talyz
b72647dc3a
gitlab: 14.3.3 -> 14.4.1
2021-10-29 13:41:48 +02:00
Lara
06fd3da981
gitlab: 14.3.2 -> 14.3.3
...
(cherry picked from commit e7331d2e855145c651f9c2370e6732e5e443a27b)
2021-10-14 12:03:20 +00:00
Lara
6d0ceff09d
gitlab: 14.3.1 -> 14.3.2
...
(cherry picked from commit b00924518c5b580ffec242e4c7ee8521ce041ac7)
2021-10-04 20:55:06 +02:00
Lara
8df64b01d9
gitlab: 14.2.4 -> 14.3.1
...
(cherry picked from commit fbd051169d315593042344b1b1b6438db91914ce)
2021-10-03 23:38:12 +02:00
Lara
eb24e2e6b1
gitlab: 14.2.3 -> 14.2.4
...
(cherry picked from commit e5f70272c5ebe77cea9f045f8cac1d934d6a7ca5)
2021-09-21 13:22:10 +02:00
Yureka
d8e386b70d
gitlab: 14.2.1 -> 14.2.3
...
(cherry picked from commit 6ede6d2740c0625531b58d69d5a80a06821c6635)
2021-09-03 14:33:07 +00:00
talyz
2572e2550a
gitlab: 14.1.2 -> 14.2.1
...
(cherry picked from commit 99387372d5af951fa7ab1cad970b7bef83b6b91c)
2021-08-28 16:03:12 +02:00
Yureka
7036ca99ae
gitlab: 14.1.1 -> 14.1.2
...
(cherry picked from commit 5957f4edb9f3a266733c0335dc6ab7f8e674c444)
2021-08-05 14:32:11 +00:00
Yureka
274b5f5099
gitlab: 14.1.0 -> 14.1.1
...
https://about.gitlab.com/releases/2021/07/28/gitlab-14-1-1-released/
(cherry picked from commit 5a69fb930d7621376a17fb144ba57da99e2814a9)
2021-08-05 14:17:01 +02:00
Yureka
3b70be46a8
gitlab: 14.0.5 -> 14.1.0
...
(cherry picked from commit ac20e17cc83cba8599266ba2268054e62c2b7803)
2021-07-31 13:43:09 +02:00
Yureka
aff1607b17
gitlab: 14.0.2 -> 14.0.5
...
https://about.gitlab.com/releases/2021/07/06/gitlab-14-0-3-released/
https://about.gitlab.com/releases/2021/07/07/critical-security-release-gitlab-14-0-4-released/
https://about.gitlab.com/releases/2021/07/08/gitlab-14-0-5-released/
(cherry picked from commit 6510a136119d9c24ba67e4133ab1d561f72a46f6)
2021-07-13 15:27:21 +02:00
Yureka
ebe13e59aa
gitlab: 14.0.1 -> 14.0.2
...
https://about.gitlab.com/releases/2021/07/01/security-release-gitlab-14-0-2-released/
(cherry picked from commit a023b6c4722663e8e481daf2e593eb917d8daec0)
2021-07-13 15:27:21 +02:00
Yureka
e8e5b8a9bb
gitlab: 13.12.4 -> 14.0.1
...
https://about.gitlab.com/releases/2021/06/22/gitlab-14-0-released/
https://about.gitlab.com/releases/2021/06/24/gitlab-14-0-1-released/
(cherry picked from commit facd0c68cc139aabff157f0a5f8deba621ed2ba8)
2021-07-13 15:27:21 +02:00
Milan Pässler
bcdb378e19
gitlab: 13.12.3 -> 13.12.4
...
https://about.gitlab.com/releases/2021/06/14/gitlab-13-12-4-released/
(cherry picked from commit 5c04139da22d64f59b0f97a7672d875d82bdb7a5)
2021-06-15 14:55:09 +00:00
Milan Pässler
852f6f8f7d
gitlab: 13.12.2 -> 13.12.3
...
(cherry picked from commit d62aac819bc3140514098f646cdca8999938b194)
2021-06-14 11:34:13 +00:00
Milan
4691b50a4e
gitlab: 13.12.0 -> 13.12.2
...
https://about.gitlab.com/releases/2021/06/01/security-release-gitlab-13-12-2-released/
Backport of #125271
(cherry picked from commit 2a1c29ef4bacac06f9b677931027bf053952618c)
2021-06-03 00:54:21 +02:00
Milan Pässler
a555872f04
gitlab: 13.11.2 -> 13.12.0
...
