23028 Commits

Author SHA1 Message Date
Benjamin Gilbert
bd79eaf9d1 test_image_content: whitelist Perl and dbus GLSAs
Backported the dbus GLSA.  Ignoring the Perl one.
2019-09-10 21:47:55 -04:00
Benjamin Gilbert
bb17e68802 bump(metadata/glsa): sync with upstream 2019-09-11 01:45:24 +00:00
Benjamin Gilbert
758ca5ab88 sys-apps/dbus: fix CVE-2019-12749
https://www.openwall.com/lists/oss-security/2019/06/11/2
2019-09-08 19:00:06 -04:00
Benjamin Gilbert
64d9a1ffac Merge pull request #3758 from coreosbot/linux-4.19.71
Upgrade Linux 4.19.69 to 4.19.71
2019-09-06 20:23:46 -04:00
Jenkins OS
78062b7dad sys-kernel/coreos-sources: Bump 4.19.69 to 4.19.71 2019-09-06 22:38:29 +00:00
Benjamin Gilbert
6fed851aec Merge pull request #3751 from bgilbert/systemd
sys-apps/systemd: update for CVE-2019-15718
2019-09-03 19:27:32 -04:00
Benjamin Gilbert
781dbb5128 sys-apps/systemd: update for CVE-2019-15718 2019-09-03 19:23:38 -04:00
Benjamin Gilbert
0bb7fc2a04 Merge pull request #3743 from coreosbot/linux-4.19.69
Upgrade Linux 4.19.68 to 4.19.69
2019-09-03 19:20:51 -04:00
Andrew Jeddeloh
f7f26e1b61 Merge pull request #3746 from ajeddeloh/fix-gce
profiles/oem-aci: provide old python
2019-08-30 14:14:34 -07:00
Andrew Jeddeloh
6424530f45 profiles/oem-aci: provide old python
This ensures the gce agent ACI has python. For unknown reasons including
python-3.6.5 in package.provided causes both python 3.x and 2.x to be
removed but we still need 2.x.

I don't know why this works. Any version older than the 2.7 version we
use works. Portage appears to be doing the opposite of what it should
be.
2019-08-30 20:47:03 +00:00
Jenkins OS
9e244f262c sys-kernel/coreos-sources: Bump 4.19.68 to 4.19.69 2019-08-29 22:50:20 +00:00
Benjamin Gilbert
8bc31b1caf Merge pull request #3739 from coreosbot/linux-4.19.68
Upgrade Linux 4.19.67 to 4.19.68
2019-08-26 02:39:41 -04:00
Jenkins OS
03b6df7959 sys-kernel/coreos-sources: Bump 4.19.67 to 4.19.68 2019-08-25 20:13:00 +00:00
Jenkins OS
1f030c46fa chore(metadata): Regenerate cache 2019-08-25 20:12:53 +00:00
Benjamin Gilbert
7d6c7ae963 Merge pull request #3735 from bgilbert/glsa
sys-auth/polkit: fix CVE-2018-1116; fix CVE-2018-19788 fix
2019-08-25 16:00:38 -04:00
Benjamin Gilbert
ffbd3e267f
Merge pull request #882 from bgilbert/glsa
test_image_content: whitelist polkit GLSA
2019-08-25 16:00:25 -04:00
Benjamin Gilbert
80d6d5af9e Merge pull request #742 from bgilbert/glsa
Fix GLSAs
2019-08-25 16:00:08 -04:00
Benjamin Gilbert
97e61a164b test_image_content: whitelist polkit GLSA
Both CVE fixes were backported.
2019-08-24 01:28:29 -04:00
Benjamin Gilbert
c197f87d63 bump(metadata/glsa): sync with upstream 2019-08-24 04:04:09 +00:00
Benjamin Gilbert
51337ab580 sys-auth/polkit: fix CVE-2018-1116
Backported patch.
2019-08-23 23:55:03 -04:00
Benjamin Gilbert
31a4b11f99 sys-auth/polkit: bugfix for CVE-2018-19788 fix
https://gitlab.freedesktop.org/polkit/polkit/issues/77
2019-08-23 23:51:56 -04:00
Benjamin Gilbert
831231ec2b Merge pull request #3734 from bgilbert/etcd
Bump etcd 3.3.13 to 3.3.15
2019-08-23 23:29:35 -04:00
Andrew Jeddeloh
e9d949a8f0
Merge pull request #880 from ajeddeloh/binutils
Revert "setup_board: add workaround for binutils issue"
2019-08-23 18:14:52 -07:00
Andrew Jeddeloh
02ac9cb5b8 Revert "setup_board: add workaround for binutils issue"
This reverts commit 3d60305f24aac79dade4e7c20a3a8d395621422a.
