worldofpeace
fae9e165bb
gvfs: fix CVE-2019-12795
...
This is a version of #63481 for master.
Vulnerability Description:
daemon/gvfsdaemon.c in gvfsd from GNOME gvfs before 1.38.3, 1.40.x before
1.40.2, and 1.41.x before 1.41.3 opened a private D-Bus server socket without
configuring an authorization rule. A local attacker could connect to this server
socket and issue D-Bus method calls. Note that the server socket only accepts
a single connection, so the attacker would have to discover the server and connect
to the socket before its owner does.
#63301
2019-06-18 19:48:47 -04:00
worldofpeace
02ea0d3959
gvfs: fix CVE-2019-1244{7.8.9}
...
This is a version of #63481 for master.
CVE-2019-12447:
daemon/gvfsbackendadmin.c mishandles file ownership because setfsuid is
not used.
CVE-2019-12448:
daemon/gvfsbackendadmin.c has race conditions because the admin backend
doesn't implement query_info_on_read/write.
CVE-2019-12449:
daemon/gvfsbackendadmin.c mishandles a file's user and group ownership
during move (and copy with G_FILE_COPY_ALL_METADATA) operations
from admin:// to file:// URIs, because root privileges are unavailable.
Upstream MR: https://gitlab.gnome.org/GNOME/gvfs/merge_requests/48
2019-06-18 19:48:47 -04:00
worldofpeace
6fa7263c1e
Merge pull request #63349 from seppeljordan/update-nix-prefetch-github
...
nix-prefetch-github: 2.2 -> 2.3
2019-06-18 18:11:58 -04:00
Sebastian Jordan
08dbc60974
nix-prefetch-github: Remove propagatedBuildInputs `requests'
...
`requests' is no longer required per setup.cfg
2019-06-19 00:06:29 +02:00
worldofpeace
83ba5afcc9
Merge pull request #63387 from r-ryantm/auto-update/python3.7-py3status
...
python37Packages.py3status: 3.18 -> 3.19
2019-06-18 17:34:29 -04:00
worldofpeace
df4415a14a
Merge pull request #63455 from r-ryantm/auto-update/vlc
...
libsForQt5.vlc: 3.0.7 -> 3.0.7.1
2019-06-18 17:33:07 -04:00
worldofpeace
e0648781b1
Merge pull request #63460 from r-ryantm/auto-update/whois
...
whois: 5.4.2 -> 5.4.3
2019-06-18 17:30:55 -04:00
worldofpeace
f1e6803af3
Merge pull request #63473 from r-ryantm/auto-update/you-get
...
you-get: 0.4.1302 -> 0.4.1314
2019-06-18 17:29:16 -04:00
R. RyanTM
1eac41929c
shutter: 0.94.2 -> 0.94.3
...
Semi-automatic update generated by
https://github.com/ryantm/nixpkgs-update tools. This update was made
based on information from
https://repology.org/metapackage/shutter/versions
2019-06-18 22:57:22 +02:00
Jan Tojnar
8315cf5b18
qtikz: unstable-20161122 -> 0.12 ( #62733 )
...
qtikz: unstable-20161122 -> 0.12
2019-06-18 22:39:04 +02:00
Ryan Mulligan
d4afaa8dc2
Merge pull request #63253 from r-ryantm/auto-update/git-ftp
...
git-ftp: 1.5.1 -> 1.5.2
2019-06-18 13:29:18 -07:00
Alyssa Ross
0ca0284580
firefox: 67.0.2 -> 67.0.3
...
