Commit Graph

633689 Commits

Author SHA1 Message Date
Robert James Hernandez
f29abfc008 terraspace: 2.2.8 -> 2.2.17
(cherry picked from commit 96bed3710e)
2024-07-28 21:04:19 +00:00
Robert James Hernandez
99e24c606a terraspace: remove version from Gemfile
(cherry picked from commit 8dc9835b18)
2024-07-28 21:04:19 +00:00
John Titor
28d3585633 google-chrome: add changelog link to make it easier for reviewers
Look for Chrome Desktop Stable update in the posts
to see the changelog

(cherry picked from commit 117a1c494c)
2024-07-28 20:19:54 +00:00
John Titor
43a5cfd30b google-chrome: 126.0.6478.182 -> 127.0.6533.72
This update includes 22 security fixes.

[$11000][349198731] High CVE-2024-6988: Use after free in Downloads. Reported by lime(@limeSec_) from TIANGONG Team of Legendsec at QI-ANXIN Group on 2024-06-25

[$8000][349342289] High CVE-2024-6989: Use after free in Loader. Reported by Anonymous on 2024-06-25

[TBD][346618785] High CVE-2024-6991: Use after free in Dawn. Reported by wgslfuzz on 2024-06-12

[$8000][339686368] Medium CVE-2024-6994: Heap buffer overflow in Layout. Reported by Huang Xilin of Ant Group Light-Year Security Lab on 2024-05-10

[$6000][343938078] Medium CVE-2024-6995: Inappropriate implementation in Fullscreen. Reported by Alesandro Ortiz on 2024-06-01

[$5000][333708039] Medium CVE-2024-6996: Race in Frames. Reported by Louis Jannett (Ruhr University Bochum) on 2024-04-10

[$3000][325293263] Medium CVE-2024-6997: Use after free in Tabs. Reported by Sven Dysthe (@svn-dys) on 2024-02-15

[$2000][340098902] Medium CVE-2024-6998: Use after free in User Education. Reported by Sven Dysthe (@svn-dys) on 2024-05-13

[$2000][340893685] Medium CVE-2024-6999: Inappropriate implementation in FedCM. Reported by Alesandro Ortiz on 2024-05-15

[$500][339877158] Medium CVE-2024-7000: Use after free in CSS. Reported by Anonymous on 2024-05-11

[TBD][347509736] Medium CVE-2024-7001: Inappropriate implementation in HTML. Reported by Jake Archibald on 2024-06-17

[$2000][338233148] Low CVE-2024-7003: Inappropriate implementation in FedCM. Reported by Alesandro Ortiz on 2024-05-01

[TBD][40063014] Low CVE-2024-7004: Insufficient validation of untrusted input in Safe Browsing. Reported by Anonymous on 2023-02-10

[TBD][40068800] Low CVE-2024-7005: Insufficient validation of untrusted input in Safe Browsing. Reported by Umar Farooq  on 2023-08-04

(cherry picked from commit 98dc7a18aa)
2024-07-28 20:19:54 +00:00
Emily
f7a73af2fb
Merge pull request #330671 from NixOS/backport-330610-to-release-24.05
[Backport release-24.05] ungoogled-chromium: 126.0.6478.182-1 -> 127.0.6533.72-1
2024-07-28 20:16:51 +02:00
networkException
95c32d7f4c ungoogled-chromium: 126.0.6478.182-1 -> 127.0.6533.72-1
https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_23.html

This update includes 22 security fixes.

CVEs:
CVE-2024-6988 CVE-2024-6989 CVE-2024-6991 CVE-2024-6994 CVE-2024-6995
CVE-2024-6996 CVE-2024-6997 CVE-2024-6998 CVE-2024-6999 CVE-2024-7000
CVE-2024-7001 CVE-2024-7003 CVE-2024-7004 CVE-2024-7005

The ungoogled-chromium binary pruning list got updated to include the
path to a node binary previously not included in the chromium source
tarball. We already did link the binary from our node package into place,
however as we were running the pruning script after the linking the
binary would get removed, causing the build to fail.

Co-authored-by: emilylange <git@emilylange.de>
(cherry picked from commit bb19f848ae)
2024-07-28 15:00:30 +00:00
❄️
ed5f791303
Merge pull request #330428 from risicle/ris-cri-o-1.30.1-r24.05
[24.05] cri-o: 1.30.0 -> 1.30.1
2024-07-28 11:43:31 -03:00
❄️
7c8757c1b2
Merge pull request #330462 from risicle/ris-argocd-2.11.3-r24.05
[24.05] argocd: 2.11.0 -> 2.11.3
2024-07-28 11:42:20 -03:00
Atemu
ed739215d9
Merge pull request #330554 from NixOS/backport-329912-to-release-24.05
[Backport release-24.05] linuxKernel.kernels.linux_zen: 6.9.8-zen1 -> 6.10.1-zen1 ; linuxKernel.kernels.linux_lqx: 6.9.8-lqx1 -> 6.9.11-lqx1
2024-07-28 16:25:34 +02:00
Rafael Fernández López
16bb67ec64 virtualisation/{docker,podman}: update nvidia-ctk warning
Warnings and descriptions for `virtualisation.docker.enableNvidia` and
`virtualisation.podman.enableNvidia` point erroneously to set
`virtualisation.containers.cdi.dynamic.nvidia.enable`. This NixOS
option has been deprecated and the recommended NixOS option is
`hardware.nvidia-container-toolkit.enable`.

