3.12 openjpeg
- community/php7-pecl-xdebug: upgrade to 2.9.6
- main/mariadb-connector-c: fix include and libdir paths in mariadb_config
- main/postgresql: add icu-dev to postgresql-dev
- community/mu: disable on s390x
- community/zabbix: upgrade to 5.0.1
- main/pspg: upgrade to 3.1.2
- main/nodejs: fix renaming man pages
- main/nodejs: upgrade to 12.17.0
- main/alpine-baselayout: rebuild to effect renaming of locale.sh
- community/glib-networking: security upgrade to 2.64.3
- community/py3-pygit2: update dependencies
- community/gjs: upgrade to 1.64.3
- community/gnome-music: upgrade to 3.36.3
- community/evolution-data-server: upgrade to 3.36.3
- community/evolution: upgrade to 3.36.3
- community/evolution-ews: upgrade to 3.36.3
- community/nautilus: upgrade to 3.36.3
- community/gnome-system-monitor: upgrade to 3.36.1
- community/networkmanager-elogind: upgrade to 1.24.2
- community/networkmanager: upgrade to 1.24.2
- community/evince: upgrade to 3.36.3
- community/gnome-chess: upgrade to 3.36.1
- community/gnome-taquin: upgrade to 3.36.3
- community/gnome-2048: upgrade to 3.36.3
- community/librsvg: upgrade to 2.48.5
- community/epiphany: upgrade to 3.36.2
- community/gnome-initial-setup: upgrade to 3.36.3
- community/orca: upgrade to 3.36.3
- main/gnutls: backport fixes for handling expired certs
- main/gnutls: bump pkrel
- community/firefox: security upgrade to 77.0
- community/chromium: upgrade to 83.0.4103.61
- community/librsvg: upgrade to 2.48.6
- community/chromium: disable on armv7, SEGFAULTs CLang during build
- community/docker: upgrade to 19.03.11
- main/dbus: security upgrade to 1.12.18
- main/ca-certificates: remove expired certificate
- community/docker-compose: upgrade to 1.26.0
- main/lttng-ust: split -tools to reduce installation size
- main/ca-certificates: use source package from gitlab
- community/corecollector: upgrade to 0.3.4
- community/docker-compose: downgrade to 1.25.4
- main/nghttp2: security upgrade to 1.41.0
- community/py3-dotenv: new aport
- main/gnutls: security upgrade to 3.6.14
- community/cogl: upgrade to 1.22.8
- community/firefox-esr: upgrade to 68.9.0
- community/qemu: run pre-install as pre-upgrade hook so users are created during upgrade
- community/gnome-feeds: add missing deps: py3-gobject3 and py3-pygments
- community/librsvg: upgrade to 2.48.7
- main/gnutls: add CVE-2020-13777 to secfixes comment
- testing/stoken: move to community
- main/zfs-lts: fix install_if for zfs-virt
- community/intel-ucode: upgrade to 20200609
- main/axel: add missing secfixes
- main/cups: add missing secfixes info
- main/hostapd: fix CVE-2020-12695
- community/graphicsmagick: security fix for CVE-2020-12672
- community/nextcloud: upgrade to 18.0.6
- main/util-linux: fix lint errors
- community/freerdp: backport CVE fixes from 2.1.1
- main/xen: fix XSA-320
- community/mumble: security upgrade to 1.3.1
- community/php7: upgrade to 7.3.19
- community/evince: upgrade to 3.36.5
- community/gnome-boxes: upgrade to 3.36.5
- community/telegram-desktop: upgrade to 2.1.11
- community/rust: upgrade to 1.44.0
- community/telegram-desktop: remove obsolete patches and not force gtk
- community/ffmpeg: upgrade to 4.3
- community/twm: upgrade to 1.0.11
- main/busybox: add hvc0 (Xen domain console) to /etc/securetty
- main/busybox: increase max log line length from 512 to 2048
- main/busybox: fix udhcpc script with multiple interfaces
- community/intel-ucode: upgrade to 20200616
- community/icinga2: fix CVE-2020-14001
- community/vlc: security upgrade to 3.0.11
- community/drupal7: security upgrade to 7.72 CVE-2020-13663
- main/ca-certificates: don't delete ca-certificates.crt
- main/perl: security upgrade to 5.30.3 (CVE-2020-10543,CVE-2020-10878,CVE-2020-12723)
- main/dropbear: backport security fixes
- community/zabbix: fix creation of /run/zabbix for zabbix-agentd
- community/mutt: security upgrade to 1.14.4
- community/pulseaudio: install pulseaudio-bluez if bluez is installed
- main/musl: fix serious missing synchronization bug
- main/libjpeg-turbo: fix CVE-2020-13790
- community/freerdp: upgrade to 2.1.2
- community/phosh: backport patch to fix a phantom launcher
- community/kpeople: add missing dep on qt5-qtbase-sqlite
- main/ngircd: fix CVE-2020-14148
