Commit Graph

633591 Commits

Author SHA1 Message Date
Lena
dd03ba5b48 tlrc: 1.9.2 -> 1.9.3
(cherry picked from commit f31b0cf680)
2024-07-29 21:19:44 +00:00
John Ericson
89526a7d96
Merge pull request #330871 from NixOS/backport-297144-to-release-24.05
[Backport release-24.05] llvm: Fix compiler-rt missing sanitizers when using useLLVM
2024-07-29 12:07:17 -05:00
s1341
b9bd166927 llvm: Fix compiler-rt missing sanitizers when using useLLVM
(cherry picked from commit 344902e098)
2024-07-29 14:20:15 +00:00
Masum Reza
fc2fc81498
Merge pull request #329675 from NixOS/backport-329627-to-release-24.05
[Backport release-24.05] warp-terminal: 0.2024.07.09.08.01.stable_00 -> 0.2024.07.16.08.02.stable_03
2024-07-29 19:38:41 +05:30
Yaya
2cf7af75a8 electron-chromedriver_29: 29.4.4 -> 29.4.5
- Changelog: https://github.com/electron/electron/releases/tag/v29.4.5
- Diff: https://github.com/electron/electron/compare/refs/tags/v29.4.4...v29.4.5
- Fixes CVE-2024-6290
- Fixes CVE-2024-6291
- Fixes CVE-2024-6292
- Fixes CVE-2024-6293

(cherry picked from commit 5c31ee6b23)
2024-07-29 15:25:09 +02:00
Yaya
46e8a0a537 electron-source.electron_29: 29.4.4 -> 29.4.5
- Changelog: https://github.com/electron/electron/releases/tag/v29.4.5
- Diff: https://github.com/electron/electron/compare/refs/tags/v29.4.4...v29.4.5
- Fixes CVE-2024-6290
- Fixes CVE-2024-6291
- Fixes CVE-2024-6292
- Fixes CVE-2024-6293

(cherry picked from commit acef9fd015)
2024-07-29 15:25:09 +02:00
Yaya
3d558a4474 electron_29-bin: 29.4.4 -> 29.4.5
- Changelog: https://github.com/electron/electron/releases/tag/v29.4.5
- Diff: https://github.com/electron/electron/compare/refs/tags/v29.4.4...v29.4.5
- Fixes CVE-2024-6290
- Fixes CVE-2024-6291
- Fixes CVE-2024-6292
- Fixes CVE-2024-6293

(cherry picked from commit fa5a1ed4df)
2024-07-29 15:25:09 +02:00
❄️
4a7d2ce295
Merge pull request #330832 from NixOS/backport-329948-to-release-24.05
[Backport release-24.05] vscode-extensions: Add various C# extensions
2024-07-29 10:07:18 -03:00
Sandro
cfe0409dcf
Merge pull request #330223 from NixOS/backport-329708-to-release-24.05
[Backport release-24.05] docker_27: 27.0.3 -> 27.1.1
2024-07-29 13:49:15 +02:00
magnouvean
090a65e3b0 vscode-extensions.ms-dotnettools.vscodeintellicode-csharp: init 2.1.11
(cherry picked from commit 79b30f904c)
2024-07-29 09:24:08 +00:00
magnouvean
63b5574b1c vscode-extensions.ms-dotnettools.vscode-dotnet-runtime: init 2.1.1
(cherry picked from commit 90c3231e9e)
2024-07-29 09:24:08 +00:00
magnouvean
8fdf650e30 vscode-extensions.csharpier.csharpier-vscode: init 1.7.3
(cherry picked from commit 934c6da35e)
2024-07-29 09:24:07 +00:00
Masum Reza
12bf09802d
Merge pull request #330727 from NixOS/backport-330701-to-release-24.05
[Backport release-24.05] google-chrome: 126.0.6478.182 -> 127.0.6533.72
2024-07-29 08:25:33 +05:30
Shadaj Laddad
da652d5ac0 sapling: 0.2.202401116 -> 0.2.20240718
(cherry picked from commit 860120afe4)
2024-07-28 21:28:50 -05:00
John Titor
28d3585633 google-chrome: add changelog link to make it easier for reviewers
Look for Chrome Desktop Stable update in the posts
to see the changelog

(cherry picked from commit 117a1c494c)
2024-07-28 20:19:54 +00:00
John Titor
43a5cfd30b google-chrome: 126.0.6478.182 -> 127.0.6533.72
This update includes 22 security fixes.

