Commit graph

11581 commits

Author SHA1 Message Date
Jean Milanez Melo
b3440ccd1f - Bump PORTREVISION.
Reported by:	Kris
2008-07-09 14:22:48 +00:00
Beech Rintoul
d1db430476 - New port p5-Crypt-OpenSSL-AES-0.02
The Crypt::OpenSSL::AES module implements a wrapper around
OpenSSL's AES (Rijndael) library.

PR:		ports/125387
Submitted by:	John Ferrell <jdferrell3 at yahoo.com>
2008-07-09 04:27:39 +00:00
Timur I. Bakeyev
97d53cd9ad Add wrongly removed OPTIONSFILE line, that fix 'make config' issue.
Approved by:	shaun (mentor, implicit)
2008-07-09 01:30:13 +00:00
Pav Lucistnik
19fd4a8b23 Ratproxy is a semi-automated, largely passive web application security audit
tool. It is meant to complement active crawlers and manual proxies more
commonly used for this task, and is optimized specifically for an accurate and
sensitive detection, and automatic annotation, of potential problems and
security-relevant design patterns based on the observation of existing,
user-initiated traffic in complex web 2.0 environments.

WWW: http://code.google.com/p/ratproxy/

PR:		ports/125249
Submitted by:	Steven Kreuzer <skreuzer@exit2shell.com>
2008-07-08 21:35:23 +00:00
Renato Botelho
70afa90efa - Update to 20080708
- Align clamav-milter startup script with security/clamav version, that waits
  for milter sock before chmod it
2008-07-08 16:17:40 +00:00
Tom McLaughlin
b7917da8c5 Fix build on 7.x when RC5 support is enabled.
PR:		103084, 122187
Submitted by:	Dmitry A Grigorovich
Approved by:	maintainer
2008-07-07 23:59:33 +00:00
Renato Botelho
f92755b7ed - Update to 0.93.3
- Change clamav-milter startup script to wait clamav-milter socket be created
  before try to chmod it [1]

PR:		ports/124643 [1]
Submitted by:	Adrian Thearle <adrian@thearle.com.au> [1]
2008-07-07 20:37:37 +00:00
Martin Wilke
4a06478931 - Bump PORTREVISION after apr update
PR:		125270 125271 125272 125278 125281 125282
		125284 125285 125287 125288 125289 125290
		125291 125292 125293 125295 125296 125297
		125300
Submitted by:	rodrigc
2008-07-07 12:37:21 +00:00
Tom McLaughlin
1693e5d070 - Update to 1.6.9p17
* the -i flag implies resetting the environment as it did prior to
  1.6.9.  The -i and -E flags are now mutually-exclusive.
2008-07-06 23:20:05 +00:00
Marcelo Araujo
c8d9993367 Net::SSH::Gateway is a library for programmatically tunneling connections to
servers via a single "gateway" host. It is useful for establishing Net::SSH
connections to servers behind firewalls, but can also be used to forward ports
and establish connections of other types, like HTTP, to servers with i
restricted access.

* Easily manage forwarded ports
* Establish Net::SSH connections through firewalls

WWW: http://net-ssh.rubyforge.org/gateway

PR:		ports/125053
Submitted by:	Philip M. Gollucci <pgollucci@p6m7g8.com>
2008-07-05 23:06:19 +00:00
Marcelo Araujo
38fff32d11 Net::SCP is a pure-Ruby implementation of the SCP protocol. This operates over
SSH (and requires the Net::SSH library), and allows files and directory trees
to copied to and from a remote server.

