aboutsummaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAge
* gnu: asymptote: Update to 2.87.Nicolas Goaziou2024-03-13
| | | | | | * gnu/packages/plotutils.scm (asymptote): Update to 2.87. Change-Id: I25d91094e56b9e6b9d1a7313d6697f82ab1c2785
* gnu: xournalpp: Update to 1.2.3.Nicolas Goaziou2024-03-13
| | | | | | * gnu/packages/pdf.scm (xournalpp): Update to 1.2.3. Change-Id: If7ec00c3bcdb208132d595c152c3099258f738f4
* gnu: libextractor: Enable tidy-html support.Maxim Cournoyer2024-03-13
| | | | | | | | | | | * gnu/packages/gnunet.scm (libextractor) [source]: Apply patch. [phases] <force-reconfigure>: New phase. [inputs]: Add tidy-html. Remove associated comment. * gnu/packages/patches/libextractor-tidy-support.patch: New file. * gnu/local.mk (dist_patch_DATA): Register it. Change-Id: Ic812e09504d522ec87410bbbb03ccd3d6e48dd71
* gnu: libextractor: Enable RPM support.Maxim Cournoyer2024-03-13
| | | | | | | * gnu/packages/gnunet.scm (libextractor) [inputs]: Add rpm. Change-Id: I618330e038d4793bc61cf62320dc33fa16ab9c7f
* gnu: libextractor: Enable apparmor support.Maxim Cournoyer2024-03-13
| | | | | | | * gnu/packages/gnunet.scm (libextractor) [inputs]: Add libapparmor. Change-Id: I6ec8b7fce5db0179f2b65d9a4509ab9bcecb12ef
* gnu: libextractor: Add autotools inputs.Maxim Cournoyer2024-03-13
| | | | | | | | | | These are needed when building from git. * gnu/packages/gnunet.scm (libextractor) [native-inputs]: Add autoconf-2.71, automake, gettext-minimal, libtool and texinfo. Change-Id: Ia35932b56c74354fc7cffc104e4ae5efa9ad8c85
* gnu: libextractor: Modernize.Maxim Cournoyer2024-03-13
| | | | | | | | | * gnu/packages/gnunet.scm (libextractor): Move inputs, native-inputs after arguments. [arguments]: Use gexps. Remove trailing #t. [inputs]: Remove labels and sort. Change-Id: Ia3950630bd0985e106fb92cce3f92732e93970df
* gnu: libextractor: Update to 1.13.Maxim Cournoyer2024-03-13
| | | | | | | | | * gnu/packages/gnunet.scm (libextractor): Update to 1.13. [inputs]: Remove ffmpeg-4, no longer supported. Replace gtk+ with gdk-pixbuf. [argumens]: Reinstate parallel tests. Remove fix-exiv2-tests phase. Change-Id: Ic299c31a2d40512116c9876e0fbb4f9ded0ccc3b
* gnu: ruby-stackprof: Update to 0.2.26.Efraim Flashner2024-03-12
| | | | | | * gnu/packages/ruby.scm (ruby-stackprof): Update to 0.2.26. Change-Id: I6f15da677e630708c702eb00e83c960de8e3d639
* gnu: ruby-stackprof: Skip test known to fail.Efraim Flashner2024-03-12
| | | | | | | * gnu/packages/ruby.scm (ruby-stackprof)[arguments]: Skip another test which is known to fail. Change-Id: Ie261864cc19eba881377b88c07b6402c60a22423
* gnu: guix: Update to 4c94b9e.Ludovic Courtès2024-03-12
| | | | | | * gnu/packages/package-management.scm (guix): Update to 4c94b9e. Change-Id: I73678ae87acbc2ef0185daf844486f7394a46fd7
* news: Update commit for fixed-output derivation vulnerability.Ludovic Courtès2024-03-12
| | | | | | * etc/news.scm: Update. Change-Id: Ia34408882f8928a0fd05acc12d4edc66b3dcb3b7
* daemon: Address shortcoming in previous security fix for CVE-2024-27297.Ludovic Courtès2024-03-12
| | | | | | | | | | | | | | | | | | | | This is a followup to 8f4ffb3fae133bb21d7991e97c2f19a7108b1143. Commit 8f4ffb3fae133bb21d7991e97c2f19a7108b1143 fell short in two ways: (1) it didn’t have any effet for fixed-output derivations performed in a chroot, which is the case for all of them except those using “builtin:download” and “builtin:git-download”, and (2) it did not preserve ownership when copying, leading to “suspicious ownership or permission […] rejecting this build output” errors. * nix/libstore/build.cc (DerivationGoal::buildDone): Account for ‘chrootRootDir’ when copying ‘drv.outputs’. * nix/libutil/util.cc (copyFileRecursively): Add ‘fchown’ and ‘fchownat’ calls to preserve file ownership; this is necessary for chrooted fixed-output derivation builds. * nix/libutil/util.hh: Update comment. Change-Id: Ib59f040e98fed59d1af81d724b874b592cbef156