CVE-2019-11707
2019-06-18 20:26:43 +00:00
Ryan Mulligan
3422a7a352
Merge pull request #63410 from r-ryantm/auto-update/qownnotes
...
qownnotes: 19.5.7 -> 19.6.1
2019-06-18 13:26:25 -07:00
Ryan Mulligan
2326ced887
Merge pull request #63276 from r-ryantm/auto-update/jdupes
...
jdupes: 1.13 -> 1.13.1
2019-06-18 13:13:50 -07:00
Gabriel Ebner
c740f71c35
freecad: python3, qt5, occt7 ( #63348 )
...
freecad: python3, qt5, occt7
2019-06-18 22:00:23 +02:00
Michael Raskin
12df2b0348
Merge pull request #63436 from r-ryantm/auto-update/squid
...
squid4: 4.6 -> 4.7
2019-06-18 19:56:54 +00:00
Alyssa Ross
087c619572
firefox-esr: 60.7.0esr -> 60.7.1esr
...
CVE-2019-11707
2019-06-18 19:42:55 +00:00
Alyssa Ross
dad5e84a3a
firefox-devedition-bin: 68.0b9 -> 68.0b11
...
CVE-2019-11707
2019-06-18 19:42:53 +00:00
Alyssa Ross
95da818dc2
firefox-beta-bin: 68.0b9 -> 68.0b11
...
CVE-2019-11707
2019-06-18 19:42:51 +00:00
Alyssa Ross
994a67da86
firefox-bin: 67.0.2 -> 67.0.3
...
CVE-2019-11707
2019-06-18 19:42:49 +00:00
Robin Gloster
3598d506ed
kdeApplications.kgeography: init
2019-06-18 21:39:40 +02:00
worldofpeace
2c96ca1c83
Merge pull request #63415 from talkara/pythonPackages.robotframework-sshlibrary
...
pythonPackages.robotframework-sshlibrary: init at 3.3.0
2019-06-18 15:10:50 -04:00
Taito Horiuchi
fe150460a8
pythonPackages.robotframework-sshlibrary: init at 3.3.0
2019-06-18 15:08:00 -04:00
R. RyanTM
18fab18ee2
you-get: 0.4.1302 -> 0.4.1314
...
Semi-automatic update generated by
https://github.com/ryantm/nixpkgs-update tools. This update was made
based on information from
https://repology.org/metapackage/you-get/versions
2019-06-18 11:57:38 -07:00
worldofpeace
f5fd79aebd
Merge pull request #63092 from mmahut/togglcli
...
pythonPackages.toggl-cli: init at 2.1.0 (and its dependencies)
2019-06-18 14:53:48 -04:00
Domen Kožar
9587693abb
Merge pull request #63351 from Ekleog/fix-2532
...
docs: document that nix will not support derivations in meta
2019-06-18 20:09:08 +02:00
R. RyanTM
bfc421064b
stress-ng: 0.09.58 -> 0.09.59.1
...
Semi-automatic update generated by
https://github.com/ryantm/nixpkgs-update tools. This update was made
based on information from
https://repology.org/metapackage/stress-ng/versions
2019-06-18 19:45:04 +02:00
Pascal Wittmann
61c5fc0b4f
Merge pull request #63328 from r-ryantm/auto-update/pdf2djvu
...
pdf2djvu: 0.9.12 -> 0.9.13
2019-06-18 19:41:28 +02:00
R. RyanTM
1eeb240afd
whois: 5.4.2 -> 5.4.3
...
Semi-automatic update generated by
https://github.com/ryantm/nixpkgs-update tools. This update was made
based on information from
https://repology.org/metapackage/whois/versions
2019-06-18 10:24:42 -07:00
Ryan Mulligan
dfa2fb9624
Merge pull request #63416 from r-ryantm/auto-update/rosegarden
...
rosegarden: 18.12 -> 19.06
2019-06-18 10:04:16 -07:00
Ryan Mulligan
220b8c0f7c
Merge pull request #63417 from r-ryantm/auto-update/rssguard
...
rssguard: 3.5.7 -> 3.5.9
2019-06-18 10:02:38 -07:00
R. RyanTM
fe6259ea97
libsForQt5.vlc: 3.0.7 -> 3.0.7.1
...
