Commit graph

7259 commits

Author SHA1 Message Date
James E. Housley
8e39113f4d Update DAT to 4521 2005-06-24 16:19:37 +00:00
Hiroki Sato
6612153b41 Document tor -- information disclosure. 2005-06-24 10:22:18 +00:00
Hiroki Sato
a3b72b8856 Document linux-realplayer -- RealText parsing heap overflow. 2005-06-24 09:09:22 +00:00
Sergey Matveychuk
0c3a3fc053 - Bump PORTREVISION
Requested by:	Pavel Rochnyack (irc)
2005-06-24 08:02:04 +00:00
James E. Housley
69fe73b7b0 Update DAT to 4520 2005-06-23 18:35:58 +00:00
Jean-Yves Lefort
e98c7b7cba - Fix compilation of the milter interface
- Unconditionally define PORTDOCS, as bsd.port.mk now tests ${NOPORTDOCS}
2005-06-23 13:22:22 +00:00
Jean-Yves Lefort
d49651ebb7 - Fix compilation of the milter interface [1]
- Unconditionally define PORTDOCS, as bsd.port.mk now tests ${NOPORTDOCS}

[1]:
PR:		ports/82543
Submitted by:	Thomas Abthorpe <thomas@stthomasanglican.org>
2005-06-23 13:08:06 +00:00
Hiroki Sato
4d8593594d Document ruby -- arbitrary command execution on XMLRPC server. 2005-06-23 06:55:35 +00:00
James E. Housley
32f21d42a5 Update DAT to 4519 2005-06-22 16:06:43 +00:00
Jean-Yves Lefort
d82a3ba54e Fix the packing list 2005-06-22 10:50:39 +00:00
Jean-Yves Lefort
3fff40d2ff - Update to 0.86 [1]
- Fix the packing list

[1]
PR:		ports/82474
Submitted by:	Renato Botelho <freebsd@galle.com.br>
Approved by:	maintainer
2005-06-22 10:49:00 +00:00
Erwin Lansing
26d0ab36f7 Add calife-devel
Forgotten by:	roberto
Committed from: Las Vegas, NV
2005-06-22 02:33:18 +00:00
James E. Housley
4d940b2572 Update DAT to 4518 2005-06-21 18:11:13 +00:00
Sergey A. Osokin
0e8964abd3 Security update to latest release: 1.6.8p9.
<Security Alert>
Summary:
A race condition in Sudo's command pathname handling prior
to Sudo version 1.6.8p9 that could allow a user with Sudo
privileges to run arbitrary commands.
Sudo versions affected:
Sudo versions 1.3.1 up to and including 1.6.8p8.
</Security Alert>

More information about this incident available at:
http://www.sudo.ws/sudo/alerts/path_race.html
2005-06-21 12:52:00 +00:00
Sergey Matveychuk
578582c275 - net/cacti - potential SQL injection and cross site scripting attacks 2005-06-21 09:58:39 +00:00
Simon L. B. Nielsen
6d9112c46e Document three opera issues. 2005-06-20 22:34:16 +00:00
Simon L. B. Nielsen
087a40724b Document sudo -- local race condition vulnerability. 2005-06-20 20:18:18 +00:00
Simon L. B. Nielsen
3114180a17 Add another reference to the latest tcpdump issue. 2005-06-20 19:17:10 +00:00
Simon L. B. Nielsen
474b753410 - Add entry for trac -- file upload/download vulnerability.
- Improve the last couple of entries a bit:
  - Whilespace cleanup.
  - Use standard topic format (port name first, then description
    starting with lower case).
  - Make sure SpamAssasin entry also match other 3.0.3 port revisions.
2005-06-20 19:09:23 +00:00
Tilman Keskinoz
b1cf6fea3b Update to 2.38
PR:		82404
Submitted by:	<ports@c0decafe.net>
2005-06-20 17:29:08 +00:00
James E. Housley
d85cbc1fd3 Update DAT to 4517 2005-06-20 16:22:19 +00:00
Ollivier Robert
73bd0af16b Update to 3.0pre5. 2005-06-20 15:58:11 +00:00
Sergey Matveychuk
30348bd7b9 - razor-agents DoS vulnerabilities
PR:		ports/82414
Submitted by:	dawnshade <h-k@mail.ru>
2005-06-20 07:30:57 +00:00
Hiroki Sato
e21fc4f2ab Fix year in <discovery> and <entry>.
Noticed by:	nectar
Pointy hat to:	hrs
2005-06-19 04:57:35 +00:00
Hiroki Sato
c602fda13e Document SpamAssassin -- Denial of service vulnerability. 2005-06-18 17:27:50 +00:00
Hiroki Sato
dc454f0ed2 Document squirrelmail -- Several cross site scripting vulnerabilities. 2005-06-18 17:15:37 +00:00
Hiroki Sato
22d1dafaee Document acroread -- XML External Entity vulnerability. 2005-06-18 16:54:40 +00:00
Simon L. B. Nielsen
81889035ad Use standard topic format for gzip vulnerability. 2005-06-18 14:49:14 +00:00
Simon L. B. Nielsen
30a5cf4a1a Document FreeBSD-SA-05:11.gzip. 2005-06-18 14:32:18 +00:00
Jean-Yves Lefort
f68431200c - Update to 0.1.0.10 [1]
- Polish the Makefile and packing list

