HyperTask packages https://issues.hyperbola.info/ 2019-06-15T18:25:32Z FS#1383: [exim] CVE-2019-10149 2019-06-15T18:25:32Z 2019-06-14T17:10:09Z

Description: There’s an active, ongoing campaign exploiting a widespread vulnerability in linux email servers. This attack leverages a week-old vulnerability to gain remote command execution on the target machine, search the Internet for other machines to infect, and initiates a crypto miner.

https://www.cybereason.com/blog/new-pervasive-worm-exploiting-linux-exim-server-vulnerability

https://www.openwall.com/lists/oss-security/2019/06/06/1

bugmen0t https://issues.hyperbola.info/:1383
FS#1354: [opendkim] includes dependencies for systemd 2019-06-02T11:02:41Z 2019-02-11T16:42:20Z

Description: The package opendkim has no further init-script for OpenRC and instead includes service-definitions for systemd

Additional info:
* package version(s) 2.10.3-4

Tobias Dausend https://issues.hyperbola.info/:1354
FS#1353: [spamassassin] includes dependencies for systemd 2019-06-02T11:01:20Z 2019-02-11T16:34:31Z

Description: The package spamassassin has no further init-script for OpenRC and instead includes service-definitions for systemd

Additional info:
* package version(s) 3.4.1-7

Tobias Dausend https://issues.hyperbola.info/:1353
FS#403: [nodejs] rebuild package against libressl 2019-06-02T10:39:44Z 2018-01-14T21:26:08Z

Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si nodejs
Repository      : community
Name            : nodejs
Version         : 7.10.0-1
Description     : Evented I/O for V8 javascript
Architecture    : x86_64
URL             : http://nodejs.org/
Licenses        : MIT
Groups          : None
Provides        : None
Depends On      : openssl-1.0  zlib  icu  libuv  http-parser  c-ares
Optional Deps   : npm: nodejs package manager
Conflicts With  : None
Replaces        : None
Download Size   : 4.55 MiB
Installed Size  : 18.49 MiB
Packager        : Felix Yan <felixonmars@archlinux.org>
Build Date      : Wed 03 May 2017 11:50:26 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
André Silva https://issues.hyperbola.info/:403
FS#411: [rethinkdb] rebuild package against libressl 2019-06-02T10:38:28Z 2018-01-14T22:00:04Z

Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si rethinkdb
Repository      : community
Name            : rethinkdb
Version         : 2.3.5-6
Description     : Distributed powerful and scalable NoSQL database
Architecture    : x86_64
URL             : http://www.rethinkdb.com/
Licenses        : AGPL
Groups          : None
Provides        : None
Depends On      : protobuf  ncurses  curl  openssl-1.0
Optional Deps   : None
Conflicts With  : None
Replaces        : None
Download Size   : 10.19 MiB
Installed Size  : 36.50 MiB
Packager        : Antonio Rojas <arojas@archlinux.org>
Build Date      : Wed 05 Apr 2017 08:25:08 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
André Silva https://issues.hyperbola.info/:411
FS#415: [sslscan] rebuild package against libressl 2019-06-02T10:38:23Z 2018-01-14T22:00:05Z

Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si sslscan
Repository      : community
Name            : sslscan
Version         : 1.10.2-5
Description     : A fast tools to scan SSL services, such as HTTPS to determine the ciphers that are supported
Architecture    : x86_64
URL             : https://github.com/DinoTools/sslscan/
Licenses        : GPL3
Groups          : None
Provides        : None
Depends On      : openssl-1.0
Optional Deps   : None
Conflicts With  : None
Replaces        : None
Download Size   : 16.98 KiB
Installed Size  : 45.00 KiB
Packager        : Antonio Rojas <arojas@archlinux.org>
Build Date      : Wed 05 Apr 2017 09:07:32 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
André Silva https://issues.hyperbola.info/:415
FS#410: [qt5-base] rebuild package against libressl 2019-06-02T10:38:18Z 2018-01-14T22:00:04Z

Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si qt5-base
Repository      : extra
Name            : qt5-base
Version         : 5.8.0-11.hyperbola1
Description     : A cross-platform application and UI framework, without systemd support
Architecture    : x86_64
URL             : https://www.qt.io/developers/
Licenses        : GPL3  LGPL3  FDL  custom
Groups          : qt  qt5
Provides        : None
Depends On      : libjpeg-turbo  xcb-util-keysyms  xcb-util-renderutil  libgl  fontconfig  xcb-util-wm  libxrender  libxi  sqlite  xcb-util-image  icu  tslib
                  libinput  libsm  libxkbcommon-x11  libproxy  libcups  openssl-1.0
Optional Deps   : qt5-svg: to use SVG icon themes
                  postgresql-libs: PostgreSQL driver
                  libmariadbclient: MariaDB driver
                  unixodbc: ODBC driver
                  libfbclient: Firebird/iBase driver
                  freetds: MS SQL driver
                  gtk3: GTK platform plugin
Conflicts With  : qtchooser
Replaces        : None
Download Size   : 11.23 MiB
Installed Size  : 56.18 MiB
Packager        : André Silva <emulatorman@hyperbola.info>
Build Date      : Tue 22 Aug 2017 03:22:14 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
André Silva https://issues.hyperbola.info/:410
FS#402: [ncrack] rebuild package against libressl 2019-06-02T10:38:09Z 2018-01-14T21:26:08Z

Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si ncrack
Repository      : community
Name            : ncrack
Version         : 0.5-3
Description     : A high-speed network authentication cracking tool
Architecture    : x86_64
URL             : https://nmap.org/ncrack/
Licenses        : GPL
Groups          : None
Provides        : None
Depends On      : openssl-1.0
Optional Deps   : None
Conflicts With  : None
Replaces        : None
Download Size   : 585.50 KiB
Installed Size  : 1496.00 KiB
Packager        : Antonio Rojas <arojas@archlinux.org>
Build Date      : Wed 05 Apr 2017 07:39:03 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
André Silva https://issues.hyperbola.info/:402
FS#418: [vagrant] rebuild package against libressl 2019-06-02T10:38:04Z 2018-01-14T22:00:06Z

Rebuild package against libressl, since it makedepends on openssl-1.0.

$ pacman -Si vagrant
Repository      : community
Name            : vagrant
Version         : 1.9.3-1
Description     : Build and distribute virtualized development environments
Architecture    : x86_64
URL             : http://vagrantup.com
Licenses        : MIT
Groups          : None
Provides        : None
Depends On      : vagrant-substrate  libyaml
Optional Deps   : None
Conflicts With  : None
Replaces        : None
Download Size   : 16.54 MiB
Installed Size  : 37.19 MiB
Packager        : Jonathan Steel <jsteel@archlinux.org>
Build Date      : Wed 29 Mar 2017 01:06:53 PM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
André Silva https://issues.hyperbola.info/:418
FS#401: [mongodb-tools] rebuild package against libressl 2019-06-02T10:37:58Z 2018-01-14T21:26:08Z

Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si mongodb-tools
Repository      : community
Name            : mongodb-tools
Version         : 3.4.2-2
Description     : The MongoDB tools provide import, export, and diagnostic capabilities.
Architecture    : x86_64
URL             : https://github.com/mongodb/mongo-tools
Licenses        : Apache
Groups          : None
Provides        : None
Depends On      : libsasl  libpcap  openssl-1.0
Optional Deps   : None
Conflicts With  : None
Replaces        : None
Download Size   : 9.43 MiB
Installed Size  : 70.71 MiB
Packager        : Antonio Rojas <arojas@archlinux.org>
Build Date      : Wed 05 Apr 2017 08:29:00 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
André Silva https://issues.hyperbola.info/:401