2 ADDED packages

nebula - Scalable overlay networking tool with a focus on performance, 
simplicity and security
* Sun May 24 2026 Anton Farygin <rider@altlinux> 1.10.3-alt1
- initial build for ALT Linux

python3-module-pytest-datafiles - py.test plugin to create a 'tmpdir' 
containing predefined files/directories
* Wed Feb 04 2026 Anton Farygin <rider@altlinux> 3.0.1-alt1
- 1.0 -> 3.0.1
* Thu Nov 28 2019 Andrey Bychkov <mrdrew@altlinux> 1.0-alt2

        13 UPDATED packages

accountsservice - D-Bus interfaces for querying and manipulating user account 
information
* Wed Jun 03 2026 Vladimir Romanov <rirusha@altlinux> 26.12.8-alt3
- Used current user password check for changing it.
* Wed Jun 03 2026 Vladimir Romanov <rirusha@altlinux> 26.12.8-alt2
- Allowed to user change their own password without authentication
  (closes: #59397).
* Tue May 26 2026 Vladimir Romanov <rirusha@altlinux> 26.12.8-alt1
- 26.12.8 (closes: #58899)
- Fixed creating user with ReadySet in ALT Atomic (closes: #59308).
- Port package to more classic gear way.
* Wed Sep 04 2024 Evgeny Sinelnikov <sin@altlinux> 23.13.9-alt5

altcenter - Application for show information and configure system
* Wed Jun 03 2026 Andrey Cherepanov <cas@altlinux> 1:1.0-alt0.37
- policies: added wireless access policies.
- policies: added removable media policies.
* Wed May 27 2026 Andrey Cherepanov <cas@altlinux> 1:1.0-alt0.36
- Fixed bugs (ALT #59265, #54844).
* Tue May 19 2026 Andrey Cherepanov <cas@altlinux> 1:1.0-alt0.35
- Fixed bugs (ALT #58310, #58742).
* Wed May 06 2026 Andrey Cherepanov <cas@altlinux> 1:1.0-alt0.34

firefox - Fast, private and secure web browser                          [720M]
* Thu May 21 2026 Ajrat Makhmutov <rauty@altlinux> 151.0.1-alt1
- New version.
* Thu May 21 2026 Ajrat Makhmutov <rauty@altlinux> 151.0-alt2
- Add support for KDE system proxy settings (Closes: 51648).
- Fix User-Agent format in privacy preferences (Closes: 57449).
- Switch to a single cumulative patch generated by gear.
- Build the source tarball from an upstream git tag.
- Update package summary to current upstream wording.
* Wed May 20 2026 Ajrat Makhmutov <rauty@altlinux> 151.0-alt1
- New version.
- Fixes:
  + CVE-2026-8945: Sandbox escape in Firefox and Firefox Focus for Android
  + CVE-2026-8946: Incorrect boundary conditions in the Audio/Video: Web Codecs 
component
  + CVE-2026-8947: Use-after-free in the DOM: Bindings (WebIDL) component
  + CVE-2026-8948: Same-origin policy bypass in the DOM: Networking component
  + CVE-2026-8949: Integer overflow in the Widget: Win32 component
  + CVE-2026-8950: Same-origin policy bypass in the Networking: HTTP component
  + CVE-2026-8951: Spoofing issue in the Toolbar component in Firefox for 
Android
  + CVE-2026-8952: Privilege escalation in the Application Update component
  + CVE-2026-8953: Sandbox escape due to use-after-free in the Disability 
Access APIs component
  + CVE-2026-8954: Incorrect boundary conditions, integer overflow in the 
Audio/Video component
  + CVE-2026-8955: Privilege escalation in the DOM: Workers component
  + CVE-2026-8956: Integer overflow in the Networking: JAR component
  + CVE-2026-8957: Privilege escalation in the Enterprise Policies component
  + CVE-2026-8958: Information disclosure, sandbox escape in the Security: 
Process Sandboxing component
  + CVE-2026-8959: Sandbox escape due to incorrect boundary conditions in the 
Widget: Win32 component
  + CVE-2026-8960: Spoofing issue in WebExtensions
  + CVE-2026-8961: Spoofing issue in the Form Autofill component
  + CVE-2026-8962: Mitigation bypass in the DOM: Security component
  + CVE-2026-8963: Spoofing issue in the Web Speech component
  + CVE-2026-8964: Spoofing issue in the Popup Blocker component
  + CVE-2026-8965: Information disclosure in the DOM: Security component
  + CVE-2026-8966: Information disclosure in the IP Protection component
  + CVE-2026-8967: Information disclosure in the Graphics: WebGPU component
  + CVE-2026-8968: Denial-of-service due to invalid pointer in the Audio/Video: 
Web Codecs component
  + CVE-2026-8969: Mitigation bypass in the DOM: Security component
  + CVE-2026-8970: Privilege escalation in the Security component
  + CVE-2026-8971: Same-origin policy bypass in the Networking: JAR component
  + CVE-2026-8972: Privilege escalation in the WebRTC: Audio/Video component
  + CVE-2026-8973: Memory safety bugs fixed in Firefox 151
  + CVE-2026-8974: Memory safety bugs fixed in Firefox ESR 140.11 and Firefox 
151
  + CVE-2026-8975: Memory safety bugs fixed in Firefox ESR 115.36, Firefox ESR 
140.11 and Firefox 151
* Thu May 14 2026 Ajrat Makhmutov <rauty@altlinux> 150.0.3-alt1
- New version.
- Fixes:
  + CVE-2026-8388: Incorrect boundary conditions in the JavaScript Engine: JIT 
component
  + CVE-2026-8389: JIT miscompilation in the JavaScript Engine: JIT component
  + CVE-2026-8390: Use-after-free in the JavaScript: WebAssembly component
  + CVE-2026-8391: Other issue in the JavaScript Engine component
  + CVE-2026-8401: Sandbox escape in the Profile Backup component
* Fri May 08 2026 Ajrat Makhmutov <rauty@altlinux> 150.0.2-alt1

