megacoffee.net Gentoo overlay - legacy mirror
We have moved to Git. This repository is only provided for compatibility with old installations. Learn how to migrate your installation here.
annotate profiles/package.mask @ 226:f813da4ed085
[sync] imported e556e64..feb54d4 from upstream
commit feb54d480cb1ac2186e3d79b238bb525b9237b41
Author: Daniel Neugebauer <dneuge@energiequant.de>
Date: Sun Apr 5 21:43:29 2020 +0000
Add README.md
author | Migration Sync <gentoo-overlay@megacoffee.net> |
---|---|
date | Sun, 05 Apr 2020 21:45:01 +0000 |
parents | 77fe2c26eb42 |
children | 8d97d03c9bc1 |
rev | line source |
---|---|
216
64ad94cc6f53
dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents:
163
diff
changeset
|
1 # Daniel Neugebauer <dneuge@energiequant.de> (21 Oct 2018) |
64ad94cc6f53
dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents:
163
diff
changeset
|
2 # for gentoo-overlay.megacoffee.net |
64ad94cc6f53
dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents:
163
diff
changeset
|
3 # Kallithea versions before 0.3.5 are vulnerable to several security issues |
64ad94cc6f53
dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents:
163
diff
changeset
|
4 # (incorrect access control, directory traversal, XSS). See the 0.3.5 release |
64ad94cc6f53
dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents:
163
diff
changeset
|
5 # notes on details and recommended actions and upgrade ASAP (update was |
64ad94cc6f53
dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents:
163
diff
changeset
|
6 # already published on 6 Jun 2018): |
64ad94cc6f53
dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents:
163
diff
changeset
|
7 # https://kallithea-scm.org/news/release-0.3.5.html |
64ad94cc6f53
dev-vcs/kallithea: version bump to 0.3.5 (security update), masking <0.3.5
Daniel Neugebauer <dneuge@energiequant.de>
parents:
163
diff
changeset
|
8 <dev-vcs/kallithea-0.3.5 |
220
5fc6acd937e1
dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents:
216
diff
changeset
|
9 |
5fc6acd937e1
dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents:
216
diff
changeset
|
10 # Daniel Neugebauer <dneuge@energiequant.de> (29 Dec 2018) |
5fc6acd937e1
dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents:
216
diff
changeset
|
11 # for gentoo-overlay.megacoffee.net |
5fc6acd937e1
dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents:
216
diff
changeset
|
12 # Kallithea versions before 0.3.6 are vulnerable to privilege escalation |
5fc6acd937e1
dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents:
216
diff
changeset
|
13 # in Mercurial (CVE-2018-1000132). |
5fc6acd937e1
dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents:
216
diff
changeset
|
14 # Note that Kallithea 0.3.6 continues to use a vulnerable Mercurial version |
5fc6acd937e1
dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents:
216
diff
changeset
|
15 # (<4.5.1) but attempts to mitigate the issue. |
5fc6acd937e1
dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents:
216
diff
changeset
|
16 # Upgrade ASAP (updates were already published on 6 Mar 2018 for Mercurial |
5fc6acd937e1
dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents:
216
diff
changeset
|
17 # and 4 Nov 2018 for additional mitigation in Kallithea): |
5fc6acd937e1
dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents:
216
diff
changeset
|
18 # https://kallithea-scm.org/news/release-0.3.6.html |
5fc6acd937e1
dev-vcs/kallithea: version bump to 0.3.6 (security update), masking <0.3.6
Daniel Neugebauer <dneuge@energiequant.de>
parents:
216
diff
changeset
|
19 <dev-vcs/kallithea-0.3.6 |