- main/rng-tools: fix buffer overflow in rtlsdr entropy source
- main/libjpeg-turbo: upgrade to 2.0.5
- community/composer: upgrade to 1.10.8
- main/nss: security upgrade to 3.53.1
- community/apk-polkit: upgrade to 0.5.2
- community/chromium: security upgrade to 83.0.4103.116
- community/gitea: upgrade to v1.11.8
- community/gnome-software-plugin-apk: depend on alpinelinux-appstream-data
- {community,testing}/kde-applications: upgrade to 20.04.2
- community/alpinelinux-appstream-data: upgrade to 20200628
- community/libkcddb: fix typo preventing from disabling tests
- community/apk-polkit: upgrade to 0.5.3
- main/gtk+3.0: upgrade to 3.24.21
- community/gnome-clocks: rebuild against vala 0.48.6
- community/gnome-builder: upgrade to 3.36.1
- community/gtksourceview4: upgrade to 4.6.1
- community/znc: upgrade to 1.8.1
- community/gdal: upgrade to 3.1.1
- community/alpine: securitu update to 2.23 (CVE-2020-14929)
- main/vala: upgrade to 0.48.7
- main/fail2ban: fix process name
- community/php7-pecl-redis: enable bundled lzf compression
- community/pdns-recursor: security upgrade to 4.3.2 (CVE-2020-14196)
- community/gede: move from testing
- community/getting-things-gnome: move from testing
- community/py3-liblarch: move from testing
- community/hplip: move from testing
- community/vala-language-server: move from testing
- community/vala-language-server: upgrade to 0.48
- community/firefox-esr: security upgrade to 68.10.0
- community/mozjs68: security upgrade to 68.9.0
- community/mozjs68: upgrade to 68.10.0
- community/firefox: security upgrade to 78.0.1
- community/firefox: rename desktop file to be in sync with appdata & generate appdata
- main/nss: upgrade to 3.54
- community/openrc-settingsd: fix setting /etc/localtime if its a symlink
- community/mellowplayer: upgrade to 3.6.3
- community/mellowplayer: upgrade to 3.6.4
- community/ion-shell: move from testing
- community/gnome-maps: upgrade to 3.36.4
- community/evince: upgrade to 3.36.7
- community/librsvg: upgrade to 2.48.8
- community/gnome-control-center: upgrade to 3.36.4
- community/evolution-data-server: upgrade to 3.36.4
- community/evolution: upgrade to 3.36.4
- community/evolution-ews: upgrade to 3.36.4
- community/epiphany: upgrade to 3.36.3
- main/glib: upgrade to 2.64.4
- community/prometheus: upgrade to 2.18.2
- community/alpinelinux-appstream-data: upgrade to 20200704
- community/uhttpmock: enable GIR and Vala bindings
- community/gnome-initial-setup: upgrade to 3.36.4
- community/gnome-music: upgrade to 3.36.4
- community/openrc-settingsd: ensure proper permissions on localtime and timezone
- testing/logwatch: fix url
- community/git-review: moved from testing
- community/monitoring-plugins: added bind-tools amond deps. Fixes #11712 (closed)
- community/nodejs-current: security upgrade to 14.4.0
- community/vault: security upgrade to 1.4.3 (CVE-2020-13223)
- main/ruby: Correct wrong CVE number in secfixes for version 2.6.6-r0
- community/gdal: upgrade to 3.1.2
- main/libvirt: upgrade to 6.5.0
- community/py3-libvirt: upgrade to 6.5.0
- community/php7: upgrade to 7.3.20
- community/firefox: upgrade to 78.0.2
- main/xen: security fixes for XSA-317, XSA-319, XSA-321, XSA-327 and XSA-328
- community/ffmpeg: security upgrade to 4.3.1
- [3.12] community/nodejs-current: Bump to 14.5.0
- community/elisa: add missing runtime dep on vlc
- main/libinput: move quirks and udev rules to -libs subpkg
- community/opam: upgrade to 2.0.7
- community/webkit2gtk: upgrade to 2.28.3
- community/squeekboard: upgrade to 1.9.2
- community/squeekboard: use a better terminal keyboard layout
- community/firefox: add StartupWMClass=firefox to the .desktop entries
- main/lmdb: fix invalid pkgconfig
- community/go: upgrade to 1.13.14
- community/composer: upgrade to 1.10.9
- community/coturn: security upgrade to 4.5.1.3
- main/clamav: security upgrade to 0.102.4
- main/python3: security upgrade to 3.8.4
- community/jenkins: security upgrade to 2.245
- community/freerdp: security upgrade to 2.2.0
- main/python3: security upgrade to 3.8.5
- main/smokeping: needs ttf-dejavu
- community/xrdp: security upgrade to 0.9.13.1
- community/pass: fix password generation
- community/libraw: backport fix for CVE-2020-15503
