Milan
c25756f91c
gitlab: 12.8.1 -> 12.8.2 ( #81803 )
...
Includes multiple security fixes mentioned in
https://about.gitlab.com/releases/2020/03/04/gitlab-12-dot-8-dot-2-released/
(unfortunately, no CVE numbers as of yet)
- Directory Traversal to Arbitrary File Read
- Account Takeover Through Expired Link
- Server Side Request Forgery Through Deprecated Service
- Group Two-Factor Authentication Requirement Bypass
- Stored XSS in Merge Request Pages
- Stored XSS in Merge Request Submission Form
- Stored XSS in File View
- Stored XSS in Grafana Integration
- Contribution Analytics Exposed to Non-members
- Incorrect Access Control in Docker Registry via Deploy Tokens
- Denial of Service via Permission Checks
- Denial of Service in Design For Public Issue
- GitHub Tokens Displayed in Plaintext on Integrations Page
- Incorrect Access Control via LFS Import
- Unescaped HTML in Header
- Private Merge Request Titles Leaked via Widget
- Project Namespace Exposed via Vulnerability Feedback Endpoint
- Denial of Service Through Recursive Requests
- Project Authorization Not Being Updated
- Incorrect Permission Level For Group Invites
- Disclosure of Private Group Epic Information
- User IP Address Exposed via Badge images
- Update postgresql (GitLab Omnibus)
2020-03-05 16:37:21 +01:00
Mario Rodas
93fd4b7f00
Merge pull request #79062 from marsam/update-rclone
...
rclone: install completions
2020-03-05 09:58:34 -05:00
Michael Weiss
b18995ef10
wayvnc: 0.1.0 -> 0.1.1
2020-03-05 14:53:56 +01:00
Mario Rodas
7597bdd59b
Merge pull request #81783 from r-ryantm/auto-update/gmsh
...
gmsh: 4.5.2 -> 4.5.4
2020-03-05 08:31:38 -05:00
Tim Steinbach
269d1eab10
vivaldi: 2.11.1811.44-1 -> 2.11.1811.47-1
2020-03-05 07:55:53 -05:00
Mario Rodas
6bba323339
Merge pull request #81551 from r-ryantm/auto-update/palemoon
...
palemoon: 28.8.2.1 -> 28.8.4
2020-03-05 07:49:47 -05:00
Mario Rodas
1196a5c7a7
Merge pull request #81722 from r-ryantm/auto-update/workcraft
...
workcraft: 3.2.5 -> 3.2.6
2020-03-05 07:42:25 -05:00
Mario Rodas
6c188255f7
Merge pull request #81630 from r-ryantm/auto-update/snd
...
snd: 20.0 -> 20.1
2020-03-05 07:36:52 -05:00
Mario Rodas
c596f1f051
Merge pull request #81773 from r-ryantm/auto-update/gromacs
...
gromacs: 2020 -> 2020.1
2020-03-05 07:18:47 -05:00
Mario Rodas
e033b005b2
Merge pull request #81767 from groodt/groodt-argo-2.6.1
...
argo: 2.6.0 -> 2.6.1
2020-03-05 07:12:21 -05:00
Mario Rodas
11754a7911
Merge pull request #81776 from r-ryantm/auto-update/gallery_dl
...
gallery-dl: 1.12.3 -> 1.13.1
2020-03-05 07:09:37 -05:00
Mario Rodas
8ec339d697
Merge pull request #81765 from zowoq/conmon
...
conmon: 2.0.10 -> 2.0.11
2020-03-05 07:08:22 -05:00
Mario Rodas
e2ec8dccea
Merge pull request #81777 from ngerstle/fix-kube3d-1.6.0
...
kube3d: correct k3s version tag
2020-03-05 07:07:13 -05:00
Michael Weiss
05e6cc4944
signal-desktop: 1.31.0 -> 1.32.0
2020-03-05 12:00:29 +01:00
Michael Weiss
19595b3652
Merge pull request #81704 from primeos/chromium
...
chromium: 80.0.3987.122 -> 80.0.3987.132
2020-03-05 11:44:57 +01:00
Ryan Mulligan
1426c3e9ed
Merge pull request #81741 from r-ryantm/auto-update/avocode
...
avocode: 4.3.0 -> 4.4.3
2020-03-04 19:58:37 -08:00
Ryan Mulligan
e291c9040b
Merge pull request #81646 from r-ryantm/auto-update/tribler
...
tribler: 7.4.1 -> 7.4.4
2020-03-04 19:44:05 -08:00
Aaron Andersen
e113100be0
Merge pull request #79536 from r-ryantm/auto-update/kdevelop-pg-qt
...
kdevelop-pg-qt: 2.2.0 -> 2.2.1
2020-03-04 20:31:56 -05:00
Mario Rodas
9b99706ee2
Merge pull request #81678 from colemickens/nixpkgs-rclone
...
rclone: 1.50.2 -> 1.51.0
2020-03-04 20:12:55 -05:00
Mario Rodas
8bf77b0d30
Merge pull request #81751 from r-ryantm/auto-update/cloudflared
...
cloudflared: 2020.2.0 -> 2020.2.1
2020-03-04 19:51:47 -05:00
Mario Rodas
4d1ecf5586
Merge pull request #81764 from zowoq/gh
...