PR:		ports/82386 [1]
Submitted by:	maintainer [1]
2005-06-18 13:35:11 +00:00
Jean-Yves Lefort
ff7b747432 - Update to 3.5.0 [1]
- OPTIONSify
- Use USE_PERL5_RUN
- Add missing pcre dependency
- Do not use -static

PR:		ports/82346 [1]
Submitted by:	maintainer [1]
2005-06-18 13:09:09 +00:00
Simon L. B. Nielsen
89d53d3ffa Document SA-05:10.tcpdump. 2005-06-17 23:19:34 +00:00
Simon L. B. Nielsen
377794aabe Document two vulnerabilities in Gaim. 2005-06-17 19:12:46 +00:00
Jacques Vidrine
f9737b9ea0 Document an older, more serious gallery vulnerability. 2005-06-17 18:37:41 +00:00
Jacques Vidrine
b193fa2396 Document XSS vulnerabilities in gallery. 2005-06-17 18:30:12 +00:00
Jacques Vidrine
e4cd0f13f2 Document KDE kstars vulnerability. 2005-06-17 18:11:27 +00:00
Jacques Vidrine
82957a65f9 Document fd_set overruns reported by 3APA3A. 2005-06-17 17:00:17 +00:00
Cy Schubert
39830a9c20 Update 1.6.3 --> 1.8.1 2005-06-17 17:00:02 +00:00
James E. Housley
cfc879afdd Update to DAT 4516 2005-06-17 16:24:59 +00:00
Sergey Matveychuk
067d3b1c7c - Don't install profile dir when WITH_PROFILE undefined
- I pick up this port

PR:		ports/82326
Submitted by:	Dmitry A Grigorovich <odip@bionet.nsc.ru>
2005-06-17 09:45:04 +00:00
James E. Housley
3d2eed1101 Update to DAT 4515 2005-06-16 16:05:21 +00:00
Roman Bogorodskiy
f10badd39a Update to 0.7.0.
PR:		82322
Submitted by:	Janos Mohacsi (maintainer)
2005-06-16 15:51:40 +00:00
Michael Johnson
1295f99ab3 - Update to 0.10
PR:		ports/82280
Submitted by:	Ports Fury
2005-06-16 02:24:17 +00:00
Michael Johnson
e3c610bd35 - Reroll tarball and mirror on MASTER_SITE_LOCAL, the orignal tarball
was tared up and gzipped twice and gnutar does not like that.

Pointed out by:	krismail
2005-06-15 20:23:33 +00:00
James E. Housley
9b89df25df Update to DAT 4514 2005-06-15 16:16:00 +00:00
Michael Johnson
47cdb23dd1 - Add sasp
This is a tool that uses ARP poisoning  to  have  a  scenario
like this: we have a LAN and we want offer connectivity to every-
one coming here with his laptop for example. It could happen that
our  customer  has  his  network parameters already configured to
work correctly in his own LAN, but not working here. We can  have
then this scenario:
Customer's  host (10.0.0.2/8 and default gateway set to 10.0.0.1)
Our LAN (192.168.0.0/24 with real gateway 192.168.0.254).
All that we want is that our customer plugs his laptop  and  joins
the  internet without changing nothing of his network parameters.
Here comes this tool installed in my real gw(192.168.0.254)  It's
a  sort  of sniffer, because it sniffs broadcast ARP requests for
the gateway and answers that the gateway is itself In our example
our  customer's  laptop  sends  this request: arp who-has 10.0.0.1
tell 10.0.0.2 Now our gateway does the following: 1)  Sends  back
this  reply to 10.0.0.2: arp reply 10.0.0.1 is-at his_mac_address
2)Create the alias 10.0.0.254 (ARP is not routable so we need one
alias  for each subnet that is not our one) 3)Sends itself an ARP
reply to refresh his ARP cache
It is different from proxy arp for two reasons: first it runs  in
user  space,  then in this case we can plug machines belonging to
whatever subnet, while proxy arp is used in the case of only  two
different ones.

