Commit graph

718699 commits

Author SHA1 Message Date
Wolfgang Walther
bf796eab54
[Backport release-24.11] workflows/backport: cancel concurrent runs (#415288) 2025-06-09 12:08:54 +00:00
Wolfgang Walther
908c2db06b workflows/backport: cancel concurrent runs
When backporting a change to 24.11 and 25.05 at the same time by adding
the two labels immediately *after* merging the PR, three backport jobs
will run concurrently: One for the merge and one for each label added.
Each of those jobs will try to create both PRs, which will lead to two
of the jobs failing for sure.

With a concurrency group and cancelling in-progress jobs, only one of
those jobs will remain. This reduces notification noise.

(cherry picked from commit 6276e09530)
2025-06-09 12:08:05 +00:00
Wolfgang Walther
3edb593375
[Backport release-24.11] ci/check-cherry-picks: fix indent of truncation marker (#415268) 2025-06-09 12:06:42 +00:00
Wolfgang Walther
f66aa6d60e ci/check-cherry-picks: fix indent of truncation marker
This needs to be indented the same way as the remaining code-block,
otherwise the `</details>` is not rendered correctly.

(cherry picked from commit ca5775952e)
2025-06-09 11:25:05 +00:00
taku0
89880116a8
[Backport release-24.11] thunderbird-latest-bin-unwrapped: 139.0 -> 139.0.1 (#414982) 2025-06-09 19:53:19 +09:00
Thomas Gerbet
9c4769b92f
[Backport release-24.11] palemoon-bin: 33.7.1 -> 33.7.2 (#414763) 2025-06-08 21:55:39 +02:00
Fabián Heredia Montiel
0e763fb071
[Backport release-24.11] mbedtls_2: 2.28.9 -> 2.28.10 (#414938) 2025-06-08 12:23:54 -06:00
R. Ryantm
8562521701 thunderbird-latest-bin-unwrapped: 139.0 -> 139.0.1
(cherry picked from commit 4c954e0049)
2025-06-08 11:03:35 +00:00
Bobby Rong
be6d5259ee
[Backport release-24.11] webkitgtk_6_0: 2.48.2 → 2.48.3 (#414254) 2025-06-08 16:28:54 +08:00
Felix Singer
7a8f7c6ffd
mbedtls_2: 2.28.9 -> 2.28.10
Signed-off-by: Felix Singer <felixsinger@posteo.net>
(cherry picked from commit ec2b95cf86)
2025-06-08 09:42:14 +02:00
Thomas Gerbet
202bb0a195 palemoon-bin: 33.7.1 -> 33.7.2
https://www.palemoon.org/releasenotes.shtml#v33.7.2
(cherry picked from commit 1e422c3798)
2025-06-07 14:52:53 +00:00
Thomas Gerbet
53c1b903d0
[Backport release-24.11] perlPackages.FileFindRule: patch for CVE-2011-10007 (#414324) 2025-06-07 16:46:42 +02:00
Maximilian Bosch
e2f7adba14
Merge: [Backport release-24.11] php83: 8.3.21 -> 8.3.22 (#414729) 2025-06-07 15:10:40 +02:00
teutat3s
1769ae4c71 electron-chromedriver: fix headers 2025-06-07 15:06:21 +02:00
teutat3s
724cb2d8d2 electron-bin: fix headers 2025-06-07 15:06:21 +02:00
Maximilian Bosch
83294d9a70 php83: 8.3.21 -> 8.3.22
ChangeLog: https://www.php.net/ChangeLog-8.php#8.3.22
(cherry picked from commit 3cf7d02c3e)
2025-06-07 12:26:31 +00:00
Maximilian Bosch
a58f131ce6
Merge: [Backport release-24.11] apacheHttpdPackages.php: 8.4.7 -> 8.4.8 (#414703) 2025-06-07 12:42:56 +02:00
R. Ryantm
b6bcf647fd apacheHttpdPackages.php: 8.4.7 -> 8.4.8
(cherry picked from commit fffc35b2bb)
2025-06-07 10:00:15 +00:00
Thiago Kenji Okada
546e9dda1f
[Backport release-24.11] linuxKernel.kernels.linux_zen: 6.14.7-zen1 -> 6.14.9-zen1, linuxKernel.kernels.linux_lqx: 6.14.7-lqx1 -> 6.14.9-lqx1 (#413819) 2025-06-07 10:21:31 +01:00
Aleksana
0e9e785e44
[24.11] flake-checker: 0.2.5 -> 0.2.6 (#412932) 2025-06-07 14:30:13 +08:00
Morgan Jones
5908ad2494
[Backport release-24.11] samba: 4.20.4 -> 4.20.8; ldb: 2.9.1 -> 2.9.2 (#414158) 2025-06-06 14:43:02 -07:00
Nick Cao
caaac3b942
[Backport release-24.11] knot-dns: 3.4.6 -> 3.4.7 (#414142) 2025-06-06 17:25:38 -04:00
teutat3s
db54747b9c electron-source.electron_36: 36.3.2 -> 36.4.0
- Changelog: https://github.com/electron/electron/releases/tag/v36.4.0
- Diff: https://github.com/electron/electron/compare/refs/tags/v36.3.2...v36.4.0
- Fixes CVE-2025-5419

