Commit graph

14578 commits

Author SHA1 Message Date
Martin Wilke
da3e156fec * Fix GSSAPI when using heimdal from ports
PR:		152071
Submitted by:	Joerg Pulz <Joerg.Pulz@frm2.tum.de>
Approved by:	maintainer timeout
Feature safe:	yes
2011-02-05 06:55:32 +00:00
Martin Wilke
b7e4515267 - While here drop MD5 Support
Feature safe:	yes
2011-02-05 04:37:18 +00:00
Martin Wilke
3fdaa0b9fa - Add entry for wordpress - SQL injection vulnerability
PR:		153526
Submitted by:	Mark Foster <mark@foster.cc>
Feature safe:	yes
2011-02-05 04:36:36 +00:00
Doug Barton
ff29495b22 Remove former maintainer from pkg-desr at their request
Feature safe:	yes
2011-02-05 01:08:40 +00:00
Renato Botelho
dbe7a76658 Update to 20110204
Feature safe:	yes
2011-02-04 16:28:43 +00:00
Martin Wilke
4f42a45ecc - Cleanup previous commit
Feature safe:	yes
2011-02-02 23:51:54 +00:00
Koop Mast
7d33cb0f6d Add vlc - Insufficient input validation in MKV demuxer vulnability.
Feature safe:	yes
2011-02-02 15:45:11 +00:00
Roman Bogorodskiy
018c1efc98 Update to 2.11.5.
PR:		154137 (based on)
Submitted by:	Fumiyuki Shimizu <fumifumi@abacustech.jp>
Feature safe:	yes
2011-01-31 18:55:59 +00:00
Martin Wilke
97de1995af - Cleanup previous Entry
Feature safe:	yes
2011-01-31 14:02:34 +00:00
Bernhard Froehlich
6036842338 - Document maradns -- denial of service when resolving a long DNS hostname
Submitted by:	n j <nino80 at gmail dot com>
Feature safe:	yes
2011-01-31 09:47:54 +00:00
Olli Hauer
83cb0309a2 - update barnyard2 to version 2.1.9
Changes:
 2010-12-27 - Barnyard 2.1.9
   [*] Additions
      * spo_database. Support of encrypted connections to postgresql is now
        available. See README.database for the appropriate options.

      * spo_sguil. Fixed issue with duplication of alerts.

   [*] Improvements

      * spooler. Fixed issue with borking when reading unrecognised records.
        There is now sufficient information to skip and move on.

      * spooler. Fixed early termination of non-readable files, causing the
        dreaded SEGFAULT.

      * classifications. Tweaked output for classification identification if the
        appropriate node can't be found.

PR:		ports/154400
Submitted by:	Paul Schmehl <pauls _at_ utdallas.edu> (maintainer)
Feature safe:	yes
2011-01-31 01:17:36 +00:00
Olli Hauer
0813236ffa - update to version 5.50
- always enable bpf in libdnet-stripped to support build in Jail [1]

Announcement and Changelog are very long and covered by last updates.

Announcement: http://seclists.org/nmap-hackers/2011/0
Changelog: http://nmap.org/changelog.html

PR:		ports/154353 [1]
Submitted by:	Mars G Miro <spry _at_ anarchy.in.the.ph> [1]
Feature safe:	yes
2011-01-30 17:15:07 +00:00
Martin Wilke
ac1cb23d59 bcrypt() is a sophisticated and secure hash algorithm designed by The OpenBSD
project for hashing passwords. bcrypt-ruby provides a simple, humane wrapper
for safely handling passwords.

WWW: http://rubygems.org/gems/bcrypt-ruby

PR:		ports/153965
Submitted by:	Jason Helfman <jhelfman at experts-exchange.com>
Feature safe:	yes
2011-01-30 12:08:25 +00:00
Martin Wilke
344c7ae7b6 - Update to 1.2
PR:		153611
Submitted by:	Yoshisato YANAGISAWA <osho@pcc-software.org> (maintainer)
Feature safe:	yes
2011-01-30 12:08:14 +00:00
Martin Wilke
281a97f4c5 - Update to 0.96
PR:		154079
Submitted by:	Uffe Jakobsen <uffe@uffe.org> (Maintainer)
Feature safe:	yes
2011-01-29 14:28:38 +00:00
Brendan Fabeny
1b897f9223 - Remove an unnecessary addition to CPPFLAGS
that can break non-sandboxed builds when
  some other (poorly-configured) ports are
  installed (For example, lang/libutils or
  textproc/irstlm)
- Remove a problematic mirror, based on
  distilator results

Approved by:	makc, miwi (mentors, implicit)
Feature safe:	yes
2011-01-29 11:27:54 +00:00
Brendan Fabeny
8b824bd56c - Update to 0.2.2.22-alpha
- Remove an unnecessary addition to CPPFLAGS
  that can break non-sandboxed builds when
  some other (poorly-configured) ports are
  installed (For example, lang/libutils or
  textproc/irstlm)
- Remove a problematic mirror, based on
  distilator results

Approved by:	makc, miwi (mentors, implicit)
Feature safe:	yes
2011-01-29 10:55:21 +00:00
Wesley Shields
3377432a65 Adjust range for ISC DHCPv6 server crash.
Feature safe:	yes
2011-01-29 00:23:19 +00:00
Wesley Shields
bf7d233ce8 Document ISC DHCPv6 server crash.
Feature safe:	yes
2011-01-29 00:15:09 +00:00
Xin LI
7e4d1a3af0 crypto++ assumes that the as(1) in PATH is the one used by c++(1),
which is not always true.  When PATH is being configured to a
non-standard sequence, we may found an as(1) newer than the base
one and draw wrong conclusion which leads to failed builds.

Use the result given by c++.  This is also accepted to upstream.

PR:			ports/154325
Submitted by:		swell.k gmail.com
Feature safe:		yes
2011-01-27 20:47:30 +00:00
Alexander Logvinov
0bf09d8ebd - Update to 0.4.8
- Remove BSD license, this library is distributed under LGPL21 license

Feature safe:	yes
2011-01-27 09:36:41 +00:00
Beat Gaetzi
b42fbb8b4f - Add tk-wrapper as run dependency to fix execution of gorilla script
PR:		ports/153706
Reported by:	Aldis Berjoza <aldis AT bsdroot.lv>
Submitted by:	Chris Rees <utisoft AT gmail.com> (maintainer)
Feature safe:	yes
2011-01-26 21:12:02 +00:00
Pav Lucistnik
3cccd3e66c - Update to 0.2.5
PR:		ports/153912
Submitted by:	Ruslan Mahmatkhanov <cvs-src@yandex.ru>
Approved by:	maintainer timeout (15 days)
Feature safe:	yes
2011-01-26 12:11:13 +00:00
Pav Lucistnik
826426c946 - Update to 1.2.11
PR:		ports/153911
Submitted by:	Ruslan Mahmatkhanov <cvs-src@yandex.ru>
Approved by:	maintainer timeout (15 days)
Feature safe:	yes
2011-01-26 12:04:42 +00:00
Renato Botelho
98c5b4f39f Restrict LLVM to i386 and amd64 since it doesn't build on sparc64, ia64 and
probably on ppc

Submitted by:	Anton Shterenlikht <mexas@bristol.ac.uk>
Feature safe:	yes
2011-01-26 11:04:40 +00:00
Josh Paetzel
0b827a1f4a Update to week 4 snapshot
PR:	ports/154296
Submitted by:	Eric F Crist <ecrist@secure-computing.net>
Feature safe:	yes
Sponsored by:	ClaimLynx, Inc
2011-01-25 23:31:23 +00:00
Gabor Kovesdan
1ab85b998e - Turn IPV6 support on by default
- Bump PORTREVISION

Requested by:	dougb, delphij
Feature safe:	yes
2011-01-25 23:24:03 +00:00
Emanuel Haupt
ce1197e105 Add LICENSE and remove MD5 sums.
Feature safe:	yes
2011-01-25 19:59:40 +00:00
Sergey Skvortsov
1bea12737e Document "bugzilla" - multiple seriuos vulnerabilities.
Feature safe:	yes
2011-01-25 15:07:35 +00:00
Xin LI
30e3f87e71 Add dokuwiki multiple ACL escalation vulnerabilities.
Feature safe:	yes
2011-01-24 23:00:50 +00:00
Emanuel Haupt
0c33b8e58c Update to 1.2
PR:             153486
Approved by:    maintainer timeout (jochen@daten-chaos.de; > 14d)
Feature safe:	yes
2011-01-24 12:35:44 +00:00
Simon L. B. Nielsen
96c4d250d4 Try to unbreak vuxml portaudit build by removing use of HTML entity.
UTF-8 chars should be used.