* gnu: ruby-x25519: Fix build on non x86_64.Zheng Junjie2024-03-12
| | | | | | | | | | * gnu/packages/patches/ruby-x25519-automatic-fallback-non-x86_64.patch: New patch. * gnu/packages/ruby.scm (ruby-x25519)[source]: Use it. * gnu/local.mk (dist_patch_DATA): Register it. Change-Id: If9c3b8dd8d818094f4cc5392bd5717f1430c369a Signed-off-by: Efraim Flashner <efraim@flashner.co.il>
* gnu: ssh-to-age: Update to 1.1.7.Giacomo Leidi2024-03-12
| | | | | | | | * gnu/packages/password-utils.scm (ssh-to-age): Update to 1.1.7. [synopsis]: Remove period at the end of the sentence. Change-Id: Ide1bab2490b52459c31191d578619f9ea1edcbaf Signed-off-by: Efraim Flashner <efraim@flashner.co.il>
* gnu: hypre: Honor the #:tests? flag.Lars Bilke2024-03-12
| | | | | | | | * gnu/packages/maths.scm (hypre)[arguments]: Adjust 'check phase to honor the #:tests? flag. Change-Id: I475fabd7d9f73ed320b97a4767830d82190c2b15 Signed-off-by: Efraim Flashner <efraim@flashner.co.il>
* gnu: petsc: Add tunable property.Lars Bilke2024-03-12
| | | | | | | | | Tested with some real-world simulations on multpiple HPC systems. * gnu/packages/maths.scm (petsc)[properties]: Add tunable? flag. Change-Id: I81588d0556c4176f29d7ab760322cd7aec271f12 Signed-off-by: Efraim Flashner <efraim@flashner.co.il>
* gnu: syncthing: Mark as tunable.Efraim Flashner2024-03-12
| | | | | | | * gnu/packages/syncthing.scm (syncthing)[properties]: Mark package as tunable. Change-Id: Ia885bbd32f043e83b231359cca438ea9caf4e8dc
* gnu: rust-bindgen-cli: Add shell completions.Efraim Flashner2024-03-12
| | | | | | | * gnu/packages/rust-apps.scm (rust-bindgen-cli)[arguments]: Add a phase to install shell completions. Change-Id: Ia476d02a7c2d75518da2624b09b7091fafb70d8d
* gnu: Add rust-bindgen-cli-0.69.aurtzy2024-03-12
| | | | | | | | * gnu/packages/rust-apps.scm (rust-bindgen-cli): New variable. (rust-bindgen): Remove this package. Change-Id: I0841f34d73acf4e161c9f0ba0c6543d7f0d03092 Signed-off-by: Efraim Flashner <efraim@flashner.co.il>
* gnu: cagebreak: Update to 2.3.1.宋文武2024-03-12
| | | | | | | * gnu/packages/wm.scm (cagebreak): Update to 2.3.1. [inputs]: Replace wlroots-0.16 with wlroots. Change-Id: I1e14c45790aa633c200f604243bcd61b269bc231
* gnu: manaplus: Update to 2.1.3.17.宋文武2024-03-12
| | | | | | | | | * gnu/packages/games.scm (manaplus): Update to 2.1.3.17. [arguments]: Pass "--with-sdl2" as configure-flags. [inputs]: Replace sdl-union with sdl2, sdl2-image, sdl2-mixer, sdl2-net and sdl2-ttf. Change-Id: I223150d559bce21e055b44262c7c97b3ccfa8dc2
* gnu: ltris: Update to 1.3.宋文武2024-03-12
| | | | | | * gnu/packages/games.scm (ltris): Update to 1.3. Change-Id: I52e61633449100d945f52160c689d5a9d27da66a
* gnu: xfce: Add xfwm4-themes.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (xfce)[inputs]: Add xfwm4-themes. Change-Id: If68db115691bdb0dc324ca502f1853d51e9d52b8
* gnu: Add xfwm4-themes.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (xfwm4-themes): New package. Change-Id: I01f7c7e095234c408c40cf344f6332753289d55f
* gnu: xfce4-dev-tools: Update to 4.18.1.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (xfce4-dev-tools): Update to 4.18.1. Change-Id: I4e5b30d2dc70ba50b560d777a8b10ecb421dcbd9
