a7a25
07f6a2e
62aeef6
54a255c
797120d
1167be6
5fbdd3f
fa2d2c3
f4d175d
061d9c0
68a7d44
f70bb8b
4415d99
5080fa0
50d9c37
9e6eae8
7d2d792
4521e97
e604c27
4898b4f
9790736
5e20bf3
5a24bc8
dcd10e3
ef54c4c
1e0137b
1fa2191
c8b20a9
2aae53c
ffdcb68
31ba93d
a4d32af
7132938
468b2c4
a2e442d
abfb448
71150ab
ec20ecf
444e7c2
afe1896
fac0e2d
10c941e
cbb7d6e
e517bfa
4798f15
dc98854
e5f97e9
4c10fd6
da9738d
f6f3658
6071690
2780513
366c9a8
60feede
9fff1c8
893b562
ff5b7f1
9438d1b
88a0f60
b98a001
dfc6732
b58de0a
2c95729
b933f2a
7306c38
b36b68b
19f5ca6
fe17bab
311b2e5
408c3bc
bf1d8f8
f22e978
ee630ae
16de0f8
25dd8ec
88fec24
13dbf13
9ee6665
685069e
25a3a1e
bdf9c33
File filter
Filter by extension
Conversations
Jump to
Diff view
Diff view
There are no files selected for viewing
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,8 @@ | ||
- vim ([CVE-2023-5344](https://nvd.nist.gov/vuln/detail/CVE-2023-5344), [CVE-2023-5441](https://nvd.nist.gov/vuln/detail/CVE-2023-5441), [CVE-2023-5535](https://nvd.nist.gov/vuln/detail/CVE-2023-5535), [CVE-2023-46246](https://nvd.nist.gov/vuln/detail/CVE-2023-46246)) | ||
- perl ([CVE-2023-47038](https://nvd.nist.gov/vuln/detail/CVE-2023-47038)) | ||
- libxml2 ([CVE-2023-45322](https://nvd.nist.gov/vuln/detail/CVE-2023-45322)) | ||
- traceroute ([CVE-2023-46316](https://nvd.nist.gov/vuln/detail/CVE-2023-46316)) | ||
- gnutls ([CVE-2023-5981](https://nvd.nist.gov/vuln/detail/CVE-2023-5981)) | ||
- curl ([CVE-2023-46218](https://nvd.nist.gov/vuln/detail/CVE-2023-46218), [CVE-2023-46219](https://nvd.nist.gov/vuln/detail/CVE-2023-46219)) | ||
- binutils ([CVE-2023-1972](https://nvd.nist.gov/vuln/detail/CVE-2023-1972)) | ||
- zlib ([CVE-2023-45853](https://nvd.nist.gov/vuln/detail/CVE-2023-45853)) | ||
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,32 @@ | ||
- bash ([5.2_p21](https://git.savannah.gnu.org/cgit/bash.git/log/?id=2bb3cbefdb8fd019765b1a9cc42ecf37ff22fec6)) | ||
- binutils ([2.41](https://lists.gnu.org/archive/html/info-gnu/2023-07/msg00009.html)) | ||
- coreutils ([9.4](https://lists.gnu.org/archive/html/info-gnu/2023-08/msg00007.html)) | ||
- curl ([8.5.0](https://curl.se/changes.html#8_5_0)) | ||
- elfutils ([0.190](https://sourceware.org/git/?p=elfutils.git;a=blob;f=NEWS;h=0420d3b8376877c1b11712f1aad90a2e2b6f6d06;hb=c1058da5a450e33e72b72abb53bc3ffd7f6b361b)) | ||
- gawk ([5.3.0](https://lwn.net/Articles/949829/)) | ||
- gentoolkit ([0.6.3](https://gitweb.gentoo.org/proj/gentoolkit.git/log/?h=gentoolkit-0.6.3)) | ||
- gettext ([0.22.4](https://savannah.gnu.org/news/?id=10544)) | ||
- glib ([2.78.3](https://gitlab.gnome.org/GNOME/glib/-/blob/2.78.3/NEWS)) | ||
- gnutls ([3.8.2](https://lists.gnupg.org/pipermail/gnutls-help/2023-November/004837.html)) | ||
- groff ([1.23.0](https://lists.gnu.org/archive/html/info-gnu/2023-07/msg00001.html)) | ||
- hwdata ([0.376](https://github.com/vcrhonek/hwdata/commits/v0.376)) | ||
