HyperTask https://issues.hyperbola.info/ packages 2019-06-15T18:25:32Z FS#1383: [exim] CVE-2019-10149 https://issues.hyperbola.info/index.php?do=details&task_id=1383 2019-06-15T18:25:32Z bugmen0t Description: There’s an active, ongoing campaign exploiting a widespread vulnerability in linux email servers. This attack leverages a week-old vulnerability to gain remote command execution on the target machine, search the Internet for other machines to infect, and initiates a crypto miner. https://www.cybereason.com/blog/new-pervasive-worm-exploiting-linux-exim-server-vulnerability https://www.openwall.com/lists/oss-security/2019/06/06/1 Description: There’s an active, ongoing campaign exploiting a widespread vulnerability in linux email servers. This attack leverages a week-old vulnerability to gain remote command execution on the target machine, search the Internet for other machines to infect, and initiates a crypto miner.

https://www.cybereason.com/blog/new-pervasive-worm-exploiting-linux-exim-server-vulnerability

https://www.openwall.com/lists/oss-security/2019/06/06/1

]]>
FS#1354: [opendkim] includes dependencies for systemd https://issues.hyperbola.info/index.php?do=details&task_id=1354 2019-06-02T11:02:41Z Tobias Dausend Description: The package opendkim has no further init-script for OpenRC and instead includes service-definitions for systemd Additional info:* package version(s) 2.10.3-4 Description: The package opendkim has no further init-script for OpenRC and instead includes service-definitions for systemd

Additional info:
* package version(s) 2.10.3-4

]]>
FS#1353: [spamassassin] includes dependencies for systemd https://issues.hyperbola.info/index.php?do=details&task_id=1353 2019-06-02T11:01:20Z Tobias Dausend Description: The package spamassassin has no further init-script for OpenRC and instead includes service-definitions for systemd Additional info:* package version(s) 3.4.1-7 Description: The package spamassassin has no further init-script for OpenRC and instead includes service-definitions for systemd