* gnu: xfce4-power-manager: Update to 4.18.3.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (xfce4-power-manager): Update to 4.18.3. Change-Id: I64cb289730b4fea2af5e3cbffef5500e1bfe1382
* gnu: xfce4-terminal: Update to 1.1.3.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (xfce4-terminal): Update to 1.1.3. Change-Id: Ic6589ee48f8e406f4d6b7b12ead165119b904e7f
* gnu: thunar: Update to 4.18.10.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (thunar): Update to 4.18.10. Change-Id: I170cfa24d0086d6c1d2707d4c5693f28678adf3e
* gnu: xfce4-settings: Update to 4.18.4.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (xfce4-settings): Update to 4.18.4. Change-Id: If945317a90a0e0325bac352024c98920b8c6c86c
* gnu: xfce4-appfinder: Update to 4.18.1.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (xfce4-appfinder): Update to 4.18.1. Change-Id: Ice902179d6991d9e887aeb2d9dfe144530c5dcf7
* gnu: xfce4-panel: Update to 4.18.6.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (xfce4-panel): Update to 4.18.6. Change-Id: I29a0372692fc9896cdfa083e07c0e4a0255108c5
* gnu: tumbler: Update to 4.18.2.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (tumbler): Update to 4.18.2. Change-Id: I99c65a09b5fe4b02e4d678f64721a713cde09b87
* gnu: garcon: Update to 4.18.2.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (garcon): Update to 4.18.2. Change-Id: I45cfb8bca3556849cc08c00053696b077553f4f6
* gnu: xfconf: Update to 4.18.3.宋文武2024-03-12
| | | | | | * gnu/packages/xfce.scm (xfconf): Update to 4.18.3. Change-Id: I938fa3a1d8770c62a1456a814144b24ed1b4a025
* news: Add 'de' translation.Florian Pelz2024-03-12
| | | | | | * etc/news.scm: Add German translation. Change-Id: Ia2a11f71cdee5ccbf2a7fbe176e713418771599e
* news: Give upgrade instructions for foreign distros.Ludovic Courtès2024-03-12
| | | | | | * etc/news.scm: Update entry. Change-Id: Ia7c326bc97042d92a8d499ee27dd41d15f1f0d29
* gnu: icedove-minimal: Build with newest rust-cbindgen.Efraim Flashner2024-03-12
| | | | | | | * gnu/packages/gnuzilla.scm (icedove-minimal)[inputs]: Replace rust-cbindgen-0.23 with rust-cbindgen. Change-Id: I7e8f1edca86a5faf5a148e34a1ff20b85f16e039
* gnu: icecat: Build with latest rust-cbindgen.Efraim Flashner2024-03-12
| | | | | | | * gnu/packages/gnuzilla.scm (icecat-minimal)[inputs]: Replace rust-cbindgen-0.24 with rust-cbindgen. Change-Id: I147c6facf297f19f24c12b908a8a43793fa6c153
* gnu: tor-browser: Build with newest rust-cbindgen.Efraim Flashner2024-03-12
| | | | | | | * gnu/packages/tor-browsers.scm (make-torbrowser)[inputs]: Replace rust-cbindgen-0.24 with rust-cbindgen. Change-Id: I6263a11342cb506c6c271e0360b7273c35be585d
* news: Add entry for the daemon fixed-output derivation vulnerability.Ludovic Courtès2024-03-11
| | | | | | * etc/news.scm: Add entry. Change-Id: Ib3f9c22eda1e8b9075620ec01b4edf2f24cfcf93
* gnu: guix: Update to 8f4ffb3.Ludovic Courtès2024-03-11
| | | | | | * gnu/packages/package-management.scm (guix): Update to 8f4ffb3. Change-Id: I4574442c529f49881df03501d000e2da68618417
* etc: systemd services: switch to "journal" for output and error logging.Vagrant Cascadian2024-03-11
| | | | | | | | | | | | | | | The "syslog" method has been deprecated for years, and issues a warning: Standard output type syslog is obsolete, automatically updating to journal. Please update your unit file, and consider removing the setting altogether. Fixes: #48323 * etc/guix-daemon.service.in (StandardOutput): Use "journal" (StandardError): Likewise. * etc/guix-publish.service.in (StandardOutput): Likewise. (StandardError): Likewise.