- iproute2 ([6.6.0](https://marc.info/?l=linux-netdev&m=169929000929786&w=2)) | ||
- ipset ([7.19](https://git.netfilter.org/ipset/tree/ChangeLog?id=ce6db35a0ea950e850ebe7c50ce46908c1c3bb2b)) | ||
- kbd ([2.6.4](https://github.com/legionus/kbd/releases/tag/v2.6.4)) | ||
- kmod ([31](https://github.com/kmod-project/kmod/blob/v31/NEWS)) | ||
- libarchive ([3.7.2](https://github.com/libarchive/libarchive/releases/tag/v3.7.2)) | ||
- libksba ([1.6.5](https://git.gnupg.org/cgi-bin/gitweb.cgi?p=libksba.git;a=blob;f=NEWS;h=369cfb5d91bf232685a6c5b156453a624e11ed67;hb=7b3e4785e54280d1a13c5bc839bdc6722d898ac7)) | ||
- libnsl ([2.0.1](https://github.com/thkukuk/libnsl/releases/tag/v2.0.1)) | ||
- libxslt ([1.1.39](https://gitlab.gnome.org/GNOME/libxslt/-/releases/v1.1.39)) | ||
- lsof ([4.99.0](https://github.com/lsof-org/lsof/blob/4.99.0/00DIST#L5523)) | ||
- SDK: perl ([5.38.2](https://perldoc.perl.org/5.38.2/perldelta)) | ||
- portage ([3.0.59](https://gitweb.gentoo.org/proj/portage.git/tree/NEWS?h=portage-3.0.59)) | ||
- python ([3.11.7](https://www.python.org/downloads/release/python-3117/)) | ||
- readline ([8.2_p7](https://git.savannah.gnu.org/cgit/readline.git/log/?id=bfe9c573a9e376323929c80b2b71c59727fab0cc)) | ||
- repo (2.37) | ||
- sqlite ([3.44.2](https://www.sqlite.org/releaselog/3_44_2.html)) | ||
- traceroute ([2.1.3](https://sourceforge.net/projects/traceroute/files/traceroute/traceroute-2.1.3/)) | ||
- usbutils ([016](https://git.kernel.org/pub/scm/linux/kernel/git/gregkh/usbutils.git/tree/NEWS?h=v016)) | ||
- util-linux ([2.39.2](https://github.com/util-linux/util-linux/blob/v2.39.2/Documentation/releases/v2.39.2-ReleaseNotes)) | ||
- vim ([9.0.2092](https://github.com/vim/vim/commits/v9.0.2092/)) | ||
- xmlsec ([1.3.2](https://github.com/lsh123/xmlsec/releases/tag/xmlsec_1_3_2)) |
This file was deleted.
This file was deleted.
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -21,21 +21,20 @@ | |
# Needed to fix CVE-2023-36054. | ||
=app-crypt/mit-krb5-1.21.2 ~amd64 ~arm64 | ||
|
||
# Needed to address CVE-2023-2609 and CVE-2023-2610. | ||
=app-editors/vim-9.0.1678 ~amd64 ~arm64 | ||
=app-editors/vim-core-9.0.1678 ~amd64 ~arm64 | ||
|
||
# Needed by arm64-native SDK. | ||
=app-emulation/open-vmdk-1.0 * | ||
|
||
# Needed for addressing CVE-2023-50246 and CVE-2023-50268. | ||
=app-misc/jq-1.7.1 ~amd64 ~arm64 | ||
|
||
There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. We do not need to add this line again here, because it already has the same line. That was done when I updated jq to 1.7.1. There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. Dropped the duplicated line, but ordered it alphabetically. |
||
# Keep versions on both arches in sync. | ||
=app-misc/pax-utils-1.3.7 ~amd64 | ||
|
||
# Needed for addressing CVE-2023-50246, CVE-2023-50268 | ||
=app-misc/jq-1.7.1 ~amd64 ~arm64 | ||
|
||
