Cy Schubert
0a023788fe
pkg-plist fixup
2007-06-04 21:41:34 +00:00
Erwin Lansing
1da851aff6
Add an entry for an email header injection vulnerability in
...
www/typo3 from February.
Reviewed by: remko
Persuaded by: cperciva and simon by setting up the
ports-security team
2007-06-04 20:56:26 +00:00
Maxim Sobolev
b5297f4098
Re-add pvk under proper name.
2007-06-04 20:46:04 +00:00
Maxim Sobolev
b34d0c185c
Add pvt 20070406, tool to convert a RSA key in PEM format into a PVK
...
file and vice versa.
2007-06-04 19:51:34 +00:00
Cy Schubert
7a5abcdf7b
Update 2.1.8 --> 2.1.11
2007-06-04 16:29:59 +00:00
Gabor Kovesdan
a5a79ff2eb
Remove expired ports:
...
2007-04-27 security/op: no longer available from any mastersite
2007-05-15 shells/bash2: Old, unmaintained version, use shells/bash instead
2007-05-19 sysutils/xperfmon: irrelevant for supported FreeBSD releases
2007-06-04 15:01:37 +00:00
Martin Wilke
781637120c
- Document phppgadmin - Cross Site Scripting Vulnerability.
...
Reviewed by: mnag@
Reported by: dinoex@
2007-06-04 12:42:17 +00:00
Anders Nordby
713a278bc4
Drop maintainership of gringotts ports, no interest in this anymore.
...
It has long-standing bugs not being fixed, and the WWW site seems
abandoned. It does still work, but the port(s) would be better left of
using the patches from
http://www.shlomifish.org/open-source/bits-and-bobs/gringotts-patch/
if anyone wants to look into this where I leave it.
2007-06-03 20:23:45 +00:00
Erwin Lansing
a499b8d607
Update to 0.55
2007-06-03 17:49:50 +00:00
Edward Tomasz Napierala
ed2a5982f8
- Add entry for findutils -- GNU locate heap buffer overrun.
...
Revieved by: simon (secteam)
Approved by: miwi (mentor)
2007-06-01 19:36:13 +00:00
Renato Botelho
0744663c92
- Update to 0.90.3
...
- Remove unzoo support (clam doesn't support it anymore)
PR: ports/113174
Submitted by: Michael Scheidell <scheidell@secnap.net>
2007-06-01 17:09:09 +00:00
Kirill Ponomarev
9274ab617e
Update to 0.2.16
2007-06-01 08:20:31 +00:00
Oliver Lehmann
ed26d2aab5
fix the build for gcc 4.2 when compiling courier-authlib-vchkpw
2007-05-31 17:48:06 +00:00
Xin LI
ed56a09fc7
Mark file < 4.21 as vulnerable to the heap overflow.
2007-05-31 08:05:11 +00:00
Renato Botelho
eb1371d4a9
- Fix CLAMAV_CLAMD_SOCKET
...
Reported by: Robert Huff <roberthuff@rcn.com>
2007-05-31 00:44:57 +00:00
Cy Schubert
b4d1f5a386
Update 2.1.8 --> 2.1.11
2007-05-30 17:15:20 +00:00
Martin Wilke
d7453e2ac3
- Update to 1.2
...
PR: 112960
Submitted by: Thomas Abthorpe <thomas@goodking.ca>
Approved by: maintainer
2007-05-30 06:59:33 +00:00
Martin Wilke
e17793cbe5
- Update to 0.9.10
...
Changelog prelude-lml:
- Ability to use regular expressions in plugins.rules to define
monitored sources, this can be very useful when combined to file
globing.
- [SPEEDUP] When the "*" keyword is used, the data is passed to the
upper layer without trying to match anything.
- Fix NULL pointer dereference when a rule reference an existing,
but empty context (fix #226 ).
- Remove deprecated use of prelude_client_print_setup_error(),
directly handled via prelude_perror().
- Make the log parser more robust.
PR: 112835
Submitted by: Robin Gruyters <r.gruyters@yirdis.nl> (maintainer)
2007-05-30 06:13:54 +00:00
Martin Wilke
016298809b
- Update to 0.9.8
...
- Added user prelude with uid/gid 281
prelude-manager Changelog:
- Initial implementation of the 'thresholding' plugin, allowing you to
suppress events after a certain limit/threshold.
