2006-10-17 00:10+0300 (Tue) The current branch of Tukaani Solid is getting to its end. Larhzu has started working on the distro again (focusing on Edge), but it's probable, that he still won't be able to do as much as he liked. :-( Edge should already be pretty stable, and users of Solid should consider migrating to Edge. Edge will be forked to Solid later. There are several security fixes done in Edge, that are not in Solid, and several fixes are pending to be done. Hopefully the distro gets back to the track of fixing security issues very quickly. +--------------------------+ 2006-08-14 19:04+0300 (Mon) ap/clamav-0.88.4-i586-1tukaani.tlz: Upgraded clamav from 0.88.2 to 0.88.4. This was uploaded earlier but Larhzu forgot to run makerepo. Fixes CVE-2006-4018. For more information, see http://www.clamav.net/security/0.88.4.html . (* Security fix *) +--------------------------+ 2006-08-03 20:40+0300 (Thu) l/fribidi-0.10.7-i586-1tukaani.tlz: Added fribidi 0.10.7. Needed by rebuilt Abiword. l/wv2-0.2.3-i586-1tukaani.tlz: Added wv2 0.2.3. (* Security fix *) n/apache-1.3.37-i586-1tukaani.tlz: Upgraded apache from 1.3.36 to 1.3.37. (* Security fix *) n/apache-docs-1.3.37-i586-1tukaani.tlz: Upgraded apache-docs from 1.3.36 to 1.3.37. n/mod_ssl-2.8.28_1.3.37-i586-1tukaani.tlz: Upgraded mod_ssl from 2.8.27_1.3.36 to 2.8.28_1.3.37. xap/abiword-2.2.11-i586-3tukaani.tlz: Rebuilt abiword. Linking statically against wv2 wasn't that great idea after all. xap/xine-lib-1.1.2-i686-1tukaani.tlz: Upgraded xine-lib from 1.1.1 to 1.1.2. (* Security fix *) As everyone following the project has seen, we have been pretty quiet during the Summer. There are quite a few security fixes to be done, but the fact is now that we simply don't have resources to do everything. It seems that most of the security issues won't get fixed in Solid before we sync Solid from Edge. :-( Hopefully the distro gets back to more secure track after the Summer. Remember that this is a hobby project. We haven't lost our interest to distro work, but we like to do several other things too. :-) +--------------------------+ 2006-07-03 01:40+0300 (Mon) There are quite a few important security fixes pending to be done in the Tukaani distribution. During the past weeks, Larhzu has concentrated to LZMA Utils, leaving the distribution temporarily for little attention. Expect fixes at least for kdebase (kdm), arts, wv2 (KWord and Abiword) and OpenOffice.org in the next few days. n/gnupg-1.4.4-i486-1.tlz: Upgraded gnupg from 1.4.2.2 to 1.4.4. Denial of service. CVE-2006-3082 (* Security fix *) ap/mysql-4.1.20-i586-1tukaani.tlz: Upgraded mysql from 4.1.19 to 4.1.20. SQL injection. CVE-2006-2753 (* Security fix *) +--------------------------+ 2006-06-08 00:53+0300 (Thu) a/grep-2.5.1a-i586-1tukaani.tlz: Upgraded grep from 2.5 to 2.5.1a with a bunch of patches from Red Hat. These patches are on their way to upstream, but seems that GNU grep's maintainer has lack of resources to work on grep. :-( New versions are coming, but may take some time. See: http://www.gnu.org/software/grep/devel.html grep is linked statically against libpcre. Since the old grep was linked against old pcre, this package fixes CAN-2005-2491. Exploiting the vulnerability requires that attacker can give his own regex to "grep -P". (* Security fix *) +--------------------------+ 2006-06-03 23:13+0300 (Sat) pasture/mozilla-1.7.13-i586-1tukaani.tlz: Moved from xap/. You should migrate to Seamonkey or Firefox/Thunderbird. Seamonkey isn't in Solid yet though... xap/mozilla-firefox-1.5.0.4-i686-1tukaani.tlz: Upgraded mozilla-firefox from 1.5.0.3 to 1.5.0.4. Fixes multiple vulnerabilities. http://secunia.com/advisories/20376/ (* Security fix *) xap/mozilla-thunderbird-1.5.0.4-i686-1tukaani.tlz: Upgraded mozilla-thunderbird from 1.5.0.2 to 1.5.0.4. Fixes multiple vulnerabilities. http://secunia.com/advisories/20382/ (* Security fix *) +--------------------------+ 2006-05-31 15:52+0300 (Wed) t/tetex-3.0-i486-2.tlz: Rebuilt tetex. Fixes a few security issues and some non-security bugs. This now uses --disable-a4. I think we will build our own TeTex package later, since we prefer A4 as the _default_ paper size. This package also fits better into /opt than /usr. (* Security fix *) t/tetex-doc-3.0-i486-2.tlz: Rebuilt tetex-doc. +--------------------------+ 2006-05-22 22:26+0300 (Mon) n/apache-1.3.36-i586-1tukaani.tlz: Upgraded apache from 1.3.34 to 1.3.36. Fixes a security vulnerability in mod_imap module (maybe someone still uses it). CVE-2005-3352 (* Security fix *) n/apache-docs-1.3.36-i586-1tukaani.tlz: Upgraded apache-docs from 1.3.34 to 1.3.36. n/mod_ssl-2.8.27_1.3.36-i586-1tukaani.tlz: Upgraded mod_ssl from 2.8.25_1.3.34 to 2.8.27_1.3.36. +--------------------------+ 2006-05-06 23:00+0300 (Sat) ap/mysql-4.1.19-i586-1tukaani.tlz: Upgraded mysql from 4.1.16 to 4.1.19. See http://secunia.com/advisories/19929/ for more information. (* Security fix *) n/php-5.1.4-i586-1tukaani.tlz: Upgraded php from 5.1.3 to 5.1.4. Fixes some non-security bugs which were found from 5.1.3. See http://www.php.net/release_5_1_4.php for more information. x/x11-6.8.2-i586-6tukaani.tlz: Patched CVE-2006-1526 (crash or arbitrary code execution). http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1526 (* Security fix *) x/x11-devel-6.8.2-i586-6tukaani.tlz: Patched. +--------------------------+ 2006-05-03 10:35+0300 (Wed) extra/packages/mozilla-firefox-1.5.0.3_fi-i686-1tukaani.tlz: Upgraded mozilla-firefox from 1.5_fi to 1.5.0.3_fi. (* Security fix *) n/php-5.1.3-i586-1tukaani.tlz: Upgraded php from 5.1.2 to 5.1.3. For the list of fixes, see http://www.php.net/release_5_1_3.php . (* Security fix *) xap/mozilla-firefox-1.5.0.3-i686-1tukaani.tlz: Upgraded mozilla-firefox from 1.5.0.2 to 1.5.0.3. See http://www.mozilla.org/projects/security/known-vulnerabilities.html for more information. Mozilla 1.7.x is not affected. (* Security fix *) +--------------------------+ 2006-05-01 21:35+0300 (Mon) a/lzma-4.32.0beta2-i586-1tukaani.tgz: Upgraded lzma from 4.32.0beta1 to 4.32.0beta2. n/irssi-0.8.10_20060326-i586-1tukaani.tlz: Upgraded irssi from 0.8.10_20060217 to 0.8.10_20060326. a/pkgtools-tukaani_1.2.1-i486-1.tgz: Upgraded pkgtools from tukaani_1.2.0rc1_tuk to tukaani_1.2.1. ap/man-1.6c-i586-2tukaani.tlz: Applied a patch from Slackware to fix broken makewhatis. Let's create an ISO9660 image. :-) +--------------------------+ 2006-04-30 12:52+0300 (Sun) ap/clamav-0.88.2-i586-1tukaani.tlz: Upgraded clamav from 0.88.1 to 0.88.2. Fixes a vulnerability in freshclam. http://www.clamav.net/security/0.88.2.html CVE-2006-1989 (* Security fix *) +--------------------------+ 2006-04-29 00:13+0300 (Sat) a/aaa_elflibs-tukaani_1.0.1-i586-1tukaani.tlz: Updated the initial set of shared libraries. In most cases it is safe to upgrade aaa_elflibs but only if you do it *now*, not after newer package updates have been anounced in Tukaani Solid. l/libtiff-3.8.2-i486-1.tlz: Upgraded libtiff from 3.7.3 to 3.8.2. Fixes DoS (crash) bugs which might allow code execution. CVE-2006-2024 CVE-2006-2025 CVE-2006-2026 (* Security fix *) +--------------------------+ 2006-04-22 23:17+0300 (Sat) extra/packages/mozilla-devel-1.7.13-i586-1tukaani.tlz: Upgraded mozilla-devel from 1.7.12 to 1.7.13. xap/mozilla-1.7.13-i586-1tukaani.tlz: Upgraded mozilla from 1.7.12 to 1.7.13. (* Security fix *) +--------------------------+ 2006-04-20 23:44+0300 (Thu) ap/cups-1.1.23-i586-3tukaani.tlz: Applied a dozen of patches. Roughly a half of them are for Xpdf security issues, the rest are bug fixes of which some are already fixed upstream. Patches are from Fedora Core 4. (* Security fix *) ap/joe-3.3-i486-1.tlz: Added joe 3.3. xap/mozilla-firefox-1.5.0.2-i686-1tukaani.tlz: Upgraded mozilla-firefox from 1.5.0.1 to 1.5.0.2. Fixes a bunch of security issues of which some could allow execution of arbitrary code. (* Security fix *) xap/mozilla-thunderbird-1.5.0.2-i686-1tukaani.tlz: Upgraded mozilla-thunderbird from 1.5 to 1.5.0.2. As of writing there is no official announcement of Thunderbird 1.5.0.2, but this clearly looks like a security update. Keep eye on http://www.mozilla.org/projects/security/known-vulnerabilities.html if you are interested in details. (* Security fix *) xap/xzgv-0.8-i586-3tukaani.tlz: Patched a heap overflow which could be exploited by viewing a JPEG image within the CMYK/YCCK color space. Patch from SUSE 10.0 with tiny modifications. CVE-2006-1060 (* Security fix *) Security fix for Mozilla suite should get into Tukaani Solid hopefully tomorrow. We are aware that there are many small security issues in the Linux kernel we are shipping. It will be upgraded once we get the new udev rules and rc-scripts finalized. At the same time we will get rid of hotplug with Linux 2.6 (hotplug will remain in Tukaani for those who use Linux 2.4). +--------------------------+ 2006-04-08 00:59+0300 (Sat) xap/rxvt-unicode-7.7-i586-2tukaani.tlz: Rebuilt rxvt-unicode because of the Perl upgrade. Did I miss anything else? Note that even when I speak in the first person, there are lots of packs made and maintained by other Tukaani developers, and of course packs from Slackware