# Required for addressing CVE-2022-3715. | ||
=app-shells/bash-5.2_p15-r7 ~amd64 ~arm64 | ||
=app-shells/bash-5.2_p21-r1 ~amd64 ~arm64 | ||
|
||
# No keyword for arm64 yet. | ||
=coreos-devel/fero-client-0.1.1 ** | ||
|
@@ -44,9 +43,6 @@ | |
=dev-embedded/u-boot-tools-2021.04_rc2 ~arm64 | ||
=dev-lang/nasm-2.15.05 ~arm64 | ||
|
||
# Keep versions on both arches in sync. | ||
=dev-lang/python-3.11.6 ~amd64 | ||
|
||
# Accept unstable host Rust compilers. | ||
=dev-lang/rust-1.75.0 ~amd64 ~arm64 | ||
|
||
|
@@ -55,42 +51,51 @@ | |
|
||
# Keep versions on both arches in sync. | ||
=dev-libs/ding-libs-0.6.2-r1 ~arm64 | ||
=dev-libs/glib-2.78.3 ~arm64 | ||
=dev-libs/gobject-introspection-1.78.1 ~arm64 | ||
=dev-libs/gobject-introspection-common-1.78.1 ~arm64 | ||
=dev-libs/libdnet-1.16.2 ~arm64 | ||
=dev-libs/libgcrypt-1.10.2 ~arm64 | ||
=dev-libs/libsodium-1.0.19-r1 ~arm64 | ||
=dev-libs/libunistring-1.1-r1 ~arm64 | ||
=dev-libs/libxml2-2.11.5-r1 ~amd64 | ||
=dev-util/bpftool-6.5.7 ~arm64 | ||
=dev-util/gdbus-codegen-2.78.3 ~arm64 | ||
=dev-util/glib-utils-2.78.3 ~arm64 | ||
=net-firewall/conntrack-tools-1.4.6-r1 ~arm64 | ||
|
||
# Required for addressing CVE-2023-0361. | ||
=net-libs/gnutls-3.8.0 ~arm64 | ||
# Required for addressing CVE-2023-0361 and CVE-2023-5981. | ||
=net-libs/gnutls-3.8.2 ~amd64 ~arm64 | ||
|
||
# Keep versions on both arches in sync. | ||
=net-libs/libnetfilter_cthelper-1.0.1-r1 ~arm64 | ||
=net-libs/libnetfilter_cttimeout-1.0.1 ~arm64 | ||
|
||
# Needed for addressing CVE-2023-46218 and CVE-2023-46219 | ||
=net-misc/curl-8.5.0 ~amd64 ~arm64 | ||
|
||
# Required to allow us to override the sftp subsystem in sshd config. | ||
=net-misc/openssh-9.4_p1 ~amd64 ~arm64 | ||
|
||
# Keep versions on both arches in sync. | ||
=net-nds/openldap-2.6.4-r1 ~amd64 | ||
=sys-apps/coreutils-9.4 ~amd64 | ||
=sys-apps/kexec-tools-2.0.24 ~arm64 | ||
=sys-block/thin-provisioning-tools-1.0.6 ~amd64 | ||
=sys-apps/util-linux-2.39.2-r1 ~amd64 | ||
|
||
# Enable ipvsadm for arm64. | ||
=sys-cluster/ipvsadm-1.31-r1 ~arm64 | ||
|
||
# Keep versions on both arches in sync. | ||
=sys-devel/binutils-2.40-r9 ~arm64 | ||
=sys-firmware/edk2-aarch64-18.02 ** | ||
=sys-libs/binutils-libs-2.40-r7 ~arm64 | ||
|
||
# Keep linux headers in sync with used kernel | ||
=sys-kernel/linux-headers-6.6 ~amd64 ~arm64 | ||
|
||
# Needed to fix CVE-2023-29491. | ||
=sys-libs/ncurses-6.4_p20230527 ~amd64 ~arm64 | ||
|
||
# A dependency of app-shells/bash version that we need for security | ||
# fixes. | ||
=sys-libs/readline-8.2_p1 ~amd64 ~arm64 | ||
=sys-libs/readline-8.2_p7 ~amd64 ~arm64 | ||
|
||
# Needed to fix CVE-2023-4016. | ||
=sys-process/procps-4.0.4 ~amd64 | ||
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
As Flatcar is not affected by the CVE, I would simply delete the zlib line.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Right. Dropped.