Commit graph

21981 commits

Author SHA1 Message Date
Hajimu UMEMOTO
14e92b7732 Fix build with clang and MIT Kerberos.
Reported by:	Beat Siegenthaler <beat.siegenthaler__at__beatsnet.com>
2015-10-09 14:22:37 +00:00
Tijl Coosemans
c4e12a20bf New port: security/esteidfirefoxplugin
A Firefox plugin that enables in-browser digital signing with Estonian ID
cards.

PR:		194300
Submitted by:	toomas.aas@raad.tartu.ee
Reviewed by:	marino
2015-10-09 09:06:16 +00:00
Palle Girgensohn
ea97aed20c Add entry for two security problems in PostgreSQL
CVE-2015-5289: json or jsonb input values constructed from arbitrary
user input can crash the PostgreSQL server and cause a denial of
service.

CVE-2015-5288: The crypt() function included with the optional pgCrypto
extension could be exploited to read a few additional bytes of memory.
No working exploit for this issue has been developed.
2015-10-08 21:18:53 +00:00
Antoine Brodin
55f070c203 Unbreak INDEX 2015-10-08 19:52:00 +00:00
Bernard Spil
8af8503214 security/stunnel: Update to 5.24
- Supports building without EGD
  - Order options alphabetical

Reviewed by:	koobs (mentor), zi (maintainer)
Approved by:	zi (maintainer)
PR:	198997
Differential Revision:	https://reviews.freebsd.org/D2694
2015-10-08 19:38:53 +00:00
Jimmy Olgeni
eb8748beda Remove trailing whitespace from Makefiles, M-X. 2015-10-08 15:12:22 +00:00
Dmitry Marakasov
efe60d6b89 - Move file owner handling to plist, fix stage as non-root
PR:		203287
Submitted by:	amdmi3
Approved by:	maintainer timeout (ek@purplehat.org, 2 weeks)
2015-10-08 13:19:42 +00:00
Dmitry Marakasov
63d66740c9 - Optionize DOCS
Approved by:	kwm
2015-10-07 18:04:03 +00:00
Emanuel Haupt
f0a121e8c4 Update to 0.16 2015-10-07 12:22:33 +00:00
Dag-Erling Smørgrav
b43a2bc820 r398691 placed the patch in the wrong directory, where it had no effect.
Move it to the master port and bump the subport again.

Reviewed by:	ume@
2015-10-07 07:19:26 +00:00
William Grzybowski
bb9f4237d7 security/vuxml: Document Zend Framework 1 vulnerability
PR:		203462
Security:	d3324fdb-6bf0-11e5-bc5e-00505699053e
Security:	CVE-2014-8089
2015-10-06 15:02:38 +00:00
Dag-Erling Smørgrav
a428eb2978 Silence debugging message.
Approved by:	maintainer silence
2015-10-06 08:55:46 +00:00
Jason Unovitch
e9f4ccdda9 Document OpenSMTPD vulnerabilities (5.7.3)
Revise pkg name, add PORTEPOCH, add more detail to earlier entry (5.7.2)

Security:	42852f72-6bd3-11e5-9909-002590263bf5
Security:	ee7bdf7f-11bb-4eea-b054-c692ab848c20
Security:	CVE-2015-7687
2015-10-06 02:54:49 +00:00
Jason Unovitch
b695e42b60 Document recent mbed TLS/PolarSSL security releases
PR:		203544
Security:	5d280761-6bcf-11e5-9909-002590263bf5
Security:	953aaa57-6bce-11e5-9909-002590263bf5
2015-10-06 02:24:46 +00:00
Koop Mast
dc0f431bb0 GNOME 3 expects pinentry to have libsecret support. so instead of offering
a options change always build it with libsecret support.

Approved by:	maintainer (implicit)
2015-10-05 20:18:23 +00:00
Steve Wills
1e96f2755d security/vault: update to 0.3.0, add LICENSE
PR:		203548
Submitted by:	Dave Cottlehuber <dch@skunkwerks.at>
2015-10-05 18:58:12 +00:00
Vanilla I. Shu
45e99b72eb define DOCSDIR to avoid file conflict with security/erlang-jose. 2015-10-05 15:13:09 +00:00
Vanilla I. Shu
e2680f5b78 define DOCDIRS to avoid file conflict with security/elixir-jose. 2015-10-05 15:11:35 +00:00
Dmitry Marakasov
d33a1b4d3b - Regenerate python bytecode to fix references to stagedir
- Remove USES=desktop-file-utils as suggested by stage-qa
- Add NO_ARCH

Approved by:	portmgr blanket
2015-10-05 13:19:44 +00:00
Koop Mast
b62752ffb6 Unbreak vuxml, woops. 2015-10-05 11:56:43 +00:00
Koop Mast
cdc4fb8019 Document heap overflows and a DoS in gdk-pixbuf2.
Security:	CVE-2015-7673, CVE-2015-7674
2015-10-05 11:46:56 +00:00
Tijl Coosemans
54605fdfbd Update to 2.1.1
PR:		203546
Submitted by:	takefu@airport.fm
MFH:		2015Q4
Security:	https://tls.mbed.org/tech-updates/releases/mbedtls-2.1.1-and-1.3.13-and-polarssl-1.2.16-released
2015-10-05 09:13:58 +00:00
Tijl Coosemans
faf3c23c3c - Update to 1.3.13
- Take maintainership