(cherry picked from commit 1ded8ef44ef83de6cfafd1b19ed6c6c09e734ad4)
2021-05-25 23:00:11 +02:00
Milan
5e2bfae1b8
gitlab: 13.10.2 -> 13.11.2 ( #120947 )
2021-04-28 15:16:06 +02:00
Milan Pässler
35aca2bada
gitlab: add back GITLAB_WORKHORSE_VERSION
...
9b30cda2f6 (r49247855)
2021-04-08 09:56:05 +02:00
talyz
9b30cda2f6
gitlab: 13.9.4 -> 13.10.2
2021-04-07 23:23:24 +02:00
Ben Gamari
3df0d950d8
gitlab: 13.8.6 -> 13.9.4 ( #116798 )
2021-03-20 15:04:54 +01:00
Milan
324f46b31b
gitlab: 13.8.5 -> 13.8.6 ( #116740 )
...
https://about.gitlab.com/releases/2021/03/17/security-release-gitlab-13-9-4-released/
2021-03-19 00:56:29 +01:00
Milan
86ee8dd8ff
gitlab: 13.8.4 -> 13.8.5 ( #115393 )
...
https://about.gitlab.com/releases/2021/03/04/security-release-gitlab-13-9-2-released/
2021-03-10 12:42:58 +01:00
Milan
bd4b22a87a
gitlab: 13.7.4 -> 13.8.4 ( #112836 )
2021-02-17 22:55:14 +01:00
Jeff Slight
e2c0897eba
gitlab: 13.7.1 -> 13.7.4 ( #108720 )
2021-01-29 21:13:59 +01:00
Jeff Slight
e86efbc48b
gitlab: 13.6.1 -> 13.7.1 ( #107558 )
2020-12-26 22:06:22 +01:00
Milan Pässler
c1c2ff4a97
gitlab: 13.6.0 -> 13.6.1
2020-11-26 14:12:14 +01:00
Milan Pässler
2429d5a307
gitlab: 13.5.1 -> 13.6.0
...
Changed ruby version to 2.7.x to match upstream.
Added a gem config for gitlab-pg_query as it tries to download a source
tarball during the build process.
Also removed a patch for gitaly that has become obsolete by upstream fix
[here](de04077c25
).
2020-11-21 01:38:35 +01:00
Milan Pässler
4555a26b06
gitlab: 13.4.3 -> 13.5.1
2020-11-20 19:26:30 +01:00
Jeff Slight
2cf524c825
gitlab: add new line to end of data.json file
2020-11-20 19:26:30 +01:00
Jeff Slight
c16a977386
gitlab: 13.0.14 -> 13.4.3
...
13.4.3
2020-11-20 19:26:30 +01:00
Milan Pässler
6956ce821d
gitlab: 13.0.12 -> 13.0.14
2020-08-30 11:24:25 -07:00
Florian Klink
5aa6b4c2a1
gitlab: 13.0.9 -> 13.0.12 ( #94968 )
2020-08-11 14:11:39 +02:00
Milan Pässler
f3a353f184
gitlab: 13.0.8 -> 13.0.9
...
Security release: https://about.gitlab.com/releases/2020/07/06/critical-security-release-gitlab-13-1-3-released/
2020-07-07 22:15:03 +02:00
Florian Klink
d986fccd9d
gitlab: 13.0.6 -> 13.0.8 ( #92060 )
2020-07-06 22:44:18 +02:00
Florian Klink
38a4af7d19
gitlab: 13.0.4 -> 13.0.6
...
