Commit Graph

16530 Commits

Author SHA1 Message Date
Janne Heß 9555e0baac
Merge pull request #144914 from NixOS/backport-144911-to-release-21.05
[Backport release-21.05] signal-desktop: 5.22.0 -> 5.23.0
2021-11-07 19:33:21 +01:00
Vladimír Čunát 046e1d6c92
Merge #144296: firefox*: major updates (into release-21.05) 2021-11-07 17:51:45 +01:00
Michael Weiss a18dc9b1e3 signal-desktop: 5.22.0 -> 5.23.0
(cherry picked from commit ed83ff9bccf795ba9ce5e885b950ee86d39c68af)
2021-11-06 18:41:02 +00:00
Vladimír Čunát 55420d7083
Merge #143942: thunderbird*: 91.1.1 -> 91.2.1 (into release-21.05) 2021-11-04 17:43:44 +01:00
R. Ryantm 8d2920fcaf
firefox-esr-91-unwrapped: 91.2.0esr -> 91.3.0esr
(cherry picked from commit 4c9202e36e75a171c6ff62c5f8b41665aeca3da2)
2021-11-03 16:23:57 +01:00
Martin Weinelt 95b508e695
firefox: 93.0 -> 94.0
(cherry picked from commit 0cf88beb7b551a59947425a0b62c8f51cf7ea0e7)
2021-11-03 16:23:56 +01:00
Sandro 2fd5c69fa6
Merge pull request #144384 from saschagrunert/nixos-21.05-k8s 2021-11-03 10:54:15 +01:00
Sascha Grunert 935a0a4298
kubernetes: 1.21.1 -> 1.21.6
Signed-off-by: Sascha Grunert <sgrunert@redhat.com>
2021-11-03 09:27:30 +01:00
taku0 b5777416ff firefox-bin: 93.0 -> 94.0
(cherry picked from commit 7d427ce6a0310af37ae8d3cb71fc34e097b47f8b)
2021-11-03 06:02:25 +00:00
Martin Weinelt 2d89624983
firefox-esr-78: mark as vulnerable
This is a browser, the 78 ESR series is end of life, so we can expect
this browser to be a security vulnerability any day.

Recommend everyone to move to ESR 91.
2021-11-02 23:40:02 +01:00
Evgeny Kurnevsky 687fd09c28 pidgin: use system certificates to fix letsencrypt
(cherry picked from commit bf0c0cc767e6abfe0c319208359c8012029371e8)
2021-11-01 11:22:17 +00:00
taku0 5f60ed2d7c thunderbird: mark 78.14.0 insecure 2021-10-31 15:37:13 +09:00
taku0 69d4ee18d7 thunderbird: 91.1.1 -> 91.2.1 2021-10-31 15:31:21 +09:00
taku0 6d18bf0042 thunderbird-bin: 91.1.2 -> 91.2.1 2021-10-31 15:27:13 +09:00
taku0 7349374c44 thunderbird-bin: 91.1.1 -> 91.1.2 2021-10-31 15:27:09 +09:00
Michael Weiss db2b776077
ungoogled-chromium: 95.0.4638.54 -> 95.0.4638.69
(cherry picked from commit d71409c0de694ecbefa05d78a53adefcbb46a72b)
2021-10-30 11:54:22 +02:00
Michael Weiss 3854b45b21
Merge pull request #143816 from primeos/chromium-backport
[21.05] chromium: 95.0.4638.54 -> 95.0.4638.69
2021-10-30 11:53:25 +02:00
Michael Weiss 4bfe628c58
Merge pull request #142514 from NixOS/backport-142450-to-release-21.05
[Backport release-21.05] ungoogled-chromium: 94.0.4606.81 -> 95.0.4638.54
2021-10-30 11:17:43 +02:00
Michael Weiss a7e7c9a328
chromium: 95.0.4638.54 -> 95.0.4638.69
https://chromereleases.googleblog.com/2021/10/stable-channel-update-for-desktop_28.html

This update includes 8 security fixes. Google is aware that exploits for
CVE-2021-38000 and CVE-2021-38003 exist in the wild.

CVEs:
CVE-2021-37997 CVE-2021-37998 CVE-2021-37999 CVE-2021-38000
CVE-2021-38001 CVE-2021-38002 CVE-2021-38003

(cherry picked from commit 8dae7bc0f54b8f2ef7fde4727f190d137c94ad0b)
2021-10-30 11:12:06 +02:00
Michael Weiss e47f00a7c7
signal-desktop: 5.21.0 -> 5.22.0 2021-10-29 23:07:19 +02:00
Eduardo Sánchez Muñoz 66d6ec6ed2 maintainers: remove eduardosm 2021-10-28 14:23:25 -07:00
jakobrs 0116578123 tor-browser-bundle-bin: Add eff.org mirror
(cherry picked from commit 7325f6a4f14d19eeaf0129e7b52710d141a28b76)
2021-10-28 19:04:08 +00:00
Michael Weiss 7f1ea2dc2d signal-desktop: 5.20.0 -> 5.21.0
(cherry picked from commit 374ab216aa4a37febf54eefe605d0cbe18cd4fe2)
2021-10-27 18:19:31 +00:00
Michael Adler 4d6cfda283 ungoogled-chromium: 94.0.4606.81 -> 95.0.4638.54
(cherry picked from commit a8f4267547377cbd3abaf816ca6a6cf805bd0c01)
2021-10-21 19:45:44 +00:00
Michael Weiss dc7c702c4e
chromium: 94.0.4606.81 -> 95.0.4638.54
https://chromereleases.googleblog.com/2021/10/stable-channel-update-for-desktop_19.html

This update includes 19 security fixes.