- Filters hooking to a reporting plugin are now OR'ed instead of being
AND'ed. AND is already possible by hooking filtering plugin one with
another.
- Improved error reporting.
- Minor bug fixes.
PR: 112416
Submitted by: Robin Gruyters <r.gruyters@yirdis.nl> (maintainer)
2007-05-30 06:11:57 +00:00
Renato Botelho
9f63c71af0
- Update to 20070529
...
- Make all last changes that i've made on security/clamav:
o Make arc, arj, lha and unzoo achives support dependency as OPTIONS
o Fix build with gethostbyname_r after 601103
o Install clamav-config.h
o Change clamav-milter rc.d script to use a var to determine seconds of
timeout to wait clamd socket be started, just if clamav_clamd_enable
is set
2007-05-29 17:33:52 +00:00
Tilman Keskinoz
cab028aec8
Build with system compiler on CURRENT
2007-05-29 15:45:19 +00:00
Martin Wilke
8ee0d2721f
- Add a patch for output the correct checksum for the null string.
...
PR: 112553
Submitted by: Ighighi<ighighi@gmail.com>
Obtained from: pkgsrc
2007-05-29 14:54:04 +00:00
Andrew Pantyukhin
d504a7a5f2
- Update to 0.5.2
2007-05-29 08:31:14 +00:00
Marcus Alves Grando
0a813ab2ac
- Update to 1.3.1
2007-05-28 18:21:04 +00:00
Renato Botelho
b27ec488de
- Make arc, arj, lha and unzoo achives support dependency as OPTIONS enabled by
...
default. Clamav can run fine without these guys. PORTREVISION bump is not
needed since final package is the same.
PR: ports/113087
Submitted by: baptiste.daroussin@gmail.com
2007-05-28 14:39:03 +00:00
Roman Bogorodskiy
b33b09f494
Update to 0.3.10.
2007-05-28 13:23:56 +00:00
Edwin Groothuis
e95ab83015
Fix PLIST_DIRS
...
Noticed by : kris-mail
2007-05-27 21:38:43 +00:00
Sergey Skvortsov
035682d1f1
Update to 0.08
...
Changes: http://search.cpan.org/src/APOCAL/POE-Component-SSLify-0.08/Changes
2007-05-27 19:44:37 +00:00
Martin Wilke
5dd9cd116f
- Update to 1.7
...
PR: 112866
Submitted by: Ulf Lilleengen <lulf@pvv.ntnu.no> (maintainer)
2007-05-27 15:34:47 +00:00
Martin Wilke
7560a5ec5e
- Update to 1.16
...
PR: 112600
Submitted by: TAKAHASHI Kaoru <kaoru@kaisei.org> (maintainer)
2007-05-27 10:40:53 +00:00
Martin Wilke
a08c7529ba
- Update to 1.3.6
...
PR: 112795
Submitted by: Kian Mohageri <kian.mohageri@gmail.com>
Approved by: maintainer
2007-05-27 10:00:08 +00:00
Martin Wilke
763f1e581f
- Update to 1.15
...
PR: 112925
Submitted by: Nils Vogels <nivo+kw+ports.bfa274@is-root.com>
2007-05-27 09:48:24 +00:00
Kris Kennaway
b7ff7031ea
BROKEN with gcc 4.2
2007-05-27 03:03:31 +00:00
Roman Bogorodskiy
d8ee054c84
Update to 1.7.11.
2007-05-26 17:09:15 +00:00
Marcelo Araujo
6c1654e729
- Update to new upstream version 2.1-rc4.
...
- Override new automake default dir.
PR: ports/112414
Submitted by: Matthias Andree <matthias.andree@gmx.de>
Approved by: stas (mentor)
2007-05-26 15:47:21 +00:00
Li-Wen Hsu
098759834a
- Update to 1.1.1
...
Approved by: clsung (mentor, implicitly)
2007-05-26 07:06:59 +00:00
Erwin Lansing
a0deefc6e4
Update to 0.25
2007-05-25 23:26:08 +00:00
Erwin Lansing
1fd3cddd2f
Update to 0.04
2007-05-25 23:24:16 +00:00
Kris Kennaway
71b36ac469
BROKEN with gcc 4.2
2007-05-25 23:05:08 +00:00
Erwin Lansing
009c0bf166
Update to 0.04
2007-05-25 19:09:38 +00:00
Renato Botelho
d7b870c62a
- Update to 0.7.8
2007-05-25 12:44:26 +00:00
Renato Botelho
78eadaaaa8
- Update to 0.60
...
