Commit Graph

40933 Commits

Author SHA1 Message Date
github-actions[bot] b6598fc6c3
Merge release-21.05 into staging-next-21.05 2021-09-01 00:02:38 +00:00
Robert Scott 867aab7eed grilo: add patch for CVE-2021-39365
(cherry picked from commit f4153fb02c10e63a6fbb501876f609c8a55f262d)
2021-08-31 18:35:55 +00:00
github-actions[bot] c890442d8a
Merge staging-next-21.05 into staging-21.05 2021-08-30 12:02:38 +00:00
Robert Scott efedf9a09e Revert "[Backport staging-21.05] ffmpeg, ffmpeg-full: enable basic tests" 2021-08-29 20:24:06 +01:00
github-actions[bot] edd8ce83bf
Merge staging-next-21.05 into staging-21.05 2021-08-29 18:02:32 +00:00
Vladimír Čunát a936d2f6ab
Merge #135990: openssl: 1.1.1k -> 1.1.1l (into staging-next-21.05) 2021-08-29 18:24:44 +02:00
Martin Weinelt 3d0d142b75 openssl: 1.1.1k -> 1.1.1l
(cherry picked from commit 174868d4fa8452c0dc7ebcaf5548376351fa280a)
2021-08-28 00:31:58 +00:00
Ricardo M. Correia 0d44dce530 tk-8_6: fix hash after tcl-8_6 update
tcl-8_6 was updated in 4fb92ae60d from
8.6.9 -> 8.6.11 but tk's hash wasn't updated at the same time,
which means the current hash was still from tk 8.6.9 rather than 8.6.11.

