Community maintained packages for difos.
Find a file
Noah Meyerhans f648f3766f bind: Update to bind-9.10.5
This change includes fixes for several security issues:

  * CVE-2017-3138: rndc "" could trigger an assertion failure in named.
  * CVE-2017-3137: Some chaining (i.e., type CNAME or DNAME) responses to
    upstream queries could trigger assertion failures.
  * CVE-2017-3136: dns64 with break-dnssec yes; can result in an assertion
    failure.
  * CVE-2017-3135: If a server is configured with a response policy zone
    (RPZ) that rewrites an answer with local data, and is also configured
    for DNS64 address mapping, a NULL pointer can be read triggering a
    server crash.
  * CVE-2016-9444: named could mishandle authority sections with missing
    RRSIGs, triggering an assertion failure.
  * CVE-2016-9131: named mishandled some responses where covering RRSIG
    records were returned without the requested data, resulting in an
    assertion failure.
  * CVE-2016-9131: named incorrectly tried to cache TKEY records which could
    trigger an assertion failure when there was a class mismatch.
  * CVE-2016-8864: It was possible to trigger assertions when processing
    responses containing answers of type DNAME.
  * CVE-2016-6170: Added the ability to specify the maximum number of
    records permitted in a zone (max-records #;). This provides a mechanism
    to block overly large zone transfers, which is a potential risk with
    slave zones from other parties.
  * CVE-2016-2776: It was possible to trigger an assertion when rendering a
    message using a specially crafted request.
  * CVE-2016-2775: Calling getrrsetbyname() with a non absolute name could
    trigger an infinite recursion bug in lwresd or named with lwres
    configured if, when combined with a search list entry from resolv.conf,
    the resulting name is too long.

Signed-off-by: Noah Meyerhans <frodo@morgul.net>
2017-11-19 17:33:49 +01:00
admin zabbix: add missing dependency on libiconv ($(ICONV_DEPENDS)) 2016-03-23 12:43:52 +00:00
devel lttng-modules: fix build on recent kernels 2015-04-02 17:02:11 +02:00
ipv6 aiccu: fix requiretls option handling 2015-03-02 21:43:53 +01:00
kernel/exfat-nofuse exfat-nofuse: Depend on BUILD_PATENTED 2015-04-28 18:15:52 +01:00
lang Merge pull request #3524 from luizluca/cc/ruby-update 2016-11-21 16:39:33 +02:00
libs libsodium: Fix download url 2017-10-31 13:46:19 +05:30
mail bogofilter: postfix script now reads bogofilter_dir from bogofilter conf 2016-09-14 20:40:54 -04:00
multimedia ffmpeg: Update to 2.6.9, Add patch to fix AAC decoder performance and memory usage (2.7 backport) 2016-09-30 14:48:48 -04:00
net bind: Update to bind-9.10.5 2017-11-19 17:33:49 +01:00
sound madplay: some build variant related fixes 2015-10-26 17:15:00 +01:00
utils tmux: fix download-url 2016-04-21 11:27:03 +02:00
CONTRIBUTING.md CONTRIBUTING.md: Add advice about pull requests 2015-12-15 17:38:35 +02:00
LICENSE Add GPLv2 pro-forma license 2014-06-16 08:14:04 +02:00
README.md README: Add clarification of this repository's relation to OpenWrt buildroot 2015-04-23 15:43:11 -04:00

OpenWrt packages feed

Description

This is the OpenWrt "packages"-feed containing community-maintained build scripts, options and patches for applications, modules and libraries used within OpenWrt.

Installation of pre-built packages is handled directly by the opkg utility within your running OpenWrt system or by using the OpenWrt SDK on a build system.

Usage

This repository is intended to be layered on-top of an OpenWrt buildroot. If you do not have an OpenWrt buildroot installed, see the documentation at: OpenWrt Buildroot Installation on the OpenWrt support site.

This feed is enabled by default. To install all its package definitions, run:

./scripts/feeds update packages
./scripts/feeds install -a -p packages

License

See LICENSE file.

Package Guidelines

See CONTRIBUTING.md file.