This is not a fix, just a hack to get it working for now.

Feature safe:	yes (really)
2011-01-23 23:29:29 +00:00
Rene Ladan
45ccbba32c Describe www/chromium vulnerabilities between 8.0.552.215 and 8.0.552.237
Obtained from:	http://googlechromereleases.blogspot.com/
Feature safe:	yes
2011-01-23 13:41:34 +00:00
Xin LI
fdf1d0d2a4 Update to 5.6.1.
Submitted by:	Michael Richards <hackish gmail.com>
Feature safe:	yes
2011-01-22 23:21:52 +00:00
Philippe Audeoud
3b87a2740b - Fix CPAN location
Pointyhat:	swills
Feature safe:	yes
2011-01-22 19:29:29 +00:00
Olli Hauer
6bd9969942 - update nmap to version 5.36TEST4
Changelog: http://nmap.org/changelog.html

Feature safe:	yes
2011-01-22 16:43:18 +00:00
Steve Wills
55d06c6dea - Update to 1.38
Changelog:	http://cpansearch.perl.org/src/SULLR/IO-Socket-SSL-1.38/Changes
Approved by:	wxs@ and pgolluci@ (mentor implicit)
Feature safe:	yes
2011-01-22 02:44:05 +00:00
Wen Heping
97e0b4a04b - Add missing DEPENDS and bump PORTREVISION
PR:		ports/154162
Submitted by:	Alexey Illarionov <littlesavage@rambler.ru>
Feature safe:	yes
2011-01-21 03:04:20 +00:00
Florian Smeets
750f8f449d asterisk-1.8.2.1 is still vulnerable due to a botched merge upstream.
Feature safe:	yes
2011-01-21 01:23:43 +00:00
Wen Heping
846424b94e Twofish is a 128-bit symmetric block cipher with a variable key
length (128, 192, or 256 bits) key, developed by Counterpane Labs.
It is unpatented and free for all uses, as described at
http://www.counterpane.com/twofish.html. It has been one of the
five finalists for AES.

This module is written in pure Perl, it should run everywhere
where Perl runs.

WWW:    http://search.cpan.org/dist/Crypt-Twofish_PP/

PR:		ports/154142
Submitted by:	Konstantin Menshikov <kostjnspb@yandex.ru>
Feature safe:	yes
2011-01-20 06:05:28 +00:00
Brendan Fabeny
c9143a4559 - Update to 0.2.1.29
- Take maintainership

Approved by:	makc, miwi (mentors, implicit)
Security:	CVE-2011-0427
Feature safe:	yes
2011-01-20 05:10:54 +00:00
Wesley Shields
21f5ede427 Update to 1.7.4p6.
"This release fixes a bug in the I/O logging support that could cause visual
artifacts in full-screen programs such as text editors.  This bug was listed as
fixed in sudo 1.7.4p5 but the fix was merged incorrectly."

Feature safe:	yes
2011-01-19 18:32:50 +00:00
Florian Smeets
825e64c847 - fix asterisk16 version string
Approved by:	fjoe (mentor)
Feature safe:	yes
2011-01-19 09:19:48 +00:00
Florian Smeets
ba628db2b2 - Document Exploitable Stack Buffer Overflow in asterisk
Approved by:	fjoe (mentor)
Feature safe:	yes
2011-01-19 08:46:28 +00:00
Wesley Shields
7c78515b88 Document tarsnap cryptographic nonce reuse vulnerability.
Discussed with:	cperciva@
Feature safe:	yes
2011-01-19 02:26:50 +00:00
Cy Schubert
186a989ba9 Remove the OpenSSL port requirement. The base OpenSSL will work too.
Feature safe:	yes
2011-01-18 15:07:56 +00:00
Xin LI
cc0910a0f6 Add entry for moinmoin XSS vulnerabilities.
PR:		ports/153898
Submitted by:	Ruslan Mahmatkhanov <cvs-src yandex ru>
Feature safe:	yes
2011-01-18 09:26:17 +00:00
Baptiste Daroussin
2f71ff1c1c upgrade to 1.7.10
Feature safe:	yes
2011-01-18 07:45:35 +00:00
Brendan Fabeny
0363678d0e Update to 0.2.2.21-alpha
Approved by:	makc, miwi (mentors, implicit)
Security:	CVE-2011-0427
Feature safe:	yes
2011-01-18 02:57:48 +00:00
Xin LI
e94fe47825 Document tor remote code execution and crash vulnerability.
Submitted by:	Janne Snabb <snabb epipe com>
Feature safe:	yes
2011-01-18 02:14:52 +00:00
Gabor Kovesdan
268c3d2c03 - Make IPv6 support optional because it causes a delay on systems that
do not support it

PR:		ports/153431
Submitted by:	Michael Scheidell <michael.scheidell@secnap.com>
Feature safe:	yes
2011-01-17 14:33:14 +00:00
Gerald Pfeifer
f1d32d2c9c Fix the handling of CPPFLAGS in the context of CONFIGURE_ENV / MAKE_ENV.
PR:		153625
Feature safe:	yes
2011-01-15 23:54:43 +00:00
Gerald Pfeifer
0d955bb486 Fix whitespace in Makefile. Add USE_LDCONFIG.
Reported by:	portlint
Feature safe:	yes
2011-01-15 23:31:06 +00:00
Sunpoet Po-Chuan Hsieh
65c8dd0038 - Let graphics/ImageMagick be an optional dependency
- Add OPTIONS: IMAGEMAGICK
- Bump PORTREVISION for dependency change
- Remove obsolete MD5 checksum

PR:		ports/153602
Submitted by:	Grzegorz Blach <magik@roorback.net>
Feature safe:	yes
2011-01-15 15:35:41 +00:00
Wen Heping
c57d59781c - Update to 0.5.1
PR:		ports/154008
Submitted by:	Douglas William Thrift <douglas@douglasthrift.net> (maintainer)
Feature safe:	yes
2011-01-15 13:38:35 +00:00
Alberto Villa
842092dedf - WITH_RAR: unrar is required even when rar is installed.
Feature safe:	yes
2011-01-15 10:38:43 +00:00
Emanuel Haupt
52a2614f1e Fix typo
Feature safe: yes
2011-01-14 20:07:37 +00:00
Doug Barton
57391a8666 Apparently the verhack'ing caused lib/libassuan.a to slip in,
so fix the plist.

Submitted by:   ale

Feature safe:	yes
2011-01-14 18:02:22 +00:00
Emanuel Haupt
134ed538c2 Add ssh-copy-id 5.6p1, small script which copy your ssh public-key to a
remote host; appending it to your remote authorized_keys.

Feature safe: yes
2011-01-14 17:32:37 +00:00
Doug Barton
0064bfe0b9 Fix the shared library version number for libassuan to reflect what
the authors intended by adding:

USE_AUTOTOOLS=	libtool
USE_GNOME=	ltverhack

to security/libassuan/Makefile.

Update the libassuan shared library version number and/or bump
PORTREVISION in the dependent ports.

Requested by:	ale
Feature safe:	yes
2011-01-14 07:42:11 +00:00
Wesley Shields
a18479ea33 Update to 1.7.4p5.
Special thanks to rea@ for commiting the appropriate VuXML for me. :)

PR:		ports/153939
Submitted by:	rea@
Security:	908f4cf2-1e8b-11e0-a587-001b77d09812
Feature safe:	yes
2011-01-13 20:00:11 +00:00
Eygene Ryabinkin
fb9dec4150 security/sudo: document privilege escalation, CVE-2011-0010
PR: 153939
Approved by: delphij (secteam), erwin (mentor)
Feature safe: yes
2011-01-13 14:09:25 +00:00
Eygene Ryabinkin
1fd739edad devel/subversion: document security fixes in 1.6.15
Two DoS conditions:
 - CVE-2010-4539, DoS via walking of SVNParentPath
   collections;
 - CVE-2010-4644, DoS via memory leaks triggered
   by the option "-g" of the blame command.

