Emily
4ed98d69ed
nixos/nginx: use Mozilla Intermediate TLS configuration
...
The configuration at https://ssl-config.mozilla.org/#server=nginx&config=intermediate
is reliably kept up-to-date in terms of security and compatible with a
wide range of clients. They've probably had more care and thought put
into them than our defaults, and will be easier to keep updated in
the future.
The only removed (rather than changed) configuration option here is
ssl_ecdh_curve, per https://github.com/mozilla/server-side-tls/issues/189 .
Resolves #80952 .
2020-03-06 13:08:56 +00:00
Andreas Rammhold
82b54d4906
Merge pull request #81633 from andir/bazel_0_fix_tensorflow
...
Tensorflow: fix #77626
2020-03-05 18:59:03 +01:00
Marek Mahut
05ee8890bd
python3Packages.sapi-python-client: init at 0.13.1 ( #81184 )
...
python3Packages.sapi-python-client: init at 0.13.1
2020-03-05 18:57:23 +01:00
Ryan Mulligan
aa7634d817
Merge pull request #81766 from r-ryantm/auto-update/FanFicFare
...
fanficfare: 3.15.0 -> 3.16.0
2020-03-05 07:56:25 -08:00
Ryan Mulligan
f3730595ca
Merge pull request #81770 from r-ryantm/auto-update/graylog
...
graylog: 3.2.1 -> 3.2.2
2020-03-05 07:54:49 -08:00
Ryan Mulligan
10dfd5a8c4
Merge pull request #81760 from r-ryantm/auto-update/eternal-terminal
...
eternal-terminal: 6.0.6 -> 6.0.7
2020-03-05 07:46:50 -08:00
Milan
c25756f91c
gitlab: 12.8.1 -> 12.8.2 ( #81803 )
...
Includes multiple security fixes mentioned in
https://about.gitlab.com/releases/2020/03/04/gitlab-12-dot-8-dot-2-released/
(unfortunately, no CVE numbers as of yet)
- Directory Traversal to Arbitrary File Read
- Account Takeover Through Expired Link
- Server Side Request Forgery Through Deprecated Service
- Group Two-Factor Authentication Requirement Bypass
- Stored XSS in Merge Request Pages
- Stored XSS in Merge Request Submission Form
- Stored XSS in File View
- Stored XSS in Grafana Integration
- Contribution Analytics Exposed to Non-members
- Incorrect Access Control in Docker Registry via Deploy Tokens
- Denial of Service via Permission Checks
- Denial of Service in Design For Public Issue
- GitHub Tokens Displayed in Plaintext on Integrations Page
- Incorrect Access Control via LFS Import
- Unescaped HTML in Header
- Private Merge Request Titles Leaked via Widget
- Project Namespace Exposed via Vulnerability Feedback Endpoint
- Denial of Service Through Recursive Requests
- Project Authorization Not Being Updated
- Incorrect Permission Level For Group Invites
- Disclosure of Private Group Epic Information
- User IP Address Exposed via Badge images
- Update postgresql (GitLab Omnibus)
2020-03-05 16:37:21 +01:00
Mario Rodas
93fd4b7f00
Merge pull request #79062 from marsam/update-rclone
...
rclone: install completions
2020-03-05 09:58:34 -05:00
Tor Hedin Brønner
0e5d4573d4
nix-bash-completions: 0.6.7 -> 0.6.8 ( #81019 )
2020-03-05 15:08:03 +01:00
Michael Weiss
b18995ef10
wayvnc: 0.1.0 -> 0.1.1
2020-03-05 14:53:56 +01:00
Mario Rodas
7597bdd59b
Merge pull request #81783 from r-ryantm/auto-update/gmsh
...
gmsh: 4.5.2 -> 4.5.4
2020-03-05 08:31:38 -05:00
Mario Rodas
5c992241ed
Merge pull request #81787 from r-ryantm/auto-update/flyway
...
flyway: 6.2.2 -> 6.2.4
2020-03-05 08:04:24 -05:00
Vladimír Čunát
1cf4fea33f
nixos/release-notes: fix a tiny typo
2020-03-05 14:03:27 +01:00
Mario Rodas
3813630ccd
Merge pull request #81806 from bhipple/auto-update/procs
...
procs: 0.9.11 -> 0.9.18
2020-03-05 07:59:07 -05:00
Mario Rodas
836b2246a5
Merge pull request #81797 from marsam/update-chezmoi
...
chezmoi: 1.7.13 -> 1.7.16
2020-03-05 07:56:35 -05:00
Tim Steinbach
ae189056ef
oh-my-zsh: 2020-03-03 -> 2020-03-05
2020-03-05 07:55:53 -05:00
Tim Steinbach
03003d433c
jenkins: 2.204.3 -> 2.204.4
2020-03-05 07:55:53 -05:00
Tim Steinbach
269d1eab10
vivaldi: 2.11.1811.44-1 -> 2.11.1811.47-1
2020-03-05 07:55:53 -05:00
Mario Rodas
e368551f7a
Merge pull request #81471 from r-ryantm/auto-update/bacula
...
bacula: 9.4.4 -> 9.6.2
2020-03-05 07:50:55 -05:00
Mario Rodas
6bba323339
Merge pull request #81551 from r-ryantm/auto-update/palemoon
...
palemoon: 28.8.2.1 -> 28.8.4
2020-03-05 07:49:47 -05:00
Mario Rodas
5445ca989e
Merge pull request #81526 from r-ryantm/auto-update/liblo
...
liblo: 0.30 -> 0.31
2020-03-05 07:47:52 -05:00
Mario Rodas
5f1c184ba8
Merge pull request #81590 from r-ryantm/auto-update/python2.7-msal
...