- community/docker: upgrade to 19.03.12
- main/postfix: upgrade to 3.5.5
- community/libdwarf: don't install libtool script for dwarfdump binary
- main/postfix: upgrade to 3.5.6
- community/libvncserver: upgrade to 0.9.13
- main/hylafaxplus: fix CVE-2020-15396 and CVE-2020-15397
- main/nodejs: upgrade to 12.18.3
- community/alpinelinux-appstream-data: upgrade to 20200728
- community/pass: add gnupg as makedepends
- community/firefox: security upgrade to 79.0
- community/firefox-esr: security upgrade to 68.11.0
- community/webkit2gtk: security upgrade to 2.28.4
- community/firefox: add missing patch
- community/firefox: enable WebRTC screen sharing for wayland
- community/cbindgen: upgrade to 0.14.3
- community/php7-pecl-msgpack: upgrade to 2.1.1
- community/libvncserver: install to lib, not lib64
- main/nspr: upgrade to 4.27
- main/nss: security upgrade to 3.55
- main/libx11: security upgrade to 1.6.10
- main/xorg-server: fix CVE-2020-14347
- community/apk-polkit: upgrade to 0.6.0
- community/gnome-software-plugin-apk: upgrade to 0.7.0
- community/imagemagick: upgrade to 7.0.10.18
- community/imagemagick: upgrade to 7.0.10.19
- community/imagemagick: upgrade to 7.0.10.25
- community/imagemagick6: upgrade to 6.9.11.18
- community/imagemagick6: upgrade to 6.9.11.19
- community/imagemagick6: upgrade to 6.9.11.25
- community/composer: upgrade to 1.10.10
- community/bareos: security upgrade to 18.2.9
- community/claws-mail: security upgrade to 3.17.6
- main/patch: add missing CVE to secfixes
- community/php7-pecl-igbinary: upgrade to 3.1.4
- community/php7: upgrade to 7.3.21
- main/libx11: upgrade to 1.6.11
- main/fail2ban: fix logging after rotate
- main/knock: upgrade to 0.8.1
- community/openjdk7: security upgrade to 7.231.2.6.19
- community/openjdk7: security upgrade to 7.241.2.6.20
- community/openjdk7: security upgrade to 7.251.2.6.21
- community/openjdk7: security upgrade to 7.261.2.6.22
- community/openjdk8: security upgrade to 8.252.09
- main/freeswitch: enable mod_pgsql
- main/apache2: security upgrade to 2.4.46
- main/vala: upgrade to 0.48.9
- community/ark: fix CVE-2020-16116
- community/gnome-desktop: upgrade to 3.36.4
- community/gnome-authenticator: fix startup with upstream patch
- community/gnome-music: upgrade to 3.36.4.1
- community/mutter: upgrade to 3.36.4
- community/gnome-shell: upgrade to 3.36.4
- community/gnome-2048: upgrade to 3.36.4
- community/gjs: upgrade to 1.64.4
- community/evolution-data-server: upgrade to 3.36.5
- community/evolution: upgrade to 3.36.5
- community/evolution-ews: upgrade to 3.36.5
- main/gtk+3.0: upgrade to 3.24.22
- community/gnome-desktop: upgrade to 3.36.5
- community/gnome-disk-utility: upgrade to 3.36.3
- community/gdm: upgrade to 3.36.3
- community/simple-scan: upgrade to 3.36.4
- community/orca: upgrade to 3.36.5
- main/busybox: add secfixes comment for CVE-2018-1000500
- community/*: remove dependencies on obsolete libcroco
- community/libcroco: remove
- main/dovecot: security upgrade to 2.3.11.3
- main/pcre: add missing secfixes
- testing/octave: disable on armhf and armv7 due to openjdk11
- community/smstools: use checkpath in initd to create non-public files
- community/anytun: use checkpath in initd to create non-public files
- community/postsrsd: use checkpath in initd to create non-public files
- main/postgresql-bdr: use checkpath in initd to create non-public files
- main/clamav: use checkpath in initd to create non-public files
- main/openrc: use checkpath in initd to create non-public files
- main/libvirt: security upgrade to 6.6.0. Fixes #11856 (closed)
- community/qt5-qtbase: fix CVE-2020-17507
- main/libvirt: backport patches to fix deadlock issues with musl
- community/alpinelinux-appstream-data: upgrade to 20200821
- main/glib: upgrade to 2.64.5
- community/gnome-flashback: upgrade to 3.36.4
- main/chrony: security upgrade to 3.5.1
- main/dovecot: fix check on 32bit architectures
- main/libx11: security upgrade to 1.6.12
- main/xorg-server: upgrade to 1.20.9
- community/ark: fix CVE-2020-24654
- main/iptables: fix ebtables save
- main/iptables: drop broute table name
- main/iptables: use checkpath in initd to create non-public files
- main/libcap-ng: fix deadlock with capng_apply
