forked from products/PackageHub
Compare commits
12 Commits
remove-rus
...
maintenanc
| Author | SHA256 | Date | |
|---|---|---|---|
| e01601e63c | |||
| aeb1f73847 | |||
| a47a0255a4 | |||
|
|
d08e2827bb | ||
| bc7de0e7cc | |||
|
|
8439743814 | ||
|
|
76091026db | ||
|
|
fc03ed1327 | ||
| 3aae949b7a | |||
|
|
c8f2353703 | ||
| 4022efbf5d | |||
| a85d786d1d |
@@ -1411,7 +1411,6 @@ packagesets:
|
||||
- gobject-introspection-devel
|
||||
- golang-github-cpuguy83-go-md2man
|
||||
- golang-github-google-jsonnet
|
||||
- golang-github-prometheus-prometheus
|
||||
- golang-github-prometheus-promu
|
||||
- golang-packaging
|
||||
- google-errorprone-annotation
|
||||
@@ -7089,7 +7088,6 @@ packagesets:
|
||||
- system-user-news
|
||||
- system-user-nobody
|
||||
- system-user-ntp
|
||||
- system-user-prometheus
|
||||
- system-user-pulse
|
||||
- system-user-qemu
|
||||
- system-user-root
|
||||
|
||||
Submodule apache2-mod_wsgi updated: 3509105fad...c8dbdeec72
2
chromium
2
chromium
Submodule chromium updated: 63710dd6ca...96724d1d02
Submodule icinga-php-library updated: 2adfe405c4...dcb9868560
Submodule icinga-php-thirdparty updated: 045c6cef83...83db62c3c8
Submodule icingaweb2 updated: 3772b35d84...640fad7a20
63
patchinfo.20251208143300643166.187004354831441/_patchinfo
Normal file
63
patchinfo.20251208143300643166.187004354831441/_patchinfo
Normal file
@@ -0,0 +1,63 @@
|
||||
<patchinfo incident="packagehub-61">
|
||||
<packager>bigironman</packager>
|
||||
<rating>moderate</rating>
|
||||
<category>recommended</category>
|
||||
<summary>Recommended update for icinga-php-thirdparty, icinga-php-library, icingaweb2</summary>
|
||||
<description>This update for icinga-php-thirdparty, icinga-php-library, icingaweb2 fixes the following issues:
|
||||
|
||||
Changes in icinga-php-thirdparty:
|
||||
|
||||
- Update to 0.13.1
|
||||
|
||||
- No changelog from upstream.
|
||||
|
||||
- Update to 0.12.1
|
||||
|
||||
- No changelog from upstream.
|
||||
|
||||
Changes in icinga-php-library:
|
||||
|
||||
- Update to 1.17.0
|
||||
|
||||
- No changelog from upstream.
|
||||
|
||||
Changes in icingaweb2:
|
||||
|
||||
- Update to 2.12.6
|
||||
|
||||
- Search box shows many magnifying glasses for some community themes #5395
|
||||
- Authentication hooks are not called with external backends #5415
|
||||
- Improve Minimal layout #5386
|
||||
|
||||
- Update to 2.12.5
|
||||
|
||||
* PHP 8.4 Support
|
||||
We're again a little behind schedule, but now we support PHP 8.4!
|
||||
This means that installations on Ubuntu 25.04 and Fedora 42+ can
|
||||
now install Icinga Web without worrying about PHP related
|
||||
incompatibilities. Icinga packages will be available in the
|
||||
next few days.
|
||||
* Good Things Take Time
|
||||
There's only a single (notable) recent issue that is fixed
|
||||
with this release. All the others are a bit older.
|
||||
- External URLs set up as dashlets are not embedded the same
|
||||
as navigation items #5346
|
||||
* But the team sat together a few weeks ago and fixed a bug here
|
||||
and there. And of course, also in Icinga Web!
|
||||
- Users who are not allowed to change the theme, cannot change
|
||||
the theme mode either #5385
|
||||
- Improved compatibility with several SSO authentication
|
||||
providers #5000, #5227
|
||||
- Filtering for older-than events with relative time does not
|
||||
work #5263
|
||||
- Empty values are NULL in CSV exports #5350
|
||||
* Breaking, Somewhat
|
||||
This is mainly for developers.
