Wesley Shields
f7abfc32d3
- Add CVE for spamdyke STARTTLS plaintext injection.
2012-01-23 13:52:39 +00:00
Sunpoet Po-Chuan Hsieh
53047632e2
- Fix affected rubygem-rack version: add ,3 as PORTEPOCH=3 is restored
2012-01-22 14:59:21 +00:00
Frederic Culot
e074b81aef
- Update to 0.22
...
- Add LICENSE (Artistic 1 & GPLv1)
- Change MAINTAINER from ports@ to perl@
- Update WWW link in pkg-descr (was pointing to wrong CPAN module)
Changes: http://search.cpan.org/dist/Authen-TacacsPlus/Changes
2012-01-22 09:16:26 +00:00
Ryan Steinmetz
ea58224d2e
- Correct package range in 5c5f19ce-43af-11e1-89b4-001ec9578670
...
- Add databases/redis to the affected list for 91be81e7-3fea-11e1-afc7-2c4138874f7d
2012-01-22 02:49:22 +00:00
Eitan Adler
c59a3834c4
At the moment 1385 ports use BUILD_DEPENDS= ${RUN_DEPENDS} and 450
...
ports use BUILD_DEPENDS:= ${RUN_DEPENDS}. This patch fixes ports that are
currently broken. This is a temporary measure until we organically stop using
:= or someone(s) spend a lot of time changing all the ports over.
Explicit duplication > := > = and this just moves ports one step to the left
Approved by: portmgr
2012-01-21 17:40:15 +00:00
Ryan Steinmetz
eac9dda8ec
- Fix issue when NOPORTDOCS and SNORTSAM are both defined
2012-01-21 11:59:30 +00:00
Ryan Steinmetz
55a6fa9d11
- Update to 2.9.2.1
...
- Fix issue when NOPORTDOCS is defined
2012-01-21 02:46:23 +00:00
Ryan Steinmetz
50d0515bae
- Fix formatting/topic in 91be81e7-3fea-11e1-afc7-2c4138874f7d
...
Reviewed by: wxs
2012-01-21 01:38:36 +00:00
Ryan Steinmetz
b1ad3f29a1
- Document security vulnerability in security/openssl (CVE-2012-0050)
2012-01-20 21:43:39 +00:00
Jason Helfman
d0df02bde5
fix uuid on latest tomcat vulnerability
...
Approved by: crees, rene (implicit)
2012-01-20 19:24:00 +00:00
Xin LI
c4a7239990
- Fix modified date;
...
- Add more ruby variants.
2012-01-20 18:41:15 +00:00
Xin LI
9cc3084a80
Update 91be81e7-3fea-11e1-afc7-2c4138874f7d to cover ruby+no-pthreads as
...
well.
Spotted by: Kevin Oberman <kob6558 gmail.com>
2012-01-20 18:28:10 +00:00
Doug Barton
56b8885186
Remove license info
2012-01-20 13:07:17 +00:00
Tilman Keskinoz
425c7f03e2
Add pcsc-tools, tools for testing PCSC cards and readers
...
First submission:
PR: 42702
Submitted by: bms
2012-01-20 13:03:48 +00:00
Florian Smeets
9bb456e9a3
- document asterisk remote crash vulnerability
2012-01-20 00:14:41 +00:00
Jason Helfman
a7643c4831
Document recent vulnerability of Apache Tomcat Server.
...
Approved by: rene (mentor)
2012-01-19 19:51:53 +00:00
Dirk Meyer
1deb19c206
- Security update to 1.0.0g
...
Security: http://www.openssl.org/news/secadv_20120118.txt
2012-01-19 19:25:16 +00:00
Xin LI
c31805e285
Sigh, should have used <lt> instead of <gt>.
...
Pointy hat to: delphij
2012-01-19 18:33:42 +00:00
Xin LI
68863285bc
php52-exif no longer vulnerable to CVE-2011-4566 as of 5.2.17_6
2012-01-19 18:27:36 +00:00
Akinori MUSHA
70891f498b
Fix the version range for ruby. The stock version is affected.
2012-01-19 09:16:00 +00:00
Akinori MUSHA
a086c7a388
There was no patch release in rubygem-rack 1.3.5_*, so just say < 1.3.6.
