aboutsummaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAge
* gnu: gegl: Fix CVE-2012-4433.Efraim Flashner2016-05-30
| | | | | | * gnu/packages/gimp.scm (gegl)[source]: Add patch. * gnu/packages/patches/gegl-CVE-2012-4433.patch: New variable. * gnu/local.mk (dist_patch_DATA): Add it.
* gnu: vte-0.28: Fix CVE-2012-2738.Efraim Flashner2016-05-30
| | | | | | | * gnu/packages/gnome.scm (vte-0.28)[source]: Add patches. * gnu/packages/patches/vte-CVE-2012-2738-pt1.patch, gnu/packages/patches/vte-CVE-2012-2738-pt2.patch: New variables. * gnu/local.mk (dist_patch_DATA): Add them.
* gnu: t1lib: Fix CVE-2010-2642, CVE-2011-{0764, 1552, 1553, 1554}.Efraim Flashner2016-05-30
| | | | | | | | * gnu/packages/fontutils.scm (t1lib)[source]: Add patches. * gnu/packages/patches/t1lib-CVE-2010-2642.patch, gnu/packages/patches/t1lib-CVE-2011-0764.patch, gnu/packages/patches/t1lib-CVE-2011-1552+CVE-2011-1553+CVE-2011-1554.patch: New variables. * gnu/local.mk (dist_patch_DATA): Add them.
* download: Update Sourceforge mirrors.Efraim Flashner2016-05-30
| | | | * guix/download.scm (mirrors)[sourceforge]: Update mirror list.
* gnu: dtach: Use 'modify-phases'.Efraim Flashner2016-05-30
| | | | * gnu/packages/screen.scm (dtach)[arguments]: Use 'modify-phases'.
* gnu: dtach: Update to 0.9 [Fixes CVE-2012-3368].Efraim Flashner2016-05-30
| | | | * gnu/packages/screen.scm (dtach): Update to 0.9.
* gnu: tinyproxy: Update to 1.8.4 [Fixes CVE-2012-3505].Efraim Flashner2016-05-30
| | | | | | * gnu/packages/web.scm (tinyproxy): Update to 1.8.4. [source]: Download from new location. [home-page]: Project has moved to Github.
* gnu: jansson: Fix CVE-2016-4425.Efraim Flashner2016-05-30
| | | | | | * gnu/packages/web.scm (jansson)[source]: Add patch. * gnu/packages/patches/jansson-CVE-2016-4425.patch: New variable. * gnu/local.mk (dist_patch_DATA): Add it.
* gnu: antiword: Fix CVE-2014-8123.Efraim Flashner2016-05-30
| | | | | | * gnu/packages/textutils.scm (antiword)[source]: Add patch. * gnu/packages/patches/antiword-CVE-2014-8123: New variable. * gnu/local.mk (dist_patch_DATA): Add it.
* gnu: a2ps: Use 'modify-phases'.Efraim Flashner2016-05-30
| | | | * gnu/packages/pretty-print.scm (a2ps)[arguments]: Use 'modify-phases'.
* gnu: a2ps: Fix CVE-2001-1593, CVE-2014-0466.Efraim Flashner2016-05-30
| | | | | | | * gnu/packages/pretty-print.scm (a2ps)[source]: Add patches. * gnu/packages/patches/a2ps-CVE-2001-1593.patch, gnu/packages/patches/a2ps-CVE-2014-0466.patch: New variables. * gnu/local.mk (dist_patch_DATA): Add them.
* gnu: pcre2: Fix CVE-2016-3191.Leo Famulari2016-05-29
| | | | | | * gnu/packages/patches/pcre2-CVE-2016-3191.patch: New file. * gnu/local.mk (dist_patch_DATA): Add it. * gnu/packages/pcre.scm (pcre2): Use it.
* gnu: libyaml: Fix CVE-2014-9130.Leo Famulari2016-05-29
| | | | | | * gnu/packages/patches/libyaml-CVE-2014-9130.patch: New file. * gnu/local.mk (dist_patch_DATA): Add it. * gnu/packages/web.scm (libyaml): Use it.
* gnu: graphicsmagick: Fix CVE-2016-5118.Leo Famulari2016-05-29
| | | | | | * gnu/packages/patches/graphicsmagick-CVE-2016-5118.patch: New file. * gnu/local.mk (dist_patch_DATA): Add it. * gnu/packages/imagemagick.scm (graphicsmagick): Use it.
* gnu: vorbis-tools: Fix CVE-2014-9638, CVE-2014-9639, CVE-2014-9640.Efraim Flashner2016-05-30
| | | | | | | * gnu/packages/xiph.scm (vorbis-tools)[source]: Add patches. * gnu/packages/patches/vorbis-tools-CVE-2014-9638+CVE-2014-9639.patch, gnu/packages/patches/vorbis-tools-CVE-2014-9640.patch: New variables. * gnu/local.mk (dist_patch_DATA): Add them.
