Commit Graph

14503 Commits

Author SHA1 Message Date
Maximilian Bosch ce206ce87f grocy: 3.1.1 -> 3.1.2
ChangeLog: https://github.com/grocy/grocy/releases/tag/v3.1.2
(cherry picked from commit d8ff7944ede3210c2172b87517803e25b8ed4736)
2021-09-30 12:35:26 +00:00
0x4A6F 13c798e8e7 routinator: 0.10.0 -> 0.10.1
(cherry picked from commit 01af935180289b3c3dde5add60b88392bcafeb4b)
2021-09-29 20:12:06 +01:00
0x4A6F abed7897c8 routinator: 0.9.0 -> 0.10.0
(cherry picked from commit adfe94641884918670fa21bf33d101c67614cc2e)
2021-09-29 20:11:17 +01:00
0x4A6F d777260d58 routinator: 0.8.3 -> 0.9.0
(cherry picked from commit ffae5e3650d160c39d84b790bf46d26a2a264a7b)
2021-09-29 20:10:47 +01:00
Ryan Mulligan 4b7b04754a
Merge pull request #139323 from NixOS/backport-139180-to-release-21.05
[Backport release-21.05] discourse: enable restoring backups bigger than RAM
2021-09-29 05:33:49 -07:00
Maximilian Bosch bc787aef50
Merge pull request #139705 from NixOS/backport-139444-to-release-21.05
[Backport release-21.05] wiki-js: 2.5.214 -> 2.5.219
2021-09-28 14:18:23 +02:00
Maximilian Bosch 1cd12e483a wiki-js: 2.5.214 -> 2.5.219
ChangeLog: https://github.com/Requarks/wiki/releases/tag/2.5.219
(cherry picked from commit e12d71e71b85bfd297ddf5f639511ff892e8fcae)
2021-09-28 07:38:14 +00:00
Maximilian Bosch ce6b39b6be
Merge pull request #139238 from Ma27/backport-hedgedoc
[21.05] hedgedoc: 1.8.2 -> 1.9.0, fixes CVE-2021-39175
2021-09-28 09:33:57 +02:00
talyz ec588badc4 discourse: Enable jhead, which is no longer marked vulnerable
(cherry picked from commit ed8c4e01d985d115f8821106318afc65fc7eaf5f)
2021-09-27 13:37:42 +00:00
talyz e93c033a3b discourse.plugins.discourse-yearly-review: Update
(cherry picked from commit e4ed6b5929d56328e79ad8792568790f6c077251)
2021-09-27 13:37:41 +00:00
talyz df8becc53f discourse.plugins.discourse-spoiler-alert: Update
(cherry picked from commit 957eaf8237a44f6849716739d35057b7ceaba84c)
2021-09-27 13:37:40 +00:00
talyz 61fab89e08 discourse.plugins.discourse-solved: Update
(cherry picked from commit fd084acb95f3e80a80405924e44002e2e4f6dd0e)
2021-09-27 13:37:40 +00:00
talyz cb35abb6c1 discourse.plugins.discourse-math: Update
(cherry picked from commit b1aa7efd36d1e8c9df8f97602038b98533f84cf9)
2021-09-27 13:37:39 +00:00
talyz 9c26876e2b discourse.plugins.discourse-github: Update
(cherry picked from commit 97034cfa1c3b455f1114fea8d302925014dd4bd8)
2021-09-27 13:37:38 +00:00
talyz 125bceeb25 discourse.plugins.discourse-checklist: Update
(cherry picked from commit d583001723e9ad4588c5b54c9f27c111758fe105)
2021-09-27 13:37:38 +00:00
talyz 394d86a424 discourse.plugins.discourse-canned-replies: Update
(cherry picked from commit 1e62b64b9036a3e9332b60c838f658ee35fa0a5a)
2021-09-27 13:37:37 +00:00
talyz 1d1a2bbf2b discourse.plugins.discourse-calendar: Update
(cherry picked from commit d62ea8705b22c8163fcbc6dcb7c70a42e7e745fe)
2021-09-27 13:37:36 +00:00
talyz cb502f9b10 discourse: 2.7.7 -> 2.7.8
(cherry picked from commit 73e8eb91c122699e5ede88980f7c7ef727b29896)
2021-09-27 13:37:35 +00:00
Artturi 8e1306519d
Merge pull request #139490 from NixOS/backport-137563-to-release-21.05
[Backport release-21.05] jitsi-meet: 1.0.5056 -> 1.0.5307
2021-09-27 03:19:19 +03:00
Artturi c02b9cd15e
Merge pull request #139487 from NixOS/backport-137559-to-release-21.05
[Backport release-21.05] jicofo: 1.0-756 -> 1.0-798
2021-09-27 03:18:58 +03:00
R. RyanTM 5b2ff56444 jitsi-meet: 1.0.5056 -> 1.0.5307
(cherry picked from commit f7e646df7f6db413aef1dd1cea9495719b893b63)
2021-09-25 23:14:13 +00:00
Maximilian Bosch 36a3756d71
hedgedoc: fix build by re-running `yarn2nix`
Failing Hydra build: https://hydra.nixos.org/build/154209534