[$11000][349198731] High CVE-2024-6988: Use after free in Downloads. Reported by lime(@limeSec_) from TIANGONG Team of Legendsec at QI-ANXIN Group on 2024-06-25

[$8000][349342289] High CVE-2024-6989: Use after free in Loader. Reported by Anonymous on 2024-06-25

[TBD][346618785] High CVE-2024-6991: Use after free in Dawn. Reported by wgslfuzz on 2024-06-12

[$8000][339686368] Medium CVE-2024-6994: Heap buffer overflow in Layout. Reported by Huang Xilin of Ant Group Light-Year Security Lab on 2024-05-10

[$6000][343938078] Medium CVE-2024-6995: Inappropriate implementation in Fullscreen. Reported by Alesandro Ortiz on 2024-06-01

[$5000][333708039] Medium CVE-2024-6996: Race in Frames. Reported by Louis Jannett (Ruhr University Bochum) on 2024-04-10

[$3000][325293263] Medium CVE-2024-6997: Use after free in Tabs. Reported by Sven Dysthe (@svn-dys) on 2024-02-15

[$2000][340098902] Medium CVE-2024-6998: Use after free in User Education. Reported by Sven Dysthe (@svn-dys) on 2024-05-13

[$2000][340893685] Medium CVE-2024-6999: Inappropriate implementation in FedCM. Reported by Alesandro Ortiz on 2024-05-15

[$500][339877158] Medium CVE-2024-7000: Use after free in CSS. Reported by Anonymous on 2024-05-11

[TBD][347509736] Medium CVE-2024-7001: Inappropriate implementation in HTML. Reported by Jake Archibald on 2024-06-17

[$2000][338233148] Low CVE-2024-7003: Inappropriate implementation in FedCM. Reported by Alesandro Ortiz on 2024-05-01

[TBD][40063014] Low CVE-2024-7004: Insufficient validation of untrusted input in Safe Browsing. Reported by Anonymous on 2023-02-10

[TBD][40068800] Low CVE-2024-7005: Insufficient validation of untrusted input in Safe Browsing. Reported by Umar Farooq  on 2023-08-04

(cherry picked from commit 98dc7a18aa)
2024-07-28 20:19:54 +00:00
Emily
f7a73af2fb
Merge pull request #330671 from NixOS/backport-330610-to-release-24.05
[Backport release-24.05] ungoogled-chromium: 126.0.6478.182-1 -> 127.0.6533.72-1
2024-07-28 20:16:51 +02:00
networkException
95c32d7f4c ungoogled-chromium: 126.0.6478.182-1 -> 127.0.6533.72-1
https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_23.html

This update includes 22 security fixes.

CVEs:
CVE-2024-6988 CVE-2024-6989 CVE-2024-6991 CVE-2024-6994 CVE-2024-6995
CVE-2024-6996 CVE-2024-6997 CVE-2024-6998 CVE-2024-6999 CVE-2024-7000
CVE-2024-7001 CVE-2024-7003 CVE-2024-7004 CVE-2024-7005

The ungoogled-chromium binary pruning list got updated to include the
path to a node binary previously not included in the chromium source
tarball. We already did link the binary from our node package into place,
however as we were running the pruning script after the linking the
binary would get removed, causing the build to fail.