PR: ports/112377
Submitted by: Dima Panov <fluffy@ael.ru>
2007-05-25 12:34:15 +00:00
Edwin Groothuis
261efdda40
Remove BROKENness by pointing to the old/ directory
2007-05-25 11:04:44 +00:00
Alex Dupre
80c646bb79
Update to 0.9.20 release.
2007-05-25 05:57:34 +00:00
Kris Kennaway
fe3a568be3
BROKEN: Unfetchable
2007-05-25 01:19:17 +00:00
Cheng-Lung Sung
6348e2d790
- stephane@ give up maintain his ports
...
PR: ports/112464
Submitted by: stephane
2007-05-25 00:39:40 +00:00
Joe Marcus Clarke
3c9b6f623e
Add an entry for the recent Freetype heap overflow vulnerability.
...
Submitted by: Nick Barkas <snb@threerings.net>
2007-05-25 00:37:57 +00:00
Tim Bishop
fb1d4a05d2
- Update to 20070525
2007-05-24 23:01:10 +00:00
Edwin Groothuis
1a66b2caf9
New port: security/smap
...
smap is a simple scanner for SIP enabled devices
smap sends off various SIP requests awaiting responses from SIP
enabled DSL router, proxies and user agents. It could be considered
a mashup of nmap and sipsak ;)
WWW: http://www.wormulon.net/
Author: Hendrik Scholz <hscholz@raisdorf.net>
2007-05-24 22:16:25 +00:00
Remko Lodder
8003ff9706
Document FreeBSD-SA-07:04.file (heap overflow in file(1))
...
Approved by: portmgr (secteam implicit)
2007-05-23 16:29:27 +00:00
Cy Schubert
6fd3e0d617
Fix a bug in the fwanalog parser for ipfw logs.
...
Approved by: portsmgr (marcus)
2007-05-23 15:47:59 +00:00
Gabor Kovesdan
af5b6e57f7
Fix packaging. No PORTREVISION bump, since it installs and deinstalls cleanly,
...
just does not package. Somehow tinderbox did not reflect this issue, but
pointyhat and local tests did.
Reported by: Bryan Fullerton <bryanf@samurai.com>,
pointyhat (via kris)
Approved by: portmgr (linimon)
2007-05-21 22:52:40 +00:00
Martin Wilke
4f2588d5fc
- Document squirrelmail -- Cross site scripting in HTML filter
...
Approved by: portmgr (marcus)
2007-05-21 20:08:21 +00:00
Florent Thoumie
d4f0d0048a
- Welcome X.org 7.2 \o/.
...
- Set X11BASE to ${LOCALBASE} for recent ${OSVERSION}.
- Bump PORTREVISION for ports intalling files in ${X11BASE}.
2007-05-19 20:36:56 +00:00
Simon L. B. Nielsen
e82affd309
Document png -- DoS crash vulnerability.
2007-05-16 21:10:03 +00:00
Simon L. B. Nielsen
fdeb5fd7a2
Document samba -- multiple vulnerabilities.
...
Brought to you from Heathrow Airport and BSDCan 2007 Devsummit.
2007-05-16 20:22:35 +00:00
Simon L. B. Nielsen
5660505553
Backout last change.
...
Blackboard:
- I will remember to look at which files are committed.
- I will remember to look at which files are committed.
- I will remember to look at which files are committed.
- I will remember to look at which files are committed.
- I will remember to look at which files are committed.
- I will remember to look at which files are committed.
- I will remember to look at which files are committed.
x1000
Pointy hat to: simon
2007-05-10 17:34:45 +00:00
Simon L. B. Nielsen
4e0a6f6ea4
Update PHP entry to include the vulnerable version so the entry is
...
correct for when PHP is updated in ports (yes it's being worked on),
or for people who upgrade "manually".
With hat: secteam
Requested by: several
2007-05-10 17:31:49 +00:00
Remko Lodder
947b7a739d
Document a lot of PHP vulnerabilities, mark all php4 and php5 (+cli,cgi)
...
ports as vulnerable till the ports had been upgraded.