(cherry picked from commit 3d2a21eddf)
2024-07-28 11:25:19 +00:00
Emily
e2494c5b22
Merge pull request #330403 from risicle/ris-libvpx_1_8-known-vulnerabilities-r24.05
[24.05] libvpx_1_8: mark with knownVulnerabilities
2024-07-28 11:22:09 +01:00
Robert Scott
975e7d7c59
Merge pull request #330425 from risicle/ris-wagtail-6.0.5-r24.05
[24.05] python311Packages.wagtail: 6.0.2 -> 6.0.5
2024-07-28 11:09:11 +01:00
Matthias Beyer
7bba2df685
Merge pull request #330365 from matthiasbeyer/backport-cargo-tools-updates
[Backport 24.05]: cargo tools updates
2024-07-28 09:52:53 +02:00
Vladimír Čunát
6258be5e40
Merge #329971: thunderbird-128: 128.0esr -> 128.0.1esr
...into release-24.05
2024-07-28 09:04:59 +02:00
tomberek
99d336765b
Merge pull request #327459 from NixOS/backport-324969-to-release-24.05
[Backport release-24.05] gnucash: 5.6 -> 5.8
2024-07-28 00:36:16 -04:00
Emily
69d1c600e0
Merge pull request #330273 from emilylange/backport-330023-to-release-24.05
[Backport release-24.05] chromium,chromedriver: 126.0.6478.182 -> 127.0.6533.72
2024-07-28 03:45:13 +02:00
JerrySM64
88930a5925 linuxKernel.kernels.linux_zen: 6.9.8-lqx1 -> 6.9.11-lqx1
(cherry picked from commit 0961f648fa)
2024-07-28 01:29:15 +00:00
JerrySM64
086f74d77a linuxKernel.kernels.linux_zen: 6.9.8-zen1 -> 6.10.1-zen1
(cherry picked from commit 83431a5831)
2024-07-28 01:29:15 +00:00
K900
ccf6b3356b
Merge pull request #330531 from NixOS/backport-330435-to-release-24.05
[Backport release-24.05] Kernel updates for 2024-07-27
2024-07-28 02:13:27 +03:00
K900
440ac0a16e linux-rt_5_15: 5.15.160-rt77 -> 5.15.163-rt78
(cherry picked from commit 1e5a635100)
2024-07-27 23:13:16 +00:00
K900
2d006c929c linux_4_19: 4.19.318 -> 4.19.319
(cherry picked from commit db09f89018)
2024-07-27 23:13:16 +00:00
K900
4b1817d052 linux_5_4: 5.4.280 -> 5.4.281
(cherry picked from commit 4ab6a7935d)
2024-07-27 23:13:15 +00:00
K900
d4b54962fa linux_5_10: 5.10.222 -> 5.10.223
(cherry picked from commit 3693658190)
2024-07-27 23:13:15 +00:00
K900
e1b938ecbc linux_5_15: 5.15.163 -> 5.15.164
(cherry picked from commit 8001e344d5)
2024-07-27 23:13:15 +00:00
K900
ebcfee0b93 linux_6_1: 6.1.101 -> 6.1.102
(cherry picked from commit 4325dfa68b)
2024-07-27 23:13:15 +00:00
K900
6ea14e2b0d linux_6_6: 6.6.42 -> 6.6.43
(cherry picked from commit 09be196858)
2024-07-27 23:13:15 +00:00
K900
6725365645 linux_6_9: 6.9.11 -> 6.9.12
(cherry picked from commit a0213dc9ee)
2024-07-27 23:13:15 +00:00
K900
c461903fdc linux_6_10: 6.10.1 -> 6.10.2
(cherry picked from commit bb712c9d21)
2024-07-27 23:13:15 +00:00
K900
5e5b9e70aa linux/update-mainline: always pick the latest kernel on a branch
Also clean up stringy version handling a bit

