diff --git a/sdk_container/src/third_party/portage-stable/changelog/security/2023-01-09-weekly-updates.md b/sdk_container/src/third_party/portage-stable/changelog/security/2023-01-09-weekly-updates.md new file mode 100644 index 0000000000..05b9f3daa2 --- /dev/null +++ b/sdk_container/src/third_party/portage-stable/changelog/security/2023-01-09-weekly-updates.md @@ -0,0 +1,3 @@ +- vim ([CVE-2022-3491](https://nvd.nist.gov/vuln/detail/CVE-2022-3491), [CVE-2022-3520](https://nvd.nist.gov/vuln/detail/CVE-2022-3520), [CVE-2022-3591](https://nvd.nist.gov/vuln/detail/CVE-2022-3591), [CVE-2022-4141](https://nvd.nist.gov/vuln/detail/CVE-2022-4141), [CVE-2022-4292](https://nvd.nist.gov/vuln/detail/CVE-2022-4292), [CVE-2022-4293](https://nvd.nist.gov/vuln/detail/CVE-2022-4293)) +- binutils ([CVE-2022-38126](https://nvd.nist.gov/vuln/detail/CVE-2022-38126), [CVE-2022-38127](https://nvd.nist.gov/vuln/detail/CVE-2022-38127)) +- glib ([fixes to normal form handling in GVariant](https://discourse.gnome.org/t/multiple-fixes-for-gvariant-normalisation-issues-in-glib/12835)) diff --git a/sdk_container/src/third_party/portage-stable/changelog/updates/2023-01-09-weekly-updates.md b/sdk_container/src/third_party/portage-stable/changelog/updates/2023-01-09-weekly-updates.md new file mode 100644 index 0000000000..24fb833e04 --- /dev/null +++ b/sdk_container/src/third_party/portage-stable/changelog/updates/2023-01-09-weekly-updates.md @@ -0,0 +1,11 @@ +- XZ utils ([5.2.10](https://git.tukaani.org/?p=xz.git;a=blob;f=NEWS;h=d92fa88a835180af5d6ff22ad0e240d6468f81af;hb=f7c2cc55618b9af3318f0c908cf8db0df1e28e7c)) +- adcli ([0.9.2](https://gitlab.freedesktop.org/realmd/adcli/-/commits/8e88e3590a19006362ea8b8dfdc18bb88b3cb3b5/)) +- vim ([9.0.1000](https://github.com/vim/vim/releases/tag/v9.0.1000)) +- sqlite ([3.40.1](https://www.sqlite.org/releaselog/3_40_1.html) (contains [3.40.0](https://www.sqlite.org/releaselog/3_40_0.html))) +- perl ([5.36.0](https://perldoc.perl.org/5.36.0/perldelta)) +- glib ([2.74.4](https://gitlab.gnome.org/GNOME/glib/-/tags/2.74.4)) +- rsync ([3.2.7](https://download.samba.org/pub/rsync/NEWS#3.2.7)) +- gawk ([5.2.1](https://lists.gnu.org/archive/html/help-gawk/2022-11/msg00008.html) (contains [5.2.0](https://lists.gnu.org/archive/html/help-gawk/2022-09/msg00000.html))) +- binutils ([2.39](https://sourceware.org/pipermail/binutils/2022-August/122246.html)) +- Intel Microcode Package ([20221108](https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20221108)) +- I2C tools ([4.3](https://git.kernel.org/pub/scm/utils/i2c-tools/i2c-tools.git/tree/CHANGES?id=d8bc1f1ff4b00a6bd988aa114100ae9b787f50d8))