2007-05-07 09:12:41 +00:00
Remko Lodder
1ee4a7171c
Bump modification date for the latest mod_perl entry, this was forgotten
...
by erwin, but there were "massive" changes that warrant a date bump.
2007-05-07 08:49:25 +00:00
David Thiel
b40d615dd3
Update to 2.3.4. This fixes a reliablility problem in the process check
...
module. If you are a user of this module, upgrading is recommended.
Approved by: edwin (mentor)
2007-05-02 23:04:13 +00:00
Cy Schubert
b4d312cbea
Remove defunct (zero length) patch files.
...
Pointy hat to: yours truly
2007-05-02 21:17:33 +00:00
Andrew Pantyukhin
94dc59ba04
- Add an option to enable insults
...
Submitted by: Dan Casey <dcasey@debtresolve.com>
2007-05-02 18:47:16 +00:00
Remko Lodder
573e3a6f58
Standarize the latest entry (qemu) a bit more and add a forgotten 'a'
...
in the p5-Imager text.
2007-05-02 16:56:22 +00:00
Alejandro Pulver
6121c51e44
- Move DIST_SUBDIR to the frist part of the port.
...
- Use OpenSSL from the ports (the new version makes additional functionality
to be compiled, which enables future - 2 right now - ports to work).
PR: ports/112131
Submitted by: alepulver (myself)
Approved by: mnag (maintainer, timeout)
2007-05-02 16:21:44 +00:00
Oliver Lehmann
b30b9add9f
remove "restart_cmd" to make restart work again
2007-05-02 09:27:25 +00:00
Juergen Lock
1c19bc62dd
Document multiple qemu vulnerabilities
...
Obtained from: debian-security-announce@lists.debian.org mailing list
Security: multiple qemu vulnerabilities
2007-05-01 22:49:39 +00:00
Cy Schubert
1de73f88e7
Properly support wiping of raw devices under FreeBSD.
2007-05-01 21:44:12 +00:00
Gabor Kovesdan
d9d5b2b55a
- Update to 2.5.0
...
- Add Altermime support
- Add P7Zip support
Release Notes: http://www.ijs.si/software/amavisd/release-notes.txt
PR: ports/112048
Submitted by: Michael Scheidell <scheidell@secnap.net>
2007-05-01 18:31:56 +00:00
Alex Dupre
6282f5cb8d
Update to 0.9.19 release.
2007-05-01 08:02:53 +00:00
Cheng-Lung Sung
bdbfc642f9
- Update to 1.06
2007-05-01 03:59:12 +00:00
Lars Balker Rasmussen
77e127836a
Update to 0.57 - fixes possible overflow vulnerability regarding malformed
...
BMPs, see vuln.xml for details.
Security: VuXML ID: 632c98be-aad2-4af2-849f-41a6862afd6a
2007-04-30 17:51:53 +00:00
Roman Bogorodskiy
eaa5d0a692
Update to 1.6.2.
2007-04-30 14:39:17 +00:00
Remko Lodder
507f8c5208
Document FreeBSD -- IPv6 Routing Header 0 is dangerous
2007-04-28 18:34:30 +00:00
Martin Wilke
8583369226
- Update to 1.2.0
...
- Take maintainership
2007-04-27 20:45:46 +00:00
Oliver Lehmann
0d840ed535
update to 0.59.3
2007-04-26 19:38:28 +00:00
Shaun Amott
93e556cf61
Update to 1.2.4.
2007-04-26 16:59:56 +00:00
Li-Wen Hsu
dadc6ea859
Metasploit 2.x (security/metasploit) is no longer being developed. It should
...
be removed, in due time. security/metasploit-devel should take it's place.
Since this is a complete rewrite in a different language, there is no migration
path.
This change is a heads-up for users.
Also remove old perl stuff (by lwhsu)
PR: 112009
Submitted by: Yonatan <onatan AT gmail.com> (maintainer)
Approved by: clsung (mentor)
2007-04-26 09:42:19 +00:00
Cheng-Lung Sung
adfb647aaf
- Update to 1.64
2007-04-26 07:06:37 +00:00
Erwin Lansing
1b24a292e8
Rework the mod_perl entry to note that Mandriva originally released
...
an advisory. Also add mod_perl2 to the vulnerable versions.