(cherry picked from commit 4363d5a0f5)
2024-07-27 23:13:15 +00:00
K900
c916fb8110
Merge pull request #330521 from NixOS/backport-299599-to-release-24.05
[Backport release-24.05]  programs/kde-pim: init
2024-07-28 01:08:01 +03:00
Sandro Jäckel
d24055bd37 nixos/plasma6: enable programs.kde-pim by default
(cherry picked from commit 4169ba8920)
2024-07-27 22:07:50 +00:00
Sandro Jäckel
e6dacc093c programs/kde-pim: init
(cherry picked from commit aa5ebae159)
2024-07-27 22:07:50 +00:00
Johannes Jöns
7e5afd404b
Merge pull request #330451 from NixOS/backport-330405-to-release-24.05
[Backport release-24.05] discord-stable: 0.0.60 -> 0.0.61
2024-07-27 21:48:07 +02:00
R. Ryantm
8f987041c3 argocd: 2.11.2 -> 2.11.3
(cherry picked from commit 474318f944)
2024-07-27 17:17:56 +01:00
R. Ryantm
18e7c0d06e argocd: 2.11.1 -> 2.11.2
(cherry picked from commit 1fffe13b2f)
2024-07-27 17:17:42 +01:00
R. Ryantm
5a83705f4e argocd: 2.11.0 -> 2.11.1
(cherry picked from commit 7d7251c9b0)
2024-07-27 17:17:25 +01:00
Christina Sørensen
28b1d46b3d discord-stable: 0.0.60 -> 0.0.61
Signed-off-by: Christina Sørensen <christina@cafkafk.com>
(cherry picked from commit 1606915e33)
2024-07-27 16:17:00 +00:00
emilylange
23631bc396
chromium,chromedriver: 126.0.6478.182 -> 127.0.6533.72
https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_23.html

This update includes 22 security fixes.

CVEs:
CVE-2024-6988 CVE-2024-6989 CVE-2024-6991 CVE-2024-6994 CVE-2024-6995
CVE-2024-6996 CVE-2024-6997 CVE-2024-6998 CVE-2024-6999 CVE-2024-7000
CVE-2024-7001 CVE-2024-7003 CVE-2024-7004 CVE-2024-7005

(cherry picked from commit 432cb6b1bb)
2024-07-27 16:40:59 +02:00
emilylange
3d7c8f701b
chromium: prepare for M127
(cherry picked from commit b80f73df94)
2024-07-27 16:40:58 +02:00
R. Ryantm
8811b0d18d cri-o-unwrapped: 1.30.0 -> 1.30.1
(cherry picked from commit 10b1cee6ca)
2024-07-27 15:03:07 +01:00
Nick Cao
8c50662509
Merge pull request #330298 from NixOS/backport-329992-to-release-24.05
[Backport release-24.05] linux_xanmod, linux_xanmod_latest: 2024-07-25
2024-07-27 09:34:01 -04:00
Robert Scott
d28e0cd432 python311Packages.wagtail: 6.0.2 -> 6.0.5 2024-07-27 14:18:42 +01:00
Robert Scott
7c89876f0a libvpx_1_8: mark with knownVulnerabilities
CVE-2023-6349
CVE-2023-44488
CVE-2024-5197
2024-07-27 13:26:12 +01:00
Franz Pletz
629bb6ddf5
Merge pull request #330257 from Ma27/grafana-2405 2024-07-27 12:38:07 +02:00
R. Ryantm
780431f729
cargo-tally: 1.0.47 -> 1.0.48
(cherry picked from commit a2788c5179)
Signed-off-by: Matthias Beyer <mail@beyermatthias.de>
2024-07-27 12:18:08 +02:00
R. Ryantm
43b0bf9e2b
cargo-component: 0.13.2 -> 0.14.0
(cherry picked from commit 14d7585308)
Signed-off-by: Matthias Beyer <mail@beyermatthias.de>
2024-07-27 12:18:08 +02:00
R. Ryantm
b8e31dda04
cargo-deny: 0.14.24 -> 0.15.0
(cherry picked from commit db232207fe)
Signed-off-by: Matthias Beyer <mail@beyermatthias.de>
2024-07-27 12:18:08 +02:00
R. Ryantm
1fd44b72ee
cargo-workspaces: 0.3.2 -> 0.3.5
(cherry picked from commit c315b7bb99)
Signed-off-by: Matthias Beyer <mail@beyermatthias.de>
2024-07-27 12:18:08 +02:00
R. Ryantm
c27d5cae76
cargo-workspaces: 0.3.1 -> 0.3.2
(cherry picked from commit 8d305db737)
Signed-off-by: Matthias Beyer <mail@beyermatthias.de>
2024-07-27 12:18:07 +02:00
Charles Hall
09c5c6705a
cargo-llvm-cov: 0.6.10 -> 0.6.11
(cherry picked from commit c07cdd34de)
Signed-off-by: Matthias Beyer <mail@beyermatthias.de>
2024-07-27 12:18:07 +02:00