firefox-esr - The Mozilla Firefox project is a redesign of Mozilla's browser    
[640M]
* Sun May 24 2026 Pavel Vasenkov <pav@altlinux> 140.10.0-alt1
- New ESR version.
- Security fixes:
  + CVE-2026-6746 Use-after-free in the DOM: Core & HTML component
  + CVE-2026-6747 Use-after-free in the WebRTC component
  + CVE-2026-6748 Uninitialized memory in the Audio/Video: Web Codecs component
  + CVE-2026-6749 Information disclosure due to uninitialized memory in the 
Graphics: Canvas2D component
  + CVE-2026-6750 Privilege escalation in the Graphics: WebRender component
  + CVE-2026-6751 Uninitialized memory in the Audio/Video: Web Codecs component
  + CVE-2026-6752 Incorrect boundary conditions in the WebRTC component
  + CVE-2026-6753 Incorrect boundary conditions in the WebRTC component
  + CVE-2026-6754 Use-after-free in the JavaScript Engine component
  + CVE-2026-6757 Invalid pointer in the JavaScript: WebAssembly component
  + CVE-2026-6759 Use-after-free in the Widget: Cocoa component
  + CVE-2026-6761 Privilege escalation in the Networking component
  + CVE-2026-6762 Spoofing issue in the DOM: Core & HTML component
  + CVE-2026-6763 Mitigation bypass in the File Handling component
  + CVE-2026-6764 Incorrect boundary conditions in the DOM: Device Interfaces 
component
  + CVE-2026-6765 Information disclosure in the Form Autofill component
  + CVE-2026-6766 Incorrect boundary conditions in the Libraries component in 
NSS
  + CVE-2026-6767 Other issue in the Libraries component in NSS
  + CVE-2026-6769 Privilege escalation in the Debugger component
  + CVE-2026-6770 Other issue in the Storage: IndexedDB component
  + CVE-2026-6771 Mitigation bypass in the DOM: Security component
  + CVE-2026-6772 Incorrect boundary conditions in the Libraries component in 
NSS
  + CVE-2026-6776 Incorrect boundary conditions in the WebRTC: Networking 
component
  + CVE-2026-6785 Memory safety bugs fixed in Firefox ESR 115.35, Firefox ESR 
140.10, Thunderbird ESR 140.10, Firefox 150 and Thunderbird 150
  + CVE-2026-6786 Memory safety bugs fixed in Firefox ESR 140.10, Thunderbird 
ESR 140.10, Firefox 150 and Thunderbird 150
* Sat Apr 11 2026 Pavel Vasenkov <pav@altlinux> 140.9.1-alt1