as is. So thanks to everyone! :-) -- Larhzu +--------------------------+ 2006-04-07 20:52+0300 (Fri) It's time for a major upgrade in Solid again. I know this looks a bit hazardous, but I have tried to be careful. :-) Some essential things you should be aware: * cxxlibs is replaced by gcc-solibs. Install gcc-solibs BEFORE removing cxxlibs! * There is new package, old-solibs, which contains old versions of certain shared libraries, which previously were included in the same package with the newer library. E.g. readline contained libreadline.so.5.1 and libreadline.so.4.3, of which the latter is now moved to old-solibs. Some of these old versions are currently included in aaa_elflibs too, but we are going to get rid of aaa_elflibs package some day anyway. * New Perl requires recompiling apps linking to Perl. * New ImageMagick introduces a major shared library version change, thus apps linking against ImageMagick need to be recompiled. * There are a few security fixes. I know I could have been faster at releasing these, since I like to prioritise security updates. :-/ * Most of the packs marked as "rebuilt" are simply replaced with packages taken from Slackware. extra/packages/imagemagick-6.2.6_8_no_x11-i586-1tukaani.tlz: Upgraded imagemagick from 6.2.3_6_no_x11 to 6.2.6_8_no_x11. See notes of with_x11 package. (* Security fix *) a/cxxlibs-6.0.3-i486-5tukaani.tlz: Removed cxxlibs. This is replaced by gcc-solibs. Be careful and install gcc-solibs before removing cxxlibs. a/gawk-3.1.5-i486-2.tlz: Rebuilt gawk. a/gcc-solibs-3.4.6-i586-2tukaani.tlz: Added gcc-solibs 3.4.6. This replaces cxxlibs. You should install gcc-solibs before removing cxxlibs. (I think I repeated enough now.) The difference is that gcc-solibs contains runtime libraries for Fortran and Objective-C programs too. Ancient C++ shared libs have been moved to old-solibs package. a/gettext-0.14.5-i486-1.tlz: Rebuilt gettext. a/mdadm-2.3.1-i486-1.tlz: Upgraded mdadm from 2.1 to 2.3.1. a/mkinitrd-1.0.1-i486-3.tlz: Rebuilt mkinitrd. a/procps-3.2.6-i486-1.tlz: Upgraded procps from 3.2.5 to 3.2.6. a/sed-4.1.5-i486-1.tlz: Rebuilt sed. ap/bc-1.06-i486-3.tlz: Rebuilt bc. ap/clamav-0.88.1-i586-1tukaani.tlz: Upgraded clamav from 0.88 to 0.88.1. Fixes a few critical vulnerabilities. CVE-2006-1614, CVE-2006-1615, CVE-2006-1630 (* Security fix *) ap/dvd+rw-tools-6.1-i486-1.tlz: Upgraded dvd+rw-tools from 5.21.4.10.8 to 6.1. ap/gutenprint-5.0.0_rc2-i586-1tukaani.tlz: Upgraded gutenprint from 5.0.0_rc1 to 5.0.0_rc2. ap/man-1.6c-i586-1tukaani.tlz: Upgraded man from 1.6b to 1.6c. ap/man-pages-2.28-noarch-1tukaani.tlz: Upgraded man-pages from 2.23 to 2.28. ap/rzip-2.1-i486-1.tlz: Upgraded rzip from 2.0 to 2.1. ap/tcsh-6.14.00-i486-2.tlz: Rebuilt tcsh. ap/texinfo-4.8-i586-3tukaani.tlz: Upgraded pinfo from 0.6.8 to 0.6.9. d/automake-1.9.6-noarch-1.tlz: Rebuilt automake. d/bison-2.1-i486-1.tlz: Rebuilt bison. d/clisp-2.38-i486-2.tlz: Upgraded clisp from 2.35 to 2.38. d/doxygen-1.4.6-i486-1.tlz: Rebuilt doxygen. d/gdb-6.4-i486-1.tlz: Upgraded gdb from 6.3 to 6.4. d/gettext-tools-0.14.5-i486-1.tlz: Rebuilt gettext-tools. d/guile-1.6.7-i486-2.tlz: Rebuilt guile. d/libtool-1.5.22-i486-1.tlz: Rebuilt libtool. d/m4-1.4.4-i486-1.tlz: Rebuilt m4. d/mono-1.1.13.4-i586-1tukaani.tlz: Upgraded mono from 1.1.12.1 to 1.1.13.4. d/monodoc-1.1.13-i586-1tukaani.tlz: Upgraded monodoc from 1.1.11 to 1.1.13. d/nasm-0.98.39-i486-1.tlz: Added nasm 0.98.39. d/oprofile-0.9.1-i586-4tukaani.tlz: Rebuilt oprofile. d/perl-5.8.8-i486-1.tlz: Upgraded perl from 5.8.7 to 5.8.8. Fixes an integer overflow error which can lead to a DoS or allow execution of arbitrary code. CVE-2005-3962 (* Security fix *) d/pkgconfig-0.20-i486-1.tlz: Rebuilt pkgconfig. d/strace-4.5.14-i486-1.tlz: Upgraded strace from 4.5.4 to 4.5.14. emu/qemu-0.8.0-i486-1tukaani.tlz: Upgraded qemu from 0.7.2 to 0.8.0. emu/wine-0.9.11-i586-1tukaani.tlz: Upgraded wine from 0.9.8 to 0.9.11. kde/kdebindings-3.4.3-i586-3tukaani.tlz: Rebuilt kdebindings. kde/koffice-1.4.2-i586-2tukaani.tlz: Rebuilt against newer ImageMagick. l/glib2-2.10.1-i586-1tukaani.tlz: Upgraded glib2 from 2.8.6 to 2.10.1. l/gmp-4.1.4-i486-3.tlz: Rebuilt gmp. l/gtk+2-2.8.16-i586-1tukaani.tlz: Upgraded gtk+2 from 2.8.12 to 2.8.16. This package currently includes: * GTK+ 2.8.16 * Pango 1.12.0 * ATK 1.10.3 * Cairo 1.0.4 * Clearlooks 0.6.2 (theme) In the future, libglade will be merged to the gtk+2 package. l/libidn-0.6.2-i586-1tukaani.tlz: Upgraded libidn from 0.5.17 to 0.6.2. l/librsvg-2.14.3-i586-1tukaani.tlz: Upgraded librsvg from 2.12.7 to 2.14.3. l/libxml2-2.6.23-i486-1.tlz: Upgraded libxml2 from 2.6.22 to 2.6.23. l/old-solibs-20060327-i586-1tukaani.tlz: Added old-solibs 20060327. This package contains shared libraries which should be no longer needed by any package in the Tukaani distribution. However, many older third party packages link against these, so check this out if you seem to be missing some library. l/pygtk-2.8.5-i586-1tukaani.tlz: Upgraded pygtk from 2.8.2 to 2.8.5. l/readline-5.1-i586-3tukaani.tlz: Applied official patches 001-004. The package no longer includes libreadline.so.4.3, it is now in old-solibs. l/taglib-1.4-i486-2.tlz: Rebuilt taglib. l/xiphlibs-1.1.3-i586-2tukaani.tlz: Patched a few bugs from libao. l/xiphlibs-doc-1.1.3-noarch-2tukaani.tlz: Rebuilt xiphlibs-doc. n/bind-9.3.2-i486-3.tlz: Upgraded bind from 9.3.1 to 9.3.2. n/gnutls-1.2.10-i586-1tukaani.tlz: Upgraded gnutls from 1.2.9 to 1.2.10. Fixes a DoS vulnerability in libtasn1, which is part of this package. CVE-2006-0645 (* Security fix *) n/iptables-1.3.5-i486-1.tlz: Upgraded iptables from 1.3.4 to 1.3.5. n/irssi-0.8.10_20060217-i586-2tukaani.tlz: Rebuilt irssi. n/lftp-3.4.4-i586-1tukaani.tlz: Upgraded lftp from 3.3.5 to 3.4.4. n/mutt-1.4.2.1i-i486-2.tlz: Added mutt 1.4.2.1i. n/pine-4.64-i486-2.tlz: Rebuilt pine. n/samba-3.0.22-i586-1tukaani.tlz: Upgraded samba from 3.0.21b to 3.0.22. Fixes a security issue in winbindd which could write the machine trust account credentials to a world-readable log file, if log level has been set to 5 or higher. CVE-2006-1059 (* Security fix *) n/tcpdump-3.9.4-i486-2.tlz: Rebuilt tcpdump. n/vsftpd-2.0.4-i486-1.tlz: Upgraded vsftpd from 2.0.3 to 2.0.4. n/wget-1.10.2-i486-2.tlz: Rebuilt wget. n/whois-4.7.11-i486-1.tlz: Added whois 4.7.11. xap/abiword-2.2.11-i586-2tukaani.tlz: Rebuilt abiword. xap/fluxbox-0.9.14-i486-1.tlz: Rebuilt fluxbox. xap/fvwm-2.4.19-i486-5.tlz: Rebuilt fvwm. xap/gaim-1.5.0-i586-2tukaani.tlz: Rebuilt gaim. This package is built without Perl, Tcl and Tk support. I apologize that I did this without warning first. There were some issues with Perl components, which *might* be because we have Slackware's Perl package but GCC is nowadays i586-tukaani-linux-gnu instead of i486-slackware-linux. Other packs seem to build fine against the new Perl. The positive side is that disabling Perl, Tcl and Tk support made the gaim package 500 KiB smaller, so I'm going to keep them disabled as long as someone complains. xap/gftp-2.0.18-i486-2.tlz: Rebuilt gftp. xap/imagemagick-6.2.6_8_with_x11-i586-1tukaani.tlz: Upgraded imagemagick from 6.2.3_6_with_x11 to 6.2.6_8_with_x11. This introduces a major library version change thus all the applications linking against ImageMagick has to be rebuilt. Fixes security vulnerabilities which can be exploited if attacker can control names of the input files. CVE-2005-4601, CVE-2006-0082 (* Security fix *) xap/mplayerplug-in-3.21-i586-1tukaani.tlz: Upgraded mplayerplug-in from 3.11 to 3.21. xap/opera-8.54-i386-1tukaani.tlz: Upgraded opera from 8.52 to 8.54. Translations seem to work again. xap/rxvt-unicode-7.7-i586-1tukaani.tlz: Upgraded rxvt-unicode from 7.6 to 7.7. xap/sane-1.0.17-i486-1.tlz: Upgraded sane from 1.0.15 to 1.0.17. xap/xchat-2.6.2-i586-1tukaani.tlz: Upgraded xchat from 2.6.1 to 2.6.2. xap/xfce-4.2.3.2-i486-1.tlz: Rebuilt xfce. xap/xine-ui-0.99.4-i686-2.tlz: Rebuilt xine-ui. y/gnuchess-5.07-i486-2.tlz: Rebuilt gnuchess. +--------------------------+ 2006-03-27 21:11+0300 (Mon) extra/packages/tukbuild-2.3-noarch-1tukaani.tgz: Upgraded tukbuild from 2.2 to 2.3. a/glibc-solibs-2.3.6-i486-2tukaani.tlz: Upgraded glibc-solibs from 2.3.5 to 2.3.6. This package replaces the cxxlibs package. The cxx libs package will be removed from Solid in next repository update. The glibc-solibs package doesn't include the very old C++ libraries, but they will be included in the old-solibs package which will be added on next update. a/tar-1.15.1-i586-5tukaani.tlz: Patched a bug in large file support with sparse files. This has been fixed in most other distros ages ago. d/binutils-2.16.91.0.7-i586-1tukaani.tlz: Upgraded binutils from 2.16.91.0.5 to 2.16.91.0.7. d/gcc-3.4.6-i586-1tukaani.tlz: Upgraded gcc from 3.4.5 to 3.4.6. d/gcc-g++-3.4.6-i586-1tukaani.tlz: Upgraded gcc-g++ from 3.4.5 to 3.4.6. d/gcc-g77-3.4.6-i586-1tukaani.tlz: Upgraded gcc-g77 from 3.4.5 to 3.4.6. d/gcc-gnat-3.4.6-i586-1tukaani.tlz: Upgraded gcc-gnat from 3.4.5 to 3.4.6. d/gcc-java-3.4.6-i586-1tukaani.tlz: Upgraded gcc-java from 3.4.5 to 3.4.6. d/gcc-objc-3.4.6-i586-1tukaani.tlz: Upgraded gcc-objc from 3.4.5 to 