Commit graph

10728 commits

Author SHA1 Message Date
Florent Thoumie
19c9068753 Document xfs -- multiple vulnerabilities. 2007-10-08 12:05:08 +00:00
Mark Linimon
37688beae5 Mark as broken on gcc4.2. 2007-10-07 12:42:36 +00:00
Stefan Walter
cca9adb7db Respect OPENSSLBASE.
PR:		116986 [1], 109041 [2]
Submitted by:	maintainer [1], supraexpress@globaleyes.net [2]
2007-10-07 12:36:46 +00:00
Chin-San Huang
ef978159f3 - Update security/chntpw to 070923.
PR:		ports/116967
Submmitter:	maintainer
2007-10-06 06:36:21 +00:00
Andrew Pantyukhin
12053ed044 - Update to 3.04 2007-10-06 00:06:25 +00:00
Andrew Pantyukhin
123d815215 - Sort category Makefiles
Inspired by:	Jason Harris <jharris@widomaker.com>
Howto:		http://twiki.cenkes.org/Cenkes/SortingCategoryMakefiles
2007-10-05 23:33:27 +00:00
Oliver Lehmann
279889d2e3 fix the patch I messed up!
*sigh*
2007-10-05 19:50:19 +00:00
Marcus Alves Grando
6263358d77 - Update gsskex patch to 20070927
- Update HPN patch to hpn12v19 [1]

Notified by:	ale [1]
2007-10-05 12:41:25 +00:00
Martin Wilke
30f9615ad2 - Document tcl/tk -- buffer overflow in ReadImage function
PR:		116881
Submitted by:	Nick Barkas <snb@threerings.net>
Reviewed by:	simon
2007-10-05 09:35:49 +00:00
Alex Dupre
6b7a9b8cd6 Update to 1.04 release. 2007-10-05 06:09:00 +00:00
Cheng-Lung Sung
83da1daa95 - Update to 2.24 2007-10-05 05:13:03 +00:00
Edwin Groothuis
9ab4c6dd21 Remove errornous # DO NOT DELETE lines caused by makedepend(1) 2007-10-05 03:07:12 +00:00
Cheng-Lung Sung
af1fe83651 - update prelude library dependency
PR:		ports/116111
Submitted by:	Robin Gruyters <r dot gruyters_AT_yirdis dot nl>
2007-10-05 01:48:34 +00:00
Cheng-Lung Sung
bdf32af2dd - update dependency on libprelude
PR:		ports/116110
Submitted by:	maintainer (Robin Gruyters)
2007-10-05 01:47:09 +00:00
Cheng-Lung Sung
a285174426 - Update to 0.9.13
- bump libprelude library

Changelog libpreludedb:
- Source and Target now use a 16 bits index (required for CorrelationAlert
  with large number of source/target). CorrelationAlert Alertident now use a
  32 bits index (required to link large number of Alert together).
- Fix compilation on system without ENOTSUP (fix #227):
  Include modified patch from Alexandre Anriot <aanriot@atlantilde.com>.
- [pgsql] Patch by Pierre Chifflier <chifflier@inl.fr>, that fixes type
  conversions preventing PostgreSQL to use indexes (fix #225).
- [preludedb-admin] Use separate alert / heartbeat command: this is done to
  have a coherent implementation of the --offset and --count command line
  options.
- [preludedb-admin] Fix --offset with the load command.
- [preludedb-admin] Give the delete table a decent size, should speedup the
  delete command.
- [documentation] preludedb-admin manpage (fix #230), by Pierre Chifflier
  <chifflier@inl.fr>.

PR:		ports/116109
Submitted by:	maintainer (Robin Gruyters)
2007-10-05 01:46:14 +00:00
Cheng-Lung Sung
17114d625b - Update to 0.9.9.1
- bump libprelude library

Changelog prelude-manager:
- Fix for new libprelude (0.9.15) runtime warning.
- Add documentation for SQLite3 in the template configuration file
  (S??繅astien Tricaud <toady at gscore.org>).