(cherry picked from commit d9bf02324af69a6543a3c5131f4a0f58cea6567a)
2021-08-26 03:13:56 +00:00
github-actions[bot] 98962e17c4
Merge release-21.05 into staging-next-21.05 2021-08-26 00:02:52 +00:00
Marc Seeger 2fcab17583 unixODBC: Add additional URL
(cherry picked from commit 811af99f75f55097207020678d4dd0ec479040ca)
2021-08-25 22:49:29 +02:00
github-actions[bot] f90cf6b7f8
Merge release-21.05 into staging-next-21.05 2021-08-24 18:02:30 +00:00
Martin Weinelt 47d1b12472
Merge pull request #134858 from NixOS/backport-134751-to-staging-21.05
[Backport staging-21.05] c-ares: enable parallel building
2021-08-24 16:49:31 +02:00
Martin Weinelt b2c5035d6e
Merge pull request #134260 from risicle/ris-ndpi-CVE-2021-36082-r21.05
[21.05] ndpi: add patch for CVE-2021-36082
2021-08-24 15:08:44 +02:00
Martin Weinelt d818c9fd75
Merge pull request #134278 from NixOS/backport-133375-to-staging-21.05
[Backport staging-21.05] c-ares: 1.17.1 -> 1.17.2
2021-08-24 15:03:30 +02:00
Martin Weinelt f0a1234576
Merge pull request #134062 from NixOS/backport-132984-to-release-21.05
[Backport release-21.05] folly: 2021.01.25.00 -> 2021.08.02.00
2021-08-24 14:42:18 +02:00
Maximilian Bosch 0f22a1d8b1
Merge pull request #135448 from EggBaconAndSpam/glibc-2.32-54
glibc: 2.32-48 -> 2.32-54
2021-08-23 22:41:06 +02:00
Frederik Ramcke 3ecbe36e8d glibc: 2.32-48 -> 2.32-54 2021-08-23 15:41:52 +02:00
Robert Scott 1c8ff5cfc7 ffmpeg-full: enable basic tests
(cherry picked from commit 4b658eda801752204f8be29a8f8db343d12572dc)
2021-08-21 02:46:00 +00:00
Robert Scott 7361aaeb5e ffmpeg: enable basic tests
(cherry picked from commit 649f0ed1a88f6e4cf00705b1cb2f1fbdf1fb780c)
2021-08-21 02:46:00 +00:00
TredwellGit c9a0a88184 c-ares: enable parallel building
(cherry picked from commit b2ae763c42df36baa6d84420cf3ae9234c72fd7f)
2021-08-19 19:43:21 +00:00
TredwellGit 568b939c3e
ffmpeg: patch CVE-2021-33815 and CVE-2021-38114
https://nvd.nist.gov/vuln/detail/CVE-2021-33815
https://nvd.nist.gov/vuln/detail/CVE-2021-38114
(cherry picked from commit a83f82576b578531eb2894e0d7b279b59af23cd6)
2021-08-19 13:19:25 +02:00
Izorkin 81ed9fd47b
ffmpeg_4: fix incorrect segment length in hls
(cherry picked from commit ae8dd3c149b4d49e683f1414d417801b80b283e2)
2021-08-19 13:19:20 +02:00
Vladimír Čunát 46c853dfc2
Merge #134714: gpgme: move flaky patch URL to local file
(cherry picked from commit 4c88dc6a7035089ab3a311bfd09a790ea3ff5d35)
2021-08-19 09:56:11 +02:00
github-actions[bot] 739352cb60
Merge staging-next-21.05 into staging-21.05 2021-08-18 06:04:28 +00:00
Vladimír Čunát 4050fb937f
Merge #134354: gpgme: fix failing patch download
(cherry picked from commit 91b178c3f00c23eb8b47bb540262faf5646da75d)
2021-08-18 07:31:39 +02:00
Robert Scott 9c7404d96f
Merge pull request #134004 from NixOS/backport-132689-to-staging-21.05
[Backport staging-21.05] libsndfile: 1.0.30 -> 1.0.31
2021-08-16 19:12:29 +01:00
Martin Weinelt 59838d6ce0 c-ares: 1.17.1 -> 1.17.2
(cherry picked from commit fe7d21caf21c8a8f864a1dc94ba6324cd2175fc4)
2021-08-16 01:28:43 +00:00
Robert Scott 7b11c26712 ndpi: add patch for CVE-2021-36082 2021-08-15 19:11:48 +01:00
R. RyanTM d273ad0310 folly: 2021.01.25.00 -> 2021.08.02.00
(cherry picked from commit 34892123a4edf8479c1d93e5b0c96feacf86a6a2)
2021-08-14 17:22:58 +00:00
Thomas Gerbet c39b79e047 libsndfile: 1.0.30 -> 1.0.31
Fixes CVE-2021-3246.

https://github.com/libsndfile/libsndfile/releases/tag/1.0.31
(cherry picked from commit 88c53421a729c9a3030c8e43f91844d5f1f2d146)
2021-08-14 12:17:12 +00:00
Marc Seeger c752f9e15d [21.05] gtk3: replace bugzilla patch with local file. 2021-08-13 15:56:18 -07:00
github-actions[bot] fd0ab00ca0
Merge staging-next-21.05 into staging-21.05 2021-08-13 12:03:03 +00:00
Angus Trau 8f3bacf3d9 allegro5: fix native dialog addon
(cherry picked from commit 72cfa909f4b5960de92388be66aaee5467355575)
2021-08-13 11:09:52 +00:00
github-actions[bot] b6f18f52d2
Merge staging-next-21.05 into staging-21.05 2021-08-12 06:02:37 +00:00
Artturi ae9890eb6a
Merge pull request #131926 from NixOS/backport-131609-to-staging-21.05
[Backport staging-21.05] aspell: fix buffer overflow in objstack
2021-08-12 05:01:36 +03:00
Janne Heß 2fd6748972 libspf2: Fix CVE-2021-20314
There is no new release yet (see mailing list post on oss-security), so
I'm picking the commit that fixes the CVE.

There is another security flaw (without a CVE number) that is also
mentioned in the oss-security announcement but it is not explained which
commit patches the problem.