Additional info:
* package version(s) 3.4.1-7

]]>
FS#403: [nodejs] rebuild package against libressl https://issues.hyperbola.info/index.php?do=details&task_id=403 2019-06-02T10:39:44Z André Silva Rebuild package against libressl, since it depends on openssl-1.0. $ pacman -Si nodejs Repository : community Name : nodejs Version : 7.10.0-1 Description : Evented I/O for V8 javascript Architecture : x86_64 URL : http://nodejs.org/ Licenses : MIT Groups : None Provides : None Depends On : openssl-1.0 zlib icu libuv http-parser c-ares Optional Deps : npm: nodejs package manager Conflicts With : None Replaces : None Download Size : 4.55 MiB Installed Size : 18.49 MiB Packager : Felix Yan <felixonmars@archlinux.org> Build Date : Wed 03 May 2017 11:50:26 AM -03 Validated By : MD5 Sum SHA-256 Sum Signature Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si nodejs
Repository      : community
Name            : nodejs
Version         : 7.10.0-1
Description     : Evented I/O for V8 javascript
Architecture    : x86_64
URL             : http://nodejs.org/
Licenses        : MIT
Groups          : None
Provides        : None
Depends On      : openssl-1.0  zlib  icu  libuv  http-parser  c-ares
Optional Deps   : npm: nodejs package manager
Conflicts With  : None
Replaces        : None
Download Size   : 4.55 MiB
Installed Size  : 18.49 MiB
Packager        : Felix Yan <felixonmars@archlinux.org>
Build Date      : Wed 03 May 2017 11:50:26 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
]]>
FS#411: [rethinkdb] rebuild package against libressl https://issues.hyperbola.info/index.php?do=details&task_id=411 2019-06-02T10:38:28Z André Silva Rebuild package against libressl, since it depends on openssl-1.0. $ pacman -Si rethinkdb Repository : community Name : rethinkdb Version : 2.3.5-6 Description : Distributed powerful and scalable NoSQL database Architecture : x86_64 URL : http://www.rethinkdb.com/ Licenses : AGPL Groups : None Provides : None Depends On : protobuf ncurses curl openssl-1.0 Optional Deps : None Conflicts With : None Replaces : None Download Size : 10.19 MiB Installed Size : 36.50 MiB Packager : Antonio Rojas &lt;arojas@archlinux.org&gt; Build Date : Wed 05 Apr 2017 08:25:08 AM -03 Validated By : MD5 Sum SHA-256 Sum Signature Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si rethinkdb
Repository      : community
Name            : rethinkdb
Version         : 2.3.5-6
Description     : Distributed powerful and scalable NoSQL database
Architecture    : x86_64
URL             : http://www.rethinkdb.com/
Licenses        : AGPL
Groups          : None
Provides        : None
Depends On      : protobuf  ncurses  curl  openssl-1.0
Optional Deps   : None
Conflicts With  : None
Replaces        : None
Download Size   : 10.19 MiB
Installed Size  : 36.50 MiB
Packager        : Antonio Rojas <arojas@archlinux.org>
Build Date      : Wed 05 Apr 2017 08:25:08 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
]]>
FS#415: [sslscan] rebuild package against libressl https://issues.hyperbola.info/index.php?do=details&task_id=415 2019-06-02T10:38:23Z André Silva Rebuild package against libressl, since it depends on openssl-1.0. $ pacman -Si sslscan Repository : community Name : sslscan Version : 1.10.2-5 Description : A fast tools to scan SSL services, such as HTTPS to determine the ciphers that are supported Architecture : x86_64 URL : https://github.com/DinoTools/sslscan/ Licenses : GPL3 Groups : None Provides : None Depends On : openssl-1.0 Optional Deps : None Conflicts With : None Replaces : None Download Size : 16.98 KiB Installed Size : 45.00 KiB Packager : Antonio Rojas &lt;arojas@archlinux.org&gt; Build Date : Wed 05 Apr 2017 09:07:32 AM -03 Validated By : MD5 Sum SHA-256 Sum Signature Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si sslscan
Repository      : community
Name            : sslscan
Version         : 1.10.2-5
Description     : A fast tools to scan SSL services, such as HTTPS to determine the ciphers that are supported
Architecture    : x86_64
URL             : https://github.com/DinoTools/sslscan/
Licenses        : GPL3
Groups          : None
Provides        : None
Depends On      : openssl-1.0
Optional Deps   : None
Conflicts With  : None
Replaces        : None
Download Size   : 16.98 KiB
Installed Size  : 45.00 KiB
Packager        : Antonio Rojas <arojas@archlinux.org>
Build Date      : Wed 05 Apr 2017 09:07:32 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
]]>
FS#410: [qt5-base] rebuild package against libressl https://issues.hyperbola.info/index.php?do=details&task_id=410 2019-06-02T10:38:18Z André Silva Rebuild package against libressl, since it depends on openssl-1.0. $ pacman -Si qt5-base Repository : extra Name : qt5-base Version : 5.8.0-11.hyperbola1 Description : A cross-platform application and UI framework, without systemd support Architecture : x86_64 URL : https://www.qt.io/developers/ Licenses : GPL3 LGPL3 FDL custom Groups : qt qt5 Provides : None Depends On : libjpeg-turbo xcb-util-keysyms xcb-util-renderutil libgl fontconfig xcb-util-wm libxrender libxi sqlite xcb-util-image icu tslib libinput libsm libxkbcommon-x11 libproxy libcups openssl-1.0 Optional Deps : qt5-svg: to use SVG icon themes postgresql-libs: PostgreSQL driver libmariadbclient: MariaDB driver unixodbc: ODBC driver libfbclient: Firebird/iBase driver freetds: MS SQL driver gtk3: GTK platform plugin Conflicts With : qtchooser Replaces : None Download Size : 11.23 MiB Installed Size : 56.18 MiB Packager : André Silva &lt;emulatorman@hyperbola.info&gt; Build Date : Tue 22 Aug 2017 03:22:14 AM -03 Validated By : MD5 Sum SHA-256 Sum Signature Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si qt5-base
Repository      : extra
Name            : qt5-base
Version         : 5.8.0-11.hyperbola1
Description     : A cross-platform application and UI framework, without systemd support
Architecture    : x86_64
URL             : https://www.qt.io/developers/
Licenses        : GPL3  LGPL3  FDL  custom
Groups          : qt  qt5
Provides        : None
Depends On      : libjpeg-turbo  xcb-util-keysyms  xcb-util-renderutil  libgl  fontconfig  xcb-util-wm  libxrender  libxi  sqlite  xcb-util-image  icu  tslib
                  libinput  libsm  libxkbcommon-x11  libproxy  libcups  openssl-1.0
Optional Deps   : qt5-svg: to use SVG icon themes
                  postgresql-libs: PostgreSQL driver
                  libmariadbclient: MariaDB driver
                  unixodbc: ODBC driver
                  libfbclient: Firebird/iBase driver
                  freetds: MS SQL driver
                  gtk3: GTK platform plugin
Conflicts With  : qtchooser
Replaces        : None
Download Size   : 11.23 MiB
Installed Size  : 56.18 MiB
Packager        : André Silva <emulatorman@hyperbola.info>
Build Date      : Tue 22 Aug 2017 03:22:14 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
]]>
FS#402: [ncrack] rebuild package against libressl https://issues.hyperbola.info/index.php?do=details&task_id=402 2019-06-02T10:38:09Z André Silva Rebuild package against libressl, since it depends on openssl-1.0. $ pacman -Si ncrack Repository : community Name : ncrack Version : 0.5-3 Description : A high-speed network authentication cracking tool Architecture : x86_64 URL : https://nmap.org/ncrack/ Licenses : GPL Groups : None Provides : None Depends On : openssl-1.0 Optional Deps : None Conflicts With : None Replaces : None Download Size : 585.50 KiB Installed Size : 1496.00 KiB Packager : Antonio Rojas &lt;arojas@archlinux.org&gt; Build Date : Wed 05 Apr 2017 07:39:03 AM -03 Validated By : MD5 Sum SHA-256 Sum Signature Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si ncrack
Repository      : community
Name            : ncrack
Version         : 0.5-3
Description     : A high-speed network authentication cracking tool
Architecture    : x86_64
URL             : https://nmap.org/ncrack/
Licenses        : GPL
Groups          : None
Provides        : None
Depends On      : openssl-1.0
Optional Deps   : None
Conflicts With  : None
Replaces        : None
Download Size   : 585.50 KiB
Installed Size  : 1496.00 KiB
Packager        : Antonio Rojas <arojas@archlinux.org>
Build Date      : Wed 05 Apr 2017 07:39:03 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
]]>
FS#418: [vagrant] rebuild package against libressl https://issues.hyperbola.info/index.php?do=details&task_id=418 2019-06-02T10:38:04Z André Silva Rebuild package against libressl, since it makedepends on openssl-1.0. $ pacman -Si vagrant Repository : community Name : vagrant Version : 1.9.3-1 Description : Build and distribute virtualized development environments Architecture : x86_64 URL : http://vagrantup.com Licenses : MIT Groups : None Provides : None Depends On : vagrant-substrate libyaml Optional Deps : None Conflicts With : None Replaces : None Download Size : 16.54 MiB Installed Size : 37.19 MiB Packager : Jonathan Steel &lt;jsteel@archlinux.org&gt; Build Date : Wed 29 Mar 2017 01:06:53 PM -03 Validated By : MD5 Sum SHA-256 Sum Signature Rebuild package against libressl, since it makedepends on openssl-1.0.