liburiparser - A strictly RFC 3986 compliant URI parsing library
* Thu May 28 2026 Alexander Danilov <admsasha@altlinux> 1.0.2-alt1
- new version 1.0.2 (with rpmgs script)
* Tue May 05 2026 Vitaly Lipatov <lav@altlinux> 1.0.1-alt1
- new version 1.0.1
* Fri Mar 06 2026 Vitaly Lipatov <lav@altlinux> 1.0.0-alt1
- new version 1.0.0
* Tue Dec 03 2024 Vitaly Lipatov <lav@altlinux> 0.9.8-alt1
- new version 0.9.8 (with rpmrb script)
* Fri Dec 30 2022 Vitaly Lipatov <lav@altlinux> 0.9.7-alt1

libxspf - XSPF playlist reading and writing support
* Fri Mar 13 2026 Vitaly Lipatov <lav@altlinux> 1.2.1-alt2
- fix build with uriparser >= 1.0.0 (fix version check in XspfReader.cpp)
* Sun Jul 17 2022 Vitaly Lipatov <lav@altlinux> 1.2.1-alt1

nss - Netscape Network Security Services(NSS)                           [52M]
* Fri May 08 2026 Ajrat Makhmutov <rauty@altlinux> 3.123.1-alt1
- New version.
* Wed Apr 22 2026 Ajrat Makhmutov <rauty@altlinux> 3.123-alt1

psutils - PDF and PostScript document manipulation utilities
* Tue May 19 2026 Anton Farygin <rider@altlinux> 2:3.3.15-alt1
- 3.3.14 -> 3.3.15
* Tue Feb 04 2025 Anton Farygin <rider@altlinux> 2:3.3.14-alt1
- 2.10 -> 3.3.14
- upstream rewrote psutils in Python (was Perl + autotools)
- now supports PDF in addition to PostScript
- added version fallback patch for build time
* Sun Oct 15 2023 Michael Shigorin <mike@altlinux> 2:2.10-alt2

radvd - A Router Advertisement daemon
* Wed Jun 03 2026 Mikhail Efremov <sem@altlinux> 2.21-alt1
- Enabled tests.
- Dropped obsoleted patch.
- Updated to 2.21 (fixes: CVE-2026-48715).
* Wed Feb 19 2025 Mikhail Efremov <sem@altlinux> 2.20-alt1

rust - The Rust Programming Language                                    [193M]
* Fri Apr 17 2026 Sergey Zhidkih <rx1513@altlinux> 1:1.95.0-alt1
- New version (1.95.0).
- Add rust-full subpackage, which installs everything required for
  development (Closes: 49831).
- Enable rustc documentation compilation (Closes: 58420).
- Raise the llvm version to 22.1.
* Thu Mar 26 2026 Sergey Zhidkih <rx1513@altlinux> 1:1.94.1-alt1

rust-toolchain-common - Common files and directories for any rust toolchain
* Thu Mar 26 2026 Sergey Zhidkih <rx1513@altlinux> 0.1.1-alt2
- Remove circular dependency on rust-toolchain as apt-rpm is unable to deduce
  the correct order of deletion leaving unowned directories behind.
* Thu Mar 26 2026 Sergey Zhidkih <rx1513@altlinux> 0.1.1-alt1

