commits
[Backport release-23.05] openssh: 9.3p2 -> 9.6p1
[Backport release-23.05] plasma-workspace: 5.27.9 -> 5.27.9.1
[23.05] python310Packages.twisted: update patch URLs
[Backport release-23.05] syncoid: disable PrivateUsers in systemd unit
[23.05] moodle: 4.1.4 -> 4.1.7
[Backport release-23.05] filebot: 5.1.1 -> 5.1.2
[Release 23.05] vaultwarden: Add VW_VERSION env to fix version detection
[Backport release-23.05] mpd: add soxr resampler support
(cherry picked from commit ce065c6a81cfcf7c1222a5275fa6e32607d19406)
23.05 kernel backports
(cherry picked from commit cfdb96ec524972f313210874744d79393c757111)
(cherry picked from commit 0f52666e61f4bca1f6c134db9ef99d796837d1b2)
(cherry picked from commit 269e0c31e9f8eeeb91e0cd7afae8f497ad4f9197)
(cherry picked from commit 45ae51d6d183ea4c1d7cecd15707d655af32328d)
(cherry picked from commit b76c2082ead2cbc13f8cc2c55b158eadeb1bc31b)
Removed on 6.6.8
commit 207f135d819344c03333246f784f6666e652e081
Author: Jens Axboe <axboe@kernel.dk>
Date: Fri Dec 15 13:40:57 2023 -0700
cred: get rid of CONFIG_DEBUG_CREDENTIALS
commit ae1914174a63a558113e80d24ccac2773f9f7b2b upstream.
This code is rarely (never?) enabled by distros, and it hasn't caught
anything in decades. Let's kill off this legacy debug code.
https://cdn.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.8
(cherry picked from commit f3568456727d90cd0f612899f027175105c53327)
(cherry picked from commit 5de6afea8179afa8de16c33b7e6b7bbe2569d047)
(cherry picked from commit 8cfe06c9d6f49ce4aeed450515108783c8a9d1fb)
(cherry picked from commit 226d75420f257a0b81f2b00182f7d7b3a082e387)
(cherry picked from commit e26294bf26001b4525c82afa95692395047cf2c4)
(cherry picked from commit 0f17835a7f48a38817c5796d3e7fc940e476fae5)
(cherry picked from commit f7c991b66d567d60540e22ead6bc718abb6f6f27)
(cherry picked from commit c005c106cc54949af27fde77ac7e78f15714d7eb)
(cherry picked from commit b9d37f2d15c067d16bf73366804d274c27e4be78)
(cherry picked from commit 73a860b056a608dfb1a21ff63120b04a90ae7267)
(cherry picked from commit 5b5eb633b351f55222120529664c0f3e67067022)
(cherry picked from commit 56931ddc416b3d365f5bd6bd5c9bc894fe0480f5)
(cherry picked from commit 1ee3fe27f20bf80311231b5f6e5df3cb2caa2e49)
(cherry picked from commit e67e8f48a87cef80eafe84c6bfc8e2b8100f84fa)
[Backport release-23.05] tor-browser: 13.0.6 -> 13.0.8, mullvad-browser: 13.0.6 -> 13.0.7
https://github.com/mullvad/mullvad-browser/releases/tag/13.0.7
(cherry picked from commit 9a4106e62ca33c9f6b5c2906300a683a73da5ce6)
https://blog.torproject.org/new-release-tor-browser-1307/
https://blog.torproject.org/new-release-tor-browser-1308/
(cherry picked from commit 3873eb4bcd61d8835d4b9bc264e5ed6ecb8cea39)
[Backport release-23.05] thunderbird*: 115.* -> 115.6.0
[Backport release-23.05] lighttpd.meta.mainProgram: init
(cherry picked from commit 32fdee50cb7598bb42ecca198be1f2a9dd864d07)
(cherry picked from commit 436509cb3113e3d2c73dcbe7ce8293d5e20a6131)
[Backport release-23.05] nixos/frigate: restart the service on failure
https://www.thunderbird.net/en-US/thunderbird/115.5.2/releasenotes/