3.4.6. l/glibc-devel-2.3.6-i486-2tukaani.tlz: Upgraded glibc-devel from 2.3.5 to 2.3.6. l/glibc-i18n-2.3.6-noarch-2tukaani.tlz: Upgraded glibc-i18n from 2.3.5 to 2.3.6. l/glibc-profile-2.3.6-i486-2.tlz: Upgraded glibc-profile from 2.3.5 to 2.3.6. n/curl-7.15.3-i586-1tukaani.tlz: Upgraded curl from 7.15.1 to 7.15.3. Fixes a heap overflow vulnerability, which might allow execution of arbitrary code. (* Security fix *) ooo/openoffice2-2.0.2-i586-1tukaani.tlz: Upgraded openoffice2 from 2.0.1 to 2.0.2. ooo/openoffice2-menus-2.0.2-i586-1tukaani.tlz: Upgraded openoffice2-menus from 2.0.1 to 2.0.2. ooo/openoffice2-i18n-*-2.0.2-i586-1tukaani.tlz: Upgraded language packages. +--------------------------+ 2006-03-11 00:39+0200 (Sat) a/tar-1.15.1-i586-4tukaani.tlz: Patched a buffer overflow. CVE-2006-0300 (* Security fix *) n/gnupg-1.4.2.2-i586-1tukaani.tlz: Upgraded gnupg from 1.4.2.1 to 1.4.2.2. Fixes CVE-2006-0049. For detailed explanation, see: http://lists.gnupg.org/pipermail/gnupg-announce/2006q1/000216.html (* Security fix *) n/irssi-0.8.10_20060217-i586-1tukaani.tlz: Upgraded irssi from 0.8.10 to 0.8.10_20060217. Includes a few bug fixes from SVN repository. Probably the most annoying of the fixed bugs is broken nick completion when using a multibyte terminal. n/postfix-2.2.9-i586-1tukaani.tlz: Upgraded postfix from 2.2.8 to 2.2.9. xap/psi-0.10-i586-1tukaani.tlz: Added Psi 0.10, a Jabber instant messaging client. Needs Qt but not KDE. +--------------------------+ 2006-02-24 21:10+0200 (Fri) xap/mozilla-thunderbird-1.5-i686-1.tlz: Upgraded mozilla-thunderbird from 1.0.7 to 1.5. Fixes a few vulnerabilities. I had forgot to upload Thunderbird to Edge earlier, sorry. The package has been in Slackware quite long, so it should be stable. (* Security fix *) +--------------------------+ 2006-02-20 23:39+0200 (Mon) a/sed-4.1.5-i586-1tukaani.tlz: Upgraded sed from 4.1.4 to 4.1.5. ap/man-pages-2.23-noarch-1tukaani.tlz: Upgraded man-pages from 2.20 to 2.23. emu/wine-0.9.8-i586-1tukaani.tlz: Upgraded wine from 0.9.4 to 0.9.8. kde/kdegraphics-3.4.3-i586-5tukaani.tlz: kpdf/Xpdf fix once again. (* Security fix *) l/glib2-2.8.6-i586-1tukaani.tlz: Upgraded glib2 from 2.8.5 to 2.8.6. l/gtk+2-2.8.12-i586-1tukaani.tlz: Upgraded gtk+2 from 2.8.11 to 2.8.12. l/pcre-6.6-i586-1tukaani.tlz: Upgraded pcre from 6.4 to 6.6. n/gnupg-1.4.2.1-i586-1tukaani.tlz: Upgraded gnupg from 1.4.2 to 1.4.2.1. gpgv could return good exit status even when signature wasn't known to be good. Tukaani pkgtools use gpgv to verify signatures, thus this can be taken to be an important fix. (* Security fix *) n/openssh-4.3p2-i586-1tukaani.tlz: Upgraded openssh from 4.2p1 to 4.3p2. Fixes scp command execution vulnerability (CVE-2006-0225). (* Security fix *) n/php-5.1.2-i486-1tukaani.tlz: Upgraded php from 5.1.1 to 5.1.2. (* Security fix *) n/samba-3.0.21b-i586-1tukaani.tlz: Upgraded samba from 3.0.20b to 3.0.21b. OpenLDAP was added to Slackware Current recently, but it won't be included in Tukaani unless users request it. xap/opera-8.52-i386-1tukaani.tlz: Upgraded opera from 8.51 to 8.52. xap/rxvt-unicode-7.6-i586-1tukaani.tlz: Upgraded rxvt-unicode from 6.3 to 7.6. xap/xpdf-3.01-i486-3.tlz: Upgraded xpdf from 3.01pl1 to 3.01pl2. Fixes multiple vulnerabilities. (* Security fix *) +--------------------------+ 2006-02-04 21:58+0200 (Sat) xap/mozilla-firefox-1.5.0.1-i686-1tukaani.tlz: Upgraded mozilla-firefox from 1.5 to 1.5.0.1. This is a bugfix release fixing many security vulnerabilities of which some are critical. (* Security fix *) +--------------------------+ 2006-02-01 01:00+0200 (Wed) kde/kdegraphics-3.4.3-i586-4tukaani.tlz: Patched latest kpdf/Xpdf vulnerabilities. (* Security fix *) kde/kdelibs-3.4.3-i586-3tukaani.tlz: Patched a vulnerability in kjs (boundary error decoding UTF-8 URI sequences); CVE-2006-0019. (* Security fix *) l/gtk+2-2.8.11-i586-1tukaani.tlz: Upgraded gtk+2 from 2.8.10 to 2.8.11. Avoid memory overruns in the pixbuf theme engine. (* Security fix *) +--------------------------+ 2006-01-18 00:30+0200 (Wed) ap/clamav-0.88-i586-1tukaani.tlz: Upgraded clamav from 0.87.1 to 0.88. This fixes UPX compressed file heap buffer overflow vulnerability. (* Security fix *) l/glib2-2.8.5-i586-1tukaani.tlz: Upgraded glib2 from 2.8.4 to 2.8.5. The new glib2 package is required by gtk+2-2.8.10. l/gtk+2-2.8.10-i586-1tukaani.tlz: Upgraded gtk+2 from 2.8.9 to 2.8.10. xap/rxvt-unicode-6.3-i586-2tukaani.tlz: Upgraded rxvt-unicode from 6.2 to 6.3. xap/scribus-1.2.4.1-i586-1tukaani.tlz: Upgraded scribus from 1.2.3 to 1.2.4.1. xap/xchat-2.6.1-i586-1tukaani.tlz: Upgraded xchat from 2.6.0 to 2.6.1. +--------------------------+ 2006-01-05 01:02+0200 (Wed) Greetings! After many delays and mispredicted schedules, the stable branch of Tukaani distribution, called Tukaani Solid, has now been officially released. The full ISO9660 image, updated netinstall ISO9660 image and floppy images will be released a few days later. Please note that not all the packages in Tukaani Solid are the latest versions available upstream. This is primarily for stability reasons; we haven't tested the newer packs enough yet or they e.g. require recompiling many other packages because of major library version changes. If you want the latest version of some application or library, check out Tukaani Edge to see if we have already built a package from it. Sometimes we miss releases of new versions, so feel free to remind us to update the packages. (IRC is our preferred way of communication.) There are also a few packages that will be added sooner or later, but are currently missing from both Solid and Edge; e.g. SpamAssassin, Amavisd-new, xinetd, a2ps and lots of fonts. Happy New Year, Lasse "Larhzu" Collin and other Tukaani developers The following packages have been taken from Slackware Current 2005-11-07 as is, except that they have been recompressed with LZMA. That is, the uncompressed tarball is identical. Not all of the packages reside in the same diskset as in Slackware. a/acpid-1.0.4-i486-2.tlz a/apmd-3.0.2-i386-1.tlz a/devs-2.3.1-noarch-22.tlz a/e2fsprogs-1.38-i486-2.tlz a/elvis-2.2_0-i486-2.tlz a/gawk-3.1.5-i486-1.tlz a/genpower-1.0.3-i486-1.tlz a/getty-ps-2.1.0b-i486-1.tlz a/gpm-1.19.6-i486-6.tlz a/grep-2.5-i386-2.tlz a/hdparm-6.1-i486-1.tlz a/hotplug-2004_09_23-noarch-5.tlz a/isapnptools-1.26-i386-1.tlz a/jfsutils-1.1.8-i486-1.tlz a/kbd-1.12-i486-2.tlz a/logrotate-3.6.8-i486-1.tlz a/mdadm-2.1-i486-1.tlz a/mkinitrd-1.0.1-i486-2.tlz a/pciutils-2.1.11-i486-6.tlz a/pcmcia-cs-3.2.8-i486-1.tlz a/procps-3.2.5-i486-1.tlz a/reiserfsprogs-3.6.19-i486-1.tlz a/sysklogd-1.4.1-i486-9.tlz a/syslinux-2.13-i486-1.tlz a/udev-064-i486-2.tlz a/usbutils-0.11-i486-3.tlz a/utempter-1.1.3-i486-1.tlz a/util-linux-2.12p-i486-2.tlz ap/acct-6.3.2-i386-1.tlz ap/at-3.1.8-i486-2.tlz ap/bc-1.06-i386-2.tlz ap/bpe-2.01.00-i486-1.tlz ap/cdparanoia-IIIalpha9.8-i386-1.tlz ap/cdrtools-2.01-i486-1.tlz ap/diffutils-2.8.1-i386-1.tlz ap/dvd+rw-tools-5.21.4.10.8-i486-1.tlz ap/gnu-gs-fonts-6.0-noarch-1.tlz ap/infozip-5.52-i486-1.tlz ap/ispell-3.2.06-i386-1.tlz ap/jed-0.99_16-i486-1.tlz ap/jove-4.16.0.61-i386-1.tlz ap/lvm-1.0.8-i486-1.tlz ap/madplay-0.15.2b-i486-1.tlz ap/mc-4.6.1-i486-1.tlz ap/most-4.9.5-i486-1.tlz ap/mpg321-0.2.10-i486-2.tlz ap/mt-st-0.7-i386-1.tlz ap/normalize-0.7.6-i486-1.tlz ap/quota-3.12-i486-1.tlz ap/rzip-2.0-i486-2.tlz ap/screen-4.0.2-i486-1.tlz ap/sgml-tools-1.0.9-i486-12.tlz ap/tcsh-6.14.00-i486-1.tlz ap/workbone-2.40-i386-3.tlz ap/zsh-4.2.5-i486-1.tlz d/autoconf-2.59-noarch-1.tlz d/bin86-0.16.15-i486-1.tlz d/ccache-2.4-i486-1.tlz d/clisp-2.35-i486-1.tlz d/cscope-15.5-i486-2.tlz d/cvs-1.11.21-i486-1.tlz d/flex-2.5.4a-i486-3.tlz d/gdb-6.3-i486-1.tlz d/guile-1.6.7-i486-1.tlz d/indent-2.2.9-i386-1.tlz d/kernel-headers-2.6.13-i386-1.tlz d/make-3.80-i386-1.tlz d/perl-5.8.7-i486-1.tlz d/rcs-5.7-i386-1.tlz d/strace-4.5.4-i486-1.tlz l/aspell-0.60.2-i486-1.tlz l/aspell-en-6.0_0-noarch-3.tlz l/audiofile-0.2.6-i486-1.tlz l/esound-0.2.36-i486-1.tlz l/expat-1.95.8-i486-1.tlz l/gdbm-1.8.3-i486-3.tlz l/glib-1.2.10-i386-2.tlz l/glibc-profile-2.3.5-i486-5.tlz l/glut-3.7-i486-1.tlz l/gtk+-1.2.10-i386-3.tlz l/lesstif-0.94.4-i486-1.tlz l/libart_lgpl-2.3.17-i486-1.tlz l/libglade-2.4.2-i486-1.tlz l/libgtkhtml-2.6.3-i486-1.tlz l/libid3tag-0.15.1b-i486-1.tlz l/libidl-0.8.5-i486-1.tlz l/libidn-0.5.17-i486-1.tlz l/libieee1284-0.2.10-i486-1.tlz l/libjpeg-6b-i386-4.tlz l/libmad-0.15.1b-i486-1.tlz l/libmikmod-3.1.11a-i486-1.tlz l/libpng-1.2.8-i486-1.tlz l/libtermcap-1.2.3-i486-6.tlz l/libusb-0.1.8-i486-1.tlz l/libwmf-0.2.8.3-i486-1.tlz l/libxml2-2.6.22-i486-1.tlz l/libxslt-1.1.15-i486-1.tlz l/mhash-0.9.2-i486-1.tlz l/popt-1.7-i386-1.tlz l/shared-mime-info-0.16-i486-1.tlz l/slang-1.4.9-i486-1.tlz l/startup-notification-0.8-i486-1.tlz l/svgalib-1.4.3-i386-2.tlz l/t1lib-5.1.0-i486-1.tlz l/xaw3d-1.5-i386-3.tlz l/zlib-1.2.3-i486-1.tlz n/bind-9.3.1-i486-1.tlz n/cyrus-sasl-2.1.21-i486-1.tlz n/dhcp-3.0.3-i486-1.tlz n/dhcpcd-1.3.22pl4-i486-2.tlz n/imapd-4.64-i486-1.tlz n/nc-1.10-i386-1.tlz n/netpipes-4.2-i386-1.tlz n/nmap-3.93-i486-1.tlz n/pine-4.64-i486-1.tlz n/popa3d-1.0-i486-1.tlz n/rsync-2.6.6-i486-1.tlz n/samba-3.0.20b-i486-1.tlz