Commit graph

30191 commits

Author SHA1 Message Date
Piotr Kubaj
04c09fcd8d security/gpgme: add USES=compiler:c11
Needed to fix build on GCC architectures.

Approved by:	mentors (implicit approval)
2019-09-22 16:33:25 +00:00
Dan Langille
0b29a92f6d Update CyberChef to 9.7.1
re: https://github.com/gchq/CyberChef/releases/tag/v9.7.1

PR:		240743
Submitted by:	thomas@bsdunix.ch
2019-09-22 11:43:31 +00:00
Antoine Brodin
2de6d0986d Ignore with php 7.4
Reported by:	pkg-fallout
2019-09-22 07:14:00 +00:00
Antoine Brodin
01b8e1ec14 Fix INDEX 2019-09-21 20:17:19 +00:00
Torsten Zuehlsdorff
8d075dffd5 Delete security/php74-hash
The hash module is now part of the PHP core. It can't be disabled or enabled anymore.
Therefore we remove this port.

Sponsored by:	PHP Upgrade Service
2019-09-21 20:08:59 +00:00
Kurt Jaeger
9dd19244b1 security/clamsmtp: Unbreak by switching to new master site
PR:		240731
Submitted by:	Yasuhiro KIMURA <yasu@utahime.org>
2019-09-21 18:56:20 +00:00
Piotr Kubaj
65c9395530 security/arirang: fix build on GCC architectures
Add USES=compiler:c11, base GCC can't build this port.

Only add -L${OPENSSLLIB} when OpenSSL not from base is used to avoid linking to base libstdc++.

Approved by:	linimon (mentor)
Differential Revision:	https://reviews.freebsd.org/D21719
2019-09-21 15:21:11 +00:00
Piotr Kubaj
fccc4a7d49 security/steghide: fix build on GCC architectures
Add -Wno-static-float-init only when clang is used. Also add USES=localbase.

Approved by:	linimon (mentor)
Differential Revision:	https://reviews.freebsd.org/D21407
2019-09-21 15:04:38 +00:00
Tijl Coosemans
457a88291a Fix pkg-plist.
Reported by:	olgeni
2019-09-21 12:30:30 +00:00
Tijl Coosemans
e4c0bd396a Update to CentOS 7.7.1908.
Put libdrm into a separate port so it can be kept at the CentOS 7.6 version.
The new version fails to detect graphics hardware on FreeBSD.
2019-09-21 08:56:20 +00:00
Torsten Zuehlsdorff
8bd2d80422 lang/php74: Remove obsolete patches
All these patches are no longer needed. Their existence break the ports,
so now commit their deletion.

Sponsored by:	PHP Update Service
2019-09-20 20:04:28 +00:00
Jan Beich
3f1915711d Switch default devel/llvm* to 90
PR:		239682
Reviewed by:	tobik
Differential Revision:	https://reviews.freebsd.org/D21172
2019-09-20 19:58:36 +00:00
Cy Schubert
e5e1f87e52 Update to the latest MIT krb5 github commmit. 2019-09-20 19:39:22 +00:00
Antoine Brodin
1bd27d12de Attempt to unbreak INDEX 2019-09-20 17:06:15 +00:00
Kurt Jaeger
27178fbe07 security/vuxml: add CVEs for net/kea
PR:		240399
Submitted by:	Andrey Pevnev <apevnev@me.com>
2019-09-20 15:56:44 +00:00
Torsten Zuehlsdorff
7aca2531e2 Welcome PHP 7.4 RC 1 in the ports-tree.
There are many greater changes including:
- New module ffi
- Remove interbase module
- Remove recode module
- Remove wddx module
- Many modules changes the build switches
- Many modules changes the config format, so patches needed to be recreated

Special thanks to tobik and ale for their support.

Reviewed by:	tobik, ale, joneum
Sponsored by:	PHP Update Service
Differential Revision:	https://reviews.freebsd.org/D21349
2019-09-20 12:21:11 +00:00
Jason E. Hale
2a5ef47085 Update security/*gpgme* to 1.13.1 2019-09-20 11:36:30 +00:00
Dmitri Goutnik
29d16a42da Go ports: cleanup, make use of the new GO_TARGET tuple syntax
- Remove custom build/install targets left in place after r505321
- Switch to the new GO_TARGET tuple syntax introduced in r512001

Approved by:	araujo (mentor)
Differential Revision:	https://reviews.freebsd.org/D21721
2019-09-20 11:31:49 +00:00
Dmitry Marakasov
c0dce1027a - Pet portlint
- Update WWW

Approved by:	portmgr blanket
2019-09-20 09:38:22 +00:00
Tobias Kortkamp
0b3707e443 security/theonionbox: Spell post-install correctly
Install rc script with executable permissions again after r501220.
2019-09-20 04:22:28 +00:00
Tobias Kortkamp
22143e5ad2 security/samhain: Spell *_CONFIGURE_ON correctly
While here