2019-08-24 00:48:45 +00:00
Benjamin Gilbert
13a7b0bf47 Merge pull request #3731 from coreosbot/linux-4.19.67
Upgrade Linux 4.19.66 to 4.19.67
2019-08-23 18:38:18 -04:00
Andrew Jeddeloh
cebe2d12da
Merge pull request #876 from ajeddeloh/binutils
setup_board: add workaround for binutils issue
2019-08-23 14:54:48 -07:00
Andrew Jeddeloh
3d60305f24 setup_board: add workaround for binutils issue
Add a workaround to be sure we're using the correct binutils when SDK
sharing.
2019-08-23 21:52:30 +00:00
Benjamin Gilbert
04b3de2be9 app-admin/etcd-wrapper: Bump to 3.3.15 2019-08-23 16:52:01 -04:00
Benjamin Gilbert
1ed67b6e4c dev-db/etcdctl: Bump to 3.3.15 2019-08-23 16:51:58 -04:00
Benjamin Gilbert
c9b1b4f38a sys-kernel/coreos-modules: fix defconfig for 4.19.67
492c158ab2c0 reversed the dependency order of ISCSI_IBFT_FIND and
ISCSI_IBFT.  The former has been enabled in CoreOS kernels since the
beginning, and it's possible that it's not needed.  However, to avoid
possible compat breaks, enable the latter to pull in the former.
2019-08-23 00:59:48 -04:00
Benjamin Gilbert
7903b9dcc2 bump(dev-db/sqlite): sync with upstream 2019-08-23 04:22:42 +00:00
Benjamin Gilbert
90585b632d bump(app-arch/libarchive): sync with upstream 2019-08-23 04:22:00 +00:00
Benjamin Gilbert
427bf453a2 bump(net-misc/wget): sync with upstream 2019-08-23 04:20:12 +00:00
Benjamin Gilbert
43483a6a28 bump(sys-devel/patch): sync with upstream 2019-08-23 04:18:56 +00:00
Jenkins OS
2a851c5e4e sys-kernel/coreos-sources: Bump 4.19.66 to 4.19.67 2019-08-16 10:36:50 +00:00
Benjamin Gilbert
a6a6275a6b Merge pull request #3726 from coreosbot/linux-4.19.66
Upgrade Linux 4.19.65 to 4.19.66
2019-08-15 14:27:30 -04:00
Jenkins OS
1931d28057 sys-kernel/coreos-sources: Bump 4.19.65 to 4.19.66 2019-08-09 17:04:23 +00:00
Benjamin Gilbert
f4e32e27b0 Merge pull request #3725 from bgilbert/systemd
sys-apps/systemd: Bump for CVE-2019-3842 fix
2019-08-09 04:39:08 -04:00
David Michael
471dd4c196
Merge pull request #875 from dm0-/glsa
Revert "build_library: Add temporary workaround for binutils update"
2019-08-08 16:09:40 -04:00
David Michael
9b863fa7ae Revert "build_library: Add temporary workaround for binutils update"
This reverts commit faf07f1b8f24c5ec82305579337e074af3a9b818.
2019-08-08 15:53:06 +00:00
Benjamin Gilbert
a4ddb8b816 sys-apps/systemd: Bump for CVE-2019-3842 fix 2019-08-07 20:33:54 -04:00
Benjamin Gilbert
cca61f7692 Merge pull request #3722 from coreosbot/linux-4.19.65
Upgrade Linux 4.19.64 to 4.19.65
2019-08-07 00:45:58 -04:00
David Michael
a9da249e4a Merge pull request #3721 from dm0-/go
dev-lang/go: Bump 1.12.5 to 1.12.7
2019-08-06 21:05:37 -04:00
David Michael
7f9236baca Merge pull request #739 from dm0-/rust
Update Rust to 1.36.0
2019-08-06 21:05:14 -04:00
David Michael
da9301e545
Merge pull request #874 from dm0-/jenkins
jenkins: Stop trying to install catalyst
2019-08-06 15:34:27 -04:00
Jenkins OS
e866978c91 sys-kernel/coreos-sources: Bump 4.19.64 to 4.19.65 2019-08-06 19:13:34 +00:00
David Michael
127f3a5b98 dev-lang/go: Bump 1.12.5 to 1.12.7 2019-08-06 14:42:35 +00:00
Andrew Jeddeloh
64e0e116c2 Merge pull request #3720 from coreosbot/linux-4.19.64
Upgrade Linux 4.19.63 to 4.19.64
2019-08-05 10:40:44 -07:00
David Michael
0148b0df16 jenkins: Stop trying to install catalyst
It's already built into the SDK.
2019-08-05 10:53:27 -04:00
David Michael
73739ad833 bump(virtual/cargo): sync with upstream 2019-08-05 13:36:14 +00:00