n/tcpdump-3.9.4-i486-1.tlz n/vsftpd-2.0.3-i486-1.tlz n/wget-1.10.2-i486-1.tlz n/yptools-2.9-i486-1.tlz t/tetex-3.0-i486-1.tlz t/tetex-doc-3.0-noarch-1.tlz t/transfig-3.2.4-i386-1.tlz t/xfig-3.2.3d-i386-1.tlz tcl/expect-5.43.0-i486-1.tlz tcl/hfsutils-3.2.6-i486-3.tlz tcl/tclx-8.3.5-i386-1.tlz tcl/tix-8.1.4-i386-1.tlz xap/fvwm-2.4.19-i486-4.tlz xap/gftp-2.0.18-i486-1.tlz xap/gkrellm-2.2.7-i486-1.tlz xap/gnuplot-4.0.0-i486-1.tlz xap/gv-3.5.8-i386-1.tlz xap/mozilla-firefox-1.5-i686-1.tlz: xap/mozilla-thunderbird-1.0.7-i686-1.tlz xap/rxvt-2.7.10-i486-2.tlz xap/sane-1.0.15-i486-1.tlz xap/xine-ui-0.99.4-i686-1.tlz xap/xsane-0.97-i486-1.tlz xap/xscreensaver-4.22-i486-2.tlz y/bsd-games-2.13-i386-6.tlz y/gnuchess-5.07-i486-1.tlz extra/packages/gimp-help-2-0.8-noarch-1.tlz extra/packages/libwmf-docs-0.2.8.3-noarch-1.tlz I assume the more interesting thing is what has been changed in Tukaani compared to Slackware. Like the package list above, also the changes listed below are against Slackware Current 2005-11-07. a/aaa_base-tukaani_1.0.0-noarch-2.tlz: * Added /etc/tukaani-version. * The doinst.sh script will move /usr/{info,man,doc} to /usr/share/{info,man,doc}. The same is done for /usr/local too. Putting these to share/ instead of the old location is more compliant with recent FHS than the old location. Symlinks will be created to /usr, and they will point to the new locations to keep maximum compatiblity. a/aaa_elflibs-tukaani_1.0.0-i586-2tukaani.tlz: * Updated the shared libraries from other packages. * Some libs were removed, such as ncurses which is now in a/. a/bash-3.1-i586-1tukaani.tlz: Upgraded from 3.0.16 to 3.1. a/bin-10.2.1-i486-1tukaani.tlz: * Upgraded sharutils from 4.2.1 to 4.5.1. (* Security fix *) * Upgraded dosfstools from 2.10 to 2.11. * Replaced obsolete rpm2targz with a script calling convertpkg, and removed rpmoffset, which was used by the old rpm2targz. * Removed historic tools such as `compress', `lha', `unarj' and `zoo'. Some of them have security issues such as directory traversals, and we really aren't interested in supporting them, because the number of users is close to zero. a/busybox-1.01-i486-1tukaani.tlz: Added statically linked BusyBox. This is extremely valuable if you break your installation badly, especially glibc. Slackware users can download a .tgz package from http://www.linuxpackages.net/pkg_details.php?id=7445 (and no whines about the quality of Linuxpackages.net; that is the very same package that is in Tukaani packaged by Larhzu, but in .tgz format). a/bzip2-1.0.3-i486-4tukaani.tlz: In addition to compiling bzlib with large file support as done in Slackware after the 10.2 release, missing symlinks to bzegrep->bzgrep and bzfgrep->bzgrep were added. a/coreutils-5.93-i486-1tukaani.tlz: Upgraded coreutils from 5.2.1 to 5.93. a/cxxlibs-6.0.3-i486-5tukaani.tlz: Added libstdc++.so.6 from GCC 3.4.5. a/dcron-2.3.3-i486-1tukaani.tlz: * Allow only the group `users' and root to use `crontab', which is a setuid root binary. * Very minor change to how root's crontab entry is copied. a/etc-5.1-noarch-3tukaani.tlz: * Added users: apche, postfix, clamav and spammassassin * Added groups: apache, postdrop, postfix, clamav and spammassassin * Do not include current directory in PATH * Added -ic to `LESS' environment variable. This makes the `less' case insensitive when searching using the `/' command. * Search /opt/*/etc/profile.d/*.sh (or *.csh if `csh.login') in addition to /etc/profile.d/. This allows us to make packages that don't put even a single file outside /opt. * Added aliases for `rm', `chmod' and `chown', which add the option --preserve-root. This hopefully prevents some accidents. See "info coreutils treating" for more information. This is not perfect yet since the aliases are lost if user uses `su' instead of `su -' to login as root. * etc/inputrc: Added Home and End keys for rxvt; Meta-Left and Meta-Right move cursor one word left/right in many terminals. Added Meta-Up and Meta-Down to search history. a/findutils-4.2.27-i586-1tukaani.tlz: Upgraded from 4.1.7 to 4.2.27. a/floppy-5.5-i486-1tukaani.tlz: Upgraded floppy from 5.4 to 5.5 and mtools from 3.9.8 to 3.9.10. a/gettext-0.14.5-i486-1tukaani.tlz: Upgraded gettext from 0.14.3 to 0.14.5. a/glibc-solibs-2.3.5-i486-5tukaani.tlz: Repackaged Slackware's glibc. This should make it a little bit more clear which glibc packages the user should install. List of changes in packaging compared to Slackware: * glibc-solibs: Added {,usr/}{bin,sbin} from the huge glibc package. Includes also the files from Slackware's glibc-zoneinfo. The glibc-solibs package is now *always* required for a functional system. * glibc-i18n: Added usr/share/locale/*/libc.mo. This package provides support for locales other than US English. * glibc-profile: Included as is. If you don't know what this is for, you can be sure that you don't need it. ;-) * glibc-devel: Everything that was left over. Required if you compile any applications. a/gzip-1.3.3-i486-2tukaani.tgz: * Fixed a few security issues and some non-security bugs using patches taken from Red Hat. CVE references: CAN-2005-0758, CAN-2005-0988, CAN-2005-1228, CAN-2003-0367, CAN-2004-0970 * Added symlink uncompress->gzip because `uncompress' is no longer a part of Tukaani. (* Security fix *) a/kernel-desktop-2.6.14.5-pentium2-1tukaani.tlz: In Tukaani, we ship two kernel images. kernel-desktop is a preemptible kernel targeted for normal desktop usage. Note that this kernel image requires Pentium II or compatible processor, including all AMD Athlons, Intel Pentiums and Celerons except Pentium Classic, Pentium MMX and Pentium Pro. This kernel image will *not* work on Pentium Classic, Pentium MMX or Pentium Pro. a/kernel-generic-2.6.14.5-i486-1tukaani.tlz: In Tukaani, we ship two kernel images. kernel-generic is meant for all servers and older desktops which are not supported by kernel-desktop. NOTE: Although Tukaani doesn't include Linux 2.4 kernel, we are _not_ dropping support for 2.4 for any time soon (initscripts, glibc etc.); you just need to compile one yourself or use a package from Slackware. a/less-394-i586-1tukaani.tlz: Upgraded `less' from 382 to 394. Added LZMA related commands to lesspipe.sh. a/lilo-22.7.1-i486-1tukaani.tlz: Upgraded LILO from 22.5.9 to 22.7.1. liloconfig changes: * Autodetect initrd.gz and add an appropriate initrd line to lilo.conf. * MBR as the default installation target * Fixed a bug that no one probably hits in practice. ;-) The test below doesn't work as it was intended, because the shell strips trailing newlines from the commands output. probe() { [ ! -z "`dd if=$1 bs=1 count=1 2>/dev/null | tr '\0' x`" ] return } * Support for installing GRUB in the installer instead of LILO will be added when I have time. Currently, there are quite a few more important things to be done before that. a/lzma-4.32.0beta1-i586-1tukaani.tgz: Added LZMA utils 4.32.0beta1. The word `beta' exists in the version number because our frontend for the (de)compression code is not completely finished yet. The compression code itself is from LZMA SDK (http://7-zip.org/sdk.html) which has been stable for over a year. a/module-init-tools-3.2.2-i486-1tukaani.tlz: Upgraded module-init-tools from 3.1 to 3.2.2. a/ncurses-5.5-i586-2tukaani.tlz: * Upgraded ncurses from 5.4 to 5.5. * Moved terminfo files from /usr/share/terminfo to /lib/terminfo like they are e.g. in Debian. * Added terminfo entry for rxvt-unicode. a/openssl-solibs-0.9.8a-i486-1tukaani.tlz: Upgraded OpenSSL from 0.9.7g to 0.9.8a. This is a new major release which breaks ABI (binary) compatibility in some places e.g. with OpenSSH and mod_ssl. a/pkgtools-tukaani_1.2.0rc1_tuk-i486-1.tgz: Tons of changes, like support for LZMA compressed packages (.tlz), network support, and major speed improvements. See the CHANGES file in the package for more details. a/sed-4.1.4-i486-2tukaani.tlz: Upgraded GNU sed from 4.0.9 to 4.1.4. a/shadow-4.0.7-i486-2tukaani.tlz: * Upgraded shadow from 4.0.3 to 4.0.7. This package is already quite old, since shadow 4.1.14 is already out. * Compiled against cracklib and included a basic dictionary. This prevents users from choosing the simplest passwords based on dictionary words. The feature can be disabled by editing /etc/login.defs setting `CRACKLIB_PATH' (comment the line to disable cracklib usage). * Future plans for the shadow package: The dictionary used by cracklib will be split to a separate package `shadow-dictionary'. Debian has many big wordlist packages, which we will combine and package in cracklib's format. The size of the wordlists is quite big (about 28 MiB in cracklib's format). Not everyone wants to have that installed. a/slocate-2.7-i486-1tukaani.tlz: * Added nice -n +19 to etc/cron.daily/slocate. * Patched CAN-2003-0848: 'slocate' sgid privileges are now dropped when searching databases that are not part of the 'slocate' group. This will prevent malicious user supplied databases from giving access to the 'slocate' group. Patch by Kevin Lindsay. * Patched CAN-2005-2499: Prevent database corruption when indexing specially crafted directory structures. Patch from Madriva. This is a minor (* Security fix *). a/smartmontools-5.33-i486-1tukaani.tlz: Added etc/rc.d/rc.smartd. a/sysvinit-2.84-i486-4tukaani.tlz: Many small changes to rc scripts. * Start sshd, crond and atd *after* quotas have been enabled. * Added support for rc.smartd, rc.clamd, rc.ntpd, rc.postfix, rc.spamassassin, rc.location, rc.distccd, rc.nfs * Unmount tmpfs filesystems in rc.6 before turning off swap. * ldconfig and fc-cache are now commented out by default in rc.M. * Services can be temporarily disabled or enabled using kernel command line options. For example, to disable atd, enable sshd, and ask about hotplug, add these to the LILO or GRUB prompt: RC_atd=off RC_sshd=on RC_hotplug=ask * A little bit faster booting can be achieved using fastboot=on. When fastboot is enabled, fsck will be skipped for non-root partitions, but only if the fsck run for the root partition indicates that the root partition was cleanly unmounted. In other words, fsck will be run normally for all partitions, but only after an unsuccessful shutdown. To force a full fsck for all partitions, use fastboot=forcefsck. a/tar-1.15.1-i586-3tukaani.tlz: * Applied a patch from LZMA utils which adds the command line option `--lzma' and its short equivalent `-Y'. * Removed tar-1.13 binary, which is now provided by the pkgtools package. ap/cdrdao-1.2.0-i486-1tukaani.tlz: Upgraded to 1.2.0, which fixes a priviledge escalation vulnerability when cdrdao is installed as setuid root (not by default). (* Security fix *) ap/clamav-0.87.1-i486-1tukaani.tlz: Added Clam AntiVirus 0.87.1. ap/cpio-2.6-i586-1tukaani.tlz: Upgraded GNU cpio from 2.5 to 2.6. Applied a patch from Linux From Scratch (LFS) which contains fixes for some known old security issues not fixed upstream: CAN-1999-1572, CAN-2005-1111 and CAN-2005-1229 (* Security fix *) ap/cups-1.1.23-i486-1tukaani.tlz: * Moved from ap/ to a/ * Changed default configuration in cupsd.conf to listen only on loopback interface: -Port 631 +#Port 631 +Listen 127.0.0.1:631 -#Browsing On +Browsing Off ap/enscript-1.6.4-i486-1tukaani.tlz: * Upgraded from 1.6.3 to 1.6.4. * Use A4 as the default paper size. * Patched CAN-2004-1184, CAN-2004-1185, CAN-2004-1186: Fixes a couple of arbitrary command execution vulnerabilities. For more information see http://secunia.com/advisories/13968/ . (* Security fix *) ap/espgs-8.15.1-i486-1tukaani.tlz: Upgraded espgs from 8.15rc4 to 8.15.1. ap/fuse-2.4.2-i486-1tukaani.tlz: Added FUSE 2.4.2 and a few filesystem modules. The currently included filesystems are listed below. Suggestions for which filesystems to include are accepted, (preferably with the changes needed for the build script). * sshfs - mount directories over SSH connection * wdfs - mount WebDAV, e.g. Subversion repository * fuseiso - mount ISO9660 images without root priviledges * fusesmb - mount SMB shares without root priviledges ap/groff-1.19.2-i486-2tukaani.tlz: Upgraded groff from 1.19.1 to 1.19.2. The color support was seriously considered and also tried in practice. It doesn't break everything, but enough to be disabled by default. The patch used in Slackware also reduces the use of different hyphen characters in man pages, thus making searching and copypasting usable. ap/gutenprint-5.0.0_rc1-i486-2tukaani.tlz: Upgraded gimp-print 4.2.7 to gutenprint 5.0.0-rc1. The project's name has changed upstream; thus, the package name in Tukaani is changed too. This new version adds support to many newer printer models. ap/hpijs-1.7.1-i486-1tukaani.tlz: Upgraded hpijs from 1.7 to 1.7.1. There's a newer hpijs already in upstream but we haven't checked it yet. ap/lsof-4.76-i486-1tukaani.tlz: Upgraded lsof from 4.72 to 4.76. ap/man-1.6b-i486-1tukaani.tlz: Upgraded `man' from 1.5p to 1.6b. ap/man-pages-2.18-noarch-1tukaani.tlz: Upgraded man-pages from 1.64 to 2.18. ap/moc-2.3.2-i586-1tukaani.tlz: Added Music On Console 2.3.2. MOC is an audio player using ncurses. It supports e.g. MP3, Ogg Vorbis, FLAC and Musepack file formats. ap/mppenc-1.15v-i586-1tukaani.tlz: Added Musepack encoder and related command line tools. See http://musepack.net/ for more information. Wikipedia also has a nice article about Musepack: http://en.wikipedia.org/wiki/Musepack ap/mysql-4.1.16-i586-1tukaani.tlz: Upgraded MySQL from 4.1.14 to 4.1.16. ap/nano-1.2.5-i486-2tukaani.tlz: Added GNU nano, a free clone of `pico'. ap/p7zip-4.30-i586-1tukaani.tlz: p7zip is a port of 7-zip's command line tools to *nix. It's a multiformat compression tool which provides excellent compression ratio in its own 7z file format, but can also compress to zip and gzip formats better than most other tools. ap/sox-12.17.9-i586-1tukaani.tlz: * Upgraded sox from 12.17.8 to 12.17.9. * Compiled against libmp3lame. ap/sudo-1.6.8p12-i586-1tukaani.tlz: Upgraded sudo from 1.6.8p9 to 1.6.8p12. Fixes vulnerabilities: * CVE-2005-4158: http://www.sudo.ws/sudo/alerts/perl_env.html * CVE-2005-2959: http://www.sudo.ws/sudo/alerts/bash_env.html Because of the (in)security history of sudo, we are looking for an alternative to be included in Tukaani. Generally, most users who would like to use a sudo-like tool need only a small subset of sudo's features, thus a simpler and more secure tool should fit for most users. Naturally, those who need advanced features are still free to use sudo. (* Security fix *) ap/sysfsutils-1.3.0-i486-1tukaani.tlz: Added sysfsutils 1.3.0. This package provides some tools for interfacing sysfs (/sys). ap/texinfo-4.8-i486-2tukaani.tlz: * Added `pinfo' version 0.6.8, a Lynx-like GNU info file browser. * Added var/log/setup/setup.texinfo which recreates the info directory file. The script is run in the postinstall phase during distribution installation and can be later run via `Setup' menu in `pkgtool'. * Patched insecure temporary file creation vulnerability (CVE-2005-3011). This is a minor (* Security fix *) . ap/vim-6.4.004_no_x11-i586-1tukaani.tlz: Upgraded ViM from 6.3.086 to 6.4.004. This includes one tiny patch for insecure temporary file creation in `vimspell.sh'. Note that xap/xvim package was moved to extra/packages/vim-6.4.004_with_x11-i586-1tukaani.tlz. d/automake-1.9.6-i486-1tukaani.tlz: Upgraded automake from 1.9.5 to 1.9.6. d/binutils-2.16.91.0.5-i486-1tukaani.tlz: Upgraded binutils from 2.15.92.0.2 to 2.16.91.0.5. d/bison-2.1-i486-1tukaani.tlz: Upgraded bison from 1.35 (or 1.875d) to 2.1. d/distcc-2.18.3-i486-1tukaani.tlz: Added etc/rc.d/rc.distccd. d/doxygen-1.4.6-i486-1tukaani.tlz: Upgraded from 1.4.4 to 1.4.6. d/gcc-3.4.5-i486-1tukaani.tlz: * Tukaani has used GCC 3.4 for about a year now. The change from 3.3 to 3.4 introduced a new C++ ABI which is also used in the 4.x branch. Because of the new C++ ABI, practically all C++ applications and libraries needed rebuilding. Because of this, there are some compatibility issues with packages built for Slackware 10.x. In Slackware, the ABI transition has just begun, and that will make Slackware's and Tukaani's packages more compatible again. * Removed a few header files which IMHO do not belong here. GCC does some fixes for non-standard headers of 3rd party applications and includes the modified versions in its own installation tree. Without claiming this to be either good or bad in general, it doesn't work so well when creating GCC packages for a distribution. We are not going to repackage GCC every time we upgrade e.g. Mozilla. d/gcc-g++-3.4.5-i486-1tukaani.tlz: Upgraded from 3.3.6 to 3.4.5. d/gcc-g77-3.4.5-i486-1tukaani.tlz: Upgraded from 3.3.6 to 3.4.5. d/gcc-gnat-3.4.5-i486-1tukaani.tlz: Upgraded from 3.3.6 to 3.4.5. d/gcc-java-3.4.5-i486-1tukaani.tlz: Upgraded from 3.3.6 to 3.4.5. d/gcc-objc-3.4.5-i486-1tukaani.tlz: Upgraded from 3.3.6 to 3.4.5. d/gettext-tools-0.14.5-i486-1tukaani.tlz: Upgraded gettext-tools from 0.14.3 to 0.14.5. d/libtool-1.5.22-i586-1tukaani.tlz: Upgraded GNU libtool from 1.5.20 to 1.5.22. d/m4-1.4.4-i486-1tukaani.tlz: Upgraded GNU m4 from 1.4.2 to 1.4.4. d/mono-1.1.12.1-i586-1tukaani.tlz: Added Mono 1.1.12.1. d/monodoc-1.1.11-i586-1tukaani.tlz: Added monodoc 1.1.11. d/oprofile-0.9.1-i586-3tukaani.tlz: Rebuilt against latest binutils. d/pkgconfig-0.20-i486-1tukaani.tlz: Upgraded pkgconfig from 0.15.0 to 0.20. d/python-2.4.2-i486-1tukaani.tlz: * Upgraded from 2.4.1 to 2.4.2. * Split the packages differently than in Slackware. Slackware has python, python-tools and python-demo. Tukaani's main Python package is equivalent to Slackware's python and python-tools combined but excessive (16 MiB) API documentation excluded. d/python-docs-2.4.2-noarch-1tukaani.tlz: Added python-docs 2.4.2. This is equivalent to taking documentation from Slackware's python package and everything from Slackware's python-demo. d/subversion-1.2.3-i486-1tukaani.tlz: Built against Berkeley DB 4.3.29. e/emacs-common-21.4a-i486-1tukaani.tlz: Added emacs-common, which is similar to Slackware's emacs package, but does not include the main emacs binary. The emacs binary is now in the emacs-withx package. e/emacs-info-21.4a-i486-1tukaani.tlz: Rebuilt. e/emacs-leim-21.4a-i486-1tukaani.tlz: Rebuilt. e/emacs-lisp-21.4a-i486-1tukaani.tlz: Rebuilt. e/emacs-misc-21.4a-i486-1tukaani.tlz: Rebuilt. e/emacs-nox-21.4a-i486-1tukaani.tlz: Rebuilt. e/emacs-withx-21.4a-i486-2tukaani.tlz: Added emacs-withx. emu/dosbox-0.63-i686-1tukaani.tlz: Added Dosbox 0.63. This is a DOS emulator; it's good especially for playing old games. It's quite a CPU hog, so be sure you have a fast computer. ;-) emu/dosemu-1.2.2-i486-1tukaani.tlz: A DOS emulator which can run multiple DOS versions. (This package includes FreeDOS.) According to my own experience, DOSemu is at its best with non-game apps, but it runs some games very well, too, including sound support. emu/qemu-0.7.2-i486-1tukaani.tlz: Added QEMU processor emulator. It can run different operating systems in a virtual environment (hard disks, display adapter, network card etc.). QEMU has been a *big* help when debugging Tukaani Installer. (The installer still ain't so bugfree.) emu/wine-0.9.4-i586-1tukaani.tlz: Added Wine 0.9.4. Wine is a free implementation of the Windows API on top of X Window System on *nix. emu/zsnes-1.42-i486-1tukaani.tlz: Added a ZSNES 1.42. kde/amarok-1.3.6-i586-1tukaani.tlz: Added amaroK music player. kde/gwenview-1.3.0-i486-1tukaani.tlz: Added Gwenview, an image viewer application for KDE. kde/k3b-0.12.7-i586-1tukaani.tlz: * Upgraded to K3b 0.12.7. * Compiled against libmp3lame and libmpcdec. kde/kdeaccessibility-3.4.3-i586-2tukaani.tlz: * Upgraded to KDE 3.4.3. * KDE 3.5.0 is available in Tukaani Edge. Due to a few stability issues and other bugs, KDE 3.5.0 will be skipped in Tukaani Solid. KDE 3.4.3 works very well and we definitely are not going to unnecessarily break the Tukaani Solid branch. * Thanks to Sandman for convincing me to try compiling KDE (and many other applications) with -Os instead of -O2. The difference in speed is easily noticeable, and Tukaani's KDE packs will be compiled with -Os in the future too. kde/kdeaddons-3.4.3-i586-2tukaani.tlz: Upgraded to KDE 3.4.3. kde/kdeadmin-3.4.3-i586-2tukaani.tlz: Upgraded to KDE 3.4.3. kde/kdeartwork-3.4.3-i586-2tukaani.tlz: Upgraded to KDE 3.4.3. kde/kdebase-3.4.3-i586-2tukaani.tlz: * Upgraded to KDE 3.4.3. * Do not overwrite /opt/kde/share/config/kdm/backgroundrc. * Fix: use `startfluxbox' instead of `fluxbox' in opt/kde/share/apps/kdm/sessions/fluxbox.desktop. * Restrict access to the setuid root executable `kcheckpass' to the group `users'. kde/kdebindings-3.4.3-i586-2tukaani.tlz: Upgraded to KDE 3.4.3. kde/kdeedu-3.4.3-i586-2tukaani.tlz: Upgraded to KDE 3.4.3. kde/kdegames-3.4.3-i586-2tukaani.tlz: Upgraded to KDE 3.4.3. kde/kdegraphics-3.4.3-i586-3tukaani.tlz: * Upgraded to KDE 3.4.3. * Compiled --disable-kpdf-drm. * fribidi is statically linked in. kde/kdelibs-3.4.3-i586-2tukaani.tlz: * Upgraded to KDE 3.4.3. * Restrict access to the setuid root exeutable `kpac_dhcp_helper' to the group `users'. * Removed setuid bit from /opt/kde/bin/fileshareset (Perl script). kde/kdemultimedia-3.4.3-i586-2tukaani.tlz: * Upgraded to KDE 3.4.3. * Compiled with libmp3lame support. kde/kdenetwork-3.4.3-i586-2tukaani.tlz: * Upgraded to KDE 3.4.3. * Removed setuid bit from /opt/kde/bin/kppp. Those who need kpp should execute the following commands every time they have upgraded the kdenetwork package: # chown root:users /opt/kde/bin/kppp # chmod 4710 /opt/kde/bin/kppp kde/kdepim-3.4.3-i586-2tukaani.tlz: * Upgraded to KDE 3.4.3. * Use shared GPGME library, which is packaged into the gnutls package in Tukaani. kde/kdesdk-3.4.3-i586-2tukaani.tlz: Upgraded to KDE 3.4.3. kde/kdetoys-3.4.3-i586-2tukaani.tlz: Upgraded to KDE 3.4.3. kde/kdeutils-3.4.3-i586-2tukaani.tlz: Upgraded to KDE 3.4.3. kde/kdevelop-3.2.3-i586-2tukaani.tlz: Upgraded to KDE 3.4.3. kde/kdewebdev-3.4.3-i586-2tukaani.tlz: Upgraded to KDE 3.4.3. kde/kile-1.8.1-i486-1tukaani.tlz: Added Kile 1.8.1, an excellent LaTeX frontend for KDE. kde/kmplayer-0.9.1-i586-1tukaani.tlz: Added KMPlayer, a KDE frontend for MPlayer and Konqueror plugin. You need to have MPlayer installed to use KMPlayer. kde/koffice-1.4.2-i486-1tukaani.tlz: * Upgraded to KOffice 1.4.2. * Linked statically against wv2 and libwpd. kde/kvirc-3.2.0-i486-1tukaani.tlz: Added KVirc, a multiplatform IRC client. kdei/*: Upgraded language files for KDE, KOffice and K3b. l/alsa-1.0.10-i486-1tukaani.tlz: * Upgraded ALSA from 1.0.9b to 1.0.10. * Combined alsa-lib, alsa-oss, alsa-utils, alsa-plugins and headers from alsa-driver into a single package. The ALSA kernel modules are in the kernel-* packages. l/arts-1.4.3-i486-1tukaani.tlz: Upgraded to KDE 3.4.3. In future, the arts package will be moved to kde/. We are going to build packages outside the kde/ to not link against arts, unless someone tells us why we shouldn't do this. :-) l/db4-4.3.29-i486-1tukaani.tlz: Upgraded Berkeley DB from 4.2.52 to 4.3.29. There is already a stable 4.4.x version available upstream. We are currently shipping 4.3, because this is the version that has already been in Tukaani for a few months and was found very mature. l/giflib-4.1.4-i486-2tukaani.tlz: * Replaced libungif 4.1.3 with giflib 4.1.4. giflib and libungif are both parts of the same project in Sourceforge. The difference is that giflib provides support for saving compressed GIF files, which has had some patent issues. libungif is still available in extra/ in case you think giflib isn't legal in your country. * This fixes CVE-2005-2974 and CVE-2005-3350. (DoS and possible arbitrary code execution.) (* Security fix *) l/glib2-2.8.4-i586-1tukaani.tlz: Upgraded glib from 2.6.6 to 2.8.4. l/glibc-devel-2.3.5-i486-5tukaani.tlz: Repackaged (see glibc-solibs above). l/glibc-i18n-2.3.5-noarch-5tukaani.tlz: Repackaged (see glibc-solibs above). l/gmp-4.1.4-i486-2tukaani.tlz: Rebuilt for the new C++ ABI. l/gphoto2-2.1.6-i486-1tukaani.tlz: Added gphoto2 2.1.6. l/gtk+2-2.8.9-i586-1tukaani.tlz: * Upgraded GTK+ from 2.6.10 to 2.8.9. * Includes also atk, pango and cairo, which were separate packages: - atk: upgraded from 1.9.1 to 1.10.3 - pango: upgraded from 1.8.2 to 1.10.2 - cairo: added cairo 1.0.2 * Includes Clearlooks 0.6.2, an excellent GTK+ theme. Clearlooks is the default GTK+ theme in Tukaani (set in /etc/gtk-2.0/gtkrc). l/gtkmm-2.8.0-i486-1tukaani.tlz: Added gtkmm 2.8.0, glibmm 2.8.0 and libsigc++ 2.0.16. These three are combined into a single package for now, since packages in Tukaani require either all three or none of them. l/id3lib-3.8.3-i486-1tukaani.tlz: Added id3lib 3.8.3. l/imlib-1.9.15-i486-1tukaani.tlz: Patched a few minor vulnerabilities in image decoding routines. CVE-2004-1025, CVE-2004-1026 (* Security fix *) l/imlib2-1.2.1-i486-2tukaani.tlz: Added imlib2 1.2.1. l/jre-1_5_0_06-i586-1tukaani.tlz: * Upgraded to Sun JRE 1.5.0 update 6. * Moved from /usr/lib/java to /opt/java. l/lame-3.96.1-i486-1tukaani.tlz: Added LAME MP3 encoder version 3.96.1. l/lcms-1.14-i486-1tukaani.tlz: Rebuilt for new C++ ABI. l/libdv-0.104-i486-1tukaani.tlz: Added libdv 0.104. l/libdvdcss-1.2.9-i486-1tukaani.tlz: Added libdvdcss 1.2.9. Note that this library is illegal at least in the USA because of DMCA. The new copyright law in Finland takes effect 2006-01-01, and it prohibits breaking most copy protection schemes, except when the aim is to make the content listenable/viewable. Tukaani distributes libdvdcss to allow users of free software (free as in freedom) to view the movies they have legally bought; thus, it should be completely legal to distribute this library in Finland. Unfortunately, the case is not the same in the USA, where it, as far as I know, is illegal to watch legally bought encrypted DVD movies on your computer without buying a player application, which usually requires also another operating system. l/libexif-0.6.12-i486-1tukaani.tlz: Rebuilt. Removed libexif 0.5.x shared library which was there for backwards compatibility. l/libgsf-1.13.3-i586-3tukaani.tlz: * Upgraded libgsf from 1.12.1 to 1.13.3. * 1.13.3 has a different ABI than 1.12.1, so the old library is also included in the package for backwards compatiblity. * Tukaani Edge has GNOME. The GNOME specific parts of libgsf are in the gnome/libgsf-gnome package. l/libmng-1.0.9-i486-2tukaani.tlz: Upgraded libmng from 1.0.5 to 1.0.9. l/libmpcdec-1.2.2-i586-1tukaani.tlz: Added libmpcdec Musepack decoder library and XMMS plugin. libmpcdec is used by some sound supporting applications such as K3b and MOC. l/librsvg-2.12.7-i486-1tukaani.tlz: Upgraded librsvg from 2.8.1 to 2.12.7. l/libtiff-3.7.3-i486-1tukaani.tlz: Rebuilt for the new C++ ABI. l/pcre-6.4-i486-1tukaani.tlz: Rebuilt for the new C++ ABI. l/pygtk-2.8.2-i586-2tukaani.tlz: Added PyGTK 2.8.2. This is needed by BitTorrent's GUI and used (but not required) by GIMP. l/qt-3.3.5-i586-2tukaani.tlz: * Upgraded Qt from 3.3.4 to 3.3.5. * Split API documentation to qt-docs to reduce size of the main Qt package by half. * Added QCA, QCA-TLS and QCA-SASL (http://delta.affinix.com/qca/). QCA and QCA-TLS are needed by Kopete and Psi for SSL support. (Psi is a Jabber client not in Tukaani Solid yet, but in Edge.) * Moved to l/ because there are some apps in xap/ that need Qt but not KDE libraries. l/readline-5.1-i586-1tukaani.tlz: Upgraded readline from 4.3 to 5.1. This is a new major release, and it breaks binary compatibility. The old libreadline.so.4.3 is still