* Transfer files or entire directory trees to or from a remote host via SCP
* Can preserve file attributes across transfers
* Can download files in-memory, or direct-to-disk
* Support for SCP URI's, and OpenURI

WWW: http://net-ssh.rubyforge.org/scp

PR:		ports/125052
Submitted by:	Philip M. Gollucci <pgollucci@p6m7g8.com>
2008-07-05 23:03:07 +00:00
Thomas Abthorpe
6bbeedc174 - Document py-pylons -- Path traversal bug 2008-07-04 14:37:36 +00:00
Thomas Abthorpe
011fa5e5d4 - Document FreeType 2 -- Multiple Vulnerabilities
PR:		ports/124917
Submitted by:	Nick Barkas <snb threerings.net>
2008-07-03 13:30:15 +00:00
Philippe Audeoud
30dc708097 - Update to 1.3 2008-07-03 07:58:25 +00:00
Doug Barton
962c0c5185 Update to version 3.2.0, released June 15th. The configuration and
"OTR button" functionality have been moved to a menu. Also, "Buddy
authentication has been revamped, based on the user study published
in SOUPS 2008." The old authentication methods are still allowed.

This version adds locale files for ar, de, hu, and ru.

Drop the specific library version number for libpurple to
(hopefully) avoid churn down the road.

Assume maintainership, and add my website to MASTER_SITES.

Approved by:	Maintainer timeout
2008-07-02 06:00:05 +00:00
Doug Barton
3044e6da71 Add my website to MASTER_SITES 2008-07-02 05:54:48 +00:00
Doug Barton
8ff88f62ab Update to version 3.2.0, released June 15th. The configuration and
"OTR button" functionality have been moved to a menu. Also, "Buddy
authentication has been revamped, based on the user study published
in SOUPS 2008." The old authentication methods are still allowed.

In this version support for pkgconfig has been added, and the
shared library version number has been bumped.

This port has 3 consumers, net-im/climm, security/kopete-otr, and
security/pidgin-otr. Maintainers of the first two have confirmed
that this update works for them. An update for pidgin-otr is next.

This has been tested against pidgin 2.4.2 and 2.4.3.

Finally, I'm taking over maintainership per agreement with the
current maintainer.
2008-07-02 05:49:30 +00:00
Beech Rintoul
fffceacc53 - Fix: Have the racoon startup script [optionally] create its required dirs.
PR:		ports/117128
Submitted by:	John Hein <jhein@timing.com>
Approved by:	VANHULLEBUS Yvan <vanhu@netasq.com> (maintainer)
2008-07-02 04:19:30 +00:00
Yen-Ming Lee
0615cff249 - update to 2.12 2008-07-01 20:49:52 +00:00
Simon Barner
781cb19f44 Document revised patch for CVE-2008-2711. 2008-07-01 16:31:45 +00:00
Roman Bogorodskiy
ce356765b5 Update to 2.4.1. 2008-07-01 06:50:08 +00:00
Cheng-Lung Sung
fc32351533 - Update to 2.2.1
PR:		ports/125068
Submitted by:	Wen heping <wenheping_AT_gmail dot com>
2008-07-01 06:35:00 +00:00
Jeremy Messenger
0ef6e8567c Update to 2.22.3. 2008-07-01 02:33:24 +00:00
Jeremy Messenger
ba79fb297c Update to 2.22.3. 2008-07-01 02:24:43 +00:00
Oliver Lehmann
89d2be6cc0 change "dovecot" in
Add the following lines to /etc/rc.conf to enable dovecot
to "oidentd"

Reported by:	"Dan Corrigan" <dancorrigan1@gmail.com>
2008-06-30 20:17:39 +00:00
Simon L. B. Nielsen
0cb1d7b8dc Retire the ca-roots ports, which expired long ago.
The port is deprecated since it is not supported by the FreeBSD
Security Officer anymore.  The reason for this is that the ca-roots
port makes promises with regard to CA verification which the current
Security Officer (and deputy) do not want to make.

For people who need a general root certificate list see the
security/ca_root_ns, but note that the difference in guarantees with
regard to which CAs are included in ca_root_ns vs. ca-roots.  The
ca_root_ns port basically makes no guarantees other than that the
certificates comes from the Mozilla project.

Note that the ca-roots MOVED file entry on purpose does not point at
ca_root_ns due to the change in CA guarantees.