- main/kamailio: add app_lua_sr to kamailio-lua
- main/bind: security upgrade to 9.16.6
- community/firefox-esr: upgrade to 78.2.0
- main/xorg-server: fix segfault on ARM machines
- community/firefox: security upgrade to 80.0
- community/icingaweb2: security fix for CVE-2020-24368. Fixes #11897 (closed)
- community/nextcloud: upgrade to 18.0.8
- community/nextcloud: update patch list
- main/postfix: upgrade to 3.5.7
- community/wireshark: security upgrade to 3.2.6
- main/freeswitch: fix ownership of /var/*/freeswitch
- main/ldb: upgrade to 2.1.4
- main/ldb: disable tests on ppc64le
- main/samba: upgrade to 4.12.5
- main/samba: upgrade to 4.12.6
- main/ansible: remove duplicate in secfixes comment
- community/exim: remove dup CVE-2018-6789 in secfixes comment
- community/apk-polkit: upgrade to 0.6.1
- community/wireshark: remove conflict markers
- community/mutter: upgrade to 3.36.5
- community/gnome-shell: security upgrade to 3.36.5
- main/putty: upgrade to 0.74
- {main,community}/*: remove duplicate CVEs
- community/php7: upgrade to 7.3.22
- community/php7-pecl-ast: upgrade to 1.0.9
- main/gnutls: security upgrade to 3.6.15
- main/postgresql: security upgrade to 12.4
- community/php7-brotli: upgrade to 0.11.1
- community/openjdk12: upgrade to 11.0.8
- community/rclone: upgrade to 1.52.3
- community/corecollector: upgrade to 0.3.5
- Revert "community/rclone: upgrade to 1.52.3"
- community/php7-pecl-event: upgrade to 2.5.7
- main/zeromq: security upgrade to 4.3.3
- community/qemu: security fix for CVE-2020-14364
- main/xen: security fix for CVE-2020-14364/XSA-335
- community/mutter: upgrade to 3.36.6
- community/gnome-shell: upgrade to 3.36.6
- community/php7-pecl-oauth: upgrade to 2.0.6
- community/gnome-desktop: upgrade to 3.36.6
- community/alpinelinux-appstream-data: upgrade to 20200910
- community/libssh: fix CVE-2020-16135
- main/gnupg: upgrade to 2.2.21
- main/gnupg: don't error when gnupg group exists
- main/gnupg: security upgrade to 2.2.23
- community/mozjs68: security upgrade to 68.11.0
- community/mozjs68: security upgrade to 68.12.0
- community/mozjs68: add $pkgname to depends_dev
- community/nextcloud: upgrade to 18.0.9
- community/appstream: add -dbg subpkg
- community/appstream: add upstream patch to fix SEGFAULTs in appstream-generator
- main/libarchive: add -dbg subpkg
- community/firefox: upgrade to 80.0.1
- community/libproxy: fix CVE-2020-25219
- community/geary: fix CVE-2020-24661
- community/openexr: fix multiple CVEs
- main/curl: fix CVE-2020-8169 and CVE-2020-8177
- main/libxml2: fix CVE-2020-24977
- community/php7-pecl-mailparse: upgrade to 3.1.1
- community/php7-pecl-xdebug: upgrade to 2.9.7
- community/drupal7: security upgrade to 7.73 CVE-2020-13666
- main/knot: upgrade to 2.9.6
- main/openjpeg: fix CVE-2019-12973 and CVE-2020-15389
- community/gnome-feeds: add runtime deps on py3-dateutil and py3-pillow
- main/libvirt: add -dbg subpackage
- main/perl-dbi: add missing secfixes info
- community/mlt: fix deadlock due to recursive mutex
- community/mlt: bump pkgrel
- community/chatty: add missing dep on cyrus-sasl-plain
- main/libuv: upgrade to 1.38.1
- main/libuv: fix CVE-2020-8252
- main/nodejs: security upgrade to 12.18.4
- community/kdenlive: add missing runtime deps
- main/cryptsetup: fix CVE-2020-14382
- community/firefox: upgrade to 81.0
- main/nss: upgrade to 3.57
- community/firefox-esr: security upgrade to 78.3.0
- community/pdns: security upgrade to 4.2.3
- main/xen: security fixes for XSA-333, XSA-334, XSA-336, XSA-337, XSA-338, XSA-339, XSA-340, XSA-342, XSA-343 and XSA-344
- community/wireshark: security upgrade to 3.2.7
- community/gnome-bluetooth: upgrade to 3.34.2
- main/unzip: Fix unsigned overflow patch
- main/linux-firmware: add amd-ucode subpackage
- main/ansible: upgrade to 2.9.11
- main/ansible: security update to 2.9.13
- community/polari: add missing dependencies
- main/mbedtls: security upgrade to 2.16.8
- community/php7-pecl-xdebug: upgrade to 2.9.8
- main/haproxy: upgrade to 2.1.8
- main/haproxy: upgrade to 2.1.9
- community/php7: security upgrade to 7.3.23
- community/gnuchess: set a stack-size that makes gnuchess not crash
- main/glib: upgrade to 2.64.6
- main/vala: upgrade to 0.48.11
- community/apache-ant: security upgrade to 1.10.9