Approved by: delphij (secteam), erwin (mentor)
Feature safe: yes
2011-01-13 12:53:13 +00:00
Eygene Ryabinkin
3b4eb83811 Split recent PHP entry into multiple ones
Many reasons:
 - some vulnerabilities were present only in the specific
   PHP modules and not in the core PHP;
 - it is better to group vulnerabilities by-topic (DoS, code
   execution, etc);
 - PHAR vulnerability is present only in 5.3.x;
 - extract() vulnerability was fixed both in 5.2 and 5.3:
   http://www.mail-archive.com/php-cvs@lists.php.net/msg47722.html
 - NULL-byte poisoning was fixed only in 5.3, 5.2.x is still
   vulnerable to this design error;
 - DFS-related fixes are not relevant for FreeBSD, since DFS
   is Windows file system that is unsupported by us.

PR: 153433
Approved by: remko (secteam), erwin (mentor)
Feature safe: yes
2011-01-13 05:44:53 +00:00
Gerald Pfeifer
fb63fd0792 Adjust MAKE_ENV and add CFLAGS to be more robust.
PR:		153625
Submitted by:	Sofian Brabez <sbrabez@gmail.com> (maintainer)
Feature safe:	yes
2011-01-12 20:10:50 +00:00
Anton Berezin
764f81a5a0 Update to 1.06.
Changes:	http://search.cpan.org/dist/Crypt-OpenPGP/Changes
2011-01-10 12:03:14 +00:00
Olli Hauer
012f55c745 - update to version 2.6.0
- rewrite the rc script so it works with this version
 - patch the Gemfile, else it will not detect
   rubygem-sqlite3 or ruby-dbd_sqlite3

PR:		153293
Submitted by:	Dax Labrador <semprix at bsdmail.org> (maintainer)
2011-01-09 22:06:07 +00:00
Alex Dupre
32134adc42 Add entry for CVE-2010-4645 (php).
PR:		ports/153766
Submitted by:	Tom Judge <tom@tomjudge.com>
2011-01-09 09:12:09 +00:00
Matthias Andree
25c9695900 Add a note about skipping the self-test. 2011-01-08 10:07:21 +00:00
Matthias Andree
f9b85c98f1 Streamline a bit:
- remove subshell to use basename, and use ## substitution [1]
- remove FreeBSD 5.X compatibility comment [1]
- remove FreeBSD 5.X compatibility code

The parts marked with [1] above were
Submitted by: dougb (Doug Barton)
2011-01-08 10:07:00 +00:00
Eygene Ryabinkin
3c608a1d3f Document CVE-2010-4345: local exim -> root escalation
PR: 152983
Feature safe: yes
Reviewed by: remko (secteam)
Approved by: erwin (mentor), remko (secteam)
2011-01-08 06:54:14 +00:00
Dima Panov
7e6373e612 - The KDE FreeBSD team is proud to announce the release of KDE 4.5.5
for FreeBSD.

It's a bugfix-only release, January 2011 set.
2011-01-07 23:54:08 +00:00
Olli Hauer
3f0360cc96 - update nmap to version 5.36TEST3
- remove dead mirror servers

 Changelog: http://nmap.org/changelog.html

 Mayjor changes are NSE script related, some highlihts:
  o [NSE] Added stuxnet-detect.nse
  o [NSE] Added the ftp-proftpd-backdoor.nse

  and many more interesting NSE scripts.
2011-01-07 20:51:25 +00:00
Martin Wilke
9b3a6da7b3 - Cleanup 2011-01-06 07:06:08 +00:00
Wen Heping
b890949a68 - Document the Clickjacking vulnerabilities of mediawiki 2011-01-06 06:35:37 +00:00
Wen Heping
1f97047ba3 Honggfuzz is a general-purpose fuzzing tool. Given a starting corpus of test
files, Hongfuzz supplies and modifies input to a test program and utilize the
ptrace() API/POSIX signal interface to detect and log crashes.

WWW:    http://code.google.com/p/honggfuzz/
2011-01-05 01:54:24 +00:00
Peter Pentchev
5431ebd5df Implement transparent proxying using the IP_BINDANY option if available in
a way a bit different (and a bit more generic) than the one in the PR.
While I'm here, declare the GPL-2+ license and remove the MD5 checksum.

PR:		153568
Submitted by:	Jason Helfman <jhelfman@experts-exchange.com>
2011-01-04 16:37:24 +00:00
Jeremy Messenger
00f2c843c5 The x11/libcapplet has been broken for over a year (will be two in June 2011)
and no one has any of interest to fix it. It's an ancient software and
is part of GNOME 1. It's time for us to get rid of some of GNOME 1 stuff as
the GNOME 3 is coming sometimes in 2011. Any ports that required libcappet
are removed and ports that have optional aren't remove.

PR:		ports/153355
Discussed with:	My team, FreeBSD GNOME Team
Tested by:	pointyhat-exp (thanks pav!)
2011-01-04 03:32:21 +00:00
Ashish SHUKLA
2c1d3bb271 - Update to 5.50.
Approved by:	pgj (mentor, implicit)
2011-01-03 18:06:56 +00:00
Renato Botelho
21526892f3 Remove expired ports:
2011-01-01 audio/emphasis: abandoned upstream
2011-01-01 converters/ecore-txt: abandoned upstream
2011-01-01 deskutils/estickies: abandoned upstream
2011-01-01 devel/ecore-job: abandoned upstream
2011-01-01 devel/engrave: abandoned upstream
2011-01-01 devel/evfs: abandoned upstream
2011-01-01 devel/ruby-ecore: abandoned upstream
2011-01-01 graphics/exhibit: abandoned upstream
2011-01-01 graphics/epsilon: abandoned upstream
2011-01-01 graphics/esmart: abandoned upstream
2011-01-01 graphics/ruby-edje: abandoned upstream
2011-01-01 graphics/ruby-esmart: abandoned upstream
2011-01-01 graphics/ruby-evas: abandoned upstream
2011-01-01 graphics/ruby-redact: abandoned upstream
2011-01-01 multimedia/eclair: abandoned upstream
2011-01-01 security/phpmyid: Development has ceased.
2011-01-01 sysutils/ecore-config: abandoned upstream
2011-01-01 sysutils/extrackt: abandoned upstream
2011-01-01 textproc/exml: abandoned upstream
2011-01-02 www/mod_accesscookie: upstream is gone
2011-01-02 www/mod_vdbh: upstream is gone
2011-01-02 www/mod_auth_any: upstream is gone
2011-01-02 www/mod_log_data: upstream is gone and will be unsupported by ASF when 2.4.0 is release, migrate to 2.2.x+ now
2011-01-01 x11-fm/entropyfm: abandoned upstream
2011-01-01 x11-themes/e17-splash-fortune: abandoned upstream
2011-01-01 x11-themes/e17-splash-shiny: abandoned upstream
2011-01-01 x11-themes/e17-splash-takara: abandoned upstream
2011-01-01 x11-themes/e17-theme-blue_eyed: abandoned upstream
2011-01-01 x11-themes/e17-theme-dali: abandoned upstream
2011-01-01 x11-themes/e17-theme-gant: abandoned upstream
2011-01-01 x11-themes/e17-theme-japan2007: abandoned upstream
2011-01-01 x11-themes/e17-theme-kor: abandoned upstream
2011-01-01 x11-themes/e17-theme-milky: abandoned upstream
2011-01-01 x11-themes/e17-theme-night_bling: abandoned upstream
2011-01-01 x11-themes/e17-theme-simply_white: abandoned upstream
2011-01-01 x11-themes/e17-splash-azul: abandoned upstream
2011-01-01 x11-themes/e17-splash-blue: abandoned upstream
2011-01-01 x11-themes/e17-splash-clean: abandoned upstream
2011-01-01 x11-themes/e17-splash-logo: abandoned upstream
2011-01-01 x11-toolkits/etk: abandoned upstream
2011-01-01 x11-toolkits/ewl: abandoned upstream
2011-01-01 x11-toolkits/enhance: abandoned upstream
2011-01-01 x11-wm/e17-module-bling: abandoned upstream
2011-01-01 x11-wm/e17-module-mixer: abandoned upstream
2011-01-01 x11-wm/e17-utils: abandoned upstream
2011-01-01 x11/elicit: abandoned upstream
2011-01-01 x11/enity: abandoned upstream
2011-01-01 x11/examine: abandoned upstream
2011-01-01 x11/ecore-desktop: abandoned upstream
2011-01-03 14:38:01 +00:00
Rene Ladan
8cf66a3790 Garbage collect unmaintained expired ports:
2011-01-01 security/lxnb: Development has ceased, mastersite disappeared
2011-01-01 x11-wm/lxsession-lite: Superseded by x11-wm/lxsession
2011-01-02 21:49:02 +00:00
Norikatsu Shigemura
e285bc119c Fix MASTER_SITES.
Pointed out by:	ume
2011-01-02 19:04:08 +00:00
Joe Marcus Clarke
e5a384624b Remove this post-extract target to avoid autotools regeneration. 2011-01-02 17:24:49 +00:00
Thomas Abthorpe
59d48d920f Return kris' ports to the heap.
We hope to see him back again sometime.