With hat:	security-officer
2008-06-29 16:48:01 +00:00
Martin Wilke
c10e841621 - Update to 0.9.1119
PR:		125046
Submitted by:	Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
2008-06-29 00:24:07 +00:00
Martin Wilke
11c7e56821 - Update to 0.9.1251
PR:		125048
Submitted by:	Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
2008-06-29 00:24:04 +00:00
Martin Wilke
df2beca2ef - Update to 0.9.1248
PR:		125049
Submitted by:	Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
2008-06-29 00:24:00 +00:00
Martin Wilke
20d0b4d4bb - Update to 0.9.1263
PR:		125050
Submitted by:	Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
2008-06-29 00:23:58 +00:00
Martin Wilke
13ace79e47 - Update to 0.9.1265
PR:		125051
Submitted by:	Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
2008-06-29 00:23:55 +00:00
Martin Wilke
fed74f0e1c - Update to 0.9.1267
PR:		125047
Submitted by:	Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
2008-06-29 00:23:54 +00:00
Martin Wilke
ede2a8483b - Document phpmyadmin - Cross Site Scripting Vulnerability
PR:		124900
2008-06-28 23:39:48 +00:00
Xin LI
361a9e0ff2 Update squid SNMP DoS vulnerability to cover squid 3.0STABLE6 as well.
Submitted by:	Thomas-Martin Seck <tmseck web de>
2008-06-28 22:35:10 +00:00
Martin Wilke
cf86c99ca7 - Update to 0.2.1.2-alpha
- Add regression-test

PR:		124812
Submitted by:	bf <bf2006a@yahoo.com>
Approved by:	maintainer
2008-06-28 15:18:30 +00:00
Marcelo Araujo
0fd2c75b7f - Update to 2.0.1.
- User RF macro.

PR:		ports/125028
Submitted by:	Philip M. Gollucci <pgollucci@p6m7g8.com>
Approved by:	Roderick van Domburg <r.s.a.vandomburg@nedforce.nl> (maintainer)
2008-06-27 23:10:53 +00:00
Marcelo Araujo
4d68f7e983 - Update to 2.0.2.
- User RF macro.

PR:		ports/125016
Submitted by:	Philip M. Gollucci <pgollucci@p6m7g8.com>
Approved by:	Roderick van Domburg <r.s.a.vandomburg@nedforce.nl> (maintainer)
2008-06-27 23:09:20 +00:00
Pietro Cerutti
1bfd5ca751 - Remove unneeded dependency on GCC 3.4 [1]
- Remove NOT_FOR_ARCH for sparc64	[1]
- Fix small typo in man page

PR:		124518 [1]
Submitted by:	yours truly
Approved by:	maintainer timeout
2008-06-26 13:42:31 +00:00
Philippe Audeoud
e728a7be08 - Update to 1.18.2
- While I'm here use SF macro

Approved by:	mentor (implicit)
2008-06-26 09:45:29 +00:00
Mark Linimon
2acbbfeef7 s/pear-Auth_OpenID2/php-Auth_OpenID2/ to go with what was actually
repocopied.

Reported by:	portsmon
2008-06-26 06:31:32 +00:00
Philippe Audeoud
dbd350ef49 - Update to 1.9.5
PR:		ports/124986
Submitted by:	Ganael Laplanche <ganael.laplanche martymac.com> (maintainer)
Approved by:	mentor (implicit)
2008-06-25 20:06:27 +00:00
Dirk Meyer
ffc0e28292 - enable cryptodev
124972
PR:		124972
Submitted by:	Larry Baird
Obtained from:	Simon L. Nielsen
2008-06-25 18:06:55 +00:00
Jose Alonso Cardenas Marquez
3a14939100 - Use new freepascal stuff
- Bump PORTREVISION
2008-06-24 15:18:15 +00:00
Thomas Abthorpe
184b3631bd - Document apache -- multiple vulnerabilities
Reviewed by:	delphij
2008-06-24 15:10:44 +00:00
Edwin Groothuis
3e0a826f1a Add dependency on phpX-dom
PR:		ports/124734
Submitted by:	Edwin Groothuis <edwin@mavetju.org>
2008-06-24 13:18:46 +00:00
Edwin Groothuis
1c31ebf4f5 [repocopy] security/php-Auth_OpenID -> security/php-Auth_OpenID2
Now supporting OpenID protocol version 2

