Commit graph

27871 commits

Author SHA1 Message Date
Tobias C. Berner
9b9d1273f3 Update KDE Frameworks to 5.48.0
Exp-run by:	antoine
PR:		229769
2018-07-19 20:45:03 +00:00
Fernando Apesteguía
106120c45e security/vuxml: add mutt vulnerabilities
Include mutt vulnerabilities for mutt < 1.10.1

PR:	229810
Submitted by:	dereks@lifeofadishwasher.com
Approved by:	tcberner (mentor)
Differential Revision:	https://reviews.freebsd.org/D16321
2018-07-19 15:37:57 +00:00
Dan Langille
ee1ae37b22 Update to 2.7.9
PR:		229884
Submitted by:	brnrd
2018-07-19 12:55:43 +00:00
Pietro Cerutti
c2c470bfee security/vuxml: fix typo 2018-07-19 12:39:21 +00:00
Pietro Cerutti
212940bd07 security/vuxml: document NeoMutt and Mutt vulnerabilities 2018-07-19 12:04:02 +00:00
Matthias Fechner
b73a4c6c64 Document gitlab < 11.0.4 vulnerability.
Reviewed by:	swills (mentor)
Approved by:	swills (mentor)
Differential Revision:	https://reviews.freebsd.org/D16317
2018-07-19 06:44:46 +00:00
Li-Wen Hsu
c0f154d269 Update CVE number of 20a1881e-8a9e-11e8-bddf-d017c2ca229d
Sponsored by:	The FreeBSD Foundation
2018-07-18 23:15:43 +00:00
Gleb Popov
bd22665013 security/qtkeychain: Add dependency to libsecret and link to it correctly.
PR:		229837
Reported by:	Piotr Kubaj <pkubaj@anongoth.pl>
Approved by:	tcberner (mentor)
2018-07-18 19:17:28 +00:00
Li-Wen Hsu
c65a1f7aca Fix range of 20a1881e-8a9e-11e8-bddf-d017c2ca229d
Sponsored by:	The FreeBSD Foundation
2018-07-18 15:53:33 +00:00
Li-Wen Hsu
dad6ec3dc2 Document Jenkins Security Advisory 2018-07-18
Sponsored by:	The FreeBSD Foundation
2018-07-18 15:50:58 +00:00
Danilo G. Baio
a318515eb4 security/vuxml: Document irc/znc vulnerabilities
Reported by:	gordon
Security:	CVE-2018-14055
Security:	CVE-2018-14056
2018-07-18 14:14:45 +00:00
Roman Bogorodskiy
1eac7b7276 security/libgpg-error: update to 1.32 2018-07-18 13:54:37 +00:00
Bernard Spil
0ef92df46a security/vuxml: Document Apache httpd vulns 2018-07-18 13:39:24 +00:00
Sean Chittenden
147b31be46 Update security/teleport to 2.6.7
Approved by:	mat (mentor)
Differential Revision:    https://reviews.freebsd.org/D16311
2018-07-18 07:02:56 +00:00
Glen Barber
cf320394fc Remove vendor-specific CVE numbers, following r474804. This tag
is reserved for Mitre CVE numbers, otherwise it does not pass
validation.

Sponsored by:	The FreeBSD Foundation
2018-07-17 17:28:15 +00:00
Roman Bogorodskiy
def152b64f security/vuxml: update version range for latest qutebrowser vuln
Update version for www/qutebrowser CVE-2018-10895 to reflect 2018Q3 fix.
2018-07-17 17:19:29 +00:00
Glen Barber
087c2ea8fd Comment a project-specific CVE reference in attempt to fix the build.
Sponsored by:	The FreeBSD Foundation
2018-07-17 15:38:01 +00:00
Jochen Neumeister
c1755276ab Document vulberability for typo3-7 and typo3-8 2018-07-17 15:29:24 +00:00
Dmitry Marakasov
50a2d02edf - Add LICENSE
- Add NO_ARCH

