We have moved to Git. This repository is only provided for compatibility with old installations. Learn how to migrate your installation here.

diff profiles/package.mask @ 230:8d97d03c9bc1

[sync] imported 60c6dd2..aa68919 from upstream commit aa6891982ff4a085c0a76df3fc820108ac139c0b Author: layman <layman@localhost> Date: Sun May 17 13:52:53 2020 +0200 media-gfx/trimage: bump to 1.0.6, Python 3 and Qt 5 compatible commit 3f8f7faae955f4c1b22c419bc2dffb69d7823cec Author: layman <layman@localhost> Date: Sun May 17 13:23:48 2020 +0200 dev-vcs/kallithea: masking before removal due to security issues
author Migration Sync <gentoo-overlay@megacoffee.net>
date Sun, 17 May 2020 12:00:02 +0000
parents 77fe2c26eb42
children
line wrap: on
line diff
--- a/profiles/package.mask	Fri May 01 10:00:01 2020 +0000
+++ b/profiles/package.mask	Sun May 17 12:00:02 2020 +0000
@@ -17,3 +17,23 @@
 # and 4 Nov 2018 for additional mitigation in Kallithea):
 # https://kallithea-scm.org/news/release-0.3.6.html
 <dev-vcs/kallithea-0.3.6
+
+# Daniel Neugebauer <dneuge@energiequant.de> (17 May 2020)
+# for gentoo-overlay.megacoffee.net
+#
+# Kallithea versions before 0.4.1 have several more or less severe
+# vulnerabilities, check their website for details:
+# https://kallithea-scm.org/security/
+#
+# Megacoffee overlay has stopped providing updated ebuilds for a number of
+# reasons, so we will remove all ebuilds from our repository around mid of
+# June.
+#
+# Most importantly we do not see any good (automatable) migration path
+# between 0.3 and later versions, so an update will require your manual
+# intervention anyway.
+#
+# Since the ebuild has just been a wrapper around virtualenv it should not
+# be too difficult to replace it following the manual if you want to
+# continue with the current type of installation.
+<dev-vcs/kallithea-0.4.1