- community/ruby-rspec-core: upgrade to 3.9.3
- main/pspg: upgrade to 3.1.4
- community/knot-resolver: upgrade to 5.1.3
- community/php7-pecl-apcu: upgrade to 5.1.19
- community/php7-pecl-uuid: upgrade to 1.2.0
- community/zabbix: fix setup subpackage
- main/samba: security upgrade to 4.12.7
- main/brotli: security upgrade to 1.0.9
- community/zabbix: bump pkgrel
- main/libvirt: security fix for CVE-2020-25637
- community/zabbix: actual build database schemas
- main/mariadb: security upgrade to 10.4.15
- main/abuild: backport fix for unsupported byte range
- community/zabbix: upgrade to 5.0.4
- community/php7-pecl-xhprof: upgrade to 2.2.2
- community/php7-pecl-igbinary: upgrade to 3.1.6
- community/php7-pecl-timezonedb: upgrade to 2020.2
- community/phpmyadmin: upgrade to 5.0.3
- community/go: security upgrade to 1.13.15
- community/vault: security upgrade to 1.4.7
- main/linux-lts: enable CONFIG_XEN_WDT=m on linux-virt
- main/linux-lts: enable CONFIG_SERIAL_8250_DW
- main/linux-lts: upgrade to 5.4.47
- main/linux-lts: enable FTRACE_SYSCALLS on all arches
- main/linux-lts: upgrade to 5.4.49
- main/linux-lts: enable snd-aloop
- main/linux-lts: Enable CONFIG_CGROUP_PIDS for ppc64le
- main/linux-lts: enable for Intel ethernet I225-LM/I225-V
- main/linux-lts: enable CGROUP_PERF for x86_64 and aarch64
- main/linux-lts: upgrade to 5.4.70
- community/jool-modules-lts: rebuild against kernel 5.4.70-r0
- community/rtl8821ce-lts: rebuild against kernel 5.4.70-r0
- community/virtualbox-guest-modules-lts: rebuild against kernel 5.4.70-r0
- community/wireguard-lts: rebuild against kernel 5.4.70-r0
- main/dahdi-linux-lts: rebuild against kernel 5.4.70-r0
- main/drbd-lts: rebuild against kernel 5.4.70-r0
- main/xtables-addons-lts: rebuild against kernel 5.4.70-r0
- main/zfs-lts: rebuild against kernel 5.4.70-r0
- community/libetpan: backport fix for CVE-2020-15953
- community/nextcloud: upgrade to 18.0.10
- main/oniguruma: fix CVE-2020-26159
- linux-rpi: add common RPI RTC driver to kernel
- main/linux-rpi: upgrade to 5.4.70
- community/jool-modules-rpi: rebuild against kernel 5.4.70-r0
- community/wireguard-rpi: rebuild against kernel 5.4.70-r0
- main/raspberrypi-bootloader: upgrade to 1.20200902
- main/ansible: upgrade to 2.9.14
- main/linux-lts: upgrade to 5.4.71
- community/jool-modules-lts: rebuild against kernel 5.4.71-r0
- community/rtl8821ce-lts: rebuild against kernel 5.4.71-r0
- community/virtualbox-guest-modules-lts: rebuild against kernel 5.4.71-r0
- community/wireguard-lts: rebuild against kernel 5.4.71-r0
- main/dahdi-linux-lts: rebuild against kernel 5.4.71-r0
- main/drbd-lts: rebuild against kernel 5.4.71-r0
- main/xtables-addons-lts: rebuild against kernel 5.4.71-r0
- main/zfs-lts: rebuild against kernel 5.4.71-r0
- main/linux-rpi: upgrade to 5.4.71
- community/jool-modules-rpi: rebuild against kernel 5.4.71-r0
- community/wireguard-rpi: rebuild against kernel 5.4.71-r0
- community/libproxy: fix CVE-2020-26154
- community/pdns-recursor: security upgrade to 4.3.5
- community/phpmyadmin: upgrade to 5.0.4
- main/libxshmfence: rebuild to fix BAD signature errors
- community/claws-mail: security upgrade to 3.17.7
- main/tzdata: upgrade to 2020c
- main/tzdata: backport build fix from edge
- community/stress-ng: upgrade to 0.11.21
- community/kdeconnect: security upgrade to 20.08.2
- main/linux-lts: upgrade to 5.4.72
- community/jool-modules-lts: rebuild against kernel 5.4.72-r0
- community/rtl8821ce-lts: rebuild against kernel 5.4.72-r0
- community/virtualbox-guest-modules-lts: rebuild against kernel 5.4.72-r0
- community/wireguard-lts: rebuild against kernel 5.4.72-r0
- main/dahdi-linux-lts: rebuild against kernel 5.4.72-r0
- main/drbd-lts: rebuild against kernel 5.4.72-r0
- main/xtables-addons-lts: rebuild against kernel 5.4.72-r0
- main/zfs-lts: rebuild against kernel 5.4.72-r0
- main/linux-rpi: upgrade to 5.4.72
- community/jool-modules-rpi: rebuild against kernel 5.4.72-r0
- community/wireguard-rpi: rebuild against kernel 5.4.72-r0
- community/kdeconnect: fix checksum
- community/dnsdist: disable on mips64 due to h2o
- Revert "community/kdeconnect: security upgrade to 20.08.2"
- main/nginx: fix ownership and permissions