CI Token Access Control
An authorization issue discovered in the mirroring logic allowed read access to private repositories. This issue is now mitigated in the latest release and is waiting for a CVE ID to be assigned.
https://about.gitlab.com/releases/2020/06/10/critical-security-release-13-0-6-released/
2020-06-11 00:27:11 +02:00
talyz
0b5c534598
gitlab: 13.0.3 -> 13.0.4
...
https://about.gitlab.com/releases/2020/06/03/critical-security-release-13-0-4-released/
2020-06-04 14:32:45 +02:00
Robin Gloster
79454f15ac
gitlab: 12.10.8 -> 13.0.3
...
https://about.gitlab.com/releases/2020/05/22/gitlab-13-0-released/
https://about.gitlab.com/releases/2020/05/27/security-release-13-0-1-released/
https://about.gitlab.com/releases/2020/05/29/gitlab-13-0-3-released/
The gitaly gitlab-shell config has moved into gitaly.toml. See
https://gitlab.com/gitlab-org/gitaly/-/issues/2182 for more info.
2020-06-04 14:32:39 +02:00
Robin Gloster
af05325f10
gitlab: 12.10.6 -> 12.10.8
2020-05-31 03:11:57 +02:00
Milan Pässler
f61370214c
gitlab: 12.8.10 -> 12.10.6
2020-05-18 18:34:46 +02:00
Florian Klink
fdd0d0de1f
gitlab: 12.8.9 -> 12.8.10
2020-04-30 23:16:50 +02:00
Florian Klink
d1902923fa
gitlab: 12.8.8 -> 12.8.9
...
See
https://about.gitlab.com/releases/2020/04/14/critical-security-release-gitlab-12-dot-9-dot-3-released/
for details.
2020-04-27 10:31:36 +02:00
Florian Klink
8ab04fd87b
gitlab: 12.8.7 -> 12.8.8
2020-03-27 10:08:59 +01:00
Kim Lindberger
3a173c1d75
gitlab: 12.8.6 -> 12.8.7 ( #82838 )
...
https://about.gitlab.com/releases/2020/03/16/gitlab-12-8-7-released/
2020-03-24 18:45:39 +01:00
Florian Klink
ab3b836350
gitlab: 12.8.5 -> 12.8.6
...
https://about.gitlab.com/releases/2020/03/11/critical-security-release-gitlab-12-dot-8-dot-6-released/
2020-03-12 02:57:39 +01:00
Milan
f391999026
gitlab: 12.8.2 -> 12.8.5 ( #82142 )
...
https://about.gitlab.com/releases/2020/03/09/gitlab-12-8-5-released/
2020-03-09 17:23:51 +01:00
Milan
c25756f91c
gitlab: 12.8.1 -> 12.8.2 ( #81803 )
...
Includes multiple security fixes mentioned in
https://about.gitlab.com/releases/2020/03/04/gitlab-12-dot-8-dot-2-released/
(unfortunately, no CVE numbers as of yet)
- Directory Traversal to Arbitrary File Read
- Account Takeover Through Expired Link
- Server Side Request Forgery Through Deprecated Service
- Group Two-Factor Authentication Requirement Bypass
- Stored XSS in Merge Request Pages
- Stored XSS in Merge Request Submission Form
- Stored XSS in File View
- Stored XSS in Grafana Integration
- Contribution Analytics Exposed to Non-members
- Incorrect Access Control in Docker Registry via Deploy Tokens
- Denial of Service via Permission Checks
- Denial of Service in Design For Public Issue
- GitHub Tokens Displayed in Plaintext on Integrations Page
- Incorrect Access Control via LFS Import
- Unescaped HTML in Header
- Private Merge Request Titles Leaked via Widget
- Project Namespace Exposed via Vulnerability Feedback Endpoint
- Denial of Service Through Recursive Requests
- Project Authorization Not Being Updated
- Incorrect Permission Level For Group Invites
- Disclosure of Private Group Epic Information
- User IP Address Exposed via Badge images
- Update postgresql (GitLab Omnibus)
2020-03-05 16:37:21 +01:00
talyz
7d8a2004cf
gitlab: 12.7.6 -> 12.8.1
...
https://about.gitlab.com/releases/2020/02/22/gitlab-12-8-released/
https://about.gitlab.com/releases/2020/02/24/gitlab-12-8-1-released/
2020-03-03 21:19:01 +01:00
Florian Klink
0a87568b03
gitlab: 12.7.5 -> 12.7.6
2020-02-13 22:18:27 +01:00
Florian Klink
0142bd49cc
gitlab: 12.7.4 -> 12.7.5
...
https://about.gitlab.com/releases/2020/01/31/gitlab-12-7-5-released/
2020-02-01 17:07:55 +01:00