PR:		ports/79676
Submitted by:	Luigi Pizzirani <sviat@opengeeks.it>
2005-06-15 06:57:10 +00:00
Simon L. B. Nielsen
de9b30b80a Grab maintainer-ship of portaudit. While I do not currently have any
plans for improvements (though I have ideas) I feel that portaudit is
too important to not have an active maintainer.

Approved by:	portmgr (linimon)
2005-06-14 22:04:55 +00:00
Niels Heinen
91cdac02fb New port: Create HOME directory with a PAM module on demand
Based on submission via the following PR:

PR:		ports/82032
Submitted by:	Martin Mersberger
Approved by:	nectar (mentor)
2005-06-14 20:01:55 +00:00
Roman Bogorodskiy
267ba56334 Update to 20050614 (0.86rc1).
PR:		82222
Submitted by:	Renato Botelho <freebsd@galle.com.br>
Approved by:	Rob Evers (maintainer)
2005-06-14 19:35:44 +00:00
Niels Heinen
066316238b Change MAINTAINER email back from babak@farrokhi.net to
vaidab@safe-mail.net. This was mistakenly changed during
yesterdays patch.

Approved by:	nectar (mentor)
2005-06-14 18:52:04 +00:00
James E. Housley
591f4309d9 Update to DAT 4513 2005-06-14 16:45:35 +00:00
Roman Bogorodskiy
977f36cb9f Update to 1.1.3.
PR:		82232
Submitted by:	Linh Pham (maintainer)
2005-06-14 16:06:21 +00:00
Ollivier Robert
3d10bd7a67 Update to 2.8.6-p4, should fix port de-install. 2005-06-14 11:03:17 +00:00
Ollivier Robert
d047aa895e Add CONFLICTS entry for calife-3.* (calife-devel). 2005-06-14 10:54:23 +00:00
Ollivier Robert
ad8fb0c4de Please welcome the development version of calife:
- full PAMification
- code cleanup & silmplification
- fixes (some of them will/are in 2.8.6 too).

Thomas (thomas@) has agreed to maintain it too although as the author, I may
update things with his approval from times to times.

Repocopied by:  marcus
2005-06-14 10:28:35 +00:00
Peter Pentchev
95275bc068 OPTIONS'ify, but still leave WITH_STUNNEL_SSL_ENGINE out of it - it is
a bit too dangerous to leave out in the open.
2005-06-14 09:07:12 +00:00
Peter Pentchev
fe4f451ee5 Fix the stunnel ucontext-related problems using a patch from the author,
Michael Trojnara[1].
Also, add the build-time WITH_FORK, WITH_PTHREAD, and WITH_UCONTEXT knobs
to control the stunnel threading model used, based on Vasil Dimov's PR's
with some modifications [2].
While I'm here, add in a <sys/types.h> inclusion that seems to be needed
for <ucontext.h> at least on FreeBSD 6.0/sparc64.