provided for backwards compatiblity. l/sdl-1.2.9-i586-3tukaani.tlz: Rebuilt and added a few libraries. In addition to the main SDL library, this package now includes SDL_image, SDL_mixer, SDL_net, SDL_ttf, SDL_sound, SDL_gfx and SDL_perl. l/taglib-1.4-i486-1tukaani.tlz: Upgraded taglib from 1.4 to 1.4.1. A rebuild would have been needed anyway for the new C++ ABI. l/xiphlibs-1.1.3-i586-1tukaani.tlz: Replaces libao, libogg, libvorbis, flac and vorbis-tools. This package contains these multimedia libraries and tools from the Xiph.Org foundation: * libao 0.8.6 * libogg 1.1.3 * libvorbis 1.1.2 * vorbis-tools 1.1.1 * libtheora 1.0alpha5 * Speex 1.0.5 * FLAC 1.1.2 l/xiphlibs-doc-1.1.3-noarch-1tukaani.tlz: API documentation for the above libraries. Most users don't need these so we save their disk space and our bandwidth. n/apache-1.3.34-i486-1tukaani.tlz: * Use user/group `apache' (UID/GID 48) instead of `nobody'. * Upgraded the included mm library to 1.4.0. * Compiled against Berkeley DB 4.3.29. * Commented out the modules that are not needed in every server (such as cgi support). If you think that I have commented out something that should be loaded *by default*, please tell me. * Split the documentation to apache-docs package. * Removed var/www/htdocs/*html* because practically no one wants to overwrite their index.html on every Apache upgrade. n/apache-docs-1.3.34-noarch-1tukaani.tlz: Added apache-docs 1.3.34. n/bittorrent-4.2.2-noarch-1tukaani.tlz: Bittorrent moved from extra/ and upgraded from 4.1.3 to 4.2.2. The simple GUI now works if you have the pygtk package installed. n/curl-7.15.1-i586-1tukaani.tlz: Upgraded cURL from 7.12.2 to 7.15.1. n/dnsmasq-2.23-i486-1tukaani.tlz: * Use user/group `dnsmasq' (UID/GID 53) instead of `nobody'. * Make outgoing connections always from port 653 to make firewalling easier. This can be changed by editing /etc/rc.d/rc.dnsmasq. n/gnupg-1.4.2-i486-1tukaani.tlz: Upgraded GnuPG from 1.2.7 to 1.4.2. n/gnutls-1.2.9-i486-1tukaani.tlz: Added GNU TLS and a few other cryptography related libraries from GNU: * GNU TLS 1.2.9 * libgcrypt 1.2.2 * libgpg-error 1.1 * GPGME (GnuPG Made Easy) 1.1.0 n/iproute2-2.6.14_051107-i486-1tukaani.tlz: Upgraded iproute2 from 2.6.11_050330 to 2.6.14_051107. The new iproute2 is needed for some features in the recent Linux 2.6 kernels. n/iptables-1.3.4-i486-tukaani.tlz: Upgraded iptables from 1.3.3 to 1.3.4. Compiled against Linux 2.6.14, which has a few new netfiler modules. n/iptraf-2.7.0-i486-1tukaani.tlz: Rebuilt to allow administrators to make iptraf binary setuid root (which is generally a bad idea but we don't want to prevent people from using that feature, assuming that they know what they are doing). n/irssi-0.8.10-i586-1tukaani.tlz: Upgraded irssi from 0.8.9 to 0.8.10. n/lftp-3.3.5-i586-1tukaani.tlz: * Upgraded from 3.2.1 to 3.3.5. * Compiled against GNU TLS instead of OpenSSL. n/links-2.1pre20_no_x11-i586-1tukaani.tlz: * Upgraded from 2.1pre18 to 2.1pre20. * Compiled without javascript support; please let me know if you think you _need_ javascript support in Links and I will reconsider this. n/lynx-2.8.5rel.5-i486-1tukaani.tlz: Rebuilt with IPv6 support. n/mod_ssl-2.8.25_1.3.34-i486-1tukaani.tlz: Compiled against OpenSSL 0.9.8a. n/nfs-utils-1.0.7-i486-2tukaani.tlz: NFS client is now activated by making /etc/rc.d/rc.nfs executable, and NFS server by making /etc/rc.d/rc.nfsd executable. n/oidentd-2.0.7-i486-2tukaani.tlz: Added oidentd 2.0.7. This replaces pidentd. oidentd supports more detailed configuration, forwarding ident requests to computers behind NAT and more. oidentd was suggests by _many_ users. n/openntpd-3.7p1-i486-2tukaani.tlz: Added OpenNTPD 3.7p1. This replaces ntp-4.2.0-i486-1 as a NTP daemon. OpenNTPD is extremely easy to configure but contains only a very limited set of features. However, it should be enough for 98% of users; the rest may take the ntp package from Slackware or compile their own. n/openssh-4.2p1-i486-1tukaani.tlz: * Compiled against OpenSSL 0.9.8a. * Changed default settings in sshd_config to accept only protocol version 2 and to not permit root logins: -#Protocol 2,1 +Protocol 2 -#PermitRootLogin yes +PermitRootLogin no * Changes default settings in ssh_config to accept only protocol version 2: -# Protocol 2,1 +Protocol 2 * Removed suid bit from /usr/libexec/ssh-keysign. It is needed for host based authentication, which is disabled from config files by default. If you need it, type "chmod 4711 /usr/libexec/ssh-keysign" and set the appropriate settings in /etc/ssh/. n/openssl-0.9.8a-i486-1tukaani.tlz: * Upgraded OpenSSL from 0.9.7g to 0.9.8a. * No longer includes files included in a/openssl-solibs; thus, you will always need openssl-solibs package, even when you install the `openssl' package. n/php-5.1.1-i486-1tukaani.tlz: Switched from PHP 4 to PHP 5. Compiled against Berkeley DB 4.3 (libdb-4.3.so) and the latest libmm (libmm.so.14, included in the apache package). n/postfix-2.2.8-i586-1tukaani.tlz: Added Postfix 2.2.8. In Tukaani, this replaces Sendmail. n/ppp-2.4.4b1-i486-1tukaani.tlz: Added symlink /etc/ppp/plugins->../../usr/lib/pppd/2.4.4b1. See rp-pppoe below for reasoning. n/rp-pppoe-3.7-i586-1tukaani.tlz: Removed the directory etc/ppp/plugins, which is a symlink in the ppp package. If you want to use the Linux kernel-mode plugin, use the line shown in the example LINUX_PLUGIN=/etc/ppp/plugins/rp-pppoe.so instead of LINUX_PLUGIN=/usr/lib/pppd/2.4.4b1/rp-pppoe.so in /etc/ppp/pppoe.conf, or you will need to update the path to the config file _every time_ you upgrade the ppp package. Having a version number dependent line in a config file is really dumb and can be extremely annoying to forget modifying it. Thanks to Antti Harri for the detailed description of this problem. n/stunnel-4.14-i586-1tukaani.tlz: Upgraded stunnel from 4.07 to 4.14. n/tcpip-0.17-i486-7tukaani.tlz: * Removed rcp, rlogin, rsh and a few other binaries and their documentation. These utils are hardly ever used nowadays because of their security risks. * Combined traceroute package into tcpip package. * Allow only users in group 'users' to use ping, traceroute, ping6 and traceroute6: # chgrp users /bin/ping /bin/ping6 /usr/bin/traceroute* # chmod 4710 /bin/ping /bin/ping6 /usr/bin/traceroute* * Removed /etc/rc.d/rc.inet2. It is now combined with rc.M, which is in the sysvinit package. ooo/openoffice2-2.0.1-i586-1tukaani.tlz: Added OpenOffice.org 2.0.1. This is converted from the official binary distribution. Requires Sun's proprietary Java runtime environment. ooo/openoffice2-i18n-*-2.0.1-i586-1tukaani.tlz: Added OpenOffice.org language files. These are converted from the official binaries. ooo/openoffice2-soikko-1.0.1-i586-1tukaani.tlz: Added Soikko for OpenOffice.org (Finnish spell checker and hyphenation) tcl/blt-2.4z-i486-1tukaani.tlz: Added BLT, which is an extension to Tk. BLT adds new widgets, geometry managers, and miscellaneous commands. tcl/bwidget-1.7.0-noarch-1tukaani.tlz: Added BWidget, a high level widget set for Tcl/Tk. tcl/tcl-8.4.12-i586-1tukaani.tlz: Upgraded tcl from 8.4.11 to 8.4.12. tcl/tcllib-1.7-noarch-1tukaani.tlz: Added Tcllib, a collection of Tcl packages that provide utility functions, useful to a large group of Tcl programmers. tcl/tk-8.4.12-i586-1tukaani.tlz: Upgraded tk from 8.4.11 to 8.4.12. x/fontconfig-2.3.2-i486-1tukaani.tlz: Separated from x11 package. Upgraded from 2.2.3 to 2.3.2. x/fonts-corefonts-noversion-noarch-1tukaani.tlz: Added MS core fonts for the web. Due to license restrictions, this package will be available only in the online repository, not in the ISO9660 image. If you create custom ISO9660 images, including this package might be a licence violation. It is recommended to use fonts that are more free instead. x/fonts-dejavu-2.1-noarch-1tukaani.tlz: Added DejaVu fonts. They are based on the Bitstream Vera Fonts release 1.10 and provide a wider range of characters while maintaining the original look and feel. x/fonts-divide_by_zero-20050317-noarch-1tukaani.tlz: Added a few fonts made by Tom Murphy 7 (http://fonts.tom7.com/). x/fonts-freefont-20051206-noarch-1tukaani.tlz: Added Freefont font family (FreeSans, FreeSerif and FreeMono) release 20051206. These cover a huge range of the Universal Character Set (UCS). Distributed under the GNU GPL. http://www.nongnu.org/freefont/ x/fonts-gpl-20050317-noarch-1tukaani.tlz: Added miscellaneous fonts distributed under the GNU GPL. http://www.dustismo.com/ http://www.thibault.org/fonts/isabella/ x/freetype-2.1.10-i486-1tukaani.tlz: * Built with bytecode interpreter enabled. Note that there are some software patents related to the bytecode interpreter in some countries. You can find a bytecode interpreter disabled version in extra/. * Separated from x11 package. * Upgraded from 2.1.9 to 2.1.10. x/x11-6.8.2-i486-5tukaani.tlz: * No longer includes freetype and fontconfig. * Do not listen on TCP port 6000: Added `-nolisten tcp' to be the default in usr/X11R6/bin/startx and etc/X11/xdm/Xservers. Most users never need this feature; those who need it also know how to enable it. * Restricted access to the setuid root binary usr/X11R6/bin/Xorg