Commit graph

14 commits

Author SHA1 Message Date
Xin LI
541f0a28be Remove previously added security patch against session table
exhaustion, as it causes more problems in the latest phpbb
version.  Users are advised to drop and re-create their
session tables (phpbb_sessions, phpbb_sessions_keys) without
using "HEAP" tables.

Approved by:	maintainer (via e-mail)
2007-01-11 08:31:07 +00:00
Martin Wilke
2a52488a6f - Update to 2.0.21
- Add new WWW layout

PR:		        ports/99438
Submitted by:   Kang Liu <liukang@cn.freebsd.org>
Approved by:	markus (co mentor)
2006-06-30 23:02:28 +00:00
Xin LI
048d6d4065 Give the user a chance to disable our local anti-DoS patch, which
appears to be conflict with phpBB's built-in captcha functionality.

Please note that this does not change the default behavior (patch
phpBB for the DoS issue), and this is intentionally undocumented.
Hopefully we can get rid of all these home-grown stuff as the
phpBB make their 2.2-release.

Requested by:	Goyo Roth <sadangel@pow2clk.net>
PR:		ports/93204
Submitted by:	delphij
Approved by:	Kang Liu <liukang@cn.FreeBSD.org>
Approved by:	mentor (sem)
2006-05-07 17:30:59 +00:00
Marcus Alves Grando
d6c724b104 Update to 2.0.18
Add SHA256

PR:		87372
Submitted by:	Ed Schouten <ed@fxq.nl>
Approved by:	maintainer timeout, 23 days
2005-11-08 19:26:55 +00:00
Jean-Yves Lefort
2bebbc676d - Update to 2.0.15 [1]
- Use SUB_FILES=pkg-message

PR:		ports/81060 [1]
Submitted by:	maintainer [1]
2005-05-16 08:32:03 +00:00
Cheng-Lung Sung
6a5fb2dc6b - fix low risk vulnerability
(VuXML ID  4a0b334d-8d8d-11d9-afa0-003048705d5a)

PR:		78779
Submitted by:	Kang Liu (maintainer)
2005-03-14 02:32:56 +00:00
Pav Lucistnik
55571c1c5d - Update to 2.0.9
PR:		ports/69042
Submitted by:	Xin LI <delphij@frontfree.net>
Approved by:	maintainer
2004-07-14 15:17:44 +00:00
Pav Lucistnik
802504d61c - Plug IP spoofing vulnerablity
http://www.vuxml.org/freebsd/cfe17ca6-6858-4805-ba1d-a60a61ec9b4d.html
- Plug sessions table exhaustion DoS attack
  http://www.securityfocus.com/archive/1/360931

PR:		ports/66150
Submitted by:	Xin LI <delphij@frontfree.net> (maintainer)
2004-05-06 10:07:06 +00:00
Pav Lucistnik
cd168f5792 - Update to 2.0.8a
PR:		ports/64939
Submitted by:	Kang Liu <liukang@bjpu.edu.cn> (maintainer)
2004-03-30 21:33:26 +00:00
Pav Lucistnik
fbfb1933d4 - Plug another SQL injection vulnerability
Exploit posted at:	http://www.securityfocus.com/archive/1/358708
Patch obtained from:	http://www.securityfocus.com/archive/1/358751

PR:		ports/64803
Submitted by:	Kang Liu <liukang@bjpu.edu.cn> (maintainer)
2004-03-27 15:07:16 +00:00
Edwin Groothuis
9b21df6338 update ports/www/phpbb to 2.0.6
phpBB Group are pleased to announce the release of phpBB
	2.0.6 the "phew, it's way to hot to be furry" Edition. This
	release had been made to fix a number of potential security
	related issues and more annoying bugs.  (from:
	http://www.phpbb.com/phpBB/viewtopic.php?t=124245) Here is
	the patch made by me,I would like to be the maintainer of
	this port.

PR:		ports/55230
Submitted by:	Kang Liu <liukang@bjpu.edu.cn>
2003-08-24 11:37:24 +00:00
Norikatsu Shigemura
4020c357c0 o Fix two vulnerabilities.
http://www.phpbb.com/news.php?id=17

	* phpBB SQL Injection vulnerability
	http://www.phpbb.com/phpBB/viewtopic.php?t=112052

	* PHPBB Admin_Styles.PHP Theme_Info.CFG File Include Vulnerability
	http://www.securityfocus.com/bid/7932/credit/
	http://www.phpbb.com/phpBB/viewtopic.php?t=113826

o Bump PORTREVISION.
o Take MAINTAINERship to ports@.

PR:		ports/54165[1]
Submitted by:	Kang Liu <lazykang@hotmail.com> [1]
		Ivanchenko V. I. <webmaster@asiamusic.ru>
2003-07-07 08:04:49 +00:00
Johann Visagie
4f51c79d52 - Update to version 2.0.3
- Use $TAR rather than cpio(1) to install
- $PERL -> $REINPLACE_CMD
- Install contributed code under $DATADIR
- Numerous small fixes
2002-10-29 19:54:47 +00:00
Johann Visagie
1cd8250a01 - Big cleanup - almost a complete rewrite of this port
- Add necessary dependency on www/mod_php4
- Structure port Makefile and $PLIST in such a way that configuration data is
  not overwritten upon reinstall
- Ensure that (de)installation as package also works correctly
- Install documentation under $DOCSDIR
- Bump $PORTREVISION
2002-05-10 09:54:03 +00:00