Hat:		portmgr-secretary
2011-01-02 06:22:23 +00:00
Norikatsu Shigemura
5babafd4c6 Add tpmmanager 0.8, is an open source TPM (Trusted Platform
Module) management software providing an easy-to-use
graphical user interface.

WWW: http://projects.sirrix.com/trac/tpmmanager
2011-01-02 01:32:43 +00:00
Brendan Fabeny
f9dac246cc Remove some outdated or unreachable mirrors,
based on distilator results

Approved by:	makc, miwi (mentors, implicit)
2011-01-01 20:01:43 +00:00
Brendan Fabeny
e86c15cf8f - update MASTER_SITES on the basis of distilator results and:
http://www.torproject.org/getinvolved/mirrors.html.en
- fix conditional openssl requirements [1] (thanks to Pascal Stumpf
for raising this issue, and that of CVE 2010-1676)

PR:		151181 [1]
Approved by:	makc, miwi (mentors, implicit)
2011-01-01 18:36:01 +00:00
Erwin Lansing
683634eb2b Bump copyright year. 2011-01-01 14:31:38 +00:00
Brendan Fabeny
d47ebb79a8 - update to 0.2.2.20-alpha (includes a security patch for CVE-2010-1676)
- update MASTER_SITES on the basis of:
	 http://www.torproject.org/getinvolved/mirrors.html.en
- update openssl requirements

Approved by:	makc, miwi (mentors, implicit)
2010-12-31 19:26:00 +00:00
Rene Ladan
b7d7206e33 Garbage-collect expired ports:
2010-12-30 databases/p5-sqlrelay: broken and upstream disapeared
2010-12-30 devel/php-dbg2: No upstream support
2010-12-30 dns/fourcdns: upstream has disapeared
2010-12-31 emulators/win4bsd: Development has ceased and distfile is no longer available
2010-12-31 french/mozilla-flp: www/seamonkey port is deprecated. Consider using the www/firefox-i18n.
2010-12-31 french/xtel: Minitel services will be discontinued at the end of 2010.
2010-12-30 ftp/ftpq: upstream has disapeared
2010-12-30 graphics/paintlib: does not compile with new tiff and no more maintained upstream
2010-12-30 graphics/g3dviewer: does not build with gcc 4.2, upstream disapeared
2010-12-30 lang/scriba: Does not compile with gcc 4.2+, looks like abandonware
2010-12-30 math/rascal: Broken on every arch since 2008, looks like an abandonware
2010-12-31 net-mgmt/nrg: Project has vanished. Use cacti instead.
2010-12-31 security/hostsentry: Project is dead.
2010-12-31 sysutils/kcube: Project has vanished
2010-12-31 www/cybercalendar: has been unmaintained since 2001 and is unusable with dates after 2010 (see ports/150974)
2010-12-31 www/flock: Flock 3 moves from Firefox to Chromium
2010-12-31 www/linux-flock: Flock 3 moves from Firefox to Chromium
2010-12-30 x11-clocks/xtu: Looks like abandonware

Leave java/tya in for now, as it has outstanding PRs.
2010-12-31 17:35:17 +00:00
Max Brazhnikov
ffae4b95f6 Update to 0.8.1 2010-12-31 15:20:54 +00:00
Roman Bogorodskiy
1842665597 - Update to 2.9
- Point WWW to libtasn1's own page at gnu.org
2010-12-31 13:07:24 +00:00
Philip M. Gollucci
b2bcd89986 - Fix a vi typo in the previous commit, line should have never changed.
Reported by:    pointyhat via pav
2010-12-30 23:11:59 +00:00
Koop Mast
54fda4dd20 Document webkit-gtk2 multiple vulnerabilities < 1.2.6.
Document some CVE's that didn't make it to release notes from older releases.
2010-12-30 17:13:32 +00:00
Alexander Logvinov
a9019a45d2 - Update to 0.4.7
- The libssh library is distributed under LGPL21 license
2010-12-30 03:13:02 +00:00
Philip M. Gollucci
116ec22ac1 - DISTNAME= ${PORTNAME}-${PORTVERSION} is the default and not needed.
PR:             ports/153292
Submitted by:   myself (pgollucci)
Tested by:      -exp run by pav
Approved by:    portmgr (pav)
2010-12-29 20:04:42 +00:00
Xin LI
ce797dd6db Document django multiple vulnerabilities. 2010-12-29 19:50:56 +00:00
Mark Linimon
1e7fac30a4 Reset krion@FreeBSD.org due to 6 months of inactivity and maintainer-
timeouts.

Hat:		portmgr
2010-12-28 08:11:16 +00:00
Remko Lodder
b2d6212f76 Add Drupal views plugin - Cross Site Scripting (XSS).
While here, improve previously added vuln entry by
following style a bit better.

PR:		153474
Submitted by:	rea
2010-12-28 06:34:32 +00:00
Mark Linimon
d46c2efac2 Reset ijliao@FreeBSD.org due to maintainer-timeouts and long absence.
We hope to see ijliao back again sometime.

Hat:		portmgr
2010-12-28 06:31:49 +00:00
Pav Lucistnik
725ff435f0 - Update to 5.9
- Add options for db backends

PR:		ports/152683
Submitted by:	Ruslan Mahmatkhanov <cvs-src@yandex.ru>
Approved by:	maintainer
2010-12-27 20:32:24 +00:00
Philip M. Gollucci
4fb90771b8 - Update to 1.1
- Remove MD5

PR:             ports/153397
Submitted by:   myself (pgollucci)
Approved by:    osho@pcc-software.org (maintainer)
Sponsored by:   RideCharge Inc. / TaxiMagic
2010-12-27 15:12:15 +00:00
Philip M. Gollucci
0604c5af00 - Update to 1.05
- Remove MD5

PR:             ports/153091
Submitted by:   myself (pgollucci)
Approved by:    maintainer timeout (tobez ; 15 days)
Changes:        http://search.cpan.org/dist/Crypt-OpenPGP/Changes
2010-12-27 14:58:06 +00:00
Philippe Audeoud
c2204536ea - Add forgotten INSTALL_TARGET to not append perllocal.pod 2010-12-27 14:28:17 +00:00
Alex Dupre
2c07ef369c Remove OpenSC support. This port should be updated to support PKCS#11. 2010-12-27 09:58:51 +00:00
Alex Dupre
0e89e724f1 Update OpenSC to 0.12.0 release. 2010-12-27 09:55:39 +00:00
Sunpoet Po-Chuan Hsieh
a32defea5d - Use canonical format for FreeBSD.org MAINTAINER addresses
- Remove obsolete MD5 checksum while I'm here

PR:		ports/152844
Submitted by:	sunpoet (myself)
Approved by:	miwi (with portmgr hat)
2010-12-25 16:55:41 +00:00
MANTANI Nobutaka
b65cfef8d1 Add log2timeline, a log file parser for computer forensic investigations. 2010-12-24 19:10:30 +00:00
MANTANI Nobutaka
b51cacefa9 Add ssdeep, a tool for computing context triggered piecewise hashes. 2010-12-24 18:50:05 +00:00
Wen Heping
4bd9ba0f3c - Update to 0.66
ChangeLog: http://cpansearch.perl.org/src/FLORA/Module-Signature-0.66/Changes
2010-12-24 07:07:54 +00:00
Bernhard Froehlich
1500219074 - Document redmine -- multiple vulnerabilities 2010-12-23 14:12:21 +00:00
Peter Pentchev
bc5522df11 Fix a segfault when using the -y option. While I'm here:
- remove the MD5 checksum from the distfile
- note upstream's BSD license
- OPTIONSify the support for CrackLib
- add a descriptive patch header to the existing patch-aa
- remove the packetstorm master site, it only seems to carry a much
  older version of apg
- bump PORTREVISION for the segfault fix

PR:		153382 (the segfault fix)
Submitted by:	David Boyd <David.Boyd@insightbb.com>
2010-12-23 10:54:46 +00:00
Philip M. Gollucci
80d4a2c1b9 - set some PORTSCOUT vars 2010-12-23 01:14:25 +00:00
Cy Schubert
e747dd0381 Update from 1.0 to 1.0.1. 2010-12-23 01:05:24 +00:00
Cy Schubert
4108064a78 Update from 1.8.3_2 to 1.9. 2010-12-23 01:04:41 +00:00
Doug Barton
54767cbda3 Update libassuan to version 2.0.1:
* Input and output notification handler can now really access the
  parsed fd as stated in the manual.