2012-01-19 09:13:30 +00:00
Sunpoet Po-Chuan Hsieh
de6ab07a49
- Fix affected rubygem-rack version: it should be _3 for PORTREVISION=3
2012-01-19 07:32:10 +00:00
Brendan Fabeny
6ef707b384
update math/R to 2.14.1, and adjust dependent ports
2012-01-18 23:04:08 +00:00
Alexey Dokuchaev
5d32ae1fe3
Fix CVE URL in recent OpenTTD entry.
2012-01-17 09:53:12 +00:00
Alexey Dokuchaev
7d37987d66
Unexpand (convert leading spaces to tabs when possible).
2012-01-17 08:36:56 +00:00
Alexey Dokuchaev
c461abab60
Document recent vulnerability of OpenTTD game server.
...
Reported by: Ilya Arkhipov
2012-01-17 08:31:38 +00:00
Ruslan Makhmatkhanov
d5876df737
- transfer maintainership for my zope-ports to zope@
...
- add them to virtual category `zope'
2012-01-16 10:33:34 +00:00
Akinori MUSHA
6e503fa51d
PHP5 had its own entry for this vulnerability, so remove this.
...
Pointed out by: ohauer
2012-01-16 09:57:28 +00:00
Akinori MUSHA
0eb14b36f2
Add node < 0.6.7 (for V8).
2012-01-16 03:23:44 +00:00
Akinori MUSHA
afcbe7e393
Add v8 < 3.8.5 (CVE-2011-5037).
2012-01-16 03:20:38 +00:00
Akinori MUSHA
6a1e1996a3
Add PHP < 5.3.9 (CVE-2011-4885).
2012-01-16 03:16:01 +00:00
Akinori MUSHA
ede38e71f2
Add Multiple implementations denial-of-service via hash algorithm collision.
...
Currently only JRuby, Ruby, and Rack are mentioned. More to follow.
2012-01-16 03:03:49 +00:00
Alexander Leidinger
a0d909b284
Add missing dependency to gnutls. [1]
...
Fix the fix of adding a missing dependency to the linux cups-libs port.
Reported by: Da Rock <freebsd-emulation@herveybayaustralia.com.au> [1]
2012-01-14 22:35:19 +00:00
Martin Wilke
08a5260bf0
Certifi: Python Mozilla's SSL Certificates.
...
WWW: http://pypi.python.org/pypi/certifi/
PR: ports/163970
Submitted by: Olivier Duchateau <duchateau.olivier@gmail.com>
2012-01-14 19:24:38 +00:00
Martin Wilke
d8204e44ce
- Update to 110511
...
PR: 164014
Submitted by: Kurt Jaeger <fbsd-ports@opsec.eu>
Approved by: maintainer
2012-01-14 19:11:50 +00:00
Ruslan Makhmatkhanov
e0cb3d4319
- fix runtime with ruby18 (add dependency on converters/ruby-iconv)
...
- drop option SVN_FBSD, because there is no more subversion-freebsd
- bump portrevision because of dependency changes
PR: 163831
Submitted by: Guilherme Oliveira <guilherme.oliveira at gmail dot com>
Approved by: maintainer
2012-01-14 18:25:24 +00:00
Dirk Meyer
e99e060d34
- escape shell names
2012-01-14 14:52:13 +00:00
Martin Matuska
ee625b51b8
Add missing URL reference to last commit
2012-01-14 10:01:38 +00:00
Martin Matuska
59b3f246c1
Add relevant FFmpeg vulnerabilities from Ubuntu USN-1320-1
2012-01-14 09:46:30 +00:00
Doug Barton
83eb2c3700
In the rc.d scripts, change assignments to rcvar to use the
...
literal name_enable wherever possible, and ${name}_enable
when it's not, to prepare for the demise of set_rcvar().
In cases where I had to hand-edit unusual instances also
modify formatting slightly to be more uniform (and in
some cases, correct). This includes adding some $FreeBSD$
tags, and most importantly moving rcvar= to right after
name= so it's clear that one is derived from the other.
2012-01-14 08:57:23 +00:00
Martin Wilke
f3391e322e
- clean up
2012-01-14 04:36:22 +00:00
Ryan Steinmetz
196173d5b1
- Document vulnerabilities in security/openssl
...