(cherry picked from commit 308e77ddac)
2025-06-07 02:28:29 +05:30
teutat3s
c8ad657c14 electron-source.electron_35: 35.5.0 -> 35.5.1
- Changelog: https://github.com/electron/electron/releases/tag/v35.5.1
- Diff: https://github.com/electron/electron/compare/refs/tags/v35.5.0...v35.5.1
- Fixes CVE-2025-5419

(cherry picked from commit 84093de599)
2025-06-07 02:28:29 +05:30
teutat3s
0080e231cf electron-source.electron_34: 34.5.7 -> 34.5.8
- Changelog: https://github.com/electron/electron/releases/tag/v34.5.8
- Diff: https://github.com/electron/electron/compare/refs/tags/v34.5.7...v34.5.8
- Fixes CVE-2025-5419

(cherry picked from commit e237be9a45)
2025-06-07 02:28:29 +05:30
teutat3s
6f9f650059 electron-chromedriver_36: 36.3.2 -> 36.4.0
- Changelog: https://github.com/electron/electron/releases/tag/v36.4.0
- Diff: https://github.com/electron/electron/compare/refs/tags/v36.3.2...v36.4.0
- Fixes CVE-2025-5419

(cherry picked from commit 6d9e078ea6)
2025-06-07 02:28:29 +05:30
teutat3s
b74a7f851e electron_36-bin: 36.3.2 -> 36.4.0
- Changelog: https://github.com/electron/electron/releases/tag/v36.4.0
- Diff: https://github.com/electron/electron/compare/refs/tags/v36.3.2...v36.4.0
- Fixes CVE-2025-5419

(cherry picked from commit 53cbc1a396)
2025-06-07 02:28:29 +05:30
teutat3s
68d0a13570 electron-chromedriver_35: 35.5.0 -> 35.5.1
- Changelog: https://github.com/electron/electron/releases/tag/v35.5.1
- Diff: https://github.com/electron/electron/compare/refs/tags/v35.5.0...v35.5.1
- Fixes CVE-2025-5419

(cherry picked from commit 0e153293e6)
2025-06-07 02:28:29 +05:30
teutat3s
53c3b822b0 electron_35-bin: 35.5.0 -> 35.5.1
- Changelog: https://github.com/electron/electron/releases/tag/v35.5.1
- Diff: https://github.com/electron/electron/compare/refs/tags/v35.5.0...v35.5.1
- Fixes CVE-2025-5419

(cherry picked from commit 7d88bd4415)
2025-06-07 02:28:29 +05:30
teutat3s
4d9e11cd4a electron-chromedriver_34: 34.5.7 -> 34.5.8
- Changelog: https://github.com/electron/electron/releases/tag/v34.5.8
- Diff: https://github.com/electron/electron/compare/refs/tags/v34.5.7...v34.5.8
- Fixes CVE-2025-5419

(cherry picked from commit 6d5dbf6fae)
2025-06-07 02:28:29 +05:30
teutat3s
34a93eee27 electron_34-bin: 34.5.7 -> 34.5.8
- Changelog: https://github.com/electron/electron/releases/tag/v34.5.8
- Diff: https://github.com/electron/electron/compare/refs/tags/v34.5.7...v34.5.8
- Fixes CVE-2025-5419