* Cleaned up the logging.

Bump PORTREVISION and libassuan version number in related ports
2010-12-22 19:16:12 +00:00
Mathieu Arnold
11aa096a9e This module allows to secure connections of POE::Wheel::ReadWrite with OpenSSL
by a POE::Filter object, and behaves (beside of SSLing) as POE::Filter::Stream.
2010-12-22 18:38:32 +00:00
Remko Lodder
7e1a2ca3e0 Add Tor remote crash and the possibility of remote code execution.
Submitted by:	Janne Snabb <snabb at epipe dot com>
2010-12-22 16:10:45 +00:00
Philippe Audeoud
789ee9ce97 - Update to 1.37
- Add IPV6 in OPTIONS
- Changelog: http://cpansearch.perl.org/src/SULLR/IO-Socket-SSL-1.37/Changes
2010-12-22 15:02:02 +00:00
Martin Wilke
17703da68b - Update to 0.2.1.28
PR:		153326
Submitted by:	Janne Snabb <snabb@epipe.com>
2010-12-21 06:45:08 +00:00
Martin Wilke
c62c6a2694 * Update comment to reflect that this is a php 4 only port.
* Update IGNORE_WITH_PHP to include php 5.2 as well as 5.3.
* Remove MD5 line from distinfo.

PR:		152904
Submitted by:	"Tom Judge" <tom@tomjudge.com>
2010-12-20 06:21:58 +00:00
Martin Wilke
517508fe4c - Update to 5.3a
PR:		153294
Submitted by:	Gerard Seibert <gerard@seibercom.net> (maintainer)
2010-12-20 05:41:04 +00:00
Philip M. Gollucci
1d3a44db09 Clean up ruby pkg-plists:
%%RUBY_SITEARCHLIBDIR%%
    %%RUBY_SITELIBDIR%%
    lib/ruby/site_ruby
    %%RUBY_VENDORARCHLIBDIR%%
    %%RUBY_VENDORLIBDIR%%
    lib/ruby/vendor_ruby
    lib/ruby

Above directories are owned by lang/ruby1[89] ports.

PR:         ports/153041
Tested by:  2-exp runs by pav
With Hat:   ruby@
2010-12-20 02:46:25 +00:00
MANTANI Nobutaka
953ff7e7c1 Update to 3.7. 2010-12-19 04:23:29 +00:00
Norikatsu Shigemura
72b2fd1028 o Add a important hack to tpmtoken_init(1).
o Bump PORTREVISION, accordingly.
2010-12-19 03:43:56 +00:00
Philip M. Gollucci
b296b59380 - Update to 0.72
With Hat:       perl@
Changes:        http://zxid.org/Changes
2010-12-17 20:16:37 +00:00
Philip M. Gollucci
5cc40b6e6b - Update to 0.22
- Remove MD5

With Hat:       perl@
Changes:        http://search.cpan.org/dist/Authen-Libwrap/Changes
2010-12-17 20:15:59 +00:00
Philip M. Gollucci
dd552493bf - Pass to perl@ 2010-12-17 20:14:56 +00:00
Joe Marcus Clarke
1f40097037 Update to 1.8.6. 2010-12-17 19:39:41 +00:00
Philip M. Gollucci
dbcdee59a1 - Mark MAKE_JOBS_UNSAFE
Reported by:    P6 TB
2010-12-17 19:22:18 +00:00
Wen Heping
f075fdf672 - Fix the build
Reported by:	QAT@
Approved by:	maintainer(implicity)
2010-12-17 06:31:35 +00:00
Xin LI
7b30ee30b5 Update to properly cover php52.
Noticed by:	Chris St Denis <chris smartt com>
2010-12-16 18:11:27 +00:00
Renato Botelho
5fd53e4b0f - On 0.96.5, clamav was leaving some zombie proccess of freshclam, fix it.
- Bump PORTREVISION

Submitted by:	Herbert J. Skuhra <h.skuhra@gmail.com>
Obtained from:	http://git.clamav.net/gitweb?p=clamav-devel.git;a=commitdiff;h=2e136dcd0d7c34dc742475529db022d80d0dde2e
		http://git.clamav.net/gitweb?p=clamav-devel.git;a=commitdiff;h=3c91587c8c894e898345086ef8e7a072fdf7b1bc
2010-12-16 17:43:46 +00:00
Greg Larkin
d87674b7ee - Chase libksba shlib version bump in directly-dependent ports
Reported by:		ale and others via private email
Another pointy to:	glarkin
2010-12-16 14:16:46 +00:00
Greg Larkin
afb4f48d31 - Chase security/libksba shlib version bump
Requested by:	kwm
Pointyhat to:	glarkin
2010-12-16 02:34:07 +00:00
Greg Larkin
e4965b022a - Document JavaScript injection exploits in Yahoo UI (YUI) library 2010-12-15 23:48:53 +00:00
Greg Larkin
8c33a678c7 - Updated to 1.1.0
- Bumped shlib version in pkg-plist to match upstream

Noteworthy changes in version 1.1.0 (2010-10-26)
------------------------------------------------

 * New functions to fix a leak in dirmngr.
 * Interface changes relative to the 1.0.0 release:
 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 ksba_reader_set_release_notify   NEW
 ksba_writer_set_release_notify   NEW

Reported by:	portscout via miwi
2010-12-15 23:14:20 +00:00
Cy Schubert
7903a1b181 Master sites update. 2010-12-15 21:02:52 +00:00
Alexey Dokuchaev
d67db6dec6 Update jumbo patch to version 9. 2010-12-15 14:41:40 +00:00
Alex Dupre
4999cef95b Fix s/JAVAJARDIR/JAVALIBDIR/. 2010-12-15 10:08:42 +00:00
Wen Heping
3e899f56c3 - Update to 5.50
ChangeLog: http://search.cpan.org/src/MSHELOR/Digest-SHA-5.50/Changes
2010-12-15 06:57:22 +00:00
Norikatsu Shigemura
3fc9cc9ed3 All cleanup done (PREFIX clean, permission clean), and bump PORTREVISION. 2010-12-14 22:49:47 +00:00
Alex Dupre
c9aac4cdc6 Add xml-security port: the Apache Java library for XML Signature and Encryption. 2010-12-14 15:29:43 +00:00
Wen Heping
4d879c2ef9 - Update to 2.5.1
PR:		ports/152169
Submitted by:	Marco Re <laza_bsd@laza.it>
Approved by:	maintainer(timeout, >30 days)
2010-12-14 00:41:09 +00:00
Xin LI
cc866cefeb Document PHP multiple vulnerabilities 2010-12-13 23:44:31 +00:00
Norikatsu Shigemura
4bc595b8cc o Fix start-up point before openssl clients like named, hastd, kerberos...
o Add required tpmd (ports/emulators/tpm-emulator).
o Bump PORTREVISION, accordingly.
2010-12-13 18:33:55 +00:00
Wesley Shields
094aa6f754 Update to 1.81b.
Whitespace fix.
Respect PREFIX != LOCALBASE.