https://www.thunderbird.net/en-US/thunderbird/115.6.0/releasenotes/
(cherry picked from commit 8e6f1922c16c3d81f73ec7dc8b281cd4010c9a35)
https://www.thunderbird.net/en-US/thunderbird/115.4.3/releasenotes/
https://www.thunderbird.net/en-US/thunderbird/115.5.0/releasenotes/
https://www.thunderbird.net/en-US/thunderbird/115.5.1/releasenotes/
https://www.thunderbird.net/en-US/thunderbird/115.5.2/releasenotes/
https://www.thunderbird.net/en-US/thunderbird/115.6.0/releasenotes/
(cherry picked from commit 99449cb0b8faaa8dee72a68c721a763695028d6a)
Closes: #266837
(cherry picked from commit 2f8686ce1767836793797f97a498c47383bd934a)
(cherry picked from commit aeb6e05d9d1a312d1523cada2ffabaa73b255908)
[Backport release-23.05] librewolf-unwrapped: 120.0.1-1 -> 121.0-1
[23.05] postfix: 3.8.2 -> 3.8.4
(cherry picked from commit 91b445737aa226bafbbe167960aa456263779836)
Security: this release adds support to defend against an email spoofing
attack (SMTP smuggling) on recipients at a Postfix server. For
background, see https://www.postfix.org/smtp-smuggling.html.
https://www.postfix.org/announcements/postfix-3.8.4.html
The source URL was modified to another mirror as the current CDN URL
failed to resolve for me from two different hosts.
(cherry picked from commit 5324b5601034d7d2090c4acdcddf1bdf08c25a73)
Changes: https://www.postfix.org/announcements/postfix-3.8.3.html
(cherry picked from commit 4f3186b458189cf7095726792e8f183ea96e1a47)
[Backport release-23.05] gpac: mark with knownVulnerabilities
[Backport release-23.05] bitcoin: 25.1 -> 26.0
(cherry picked from commit f5375ec98618347da6b036a5e06381ab7380db03)
(cherry picked from commit 1bfeb1412bfce712a and added conditioning)
I'm keeping PR #276504 to track applying the patch on all platforms.
Removed on 6.6.8
commit 207f135d819344c03333246f784f6666e652e081
Author: Jens Axboe <axboe@kernel.dk>
Date: Fri Dec 15 13:40:57 2023 -0700
cred: get rid of CONFIG_DEBUG_CREDENTIALS
commit ae1914174a63a558113e80d24ccac2773f9f7b2b upstream.
This code is rarely (never?) enabled by distros, and it hasn't caught
anything in decades. Let's kill off this legacy debug code.
https://cdn.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.8
(cherry picked from commit f3568456727d90cd0f612899f027175105c53327)
https://www.thunderbird.net/en-US/thunderbird/115.4.3/releasenotes/
https://www.thunderbird.net/en-US/thunderbird/115.5.0/releasenotes/
https://www.thunderbird.net/en-US/thunderbird/115.5.1/releasenotes/
https://www.thunderbird.net/en-US/thunderbird/115.5.2/releasenotes/
https://www.thunderbird.net/en-US/thunderbird/115.6.0/releasenotes/
(cherry picked from commit 99449cb0b8faaa8dee72a68c721a763695028d6a)
Security: this release adds support to defend against an email spoofing
attack (SMTP smuggling) on recipients at a Postfix server. For
background, see https://www.postfix.org/smtp-smuggling.html.
https://www.postfix.org/announcements/postfix-3.8.4.html
The source URL was modified to another mirror as the current CDN URL
failed to resolve for me from two different hosts.
(cherry picked from commit 5324b5601034d7d2090c4acdcddf1bdf08c25a73)