12 UPDATED packages

cargo-vendor-checksum - It is a tool for updating checksum files in vendor 
directories  [11M]
* Tue Aug 19 2025 Mikhail Gordeev <obirvalger@altlinux> 0.1.2-alt1
- Add ignore-missing flag
* Tue Nov 14 2023 Mikhail Gordeev <obirvalger@altlinux> 0.1.1-alt1

dhcpcd - DHCP Client
* Mon Aug 10 2026 Mikhail Efremov <sem@altlinux> 1:10.5.0-alt1
- Updated to 10.5.0 (fixes: CVE-2026-56113, CVE-2026-56114,
  CVE-2026-56116, CVE-2026-56117).
* Wed May 13 2026 Mikhail Efremov <sem@altlinux> 1:10.3.2-alt1
- Updated to 10.3.2.
* Wed Mar 18 2026 Mikhail Efremov <sem@altlinux> 1:10.3.1-alt1
- Updated to 10.3.1.
* Wed Dec 10 2025 Mikhail Efremov <sem@altlinux> 1:10.3.0-alt1
- Updated to 10.3.0.
* Wed Jun 25 2025 Mikhail Efremov <sem@altlinux> 1:10.2.4-alt1
- Don't fork to background on timeout.
- Updated to 10.2.4.
* Mon Mar 10 2025 Mikhail Efremov <sem@altlinux> 1:10.2.2-alt1