(cherry picked from commit 46b7a5be1ced0280951d1a5736b0316de92a53f2)
2021-08-12 00:43:36 +00:00
Vladimír Čunát 923725473a
Merge branch 'staging-next-21.05' into release-21.05
https://hydra.nixos.org/eval/1694658
2021-08-10 14:02:40 +02:00
Martin Weinelt 786e450930 nss_latest: 3.67 -> 3.68 2021-08-10 12:34:47 +02:00
Martin Weinelt fe2138efeb
nspr_latest: init at 4.32 2021-08-10 12:27:57 +02:00
github-actions[bot] af54073773
Merge staging-next-21.05 into staging-21.05 2021-08-09 18:02:45 +00:00
Martin Weinelt 72288487d9
Merge pull request #133154 from risicle/ris-wolfssl-CVE-2021-37155-r21.05
[21.05] wolfssl: add patches for CVE-2021-37155
2021-08-09 16:09:19 +02:00
github-actions[bot] be1b94ec70
Merge staging-next-21.05 into staging-21.05 2021-08-09 00:03:33 +00:00
Ilan Joselevich 1472b2446e pipewire: added kranzes (myself) as a maintainer
(cherry picked from commit 779472d9bcc518fdb01c01424b2a469dc39694ee)
Signed-off-by: Domen Kožar <domen@dev.si>
2021-08-08 21:55:44 +02:00
Robert Scott 192a522abb wolfssl: add patches for CVE-2021-37155 2021-08-08 15:52:25 +01:00
Ilan Joselevich 5b229b829a libfreeaptx: init at 0.1.1
(cherry picked from commit b0467a4f53527434211175ec236f2b43205e2568)
Signed-off-by: Domen Kožar <domen@dev.si>
2021-08-08 12:43:27 +02:00
Ilan Joselevich 06d377ce0a pipewire: libopenaptx -> libfreeaptx
(cherry picked from commit 549666bd96189f7aefafcf1b413eea05c42ab0a4)
Signed-off-by: Domen Kožar <domen@dev.si>
2021-08-08 12:39:46 +02:00
Ilan Joselevich 02a8bdcdc9 pipewire: 0.3.32 -> 0.3.33
(cherry picked from commit dab7fef97b0308d413142a5feb6f4e934714a294)
Signed-off-by: Domen Kožar <domen@dev.si>
2021-08-08 12:39:38 +02:00
Jan Solanti c7da07623e pipewire: 0.3.31 -> 0.3.32
(cherry picked from commit c6ff26b19fa083e111005d06e8a4a15625976e66)
Signed-off-by: Domen Kožar <domen@dev.si>
2021-08-08 12:39:19 +02:00
arcnmx 7be67825c8 nixos/pipewire: add bluez hardware database
(cherry picked from commit ef532a04436001249a7c24e13c628e970791dc7f)
Signed-off-by: Domen Kožar <domen@dev.si>
2021-08-08 12:39:11 +02:00
arcnmx 4ef889251c pipewire: 0.3.30 -> 0.3.31
(cherry picked from commit eb7e40f9c9bbf0d9f54d0a65722480abcd28c9d0)
Signed-off-by: Domen Kožar <domen@dev.si>
2021-08-08 12:38:52 +02:00
github-actions[bot] 3801c0f13b
Merge staging-next-21.05 into staging-21.05 2021-08-08 00:03:44 +00:00
Stéphan Kochen 72f3f8cc82 SDL_Pango: fix darwin build
(cherry picked from commit 056d7221aadbca98a23fdadb3b2963d43433ac2d)
2021-08-07 19:15:25 +00:00
github-actions[bot] eeaf5b3a23
Merge staging-next-21.05 into staging-21.05 2021-08-07 00:03:22 +00:00
Artturi 8bd8141ca9
Merge pull request #126327 from NixOS/backport-126093-to-release-21.05 2021-08-07 01:32:40 +03:00
Artturi 7396b68a4c
Merge pull request #125253 from NixOS/backport-124853-to-release-21.05 2021-08-07 00:27:00 +03:00
Artturi ec5c0144d9
Merge pull request #126442 from NixOS/backport-125668-to-release-21.05
[Backport release-21.05] glibc: fix build vs host tool confusion
2021-08-07 00:04:10 +03:00
github-actions[bot] 4bd56dee3e
Merge staging-next-21.05 into staging-21.05 2021-08-06 18:02:40 +00:00