- main/groff: prevent conflict with mandoc-doc
- main/pspg: upgrade to 3.1.5
- main/nodejs: upgrade to 12.19.0
- Revert "main/nodejs: upgrade to 12.19.0"
- main/freetype: security upgrade to 2.10.4
- main/ghostscript: fix secfixes comment for CVE-2019-6116
- community/wireshark: fix secfixes comment
- main/samba: fix secfix comment for CVE-2018-14629
- main/sqlite: add CVE-2019-19244 to secfixes comment
- main/libsndfile: fix secfixes comment for CVE-2019-3832
- main/libvorbis: fix secfixes comment for CVE-2018-10393
- main/wpa_supplicant: remove CVE dupes in secfixes comment
- main/busybox: fix secfixes comment for CVE-2019-5747
- testing/nomad: remove duplicate CVE value
- community/php7-pecl-timezonedb: upgrade to 2020.3
- ===== release 3.12.1 =====
- community/composer: upgrade to 1.10.15
- community/php7-pecl-timezonedb: upgrade to 2020.4
- community/librdkafka: upgrade to 1.4.4
- community/gdal: upgrade to 3.1.4
- community/composer: upgrade to 1.10.16
- main/perl-datetime-timezone: upgrade to 2.41
- main/perl-datetime-timezone: upgrade to 2.42
- main/perl-datetime-timezone: upgrade to 2.43
- community/mupdf: fix CVE-2020-26519
- main/squid: security upgrade to 4.13
- community/php7: upgrade to 7.3.24
- main/tmux: upgrade to 3.1c
- community/composer: upgrade to 1.10.17
- community/chromium: upgrade to 86.0.4240.111
- main/kamailio: bugfix upgrade to 5.3.6
- main/open-iscsi: upgrade to 2.1.2
- community/zabbix: rundir is needed for control socket
- main/xen: security upgrade to 4.13.2
- main/kamailio: bugfix upgrade to 5.3.7
- community/sddm: fix CVE-2020-28049
- main/haproxy: upgrade to 2.1.10
- main/samba: upgrade to 4.12.8
- main/samba: security upgrade to 4.12.9
- main/postfix: upgrade to 3.5.8
- community/openjdk11: security upgrade to 11.0.9
- main/tmux: add missing secfixes info
- community/intel-ucode: security upgrade to 20201110
- community/intel-ucode: security upgrade to 20201112
- community/tor: security upgrade to 0.4.3.7
- community/sloci-image: upgrade to 0.1.1
- community/muacme: upgrade to 0.3.1
- main/lxc: upgrade to 4.0.5
- community/gitea: upgrade to 1.12.6
- main/libvirt: fix for virsh requires btrfs to create dir based pool
- community/zabbix: upgrade to 5.0.5
- community/drupal7: security upgrade to 7.74 - CVE-2020-13671
- community/zabbix: add patch for agent2 on 32-bits arches
- main/kamailio: backport upstream fix
- main/musl: security fix for CVE-2020-28928
- community/raptor2: backport fix for CVE-2017-18926
- community/raptor2: modernize
- main/tcpdump: fix CVE-2020-8037
- main/xen: security fix for XSA-351
- main/tzdata: switch to fat format
- main/krb5: security upgrade to 1.18.3
- main/postgresql: security upgrade to 12.5
- main/xen: security fix for XSA-355
- community/webkit2gtk: upgrade to 2.30.3
- community/tor: disable zstd on armhf
- community/opensc: fix CVE-2020-26750, CVE-2020-26571, CVE-2020-26572
- community/drupal7: security upgrade to 7.75
- community/librsvg: upgrade to 2.48.9
- community/simple-scan: upgrade to 3.36.7
- community/gnome-desktop: upgrade to 3.36.8
- community/gnome-2048: upgrade to 3.36.8
- community/gnome-music: upgrade to 3.36.7
- community/libvncserver: add CVE-2020-25708 to secfixes comment
- community/php7: upgrade to 7.3.25
- main/xen: CVE-2020-28368 assigned to XSA-351
- community/php7-pecl-xhprof: upgrade to 2.2.3
- community/firefox-esr: upgrade to 78.5.0
- community/wireshark: security upgrade to 3.2.8
- community/php7-pecl-yaml: upgrade to 2.2.0
- community/zabbix: upgrade to 5.0.6
- [3.12] community/containerd: update to 1.3.9
- community/xorg-server: security upgrade to 1.20.10
- main/nsd: security upgrade to 4.3.4
- community/zoneminder: add missing dependency
- main/apache2: fix error subpackage
- community/phpldapadmin: security upgrade to 1.2.6.2
- community/drupal7: upgrade to 7.76
- community/firefox: upgrade to 83.0
- community/cbindgen: upgrade to 0.15.0
- main/nss: upgrade to 3.59
- community/drupal7: upgrade to 7.77
- remove patch that shouldn't be here
- community/composer: upgrade to 1.10.19
- community/x11vnc: fix CVE-2020-29074 and build with -fno-common
- main/asterisk: stable upgrade to 16.14.1
- main/curl: fix CVE-2020-8231
- community/sane: upgrade to 1.0.31
- main/bluez: fix CVE-2020-27153