gitAndTools.gh 0.6.0 -> 0.6.1
2020-03-04 19:49:33 -05:00
R. RyanTM
9974067129
gmsh: 4.5.2 -> 4.5.4
2020-03-05 00:20:08 +00:00
R. RyanTM
8ca769e051
gallery-dl: 1.12.3 -> 1.13.1
2020-03-04 23:34:31 +00:00
ngerstle
cde784aaa3
kube3d: correct k3s version tag
2020-03-05 00:31:01 +01:00
R. RyanTM
adcdd7b0a7
gromacs: 2020 -> 2020.1
2020-03-04 23:10:39 +00:00
Greg Roodt
e468301c19
argo: 2.6.0 -> 2.6.1
2020-03-05 09:20:23 +11:00
zowoq
f14ee5bce5
conmon: 2.0.10 -> 2.0.11
...
https://github.com/containers/conmon/releases/tag/v2.0.11
2020-03-05 07:50:51 +10:00
zowoq
4656fba5ab
gitAndTools.gh 0.6.0 -> 0.6.1
...
https://github.com/cli/cli/releases/tag/v0.6.1
2020-03-05 07:49:38 +10:00
Danylo Hlynskyi
308d840f03
brscan4: 0.4.4-4 -> 0.4.8-1 ( #79872 )
2020-03-04 23:47:31 +02:00
R. RyanTM
e384126b17
cloudflared: 2020.2.0 -> 2020.2.1
2020-03-04 19:12:08 +00:00
Ryan Mulligan
fe48f44f71
Merge pull request #81742 from r-ryantm/auto-update/anydesk
...
anydesk: 5.5.2 -> 5.5.4
2020-03-04 10:55:21 -08:00
R. RyanTM
65a3a51257
anydesk: 5.5.2 -> 5.5.4
2020-03-04 17:41:13 +00:00
R. RyanTM
64310331a5
avocode: 4.3.0 -> 4.4.3
2020-03-04 17:19:28 +00:00
Peter Simons
85befe90b0
fetchmail: update from version 6.3.26 to 6.4.2
...
The new version supports OpenSSL 1.x. Should be back-ported to
release-20.03.
See https://sourceforge.net/projects/fetchmail/files/branch_6.4/
for the changelog.
2020-03-04 17:07:45 +01:00
Mario Rodas
fb3d53070d
Merge pull request #81723 from davidtwco/delta-0.0.17
...
delta: 0.0.16 -> 0.0.17
2020-03-04 09:26:23 -05:00
Maximilian Bosch
13e3fc3e06
nextcloud-client: 2.6.3 -> 2.6.4
...
https://github.com/nextcloud/desktop/releases/tag/v2.6.4
2020-03-04 14:54:40 +01:00
Vladyslav M
3459392812
Merge pull request #81719 from r-ryantm/auto-update/tiled
...
tiled: 1.3.2 -> 1.3.3
2020-03-04 15:51:48 +02:00
Mario Rodas
2dc478d7a4
Merge pull request #81428 from ngerstle/update-kube3d
...
kube3d: 1.3.1 -> 1.6.0
2020-03-04 08:51:16 -05:00
David Wood
a54908f15e
delta: 0.0.16 -> 0.0.17
2020-03-04 13:47:27 +00:00
Mario Rodas
a1c8c7af61
Merge pull request #81701 from fgaz/drawpile/2.1.17
...
drawpile: 2.1.16 -> 2.1.17
2020-03-04 08:46:37 -05:00
Mario Rodas
ab4d6efc75
Merge pull request #81519 from jojosch/dbeaver_7.0.0
...
dbeaver: 6.3.5 -> 7.0.0
2020-03-04 08:45:45 -05:00
Mario Rodas
ed0c407ac9
Merge pull request #81697 from r-ryantm/auto-update/mandelbulber
...
mandelbulber: 2.20 -> 2.21
2020-03-04 08:43:22 -05:00
Mario Rodas
82275757c5
Merge pull request #81691 from r-ryantm/auto-update/kubeseal
...
kubeseal: 0.9.8 -> 0.10.0
2020-03-04 08:41:39 -05:00
R. RyanTM
86e6080daf
workcraft: 3.2.5 -> 3.2.6
2020-03-04 13:41:09 +00:00
R. RyanTM
6a911a157f
tiled: 1.3.2 -> 1.3.3
2020-03-04 12:43:57 +00:00
Mario Rodas
5760e001ca
Merge pull request #81706 from r-ryantm/auto-update/picard-tools
...
picard-tools: 2.21.8 -> 2.22.0
2020-03-04 07:26:05 -05:00
Domen Kožar
40d7ce7828
vscode: specify runtimeDependencies instead of LD_LIBRARY_PATH
...
This avoids glibc verions mismatches in vscode terminal, as
LD_LIBRARY_PATH leaks into terminal and break with user installed
executables.
2020-03-04 11:55:41 +01:00
R. RyanTM
343ec80712
picard-tools: 2.21.8 -> 2.22.0
2020-03-04 09:58:40 +00:00
Michael Weiss
51b6f9c6ae
chromium: 80.0.3987.122 -> 80.0.3987.132
...
https://chromereleases.googleblog.com/2020/03/stable-channel-update-for-desktop.html
This update includes 4 security fixes.
CVEs:
CVE-2020-6420
2020-03-04 10:35:11 +01:00
Gabriel Ebner
0d470dc5ea
Merge pull request #81692 from r-ryantm/auto-update/lean
...
lean: 3.6.0 -> 3.6.1
2020-03-04 10:32:38 +01:00