Commit Graph

268278 Commits

Author SHA1 Message Date
Martin Weinelt
95164dc11b
wpa_supplicant: fix for security advisory 2020-2
A vulnerability was discovered in how wpa_supplicant processing P2P
(Wi-Fi Direct) group information from active group owners. The actual
parsing of that information validates field lengths appropriately, but
processing of the parsed information misses a length check when storing
a copy of the secondary device types. This can result in writing
attacker controlled data into the peer entry after the area assigned for
the secondary device type. The overflow can result in corrupting
pointers for heap allocations. This can result in an attacker within
radio range of the device running P2P discovery being able to cause
unexpected behavior, including termination of the wpa_supplicant process
and potentially arbitrary code execution.

https://w1.fi/security/2020-2/wpa_supplicant-p2p-group-info-processing-vulnerability.txt

Fixes: CVE-2021-0326
2021-02-04 00:31:38 +01:00
Raphael Borun Das Gupta
571d144d32 python3.pkgs.osmpythontools: fetch src from GitHub instead of from PyPI 2021-02-04 00:27:02 +01:00
Fabian Affolter
101973ed0f python3Packages.praw: switch to pytestCheckHook 2021-02-04 00:18:33 +01:00
José Romildo Malaquias
ca14ff0777
Merge pull request #111801 from r-ryantm/auto-update/papirus-icon-theme
papirus-icon-theme: 20210101 -> 20210201
2021-02-03 20:09:20 -03:00
Fabian Affolter
b53f4f3a66 python3Packages.praw: 7.1.0 -> 7.1.2 2021-02-04 00:03:19 +01:00
R. RyanTM
af1a05e718 rtsp-simple-server: 0.12.2 -> 0.14.0 2021-02-03 22:56:01 +00:00
R. RyanTM
ea32ab850f rssguard: 3.8.3 -> 3.8.4 2021-02-03 22:52:15 +00:00
Fabian Affolter
34dd2da438 home-assistant: update component-packages 2021-02-03 23:26:13 +01:00
Fabian Affolter
82b980405e python3Packages.solax: init at 0.2.5 2021-02-03 23:25:08 +01:00
IvarWithoutBones
83494a62d3 ryujinx: 1.0.6448 -> 1.0.6498 2021-02-03 23:23:49 +01:00
Fabian Affolter
bc59568196 python3Packages.pytest-httpserver: init at 0.3.6 2021-02-03 23:20:34 +01:00
R. RyanTM
d19f69484a resvg: 0.12.0 -> 0.13.1 2021-02-03 22:19:54 +00:00
Ryan Mulligan
f96a96c462
Merge pull request #111803 from r-ryantm/auto-update/particl-core
particl-core: 0.19.1.1 -> 0.19.2.3
2021-02-03 14:17:31 -08:00
R. RyanTM
a49a069c86 reddsaver: 0.2.2 -> 0.2.3 2021-02-03 22:14:39 +00:00
R. RyanTM
144a89e5e7 react-native-debugger: 0.11.5 -> 0.11.7 2021-02-03 22:09:56 +00:00
R. RyanTM
625e2385df rcon: 0.5 -> 0.6 2021-02-03 22:06:10 +00:00
R. RyanTM
4f5c3ce170 rclone: 1.53.4 -> 1.54.0 2021-02-03 22:02:06 +00:00
Raphael Borun Das Gupta
86c854f8ab osm2pgsql: 1.4.0 -> 1.4.1 2021-02-03 22:59:12 +01:00
R. RyanTM
a6e5607595 bazarr: 0.9.0.7 -> 0.9.0.8 2021-02-03 22:48:58 +01:00
R. RyanTM
adcc00de7a qpdf: 10.0.4 -> 10.1.0 2021-02-03 21:32:53 +00:00
R. RyanTM
0b3d31d21b protolock: 0.15.0 -> 0.15.1 2021-02-03 21:13:17 +00:00
Ryan Mulligan
6e9ba2aa45
Merge pull request #111799 from r-ryantm/auto-update/osmium-tool
osmium-tool: 1.13.0 -> 1.13.1
2021-02-03 13:04:05 -08:00
Sandro
bd8c677e09
Merge pull request #111780 from Luflosi/pinentry-mac-use-pname
pinentry-mac: name -> pname
2021-02-03 21:43:01 +01:00
Sandro
8f0498ae16
Merge pull request #111747 from markus1189/calcurse-oauth
calcurse: include oauth2client package
2021-02-03 21:32:10 +01:00
Sandro
006936ac4d
Merge pull request #111748 from andir/ml2pr/sfeed-0-9-20-0-9-21
sfeed: 0.9.20 -> 0.9.21
2021-02-03 21:31:40 +01:00
