We have moved to Git. This repository is only provided for compatibility with old installations. Learn how to migrate your installation here.

annotate profiles/package.mask @ 230:8d97d03c9bc1

[sync] imported 60c6dd2..aa68919 from upstream commit aa6891982ff4a085c0a76df3fc820108ac139c0b Author: layman <layman@localhost> Date: Sun May 17 13:52:53 2020 +0200 media-gfx/trimage: bump to 1.0.6, Python 3 and Qt 5 compatible commit 3f8f7faae955f4c1b22c419bc2dffb69d7823cec Author: layman <layman@localhost> Date: Sun May 17 13:23:48 2020 +0200 dev-vcs/kallithea: masking before removal due to security issues
author Migration Sync <gentoo-overlay@megacoffee.net>
date Sun, 17 May 2020 12:00:02 +0000
parents 77fe2c26eb42
children
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
rev   line source
216
64ad94cc6f53 dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents: 163
diff changeset
1 # Daniel Neugebauer <dneuge@energiequant.de> (21 Oct 2018)
64ad94cc6f53 dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents: 163
diff changeset
2 # for gentoo-overlay.megacoffee.net
64ad94cc6f53 dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents: 163
diff changeset
3 # Kallithea versions before 0.3.5 are vulnerable to several security issues
64ad94cc6f53 dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents: 163
diff changeset
4 # (incorrect access control, directory traversal, XSS). See the 0.3.5 release
64ad94cc6f53 dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents: 163
diff changeset
5 # notes on details and recommended actions and upgrade ASAP (update was
64ad94cc6f53 dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents: 163
diff changeset
6 # already published on 6 Jun 2018):
64ad94cc6f53 dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents: 163
diff changeset
7 # https://kallithea-scm.org/news/release-0.3.5.html
64ad94cc6f53 dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents: 163
diff changeset
8 <dev-vcs/kallithea-0.3.5
220
5fc6acd937e1 dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents: 216
diff changeset
9
5fc6acd937e1 dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents: 216
diff changeset
10 # Daniel Neugebauer <dneuge@energiequant.de> (29 Dec 2018)
5fc6acd937e1 dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents: 216
diff changeset
11 # for gentoo-overlay.megacoffee.net
5fc6acd937e1 dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents: 216
diff changeset
12 # Kallithea versions before 0.3.6 are vulnerable to privilege escalation
5fc6acd937e1 dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents: 216
diff changeset
13 # in Mercurial (CVE-2018-1000132).
5fc6acd937e1 dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents: 216
diff changeset
14 # Note that Kallithea 0.3.6 continues to use a vulnerable Mercurial version
5fc6acd937e1 dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents: 216
diff changeset
15 # (<4.5.1) but attempts to mitigate the issue.
5fc6acd937e1 dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents: 216
diff changeset
16 # Upgrade ASAP (updates were already published on 6 Mar 2018 for Mercurial
5fc6acd937e1 dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents: 216
diff changeset
17 # and 4 Nov 2018 for additional mitigation in Kallithea):
5fc6acd937e1 dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents: 216
diff changeset
18 # https://kallithea-scm.org/news/release-0.3.6.html
5fc6acd937e1 dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents: 216
diff changeset
19 <dev-vcs/kallithea-0.3.6
230
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
20
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
21 # Daniel Neugebauer <dneuge@energiequant.de> (17 May 2020)
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
22 # for gentoo-overlay.megacoffee.net
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
23 #
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
24 # Kallithea versions before 0.4.1 have several more or less severe
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
25 # vulnerabilities, check their website for details:
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
26 # https://kallithea-scm.org/security/
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
27 #
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
28 # Megacoffee overlay has stopped providing updated ebuilds for a number of
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
29 # reasons, so we will remove all ebuilds from our repository around mid of
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
30 # June.
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
31 #
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
32 # Most importantly we do not see any good (automatable) migration path
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
33 # between 0.3 and later versions, so an update will require your manual
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
34 # intervention anyway.
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
35 #
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
36 # Since the ebuild has just been a wrapper around virtualenv it should not
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
37 # be too difficult to replace it following the manual if you want to
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
38 # continue with the current type of installation.
8d97d03c9bc1 [sync] imported 60c6dd2..aa68919 from upstream
Migration Sync <gentoo-overlay@megacoffee.net>
parents: 221
diff changeset
39 <dev-vcs/kallithea-0.4.1