* gnu: libtar: Fix CVE-2013-4420.Efraim Flashner2016-05-30
| | | | | | | | * gnu/packages/compression.scm (libtar)[source]: Add patch. * gnu/packages/patches/libtar-CVE-2013-4420.patch: New variable. * gnu/local.mk (dist_patch_DATA): Add it. This is a follow-up to 89d80159b1da81c4017b46a575c3ec5dd9a96c90.
* gnu: glibc: Refer to the target kernel headers when cross-compiling.Ludovic Courtès2016-05-30
| | | | | | | | | | | | | | | | | | | | | This fixes a regression introduced in efc4eb147512fa7a2c6d74d9b296cfc22b1ef198 whereby the build process corresponding to 'guix build glibc --target=mips64el-linux-gnu' would refer to the native headers instead of the target headers, leading to a build failure: ../sysdeps/unix/sysv/linux/statfs64.c: In function ‘__statfs64’: ../sysdeps/unix/sysv/linux/statfs64.c:73:1: error: control reaches end of non-void function [-Werror=return-type] } ^ When we were using CROSS_CPATH instead of CROSS_C_INCLUDE_PATH, the problem was hidden by the fact that CPATH corresponds to '-I' whereas C_INCLUDE_PATH corresponds to '-isystem', and '-isystem' directories are searched after '-I' directories. * gnu/packages/base.scm (glibc)[arguments]: Refer to the kernel headers from '%build-target-inputs' when cross-building.
* gnu: libtar: Update to 1.2.20 [fixes CVE-2013-4397, CVE-2013-4420].Efraim Flashner2016-05-29
| | | | | | | | | * gnu/packages/compression.scm (libtar): Update to 1.2.20. [source]: Add Debian mirror. [arguments]: Add 'autoconf phase. [native-inputs]: Add autoconf, automake, libtool. [inputs]: Add zlib. [home-page]: Point to temporary home.
* gnu: pciutils: Add kmod support.Efraim Flashner2016-05-29
| | | | * gnu/packages/pciutils.scm (pciutils)[inputs]: Add kmod.
* gnu: pciutils: Use 'modify-phases'.Efraim Flashner2016-05-29
| | | | * gnu/packages/pciutils.scm (pciutils)[arguments]: Use 'modify-phases'.
* gnu: pciutils: Update to 3.5.1.Efraim Flashner2016-05-29
| | | | * gnu/packages/pciutils.scm (pciutils): Update to 3.5.1.
* gnu: rpm: Fix CVE-2014-8118.Leo Famulari2016-05-29
| | | | | | * gnu/packages/patches/rpm-CVE-2014-8118.patch: New file. * gnu/local.mk (dist_patch_DATA): Add it. * gnu/packages/package-management.scm (rpm): Use it.
* gnu: rpm: Update to 4.12.0.1.Leo Famulari2016-05-29
| | | | * gnu/packages/package-management.scm (rpm): Update to 4.12.0.1.
* gnu: zeromq: Update to 4.0.7 [fixes CVE-2014-9721].Leo Famulari2016-05-29
| | | | * gnu/packages/networking.scm (zeromq): Update to 4.0.7.
* gnu: libsodium: Update to 1.0.10.Leo Famulari2016-05-29
| | | | * gnu/packages/crypto.scm (libsodium): Update to 1.0.10.
* gnu: procmail: Fix CVE-2014-3618.Leo Famulari2016-05-29
| | | | | | * gnu/packages/patches/procmail-CVE-2014-3618.patch: New file. * gnu/local.mk (dist_patch_DATA): Add it. * gnu/packages/mail.scm (procmail): Use it.
* gnu: elfutils: Update to 0.166 [fixes CVE-2014-9447].Leo Famulari2016-05-29
| | | | * gnu/packages/elf.scm (elfutils): Update to 0.166.
* gnu: luajit: Update to 2.0.4.Efraim Flashner2016-05-29
| | | | * gnu/packages/lua.scm (luajit): Update to 2.0.4.
* gnu: lua: Update to 5.2.4.Efraim Flashner2016-05-29
| | | | * gnu/packages/lua.scm (lua): Update to 5.2.4.
* gnu: lua: Use 'modify-phases'.Efraim Flashner2016-05-29
| | | | * gnu/packages/lua.scm (lua)[arguments]: Use 'modify-phases'.
* gnu: lua-5.1: Fix CVE-2014-5461.Efraim Flashner2016-05-29
| | | | | | * gnu/packages/lua.scm (lua-5.1)[source]: Add patch. * gnu/packages/patches/lua-CVE-2014-5461: New file. * gnu/local.mk (dist_patch_DATA): Add it.
* gnu: retroarch: Update to 1.3.4.宋文武2016-05-29
| | | | * gnu/packages/games.scm (retroarch): Update to 1.3.4.
