Commit graph

10318 commits

Author SHA1 Message Date
Cy Schubert
0a023788fe pkg-plist fixup 2007-06-04 21:41:34 +00:00
Erwin Lansing
1da851aff6 Add an entry for an email header injection vulnerability in
www/typo3 from February.

Reviewed by:	remko
Persuaded by:	cperciva and simon by setting up the
		ports-security team
2007-06-04 20:56:26 +00:00
Maxim Sobolev
b5297f4098 Re-add pvk under proper name. 2007-06-04 20:46:04 +00:00
Maxim Sobolev
b34d0c185c Add pvt 20070406, tool to convert a RSA key in PEM format into a PVK
file and vice versa.
2007-06-04 19:51:34 +00:00
Cy Schubert
7a5abcdf7b Update 2.1.8 --> 2.1.11 2007-06-04 16:29:59 +00:00
Gabor Kovesdan
a5a79ff2eb Remove expired ports:
2007-04-27 security/op: no longer available from any mastersite
2007-05-15 shells/bash2: Old, unmaintained version, use shells/bash instead
2007-05-19 sysutils/xperfmon: irrelevant for supported FreeBSD releases
2007-06-04 15:01:37 +00:00
Martin Wilke
781637120c - Document phppgadmin - Cross Site Scripting Vulnerability.
Reviewed by:	mnag@
Reported by:	dinoex@
2007-06-04 12:42:17 +00:00
Anders Nordby
713a278bc4 Drop maintainership of gringotts ports, no interest in this anymore.
It has long-standing bugs not being fixed, and the WWW site seems
abandoned. It does still work, but the port(s) would be better left of
using the patches from
http://www.shlomifish.org/open-source/bits-and-bobs/gringotts-patch/
if anyone wants to look into this where I leave it.
2007-06-03 20:23:45 +00:00
Erwin Lansing
a499b8d607 Update to 0.55 2007-06-03 17:49:50 +00:00
Edward Tomasz Napierala
ed2a5982f8 - Add entry for findutils -- GNU locate heap buffer overrun.
Revieved by:	simon (secteam)
Approved by:	miwi (mentor)
2007-06-01 19:36:13 +00:00
Renato Botelho
0744663c92 - Update to 0.90.3
- Remove unzoo support (clam doesn't support it anymore)

PR:		ports/113174
Submitted by:	Michael Scheidell <scheidell@secnap.net>
2007-06-01 17:09:09 +00:00
Kirill Ponomarev
9274ab617e Update to 0.2.16 2007-06-01 08:20:31 +00:00
Oliver Lehmann
ed26d2aab5 fix the build for gcc 4.2 when compiling courier-authlib-vchkpw 2007-05-31 17:48:06 +00:00
Xin LI
ed56a09fc7 Mark file < 4.21 as vulnerable to the heap overflow. 2007-05-31 08:05:11 +00:00
Renato Botelho
eb1371d4a9 - Fix CLAMAV_CLAMD_SOCKET
Reported by:	Robert Huff <roberthuff@rcn.com>
2007-05-31 00:44:57 +00:00
Cy Schubert
b4d1f5a386 Update 2.1.8 --> 2.1.11 2007-05-30 17:15:20 +00:00
Martin Wilke
d7453e2ac3 - Update to 1.2
PR:		112960
Submitted by:	Thomas Abthorpe <thomas@goodking.ca>
Approved by:	maintainer
2007-05-30 06:59:33 +00:00
Martin Wilke
e17793cbe5 - Update to 0.9.10
Changelog prelude-lml:
- Ability to use regular expressions in plugins.rules to define
  monitored sources, this can be very useful when combined to file
  globing.
- [SPEEDUP] When the "*" keyword is used, the data is passed to the
  upper layer without trying to match anything.
- Fix NULL pointer dereference when a rule reference an existing,
  but empty context (fix #226).
- Remove deprecated use of prelude_client_print_setup_error(),
  directly handled via prelude_perror().
- Make the log parser more robust.

PR:		112835
Submitted by:	Robin Gruyters <r.gruyters@yirdis.nl> (maintainer)
2007-05-30 06:13:54 +00:00
Martin Wilke
016298809b - Update to 0.9.8
- Added user prelude with uid/gid 281

prelude-manager Changelog:
- Initial implementation of the 'thresholding' plugin, allowing you to
  suppress events after a certain limit/threshold.
- Filters hooking to a reporting plugin are now OR'ed instead of being
  AND'ed. AND is already possible by hooking filtering plugin one with
  another.
- Improved error reporting.
- Minor bug fixes.