- Put database options in a radio group since only one can be on
  at a time
- Move implied options to *_IMPLIES
- ODBC implies XML_LOGS too
2019-09-19 15:57:53 +00:00
Yuri Victorovich
fe8ab18362 security/tor: Update 0.4.1.5 -> 0.4.1.6
Reported by:	upstream notification
2019-09-19 15:04:55 +00:00
Mateusz Piotrowski
2e21d27de3 Update to 1.5.1 2019-09-19 14:45:53 +00:00
Dmitri Goutnik
e73360392c security/botan2: Update to 2.11.0
Changes:	https://botan.randombit.net/news.html#version-2-11-0-2019-07-01

PR:		240557
Submitted by:	Ralf van der Enden <tremere@cainites.net> (maintainer)
Approved by:	araujo (mentor)
Differential Revision:	https://reviews.freebsd.org/D21716
2019-09-19 14:44:07 +00:00
Kurt Jaeger
8b44a1cbcf security/vuxml: add entry for CVE-2019-15903 in expat < 2.2.8
PR:		240613
Submitted by:	Sergei Vyshenski <svysh.fbsd@gmail.com> (maintainer)
2019-09-19 12:43:20 +00:00
Tijl Coosemans
51ad43c238 Document Mbed TLS side channel attack on deterministic ECDSA.
Security:	https://tls.mbed.org/tech-updates/security-advisories/mbedtls-security-advisory-2019-10
2019-09-19 09:40:37 +00:00
Tijl Coosemans
fdfb0c86cb Update to 2.16.3.
MFH:		2019Q3
Security:	https://tls.mbed.org/tech-updates/security-advisories/mbedtls-security-advisory-2019-10
2019-09-19 09:39:56 +00:00
Koichiro Iwao
6f5e9d6a03 security/softether: Change LICENSE to Apache License 2.0
forgotten at r494160. Also re-add MAKE_JOBS_UNSAFE=yes removed at
r483774 because it turned out not to be able to build pararelly.

http://beefy18.nyi.freebsd.org/data/head-amd64-default/p512305_s352495/logs/softether-4.29.9680_3.log

Reported by:	pkg-fallout
2019-09-19 05:17:39 +00:00
Yuri Victorovich
33cb9dd305 security/tor-devel: Update 0.4.1.4-rc -> 0.4.2.1-alpha
Reported by:	upstream notification
2019-09-18 15:01:28 +00:00
Tobias Kortkamp
b79c1d3b95 security/barnyard2: Spell ODBC_CONFIGURE_WITH correctly
The option now actually activates the ODBC code paths but the port
fails to build with it.  The code seems to lack full support for
it in a couple of places, so mark the ODBC option as broken for
now.

spo_database.c:3547:3: error: use of undeclared identifier 'result'
result = 0;
^
spo_database.c:3841:41: warning: incompatible pointer types passing 'SQLINTEGER *' (aka 'int *') to parameter of type 'SQLLEN *' (aka 'long *') [-Wincompatible-pointer-types]
if(SQLRowCount(data->u_statement, &data->u_rows) == SQL_SUCCESS)
^~~~~~~~~~~~~
/usr/local/include/sql.h:768:44: note: passing argument to parameter 'RowCount' here
SQLLEN *RowCount);
^
spo_database.c:3849:33: error: use of undeclared identifier 'result'
result = 0;
^
1 warning and 2 errors generated.

PR:		240237
Approved by:	bofh (maintainer timeout, 17 days)
2019-09-18 09:29:53 +00:00
Koichiro Iwao
de55ed9120 security/softether: make LogFileList command[1] work
properly as well as r512198, r512253. Also config backup function
should work now and use separate PIDDIR from DBDIR.

[1] https://www.softether.org/4-docs/1-manual/6._Command_Line_Management_Utility_Manual/6.3_VPN_Server_%2F%2F_VPN_Bridge_Management_Command_Reference_(For_Entire_Server)#6.3.55_.22LogFileList.22:_Get_List_of_Log_Files

Sponsored by:	HAW International, Inc.
2019-09-18 07:54:58 +00:00
Koichiro Iwao
cdcf0a8cac security/softether-devel: make LogFileList command[1] work
properly as well as r512198. Also config backup function should work now.

[1] https://www.softether.org/4-docs/1-manual/6._Command_Line_Management_Utility_Manual/6.3_VPN_Server_%2F%2F_VPN_Bridge_Management_Command_Reference_(For_Entire_Server)#6.3.55_.22LogFileList.22:_Get_List_of_Log_Files

Sponsored by:	HAW International, Inc.
2019-09-18 06:39:21 +00:00
Craig Leres
6c6354e439 security/bro: Update to 2.6.4 and address a potential Denial of
Service vulnerability:

   https://raw.githubusercontent.com/zeek/zeek/3b5a9f88ece1d274edee897837e280ef751bde94/NEWS

 - The NTLM analyzer did not properly handle AV Pair sequences that
   were either empty or unterminated, resulting in invalid memory
   access or heap buffer over-read.  The NTLM analyzer is enabled
   by default and used in the analysis of SMB, DCE/RPC, and GSSAPI
   protocols.