* gnu: libyaml: Update to 0.1.6 [fixes CVE-2014-2525].Leo Famulari2016-05-28
| | | | * gnu/packages/web.scm (libyaml): Update to 0.1.6.
* services: Add urandom-seed-service.Leo Famulari2016-05-28
| | | | | | | | | | Fixes <http://bugs.gnu.org/23605>. * gnu/services/base.scm (urandom-seed-service): New procedure. (%random-seed-file, urandom-seed-service-type): New variables. (%urandom-seed-shepherd-service): New procedure. (%base-services): Call 'urandom-seed-service'. * doc/guix.texi (Base Services): Document it.
* gnu: potrace: Update to 1.13 [fixes CVE-2013-7437].Efraim Flashner2016-05-28
| | | | * gnu/packages/fontutils.scm (potrace): Update to 1.13.
* gnu: Add Guile-GNOME.Patrick Hetu2016-05-28
| | | | | | * gnu/packages/gtk.scm (guile-gnome): New variable. Co-authored-by: Ludovic Courtès <ludo@gnu.org>
* gnu: Update diamond to 0.8.3.Ben Woodcroft2016-05-28
| | | | * gnu/packages/bioinformatics.scm (diamond): Update to 0.8.3.
* gnu: Add gcide.宋文武2016-05-28
| | | | * gnu/packages/dictionaries.scm (gcide): New variable.
* gnu: wxmaxima: Wrap with GSETTINGS_SCHEMA_DIR and XDG_DATA_DIRS.宋文武2016-05-28
| | | | | | | Fixes <http://bugs.gnu.org/22709> and <http://bugs.gnu.org/23260>. * gnu/packages/math.scm (wxmaxima)[arguments]: Wrap with GSETTINGS_SCHEMA_DIR and XDG_DATA_DIRS.
* gnu: gprolog: Don't install files into "$out/gprolog-1.4.4".宋文武2016-05-28
| | | | | * gnu/packages/gprolog.scm (gprolog)[arguments]: Pass '--with-install-dir' to #:configure-flags.
* gnu: Add wiredtiger.宋文武2016-05-28
| | | | * gnu/packages/database.scm (wiredtiger): New variable.
* cve: Use a more compact format for the list of package/versions.Ludovic Courtès2016-05-28
| | | | | | | | | | | | | | | | On a warm cache, "guix lint -c cve vorbis-tools" goes down from 6.5s to 2.4s. * guix/cve.scm (cpe->package-name): Change to return two values instead of a pair. (cpe->product-alist): New procedure. (%parse-vulnerability-feed): Use it instead of 'filter-map'. (fetch-vulnerabilities): Bump sexp format version to 1. (vulnerabilities->lookup-proc): Adjust accordingly. When #:version is omitted, return a list of vulnerabilities instead of a list of version/vulnerability pairs. * tests/cve.scm (%expected-vulnerabilities) ("vulnerabilities->lookup-proc): Adjust accordingly.
* guix package: Inherit the transformed version number.Ludovic Courtès2016-05-27
| | | | | | | | | | | Previously, 'guix package -i emacs --with-source=./emacs-42.tar.gz' would fail to use "42" as the version number in the manifest entry. Reported by piyo on #guix. * guix/scripts/package.scm (process-actions)[transform-entry]: Inherit the version number from the result of TRANSFORM when it's a package. * tests/guix-package.sh: Test it.
* gnu: gd: Update to 2.2.1 [fixes CVE-2015-{8874, 8877}].Leo Famulari2016-05-27
| | | | | | | * gnu/packages/patches/gd-CVE-2016-3074.patch: Delete file. * gnu/local.mk (dist_patch_DATA): Remove it. * gnu/packages/gd.scm (gd): Update to 2.2.1. [source]: Remove patch. Update source URL.
* gnu: scrot: Add source mirror.Efraim Flashner2016-05-27
| | | | * gnu/packages/xdisorg.scm (scrot)[source]: Add fossies mirror.
* gnu: serf: Update project source.Efraim Flashner2016-05-27
| | | | | * gnu/packages/web.scm (serf)[source]: Releases are now hosted by Apache. [home-page]: Project is now hosted by Apache.
* gnu: xlockmore: Update to 5.47.Efraim Flashner2016-05-27
| | | | * gnu/packages/xdisorg.scm (xlockmore): Update to 5.47.
* gnu: t1lib: Add source mirror.Efraim Flashner2016-05-27
| | | | * gnu/packages/fontutils.scm (t1lib)[souce]: Add fossies mirror.
* gnu: synergy: Update to 1.7.6.Efraim Flashner2016-05-27
| | | | * gnu/packages/synergy.scm (synergy): Update to 1.7.6.
* gnu: synergy: Use 'modify-phases'.Efraim Flashner2016-05-27
| | | | * gnu/packages/synergy.scm (synergy)[arguments]; Use 'modify-phases'.