CVEs:
CVE-2021-37981 CVE-2021-37982 CVE-2021-37983 CVE-2021-37984
CVE-2021-37985 CVE-2021-37986 CVE-2021-37987 CVE-2021-37988
CVE-2021-37989 CVE-2021-37990 CVE-2021-37991 CVE-2021-37992
CVE-2021-37993 CVE-2021-37996 CVE-2021-37994 CVE-2021-37995

(cherry picked from commit 820b99a77d8ea33313a88852384b840e1fadf0df)
2021-10-19 22:29:22 +02:00
Michael Weiss 12c7b8e13e
chromiumBeta: 95.0.4638.49 -> 95.0.4638.54
(cherry picked from commit 338e629f0c230df830c879ea491f84e894a87fd0)
2021-10-19 22:29:21 +02:00
Michael Weiss 98b786b341
chromiumDev: Fix the build
(cherry picked from commit b0581c2699cf4f4fb7da2098385372739d4d8955)
2021-10-19 22:29:19 +02:00
Michael Weiss 0f95b33218
chromiumDev: 96.0.4662.6 -> 96.0.4664.9
(cherry picked from commit df1531f3dc0ed37b82bb11a96fdbae9e076bf429)
2021-10-19 22:29:17 +02:00
Michael Weiss 10828b560b
chromium: Drop Python 2
Yay, finally!... \o/ :)
Upstream issue: https://crbug.com/942720

(cherry picked from commit ae522fb7f98cb92f8ac92df91ac0be8b02fb33ee)
2021-10-19 22:29:16 +02:00
Michael Weiss 2bf603406b
chromiumBeta: 95.0.4638.40 -> 95.0.4638.49
(cherry picked from commit d7e522e8032c1774cf65f0cb07ab935340971d7f)
2021-10-19 22:29:14 +02:00
Michael Weiss 101abfd618
chromium: Start dropping Python 2
(cherry picked from commit 7e6d80740d01dd42f1684cbb64d0f236e69dd3c8)
2021-10-19 22:29:13 +02:00
Michael Weiss 6011e236a5
chromiumDev: 96.0.4655.0 -> 96.0.4662.6
(cherry picked from commit 35a26a5b210eb0ac5656f21adee96281339a1b36)
2021-10-19 22:29:11 +02:00
Michael Weiss 05a460398d
chromiumBeta: 95.0.4638.32 -> 95.0.4638.40
(cherry picked from commit a15be1c5f65b15d75a4e30a82340ed34d538e449)
2021-10-19 22:29:09 +02:00
Michael Weiss fc512032a7
chromiumBeta: 95.0.4638.17 -> 95.0.4638.32
(cherry picked from commit a41e19ca718eeabc2e9205e72608f50a933e9648)
2021-10-19 22:29:08 +02:00
Michael Weiss d7c4b627a7
chromiumDev: 96.0.4651.0 -> 96.0.4655.0
(cherry picked from commit 1f7f87396ca180543b997a3a8806212da8a3fd67)
2021-10-19 22:29:07 +02:00
José Luis Lafuente a161b1460d
google-chrome: add pipewire dependency
chromium derivation already depends on pipewire. This is required to
share your screen on wayland

(cherry picked from commit 29efb76ab6480426ce8c1f7bd8e341f0249a61cc)
2021-10-19 22:29:05 +02:00
Michael Weiss 37c13136ac
chromiumDev: 95.0.4638.17 -> 96.0.4651.0
(cherry picked from commit eba807d5949801334cf4742423e8a7d5eb161d26)
2021-10-19 22:29:04 +02:00
Michael Weiss b0522cfa67 signal-desktop: 5.19.0 -> 5.20.0
(cherry picked from commit 9b3ef21bff420b87aa00418dbe1037ed5f5fd322)
2021-10-17 09:09:18 +00:00
Fabián Heredia Montiel f32fb0fec6 alpine: 2.24 → 2.25
(cherry picked from commit e849909813eddce351baa0429a98299da80c77e6)
2021-10-16 18:56:17 +00:00
Maximilian Bosch 102423a3c6
Merge pull request #141420 from NixOS/backport-141364-to-release-21.05
[Backport release-21.05] element-{web,desktop}: 1.9.0 -> 1.9.2
2021-10-16 15:45:04 +02:00
Maximilian Bosch 44ef22423f
element-desktop: regenerate yarn deps with yarn2nix from 21.05 2021-10-16 15:07:13 +02:00
Maximilian Bosch 9d7b660576
element-desktop: 1.9.0 -> 1.9.2
ChangeLog: https://github.com/vector-im/element-desktop/releases/tag/v1.9.2
(cherry picked from commit 6f2e2dc7795d20073fa62c1c98f2daf7b8ee6587)
2021-10-16 15:05:56 +02:00
Maximilian Bosch ba0a1ce211
element-web: 1.9.0 -> 1.9.2
ChangeLog: https://github.com/vector-im/element-web/releases/tag/v1.9.2
(cherry picked from commit b021b8bebd9c8b5e66450519d06fb500e6ac48b8)
2021-10-16 15:05:56 +02:00
github-actions[bot] e882bcae43
[Backport release-21.05] teamviewer: fix #96633, #44307 and #97148 + 15.15.5 -> 15.18.5 -> 15.22.3 (#141439)
* teamviewer: fix issue #96633