(cherry picked from commit 0a2615fe2f52c5743fd3a6cb3bd40558bdf31ee5)
2021-09-26 01:12:44 +02:00
R. RyanTM 6d6a713644 jitsi-videobridge: 2.1-508-gb24f756c -> 2.1-551-g2ad6eb0b
(cherry picked from commit 065abed6de2bef418437a99be9f9232993b8339f)
2021-09-25 22:52:59 +00:00
R. RyanTM 583694193f jicofo: 1.0-756 -> 1.0-798
(cherry picked from commit e35934cc4ff79ce98e3a223feda156795b9485eb)
2021-09-25 22:52:31 +00:00
Ryan Mulligan d3bee2a63a discourse: enable restoring backups bigger than RAM
When restoring a backup, discourse decompresses the backup archive in
the /share/discourse/tmp dir. Before this change, it is linked to /run
which is typically backed by memory, so the backup will fail to
restore if you do not have enough memory on your system to contain the
backup. This has already happened to me on two small forums.

This moves tmp to the StateDirectory /var/lib/discourse/tmp which is
typically backed by disk.

(cherry picked from commit f933c68374b9c6195dc74d26c95fc9bf240fead8)
2021-09-24 12:35:53 +00:00
Maximilian Bosch 4eb0a2b3cb
hedgedoc: 1.8.2 -> 1.9.0, fixes CVE-2021-39175
ChangeLog: https://github.com/hedgedoc/hedgedoc/releases/tag/1.9.0

As documented in the Nix expression, I unfortunately had to patch
`yarn.lock` manually (the `yarn.nix` result isn't affected by this). By
adding a `git+https`-prefix to
`midi "https://github.com/paulrosen/MIDI.js.git#abcjs"` in the lock-file
I ensured that `yarn` actually uses the `MIDI.js` from the offline-cache
from `yarn2nix` rather than trying to download a tarball from GitHub.

Also, this release contains a fix for CVE-2021-39175 which doesn't seem
to be backported to 1.8. To quote NVD[1]:

> In versions prior to 1.9.0, an unauthenticated attacker can inject
> arbitrary JavaScript into the speaker-notes of the slide-mode feature
> by embedding an iframe hosting the malicious code into the slides or by
> embedding the HedgeDoc instance into another page.

Even though it "only" has a medium rating by NVD (6.1), this seems
rather problematic to me (also, GitHub rates this as "High"), so it's
actually a candidate for a backport.

[1] https://nvd.nist.gov/vuln/detail/CVE-2021-39175

(cherry picked from commit 0a10c17c8d01e5f9fefa3d6dbb7802a3cbce7e23)
2021-09-23 23:33:29 +02:00
Artturi 12f3f58f48
Merge pull request #138796 from NixOS/backport-138762-to-release-21.05
[Backport release-21.05] nginx: fix URLs by taking from a specific commit
2021-09-21 23:47:31 +03:00
Sumner Evans 8d6407e5a4 matrix-synapse: 1.42.0 -> 1.43.0
(cherry picked from commit a8fbb745723062d99b64f34292f86e0ef4361921)
2021-09-21 19:46:20 +00:00
pennae 5c7c36a483
matrix-synapse: enable parallel tests
(cherry picked from commit 7574cf28fefffa5b76dba22eb76e03dafd22aaca)
2021-09-21 14:11:37 +02:00
James Kay a53682d9f3 nginx: fix URLs by taking from a specific commit
I'm not sure this is the best way to get these patches, but it's better than `master` (at commit `e9617f553284b170a8b520d051ac1fc1b83cff30` on `nginx` these patches moved into a `nginx` subdirectory, breaking the build unless the patches are cached).