- community/radare2: security upgrade to 4.5.1
- community/nextcloud: upgrade to 18.0.12
- community/wireshark: security upgrade to 3.2.9
- main/linux-lts: enable brmcfmac on armv7 and update configs
- main/linux-lts: upgrade to 5.4.82
- community/jool-modules-lts: rebuild against kernel 5.4.82-r0
- community/rtl8821ce-lts: rebuild against kernel 5.4.82-r0
- community/virtualbox-guest-modules-lts: rebuild against kernel 5.4.82-r0
- community/wireguard-lts: upgrade to 1.0.20201112 / 5.4.82-r0
- main/dahdi-linux-lts: rebuild against kernel 5.4.82-r0
- main/drbd-lts: rebuild against kernel 5.4.82-r0
- main/xtables-adons-lts: rebuild against kernel 5.4.82-r0
- main/zfs-lts: rebuild against kernel 5.4.82-r0
- main/linux-rpi: upgrade to 5.4.82
- community/jool-modules-rpi: rebuild against kernel 5.4.82-r0
- community/wireguard-rpi: upgrade to 1.0.20201112 / 5.4.82-r0
- main/openldap: fix a few CVEs
- ===== release 3.12.2 =====
- main/nrpe: fix CVE-2020-6581 and CVE-2020-6582
- main/py3-django: fix CVE-2020-24583 and CVE-2020-24584
- main/curl: fix CVE-2020-8285 and CVE-2020-8286
- main/openssl: upgrade to 1.1.1h
- main/openssl: security upgrade to 1.1.1i
- community/imagemagick: security upgrade to 7.0.10.48
- community/imagemagick6: security upgrade to 6.9.11.48
- community/php7-pecl-imagick: rebuild
- community/zbar: rebuild against imagemagick 7.0.10.48
- main/p11-kit: security upgrade to 0.23.22
- main/mbedtls: upgrade to 2.16.9
- main/nrpe: revert fixes for CVE-2020-6581 and CVE-2020-6582
- main/nrpe: rebuild after revert
- community/xscreensaver: upgrade to 5.45
- community/runit: fix UDP support for svlogd
- main/samurai: add query tool
- community/kpmcore: fix CVE-2020-27187
- community/py3-lxml: fix CVE-2020-27783
- community/minidlna: fix CVE-2020-12695 and CVE-2020-28926
- main/linux-lts: upgrade to 5.4.83
- community/jool-modules-lts: rebuild against kernel 5.4.83-r0
- community/rtl8821ce-lts: rebuild against kernel 5.4.83-r0
- community/virtualbox-guest-modules-lts: rebuild against kernel 5.4.83-r0
- community/wireguard-lts: rebuild against kernel 5.4.83-r0
- main/dahdi-linux-lts: rebuild against kernel 5.4.83-r0
- main/drbd-lts: rebuild against kernel 5.4.83-r0
- main/xtables-addons-lts: rebuild against kernel 5.4.83-r0
- main/zfs-lts: rebuild against kernel 5.4.83-r0
- main/openssh: fix CVE-2020-14145
- main/linux-rpi: upgrade to 5.4.83
- community/jool-modules-rpi: rebuild against kernel 5.4.83-r0
- community/wireguard-rpi: rebuild against kernel 5.4.83-r0
- ===== release 3.12.3 =====
- main/linux-lts: upgrade to 5.4.84
- community/jool-modules-lts: rebuild against kernel 5.4.84-r0
- community/rtl8821ce-lts: rebuild against kernel 5.4.84-r0
- community/virtualbox-guest-modules-lts: rebuild against kernel 5.4.84-r0
- community/wireguard-lts: rebuild against kernel 5.4.84-r0
- main/dahdi-linux-lts: rebuild against kernel 5.4.84-r0
- main/drbd-lts: rebuild against kernel 5.4.84-r0
- main/xtables-addons-lts: rebuild against kernel 5.4.84-r0
- main/zfs-lts: rebuild against kernel 5.4.84-r0
- main/linux-rpi: upgrade to 5.4.84
- community/jool-modules-rpi: rebuild against kernel 5.4.84-r0
- community/wireguard-rpi: rebuild against kernel 5.4.84-r0
- main/knot: upgrade to 2.9.8
- community/openjdk7: security upgrade to 2.6.24 (7u281)
- community/wireshark: upgrade to 3.2.10
- community/autossh: fix source URL
- community/php7-pecl-yaml: upgrade to 2.2.1
- community/postsrsd: security fix for CVE-2020-35573
- community/firefox-esr: security upgrade to 78.6.0
- main/openjpeg: fix CVE-2020-27814, CVE-2020-27823 and CVE-2020-27824
- main/libmaxminddb: security upgrade to 1.4.3
- main/xen: fix XSA-115
- main/xen: fix XSA-322
- main/xen: fix XSA-323
- main/xen: fix XSA-324
- main/xen: fix XSA-325
- main/xen: fix XSA-330
- main/xen: fix XSA-348
- main/xen: fix XSA-352
- main/xen: fix XSA-353
- main/xen: fix XSA-358
- main/xen: fix XSA-359
- community/gtk+3.0: remove demo files from main package
- main/tzdata: upgrade to 2020d
- main/tzdata: switch to fat format
- main/tzdata: upgrade to 2020f
- community/zabbix: upgrade to 5.0.7
- main/openvpn: upgrade to 2.4.10
- community/py3-zabbix: move from testing
- community/docker-compose: fix mising linux_distribution