Sandro
5ec147d003
Merge pull request #111751 from andir/ml2pr/smenu-0-9-16-0-9-17
smenu: 0.9.16 -> 0.9.17
2021-02-03 21:31:08 +01:00
Sandro
a464234d45
Merge pull request #111753 from andir/ml2pr/taskwarrior-tui-0-9-5-0-9-6
taskwarrior-tui: 0.9.5 -> 0.9.6
2021-02-03 21:30:56 +01:00
Sandro
8f81f599eb
Merge pull request #111754 from dotlambda/ghostwriter-2.0.0-rc4
ghostwriter: 2.0.0-rc3 -> 2.0.0-rc4
2021-02-03 21:30:30 +01:00
Sandro
c31388b6aa
Merge pull request #111757 from dotlambda/texworks-qt515
texworks: use Qt 5.15
2021-02-03 21:30:10 +01:00
Sandro
8d39fe90e2
Merge pull request #111770 from fabaff/bump-avaobj-py3
python3Packages.javaobj-py3: 0.4.1 -> 0.4.2
2021-02-03 21:29:41 +01:00
Sandro
b6a71423d5
Merge pull request #111758 from dotlambda/rclone-browser-qt515
rclone-browser: use Qt 5.15
2021-02-03 21:28:59 +01:00
R. RyanTM
21063beadb pcm: 202011 -> 202101 2021-02-03 20:24:21 +00:00
R. RyanTM
90860de871 particl-core: 0.19.1.1 -> 0.19.2.3 2021-02-03 20:10:54 +00:00
R. RyanTM
4f059a5ab2 papirus-icon-theme: 20210101 -> 20210201 2021-02-03 20:02:32 +00:00
Michael Weiss
25e3e66b65
iputils: 20200821 -> 20210202 (#111645) 2021-02-03 21:02:06 +01:00
Ryan Mulligan
68323cae4e
Merge pull request #111763 from r-ryantm/auto-update/helmfile
helmfile: 0.138.1 -> 0.138.2
2021-02-03 12:00:39 -08:00
R. RyanTM
20596586ff osmium-tool: 1.13.0 -> 1.13.1 2021-02-03 19:48:22 +00:00
Michael Weiss
570d7def06
Merge pull request #111740 from primeos/chromium
chromium: 88.0.4324.96 -> 88.0.4324.146
2021-02-03 20:33:58 +01:00
Henri Menke
bde2fffbbe zfs: 2.0.1 -> 2.0.2 2021-02-03 11:18:48 -08:00
SCOTT-HAMILTON
f01474f4e1 vokoscreenNG: 3.0.5 -> 3.0.8 2021-02-03 20:17:54 +01:00
Niklas
be788140d8
plex: 1.21.1.3876-3c3adfcb4 -> 1.21.2.3943-a91458577 2021-02-03 20:14:04 +01:00
Anderson Torres
519c4f1727
Merge pull request #110830 from iblech/patch-agdastdlib15
agdaPackages.standard-library: 1.4 -> 1.5
2021-02-03 15:56:55 -03:00
Anderson Torres
8bf1bc692c
Merge pull request #110512 from neosimsim/agda-dont-install-Everything
Agda don't install Everything module
2021-02-03 15:56:34 -03:00
Anderson Torres
a27a2c4b15
Merge pull request #110501 from neosimsim/agda-ghc-ieee754
agda.withPackages: use GHC with ieee754 as default
2021-02-03 15:55:37 -03:00
Fabian Affolter
ca447081a8 patroni: 1.6.5 -> 2.0.1 2021-02-03 10:52:46 -08:00
Fabian Affolter
84210a8538 python3Packages.pysyncobj: init at 0.3.7 2021-02-03 10:52:46 -08:00
Sander van der Burg
84a097848e regenerate with node2nix 1.9.0 except zigbee2mqtt 2021-02-03 19:52:09 +01:00
Evan Stoll
75a4bdc28c licensor: "Fix" integration test for 2021
* Use latest version from master (as of 2021-02-03)
  * Apply patch from https://github.com/raftario/licensor/pull/28 that
    "fixes" the `license_and_name` test by bumping the year from 2020
    to 2021, until the test implementation can be properly addressed

  * This also includes a security update from
    https://github.com/raftario/licensor/pull/8

  * Instead of adding 2 more patches (one for the test fix, one for the
    security update), using the latest commit from master seems to make
    the most sense for now

  * remove fetchpatch from inputs
2021-02-03 13:42:10 -05:00
markuskowa
d1f97a5eb5
Merge pull request #111787 from r-ryantm/auto-update/nfs-ganesha
nfs-ganesha: 3.4 -> 3.5
2021-02-03 19:32:34 +01:00
github-actions[bot]
571eb10996
Merge staging-next into staging 2021-02-03 18:22:22 +00:00