PR:		ports/152763
Submitted by:	Ryan Steinmetz <rpsfa@rit.edu> (maintainer)
2010-12-13 00:37:58 +00:00
Wesley Shields
f127cb6576 Dont declare ${sancp_flags} in command_args.
Drop .sh extension from RC script.
Drop MD5 checksum from distinfo.
Switch from adding & removing users by hand to using USERS & GROUPS.
Dont remove data gathered by app on uninstall, notify user to do it manually
should they wish to.

PR:		ports/152225, ports/152226
Submitted by:	Sevan Janiyan <venture37@geeklan.co.uk>
Approved by:	pauls@utdallas.edu (maintainer timeout)
2010-12-13 00:23:32 +00:00
Pav Lucistnik
30d550580d - Mark BROKEN: does not compile
Reported by:	pointyhat
2010-12-13 00:11:29 +00:00
Philip M. Gollucci
f4bf3d23a3 - Pass to perl@ 2010-12-12 21:34:18 +00:00
Norikatsu Shigemura
a236e52e9b Fix build error WITH_EMULATOR. 2010-12-12 16:20:52 +00:00
Philip M. Gollucci
bcfb2fbd8c - Fix build with gcc 4.2 on amd64
Note, this might fix sparc64 too but I can't test it
- Bump PORTREVISION

PR:             ports/152333
Submitted by:   Peter Klett <peter@netkey.at>
Approved by:    maintainer timeout (mbr ; 24 days)
2010-12-12 01:08:05 +00:00
Erwin Lansing
2cea147a1f Mark BROKEN on HEAD: does not build. 2010-12-11 08:19:58 +00:00
Josh Paetzel
a9d7ea8c50 Update to latest snapshot.
PR:	ports/152992
Submitted by:	Eric F Crist <ecrist@secure-computing.net>
Sponsored by:	ClaimLynx, Inc
2010-12-10 15:04:29 +00:00
Beat Gaetzi
17a0039c11 - Document mozilla -- multiple vulnerabilities 2010-12-10 11:48:30 +00:00
Stanislav Sedov
3f94eeab07 - Document recent MIT krb5 checksum handling vulnerabilities. 2010-12-10 01:02:04 +00:00
Philippe Audeoud
47994997d6 - Really give maintainership to Sofian Brabez.
Pointyhat to:	jadawin@ (myself)
2010-12-09 16:03:03 +00:00
Erwin Lansing
647a84faac Revert rev 1.18 to fix installation location
PR:		152039 (different solution than in the PR)
Submitted by:	YAMASHIRO Jun <yamajun@ofug.net>
Approved by:	maintainer
2010-12-09 08:15:52 +00:00
Cheng-Lung Sung
07a7883c8d - add IPv6 option
PR:		ports/152009
Submitted by:	Trond Endrestøl <Trond dot Endrestol_AT_ximalas dot info>
2010-12-09 01:36:35 +00:00
Philip M. Gollucci
27bb2d0676 - Mark BROKEN on amd64
PR:             ports/150283
Reported by:    J. Porter Clark <j;porter.clark@nasa.gov;;>
Approved by:    maintainer timeout (andrew@scoop.co.nz ; 93 days)
2010-12-08 23:51:07 +00:00
Brooks Davis
3328e736fa Move to the new distribution site on googlecode and upgrade to 2.1.1. 2010-12-08 23:46:28 +00:00
Philip M. Gollucci
d543f501a3 - Fix dependency versions 2010-12-08 20:49:38 +00:00
Cy Schubert
ce068eda08 Update 4.0.1 --> 4.1.3 2010-12-07 20:20:32 +00:00
Mark Linimon
0b69b1da88 With portmgr hat, reassign some ports from clsung to perl, since clsung
is apparently having some trouble with email.
2010-12-07 19:35:25 +00:00
Rene Ladan
9a65b62874 Document the known vulnerabilities for www/chromium.
The [numbers] in the entry represent bug numbers which are clickable at
the referenced site, but most of them give a 403.
2010-12-07 18:02:47 +00:00
Philippe Audeoud
68ad110df4 - Update to 1.35
- Changelog: http://cpansearch.perl.org/src/SULLR/IO-Socket-SSL-1.35/Changes
2010-12-07 09:04:47 +00:00
Alexander Logvinov
515ad9a3e6 - Install a static version of the library [1]
- Fix slow response in Remmina SSH [2]
- Remove MD5 checksum from distinfo

PR:		ports/151653 [1]
Submitted by:	Ronald F.Guilmette <rfg AT tristatelogic.com> [1]
Obtained from:	libssh git [2]
2010-12-05 06:02:49 +00:00
Rene Ladan
54c312bfe6 Garbage collect old ports:
2010-11-15 archivers/linux-par2cmdline: Native version available
2010-11-15 audio/bmp-musepack: does not build with audio/musepack
2010-11-15 audio/libmpcdec: superseded by audio/musepack
2010-11-15 audio/py-musepack: does not build with audio/musepack
2010-12-01 chinese/chinput3: Development has ceased.
2010-12-01 emulators/dynagen-devel: Please install emulators/dynagen instead
2010-11-24 net-p2p/gift-fasttrack: unmaintained upstream
2010-11-24 net-p2p/gift-gnutella: unmaintained upstream
2010-11-24 net-p2p/gift-openft: unmaintained upstream
2010-11-24 net-p2p/pyslsk: unmantained upstream, use net-p2p/nicotine-plus
2010-11-11 security/pamsfs: SFS is dead, this project is dead, and site is gone
2010-11-10 www/p5-Catalyst-Plugin-CommandLine: The module is not needed any more. With new Catalyst (at least 5.7014) it works out of the box.
2010-12-04 21:32:34 +00:00
Ade Lovett
4a8684e352 Sync to new bsd.autotools.mk 2010-12-04 07:34:27 +00:00
Sergey A. Osokin
72ac285804 Document ProFTPD compromised source packages backdoor security issue. 2010-12-04 04:29:19 +00:00
Josh Paetzel
4b09b666e5 Update to latest version
PR:	ports/152811
Submitted by:	Eric F Crist <ecrist@secure-computing.net>
Sponsored by:	ClaimLynx, Inc
2010-12-03 20:42:41 +00:00
Koop Mast
781d5f003b Unbreak the build when the SNORTSAM option is selected.
Change a manual build depend line on automake110 (which is dead)
to a autotools line.

PR:		ports/152171
Submitted by:	"Tom Judge" <tom@tomjudge.com>
Approved by:	maintainer timeout (clsung, 21 days)
2010-12-03 18:54:33 +00:00
Dirk Meyer
873ef5333e - Security update to 1.0.0c
Security: http://openssl.org/news/secadv_20101202.txt
Security: CVE-2010-4180
2010-12-03 15:19:01 +00:00
Max Brazhnikov
7425aa5977 KDE FreeBSD team presents KDE SC 4.5.4. 2010-12-02 21:12:38 +00:00
Josh Paetzel
de0eaeceec Add OPTIONS.
Reassign MAINTAINER.

PR:	ports/152761
Submitted by:	Tom Judge <tom@tomjudge.com>
2010-12-02 17:07:13 +00:00
Philippe Audeoud
52f1382851 - Update to 1.0-rc4
PR:		ports/152417
Submitted by:	Sofian Brabez <sbrabez AT gmail.com>
2010-12-02 10:15:10 +00:00
Philippe Audeoud
d94173d370 - Update to 1.3.8
- Submitter is now maintainer

PR:		ports/152607
Submitted by:	Sofian Brabez <sbrabez AT gmail.com>
2010-12-02 08:42:37 +00:00
Cy Schubert
13b6797ec5 Fix security vulnerabilities CVE-2010-1324, CVE-2010-1323, CVE-2010-4020,
CVE-2010-4021, and CVE-2010-1322.

PR:		152755
Submitted by:	wollman
Security:	CVE-2010-1324, CVE-2010-1323, CVE-2010-4020, CVE-2010-4021,
		and CVE-2010-1322.
Feature safe:	Yes
2010-12-02 02:09:23 +00:00
Mark Linimon
a982e2cbd7 Reset hideo@lastamericanempire.com due to maintainer-timeouts and no
response to email.