- community/firefox-esr: security upgrade to 78.6.1
- community/firefox: security upgrade to 84.0.1
- community/firefox: security upgrade to 84.0.2
- community/nss: upgrade to 3.60
- community/php7: security upgrade to 7.3.26 - CVE-2020-7071
- main/nodejs: build with bundled libuv
- main/nodejs: security upgrade to 12.20.1
- community/tomcat-native: upgrade to 1.2.26
- main/ruby: security upgrade to 2.7.2
- community/rspamd: backport lua fix for non x86 x86_64 arches * from #11340 (closed)
- community/plasma: upgrade to 5.18.6
- Revert "community/plasma: upgrade to 5.18.6"
- main/irssi: fix issue 1180, ctrl+space freezes irssi on GLib >2.62
- main/ruby: disable tests to unblock the builders
- community/wavpack: upgrade to 5.4.0
- community/lldpd: security upgrade to 1.0.8
- community/jenkins: security upgrade to 2.275
- main/vala: upgrade to 0.48.13
- community/gjs: upgrade to 1.64.5
- community/gnome-maps: upgrade to 3.36.5
- community/gnome-desktop: upgrade to 3.36.9
- community/nextcloud: upgrade to 18.0.13
- main/dovecot: upgrade to 2.3.13 and cve fixes
- main/dovecot: fix failed build on 32bit arches
- main/postfix: upgrade to 3.5.9
- main/gptfdisk: security upgrade to 1.0.6
- main/haproxy: upgrade to 2.1.11
- main/dnsmasq: security upgrade to 2.83
- main/py3-yaml: fix CVE-2020-14343
- main/xen: add missing CVE info
- community/drupal7: security upgrade to 7.78 - CVE-2020-36193
- main/razor: fix license, manpage installation
- main/py3-pillow: fix CVE-2020-35655
- community/mutt: security upgrade to 1.14.7
- main/xen: fix XSA-360
- main/esh: upgrade to 0.3.1
- community/vlc: security upgrade to 3.0.12
- main/perl-datetime-timezone: upgrade to 2.47
- testing/libspatialite: fix source=
- main/sudo: security upgrade to 1.9.5p2
- main/py3-django: fix backporting error for CVE-2020-24584
- main/doas: patch out PATH reset vulnerability
- main/doas: include patch content
- main/doas: include secfixes for CVE-2019-25016
- community/firefox-esr: security upgrade to 78.7.0
- main/mariadb: security upgrade to 10.4.17
- main/tzdata: upgrade to 2021a
- community/php7: security upgrade to 7.3.27 - CVE-2021-21702
- main/mariadb: fix syntax error due to missing quote
- community/perl-crypt-openssl-x509: fix depends
- main/mariadb: fix stacktrace-t
- main/libseccomp: upgrade to 2.4.4
- main/wpa_supplicant: fix CVE-2021-0326
- main/subversion: fix CVE-2020-17525
- main/libssh2: fix secfixes comment
- community/[various]: fix secfixes comment
- main/screen: fix CVE-2021-26937
- main/screen: use better patch for CVE-2021-26937
- community/openjdk8: security upgrade to 3.17.1 (8.275.01)
- main/openssl: upgrade to 1.1.1j
- community/tor: upgrade to 0.4.3.8
- community/runc: security upgrade to 1.0.0_rc93
- community/containerd: security upgrade to 1.4.3
- community/docker: security upgrade to 20.10.3
- community/intel-ucode: security upgrade to 20210216
- main/linux-lts: upgrade to 5.4.99
- community/jool-modules-lts: rebuild against kernel 5.4.99-r0
- community/rtl8821ce-lts: rebuild against kernel 5.4.99-r0
- community/virtualbox-guest-modules-lts: rebuild against kernel 5.4.99-r0
- community/wireguard-lts: rebuild against kernel 5.4.99-r0
- main/dahdi-linux-lts: rebuild against kernel 5.4.99-r0
- main/drbd-lts: upgrade to 9.0.27 / kernel 5.4.99-r0
- main/xtables-addons-lts: rebuild against kernel 5.4.99-r0
- main/zfs-lts: rebuild against kernel 5.4.99-r0
- main/linux-rpi: upgrade to 5.4.99
- community/jool-modules-rpi: rebuild against kernel 5.4.99-r0
- community/wireguard-rpi: rebuild against kernel 5.4.99-r0
- main/python3: fix CVE-2021-3177
- main/python3: add reliability fix for test_nntplib
- main/linux-rpi: fix build for aarch64
- main/drbd-lts: fix build on 32 bit architectures
- main/libbsd: add missing secfixes info
- main/redis: security upgrade to 5.0.11
- ===== release 3.12.4 =====
- main/postgresql: security upgrade to 12.6
- main/nodejs: security upgrade to 12.21.0
- main/openldap: fix CVE-2021-27212
- main/asterisk: security upgrade to 16.16.1
- main/gdk-pixbuf: add patch for CVE-2021-20240
- main/xen: fix XSA-364/CVE-2021-26933
- main/xen: CVE-2021-3308 assigned to XSA-360
- main/wpa_supplicant: patch CVE-2021-27803
- main/openjpeg: fix CVE-2020-27844