Co-authored-by: emilylange <git@emilylange.de>
(cherry picked from commit bb19f848ae)
2024-07-28 15:00:30 +00:00
❄️
ed5f791303
Merge pull request #330428 from risicle/ris-cri-o-1.30.1-r24.05
[24.05] cri-o: 1.30.0 -> 1.30.1
2024-07-28 11:43:31 -03:00
❄️
7c8757c1b2
Merge pull request #330462 from risicle/ris-argocd-2.11.3-r24.05
[24.05] argocd: 2.11.0 -> 2.11.3
2024-07-28 11:42:20 -03:00
Atemu
ed739215d9
Merge pull request #330554 from NixOS/backport-329912-to-release-24.05
[Backport release-24.05] linuxKernel.kernels.linux_zen: 6.9.8-zen1 -> 6.10.1-zen1 ; linuxKernel.kernels.linux_lqx: 6.9.8-lqx1 -> 6.9.11-lqx1
2024-07-28 16:25:34 +02:00
Emily
e2494c5b22
Merge pull request #330403 from risicle/ris-libvpx_1_8-known-vulnerabilities-r24.05
[24.05] libvpx_1_8: mark with knownVulnerabilities
2024-07-28 11:22:09 +01:00
Robert Scott
975e7d7c59
Merge pull request #330425 from risicle/ris-wagtail-6.0.5-r24.05
[24.05] python311Packages.wagtail: 6.0.2 -> 6.0.5
2024-07-28 11:09:11 +01:00
Matthias Beyer
7bba2df685
Merge pull request #330365 from matthiasbeyer/backport-cargo-tools-updates
[Backport 24.05]: cargo tools updates
2024-07-28 09:52:53 +02:00
Vladimír Čunát
6258be5e40
Merge #329971: thunderbird-128: 128.0esr -> 128.0.1esr
...into release-24.05
2024-07-28 09:04:59 +02:00
tomberek
99d336765b
Merge pull request #327459 from NixOS/backport-324969-to-release-24.05
[Backport release-24.05] gnucash: 5.6 -> 5.8
2024-07-28 00:36:16 -04:00
Emily
69d1c600e0
Merge pull request #330273 from emilylange/backport-330023-to-release-24.05
[Backport release-24.05] chromium,chromedriver: 126.0.6478.182 -> 127.0.6533.72
2024-07-28 03:45:13 +02:00
JerrySM64
88930a5925 linuxKernel.kernels.linux_zen: 6.9.8-lqx1 -> 6.9.11-lqx1
(cherry picked from commit 0961f648fa)
2024-07-28 01:29:15 +00:00
JerrySM64
086f74d77a linuxKernel.kernels.linux_zen: 6.9.8-zen1 -> 6.10.1-zen1
(cherry picked from commit 83431a5831)
2024-07-28 01:29:15 +00:00
K900
ccf6b3356b
Merge pull request #330531 from NixOS/backport-330435-to-release-24.05
[Backport release-24.05] Kernel updates for 2024-07-27
2024-07-28 02:13:27 +03:00
K900
440ac0a16e linux-rt_5_15: 5.15.160-rt77 -> 5.15.163-rt78
(cherry picked from commit 1e5a635100)
2024-07-27 23:13:16 +00:00
K900
2d006c929c linux_4_19: 4.19.318 -> 4.19.319
(cherry picked from commit db09f89018)
2024-07-27 23:13:16 +00:00
K900
4b1817d052 linux_5_4: 5.4.280 -> 5.4.281
(cherry picked from commit 4ab6a7935d)
2024-07-27 23:13:15 +00:00
K900
d4b54962fa linux_5_10: 5.10.222 -> 5.10.223
(cherry picked from commit 3693658190)
2024-07-27 23:13:15 +00:00
K900
e1b938ecbc linux_5_15: 5.15.163 -> 5.15.164
(cherry picked from commit 8001e344d5)
2024-07-27 23:13:15 +00:00
K900
ebcfee0b93 linux_6_1: 6.1.101 -> 6.1.102
(cherry picked from commit 4325dfa68b)
2024-07-27 23:13:15 +00:00
K900
6ea14e2b0d linux_6_6: 6.6.42 -> 6.6.43
(cherry picked from commit 09be196858)
2024-07-27 23:13:15 +00:00
K900
6725365645 linux_6_9: 6.9.11 -> 6.9.12
(cherry picked from commit a0213dc9ee)
2024-07-27 23:13:15 +00:00
K900
c461903fdc linux_6_10: 6.10.1 -> 6.10.2
(cherry picked from commit bb712c9d21)
2024-07-27 23:13:15 +00:00
K900
5e5b9e70aa linux/update-mainline: always pick the latest kernel on a branch
Also clean up stringy version handling a bit

(cherry picked from commit 4363d5a0f5)
2024-07-27 23:13:15 +00:00
K900
c916fb8110
Merge pull request #330521 from NixOS/backport-299599-to-release-24.05
[Backport release-24.05]  programs/kde-pim: init
2024-07-28 01:08:01 +03:00
Sandro Jäckel
d24055bd37 nixos/plasma6: enable programs.kde-pim by default
(cherry picked from commit 4169ba8920)
2024-07-27 22:07:50 +00:00
Sandro Jäckel
e6dacc093c programs/kde-pim: init
(cherry picked from commit aa5ebae159)
2024-07-27 22:07:50 +00:00
Johannes Jöns
7e5afd404b
Merge pull request #330451 from NixOS/backport-330405-to-release-24.05
[Backport release-24.05] discord-stable: 0.0.60 -> 0.0.61
2024-07-27 21:48:07 +02:00
R. Ryantm
8f987041c3 argocd: 2.11.2 -> 2.11.3
(cherry picked from commit 474318f944)
2024-07-27 17:17:56 +01:00
R. Ryantm
18e7c0d06e argocd: 2.11.1 -> 2.11.2
(cherry picked from commit 1fffe13b2f)
2024-07-27 17:17:42 +01:00
R. Ryantm
5a83705f4e argocd: 2.11.0 -> 2.11.1
(cherry picked from commit 7d7251c9b0)
2024-07-27 17:17:25 +01:00
Christina Sørensen
28b1d46b3d discord-stable: 0.0.60 -> 0.0.61
Signed-off-by: Christina Sørensen <christina@cafkafk.com>
(cherry picked from commit 1606915e33)
2024-07-27 16:17:00 +00:00
emilylange
23631bc396
chromium,chromedriver: 126.0.6478.182 -> 127.0.6533.72
https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_23.html

This update includes 22 security fixes.

CVEs:
CVE-2024-6988 CVE-2024-6989 CVE-2024-6991 CVE-2024-6994 CVE-2024-6995
CVE-2024-6996 CVE-2024-6997 CVE-2024-6998 CVE-2024-6999 CVE-2024-7000
CVE-2024-7001 CVE-2024-7003 CVE-2024-7004 CVE-2024-7005

(cherry picked from commit 432cb6b1bb)
2024-07-27 16:40:59 +02:00
emilylange
3d7c8f701b
chromium: prepare for M127
(cherry picked from commit b80f73df94)
2024-07-27 16:40:58 +02:00