|
||||
With the support of PHP 8.4, we introduced a new environment
|
||||
variable, ICINGAWEB_ENVIRONMENT. Unless set to dev, Icinga Web
|
||||
will not show nor log deprecation notices anymore.
|
||||
</description>
|
||||
<package>icinga-php-thirdparty</package>
|
||||
<package>icinga-php-library</package>
|
||||
<package>icingaweb2</package>
|
||||
</patchinfo>
|
||||
21
patchinfo.20251218074156387460.187004354831441/_patchinfo
Normal file
21
patchinfo.20251218074156387460.187004354831441/_patchinfo
Normal file
@@ -0,0 +1,21 @@
|
||||
<patchinfo incident="packagehub-60">
|
||||
<issue tracker="cve" id="2025-14766">VUL-0: chromium: release 143.0.7499.146</issue>
|
||||
<issue tracker="cve" id="2025-14174">Google Chrome: chromium: Out of bounds memory access via crafted HTML page</issue>
|
||||
<issue tracker="bnc" id="1255115">VUL-0: chromium: release 143.0.7499.146</issue>
|
||||
<issue tracker="cve" id="2025-14765">VUL-0: chromium: release 143.0.7499.146</issue>
|
||||
<packager>oertel</packager>
|
||||
<rating>important</rating>
|
||||
<category>security</category>
|
||||
<summary>Security update for chromium</summary>
|
||||
<description>This update for chromium fixes the following issues:
|
||||
|
||||
Changes in chromium:
|
||||
|
||||
Chromium 143.0.7499.146 (boo#1255115):
|
||||
|
||||
* CVE-2025-14765: Use after free in WebGPU
|
||||
* CVE-2025-14766: Out of bounds read and write in V8
|
||||
* CVE-2025-14174: Out of bounds memory access in ANGLE
|
||||
</description>
|
||||
<package>chromium</package>
|
||||
</patchinfo>
|
||||
33
patchinfo.20251227105430923343.187004354831441/_patchinfo
Normal file
33
patchinfo.20251227105430923343.187004354831441/_patchinfo
Normal file
@@ -0,0 +1,33 @@
|
||||
<patchinfo>
|
||||
<packager>pgajdos</packager>
|
||||
<rating>moderate</rating>
|
||||
<category>recommended</category>
|
||||
<summary>Recommended update for apache2-mod_wsgi</summary>
|
||||
<description>This update for apache2-mod_wsgi fixes the following issues:
|
||||
|
||||
Changes in apache2-mod_wsgi:
|
||||
|
||||
- Don't enable the module by default. Instead, include instructions in the
|
||||
description, consistent with other comparable modules, such as
|
||||
apache2-mod_fcgid, apache2-mod_jk and apache2-mod_mono. If a reverse
|
||||
dependency of this module requires it, that package may execute
|
||||
`a2enmod wsgi`.
|
||||
|
||||
Update to 5.0.2 includes changes from 5.0.1:
|
||||
|
||||
* Eliminate noise in logs under Python 3.13 when Python garbage collection
|
||||
decides to delay destruction of objects until a second phase, resulting in
|
||||
the wsgi.errors log object being accessed after the request had been
|
||||
completed and the log object marked as invalid. This resulted due to changes
|
||||
in garbage collection behaviour in Python 3.13.
|
||||
* Internally, when using Python 3.8 or newer, the PyConfig API will now be
|
||||
used due to deprecation and future removal of older C API alternatives.
|
||||
This was required to support Python 3.13.
|
||||
* Fix issue which could result in process crashing when values were supplied
|
||||
for user/password/realm of HTTP basic authentication which weren’t
|
||||
compliant with UTF-8 encoding format.
|
||||
* Fix memory leak in check_password() authentication hook handler.
|
||||
* Change use of deprecated thread.setDaemon to thread.daemon.
|
||||
</description>
|
||||
<package>apache2-mod_wsgi</package>
|
||||
</patchinfo>
|
||||
Reference in New Issue
Block a user