PR:		203545
Submitted by:	takefu@airport.fm
MFH:		2015Q4
Security:	https://tls.mbed.org/tech-updates/releases/polarssl-1.2.15-and-mbedtls-1.3.12-released
Security:	https://tls.mbed.org/tech-updates/releases/mbedtls-2.1.1-and-1.3.13-and-polarssl-1.2.16-released
2015-10-05 09:11:45 +00:00
Jason Unovitch
e8566ce038 Document 20150910 Plone advisories
PR:		203255
Security:	6b3374d4-6b0b-11e5-9909-002590263bf5
2015-10-05 03:09:24 +00:00
Jason Unovitch
0b27f0b023 Document PHP multiple security advisories in phar plugin
PR:		203541
Security:	c1da8b75-6aef-11e5-9909-002590263bf5
2015-10-05 00:00:11 +00:00
Jason Unovitch
323aa15dc7 Add CVE reference to Apache James entry
PR:		203461
Security:	CVE-2015-7611
Security:	be3069c9-67e7-11e5-9909-002590263bf5
2015-10-04 21:27:55 +00:00
Sunpoet Po-Chuan Hsieh
5c0a38f92e - Convert to new options target helper
Approved by:	portmgr (blanket)
2015-10-04 18:01:34 +00:00
Steve Wills
2d9053c65d Document mail/opensmtpd vulnerability 2015-10-04 14:23:03 +00:00
Sunpoet Po-Chuan Hsieh
2eed519680 - Add NO_ARCH 2015-10-03 17:12:02 +00:00
Sunpoet Po-Chuan Hsieh
efff28dc5b - Add NO_ARCH 2015-10-03 17:11:57 +00:00
Sunpoet Po-Chuan Hsieh
7bb252677f - Add NO_ARCH 2015-10-03 17:11:53 +00:00
Sunpoet Po-Chuan Hsieh
4dab170ebe - Add NO_ARCH 2015-10-03 17:11:49 +00:00
Sunpoet Po-Chuan Hsieh
c12f71e706 - Add NO_ARCH 2015-10-03 17:11:45 +00:00
Sunpoet Po-Chuan Hsieh
38598eb703 - Add NO_ARCH 2015-10-03 17:11:40 +00:00
Sunpoet Po-Chuan Hsieh
9630e1ea3b - Update to 2.0.1
- Add LICENSE_FILE

Changes:	https://github.com/tinfoil/devise-two-factor/commits/master
2015-10-03 17:10:51 +00:00
Rodrigo Osorio
79bc9b413e Upgrade TOR port to 0.2.6.10
PR:		201540
Submitted by:	Neel Chauhan <neel@neelc.org>
Approved by:	bf@ (maintainer)
2015-10-03 07:32:41 +00:00
Dmitry Marakasov
bc79ec9140 - Add empty directory to plist
- Drop @dirrm* from plist

Approved by:	portmgr blanket
2015-10-02 11:19:22 +00:00
Mathieu Arnold
7f5ef38c3f Backout r398328 and r398370, they break packages depending on them.
With hat:	portmgr
MFH:		2015Q4
Sponsored by:	Absolight, The FreeBSD Foundation
2015-10-02 10:41:09 +00:00
Vanilla I. Shu
55ebba7bbd Move 'elirix-' to PKGNAMEPREFIX to make portlint happy. 2015-10-02 02:40:31 +00:00
Vanilla I. Shu
24e2752adc Move 'erlang-' to PKGNAMEPREFIX. 2015-10-02 02:39:57 +00:00
Hajimu UMEMOTO
f571a16345 Use SUB_FILES. 2015-10-01 17:08:36 +00:00
Hajimu UMEMOTO
d4d22ea900 Fix DOCSDIR. 2015-10-01 16:52:45 +00:00
Hajimu UMEMOTO
d2c500d787 Sync package name with origin.
PR:		202756
2015-10-01 15:58:07 +00:00
Jason Unovitch
48375c0b2a Document security advisory for the Apache James server
PR:		203461
Security:	be3069c9-67e7-11e5-9909-002590263bf5
2015-10-01 03:14:14 +00:00
Dmitry Marakasov
33ad4e44e4 - Convert pkg-install script to @dir
- Use options helpers
- Remove unneeded @dir's from plist

PR:		203045
Submitted by:	amdmi3
Approved by:	maintainer timeout (gabor, 2 weeks)
2015-09-30 18:31:32 +00:00
Carlo Strub
f4b1502edf Report OTRS vulnerability
Security:	CVE-2015-6842, CVE-2013-7135
2015-09-30 06:18:37 +00:00
Vanilla I. Shu
de804b218e Add elixir-jose. 2015-09-29 13:30:49 +00:00
Vanilla I. Shu
8a7c423ef2 Fix RUN_DEPENDS. 2015-09-29 12:48:39 +00:00
Vanilla I. Shu
1f0e322af4 add erlang-jose. 2015-09-29 12:15:47 +00:00
Jimmy Olgeni
e80d2fc541 Upgrade security/elixir-comeonin to version 1.2.2. 2015-09-29 03:39:42 +00:00