PR:		ports/116108
Submitted by:	maintainer (Robin Gruyters)
2007-10-05 01:45:06 +00:00
Cheng-Lung Sung
1e36b84691 - Update to 0.9.15.2
- Updated patch-Makefile.in
- Added Man page

Changelog libprelude:
- prelude-adduser has been renamed to prelude-admin, and now include command
  to print or send files containing binary IDMEF data.
- Brand new failover implementation, Feature a real 'journaling' log,
  allowing to restart where we were interupted. Allow multiple process to write to
  the same failover, and is chroot safe.
- prelude-admin manpage, thanks to Frederic Motte <fred at ubixis com>.
- Use SHA1 in place of MD5 for Analyzer checksum.
- Do not set TCP option on UNIX socket, avoid un-necessary warning.
- New measure all over the public interface to protect against bad API
  usage, when a function is not used correctly, a critical warning is triggered.
- [logging]: New PRELUDE_LOG_CRIT logging priority.
- [logging]: Correctly map Prelude log level to Syslog priority.
- [logging]: Improved logging format (include timestamp, level, process pid).
- [logging]: New LIBPRELUDE_ABORT variable, useful if you'd like libprelude
  to abord on critical assertion.
- [logging]: Automatically switch to syslog mode if we detect stdout/stderr
  closure.
- [IDMEF-Criteria]: When we try to match a value against a path that is not
  part of a message using a 'not' operator, the match should succeed
  (Example:
   alert.classification.text != 'stuff' should match if the message has no
   classification object).
- [IDMEF-Criteria]: When matching multiple listed values within the same
  path using a 'not' operator, return an explicit 'no match' if the provided
  comparison value was found at least once.
- [IDMEF-Path] (fix #251): Fixes NULL pointer dereference when the last
  element of an IDMEF path to an enumeration is not the enumeration itself
  (S??鞋bastien Tricaud <toady at gscore.org>
- Fix a possible race condition with the internal libprelude reference to
  the program idmef_analyzer_t when asynchronous timer were used.
- Workaround possible deadlock at exit on OpenBSD, Linux Glibc.
- Only configure libltdl if it is required.
- Various bug fixes, minor enhancements.
- Write the children PID into specified pidfile (fixes #257).
- Fix double free on idmef_criterion_value_t cloned regexp object (thanks
  to Helmut Azbest <helmut.azbest at gmail.com>).
- Allow Python thread to run, while entering libprelude C function.
- Return PRELUDE_ERROR_ASSERTION when API check fail, in place of
  PRELUDE_ERROR_GENERIC.
- Make prelude_plugin_unsubcribe() work as expected (call the plugin
  instance destroy function).
- Various bug fixes, minor enhancements.

PR:		ports/116107
Submitted by:	maintainer (Robin Gruyters)
2007-10-05 01:44:07 +00:00
Diane Bruce
369baeaa34 - This patch fixes broken install.
PR:		ports/116875
Reported by:	db
Submitted by:	Maintainer
2007-10-05 01:21:47 +00:00
Edwin Groothuis
c947287940 Remove always true/always false OSVERSION conditions. 2007-10-04 23:08:40 +00:00
Xin LI
d42f9fd9d4 Document firebird multiple remote buffer overflow vulnerabilities 2007-10-04 22:56:29 +00:00
Oliver Lehmann
b3950a7bca fix build of courier-authlib-vchkpw 2007-10-04 14:57:29 +00:00
Rong-En Fan
2866a78221 Wapiti allows you to audit the security of your web applications.
It performs "black-box" scans, i.e. it does not study the source code of
the application but will scans the webpages of the deployed webapp,
looking for scripts and forms where it can inject data.
Once it gets this list, Wapiti acts like a fuzzer, injecting payloads to
see if a script is vulnerable.

WWW: http://wapiti.sourceforge.net/

PR:		ports/116873
Submitted by:	Philippe Audeoud <jadawin at tuxaco.net>
2007-10-04 13:21:39 +00:00
Edwin Groothuis
678db880d8 remove double bsd.port.mk 2007-10-04 09:21:59 +00:00
Edwin Groothuis
13441eac4b Remove always-false/true conditions based on OSVERSION 500000 2007-10-04 06:02:06 +00:00
Edwin Groothuis
0d263e77cb Remove support for OSVERSION < 5 2007-10-04 00:00:38 +00:00
Edwin Groothuis
f1826a6393 [PATCH] security/fwbuilder: cleanup non-supported FreeBSD versions
- removed support to 4.X (EOL)
	- add correct NOPORTDOCS

PR:		ports/111822
Submitted by:	Marcelo Araujo <araujo@bsdmail.org>
Approved by:	maintainer timeout
2007-10-03 12:19:22 +00:00
Oliver Lehmann
2ec39f47c3 update to 0.60.0 2007-10-03 12:10:07 +00:00
Remko Lodder
f0bb9c6ed8 Update the bugzilla and mediawiki entries to properly match their corrected
versions.