firefox-esr - The Mozilla Firefox project is a redesign of Mozilla's browser    
[640M]
* Thu Aug 06 2026 Pavel Vasenkov <pav@altlinux> 140.13.0-alt0.p10.1
- Backport new version.
* Wed Jul 29 2026 Pavel Vasenkov <pav@altlinux> 140.13.0-alt1
- New ESR version.
- Security fixes:
  + CVE-2026-15718 Invalid pointer in the JavaScript: WebAssembly component
  + CVE-2026-15719 Site isolation issue in the DOM: Navigation component
  + CVE-2026-16349 Same-origin policy bypass in the DOM: Navigation component
  + CVE-2026-16350 Incorrect boundary conditions in the Audio/Video: cubeb 
component
  + CVE-2026-16362 Use-after-free in the WebRTC: Audio/Video component
  + CVE-2026-16351 Sandbox escape due to use-after-free in the DOM: Navigation 
component
  + CVE-2026-16352 Sandbox escape due to use-after-free in the Disability 
Access APIs component
  + CVE-2026-16363 JIT miscompilation in the JavaScript: WebAssembly component
  + CVE-2026-16353 Invalid pointer in the DOM: Bindings (WebIDL) component
  + CVE-2026-16354 Information disclosure in the Graphics: ImageLib component
  + CVE-2026-16368 Incorrect boundary conditions in the JavaScript: WebAssembly 
component
  + CVE-2026-16369 Integer overflow in the JavaScript: WebAssembly component
  + CVE-2026-16355 JIT miscompilation in the JavaScript Engine: JIT component
  + CVE-2026-16356 Sandbox escape due to use-after-free in the Disability 
Access APIs component
  + CVE-2026-16357 Incorrect boundary conditions in the Graphics component
  + CVE-2026-16371 Privilege escalation in the DOM: Navigation component
  + CVE-2026-16374 Information disclosure in the Framework component in DevTools
  + CVE-2026-16375 Site isolation issue in the Networking: HTTP component
  + CVE-2026-16377 Mitigation bypass in the PDF Viewer component
  + CVE-2026-16379 Privilege escalation in the DOM: Content Processes component
  + CVE-2026-16358 Site isolation issue in the Graphics: WebRender component
  + CVE-2026-16381 Same-origin policy bypass in the Networking: DNS component
  + CVE-2026-16383 Mitigation bypass in the DOM: Networking component
  + CVE-2026-16387 Site isolation issue in the Networking component
  + CVE-2026-16390 Mitigation bypass in the Enterprise Policies component
  + CVE-2026-16391 Information disclosure in the Storage: IndexedDB component
  + CVE-2026-16359 Incorrect boundary conditions in the Audio/Video: GMP 
component
  + CVE-2026-16396 Privilege escalation in WebExtensions
  + CVE-2026-16405 Information disclosure in the Networking: WebSockets 
component
  + CVE-2026-16412 Memory safety bugs fixed in Firefox ESR 140.13 and Firefox 
153
  + CVE-2026-16360 Memory safety bugs fixed in Firefox ESR 115.38, Firefox ESR 
140.13 and Firefox 153
  + CVE-2026-16361 Memory safety bugs fixed in Firefox ESR 115.38 and Firefox 
ESR 140.13
* Thu Jun 18 2026 Pavel Vasenkov <pav@altlinux> 140.12.0-alt1
- New ESR version.
- Security fixes:
  + CVE-2026-12289 Privilege escalation in the Graphics: WebRender component
  + CVE-2026-12290 Memory safety bug fixed in Firefox ESR 140.12
  + CVE-2026-12291 Use-after-free in the Networking: HTTP component
  + CVE-2026-12292 Incorrect boundary conditions in the Web Audio component
  + CVE-2026-12294 Sandbox escape in the DOM: Workers component
  + CVE-2026-12295 Sandbox escape in the DOM: Navigation component
  + CVE-2026-12298 Memory safety bug fixed in Firefox ESR 140.12
  + CVE-2026-12296 Sandbox escape in the Security: Process Sandboxing component
  + CVE-2026-12297 Sandbox escape due to incorrect boundary conditions in the 
Networking component
  + CVE-2026-12299 JIT miscompilation in the DOM: Core & HTML component
  + CVE-2026-12329 Memory safety bug fixed in Firefox ESR 140.12
  + CVE-2026-12302 Mitigation bypass in the DOM: Security component
  + CVE-2026-12304 Same-origin policy bypass in the Networking: Cookies 
component
  + CVE-2026-12305 Memory safety bug fixed in Firefox ESR 140.12
  + CVE-2026-12306 Memory safety bug fixed in Firefox ESR 140.12
  + CVE-2026-12307 Memory safety bug fixed in Firefox ESR 140.12
  + CVE-2026-12308 Memory safety bug fixed in Firefox ESR 140.12
  + CVE-2026-12309 Memory safety bug fixed in Firefox ESR 140.12
  + CVE-2026-12310 Memory safety bug fixed in Firefox ESR 140.12
  + CVE-2026-12311 Information disclosure, sandbox escape in the Security: 
Process Sandboxing component
  + CVE-2026-12312 Memory safety bug fixed in Firefox ESR 140.12
  + CVE-2026-12313 Information disclosure, sandbox escape in the Security: 
Process Sandboxing component
  + CVE-2026-12314 Memory safety bug fixed in Firefox ESR 140.12
  + CVE-2026-12315 Mitigation bypass in the DOM: Security component
  + CVE-2026-12330 Incorrect boundary conditions in the Internationalization 
component
  + CVE-2026-12324 Incorrect boundary conditions in the Graphics: CanvasWebGL 
component
  + CVE-2026-12325 Denial-of-service in the Graphics: ImageLib component
  + CVE-2026-12327 Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird 
ESR 140.12, Firefox 152 and Thunderbird 152
  + CVE-2026-12328 Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 
140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152
* Tue Jun 16 2026 Pavel Vasenkov <pav@altlinux> 140.11.0-alt2
Note: changelog entry for 140.12.0-alt0.p10.1 not found.

keycloak - Open Source Identity and Access Management For Modern Applications 
and Services      [687M]
* Thu Aug 06 2026 Andrey Cherepanov <cas@altlinux> 26.7.1-alt1
- New version (fixes: CVE-2026-9793, CVE-2026-4629, CVE-2026-14209,
  CVE-2026-14614, CVE-2026-14615).
- Disabled all test modules.
- Removed org/keycloak vendoring libraries.
* Thu Jul 09 2026 Andrey Cherepanov <cas@altlinux> 26.7.0-alt1

nginx - Fast HTTP server
* Fri Jul 17 2026 Anton Farygin <rider@altlinux> 1.30.4-alt1
- 1.30.3 -> 1.30.4 (Fixes: CVE-2026-42533, CVE-2026-60005, CVE-2026-56434)
* Tue Jun 23 2026 Anton Farygin <rider@altlinux> 1.30.3-alt1