$ pacman -Si vagrant
Repository      : community
Name            : vagrant
Version         : 1.9.3-1
Description     : Build and distribute virtualized development environments
Architecture    : x86_64
URL             : http://vagrantup.com
Licenses        : MIT
Groups          : None
Provides        : None
Depends On      : vagrant-substrate  libyaml
Optional Deps   : None
Conflicts With  : None
Replaces        : None
Download Size   : 16.54 MiB
Installed Size  : 37.19 MiB
Packager        : Jonathan Steel <jsteel@archlinux.org>
Build Date      : Wed 29 Mar 2017 01:06:53 PM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
]]>
FS#401: [mongodb-tools] rebuild package against libressl https://issues.hyperbola.info/index.php?do=details&task_id=401 2019-06-02T10:37:58Z André Silva Rebuild package against libressl, since it depends on openssl-1.0. $ pacman -Si mongodb-tools Repository : community Name : mongodb-tools Version : 3.4.2-2 Description : The MongoDB tools provide import, export, and diagnostic capabilities. Architecture : x86_64 URL : https://github.com/mongodb/mongo-tools Licenses : Apache Groups : None Provides : None Depends On : libsasl libpcap openssl-1.0 Optional Deps : None Conflicts With : None Replaces : None Download Size : 9.43 MiB Installed Size : 70.71 MiB Packager : Antonio Rojas &lt;arojas@archlinux.org&gt; Build Date : Wed 05 Apr 2017 08:29:00 AM -03 Validated By : MD5 Sum SHA-256 Sum Signature Rebuild package against libressl, since it depends on openssl-1.0.

$ pacman -Si mongodb-tools
Repository      : community
Name            : mongodb-tools
Version         : 3.4.2-2
Description     : The MongoDB tools provide import, export, and diagnostic capabilities.
Architecture    : x86_64
URL             : https://github.com/mongodb/mongo-tools
Licenses        : Apache
Groups          : None
Provides        : None
Depends On      : libsasl  libpcap  openssl-1.0
Optional Deps   : None
Conflicts With  : None
Replaces        : None
Download Size   : 9.43 MiB
Installed Size  : 70.71 MiB
Packager        : Antonio Rojas <arojas@archlinux.org>
Build Date      : Wed 05 Apr 2017 08:29:00 AM -03
Validated By    : MD5 Sum  SHA-256 Sum  Signature
]]>