Approved by:	portmgr blanket
2018-07-17 09:07:44 +00:00
Antoine Brodin
f26b2df872 Deprecate ports broken for more than 5 months 2018-07-17 08:56:32 +00:00
Martin Wilke
43077bd5ea - Update to 2.7.7
PR:		229603
Submitted by:	miwi
Exp-run:	antoine
Sponsored by:	iXsystems Inc.
Differential Revision:	https://reviews.freebsd.org/D16177
2018-07-17 03:44:08 +00:00
Cy Schubert
58bcc21644 Schedule for deletion: unfetchable. 2018-07-16 19:49:35 +00:00
Matthias Fechner
5ef93c8683 Deprecate ports not required by gitlab-ce and any other port anymore.
Reviewed by:	tz (mentor)
Approved by:	tz (mentor)
Differential Revision:	https://reviews.freebsd.org/D16265
2018-07-16 14:36:51 +00:00
Antoine Brodin
a84c483677 Mark BROKEN: unfetchable 2018-07-16 08:42:08 +00:00
Gleb Popov
3dee4ce574 security/qtkeychain: Update to latest 0.9.0.
Approved by:	tcberner (mentor)
Differential Revision:	https://reviews.freebsd.org/D16271
2018-07-16 07:45:23 +00:00
Fernando Apesteguía
5d7b430219 security/vuxml: add entry for devel/upp
Affected by CVE-2018-874

PR:	227414
Reported by:	lightside@gmx.com
Approved by:	tcberner (mentor)
Differential Revision:	https://reviews.freebsd.org/D16017
2018-07-15 15:17:44 +00:00
Eugene Grosbein
1d3f53e158 Document several security defects in the Bouncy Castle Crypto APIs
before version 1.60

Obtained from:	https://www.bouncycastle.org/latest_releases.html
Security:	https://vuxml.FreeBSD.org/freebsd/fe93803c-883f-11e8-9f0c-001b216d295b
2018-07-15 15:13:15 +00:00
Roman Bogorodskiy
7998db5741 Document www/qutebrowser CSRF vulnerability
Reviewed by:	miwi
Security:	CVE-2018-10895
2018-07-15 06:25:24 +00:00
Dmitry Marakasov
706d84e256 - Switch to new test framework
Approved by:	portmgr blanket
2018-07-14 08:37:43 +00:00
Yuri Victorovich
73c54993a4 security/tor-devel: Update 0.3.4.4 -> 0.3.4.5
Changelog:
https://gitweb.torproject.org/tor.git/tree/ChangeLog?h=tor-0.3.4.5-rc

Reported by:	upstream notification
2018-07-13 22:22:20 +00:00
Yuri Victorovich
214a8d95db security/tor: Update 0.3.3.8 -> 0.3.3.9
Changelog:
https://gitweb.torproject.org/tor.git/tree/ReleaseNotes?h=tor-0.3.3.9

Reported by:	upstream notification
2018-07-13 22:20:43 +00:00
Tobias C. Berner
73fc733977 Update KDE Applications to 18.04.3 2018-07-13 17:41:56 +00:00
Renato Botelho
bdc3a0ce30 New port: security/py-fteproxy
fteproxy provides transport-layer protection to resist keyword filtering,
censorship and discriminatory routing policies.

Its job is to relay datastreams, such as web browsing traffic,
by encoding streams as messages that match a user-specified regular expression.

WWW: https://fteproxy.org/

Submitted by:	Vinícius Zavam <egypcio@googlemail.com>
Differential Revision:	https://reviews.freebsd.org/D16244
2018-07-13 13:26:54 +00:00
Steve Wills
5f0b4b261c security/gopass: update to 1.8.2
PR:		229751
Submitted by:	Sascha Holzleiter <sascha@root-login.org> (maintainer)
2018-07-13 11:53:51 +00:00
Antoine Brodin
52bcd87307 Deprecate unmaintained ports under the NONE license 2018-07-13 09:56:57 +00:00
Mathieu Arnold
84b01e747d Coalesce all SED calls.
Sponsored by:	Absolight
2018-07-13 07:02:16 +00:00
Adam Weinberger
c2c08d70ce Update gnupg to 2.2.9
* dirmngr: Fix recursive resolver mode and other bugs in the libdns
    code.  [#3374,#3803,#3610]

  * dirmngr: When using libgpg-error 1.32 or later a GnuPG build with
    NTBTLS support (e.g. the standard Windows installer) does not
    anymore block for dozens of seconds before returning data.  If you
    still have problems on Windows, please consider to use one of the
    options disable-ipv4 or disable-ipv6.