2007-04-25 19:05:44 +00:00
Erwin Lansing
e9ca1878e6
Minor wordsmithing in the last mod_perl entry.
...
Submitted by: simon
2007-04-25 17:11:17 +00:00
Erwin Lansing
b85159572e
Add entry for mod_perl -- remote DOS in PATH_INFO parsing
...
PR: 111844
Submitted by: "Philip M. Gollucci" <pgollucci@p6m7g8.com>
2007-04-25 17:04:36 +00:00
Anton Berezin
de5763df40
Fix location of a dependency.
...
Reported by: krismail
2007-04-25 07:34:27 +00:00
Jean Milanez Melo
4fe8d1ba02
- Remove FreeBSD 4.X support.
...
PR: ports/111884
Submitted by: Marcelo Araujo <araujo@bsdmail.org>
2007-04-24 16:23:13 +00:00
Cheng-Lung Sung
a7c65255b8
Add aespipe , an AES encrypting or decrypting pipe.
...
PR: ports/112056
Submitted by: Ekkehard 'Ekki' Gehm <gehm at physik.tu-berlin.de>
2007-04-24 08:00:28 +00:00
Cy Schubert
9abfecf5f8
Update from 1.6 to 1.6.1.
2007-04-23 22:10:09 +00:00
Anton Berezin
d9fddefe1b
p5-Crypt-OpenPGP 1.03_1 should not be vulnerable to CVE-2005-0366.
2007-04-23 14:12:10 +00:00
Anton Berezin
dbf2771921
Resurrect p5-Crypt-OpenPGP, now with a patch for CVE-2005-0366.
...
Seems OK: simon, lth
2007-04-23 14:01:17 +00:00
Andrew Pantyukhin
468698b11f
- Fix plist
...
Reported by: pointyhat via kris
2007-04-22 19:59:42 +00:00
David Thiel
6234f76585
Remove BROKEN on 4.x (due to EOL).
...
PR: ports/111827
Submitted by: Marcelo Araujo <araujo@bsdmail.org>
Reviewed by: lx
Approved by: edwin (mentor)
2007-04-22 01:14:26 +00:00
Kris Kennaway
0cde0c8847
BROKEN: Segfault during build on !i386
2007-04-21 17:32:31 +00:00
Andrew Pantyukhin
ff15a3aab3
- Add mirrors to all my berlios-hosted ports
...
Prompted by: pointyhat via kris, fenner's survey
2007-04-21 09:11:10 +00:00
Martin Wilke
ed2d4d20df
- Fix pkg-plist
...
Submitted by: pointyhat via krisbot
2007-04-21 08:58:07 +00:00
Martin Wilke
1fa26157d1
- Add ossec-hids-client as slave port.
...
PR: ports/111944
Submitted by: Valerio Daelli <valerio.daelli at gmail.com>
2007-04-20 21:33:44 +00:00
Martin Wilke
24bea4ab44
- Add ossec-hids-local as slave port
...
PR: ports/111944
Submitted by: Valerio Daelli <valerio.daelli at gmail.com>
2007-04-20 21:32:20 +00:00
Martin Wilke
2ab3c923e5
OSSEC is an Open Source Host-based Intrusion Detection System.
...
It performs log analysis, integrity checking, Windows registry
monitoring, rootkit detection, time-based alerting and active
response.
WWW: http://www.ossec.net/
PR: ports/111944
Submitted by: Valerio Daelli <valerio.daelli at gmail.com>
2007-04-20 21:29:20 +00:00
Martin Wilke
9036c2b2aa
- Update to 0.0.20
...
PR: 111879
Submitted by: miwi
Approved by: maintainer
2007-04-20 20:25:39 +00:00
Roman Bogorodskiy
966eac9a6b
Add umit 0.9.3, UMIT is the nmap frontend developed with Python and
...
PyGTK.
PR: ports/111959
Submitted by: Elisey Savateev <b3k at mail.ru>
2007-04-20 18:05:55 +00:00
Gabor Kovesdan
053520453d
- Remove FreeBSD 4.X support from unmaintained ports in categories starting
...
with letter r-s
2007-04-20 15:12:29 +00:00
Andrew Pantyukhin
b97830622f
- Mark latest firefox and seamonkey snapshots as safe
2007-04-19 11:55:37 +00:00