Commit graph

5633 commits

Author SHA1 Message Date
Oliver Eikemeier
137b94aa13 phpGedView, jftpgw 2004-08-15 17:22:09 +00:00
Jacques Vidrine
e9f7e2b6ed Correct the version number range affected for ja-samba.
Correct the version number range affected for Mozilla 1.8 alphas.

Problem hinted at by:	eik
2004-08-15 15:51:15 +00:00
Tilman Keskinoz
37f8349dd4 Fix build with gcc 3.4 2004-08-15 14:40:58 +00:00
Jacques Vidrine
57275b7328 Correct the version number range affected for Mozilla 1.8 alphas.
Problem hinted at by:	eik

While I'm here, add a CVE name reference and a couple of other relevant
Bugzilla links.  It is interesting that this security issue was reported
as early as 1999.  Also, replace the text plagiarized from the Secunia
advisory without attribution with a more helpful (maybe?) description of
the issue.
2004-08-15 14:31:56 +00:00
Oliver Eikemeier
153f0ae562 Remove -a from the default fetch(1) flags, so that the daily security
report is not delayed when the distribution site is down.

Submitted by:	kuriyama
2004-08-15 12:26:16 +00:00
Hye-Shik Chang
b256cf1a1d Update to 0.6 2004-08-15 07:24:07 +00:00
Oliver Lehmann
ef866e788f take care of $PREFIX/libdata/pkgconfig 2004-08-14 21:57:56 +00:00
Kirill Ponomarev
1bbdec872c Fix build with gcc-3.4 2004-08-14 19:00:00 +00:00
Kirill Ponomarev
80753bbf7c Fix plist.
Pet portlint.
2004-08-14 16:28:18 +00:00
Kirill Ponomarev
43b9ab41f2 Fix plist. 2004-08-14 16:26:26 +00:00
Kirill Ponomarev
a4692297d1 Fix plist. 2004-08-14 16:14:14 +00:00
Tilman Keskinoz
8b4cbcf502 Fix build with gcc 3.4 2004-08-14 09:28:51 +00:00
Tom Rhodes
de9a4bedec Format string vulnerability in jftpgw.
Informed by:	Robert Nagy <robert@openbsd.org>
2004-08-13 21:31:53 +00:00
Oliver Eikemeier
48af6951c8 apply xlist not to the own files 2004-08-13 17:51:46 +00:00
Oliver Eikemeier
40f8b91153 fix man page nits,
modify the vulnerability report depending on -q/-v (experimental)

PR:		69935, 68942
Submitted by:	Chris Pepper <pepper@reppep.com>, Johan Karlsson <k@numeri.campus.luth.se>
2004-08-13 17:07:05 +00:00
Kirill Ponomarev
e7ffe66e0d Fix RUN_DEPENDS
PR:		ports/70419
Submitted by:	maintainer
2004-08-13 17:01:05 +00:00
Oliver Eikemeier
ea84ffa8c6 fix some vuxml duplicates, add sympa unauthorized list creation 2004-08-13 16:48:12 +00:00
Norikatsu Shigemura
9a39a7be6d Change MAINTAINER to perl@.
I welcome bsd.port.mk introduced soon.

Inspired by:	freebsd-perl@
2004-08-13 15:21:20 +00:00
Volker Stolz
00af95661f - Add WITHOUT_NESSUS_GTK knob.
- Upgrade rc.d script to the rc-ng style; bump PORTREVISION for that.
- Add CONFLICTS.

PR:		ports/69878
Submitted by:	Udo Schweigert (maintainer)
2004-08-13 14:15:25 +00:00
Volker Stolz
d157fa040e - Add WITHOUT_NESSUS_GTK knob.
- Upgrade rc.d script to the rc-ng style; bump PORTREVISION for that.
- Add CONFLICTS.

PR:		ports/69877
Submitted by:	Udo Schweigert (maintainer)
2004-08-13 13:36:02 +00:00
Jacques Vidrine
e0c4499656 Repair broken URL.
Noticed by:	simon
2004-08-12 22:06:17 +00:00
Michael Nottebrock
57447419e7 Add another entry for kdelibs3 due to another missed patch. 2004-08-12 21:32:15 +00:00
Michael Nottebrock
3f9cf344ae Correct entries for recent kde vuln's and add new entry for kdelibs
(3.2.3_3 didn't have all patches).
2004-08-12 21:17:31 +00:00
Jacques Vidrine
9da119a4e7 Add two issues covering three KDE advisories: two temporary file
handling issues, and a KHTML issue.
2004-08-12 21:07:06 +00:00
Joe Marcus Clarke
43a4224b14 The last commit should have changed the comparison tag from <le> to <lt>. 2004-08-12 20:54:13 +00:00
Joe Marcus Clarke
ef312156c5 Update Gaim vulnerability (5b8f9a02-ec93-11d8-b913-000c41e2cdad) to indicate
that gaim-0.81_1 has a fix for this.
2004-08-12 20:44:41 +00:00
Jacques Vidrine
291958383c The MSN component of Gaim contains remotely exploitable buffer
overflows.
2004-08-12 19:23:23 +00:00
Jacques Vidrine
73a5aef293 The Adobe Acrobat Reader can be coerced into executing arbitrary
commands on UNIX systems.
2004-08-12 19:05:51 +00:00
Jacques Vidrine
236ce7e201 Under certain configurations of POPfile may allow an attacker to
retrieve files from the victim's machine.