Semi-automatic update generated by
https://github.com/ryantm/nixpkgs-update tools. This update was made
based on information from
https://repology.org/metapackage/vlc/versions
2019-06-18 09:45:23 -07:00
R. RyanTM
3297873118
ponyc: 0.28.0 -> 0.28.1
...
Semi-automatic update generated by
https://github.com/ryantm/nixpkgs-update tools. This update was made
based on information from
https://repology.org/metapackage/ponyc/versions
2019-06-18 18:21:56 +02:00
Jonathan Ringer
20fa4f63b7
direnv: 2.20.0 -> 2.20.1
2019-06-18 18:21:14 +02:00
Daiderd Jordan
c93a7f4d81
Merge pull request #63295 from ehamberg/patch-2
...
Don't use autoreconfHook for building Erlang/OTP
2019-06-18 18:17:29 +02:00
Profpatsch
8ce4463d4a
bazel: add update script to update srcDeps from WORKSPACE file
2019-06-18 17:47:01 +02:00
Matthew Bauer
c08cdfa781
Merge pull request #54543 from thefloweringash/git-prefetch-errors
...
nix-prefetch-git: propagate errors under --quiet
2019-06-18 11:20:28 -04:00
Franz Pletz
426e10558d
Merge pull request #63443 from WilliButz/grafana-update
...
grafana: 6.2.3 -> 6.2.4
2019-06-18 15:20:06 +00:00
R. RyanTM
95fb70c1bc
sdcc: 3.8.0 -> 3.9.0
...
Semi-automatic update generated by
https://github.com/ryantm/nixpkgs-update tools. This update was made
based on information from
https://repology.org/metapackage/sdcc/versions
2019-06-18 17:19:25 +02:00
zimbatm
6787c5734b
minio: only publish the main binary
2019-06-18 16:48:17 +02:00
WilliButz
ad6dad6f59
grafana: 6.2.3 -> 6.2.4
2019-06-18 16:30:49 +02:00
Ryan Mulligan
a8a45b4109
Merge pull request #63315 from r-ryantm/auto-update/obs-studio
...
obs-studio: 23.1.0 -> 23.2.1
2019-06-18 07:26:30 -07:00
R. RyanTM
48178d947f
squid4: 4.6 -> 4.7
...
Semi-automatic update generated by
https://github.com/ryantm/nixpkgs-update tools. This update was made
based on information from
https://repology.org/metapackage/squid/versions
2019-06-18 06:42:42 -07:00
Mario Rodas
b5cf5ff20f
Merge pull request #63164 from kuznero/grsync
...
grsync: init at 1.2.6
2019-06-18 08:27:00 -05:00
Roman Kuznetsov
5672a51a80
grsync: init at 1.2.6
...
Use mirror url
Co-Authored-By: Mario Rodas <marsam@users.noreply.github.com>
2019-06-18 15:02:00 +02:00
Franz Pletz
336be28c19
Merge pull request #63331 from WilliButz/grafana-update
...
grafana: 6.2.2 -> 6.2.3
2019-06-18 12:48:45 +00:00
Mario Rodas
3cf3ca94e6
Merge pull request #63378 from r-ryantm/auto-update/python3.7-libtmux
...
python37Packages.libtmux: 0.8.1 -> 0.8.2
2019-06-18 06:45:42 -05:00
Mario Rodas
843cb19e61
Merge pull request #63379 from r-ryantm/auto-update/python3.7-lmdb
...
python37Packages.lmdb: 0.94 -> 0.95
2019-06-18 06:42:51 -05:00
Mario Rodas
e321cc2919
Merge pull request #63384 from r-ryantm/auto-update/python3.7-peewee
...
python37Packages.peewee: 3.9.5 -> 3.9.6
2019-06-18 06:41:03 -05:00
Mario Rodas
baa738fc69
Merge pull request #63407 from r-ryantm/auto-update/python3.7-zodbpickle
...
python37Packages.zodbpickle: 1.0.3 -> 1.0.4
2019-06-18 06:39:16 -05:00