PR:		112416
Submitted by:	Robin Gruyters <r.gruyters@yirdis.nl> (maintainer)
2007-05-30 06:11:57 +00:00
Renato Botelho
9f63c71af0 - Update to 20070529
- Make all last changes that i've made on security/clamav:
  o Make arc, arj, lha and unzoo achives support dependency as OPTIONS
  o Fix build with gethostbyname_r after 601103
  o Install clamav-config.h
  o Change clamav-milter rc.d script to use a var to determine seconds of
    timeout to wait clamd socket be started, just if clamav_clamd_enable
    is set
2007-05-29 17:33:52 +00:00
Tilman Keskinoz
cab028aec8 Build with system compiler on CURRENT 2007-05-29 15:45:19 +00:00
Martin Wilke
8ee0d2721f - Add a patch for output the correct checksum for the null string.
PR:		112553
Submitted by:	Ighighi<ighighi@gmail.com>
Obtained from:	pkgsrc
2007-05-29 14:54:04 +00:00
Andrew Pantyukhin
d504a7a5f2 - Update to 0.5.2 2007-05-29 08:31:14 +00:00
Marcus Alves Grando
0a813ab2ac - Update to 1.3.1 2007-05-28 18:21:04 +00:00
Renato Botelho
b27ec488de - Make arc, arj, lha and unzoo achives support dependency as OPTIONS enabled by
default. Clamav can run fine without these guys. PORTREVISION bump is not
  needed since final package is the same.

PR:		ports/113087
Submitted by:	baptiste.daroussin@gmail.com
2007-05-28 14:39:03 +00:00
Roman Bogorodskiy
b33b09f494 Update to 0.3.10. 2007-05-28 13:23:56 +00:00
Edwin Groothuis
e95ab83015 Fix PLIST_DIRS
Noticed by : kris-mail
2007-05-27 21:38:43 +00:00
Sergey Skvortsov
035682d1f1 Update to 0.08
Changes:	http://search.cpan.org/src/APOCAL/POE-Component-SSLify-0.08/Changes
2007-05-27 19:44:37 +00:00
Martin Wilke
5dd9cd116f - Update to 1.7
PR:		112866
Submitted by:	Ulf Lilleengen <lulf@pvv.ntnu.no> (maintainer)
2007-05-27 15:34:47 +00:00
Martin Wilke
7560a5ec5e - Update to 1.16
PR:		112600
Submitted by:	TAKAHASHI Kaoru <kaoru@kaisei.org> (maintainer)
2007-05-27 10:40:53 +00:00
Martin Wilke
a08c7529ba - Update to 1.3.6
PR:		112795
Submitted by:	Kian Mohageri <kian.mohageri@gmail.com>
Approved by:	maintainer
2007-05-27 10:00:08 +00:00
Martin Wilke
763f1e581f - Update to 1.15
PR:		112925
Submitted by:	Nils Vogels <nivo+kw+ports.bfa274@is-root.com>
2007-05-27 09:48:24 +00:00
Kris Kennaway
b7ff7031ea BROKEN with gcc 4.2 2007-05-27 03:03:31 +00:00
Roman Bogorodskiy
d8ee054c84 Update to 1.7.11. 2007-05-26 17:09:15 +00:00
Marcelo Araujo
6c1654e729 - Update to new upstream version 2.1-rc4.
- Override new automake default dir.