Reported by:	Daniel Grund <mail@dgrund.de>
2004-08-12 18:56:10 +00:00
Jacques Vidrine
acb0e4f51a Correct version information syntax in a number of entries. VuXML-using
tools are expected only to understand actual package names and version
numbers, not globs such as `foo-{bar,baz}' or `1.*'.
2004-08-12 18:43:01 +00:00
Sergey Matveychuk
1fdfd447c6 Doorman is a port knocking implementation which allows a server to run
silently, invisibly, with all TCP ports closed except to those who know...
the secret knock!

PR:		ports/70186
Submitted by:	Aaron Dalton <aaron@daltons.ca>
2004-08-12 17:27:31 +00:00
Oliver Eikemeier
1c507c2a20 give the ImageMagick png vulnerability an own entry 2004-08-12 11:58:18 +00:00
Oliver Eikemeier
a49bbe0700 fix security hole in non-chroot rsync daemon.
<http://www.freebsd.org/ports/portaudit/2689f4cb-ec4c-11d8-9440-000347a4fa7d.html>
2004-08-12 10:45:27 +00:00
Oliver Eikemeier
9fcf94529c 9fb5bb32-d6fa-11d8-b479-02e0185c0b53 is a duplicate of 40800696-c3b0-11d8-864c-02e0185c0b53 2004-08-12 00:08:05 +00:00
Pav Lucistnik
7dcf14e7f0 - Update to 1.8.10b
PR:		ports/69387
Submitted by:	David Thiel <lx@redundancy.redundancy.org> (maintainer)
2004-08-11 23:00:12 +00:00
Oliver Eikemeier
ab808db926 f72ccf7c-e607-11d8-9b0a-000347a4fa7d is a duplicate of 6f955451-ba54-11d8-b88c-000d610a3b12, move references 2004-08-11 22:57:51 +00:00
Sergey Matveychuk
179f12f12d - Don't pretend we support anything older than perl 5.8.2. Support for
5.00503 was severly broken and amavisd-new author officially only supports
  5.8.2 and up. As an added bonus, this simplifies the makefile very much.
- Install a usable amavisd.conf if none exists
- On installation, remove amavisd.conf if it is equal to default one
- On installation, create /var/amavis/tmp, because the new amavisd.conf
  uses this directory to store temporary files
- Remove address extension options from the example configuration file.
  Neither sendmail nor postfix support address extensions on FreeBSD
  by default.

PR:		ports/70306
Submitted by:	maintainer
2004-08-11 22:45:57 +00:00
Pav Lucistnik
0668708361 - Install additional documentation
- Portlint

PR:		ports/69627
Submitted by:	Radim Kolar <hsn@netmag.cz>
Approved by:	maintainer timeout (14 days)
2004-08-11 22:10:50 +00:00
James E. Housley
830d958b88 Update to DAT 4385 2004-08-11 18:05:34 +00:00
Jun Kuriyama
790671b0a0 Upgrade to 3.1.1.
Approved by:	maintainer
2004-08-11 16:14:07 +00:00
Norikatsu Shigemura
ac6d4a708e Update to 0.21.
PR:		ports/70257
Submitted by:	skv
2004-08-11 15:40:32 +00:00
Kirill Ponomarev
577ab96060 Update to 0.1.4 2004-08-11 08:27:32 +00:00
Volker Stolz
091136d76a Update to 20040810
- W32/Mydoom.N@mm
- W32/Mydoom.P@mm
- W32/Bagle.AI@mm
- W32/Sober.I@mm
- W32/Mydoom.Q@mm

PR:		ports/70274
Submitted by:	Tim Bishop (maintainer)
2004-08-11 06:51:38 +00:00
Michael Nottebrock
461f3c5adb Factor out all but one of the build switches of the KDE main module ports
into separate ports. The OPTIONS will remain as of yet and trigger dependencies
now, for easy transition.

Update KOffice to version 1.3.2.

Add patches to fix a number of issues, including:

- fix kxkb on Xorg
- fix kdemultimedia WITH_MPEGLIB (now mpeglib_artsplug) compilation on gcc 3.4.2
  with optimizations greater than -O

Add security related patches and entries to portaudit.txt.
2004-08-11 01:27:37 +00:00
Oliver Eikemeier
e8b59255be add a reference for linux-png-1.0.x to 3a408f6f-9c52-11d8-9366-0020ed76ef5a 2004-08-10 11:00:48 +00:00
Oliver Eikemeier
0826a8f01d libine "vcd:" input source buffer overflow 2004-08-10 08:50:27 +00:00
Kevin Lo
c9c4306645 Update to 0.6.5
PR: 70212
Submitted by: MAINTAINER
2004-08-10 05:56:27 +00:00
Jun Kuriyama
939bf7cb50 Fix plist.
Approved by:	maintainer
2004-08-10 05:22:04 +00:00
Oliver Eikemeier
9b87366d7a SpamAssassin DoS & cfengine authentication heap corruption 2004-08-10 00:56:37 +00:00
James E. Housley
09f6b7f2ae Update to DAT 4384 2004-08-10 00:15:20 +00:00