      main/openssl: security upgrade to 1.0.2g · 5e000d86
      CVE-2016-0800 [High severity]
      CVE-2016-0705 [Low severity]
      CVE-2016-0798 [Low severity]
      CVE-2016-0797 [Low severity]
      CVE-2016-0799 [Low severity]
      CVE-2016-0702 [Low severity]
      CVE-2016-0703 [High severity]
      CVE-2016-0704 [Moderate severity]
      testing/nginx-naxsi: update to 1.9.12 · ae38003b
      Changes with nginx 1.9.12                                        24 Feb 2016
          *) Feature: Huffman encoding of response headers in HTTP/2.
             Thanks to Vlad Krasnov.
          *) Feature: the "worker_cpu_affinity" directive now supports more than
             64 CPUs.
          *) Bugfix: compatibility with 3rd party C++ modules; the bug had
             appeared in 1.9.11.
             Thanks to Piotr Sikora.
          *) Bugfix: nginx could not be built statically with OpenSSL on Linux;
             the bug had appeared in 1.9.11.
          *) Bugfix: the "add_header ... always" directive with an empty value did
             not delete "Last-Modified" and "ETag" header lines from error
          *) Workaround: "called a function you should not call" and "shutdown
             while in init" messages might appear in logs when using OpenSSL
          *) Bugfix: invalid headers might be logged incorrectly.
          *) Bugfix: socket leak when using HTTP/2.
          *) Bugfix: in the ngx_http_v2_module.
      testing/at: renamed init script from at to atd · 81f12a7c
      Init script for at-daemon failed to start /usr/sbin/atd until the srcipt has not been renamed because $SVCNAME returns basename of the script. The fact skipped my mind... Please commit this patch to fix the annoying bug.