Approved by:	ler (mentor, implicit)
MFH:		2019Q3
Security:	55571619-454e-4769-b1e5-28354659e152
2019-09-17 23:13:57 +00:00
Craig Leres
548c0111a1 security/vuxml: Mark bro < 2.6.4 as vulnerable as per:
https://raw.githubusercontent.com/zeek/zeek/3b5a9f88ece1d274edee897837e280ef751bde94/NEWS

The issue is inproper data handling of data that is either either
empty or unterminated, resulting in invalid memory access or heap
buffer over-read.

Approved by:	matthew (mentor, implicit)
2019-09-17 22:50:11 +00:00
Li-Wen Hsu
8ffcc75d50 Add security/tpm2-abrmd, TPM2 Access Broker & Resource Manager Deamon
Submitted by:	Tadeusz Struk <tadeusz.struk@intel.com>
Differential Revision:	https://reviews.freebsd.org/D21651
2019-09-17 19:57:41 +00:00
Li-Wen Hsu
ca012d4b6a Add security/tpm2-tools, TPM2 tools
Submitted by:	Tadeusz Struk <tadeusz.struk@intel.com>
Differential Revision:	https://reviews.freebsd.org/D21650
2019-09-17 19:52:16 +00:00
Cy Schubert
fdd7f1d902 Update to the latest MIT krb5 github commmit. 2019-09-17 19:47:20 +00:00
Li-Wen Hsu
2bdec291a5 Add security/tpm2-tss, TPM2 Software Stack core library
Submitted by:	Tadeusz Struk <tadeusz.struk@intel.com>
Differential Revision:	https://reviews.freebsd.org/D21649
2019-09-17 19:46:10 +00:00
Tobias Kortkamp
c8b9433fc5 Fix some misspelled or duplicated LICENSE_* 2019-09-17 19:21:45 +00:00
Dmitri Goutnik
30ed82472e security/sops: Update to 3.4.0
Changes:	https://github.com/mozilla/sops/releases/tag/3.4.0

Approved by:	araujo (mentor)
Differential Revision:	https://reviews.freebsd.org/D21687
2019-09-17 12:50:05 +00:00
Koichiro Iwao
7aa2e3cf3f security/softether5: make LogFileList command [1] work properly
- Move patch files to my GitHub fork to follow upstream easier
- Use separate PIDDIR from DBDIR

[1] https://www.softether.org/4-docs/1-manual/6._Command_Line_Management_Utility_Manual/6.3_VPN_Server_%2F%2F_VPN_Bridge_Management_Command_Reference_(For_Entire_Server)#6.3.55_.22LogFileList.22:_Get_List_of_Log_Files
2019-09-17 08:02:40 +00:00
Dmitri Goutnik
b6bd0cf737 Change my maintainer email
Approved by:	tz (mentor), portmgr (adamw)
Differential Revision:	https://reviews.freebsd.org/D21677
2019-09-16 20:55:08 +00:00
Kurt Jaeger
65300880b1 security/vuxml: fix vuln.xml entry for expat
PR:		238864
Submitted by:	tobik
2019-09-16 11:45:32 +00:00
Kurt Jaeger
b57de64886 security/vuxml: document expat2 pre-2.2.7 vulnerability
PR:		238864
Submitted by:	Sergei Vyshenski <svysh.fbsd@gmail.com>
2019-09-16 11:19:51 +00:00
Antoine Brodin
76ab1d975e Mark BROKEN on i386 with lld
Reported by:	pkg-fallout
MFH:		2019Q3
2019-09-16 08:13:08 +00:00
Bernard Spil
f9956548b9 security/vuxml: Fix latest openssl entry
Reported by:	tobik
2019-09-16 06:05:58 +00:00
Antoine Brodin
637b3d75f3 Deprecate a few ports 2019-09-15 17:28:08 +00:00
Kubilay Kocak
1b75711e41 security/py-pyaxo: Add missing dependency
net-im/py-unmessage currently fails at run-time with the following error:

  File "/usr/local/lib/python2.7/site-packages/unmessage/cli.py", line 9, in <module>
    from pyaxo import b2a
  File "/usr/local/lib/python2.7/site-packages/pyaxo.py", line 27, in <module>
    import sqlite3
  File "/usr/local/lib/python2.7/sqlite3/__init__.py", line 24, in <module>
    from dbapi2 import *
  File "/usr/local/lib/python2.7/sqlite3/dbapi2.py", line 28, in <module>
    from _sqlite3 import *
ImportError: No module named _sqlite3

This change adds the appropriate and missing dependency on
databases/py-sqlite3.

While I'm here:

 - Verbosify pytest output (one test per line) and print skipped reasons,
   which can be very useful during QA.
 - Pet portlint (extra item in USES/USE_x section: "NO_ARCH".)

Reported by:	DanDare (via IRC, via net-im/py-unmessage)
Approved by:	portmgr (blanket(s): missing dependencies, ports compliance)
MFH:		2019Q3
2019-09-15 11:51:20 +00:00
Dmitry Marakasov
94a2d943fa - Update WWW
Approved by:	portmgr blanket
2019-09-15 09:38:16 +00:00
Sunpoet Po-Chuan Hsieh
d48d8b4f72 Document curl vulnerability 2019-09-14 21:17:26 +00:00