-- CVE-2011-4108, CVE-2011-4109, CVE-2011-4576
-- CVE-2011-4577, CVE-2011-4619, CVE-2012-0027
2012-01-14 02:47:41 +00:00
Ryan Steinmetz
91611c8833
- Document vulnerability in net/isc-dhcp42-server (CVE-2011-4868)
2012-01-13 12:10:37 +00:00
Florian Smeets
75e63fc7f1
- update to NSS_3_13_1_WITH_CKBI_1_88_RTM
...
- some fixes to make the regression tests actually run [1]
Submitted by: mi [1]
2012-01-12 23:41:27 +00:00
Florian Smeets
189491f2e8
- update to NSS_3_13_1_WITH_CKBI_1_88_RTM
2012-01-12 23:41:00 +00:00
Xin LI
564fd51978
Document PowerDNS DoS vulnerability.
...
PR: ports/164066
Submitted by: Ralf van der Enden <tremere cainites.net>
2012-01-12 21:56:20 +00:00
Dirk Meyer
cb613beb17
- update to 1.1.0
2012-01-12 15:44:37 +00:00
Frederic Culot
df83b37884
The Authen::OATH module provides a Perl implementation of the
...
HOTP and TOTP One Time Password algorithms as defined by OATH
(http://www.openautentication.org ).
WWW: http://search.cpan.org/dist/Authen-OATH/
PR: ports/164035 (based on)
Submitted by: Jui-Nan Lin <jnlin@csie.nctu.edu.tw>
2012-01-12 13:16:53 +00:00
Roman Bogorodskiy
06753e5a51
Update to 2.12.16.
2012-01-12 02:45:34 +00:00
Xin LI
1cf3ed6c3e
Document PHP multiple vulnerabilities.
2012-01-11 18:32:21 +00:00
Dirk Meyer
d08b35d871
- use /etc/rc.d/ipfilter quietresync
...
PR: 163959
Submitted by: Nick Hibma
2012-01-11 05:55:57 +00:00
Dirk Meyer
e53d93c4ec
- Build with obsolte MD2 hash by default
...
- Security Update to 1.0.0f
Security: http://openssl.org/news/secadv_20120104.txt
Security: CVE-2011-4108
Security: CVE-2011-4109
Security: CVE-2011-4576
Security: CVE-2011-4577
Security: CVE-2011-4619
Security: CVE-2012-0027
Submitted by: Tim Zingelman
2012-01-11 05:44:00 +00:00
Wesley Shields
da96bc22be
- Update to 1.1.1.
...
- Use libhtp from ports instead of the bundled one.
- Remove check for 6.x.
PR: ports/163603
Submitted by: wxs@
Approved by: eksffa@freebsdbrasil.com.br (maintiner timeout)
2012-01-10 19:34:02 +00:00
Alex Dupre
768b7b04fb
Update to 1.4.6 release.
2012-01-10 12:09:39 +00:00
Alex Dupre
fcd0aa167e
Update to 1.10.5 release.
2012-01-10 11:59:22 +00:00
Alex Dupre
d4b7f98331
Update to 3.4.1 release.
2012-01-10 11:52:40 +00:00
Ruslan Makhmatkhanov
7e6e20f1c5
- update to 4.0.10
2012-01-10 07:27:12 +00:00
Rene Ladan
3083a4d5cc
Document a untrusted local library exploit in games/torcs.
...
Security: CVE-2010-3384
2012-01-09 18:13:37 +00:00
Thomas Abthorpe
e0ac1afbf4
- The proper acronym for Apache Software License 2 is really AL2
...
- Thanks to crees@ for generating the initial patch
PR: ports/163521
Submitted by: Pedro Giffuni <pfg apache.org>
Hat: portmgr
Exp run by: pav
2012-01-09 15:41:08 +00:00
Lars Balker Rasmussen
b622f23e99
The port asks the user a question. Tools like portmaster need to
...
know this so that they can inform the user.
PR: 162072
Submitted by: Doug Barton <dougb@freebsd.org>
2012-01-09 15:29:20 +00:00
Eitan Adler
e1925f7102
- Remove outdated version checks
...
Reviewed by: nox
2012-01-09 04:01:17 +00:00
Wesley Shields
b02ccddb06
Document spamdyke STARTTLS plaintext injection vulnerability.