* daemon: Protect against FD escape when building fixed-output derivations ↵Ludovic Courtès2024-03-11
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | (CVE-2024-27297). This fixes a security issue (CVE-2024-27297) whereby a fixed-output derivation build process could open a writable file descriptor to its output, send it to some outside process for instance over an abstract AF_UNIX socket, which would then allow said process to modify the file in the store after it has been marked as “valid”. Vulnerability discovered by puck <https://github.com/puckipedia>. Nix security advisory: https://github.com/NixOS/nix/security/advisories/GHSA-2ffj-w4mj-pg37 Nix fix: https://github.com/NixOS/nix/commit/244f3eee0bbc7f11e9b383a15ed7368e2c4becc9 * nix/libutil/util.cc (readDirectory): Add variants that take a DIR* and a file descriptor. Rewrite the ‘Path’ variant accordingly. (copyFile, copyFileRecursively): New functions. * nix/libutil/util.hh (copyFileRecursively): New declaration. * nix/libstore/build.cc (DerivationGoal::buildDone): When ‘fixedOutput’ is true, call ‘copyFileRecursively’ followed by ‘rename’ on each output. Change-Id: I7952d41093eed26e123e38c14a4c1424be1ce1c4 Reported-by: Picnoir <picnoir@alternativebit.fr>, Théophane Hufschmitt <theophane.hufschmitt@tweag.io> Change-Id: Idb5f2757f35af86b032a9851cecb19b70227bd88
* time-machine: Allow time travels to v0.16.0.Ludovic Courtès2024-03-11
| | | | | | | | * guix/scripts/time-machine.scm (%oldest-possible-commit): Change to v0.16.0. * tests/guix-time-machine.sh: Adjust comment. Change-Id: I9ad82bd45fee0d172b5348a8ae16e990338a3a97
* gnu: Update the default linux-libre package to the 6.7 series.Leo Famulari2024-03-11
| | | | | | | | * gnu/packages/linux.scm (linux-libre-version, linux-libre-gnu-revision, linux-libre-pristine-source, linux-libre-source, linux-libre): Use linux-libre-6.7. Change-Id: I889a36129417363328d7509446dcedb31f816569
* gnu: linux-libre 4.19: Update to 4.19.308.Wilko Meyer2024-03-11
| | | | | | | | * gnu/packages/linux.scm (linux-libre-4.19-version): Update to 4.19.308. (linux-libre-4.19-pristine-source): Update hash. Change-Id: Ifa9d16737ca5961672654822de3e5dd70cb3be1b Signed-off-by: Leo Famulari <leo@famulari.name>
* gnu: linux-libre 5.4: Update to 5.4.270.Wilko Meyer2024-03-11
| | | | | | | | * gnu/packages/linux.scm (linux-libre-5.4-version): Update to 5.4.270. (linux-libre-5.4-pristine-source): Update hash. Change-Id: I1b5c3f1cb770c7d29cf4a9c678ea8786f89c31e3 Signed-off-by: Leo Famulari <leo@famulari.name>
* gnu: linux-libre 5.10: Update to 5.10.211.Wilko Meyer2024-03-11
| | | | | | | | * gnu/packages/linux.scm (linux-libre-5.10-version): Update to 5.10.211. (linux-libre-5.10-pristine-source): Update hash. Change-Id: I9171f5c2aa6b1184dbbcd12a8546c39ac775d0ce Signed-off-by: Leo Famulari <leo@famulari.name>
* gnu: linux-libre 5.15: Update to 5.15.150.Wilko Meyer2024-03-11
| | | | | | | | * gnu/packages/linux.scm (linux-libre-5.15-version): Update to 5.15.150. (linux-libre-5.15-pristine-source, deblob-scripts-5.15): Update hashes. Change-Id: I22b170d3af24151e22cc4f3c830ce91be1b00d0c Signed-off-by: Leo Famulari <leo@famulari.name>