PR:		ports/112414
Submitted by:	Matthias Andree <matthias.andree@gmx.de>
Approved by:	stas (mentor)
2007-05-26 15:47:21 +00:00
Li-Wen Hsu
098759834a - Update to 1.1.1
Approved by:	clsung (mentor, implicitly)
2007-05-26 07:06:59 +00:00
Erwin Lansing
a0deefc6e4 Update to 0.25 2007-05-25 23:26:08 +00:00
Erwin Lansing
1fd3cddd2f Update to 0.04 2007-05-25 23:24:16 +00:00
Kris Kennaway
71b36ac469 BROKEN with gcc 4.2 2007-05-25 23:05:08 +00:00
Erwin Lansing
009c0bf166 Update to 0.04 2007-05-25 19:09:38 +00:00
Renato Botelho
d7b870c62a - Update to 0.7.8 2007-05-25 12:44:26 +00:00
Renato Botelho
78eadaaaa8 - Update to 0.60
PR:		ports/112377
Submitted by:	Dima Panov <fluffy@ael.ru>
2007-05-25 12:34:15 +00:00
Edwin Groothuis
261efdda40 Remove BROKENness by pointing to the old/ directory 2007-05-25 11:04:44 +00:00
Alex Dupre
80c646bb79 Update to 0.9.20 release. 2007-05-25 05:57:34 +00:00
Kris Kennaway
fe3a568be3 BROKEN: Unfetchable 2007-05-25 01:19:17 +00:00
Cheng-Lung Sung
6348e2d790 - stephane@ give up maintain his ports
PR:		ports/112464
Submitted by:	stephane
2007-05-25 00:39:40 +00:00
Joe Marcus Clarke
3c9b6f623e Add an entry for the recent Freetype heap overflow vulnerability.
Submitted by:	Nick Barkas <snb@threerings.net>
2007-05-25 00:37:57 +00:00
Tim Bishop
fb1d4a05d2 - Update to 20070525 2007-05-24 23:01:10 +00:00
Edwin Groothuis
1a66b2caf9 New port: security/smap
smap is a simple scanner for SIP enabled devices

    smap sends off various SIP requests awaiting responses from SIP
    enabled DSL router, proxies and user agents. It could be considered
    a mashup of nmap and sipsak ;)

    WWW: http://www.wormulon.net/
    Author: Hendrik Scholz <hscholz@raisdorf.net>
2007-05-24 22:16:25 +00:00
Remko Lodder
8003ff9706 Document FreeBSD-SA-07:04.file (heap overflow in file(1))
Approved by:	portmgr (secteam implicit)
2007-05-23 16:29:27 +00:00
Cy Schubert
6fd3e0d617 Fix a bug in the fwanalog parser for ipfw logs.
Approved by:	portsmgr (marcus)
2007-05-23 15:47:59 +00:00
Gabor Kovesdan
af5b6e57f7 Fix packaging. No PORTREVISION bump, since it installs and deinstalls cleanly,
just does not package. Somehow tinderbox did not reflect this issue, but
pointyhat and local tests did.

Reported by:	Bryan Fullerton <bryanf@samurai.com>,
		pointyhat (via kris)
Approved by:	portmgr (linimon)
2007-05-21 22:52:40 +00:00
Martin Wilke
4f2588d5fc - Document squirrelmail -- Cross site scripting in HTML filter
Approved by:	portmgr (marcus)
2007-05-21 20:08:21 +00:00
Florent Thoumie
d4f0d0048a - Welcome X.org 7.2 \o/.
- Set X11BASE to ${LOCALBASE} for recent ${OSVERSION}.
- Bump PORTREVISION for ports intalling files in ${X11BASE}.
2007-05-19 20:36:56 +00:00
Simon L. B. Nielsen
e82affd309 Document png -- DoS crash vulnerability. 2007-05-16 21:10:03 +00:00
Simon L. B. Nielsen
fdeb5fd7a2 Document samba -- multiple vulnerabilities.
Brought to you from Heathrow Airport and BSDCan 2007 Devsummit.
2007-05-16 20:22:35 +00:00
Simon L. B. Nielsen
5660505553 Backout last change.
Blackboard:

- I will remember to look at which files are committed.
- I will remember to look at which files are committed.
- I will remember to look at which files are committed.
- I will remember to look at which files are committed.
- I will remember to look at which files are committed.
- I will remember to look at which files are committed.
- I will remember to look at which files are committed.

x1000

Pointy hat to:	simon
2007-05-10 17:34:45 +00:00
Simon L. B. Nielsen
4e0a6f6ea4 Update PHP entry to include the vulnerable version so the entry is
correct for when PHP is updated in ports (yes it's being worked on),
or for people who upgrade "manually".