python27Packages.msal: 1.0.0 -> 1.1.0
2020-03-05 07:45:26 -05:00
Mario Rodas
b5bf99e526
Merge pull request #81794 from marsam/update-nodejs-13_x
...
nodejs-13_x: 13.10.0 -> 13.10.1
2020-03-05 07:43:42 -05:00
Mario Rodas
1196a5c7a7
Merge pull request #81722 from r-ryantm/auto-update/workcraft
...
workcraft: 3.2.5 -> 3.2.6
2020-03-05 07:42:25 -05:00
Mario Rodas
6c188255f7
Merge pull request #81630 from r-ryantm/auto-update/snd
...
snd: 20.0 -> 20.1
2020-03-05 07:36:52 -05:00
Mario Rodas
0692c7cb21
Merge pull request #81637 from r-ryantm/auto-update/python2.7-ROPGadget
...
python27Packages.ROPGadget: 6.0 -> 6.2
2020-03-05 07:30:39 -05:00
Mario Rodas
e5fd322143
Merge pull request #81712 from r-ryantm/auto-update/randoop
...
randoop: 4.2.1 -> 4.2.2
2020-03-05 07:29:56 -05:00
Mario Rodas
70a865c6ae
Merge pull request #81617 from r-ryantm/auto-update/python2.7-spotipy
...
python27Packages.spotipy: 2.7.1 -> 2.9.0
2020-03-05 07:27:24 -05:00
Mario Rodas
c596f1f051
Merge pull request #81773 from r-ryantm/auto-update/gromacs
...
gromacs: 2020 -> 2020.1
2020-03-05 07:18:47 -05:00
Mario Rodas
2d3c0170d3
Merge pull request #81771 from r-ryantm/auto-update/fwts
...
fwts: 19.11.00 -> 20.02.00
2020-03-05 07:18:04 -05:00
Mario Rodas
b50c396e68
Merge pull request #81749 from r-ryantm/auto-update/closure-compiler
...
closurecompiler: 20200204 -> 20200224
2020-03-05 07:14:57 -05:00
Mario Rodas
e033b005b2
Merge pull request #81767 from groodt/groodt-argo-2.6.1
...
argo: 2.6.0 -> 2.6.1
2020-03-05 07:12:21 -05:00
Mario Rodas
19b958b197
Merge pull request #81763 from r-ryantm/auto-update/eventstat
...
eventstat: 0.04.08 -> 0.04.09
2020-03-05 07:10:40 -05:00
Mario Rodas
11754a7911
Merge pull request #81776 from r-ryantm/auto-update/gallery_dl
...
gallery-dl: 1.12.3 -> 1.13.1
2020-03-05 07:09:37 -05:00
Mario Rodas
8ec339d697
Merge pull request #81765 from zowoq/conmon
...
conmon: 2.0.10 -> 2.0.11
2020-03-05 07:08:22 -05:00
Mario Rodas
e2ec8dccea
Merge pull request #81777 from ngerstle/fix-kube3d-1.6.0
...
kube3d: correct k3s version tag
2020-03-05 07:07:13 -05:00
Mario Rodas
a9368dfb1a
Merge pull request #81792 from r-ryantm/auto-update/jruby
...
jruby: 9.2.10.0 -> 9.2.11.0
2020-03-05 07:05:50 -05:00
Mario Rodas
1193f8e7ed
Merge pull request #81790 from r-ryantm/auto-update/joker
...
joker: 0.14.1 -> 0.14.2
2020-03-05 07:05:04 -05:00
Michael Weiss
05e6cc4944
signal-desktop: 1.31.0 -> 1.32.0
2020-03-05 12:00:29 +01:00
Jan Tojnar
c4f21fdafc
Merge pull request #81779 from r-ryantm/auto-update/gnome-shell-extension-sound-output-device-chooser
...
gnomeExtensions.sound-output-device-chooser: 24 -> 25
2020-03-05 11:46:02 +01:00
Michael Weiss
19595b3652
Merge pull request #81704 from primeos/chromium
...
chromium: 80.0.3987.122 -> 80.0.3987.132
2020-03-05 11:44:57 +01:00
Jan Tojnar
ede0fff868
Merge pull request #81808 from r-ryantm/auto-update/link-grammar
...
link-grammar: 5.7.0 -> 5.8.0
2020-03-05 10:09:17 +01:00
zimbatm
706f13a787
mdsh: 0.3.0 -> 0.4.0 ( #81802 )
2020-03-05 08:39:15 +00:00
zimbatm
3d6cdfa24b
nixpkgs-fmt: 0.6.1 -> 0.7.0 ( #81805 )
2020-03-05 08:28:11 +00:00
R. RyanTM
ebd985439f
link-grammar: 5.7.0 -> 5.8.0
2020-03-05 08:05:02 +00:00
Elis Hirwing
c667aba79c
Merge pull request #81754 from jtojnar/php-7.4.3
...
php74: 7.4.2 → 7.4.3
2020-03-05 07:39:07 +01:00
Benjamin Hipple
c882a90bc6
procs: 0.9.11 -> 0.9.18
2020-03-05 01:30:08 -05:00
Ryan Mulligan
1426c3e9ed
Merge pull request #81741 from r-ryantm/auto-update/avocode
...
avocode: 4.3.0 -> 4.4.3
2020-03-04 19:58:37 -08:00
Ryan Mulligan
e291c9040b
Merge pull request #81646 from r-ryantm/auto-update/tribler
...
tribler: 7.4.1 -> 7.4.4
2020-03-04 19:44:05 -08:00
R. RyanTM
d08fb3b922
jruby: 9.2.10.0 -> 9.2.11.0
2020-03-05 02:42:20 +00:00