Artturi 2aeed2e3db
Merge pull request #127446 from NixOS/backport-126745-to-release-21.05
[Backport release-21.05] spice: 0.14.2 -> 0.15.0
2021-08-06 20:30:39 +03:00
Artturi 762123e6a0
Merge pull request #131806 from NixOS/backport-127832-to-staging-21.05 2021-08-06 19:17:11 +03:00
Robert Scott 733682c329
Merge pull request #128675 from NixOS/backport-127172-to-release-21.05
[Backport release-21.05] exiv2: 0.27.3 -> 0.27.4
2021-08-05 19:09:32 +01:00
github-actions[bot] 9856e7e6f2
Merge staging-next-21.05 into staging-21.05 2021-08-01 12:08:23 +00:00
Frederik Ramcke 3142a8ca9a
cairo: add patch for CVE-2020-35492 (PR: #131949)
(cherry picked from commit e591a6235d95318ad67c03d666dc8788c65025fc)
2021-07-31 16:18:31 +02:00
Nick Cao b96fa3c4c1 tdesktop: 2.8.4 -> 2.8.11
(cherry picked from commit e57ccfdaf3f95ba2c4fdb0a9e41799b8bd1fdfc1)
2021-07-31 12:40:26 +02:00
Michael Weiss d73ddfe782 tdesktop: 2.7.5 -> 2.8.0
(cherry picked from commit 0d509d366d4fc692a9dc81366445e29da81202e6)
2021-07-31 12:40:07 +02:00
Martin Weinelt abc2a76cb5 aspell: fix buffer overflow in objstack
Fixes: CVE-2019-25051
(cherry picked from commit 000fe8c92ccbf44c91d48235bd5ecb9773b223ed)
2021-07-29 08:54:10 +00:00
github-actions[bot] e6c1d10f4b
Merge release-21.05 into staging-next-21.05 2021-07-29 00:03:09 +00:00
Martin Weinelt 2bc35baa85
Merge pull request #131290 from risicle/ris-libslirp-4.6.1-r21.05 2021-07-29 00:05:56 +02:00
Robert Scott e3ebd9cdb7 libgrss: add patch for CVE-2016-20011
(cherry picked from commit b50d7d0683d61bf00a101ce7b67c7b0f065d7ff6)
2021-07-28 17:49:18 +00:00
AndersonTorres 2a9cad505d poppler: 21.05.0 -> 21.06.1
(cherry picked from commit 004970b1524ab59f791137e0954b43c2b65615bb)
2021-07-28 11:54:48 +00:00
AndersonTorres 3c21bbebb6 poppler_0_61: cosmetical rewrite 0.61.nix
(cherry picked from commit a4e85ae2b88d29224bad8be685e6b366845a5257)
2021-07-28 11:54:48 +00:00
github-actions[bot] 48b0dbb885
Merge staging-next-21.05 into staging-21.05 2021-07-25 12:02:56 +00:00
Luke Granger-Brown 4d03ae59fb
Merge pull request #125851 from NixOS/backport-125569-to-release-21.05
[Backport release-21.05] gupnp: apply the patch for CVE-2021-33516
2021-07-25 10:15:30 +01:00
Vladimír Čunát 719e9f31c2
Merge #130786: mesa: 21.0.1 -> 21.1.4 (into staging-21.05) 2021-07-25 07:50:04 +02:00
ash lea af428afe37 mesa: fix datadir location
(cherry picked from commit 9bf469e6488b5835ac83ccc5ca7f7f63c1f7a0dd)
2021-07-24 19:26:46 -07:00
github-actions[bot] b0b24df92d
Merge staging-next-21.05 into staging-21.05 2021-07-24 00:03:36 +00:00
zowoq 1fc8847792 libslirp: 4.6.0 -> 4.6.1
https://gitlab.freedesktop.org/slirp/libslirp/-/releases/v4.6.1
(cherry picked from commit 7ce24d4b85077a5f24f83abe81a07bb7d146e9f7)
2021-07-24 00:38:20 +01:00
zowoq 94cc94a40c libslirp: 4.5.0 -> 4.6.0
https://gitlab.freedesktop.org/slirp/libslirp/-/releases/v4.6.0
(cherry picked from commit 8d25d8c55dcdf10a612aac115bd88139d10fc351)
2021-07-24 00:37:13 +01:00
Philipp Bartsch ea8fc4327f webkitgtk: 2.32.1 -> 2.32.3
Relevant security advisory:
https://webkitgtk.org/security/WSA-2021-0004.html