With hat:	secteam
Requested by:   several
2007-05-10 17:31:49 +00:00
Remko Lodder
947b7a739d Document a lot of PHP vulnerabilities, mark all php4 and php5 (+cli,cgi)
ports as vulnerable till the ports had been upgraded.
2007-05-07 09:12:41 +00:00
Remko Lodder
1ee4a7171c Bump modification date for the latest mod_perl entry, this was forgotten
by erwin, but there were "massive" changes that warrant a date bump.
2007-05-07 08:49:25 +00:00
David Thiel
b40d615dd3 Update to 2.3.4. This fixes a reliablility problem in the process check
module. If you are a user of this module, upgrading is recommended.

Approved by:	edwin (mentor)
2007-05-02 23:04:13 +00:00
Cy Schubert
b4d312cbea Remove defunct (zero length) patch files.
Pointy hat to:		yours truly
2007-05-02 21:17:33 +00:00
Andrew Pantyukhin
94dc59ba04 - Add an option to enable insults
Submitted by:	Dan Casey <dcasey@debtresolve.com>
2007-05-02 18:47:16 +00:00
Remko Lodder
573e3a6f58 Standarize the latest entry (qemu) a bit more and add a forgotten 'a'
in the p5-Imager text.
2007-05-02 16:56:22 +00:00
Alejandro Pulver
6121c51e44 - Move DIST_SUBDIR to the frist part of the port.
- Use OpenSSL from the ports (the new version makes additional functionality
  to be compiled, which enables future - 2 right now - ports to work).

PR:		ports/112131
Submitted by:	alepulver (myself)
Approved by:	mnag (maintainer, timeout)
2007-05-02 16:21:44 +00:00
Oliver Lehmann
b30b9add9f remove "restart_cmd" to make restart work again 2007-05-02 09:27:25 +00:00
Juergen Lock
1c19bc62dd Document multiple qemu vulnerabilities
Obtained from:	debian-security-announce@lists.debian.org mailing list
Security:	multiple qemu vulnerabilities
2007-05-01 22:49:39 +00:00
Cy Schubert
1de73f88e7 Properly support wiping of raw devices under FreeBSD. 2007-05-01 21:44:12 +00:00
Gabor Kovesdan
d9d5b2b55a - Update to 2.5.0
- Add Altermime support
- Add P7Zip support

Release Notes:	http://www.ijs.si/software/amavisd/release-notes.txt

PR:		ports/112048
Submitted by:	Michael Scheidell <scheidell@secnap.net>
2007-05-01 18:31:56 +00:00
Alex Dupre
6282f5cb8d Update to 0.9.19 release. 2007-05-01 08:02:53 +00:00
Cheng-Lung Sung
bdbfc642f9 - Update to 1.06 2007-05-01 03:59:12 +00:00
Lars Balker Rasmussen
77e127836a Update to 0.57 - fixes possible overflow vulnerability regarding malformed
BMPs, see vuln.xml for details.

Security:	VuXML ID: 632c98be-aad2-4af2-849f-41a6862afd6a
2007-04-30 17:51:53 +00:00
Roman Bogorodskiy
eaa5d0a692 Update to 1.6.2. 2007-04-30 14:39:17 +00:00
Remko Lodder
507f8c5208 Document FreeBSD -- IPv6 Routing Header 0 is dangerous 2007-04-28 18:34:30 +00:00
Martin Wilke
8583369226 - Update to 1.2.0
- Take maintainership
2007-04-27 20:45:46 +00:00
Oliver Lehmann
0d840ed535 update to 0.59.3 2007-04-26 19:38:28 +00:00
Shaun Amott
93e556cf61 Update to 1.2.4. 2007-04-26 16:59:56 +00:00
Li-Wen Hsu
dadc6ea859 Metasploit 2.x (security/metasploit) is no longer being developed. It should
be removed, in due time. security/metasploit-devel should take it's place.
Since this is a complete rewrite in a different language, there is no migration
path.
This change is a heads-up for users.