Hat:		portmgr
2010-12-02 00:04:47 +00:00
Renato Botelho
ddf00fcd53 Update to 0.96.5 2010-12-01 11:46:30 +00:00
Wen Heping
1229a64ff8 - Update to 1.02
Changelog: http://search.cpan.org/src/MLEHMANN/Crypt-Twofish2-1.02/Changes
2010-12-01 07:09:02 +00:00
Sunpoet Po-Chuan Hsieh
58ed65d4a0 - Document phpMyAdmin XSS attack in database search 2010-11-30 03:00:12 +00:00
Sunpoet Po-Chuan Hsieh
9fd6f32ebb - Add LICENSE
- Remove obsolete MD5 sum
- Update WWW

PR:		ports/152623
Submitted by:	Toni Viemero <toni.viemero@iki.fi> (maintainer)
2010-11-27 20:47:03 +00:00
Sahil Tandon
d80c10291a Add a patch to fix quarantine summary in overview. Also
make a note in pkg-message that PHP's short_open_tag
boolean should be true for proper operation of MailZu.
While here, remove MD5 checksum from distinfo.

Bump PORTREVISION as this affects the package.

PR:		ports/152540
Submitted by:	Michael Ranner <michael@ranner.eu>
2010-11-27 06:48:59 +00:00
Wesley Shields
edc2e088ca Document net/isc-dhcp41-server DHCPv6 DoS. The update to the port is coming
shortly.
2010-11-24 18:27:03 +00:00
Norikatsu Shigemura
50fd51edcb Fix pkg-plist, so bump PORTREVISION.
Pointed out by:		QAT
2010-11-24 17:53:12 +00:00
Hajimu UMEMOTO
d6b31373b0 - Remove KERBEROS4 option which depends on a removed port
(security/krb4)
- Use dirrmtry on PREFIX/lib/sasl2 where configurations may stay
- Remove MD5 in distinfo

PR:		ports/152261
Submitted by:	sunpoet
2010-11-24 11:48:14 +00:00
Baptiste Daroussin
981c58316a - update to 1.7.9 2010-11-24 09:45:28 +00:00
Alexey Dokuchaev
66b5b71a45 Add entry for CVE-2010-4168: denial of service (server/client) via invalid
read in OpenTTD.

PR:		ports/152529
Submitted by:	kwm
2010-11-24 06:07:01 +00:00
Alexey Dokuchaev
b39cf9835e - Kill EOL whitespace and reformat to fit in standard terminal width better
- Clean up the way <p>...</p> tags are used throughout the file for consistency
2010-11-24 04:54:24 +00:00
Olli Hauer
9841921ab7 - mark port deprecated
- expiration date: 2010-12-31

   Project is dead.

PR:		152492
Submitted by:	Michael Ranner <michael _at_ ranner.eu> (maintainer)
2010-11-23 23:07:22 +00:00
Thierry Thomas
b14d49a80c Add an entry for www/horde-base VCARD attachments XSS vulnerability.
Security:	VuXML: a3314314-f731-11df-a757-0011098ad87f
2010-11-23 19:02:12 +00:00
Norikatsu Shigemura
584b09ea0b Remove a extra directory and file, and bump PORTREVISION.
Pointed out by:		QAT
2010-11-23 17:43:55 +00:00
Simon L. B. Nielsen
080a8fb7e4 Fix discovery date in last entry.
Pointy hat to:	remko
2010-11-23 17:42:24 +00:00
Remko Lodder
9cdf36a2e6 Add proftpd remote root vulnerability.
Based on:	Vladimir Nikolic <vladimir dot nikolic at amis dot net>
Feature proof:	yes
With hat:	secteam
2010-11-23 16:38:51 +00:00
Norikatsu Shigemura
5a635ec465 o Don't run-autotools-*, twice.
o Don't install extra init.d script. [1]
o Bump PORTREVISION, accordingly.

Pointed out by:		ume [1]
2010-11-23 13:42:11 +00:00
Norikatsu Shigemura
81e012c621 Build static library.
Pointed out by:		QAT and pointyhat via pav/edwin
2010-11-23 11:56:40 +00:00
Philip M. Gollucci
4e573db137 Update some more outdated pkg-descr WWW lines
With Hat:       ruby@
Sponsored by:   RideCharge Inc. / TaxiMagic
2010-11-23 04:49:14 +00:00
Koop Mast
5965f9f37a Fix another depricated gtk+ symbol. This will allow libgnomesu to build again.
Submitted by:	pointyhat via pav
2010-11-22 18:26:06 +00:00
Sahil Tandon
115ab42446 - Update to 5.3
- Define LICENSE
- Remove redundant MANCOMPRESSED=no
- Use ${ETCDIR} where possible

PR:		ports/152243
Submitted by:	Gerard Seibert <gerard@seibercom.net> (maintainer)
2010-11-22 00:22:47 +00:00
Rene Ladan
2e5b524b0c - Fix optional dependency on security/heimdal
- Bump PORTREVISION
PR:		ports/152029
Submitted by:	Joerg Pulz [Joerg.Pulz frm2.tum.de]
Approved by:	Ryan Steinmetz <rpsfa@rit.edu> (maintainer of net/freeradius*)
		girgen (maintainer of databases/postgresql*-server,
		        14 day timeout)
2010-11-21 23:48:49 +00:00
Norikatsu Shigemura
bd62e67cee UnBROKEN.
o Add implicit dependency on pkg-config.
o Don't run-autotools-*, twice.
2010-11-21 16:52:45 +00:00
Norikatsu Shigemura
5099536eee Fix crash of RSA key generator. 2010-11-20 22:17:27 +00:00
Koop Mast
3680f27ebf Presenting GNOME 2.32.1 for FreeBSD. The offical release notes for this
release can be found at http://library.gnome.org/misc/release-notes/2.32/

This will be the last release of the GNOME 2.x series, mainly a bugfix and
bridge release to the first release of the GNOME 3.x series.

This release features commits by avl, marcus, mezz and myself.

The FreeBSD GNOME Team would like to thank the following contributors and
testers for there help with this release:

Zane C.B. <vvelox@vvelox.net>
romain@
Olaf Seibert <O.Seibert@cs.ru.nl>
DomiX
Bapt <baptiste.daroussin@gmail.com>
jsa@
miwi@
Sergio de Almeida Lenzi <lenzi.sergio@gmail.com>
Maxim Samsonov <xors@mne.ru>
Kris Moore

And pav@ for 2 exp-runs

PR:		ports/152255
		ports/143260
		ports/141033
		ports/149629
		ports/150350
		ports/151523
With hat:	gnome@
2010-11-20 15:37:08 +00:00
Pav Lucistnik
12c3d91bc6 - Try creatively to prevent this from failing on pointyhat
Reported by:	pointyhat
2010-11-19 22:30:53 +00:00
Jun Kuriyama
b24c09714b - Fix WITH_SUID_GPG knob.
PR:		152359
Submitted by:	sunpoet
2010-11-19 03:34:08 +00:00
Tilman Keskinoz
d13dfa4521 Don't install .orig file
Submitted by:	QAT
2010-11-18 13:01:22 +00:00
Tilman Keskinoz
c3d27c7a8d The configure check for perl version did not work with perl 5.12.
While here mark MAKE_JOBS_UNSAFE

PR:		152038
2010-11-18 12:48:20 +00:00
Ganael LAPLANCHE
681540da02 - Add missing LICENSE
- Remove license text from installed documents
- Improve PORTDOCS handling

Approved by:	ehaupt (mentor)
2010-11-18 09:12:41 +00:00
Sunpoet Po-Chuan Hsieh
d9c774be1c - Update to 0.70
- Add MASTER_SITES: CPAN
- Add LICENSE while I'm here
- Add CPAN URL to pkg-descr

PR:		ports/152329
Submitted by:	Gea-Suan Lin <gslin@gslin.org>
2010-11-18 00:51:41 +00:00
David Thiel
78a9720df1 Update to 2.8.1. Bugfixes, IPv6. 2010-11-17 23:24:37 +00:00
Pav Lucistnik
a9ef724386 - Mark BROKEN: does not configure
Reported by:	pointyhat
2010-11-17 21:03:01 +00:00
Dirk Meyer
95520228fb - add security/openssl CVE-2010-3864 2010-11-17 11:09:34 +00:00
Dirk Meyer
04985871ca - Security update to 1.0.0b
Security: http://openssl.org/news/secadv_20101116.txt
Security: CVE-2010-3864

PR:		152312
Submitted by:	Alexander Wittig

- Fix regression in TLS handling
Obtained from:	http://cvs.openssl.org/chngview?cn=19998
2010-11-17 10:35:00 +00:00
Roman Bogorodskiy
77d0e481b5 Update to 1.10. 2010-11-16 05:02:14 +00:00
Rene Ladan
c7bce935a7 Add the 'gss_pname_to_uid' function to libgssapi.
This function is obtained from the FreeBSD base libgssapi code.