Reported by:	many
Pointy hat to:	roam (myself) for both not noticing this and then letting
		it linger for a while
Obtained from:	Michael Trojnara's BSD patch from
		<53594c631989fde6ca0bdb3435b93dfe@mirt.net> [1]
PR:		81289, 82202 [2]
Submitted by:	Vasil Dimov
2005-06-14 08:58:47 +00:00
Roman Bogorodskiy
39d4c86ef7 Update MASTER_SITES.
PR:		82199
Submitted by:	Adi Pircalabu (maintainer)
2005-06-14 03:19:28 +00:00
Niels Heinen
c1bd3a408a Upgrade to version 1.2.7
PR:		ports/82193
Submitted by:	Babak Farrokhi
Approved by:	nectar (mentor)
2005-06-13 14:13:37 +00:00
James E. Housley
d359ac4c62 Update to DAT 4512 2005-06-13 14:02:19 +00:00
Florent Thoumie
bcd33eb96a - Remove empty pkg-plist.
PR:		ports/82158
Submitted by:	TAOKA Fumiyoshi
2005-06-12 13:44:51 +00:00
Patrick Li
9b415fb001 Disable optimization
PR:		ports/76875
Submitted by:	Thomas Melzer <tmelzer@tomesoft.de>
Reviewed by:	pav
Approved by:	maintainer
2005-06-12 07:33:40 +00:00
Kirill Ponomarev
577bdf19e8 Fix restart logic in rc.subr(8) start/stop script.
Submitted by:	Alex Lyashkov <umka at sevcity dot net>
2005-06-11 20:25:09 +00:00
Sergey Skvortsov
54a1630d6e * reflect renaming on CPAN File-Spec to PathTools
+ add devel/p5-PathTools, remove devel/p5-File-Spec
   + update dependencies for all affected ports (make them unconditional),
     bump PORTREVISION for these ports
module was renamed
* reflect renaming on CPAN PodParser to Pod-Parser
   + add textproc/p5-Pod-Parser, remove textproc/p5-PodParser
   + update dependencies for all affected ports (make them unconditional),
     bump PORTREVISION for these ports

* for all changed ports make dependencies on File::Temp, Digest::MD5,
  Storable unconditional

* remove 'CONFIGURE_ARGS= INSTALLDIRS=site' from Makefile's
  (this variable is forced by bsd.port.mk now)

* update Class-Autouse to 1.17

* update POE-API-Hooks to 1.05

* make portlint happy (clean IGNORE, convert spaces to tabs and so on)
2005-06-11 16:13:12 +00:00
Joe Marcus Clarke
f234553253 Update Gaim to 1.3.1 and chase all dependent ports.
The changes in this release of Gaim can be found at
http://gaim.sourceforge.net/ChangeLog.

Submitted by:	Matthew Luckie <mjl@luckie.org.nz>
Security:	This release fixes security bugs found at
		http://gaim.sourceforge.net/security/
2005-06-11 05:16:11 +00:00
Roman Bogorodskiy
480a6a7a65 Update to 20050611.
PR:		82132
Submitted by:	Tim Bishop (maintainer)
2005-06-11 02:21:41 +00:00
James E. Housley
99424ebb7f Update to DAT 4511 2005-06-10 16:07:44 +00:00
Ollivier Robert
2a4992fb9f Update to 2.8.6-p3.
Approved by:	thomas (MAINTAINER)
2005-06-10 14:25:13 +00:00
Roman Bogorodskiy
917cecd512 Update to 20050608.
PR:		82042
Submitted by:	Renato Botelho <freebsd@galle.com.br>
Approved by:	Rob Evers (maintainer)
2005-06-10 10:01:21 +00:00
James E. Housley
838b6f0a63 Update to 4510 2005-06-09 16:09:37 +00:00
Simon L. B. Nielsen
48712a5c45 Document leafnode -- denial of service vulnerability.
Submitted by:	Matthias Andree <matthias.andree@gmx.de>
2005-06-09 08:44:03 +00:00
James E. Housley
ed6dfd4aef Update to 4509 2005-06-08 16:13:05 +00:00
Jean-Yves Lefort
19c9380f0d - convert cfsd.sh to rcNG
- add a CFS bootstrap directory to the port (${PREFIX}/cfsd-bootstrap)
- mount that CFS bootstrap directory in cfsd.sh (default mountpoint is /crypt,
  configurable in /etc/rc.conf)
- explain how to quickly setup cfsd in pkg-message
- do display pkg-message
- while here, use USE_RC_SUBR

PR:		ports/18800
Submitted by:	Louis Mamakos <louie@TransSys.COM>, myself
Approved by:	green (maintainer)
2005-06-08 11:11:08 +00:00
Niels Heinen
4c30e8b53d New port based on submission by Paul Schmehl
Sancp is a network security tool designed to collect
statistical information regarding network traffic, as
well as, collect the traffic itself in pcap format, all
for the purpose of: auditing, historical analysis, and
network activity discovery.