Fix teamviewer's breakage post 15.5.3 -> 15.15.5.

Teamviewer client was no longer able to connect to its backing
server as it now uses dbus to do so. Following changes were
required:

 -  add missing dbus and polkit service/policy files to package.
 -  add missing dbus lib to `LD_LIBRARY_PATH`.

Changes to the nixos module as a separate changeset.

(cherry picked from commit 506966d15658d8a411f364f47bbc0f3f9366dba3)

* nixos/teamviewer: fix issue #96633

Add teamviewer package as a dbus package now that the
client / server communication depends on dbus.

(cherry picked from commit 200e959995fa8088b5722bc8255109c03f2a4f78)

* nixos/teamviewer: fix issue #44307

Move to a forefront launch of the daemon. Doing so allowed us
to move the service from forking to simple to avoid the
missing pid  error log.

Also:

 -  Make the dbus dependency explicit.

(cherry picked from commit 953bbc0d7373102cf89625dc3bb7ab8e91134069)

* teamviewer: 15.15.5 -> 15.18.5

Upgrading to the last version still using qt5.14. Later version
will be using qt5.15 which is not in 21.05 stable branch.

This fixes us the crash observed in 15.15.5 when stopping
the service.

(cherry picked from commit db889eb9137a859eedfc5b402de84271c0659662)

* teamviewer: refactor executable wrapping

This centralizes `PATH` and `LD_LIBRARY_PATH`, avoid multiple
layers of wrappers.

Refactor as suggested by @Artturin in PR provided patch:
<https://github.com/NixOS/nixpkgs/pull/140076#issuecomment-934770391>.

(cherry picked from commit c55bc5bfd3377d54f5b6153d09c033cceadfcc05)

* teamviewer: fix 97148 (busybox installed issue)

Simply add `coreutils` as a runtime dependency which will
prevent teamviewer from using incomplete busybox implementation
of expected gnu binaries.

As suggested by @Artturin in PR comment:
<https://github.com/NixOS/nixpkgs/pull/140076#issuecomment-934770391>.

(cherry picked from commit 4fb188e1d190f2e08053dba3e2e95fff1e29183a)

* teamviewer: 15.18.5 -> 15.22.3

Required move from libsForQt514 -> libsForQt515.

Note that this changset won't be backportable to 21.05.

(cherry picked from commit 975ab7f3a02ac0232afe7920a8f7d78fc22d5ccb)

Co-authored-by: Raymond Gauthier <jraygauthier@gmail.com>
2021-10-13 05:17:24 +03:00
Michael Weiss 2ec9c0824a ungoogled-chromium: 94.0.4606.71 -> 94.0.4606.81
(cherry picked from commit 383928815fd9fc828b7bb43c1f3edeeb50ab08e4)
2021-10-10 20:07:02 +00:00
Michael Weiss b68a066466 chromium: 94.0.4606.71 -> 94.0.4606.81
https://chromereleases.googleblog.com/2021/10/stable-channel-update-for-desktop.html

This update includes 4 security fixes.

CVEs:
CVE-2021-37977 CVE-2021-37978 CVE-2021-37979 CVE-2021-37980

(cherry picked from commit d406bca7461e94cb3c9544e7ccfb3c3bba6df1d2)
2021-10-08 21:38:26 +00:00
Robert Scott 96cf5a2b2d
Merge pull request #140785 from risicle/ris-onionshare-known-vulnerabilities-r21.05
[21.05] onionshare: mark as vulnerable to CVE-2021-41867, CVE-2021-41868
2021-10-07 20:33:54 +01:00
Doron Behar b1f47c7167
Merge pull request #140654 from kini/backport/zoom-us-version-updates 2021-10-07 19:16:47 +00:00
Martin Weinelt 215c25348c
Merge pull request #140759 from mweinelt/21.05/firefox 2021-10-07 10:39:40 +02:00
Michael Weiss 4600fc24a2 signal-desktop: 5.18.1 -> 5.19.0
(cherry picked from commit b9bc0b9480b619d3d41cd0ad38d0850ccd3294ae)
2021-10-06 19:07:32 +00:00