2012-01-09 02:26:53 +00:00
Eitan Adler
336d16c247
2012-01-08 security/cryptplug: development has ceased
...
2012-01-08 security/gpgme03: superceded by security/gpgme
2012-01-08 22:21:37 +00:00
Roman Bogorodskiy
908b5e9745
- Update to 0.10
...
- Disable debug build
2012-01-08 22:17:38 +00:00
Alexey Dokuchaev
1abafe5709
- Update to version 1.7.9-jumbo-5
...
- Add an OPTION to build with OpenMP support (disabled by default)
- Adjust `pre-build' target message to mention OpenMP support (with/without)
- Fix overly aggressive CFLAGS patching via REINPLACE_CMD
- Remove unneeded global modifiers from sed(1) expressions and kill one
superfluous empty line while I am here
2012-01-08 11:21:17 +00:00
Alexey Dokuchaev
1c88fd5a37
Expand 11 (number) into `eleven' (word) to make port description look better.
2012-01-08 11:16:08 +00:00
Eitan Adler
c5d811a37d
Repeated words are are hard to to find sometimes.
...
Approved by: portmgr (itetcu)
2012-01-08 07:01:25 +00:00
Wesley Shields
d11c96ac80
- Update to 1.6.
2012-01-08 01:44:55 +00:00
Wesley Shields
45fe91fc9d
Update to 1.6.
...
While here, fix build with clang by setting USE_CSTD=gnu89.
2012-01-08 01:44:23 +00:00
Simon L. B. Nielsen
d46da3e743
Remove HTML entity from a VuXML entry as they are not allowed in
...
VuXML, only Unicode charecter entities are allowed.
This should fix the portaudit build.
If anyone care enough to insert the correct umlaut, feel free to fix.
2012-01-07 23:44:17 +00:00
Ruslan Makhmatkhanov
3a20d5f24f
- update to 0.3
...
- replace patches with REINPLACE_CMD
- switch to bzip2 distribution
- move license to proper Makefile section
Changelog:
https://gitorious.org/nmapsi4/pages/Released
PR: 163869
Submitted by: Veniamin Gvozdikov <g.veniamin at googlemail dot com> (maintainer)
2012-01-07 20:35:20 +00:00
Steve Wills
b0fb1ad799
- Add BUILD_DEPENDS to silence build warnings
2012-01-07 20:11:26 +00:00
MANTANI Nobutaka
9d50a6bb2f
Update to 4.0.0.
2012-01-07 10:43:24 +00:00
Michael Scheidell
b983ea495b
- Selectivly adds mysql/and/or postgresql to rc script 'REQUIRES:'
...
PR: ports/163825
Submitted by: scheidell
Approved by: pauls@utdallas.edu (maintainer), gabor (mentor, implicit)
2012-01-06 21:53:32 +00:00
Rene Ladan
a0644d692e
Add new vulnerabilities for www/chromium.
...
Security: CVE-2011-[3919,3921-3922]
2012-01-06 18:35:42 +00:00
Emanuel Haupt
a51c4176a1
Update to 1.3.1
2012-01-06 10:26:24 +00:00
Xin LI
cd7e8992f2
Fix build.
2012-01-05 18:52:27 +00:00
Olli Hauer
3734f83371
- document bugzilla and bugzilla3 security issues
2012-01-05 17:29:25 +00:00
Ruslan Makhmatkhanov
f28c1e1d0b
- update to 1.7.6
2012-01-04 20:33:18 +00:00
Jason Helfman
c2c80d4ec0
- Reassignment of ECHO_MSG breaks 'make readme', so remove and reformat IGNORE.
...
PR: ports/163258
Submitted by: jgh (me)
Approved by: maintainer, crees (mentor)
2012-01-04 20:28:05 +00:00
Olli Hauer
d4bf9fc462
- update to 5.61TEST4
...
For detailed Changes see http://nmap.org/changelog.html
(List is simply to long ...)
Some highlights
* [NSE] Added a new httpspider library which is used for recursively
crawling web sites for information. New scripts using this
functionality include http-backup-finder, http-email-harvest,
http-grep, http-open-redirect, and http-unsafe-output-escaping. See
http://nmap.org/nsedoc/ or the list later in this file for details
on these.
* [NSE] Added a vulnerability management library (vulns.lua) to store and to
report discovered vulnerabilities.