PR:		ports/77426
Submitted by:	Paul Schmehl
Approved by:	nectar (mentor)
2005-06-07 20:56:27 +00:00
James E. Housley
3d6b2c5211 Update to 4508 2005-06-07 16:18:21 +00:00
James E. Housley
5ba3e1e4b0 Update to 4507 2005-06-06 21:58:03 +00:00
Pav Lucistnik
02e1b098c1 - Update to 4.1p1
PR:		ports/81948
Submitted by:	Daniel Gerzo <danger@rulez.sk>
2005-06-06 19:09:04 +00:00
Florent Thoumie
3dc82dad27 - Fix libkrb5.so library version.
PR:		ports/67183
Submitted by:	Oleg Sharoiko <os@rsu.ru>
Approved by:	maintainer timeout (1 year)
2005-06-05 23:15:27 +00:00
Florent Thoumie
545cd1ee8f - Fix deinstall script when running in BATCH mode.
PR:		ports/67762
Submitted by:	Linus Sjoberg <lsjoberg@aland.net>
Approved by:	maintainer timeout (7 weeks)
2005-06-05 23:03:15 +00:00
Pav Lucistnik
acc1a167ba - Update to 0.3.6
PR:		ports/81669
Submitted by:	Vsevolod Stakhov <vsevolod@highsecure.ru>
Approved by:	maintainer timeout (16 days)
2005-06-05 20:44:14 +00:00
Pav Lucistnik
f61113f596 - Update to 2.5.4.1
PR:		ports/81928
Submitted by:	Olivier Tharan <olive@oban.frmug.org> (maintainer)
2005-06-05 19:35:17 +00:00
Yen-Ming Lee
21c860509d - update to 1.3
Noticed by:	Makoto Matsushita <matusita@jp.FreeBSD.org>
2005-06-05 16:28:08 +00:00
Florent Thoumie
66492abc86 - Fix libmilter detection.
PR:		ports/81392
Submitted by:	Henri Hennebert <hlh@ciger.be>
Approved by:	maintainer
2005-06-05 15:49:16 +00:00
Pav Lucistnik
4cbf5bc26a - Distfile rerolled:
* expired SSL certificate
  * new exploits

PR:		ports/81910
Submitted by:	Yonatan <onatan@gmail.com> (maintainer)
2005-06-05 14:36:02 +00:00
Niels Heinen
64101141a1 New port: BitDefender Console Antivirus 7.0.1
Based on submission via PR:

PR:		ports/75424
Submitted by:	Adrian Pircalabu
Approved by:	nectar (mentor)
2005-06-05 13:36:22 +00:00
Anders Nordby
60a578e0f5 Make port build on 4.x.
Noticed by:	kris/pointyhat
2005-06-04 05:39:28 +00:00
Oliver Lehmann
6bb41db8de change the libtool version to use from 1.3 to 1.5 2005-06-03 20:18:13 +00:00
Jacques Vidrine
2c16d53af1 Document a directory traversal issue in older GForge versions. 2005-06-03 19:45:36 +00:00
Jacques Vidrine
6050e992bd Document an authentication bypass vulnerability in imap-uw. 2005-06-03 19:29:42 +00:00
Jacques Vidrine
b25fc36098 Document squid denial-of-service vulnerabilities. 2005-06-03 19:18:39 +00:00
Jacques Vidrine
adb7bd090b Document a remote denial-of-service vulnerability in racoon. 2005-06-03 19:08:21 +00:00
Jacques Vidrine
3bf8b576b5 Document integer overflows in xli. 2005-06-03 18:24:44 +00:00
Jacques Vidrine
332584b9f0 Document arbitrary command execution vulnerabilities in xli and
xloadimage.
2005-06-03 18:19:23 +00:00
Jacques Vidrine
13baf51f61 Add new CVE names for yamt entry. 2005-06-03 18:01:04 +00:00
Jacques Vidrine
fbeb74e4ef Correct and improve recent xli entry:
* It actually affected xloadimage and xli
* A slightly better topic than just "buffer overflows"
* More refererences
* Fix the version number for xli... it is still vulnerable as of this
  writing
2005-06-03 17:56:42 +00:00
James E. Housley
2d230b7990 Update to 4506 2005-06-03 16:43:26 +00:00
Jacques Vidrine
605ddbb901 Correct recently added yamt entry:
* This is not CAN-2004-1302, which was documented much earlier
* Try to explain the issue
* Add the only public reference to the issue I can find
2005-06-03 16:26:13 +00:00
Tom Rhodes
3bd4a605ca Buffer overflow in xli. 2005-06-03 04:48:47 +00:00
Tom Rhodes
2409064d10 Fix breakage I caused. 2005-06-03 02:15:20 +00:00
Tom Rhodes
afa68b90b9 Note buffer overflows and directory transversal issues in audio/ymat. 2005-06-03 02:09:22 +00:00