openssh-gostcrypto - OpenSSH free Secure Shell (SSH) implementation
* Mon Aug 10 2026 Alexander Danilov <admsasha@altlinux> 7.9p1-alt4.gost.p10.6
- Backported security fixes from upstream (fixes CVE-2026-35414, 
CVE-2026-35385, 
  CVE-2026-35387, CVE-2026-35388).
* Mon Mar 23 2026 Alexander Danilov <admsasha@altlinux> 7.9p1-alt4.gost.p10.5

postgresql15-timescaledb - Open-source time-series database powered by 
PostgreSQL
* Tue Jul 28 2026 Alexei Takaseev <taf@altlinux> 2.28.3-alt1
- 2.28.3
* Wed Jul 08 2026 Alexei Takaseev <taf@altlinux> 2.27.2-alt1

postgresql16-timescaledb - Open-source time-series database powered by 
PostgreSQL
* Tue Jul 28 2026 Alexei Takaseev <taf@altlinux> 2.28.3-alt1
- 2.28.3
* Wed Jul 08 2026 Alexei Takaseev <taf@altlinux> 2.27.2-alt1

postgresql17-timescaledb - Open-source time-series database powered by 
PostgreSQL
* Tue Jul 28 2026 Alexei Takaseev <taf@altlinux> 2.28.3-alt1
- 2.28.3
* Wed Jul 08 2026 Alexei Takaseev <taf@altlinux> 2.27.2-alt1

rustdesk - An open-source remote desktop, and alternative to TeamViewer [189M]
* Mon Aug 03 2026 Anton Meleshnikov <alton@altlinux> 1.4.8-alt0.p10.1
- Backport new version to p10 branch.
* Sun Jul 05 2026 Anton Kurachenko <srebrov@altlinux> 1.4.8-alt1
- New version 1.4.8.
* Sun May 10 2026 Anton Kurachenko <srebrov@altlinux> 1.4.6-alt1
- New version 1.4.6.
* Sun Apr 12 2026 Anton Kurachenko <srebrov@altlinux> 1.4.4-alt2
- Added yasm to BuildReq(Fix FTBFS).
* Wed Nov 19 2025 Anton Kurachenko <srebrov@altlinux> 1.4.4-alt1
- New version 1.4.4.
* Tue Sep 23 2025 Anton Kurachenko <srebrov@altlinux> 1.4.2-alt1
- New version 1.4.2.
* Mon Aug 18 2025 Anton Kurachenko <srebrov@altlinux> 1.4.1-alt1
- New version 1.4.1.
* Mon May 12 2025 Anton Kurachenko <srebrov@altlinux> 1.4.0-alt1
- New version 1.4.0.
* Thu May 08 2025 Anton Kurachenko <srebrov@altlinux> 1.3.9-alt2
- Improved additional scripts and switched that to using pkexec for 
install/remove libsciter-gtk.so.
- Changed package description.
* Wed Apr 02 2025 Anton Kurachenko <srebrov@altlinux> 1.3.9-alt1
- New version 1.3.9.
* Thu Mar 06 2025 Anton Meleshnikov <alton@altlinux> 1.3.7-alt0.p10.1

unbound - Validating, recursive, and caching DNS resolver
* Thu Aug 06 2026 Alexei Takaseev <taf@altlinux> 1.26.0-alt1
- 1.26.0
* Wed Jul 22 2026 Alexei Takaseev <taf@altlinux> 1.25.2-alt1

vcpkg - C++ Library Manager
* Mon Aug 03 2026 Anton Meleshnikov <alton@altlinux> 2025.05.19-alt0.p10.1
- merge with new version and fix build with fmt9
* Tue May 27 2025 Vitaly Lipatov <lav@altlinux> 2025.05.19-alt1
- new version (2025.05.19) with rpmgs script (ALT bug 53482)
* Tue Mar 18 2025 Anton Meleshnikov <alton@altlinux> 2023.04.07-alt0.p10.1

Total 19183 source packages.
_______________________________________________
Sisyphus-cybertalk mailing list
[email protected]
https://lists.altlinux.org/mailman/listinfo/sisyphus-cybertalk

Reply via email to