* [NSE] Added a new script force feature. You can force scripts to
run against target ports (even if the "wrong" service is detected)
by placing a plus in front of the script name passed to --script.
See http://nmap.org/book/nse-usage.html#nse-script-selection .
* [NSE] Added 51(!) NSE scripts, bringing the total up to 297.
Build tests sponsored by redports.org
2012-01-04 16:47:52 +00:00
Xin LI
9dcc8f1621
Document wordpress xss vulnerability.
...
Feature safe: yes
2012-01-03 23:50:36 +00:00
Ruslan Makhmatkhanov
9ea9293333
Import plone4 dependencies part 8/15
2012-01-02 08:42:50 +00:00
Thomas Abthorpe
948d497284
- Reassign to the heap
2012-01-02 04:39:12 +00:00
Olli Hauer
19fe40753d
- change required APACHE version from 13+ to 20+
...
(prepare to remove www/apache13)
- no PORTREVISION bump since apache22 is the default
with hat apache@
2012-01-01 16:47:41 +00:00
Jun Kuriyama
5e6efc4566
The murmur hash algorithm by Austin Appleby is an exteremely fast
...
algorithm that combines both excellent collision resistence and
distribution characteristics.
WWW: http://search.cpan.org/dist/Digest-MurmurHash/
2011-12-31 08:16:48 +00:00
Cy Schubert
6649e2206f
Update to the latest development build (now same as primary port).
...
Developmnent branch not active since Dec 18, flag IGNORE until development
resumes.
Feature safe: yes
2011-12-31 05:34:46 +00:00
Cy Schubert
d59a411f5a
Update 5.0.0 --> 5.0.1
...
Feature safe: yes
2011-12-30 23:02:42 +00:00
Cy Schubert
c69a6cb118
Add additional MITKRB5 reference.
...
Security: MITKRB5-SA-2011-008
Feature safe: yes
2011-12-30 01:05:34 +00:00
Cy Schubert
a4fd0aa8da
Replace local patch file with identical MIT patch.
...
Security: FreeBSD-SA-11:08.telnetd, CVE-2011-4862, MITKRB5-SA-2011-008
Feature safe: yes
2011-12-30 01:02:33 +00:00
Steve Wills
e5fe56df10
- Add missing BUILD_DEPENDS to silence build warnings
...
- Add TEST_DEPENDS to enable testing
2011-12-29 21:59:04 +00:00
Martin Wilke
f9afae230b
- Update to 0.4.6
...
PR: 163403
Submitted by: Jaap Boender <jaapb@kerguelen.org> (maintainer)
2011-12-29 15:10:42 +00:00
Remko Lodder
9e6e548e9f
Fix build by adding a reference to the original URL.
2011-12-29 14:26:25 +00:00
Chris Rees
0f1ab7dfed
Document XSS vulnerability in net-mgmt/zabbix-frontend
...
PR: ports/163691
Obtained from: https://support.zabbix.com/browse/ZBX-4015
Security: ZBX-4015
2011-12-29 13:04:23 +00:00
Florian Smeets
1b4c26530c
update to CKBI version 1.88 which includes the latest mozilla cert data
2011-12-28 22:16:13 +00:00
Matthias Andree
a6f6689e5a
Update to new upstream release v2.2.2.
...
Changelog: http://openvpn.net/index.php/open-source/documentation/change-log/425-changelog-for-openvpn-22.html
2011-12-28 20:43:49 +00:00
Renato Botelho
eac568a380
Update to 20111228
2011-12-28 14:58:10 +00:00
Martin Matuska
75ed491e45
Document remote DoS vulnerability in lighttpd HTTP authentication
...
Security: CVS-2011-4362
2011-12-28 12:24:32 +00:00
Emanuel Haupt
33fcf400f8
End WWW CPAN URL with a "/"
2011-12-28 08:20:20 +00:00
Michael Scheidell
6a0dd346dd
- Fix compile if WITH_STATIC is enabled [1]
...
- Also pr ports/163593, which is a duplicate of this one. root@42.org [2]
PR: ports/163217
Submitted by: Mattia Rossi <mrossi@swin.edu.au> [1], root@42.org [2]
Approved by: spam@rm-rf.kiev.ua (maintainer), gabor (mentor)
2011-12-27 23:10:11 +00:00