(cherry picked from commit c5d876511301cdcb8a3d4de8c09a681fa128e172)
2021-09-21 11:18:24 +00:00
Aaron Andersen 6fbf63ac60 apacheHttpd: 2.4.48 -> 2.4.49
(cherry picked from commit 0518560cf13e1a08a93de6b562d6326c19a3294f)
2021-09-16 18:34:07 +00:00
github-actions[bot] 0a354b4c0c
Merge release-21.05 into staging-next-21.05 2021-09-13 12:02:22 +00:00
Vladimír Čunát 9a3277af47
Merge #132287: jetty: 9.4.41.v20210516 -> 9.4.43.v20210629
...into release-21.05
2021-09-13 10:53:15 +02:00
github-actions[bot] 6a4d524347
Merge staging-next-21.05 into staging-21.05 2021-09-12 18:02:51 +00:00
Maximilian Bosch caef9da135 wiki-js: 2.5.201 -> 2.5.214
ChangeLog: https://github.com/Requarks/wiki/releases/tag/2.5.214
(cherry picked from commit 75eaccdcbc79f908902638bbea4aef33ebdad712)
2021-09-12 12:51:18 +00:00
github-actions[bot] cc6415fd63
Merge staging-next-21.05 into staging-21.05 2021-09-10 12:03:08 +00:00
Vladimír Čunát 7e6d1241ef
knot-dns: 3.0.8 -> 3.0.9
(NixPkgs master is on 3.1.x already.)
https://gitlab.nic.cz/knot/knot-dns/-/tags/v3.0.9
2021-09-09 19:59:55 +02:00
github-actions[bot] 65cae77e59
Merge staging-next-21.05 into staging-21.05 2021-09-09 00:03:58 +00:00
R. RyanTM 168f530891 grocy: 3.1.0 -> 3.1.1
(cherry picked from commit e52facaf7575ce3e520b8081523cad96e6fd36a1)
2021-09-08 21:51:00 +02:00
github-actions[bot] 7e76877332
Merge staging-next-21.05 into staging-21.05 2021-09-08 18:02:50 +00:00
Sumner Evans 6ec23d9f3e matrix-synapse: 1.41.1 -> 1.42.0
(cherry picked from commit 8c6e887e750ed2c184e6018a8c3504124a09b1b3)
2021-09-08 09:09:35 +00:00
Thomas Gerbet 476832f9ba mosquitto: 2.0.11 -> 2.0.12
https://github.com/eclipse/mosquitto/blob/v2.0.12/ChangeLog.txt
(cherry picked from commit d4c75580c18c78bdf81810dc73aab76e10754190)
2021-09-02 10:56:25 +02:00
Thomas Gerbet 24caf232b7 mosquitto: 2.0.10 -> 2.0.11
Fixes CVE-2021-34431.

https://github.com/eclipse/mosquitto/blob/v2.0.11/ChangeLog.txt
(cherry picked from commit ded0f0ede6c5ebda4eb88e8158a4115b2780a9fe)
2021-09-02 10:56:21 +02:00
Pascal Bach 110a2c9ebb
Merge pull request #136268 from NixOS/backport-135929-to-release-21.05
[Backport release-21.05] nextcloud22: 22.1.0 -> 22.1.1
2021-09-01 09:24:39 +02:00
Mario Rodas 1b7893c31a postgresql_13: 13.3 -> 13.4
https://www.postgresql.org/docs/release/13.4/
(cherry picked from commit 3290dd08a210653cb505de997d244d498ce71178)
2021-09-01 04:20:00 +00:00
Mario Rodas d04c1e30be postgresql_12: 12.7 -> 12.8
https://www.postgresql.org/docs/release/12.8/
(cherry picked from commit 677b27c24ee49f548c5593c7938917824bf1f806)
2021-09-01 04:20:00 +00:00
Mario Rodas 1f3805f7bb postgresql_11: 11.12 -> 11.13
https://www.postgresql.org/docs/release/11.13/
(cherry picked from commit 34418e4c2a23a2a461b0b3666a6088040b5962e8)
2021-09-01 04:20:00 +00:00
Mario Rodas 44a33d44a6 postgresql_10: 10.17 -> 10.18
https://www.postgresql.org/docs/release/10.18/
(cherry picked from commit 4c5bf33b5d01bf3524cd96ddcbe6d40787f66de7)
2021-09-01 04:20:00 +00:00
Mario Rodas 297d8d1547 postgresql_9_6: 9.6.22 -> 9.6.23
https://www.postgresql.org/docs/release/9.6.23/
(cherry picked from commit 957a9bd035a9d1a032a2c881b75b42626e16a0f6)
2021-09-01 04:20:00 +00:00
Robin Townsend 5b68d15c08 matrix-synapse: 1.41.0 -> 1.41.1
https://github.com/matrix-org/synapse/releases/tag/v1.41.1
(cherry picked from commit 5947c5989979c684d97f7154695e77e2000afbb7)
2021-08-31 14:50:37 +00:00