thunderbird - Thunderbird is Mozilla's e-mail client                    [936M]
* Sat May 23 2026 Ajrat Makhmutov <rauty@altlinux> 151.0-alt4
- Stop the chat tooltip from resizing after it is shown when
  buddy info arrives asynchronously (Closes: 45202).
- Play the new-mail sound even when the desktop has event sounds
  disabled (Closes: 39260).
- Apply message-style changes to already-open chat conversations
  without restart (Closes: 56121).
* Fri May 22 2026 Ajrat Makhmutov <rauty@altlinux> 151.0-alt3
- Fix OpenPGP account settings buttons being
  clipped when the pane is narrow (Closes: 59272).
- Add the Yandex search engine to the
  bundled search configuration (Closes: 49609).
* Thu May 21 2026 Ajrat Makhmutov <rauty@altlinux> 151.0-alt2
- Fix OpenPGP key wizard buttons being clipped off the window on
  GNOME/Wayland when creating a new key pair (Closes: 59271).
* Wed May 20 2026 Ajrat Makhmutov <rauty@altlinux> 151.0-alt1
- New version.
- Fixes:
  + CVE-2026-8946: Incorrect boundary conditions in the Audio/Video: Web Codecs 
component
  + CVE-2026-8947: Use-after-free in the DOM: Bindings (WebIDL) component
  + CVE-2026-8948: Same-origin policy bypass in the DOM: Networking component
  + CVE-2026-8949: Integer overflow in the Widget: Win32 component
  + CVE-2026-8950: Same-origin policy bypass in the Networking: HTTP component
  + CVE-2026-8952: Privilege escalation in the Application Update component
  + CVE-2026-8953: Sandbox escape due to use-after-free in the Disability 
Access APIs component
  + CVE-2026-8954: Incorrect boundary conditions, integer overflow in the 
Audio/Video component
  + CVE-2026-8955: Privilege escalation in the DOM: Workers component
  + CVE-2026-8956: Integer overflow in the Networking: JAR component
  + CVE-2026-8957: Privilege escalation in the Enterprise Policies component
  + CVE-2026-8958: Information disclosure, sandbox escape in the Security: 
Process Sandboxing component
  + CVE-2026-8959: Sandbox escape due to incorrect boundary conditions in the 
Widget: Win32 component
  + CVE-2026-8960: Spoofing issue in WebExtensions
  + CVE-2026-8961: Spoofing issue in the Form Autofill component
  + CVE-2026-8962: Mitigation bypass in the DOM: Security component
  + CVE-2026-8963: Spoofing issue in the Web Speech component
  + CVE-2026-8964: Spoofing issue in the Popup Blocker component
  + CVE-2026-8965: Information disclosure in the DOM: Security component
  + CVE-2026-8966: Information disclosure in the IP Protection component
  + CVE-2026-8967: Information disclosure in the Graphics: WebGPU component
  + CVE-2026-8968: Denial-of-service due to invalid pointer in the Audio/Video: 
Web Codecs component
  + CVE-2026-8969: Mitigation bypass in the DOM: Security component
  + CVE-2026-8970: Privilege escalation in the Security component
  + CVE-2026-8971: Same-origin policy bypass in the Networking: JAR component
  + CVE-2026-8972: Privilege escalation in the WebRTC: Audio/Video component
  + CVE-2026-8973: Memory safety bugs fixed in Thunderbird 151
  + CVE-2026-8974: Memory safety bugs fixed in Thunderbird 140.11 and 
Thunderbird 151
  + CVE-2026-8975: Memory safety bugs fixed in Thunderbird 140.11 and 
Thunderbird 151
* Mon May 11 2026 Ajrat Makhmutov <rauty@altlinux> 150.0.2-alt1
- New version.
- Fixes:
  + CVE-2026-8090: Use-after-free in the DOM: Networking component
  + CVE-2026-8092: Memory safety bugs fixed in Thunderbird ESR 140.10.2 and 
Thunderbird 150.0.2
  + CVE-2026-8093: Memory safety bugs fixed in Thunderbird 150.0.2
* Sat May 09 2026 Ajrat Makhmutov <rauty@altlinux> 150.0.1-alt2

vector - A lightweight and ultra-fast tool for building observability pipelines 
[121M]
* Tue May 19 2026 Ilya Muhamadeev <nicourced@altlinux> 0.55.0-alt1
- New version.
* Sat Mar 28 2026 Ilya Muhamadeev <nicourced@altlinux> 0.54.0-alt1
- New version.
* Mon Feb 16 2026 Ilya Muhamadeev <nicourced@altlinux> 0.53.0-alt1

Total 20396 source packages.
_______________________________________________
Sisyphus-cybertalk mailing list
[email protected]
https://lists.altlinux.org/mailman/listinfo/sisyphus-cybertalk

Reply via email to