Prodded by:	Nick Barkas (and a few others)
2007-10-02 18:27:37 +00:00
Xin LI
abc5f7d1e6 Update to reflect the fixed version of id3lib. 2007-10-02 02:04:41 +00:00
Xin LI
c28f02d4c5 Document id3lib insecure temporary file creation vulnerability 2007-10-01 21:04:45 +00:00
Mark Linimon
b551476ed8 Mark as broken with gcc4.2 on 64-bits archs. 2007-09-30 11:01:00 +00:00
Mark Linimon
531874040c Fine-tune broken message. 2007-09-30 10:59:11 +00:00
Mark Linimon
3997490dc6 Mark as broken on gcc4.2. 2007-09-30 10:55:57 +00:00
Mark Linimon
b23621676d Remove 4.X cruft. 2007-09-30 10:54:00 +00:00
Mark Linimon
0ad7412dc4 Remove cruft. 2007-09-30 10:51:24 +00:00
Mark Linimon
99cb35bd20 Also broken with gcc4.2. 2007-09-30 10:47:51 +00:00
Mark Linimon
b77b407107 Mark as broken with gcc4.2. 2007-09-30 10:43:57 +00:00
Mark Linimon
65d7f39607 Mark as broken with gcc4.2 on 64-bit archs. 2007-09-30 10:39:07 +00:00
Mark Linimon
554c4dc7c4 Mark as broken: fails to install. 2007-09-30 10:35:32 +00:00
Mark Linimon
9bc52272d3 Mark as only for i386-6.
Based on:

PR:		ports/115474
Submitted by:	maintainer
2007-09-30 10:33:03 +00:00
Mark Linimon
522be11394 Add USE_PERL5. This will be needed to conditionalize bsd.perl.mk inclusion.
Approved by:	maintainer
2007-09-30 09:21:42 +00:00
Edwin Groothuis
8754909e19 [update] security/pam-mysql to 7.0RC1
Includes fix for correct use of -lmd to find MD5 functions
	(see: http://sourceforge.net/tracker/index.php?func=detail&aid=1485390&group_id=5741&atid=105741)

Note: Used autoconf 2.61 to prevent problems with the upcoming sweep

PR:		ports/113882
Submitted by:	Angelo Turetta <aturetta@bestunion.it>
Approved by:	maintainer timeout
2007-09-30 06:14:09 +00:00
Mark Linimon
dc572b07ee Before bsd.port.pre.mk, set either USE_PERL5 or WANT_PERL, depending on
whether the perl dependency is unconditional or conditional.  This will
be needed for the conditional inclusion of bsd.perl.mk.
2007-09-30 04:55:31 +00:00
Mark Linimon
48420a5ebd Switch autoconf dependencies from 2.53 or 2.59 to 2.61.
PR:		ports/116639
Submitted by:	aDe
2007-09-30 04:47:36 +00:00
Hiroki Sato
3a4ea6e7e2 Update to 1.2.4.1. Changes include:
- "*grabServer" resource bug has been fixed.
2007-09-29 23:19:28 +00:00
Alejandro Pulver
cc6a4eebad - Make it work on 64-bit systems.
- Avoid the build failing when OpenSSL is installed as a port too.

PR:		ports/94921
Submitted by:	Mats Palmgren <mats.palmgren@bredband.net>
2007-09-29 22:12:20 +00:00
Alejandro Pulver
6709dbfa47 - Turn off keyboard grabbing to avoid mouse pointer lock after returning from
the screensaver.

PR:		ports/103395
Submitted by:	Vladimir Grebenschikov <vova@fbsd.ru>
2007-09-29 20:39:43 +00:00
Pav Lucistnik
0bc99cad27 - Mark BROKEN everywhere: does not compile
Reported by:	pointyhat
2007-09-29 12:48:56 +00:00
Thomas Abthorpe
6124fba7a8 - cleanup Makefile
- update comment/descripttion to indicate port is a wrapper to Digest::MD5
- pass maintainership to perl@

Approved by:	miwi (co-mentor)
2007-09-27 18:40:42 +00:00
Shaun Amott
bb373dcac1 Upgrade to 1.0.1.
PR:		ports/115589
Submitted by:	Rasmus Kaj <kaj@kth.se>
2007-09-27 00:16:01 +00:00