(cherry picked from commit 07dd7435ee)
2025-06-07 02:28:29 +05:30
Maximilian Bosch
fc4650ff3a
Merge: [Backport release-24.11] percona-server: 8.4.4-4 -> 8.4.5-5 (#414334) 2025-06-06 19:07:04 +02:00
rewine
ed29f002b6
[Backport release-24.11] vivaldi: 7.4.3684.43 -> 7.4.3684.46 (#414343) 2025-06-06 09:35:51 +08:00
Felix Bargfeldt
a192675088
[Backport release-24.11] aerc: backport an upstream patch for handling of attachments' filenames (#414344) 2025-06-06 01:02:42 +02:00
rewine
bb0d364a4b vivaldi: 7.4.3684.43 -> 7.4.3684.46
(cherry picked from commit f633b66c34)
2025-06-05 21:23:52 +00:00
Vojtěch Káně
09364e5a91 aerc: backport an upstream patch for handling of attachments' filenames
The patch is not part of a tagged release yet so we apply it selectively
instead of upgrading whole aerc. While it is originally presented as
a usability problem only for attachments with absolutes filepaths (they
fail to open), there is nothing stopping you from putting a relative
path in there therefore forcing aerc to overwriting any path on the host
system with sender chosen data. It's been marked as CVE-2025-49466

I decided to inline the patches into nixpkgs as they are very short and
the current bot protection of git.sr.ht complicates patch fetching.

(cherry picked from commit a8b64551c5)
2025-06-05 23:20:19 +02:00
R. Ryantm
7e64c90cdf percona-server: 8.4.4-4 -> 8.4.5-5
(cherry picked from commit 412521436a)
2025-06-05 20:48:02 +00:00
Stig Palmquist
671a72cd60 perlPackages.FileFindRule: patch for CVE-2011-10007
(cherry picked from commit 01885ade53)
2025-06-05 20:03:33 +00:00
Bobby Rong
77cbc326ed webkitgtk_6_0: 2.48.2 → 2.48.3
https://webkitgtk.org/2025/05/28/webkitgtk2.48.3-released.html
https://github.com/WebKit/WebKit/compare/webkitgtk-2.48.2...webkitgtk-2.48.3
(cherry picked from commit b62b7136cb)
2025-06-05 15:08:06 +00:00
Martin Weinelt
0355dea456
[Backport release-24.11] python3Packages.django_5_1: 5.1.9 -> 5.1.10 (#414226) 2025-06-05 14:51:35 +02:00
Martin Weinelt
b46979eb0e python3Packages.django_5_1: 5.1.9 -> 5.1.10
https://docs.djangoproject.com/en/5.1/releases/5.1.10/
https://www.djangoproject.com/weblog/2025/jun/04/security-releases/

Fixes: CVE-2025-48432
(cherry picked from commit 00d8ed7ae2)
2025-06-05 12:30:18 +00:00
K900
42e9ed3253
[Backport release-24.11] Kernel updates for 2025-06-04 (#414206) 2025-06-05 14:41:12 +03:00
K900
5a43553b19 linux_5_4: 5.4.293 -> 5.4.294
(cherry picked from commit 9a18476226)
2025-06-05 11:40:51 +00:00
K900
d2af130c93 linux_5_10: 5.10.237 -> 5.10.238
(cherry picked from commit 535c5c25b7)
2025-06-05 11:40:51 +00:00
K900
5a35e7e3c8 linux_5_15: 5.15.184 -> 5.15.185
(cherry picked from commit 34c78b3e6b)
2025-06-05 11:40:51 +00:00
K900
7558462a96 linux_6_1: 6.1.140 -> 6.1.141
(cherry picked from commit 055441950d)
2025-06-05 11:40:51 +00:00
K900
354ce6bc36 linux_6_6: 6.6.92 -> 6.6.93
(cherry picked from commit 1a8f6c1a58)
2025-06-05 11:40:51 +00:00
K900
ddb3b3f131 linux_6_12: 6.12.31 -> 6.12.32
(cherry picked from commit e21df29240)
2025-06-05 11:40:51 +00:00
K900
8a8cf86f2e linux_6_14: 6.14.9 -> 6.14.10
(cherry picked from commit cf7e137ae9)
2025-06-05 11:40:51 +00:00
K900
eb7b686aa0 linux_6_15: 6.15 -> 6.15.1
(cherry picked from commit 3aac00b659)
2025-06-05 11:40:51 +00:00