CVEs:
CVE-2021-1817,  CVE-2021-1820,  CVE-2021-1825,  CVE-2021-1826,
CVE-2021-21775, CVE-2021-21779, CVE-2021-21806, CVE-2021-30661,
CVE-2021-30663, CVE-2021-30665, CVE-2021-30666, CVE-2021-30682,
CVE-2021-30689, CVE-2021-30720, CVE-2021-30734, CVE-2021-30744,
CVE-2021-30749, CVE-2021-30758, CVE-2021-30761, CVE-2021-30762,
CVE-2021-30795, CVE-2021-30797, CVE-2021-30799

(cherry picked from commit 3bb38198e94c9076acac411caae0f1c15ad1e96e)
2021-07-23 23:09:31 +00:00
github-actions[bot] 0e01d263c5
Merge staging-next-21.05 into staging-21.05 2021-07-21 18:03:05 +00:00
Thomas Tuegel 7e3eed28fe
Merge pull request #130155 from LeSuisse/kimages-CVE-2021-36083-21.05
[21.05] libsForQt5.kimageformats: fix CVE-2021-36083
2021-07-21 09:49:04 -05:00
Michael Weiss c6f1d6bf1e mesa: 21.1.3 -> 21.1.4 2021-07-20 01:03:31 -04:00
Michael Weiss d7b32a155a mesa: 21.1.2 -> 21.1.3
I've also updated the URL for the RISC-V patch in case the content of
the old URL will change (not sure if that's possible after a merge
request is merged but now that the patch is upstream it seems like a
good idea regardless; and the content has actually already changed so
the old hash wasn't correct anymore).
2021-07-20 01:03:28 -04:00
Zhaofeng Li 21ffa4a1b3 mesa: Add patch for RISC-V driver selection 2021-07-20 01:03:25 -04:00
Jonathan Ringer 89ed4b143d mesa: fix darwin build 2021-07-20 01:00:09 -04:00
Michael Weiss 00f0ce0618 mesa: 21.1.1 -> 21.1.2 2021-07-20 01:00:06 -04:00
Michael Weiss 71e0180f6f mesa: 21.0.3 -> 21.1.1
Note: This update likely causes some issues when running an application
that has a direct dependency on Mesa (e.g. Sway and XWayland) and was
compiled against a different Nixpkgs revision. See 7106fca0fe4 for more
details regarding that issue.
2021-07-20 01:00:03 -04:00
Michael Weiss e0e0ca92a6 mesa: 21.0.1 -> 21.0.3
Note: The update to Mesa 21.0.2 was reverted (25ae1fd29f) because it
caused major issues with Sway (segfault on startup [0]).
This is still the case and might affect all packages that directly
depend on "mesa" (for libgbm or libglapi) but it only causes issues when
the package depends on a "mesa" version that differs from "mesa.drivers"
used for "/run/opengl-driver/". I've noticed this while testing Mesa
updates with the NixOS option "hardware.opengl.package" (as usual)
instead of rebuilding my whole system (which would work). Unfortunately
this can/will likely also cause issues when mixing different channels,
using Flakes/Overlays, etc.