Whith this function added to the port, it is possible to buildworld
FreeBSD fully against the port.
FYI: Patches for CURRENT and 8-STABLE src/ are here:
ftp://ftp.frm2.tum.de/pub/jpulz/FreeBSD/patches/CURRENT_use_kerberos_port.patch
ftp://ftp.frm2.tum.de/pub/jpulz/FreeBSD/patches/8-STABLE_use_kerberos_port.patch

PR:		ports/152030
Submitted by:	maintainer
2010-11-14 15:35:49 +00:00
TAKATSU Tomonari
788ee72293 - Fix typo 2010-11-14 07:48:13 +00:00
TAKATSU Tomonari
df91af9d1f - Add a new port: security/rubygem-roauth
A simple OAuth library that supports OAuth header signing, and header verifying.

  WWW:	http://github.com/maccman/roauth
2010-11-14 07:28:47 +00:00
Yen-Ming Lee
8bdf836061 - update to 0.20 2010-11-12 06:00:28 +00:00
Wen Heping
18fa6c32d3 - Update to 0.5
PR:		ports/152086
Submitted by:	Douglas William Thrift <douglas@douglasthrift.net> (maintainer)
2010-11-11 11:57:40 +00:00
Philip M. Gollucci
60ca7e308f - github is redirecting all these to https now 2010-11-11 03:22:25 +00:00
Matthias Andree
d63defe9f9 Switch to XZ distribution format. 2010-11-09 20:25:58 +00:00
Christian Weisgerber
dab3be2b8b Increment PORTREVISION after liblzma major version change in archivers/xz. 2010-11-09 18:58:25 +00:00
Matthias Andree
39ffd6b702 Update to new upstream release 2.1.4.
Update MASTER_SITES.

Submitted by: Eric F. Crist <ecrist@secure-computing.net>
PR: ports/151962
2010-11-09 18:55:56 +00:00
Johan van Selst
e8c4ea2337 Remove BROKEN: This is now okay after the fix in security/xmlsec1
PR:		ports/152070
Submitted by:	Tom Judge <tom@tomjudge.com>
2010-11-09 17:56:56 +00:00
Johan van Selst
3fd387203d Fix quoting in installed *.pc (pkg-config) files.
This should fix security/lasso as well.
Upstream bug report: https://bugzilla.gnome.org/show_bug.cgi?id=631258

PR:		ports/152070
Submitted by:	Tom Judge <tom@tomjudge.com>
2010-11-09 17:45:20 +00:00
Philippe Audeoud
c0f9103c38 - Update to 0.19
- Changelog: http://cpansearch.perl.org/src/MANOWAR/RadiusPerl-0.19/Changes
2010-11-09 15:16:49 +00:00
Pav Lucistnik
a29b495a14 - Update to 5.8
PR:		ports/151699
Submitted by:	Ruslan Mahmatkhanov <cvs-src@yandex.ru>
Approved by:	Laurent LEVIER <llevier@argosnet.com> (maintainer)
2010-11-08 18:45:02 +00:00
Pav Lucistnik
4d2a2473c9 - Update to 0.7
PR:		ports/151955
Submitted by:	Matthew Donovan <kitchetech@gmail.com> (maintainer)
2010-11-08 16:13:28 +00:00
Baptiste Daroussin
b7eec40fb2 Forgot to commit the plist modification
Reported by:	QAT
2010-11-08 16:01:13 +00:00
Baptiste Daroussin
9d3f356cfb - Update to 20101107 2010-11-08 15:51:40 +00:00
Alberto Villa
dae276a143 - Remove nonexistent directories from plist.
Approved by:	tabthorpe (mentor, implicit)
2010-11-08 14:21:31 +00:00
Renato Botelho
8836830484 Remove expired ports:
2010-11-07 devel/libisc: Unlikely to be used...
2010-11-08 emulators/vmware-guestd3: Depends of misc/compat3x, that is deprecated and set to be removed
2010-11-08 emulators/vmware-tools3: Depends of misc/compat3x, that is deprecated and set to be removed
2010-10-08 misc/compat3x: "Only FreeBSD 6.4+ are supported in ports"
2010-11-08 misc/bidwatcher: Obsoleted by JBidwatcher and changes at http://ebay.com
2010-11-08 security/vscan: Depends of misc/compat3x, that is deprecated and set to be removed
2010-11-08 www/ssserver: Depends of misc/compat3x, that is deprecated and set to be removed
2010-11-08 10:08:47 +00:00
Norikatsu Shigemura
9fa2c89a50 Fix build dependency on automake.
Reported by:	QAT
2010-11-07 12:39:09 +00:00
Norikatsu Shigemura
b92c85dec0 Fix dependency on tpm-emulator.
Pointy hat to:	myself
2010-11-07 12:17:28 +00:00
Norikatsu Shigemura
b9daf85bc7 Add openssl_tpm_engine 0.4.1, is a OpenSSL TPM engine.
Obtained from:	http://bsssd.sourceforge.net/
2010-11-07 12:11:13 +00:00
Norikatsu Shigemura
5121d69533 Add tpm-tools 1.3.5, provides a basic set of TPM tools.
Obtained from:	http://bsssd.sourceforge.net/
2010-11-07 12:10:03 +00:00
Norikatsu Shigemura
c38e52a3c0 Add opencryptoki 2.3.2, is an open PKCS#11 implementation library.
Obtained from:	http://bsssd.sourceforge.net/
2010-11-07 12:07:17 +00:00
Norikatsu Shigemura
7612f38ced Add trousers 0.3.6, is a CPL (Common Public License) licensed Trusted
Computing Software Stack.  It is mostly compliant with the TSS 1.2
specification.

Obtained from:	http://bsssd.sourceforge.net/
2010-11-07 12:05:27 +00:00
Juergen Lock
a3731df72a - Update to 10.1r102 resp. 9.0r289.
- Drop MD5 hashes from distinfos

Security:	http://www.freebsd.org/ports/portaudit/76b597e4-e9c6-11df-9e10-001b2134ef46.html
Reported by:	Matthias Apitz on -emulation
2010-11-06 17:55:52 +00:00
Alexey Dokuchaev
f5fa43759c - Update jumbo patch to version 7
- Drop MD5 hashes from distinfo

Reported by:	sat
2010-11-06 13:33:56 +00:00
Xin LI
4702e40767 Add wireshark CVE-2010-3445.
PR:		ports/151891
Submitted by:	Eygene Ryabinkin
2010-11-06 04:08:59 +00:00
Cy Schubert
012121ed27 Update 4.2 --> 4.3 2010-11-05 03:45:18 +00:00
Martin Wilke
ef2d1243e0 - Update to 1.3.4 2010-11-04 10:01:44 +00:00
Martin Wilke
0925ee6a91 - Update to 1.0.3 2010-11-04 10:01:41 +00:00
Philippe Audeoud
513b9f28f5 - Update to 0.11
PR:		ports/151885
Submitted by:	Sofian Brabez <sbrabez AT gmail.com> (maintainer)
2010-11-04 08:14:40 +00:00
Cy Schubert
812ec0d220 Enable ksu DEBUG (-D) flag. 2010-11-04 04:37:36 +00:00
Sunpoet Po-Chuan Hsieh
5d593e5912 - Limit affected version of dovecot to 1.2.* before 1.2.8
(vid: 30211c45-e52a-11de-b5cd-00e0815b8da8)

Reported by:	Adam McDougall <mcdouga9@egr.msu.edu>
Reference:	http://www.dovecot.org/list/dovecot-news/2009-November/000143.html
2010-11-04 01:50:23 +00:00
Wen Heping
6184d85789 - Update to 1.8.11
- Use PLIST_FILES instead of pkg-plist

PR:		ports/151909
Submitted by:	Lapo Luchini <lapo@lapo.it> (maintainer)
2010-11-04 01:03:29 +00:00
Wesley Shields
40c91eecca Document mailman XSS.
PR:		ports/151918
Submitted by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
2010-11-03 20:29:56 +00:00