PR:		ports/124737
Submitted by:	Edwin Groothuis <edwin@mavetju.org>
2008-06-24 13:04:04 +00:00
Rong-En Fan
c1dece6a00 - Chase rrdtool 1.3.0 update, bump PORTREVISION
PR:		ports/124749
Submitted by:	Zhen REN <bg1tpt at gmail.com> (maintainer of rrdtool)
2008-06-24 12:34:56 +00:00
Sergey Skvortsov
4736e1ccf4 Update to 0.13
Changes:	http://search.cpan.org/src/APOCAL/POE-Component-SSLify-0.13/Changes
2008-06-24 12:17:03 +00:00
Roman Bogorodskiy
d05287091d Remove security/gnutls-devel for a time while the experimental branch
is not active.
2008-06-23 17:34:35 +00:00
Roman Bogorodskiy
91cf90782c Update to 2.4.0.
Unlike previous major version bumps, this time ABI hasn't changed, so
the shared libraries' versions stayed the same. Therefore, this update
doesn't requite any special handling.
2008-06-23 16:50:25 +00:00
Ion-Mihai Tetcu
e11c56a605 - use DOCSDIR
- fix plist for -DNOPORTDOCS
- bump PORTREVISION

Submitted by:	QA Tindy run
2008-06-23 08:19:13 +00:00
Ion-Mihai Tetcu
1b68a6fc2c - use DOCSDIR
- fix plist for -DNOPORTDOCS
- bump PORTREVISION

Submitted by:	QA Tindy run
2008-06-23 07:50:24 +00:00
Cheng-Lung Sung
58c4487d9f - Update to 2.8.2.1
- 2008-06-12 - Snort 2.8.2.1

  [*] Improvements
  * Fix support for pass rules that sometimes did not take precedence
  over alert and/or drop rules.

PR:		ports/124717
Submitted by:	Michael Scheidell <scheidell_AT_secnap dot net>
2008-06-23 02:26:41 +00:00
Stanislav Sedov
c1187dd103 - Add missing <code></code> block around safe_mode.
Pointy hat to:	me
2008-06-22 21:08:08 +00:00
Pav Lucistnik
ca549fb6a4 - Mark BROKEN after recent kerberos update 2008-06-22 19:26:07 +00:00
Stanislav Sedov
aafe20bfda - Add a note to php-posix entry, that
safe_mode is considred to be insecure
  by FreeBSD Security Team.
- Add <code> blocks around function
  names.

Suggested by:	simon
2008-06-22 18:21:32 +00:00
Stanislav Sedov
8dba476dda - Document php5-posix directory traversal vulnerability. 2008-06-22 09:17:51 +00:00
Johan van Selst
e59058f328 - Update to 1.1.0
- New master site; new documentation url
- Remove obsolete patches
2008-06-21 15:12:11 +00:00
Jeremy Messenger
195f98320d Fix the Firefox 3 part, it has no multiple vulnerabilities.
Reviewed by:	remko
2008-06-21 14:46:13 +00:00
Thomas Abthorpe
10c0f9c43d - Document vim -- Vim Shell Command Injection Vulnerabilities
Reviewed by:	remko, miwi
2008-06-21 14:01:08 +00:00
Martin Wilke
232348de22 - Fix start script
PR:		124122
Submitted by:	shuyaan@gmail.com
Approved by:	maintainer
2008-06-21 12:30:35 +00:00
Stanislav Sedov
9b9c2f302b - Document recent ruby vulnerabilities. 2008-06-21 11:24:53 +00:00
Felippe de Meirelles Motta
7956f33462 - Update to 0.2.1.1-alpha.
- Add several new MASTER_SITES.