Also remove old perl stuff (by lwhsu)

PR:		112009
Submitted by:	Yonatan <onatan AT gmail.com> (maintainer)
Approved by:	clsung (mentor)
2007-04-26 09:42:19 +00:00
Cheng-Lung Sung
adfb647aaf - Update to 1.64 2007-04-26 07:06:37 +00:00
Erwin Lansing
1b24a292e8 Rework the mod_perl entry to note that Mandriva originally released
an advisory.  Also add mod_perl2 to the vulnerable versions.
2007-04-25 19:05:44 +00:00
Erwin Lansing
e9ca1878e6 Minor wordsmithing in the last mod_perl entry.
Submitted by:	simon
2007-04-25 17:11:17 +00:00
Erwin Lansing
b85159572e Add entry for mod_perl -- remote DOS in PATH_INFO parsing
PR:		111844
Submitted by:	"Philip M. Gollucci" <pgollucci@p6m7g8.com>
2007-04-25 17:04:36 +00:00
Anton Berezin
de5763df40 Fix location of a dependency.
Reported by:	krismail
2007-04-25 07:34:27 +00:00
Jean Milanez Melo
4fe8d1ba02 - Remove FreeBSD 4.X support.
PR:		ports/111884
Submitted by:	Marcelo Araujo <araujo@bsdmail.org>
2007-04-24 16:23:13 +00:00
Cheng-Lung Sung
a7c65255b8 Add aespipe , an AES encrypting or decrypting pipe.
PR:		ports/112056
Submitted by:	Ekkehard 'Ekki' Gehm <gehm at physik.tu-berlin.de>
2007-04-24 08:00:28 +00:00
Cy Schubert
9abfecf5f8 Update from 1.6 to 1.6.1. 2007-04-23 22:10:09 +00:00
Anton Berezin
d9fddefe1b p5-Crypt-OpenPGP 1.03_1 should not be vulnerable to CVE-2005-0366. 2007-04-23 14:12:10 +00:00
Anton Berezin
dbf2771921 Resurrect p5-Crypt-OpenPGP, now with a patch for CVE-2005-0366.
Seems OK:	simon, lth
2007-04-23 14:01:17 +00:00
Andrew Pantyukhin
468698b11f - Fix plist
Reported by:	pointyhat via kris
2007-04-22 19:59:42 +00:00
David Thiel
6234f76585 Remove BROKEN on 4.x (due to EOL).
PR:		ports/111827
Submitted by:	Marcelo Araujo <araujo@bsdmail.org>
Reviewed by:	lx
Approved by:	edwin (mentor)
2007-04-22 01:14:26 +00:00
Kris Kennaway
0cde0c8847 BROKEN: Segfault during build on !i386 2007-04-21 17:32:31 +00:00
Andrew Pantyukhin
ff15a3aab3 - Add mirrors to all my berlios-hosted ports
Prompted by:	pointyhat via kris, fenner's survey
2007-04-21 09:11:10 +00:00
Martin Wilke
ed2d4d20df - Fix pkg-plist
Submitted by:   pointyhat via krisbot
2007-04-21 08:58:07 +00:00
Martin Wilke
1fa26157d1 - Add ossec-hids-client as slave port.
PR:		ports/111944
Submitted by:	Valerio Daelli <valerio.daelli at gmail.com>
2007-04-20 21:33:44 +00:00
Martin Wilke
24bea4ab44 - Add ossec-hids-local as slave port
PR:		ports/111944
Submitted by:	Valerio Daelli <valerio.daelli at gmail.com>
2007-04-20 21:32:20 +00:00
Martin Wilke
2ab3c923e5 OSSEC is an Open Source Host-based Intrusion Detection System.
It performs log analysis, integrity checking, Windows registry
monitoring, rootkit detection, time-based alerting and active
response.

WWW: http://www.ossec.net/

PR:		ports/111944
Submitted by:	Valerio Daelli <valerio.daelli at gmail.com>
2007-04-20 21:29:20 +00:00
Martin Wilke
9036c2b2aa - Update to 0.0.20
PR:		111879
Submitted by:	miwi
Approved by:	maintainer
2007-04-20 20:25:39 +00:00
Roman Bogorodskiy
966eac9a6b Add umit 0.9.3, UMIT is the nmap frontend developed with Python and
PyGTK.

PR:		ports/111959
Submitted by:	Elisey Savateev <b3k at mail.ru>
2007-04-20 18:05:55 +00:00
Gabor Kovesdan
053520453d - Remove FreeBSD 4.X support from unmaintained ports in categories starting
with letter r-s
2007-04-20 15:12:29 +00:00
Andrew Pantyukhin
b97830622f - Mark latest firefox and seamonkey snapshots as safe 2007-04-19 11:55:37 +00:00