Vlad Glagolev | 1 Feb 11:08
Favicon
Gravatar

Announcing stable grimoire 0.60-5 release

The last months are pretty insecure :P

So here it is, stable grimoire version 0.60-5 has been released!

This is mostly a security update of 0.60 stable branch. It also
contains various critical fixes to build some major spells.

The tarballs have been signed and uploaded to our server and will be
propogating out to the mirrors within six hours.

To download the grimoire manually, get
http://codex.sourcemage.org/stable.tar.bz2 or specifically
http://codex.sourcemage.org/stable-0.60.tar.bz2 .

GPG signatures are available at
http://codex.sourcemage.org/stable.tar.bz2.asc or
http://codex.sourcemage.org/stable-0.60.tar.bz2.asc .

Following updates were integrated[0]:

Arjan Bouter (2):
      aewm: fixed build error and install paths     (cherry picked from commit 10df5b1508afbbb9a8e944b032ff62667b26f930)
      irssi: fixed the ordering in DETAILS so SOURCE exists before SOURCE2     uses it     (cherry picked from commit 8de4522da45dc74c7760b2b71061346f12f9e782)

Eric Sandall (1):
      samba: Updated to 3.6.1     (cherry picked from commit 869df0bc48f637b35d43af5b8587925e71ab6d10)

Florian Franzmann (1):
      utils/sudo: version 1.8.3p2, fixes CVE 2012-0809     (cherry picked from commit 6e39f48e692a201bfd74521abf4c9f90b233cd76)

(Continue reading)

Vlad Glagolev | 1 Feb 20:11
Favicon
Gravatar

Announcing stable grimoire 0.60-6 release

In a few hours after 0.60-5 stable grimoire version 0.60-6 has been
released!

This release fixes build of php security bump (5.3.9) with suhosin
patch. So it is security one by itself.

The tarballs have been signed and uploaded to our server and will be
propogating out to the mirrors within six hours.

To download the grimoire manually, get
http://codex.sourcemage.org/stable.tar.bz2 or specifically
http://codex.sourcemage.org/stable-0.60.tar.bz2 .

GPG signatures are available at
http://codex.sourcemage.org/stable.tar.bz2.asc or
http://codex.sourcemage.org/stable-0.60.tar.bz2.asc .

Following updates were integrated[0]:

Vlad Glagolev (2):
      php: corrected 5.3 branch build with suhosin patch     (cherry picked from commit 7159f3a37a7b2e745e46c91471b205d52021b19f)
      VERSION: 0.60-6

[0] Generated: 'git shortlog --no-merges stable-0.60-5..stable-0.60-6'

--

-- 
Dont wait to die to find paradise...
--
Cheerz,
Vlad "Stealth" Glagolev
(Continue reading)

Vlad Glagolev | 3 Feb 01:04
Favicon
Gravatar

Announcing stable grimoire 0.60-7 release

Stable grimoire version 0.60-7 has been released!

It's a quick-short security update of of 0.60 stable branch cause of
epic failure bug in PHP appeared in 5.3.9:

http://thexploit.com/sec/critical-php-remote-vulnerability-introduced-in-fix-for-php-hashtable-collision-dos/

The tarballs have been signed and uploaded to our server and will be
propogating out to the mirrors within six hours.

To download the grimoire manually, get
http://codex.sourcemage.org/stable.tar.bz2 or specifically
http://codex.sourcemage.org/stable-0.60.tar.bz2 .

GPG signatures are available at
http://codex.sourcemage.org/stable.tar.bz2.asc or
http://codex.sourcemage.org/stable-0.60.tar.bz2.asc .

Following updates were integrated[0]:

Vlad Glagolev (1):
      php: => 5.3.10 (security)     (cherry picked from commit 16788790f79b156c3a9a5e52a74e0b4a5dd22a65)

[0] Generated: 'git shortlog --no-merges stable-0.60-6..stable-0.60-7'

--

-- 
Dont wait to die to find paradise...
--
Cheerz,
Vlad "Stealth" Glagolev
(Continue reading)

Vlad Glagolev | 15 Feb 02:04
Favicon
Gravatar

stable-rc-0.61 REcut and ready for testing

Hi everyone,

stable-rc 0.61 is REcut and ready for testing. It's REcut, cause during
some of consequences the "old" one has become a bit deprecated, so the
better idea is to merge our current work in test and refresh release
candidate branch for our next stable grimoire release.

The release target is March 15th.

The tarballs have been signed with my regular smgl key (447D316C) and
uploaded to our server and will be propogating out to the mirrors
within six hours.

To download the grimoire manually, get
http://codex.sourcemage.org/stable-rc.tar.bz2 or specifically
http://codex.sourcemage.org/stable-rc-0.61.tar.bz2 .

GPG signatures are available at
http://codex.sourcemage.org/stable-rc.tar.bz2.asc or
http://codex.sourcemage.org/stable-rc-0.61.tar.bz2.asc .

As always don't forget to file any bugs against our issue tracker[0] so
we can resolve them and integrate the fixes before release. I've just
also created new version '0.61-rc' there, so use it when submitting the
bugs.

I hope we will discuss and form/renew/update the spell-list (for testing
and for basesystem as well) according to our new release process in a
week or so. Afterthat we might try to automate testing process and
create fresh chroot-images for both x86 and x86_64 arches.
(Continue reading)

Vlad Glagolev | 23 Feb 13:42
Favicon
Gravatar

Announcing stable grimoire 0.60-8 release

Stable grimoire version 0.60-8 has been released!

Since new stable release is planned only for March, here's yet another
security update for 0.60 stable branch as well as containing little
bugfix about jfsutils for boxes with separated /usr partition.

The tarballs have been signed and uploaded to our server and will be
propogating out to the mirrors within six hours.

To download the grimoire manually, get
http://codex.sourcemage.org/stable.tar.bz2 or specifically
http://codex.sourcemage.org/stable-0.60.tar.bz2 .

GPG signatures are available at
http://codex.sourcemage.org/stable.tar.bz2.asc or
http://codex.sourcemage.org/stable-0.60.tar.bz2.asc .

Following updates were integrated[0]:

Bor Kraljič (1):
      jfsutils: fixed long description wrap (scripted)     (cherry picked from commit aabbb87b5c9b389215d12ca627fa3c16358bf9e0)

Ladislav Hagara (2):
      shadow: upstream patch added
      libpng 1.2.47, SECURITY_PATCH=7, CVE-2011-3026     (cherry picked from commit c07eecf81bd14574187288cd7dfe98e20bccbcbc)

Vlad Glagolev (4):
      jfsutils: moved binaries to /sbin     (cherry picked from commit 1d00457ee8a077ba5f1af47fca4ed3ab4fefdf6d)
      pygobject: fixed bug #361     (cherry picked from commit b8dca3979434c6048c18c0a9ec45c40a5eb3f83d)
      shadow: => 4.1.5 (security)     (cherry picked from commit 75e717957193f8b26e0c5c8eac5d2a6fce675d0e)
(Continue reading)


Gmane