to the group `users'. * Added evdev support. This should be considered experimental since it isn't part of the official stable X.org 6.8.2. The patch only adds a new driver without changing existing code, so if you don't use it, it won't do any harm. :-) * Fixed CAN-2005-2495 and CAN-2005-0605 (* Security fix *) x/x11-devel-6.8.2-i486-5tukaani.tlz: Rebuilt. Replaced certain man page files with symlinks. x/x11-docs-6.8.2-noarch-2tukaani.tlz: Rebuilt. x/x11-docs-html-6.8.2-noarch-1tukaani.tlz: Rebuilt. x/x11-fonts-100dpi-6.8.2-noarch-1tukaani.tlz: Rebuilt. x/x11-fonts-cyrillic-6.8.2-noarch-1tukaani.tlz: Rebuilt. x/x11-fonts-misc-6.8.2-noarch-2tukaani.tlz: Rebuilt. x/x11-fonts-scale-6.8.2-noarch-2tukaani.tlz: Rebuilt. x/x11-xdmx-6.8.2-i486-3tukaani.tlz: Rebuilt. x/x11-xnest-6.8.2-i486-3tukaani.tlz: Rebuilt. x/x11-xvfb-6.8.2-i486-3tukaani.tlz: Rebuilt. xap/abiword-2.2.11-i486-1tukaani.tlz: * Upgraded from 2.2.9 to 2.2.11. * Compiled with fribidi and libwpd statically linked. * Fixes a buffer overflow in RTF file processing code. (* Security fix *) xap/d4x-2.5.6-i486-1tukaani.tlz: Added Downloader for X 2.5.6. d4x is a GTK+ based download manager having plenty of features. xap/fluxbox-0.9.14-i486-1tukaani.tlz: Upgraded from 0.9.13 to 0.9.14. xap/gaim-1.5.0-i486-1tukaani.tlz: * Added guifications plugin. * Compiled with support for both Mozilla NSPR+NSS and GNU TLS. If you have either of them installed, SSL support should work. xap/gimp-2.2.10-i486-1tukaani.tlz: Upgraded GIMP from 2.2.8 to 2.2.10. xap/gnomemeeting-1.2.2-i486-1tukaani.tlz: Added Gnomemeeting 1.2.2, an Internet telephone application that uses the H.323 protocol. Despite the name, Gnomemeeting doesn't require GNOME. The package includes these Gnomemeeting specific dependencies: * openh323 1.15.6 * pwlib 1.8.7 xap/gqview-2.0.1-i486-1tukaani.tlz: Added GQview 2.0.1 image viewing application for GTK+. xap/gucharmap-1.4.4-i486-1tukaani.tlz: Upgraded from 1.4.1 to 1.4.4. xap/imagemagick-6.2.3_6_with_x11-i486-1tukaani.tlz: * Upgraded from 6.2.3-3 to 6.2.3-6; would have been rebuilt anyway for the new C++ ABI. * There is a newer version in Tukaani Edge, but it breaks binary compatiblity, so we are sticking with this version in Solid, at least for a while. xap/inkscape-0.43-i586-1tukaani.tlz: Added Inkscape 0.43, a vector graphics application using GTK+. Requires gtkmm. xap/leafpad-0.8.6-i486-1tukaani.tlz: Added Leafpad 0.8.6, a simple GTK+ based text editor. xap/mozilla-1.7.12-i486-1tukaani.tlz: Rebuilt and split into mozilla and mozilla-devel packages. Most users don't need the huge amount (25 MiB) of include and other development files. xap/mplayer-1.0pre7try2-i486-1tukaani.tlz: Added MPlayer 1.0pre7try2. MPlayer plays a wide range of video and audio file formats. It has both a command line and GTK+ interface. A few skins and a font for subtitles are bundled in the package. xap/mplayerplug-in-3.11-i486-1tukaani.tlz: Added mplayerplug-in 3.11, a web browser plugin which can play videos and other multimedia content using MPlayer. xap/opera-8.51-i386-1tukaani.tlz: Added Opera 8.51 web browser. Note that Opera is free of charge but not free as in freedom. xap/qcad-2.0.5.0_1-i586-1tukaani.tlz: Added QCAD 2.0.5.0-1 community edition. xap/rxvt-unicode-6.2-i586-2tukaani.tlz: Added rxvt-unicode, an UTF-8 enabled terminal emulator. xap/scribus-1.2.3-i486-1tukaani.tlz: Added Scribus 1.2.3 desktop publishing application. xap/sylpheed-2.0.4-i486-1tukaani.tlz: Added Sylpheed 2.0.4 (email client). xap/tvtime-1.0.1-i686-1tukaani.tlz: Added tvtime 1.0.1. xap/xawtv-3.95-i486-1tukaani.tlz: Added xawtv 3.95. xap/xchat-2.6.0-i486-1tukaani.tlz: Upgraded X-Chat from 2.4.5 to 2.6.0. xap/xfce-4.2.3.2-i586-1tukaani.tlz: Upgraded XFce from 4.2.2 to 4.2.3.2. xap/xine-lib-1.1.1-i686-1tukaani.tlz: Upgraded xine-lib from 1.0.3 to 1.1.1. xap/xlockmore-5.19-i486-1tukaani.tlz: * Upgraded xlockmore from 5.18 to 5.19. * Removed non-free logos licenced only for use in Slackware. xap/xmms-1.2.10-i486-4tukaani.tlz: * Added WMA input plugin. * Added Modplug-XMMS input plugin. * Added an input plugin to play SID music. * Added an input plugin to play raw .cdr files. * Added crossfade output plugin. * Added out_lame MP3 encoding plugin. * Added oggre Ogg Vorbis encoding plugin. xap/xpdf-3.01pl1-i586-1tukaani.tlz: Patched the latest Xpdf vulnerability. xap/xzgv-0.8-i486-2tukaani.tlz: Added xzgv 0.8 with security patches. xzgv is a small and fast image viewing application. (Yes, we have many image viewing apps in the repo, every one of Tukaani developers seems to have a different favorite. It is probable that the ISO9660 image won't contain all of our image viewer choices.) y/bzflag-2.0.4.20050930-i486-1tukaani.tlz: Added bzflag, a multiplayer 3D tank battle game. (Tukaani y/ contains both textbased and graphical games.) y/cowsay-3.03-i486-1tukaani.tlz: Added cowsay 3.03. This is a Perl script that prints cows (or any other ASCII images) with balloons of custom text. Very annoying if overused. ;-P y/freeciv-2.0.7-i486-1tukaani.tlz: Added Freeciv, a turn-based multiplayer strategy game. y/gltron-0.70-i486-1tukaani.tlz: Added gltron, an arcade game with OpenGL graphics. y/ppracer-0.3.1-i486-1tukaani.tlz: Added PlanetPenguin Racer, an OpenGL racing game based on the GPL version of Tux Racer. extra/devel/fribidi-0.10.5_static-i486-1tukaani.tlz: Added static fribidi libs. To avoid unneeded dependency mess, small libraries needed by only one or two applications are linked statically in Tukaani. The packages with `_static' in their filename are needed only when compiling certain packages for the official Tukaani tree. extra/devel/libwpd-0.8.2_static-i486-1tukaani.tlz: Added static version of libwpd 0.8.2. extra/devel/wv2-0.2.2_static-i486-1tukaani.tlz: Added static version of wv2. extra/packages/aterm-0.4.2-i486-2tukaani.tlz: Added aterm 0.4.2. extra/packages/gkrellm-plugins-20050616-i486-1tukaani.tlz: Added a collection of miscellaneous plugins for gkrellm2. extra/packages/imagemagick-6.2.3_6_no_x11-i486-1tukaani.tlz: Added an ImageMagick package that doesn't require any X libraries. extra/packages/jhead-2.4-i486-1tukaani.tlz: extra/packages/libungif-4.1.4-i486-1tukaani.tlz: Moved libungif from l/. Most users want giflib instead but this is still provided if you think there are any legal (patent) issues with giflib. extra/packages/links-2.1pre20_with_x11-i586-1tukaani.tlz: Added Links compiled with X support. Links is a quite nice browser not only for console but for X as well, even if it doesn't support CSS. extra/packages/microdc-0.11.0-i486-1tukaani.tlz: Added a command line based (uses GNU readline) Direct Connect client. extra/packages/mozilla-devel-1.7.12-i486-2tukaani.tlz: Added mozilla-devel 1.7.12, which contains headers and other development files for the Mozilla suite. extra/packages/mozilla-firefox-1.5_fi-i686-1tukaani.tlz: Added Finnish version of Mozilla Firefox. extra/packages/qt-docs-3.3.5-i486-1tukaani.tlz: Developer documentation for Qt 3.3.5. Qt has a lot of excellent documentation but only a few users need it, so we can cut the size of the main qt package by half. extra/packages/tukbuild-2.2-noarch-1tukaani.tgz: Added tukbuild 2.2. FIXME extra/packages/unrar-3.5.4-i486-1tukaani.tlz: Added official UnRAR 3.5.4. Tukaani developers discourage the use of RAR compression because it is not free as in freedom. Instead, use e.g. tar+LZMA or p7zip. extra/packages/upx-1.25-i386-1tukaani.tlz: Added UPX, The Ultimate Packer for eXecutables 1.25. You can get smaller binaries by compressing them with UPX. The binaries will decompress themselves when run, making the compression transparent to the user. Using UPX was considered for Tukaani Installer a long time ago, but was dropped because I found a better way to squeeze the size of the installer initrd. However, someone might find UPX worth using for some other projects so I'm leaving this package in extra/. extra/packages/valknut-0.3.7-i486-1tukaani.tlz: Added Valknut 0.3.7, a Qt based Direct Connect client. extra/packages/vim-6.4.004_with_x11-i586-1tukaani.tlz: Renamed xvim to to vim and added flavor indicator to the version number. extra/packages/xmms-skins-1.1-noarch-2tukaani.tgz: Added a nice collection of skins for XMMS. Thanks to kanedaaa for the original package. testing/packages/faad2-2.0-i486-1tukaani.tlz: Added FAAD2 which provides support for AAC (Advaced Audio Coding) files. This will stay in testing/ because the XMMS plugin has stability issues for some users. testing/packages/maxima-5.9.2-i486-1tukaani.tlz: Added Maxima 5.9.2. Maxima is an excellent mathematics application. pasture/packages/openoffice-1.1.5-i386-1tukaani.tlz: Added OpenOffice.org 1.1.5, the latest stable release from the 1.x.x branch. This was in xap/ before OpenOffice.org 2.0 was released, and I will leave it in pasture/ for now, in case someone still happens to need this. pasture/packages/openoffice-soikko-1.1.5_0.2.1-i386-1tukaani.tlz: Added Soikko 0.2.1 for OpenOffice.org 1.1 (Finnish spell checking). pasture/mozilla-firefox-1.0.7-i686-1.tlz: This can be in pasture/ until a certain important security issue has been found and fixed.