The cause of this should be similar to [1] ("mesa" updates now cause the
same issues that "glibc" updates already do, maybe triggered by certain
Mesa changes) and some additional discussions is in [2],[3].

Note: Don't backport this to NixOS 21.05, at least not without careful
consideration.

[0]: https://github.com/NixOS/nixpkgs/pull/118753#issuecomment-818950977
[1]: https://github.com/NixOS/nixpkgs/issues/95808
[2]: https://github.com/NixOS/nixpkgs/pull/120325
[3]: https://github.com/NixOS/nixpkgs/pull/119558
2021-07-20 01:00:00 -04:00
Michael Weiss c0b6513803 mesa: Cleanup enableRadv (not used anymore) 2021-07-20 00:59:49 -04:00
github-actions[bot] 56e08b77af
Merge staging-next-21.05 into staging-21.05 2021-07-18 12:04:16 +00:00
Jörg Thalheim e80a619241
Merge pull request #130530 from NixOS/backport-130146-to-release-21.05
[Backport release-21.05] treewide: convert all links git.archlinux.org to github.com/archlinux…
2021-07-18 12:03:38 +01:00
Jörg Thalheim a3a2205e49
Merge pull request #126165 from erdnaxe/backport
[21.05] libgudev: support cross-compilation by disabling introspection and vala
2021-07-18 11:47:51 +01:00
Sandro Jäckel efd1d6fe1b treewide: convert all links git.archlinux.org to github.com/archlinux/svntogit-*
(cherry picked from commit 388a4ef42345775a85d823597dadf25d4f0a5209)
2021-07-18 09:17:54 +00:00
Robert Scott fb831daa53 exiv2: fix for darwin by providing libiconv
(cherry picked from commit 698d433e74a6dcc5d02e1d1f43083ca97433069b)
2021-07-18 00:49:13 +01:00
github-actions[bot] 364d1f2758
Merge staging-next-21.05 into staging-21.05 2021-07-17 00:03:22 +00:00
TredwellGit 8b39c06e41 steamPackages.steam-fhsenv: fix Proton
LLVM must match version required by Mesa.

Fixes https://github.com/NixOS/nixpkgs/issues/127068

(cherry picked from commit b4d3ea24beddd761a40020e043fbe2979c518dbf)
2021-07-16 15:34:43 -07:00
ajs124 7cdd285163 libgcrypt: add meta.changelog
(cherry picked from commit 7bb9050610491bbe46959dbf9b52faef02e7ffdc)
2021-07-15 23:36:16 -07:00
R. RyanTM 87a0a02fa1 libgcrypt: 1.9.2 -> 1.9.3
(cherry picked from commit a19036237e28d707a8b0962ec00094eebf75e58e)
2021-07-15 23:36:16 -07:00
Martin Weinelt 282afa0245 nss_latest: init at 3.67
Required for the latest and greatest firefox release
2021-07-14 16:32:17 +02:00
Thomas Gerbet 07b2b092be libsForQt5.kimageformats: fix CVE-2021-36083
Co-authored-by: Sandro <sandro.jaeckel@gmail.com>
(cherry picked from commit 3d260a2d0edffce5095a5f813e9227c4864e9715)
2021-07-14 10:08:43 +02:00
Michael Weiss 46667847c0
wlroots: 0.14.0 -> 0.14.1
(cherry picked from commit 7632ba310eb4fcb249abbaf67c4094afafd17c18)
2021-07-12 10:11:43 +02:00