PR:		ports/124650
Submitted by:	Peter Thoenen <peter.thoenen@yahoo.com>
Reworked by:	bf <bf2006a@yahoo.com>
Approved by:	gabor (mentor, implicit), Peter Thoenen <peter.thoenen@yahoo.com> (maintainer)
2008-06-20 23:54:03 +00:00
Martin Wilke
3f527e9386 - Update to 2.1.2
- Take over maintainership

Approved by:	maintainer implicit
2008-06-20 22:06:14 +00:00
Martin Wilke
b7e9e3ed6d - Update to 2.1.0
PR:		124768
Submitted by:	mgrooms@shrew.net (maintainer)
2008-06-20 15:01:44 +00:00
Martin Wilke
76f29b272e - Clean up whitespace a bit
- Wrap long lines where appropriate

Reviewed by:	remko
2008-06-20 10:58:43 +00:00
Simon Barner
704c17a34c Document potiential crash in fetchmail < 6.3.8_6 (in -v -v verbose mode). 2008-06-20 07:48:37 +00:00
Pav Lucistnik
bab5493fe0 - Fix caca module in runtime 2008-06-19 19:35:54 +00:00
Dmitry Marakasov
e696084d23 Update my email address in 132 ports.
Approved by:	miwi (mentor)
2008-06-19 17:28:24 +00:00
Doug Barton
2396f28e1c Standardize placement and style of WWW: lines, and in some cases
remove ^M from line endings.

List of files with "issues" supplied by: Alex Kozlov <spam@rm-rf.kiev.ua>
2008-06-19 07:33:53 +00:00
Roman Bogorodskiy
97a25d7ea3 Update to 1.4. 2008-06-19 06:02:47 +00:00
Roman Bogorodskiy
e4c114ef6e - Update to 0.6.6
- Drop obsolete mastersites
2008-06-19 05:00:10 +00:00
Pav Lucistnik
ee5c0a974d - Delete expired security/amavisd port: depends on misc/compat3x, which has
security problems; old version
2008-06-18 23:15:47 +00:00
Pav Lucistnik
f7c224c164 - Expired: No longer supported. Use p5-openxpki-client-html-mason instead 2008-06-18 21:00:59 +00:00
Pav Lucistnik
44e63db296 - Unmark BROKEN: no longer segfaults during build on amd64 2008-06-18 20:00:54 +00:00
Edwin Groothuis
4a482c400b [PATCH] security/pwauth: make MIN_UNIX_UID configurable
PR:		ports/122724
Submitted by:	Scott Mitchell <rsm@freebsd.org>
Approved by:	maintainer timeout
2008-06-18 11:36:49 +00:00
Pav Lucistnik
e6aabc2ce1 Delete security/cyrus-sasl, it has been expired for a year and a half. 2008-06-17 19:01:59 +00:00
Renato Botelho
a6a0eaab90 - Fix checking of database viruses at startup script that i broke on last
commit
- Bump PORTREVISION again

Submitted by:	George L. Yermulnik <yz@iptcom.net>
Pointyhat to:	me
2008-06-17 11:20:04 +00:00
Renato Botelho
f5c9b5def5 - Fix clamd startup script to support cld containers for virus databases
- Bump PORTREVISION

Reported by:	Robert Huff <roberthuff@rcn.com>
2008-06-16 19:28:23 +00:00
Erwin Lansing
c2380b568c Drop maintainership
Submitted by:	maintainer
2008-06-15 21:45:51 +00:00
Simon L. B. Nielsen
2a3351624f Unbreak VuXML.org build: Use correct syntax for CVE name in latest
moinmoin entry.
2008-06-15 21:05:45 +00:00
Philippe Audeoud
4973efd41f - Update to 2.1-rc8
PR:		ports/124574
Submitted by:	Matthias Andree <matthias.andree gmx.de> (maintainer)
Approved by:	mentor (implicit)
2008-06-15 18:30:58 +00:00
Florent Thoumie
51feb227dd Document xorg -- multiple vulnerabilities. 2008-06-15 12:26:18 +00:00
Li-Wen Hsu
6decc3b2ff - Update to 0.12
PR:		ports/124568
Submitted by:	lwhsu
Approved by:	Peter Johnson <johnson.peter AT gmail.com> (maintainer)
2008-06-15 08:59:55 +00:00
Roman Bogorodskiy
fdf9564130 Add WITHOUT_OPENCDK and WITHOUT_LIBTASN1 knobs to respect if the
user wishes to build gnutls with the included versions instead of
the ones from ports.