  * gpg: Fix bug in --show-keys which actually imported revocation
    certificates.  [#4017]

  * gpg: Ignore too long user-ID and comment packets.  [#4022]

  * gpg: Fix crash due to bad German translation.  Improved printf
    format compile time check.

  * gpg: Handle missing ISSUER sub packet gracefully in the presence of
    the new ISSUER_FPR.  [#4046]

  * gpg: Allow decryption using several passphrases in most cases.
    [#3795,#4050]

  * gpg: Command --show-keys now enables the list options
    show-unusable-uids, show-unusable-subkeys, show-notations and
    show-policy-urls by default.

  * gpg: Command --show-keys now prints revocation certificates. [#4018]

  * gpg: Add revocation reason to the "rev" and "rvs" records of the
    option --with-colons.  [#1173]

  * gpg: Export option export-clean does now remove certain expired
    subkeys; export-minimal removes all expired subkeys.  [#3622]

  * gpg: New "usage" property for the drop-subkey filters.  [#4019]

MFH:		2018Q3
2018-07-12 17:34:12 +00:00
Steve Wills
628cc748b1 security/keepassx: give up maintainership 2018-07-12 13:45:51 +00:00
Jung-uk Kim
0b098e21af Fix typos.
Reported by:	N.J. Mann (njm at njm dot me dot uk)
2018-07-11 17:24:27 +00:00
Jung-uk Kim
c31225fc50 Document the latest Flash Player vulnerabilities.
https://helpx.adobe.com/security/products/flash-player/apsb18-24.html
2018-07-11 16:44:25 +00:00
Matthias Fechner
513b8763a5 Document vulnerability for libgit2 < 0.27.3.
Reviewed by:	swills (mentor)
Approved by:	swills (mentor)
Differential Revision:	https://reviews.freebsd.org/D16220
2018-07-11 16:27:23 +00:00
Steve Wills
86f471a196 security/keepassx: mark deprecated
While here, have portscout ignore this
2018-07-11 15:52:26 +00:00
Glen Barber
4c7a4fdebf Fix build.
Sponsored by:	The FreeBSD Foundation
2018-07-11 13:50:00 +00:00
Dave Cottlehuber
06f379b2e2 security/vuxml: add CVE for Apache CouchDB 1.7.2 (databases/couchdb)
Approved by:	jrm
Differential Revision:	https://reviews.freebsd.org/D16212
2018-07-11 13:09:47 +00:00
Dmitry Marakasov
a5fd095395 - Switch to new test framework
Approved by:	portmgr blanket
2018-07-11 08:37:43 +00:00
Steve Wills
f77bf40c09 security/vault: improve rc.d script
- Add additional "monitor" command which throws statistics to stdout.
  For details, see https://www.vaultproject.io/docs/internals/telemetry.html
- Where possible, add additional "vault_syslog_output_*" rc vars to redirect stdout to syslog
- Add vault config to required files list
- Bump PORTREVISION to reflect package

PR:		215896
Submitted by:	Pavel Timofeev <timp87@gmail.com> (with modifications)
2018-07-10 17:49:55 +00:00
Ruslan Makhmatkhanov
44d8097580 security/sqlmap: update to 1.2.7
- update to 1.2.7
- add missing dependency upon sqlite3 [1]

PR:		228456
Submitted by:	David Siebörger <drs-freebsd@sieborger.nom.za> [1]
2018-07-10 17:03:38 +00:00
Ruslan Makhmatkhanov
dfcab4ebf7 security/py-flask-httpauth: update to 3.2.4 2018-07-10 16:56:15 +00:00
Steve Wills
0db020063d security/base: Correct snort URL in external_sig_link array
While here, update url in pkg-descr

PR:		202655
Submitted by:	Jeremy Baggs <jbaggs2016@gmail.com>
2018-07-10 16:03:13 +00:00
Jochen Neumeister
16113ce425 Maintainership back to Submitter
PR:		229673
Submitted by:	Sergey Akhmatov <sergey@akhmatov.ru>
Approved by:	joneum, Kai (freebsd_ports@k-worx.org>
2018-07-10 12:37:47 +00:00