PR:		121357
Submitted by:	Naram Qashat <cyberbotx@cyberbotx.com>
2008-06-15 04:53:15 +00:00
Gabor Kovesdan
7775fd27fd - Update to 5.47 2008-06-14 22:26:23 +00:00
Gabor Kovesdan
519a30933d - Update to 0.05 2008-06-14 22:26:00 +00:00
Roman Bogorodskiy
ca2aaca95a Update to 2.3.14. 2008-06-14 17:40:45 +00:00
Thomas Abthorpe
91ae8cd862 - Document moinmoin -- superuser privilege escalation
Notified by:	Janos Mohacsi
2008-06-14 05:30:17 +00:00
Edwin Groothuis
433eb56ab2 Temporary fix "building" by setting IS_INTERACTIVE 2008-06-13 11:20:13 +00:00
Cheng-Lung Sung
9f24be0d83 - Update to 2.2.0
PR:		ports/124539 [1], ports/124545 [2]
Submitted by:	wxs [1], Wen heping <wenheping_AT_gmail dot com> [2]
2008-06-13 10:15:58 +00:00
Oliver Lehmann
2684acb94f update to 0.60.6 2008-06-13 04:14:35 +00:00
Oliver Lehmann
db76ce3a68 add an error about courier-authlib < 0.60.6 2008-06-13 04:10:02 +00:00
Edwin Groothuis
be29a34732 New port: security/fwknop fwknop,"FireWall KNock OPerator", implements
Single Packet Authorization (SPA).

	fwknop stands for the "FireWall KNock OPerator", and
	implements an authorization scheme called Single Packet
	Authorization (SPA). This method of authorization is based
	around a default-drop packet filter (fwknop supports both
	iptables on Linux systems and ipfw on FreeBSD and Mac OS X
	systems) and libpcap.

	SPA requires only a single encrypted packet in order to
	communicate various pieces of information including desired
	access through an iptables policy and/or complete commands
	to execute on the target system. By using iptables to
	maintain a "default drop" stance, the main application of
	this program is to protect services such as OpenSSH with
	an additional layer of security in order to make the
	exploitation of vulnerabilities (both 0-day and unpatched
	code) much more difficult. With fwknop deployed, anyone
	using nmap to look for sshd can't even tell that it is
	listening; it makes no difference if they have a 0-day
	exploit or not. The authorization server passively monitors
	authorization packets via libcap and hence there is no
	"server" to which to connect in the traditional sense.
	Access to a protected service is only granted after a valid
	encrypted and non-replayed packet is monitored from an
	fwknop client (see the following network diagram; the SSH
	session can only take place after the SPA packet is monitored):

PR:		ports/118229
Submitted by:	Sean Greven <sean.greven@gmail.com>
2008-06-13 03:43:51 +00:00
David Thiel
dc58ac6463 Fix plist, fix bash-specific idioms in openvas-nvt-sync.
PR:		ports/124499:
Submitted by:	Tomoyuki Sakurai <cherry@trombik.org>
2008-06-12 20:27:44 +00:00
Oliver Lehmann
76558768f8 update to 0.60.4
the vpopmail support was removed with 0.60.3 (because none felt responsible
for maintaining it in courier-authlib) - this commit adds - togehter with
this update - a patch which patches the vpopmail support back into 0.60.4
(because at least I need the interaction with vpopmail!).
2008-06-12 20:13:47 +00:00
Mathieu Arnold
30be18fd46 Update to 1.66 2008-06-12 14:39:51 +00:00
Renato Botelho
102398f45a - Forgot to remove one conditional about PTHREAD_LIB on last commit 2008-06-09 23:55:20 +00:00
Renato Botelho
e4e0822bc9 - Remove < 6.1 conditional since it's no longer supported 2008-06-09 23:51:16 +00:00
Renato Botelho
bc7774eedb - Remove IGNORE for 5.x since it's no longer supported 2008-06-09 23:48:31 +00:00