Commit graph

15945 commits

Author SHA1 Message Date
Carlo Strub
72c588bf15 Add official mirror and use official tarball since it was released recently
Approved by:	glarkin@ (mentor, implicit)
Feature safe:	yes
2012-03-13 14:48:08 +00:00
Ryan Steinmetz
4c32cf7707 - Do not overwrite files from devel/libhtp [1]
- Do not overwrite customized config files [1]
- Optionally depend on libpcap from ports (off by default) [1]
- Detect and use gcc hardening options by default
- Cleanup language/whitespace
- Bump PORTREVISION

PR:		ports/164237 [1]
Submitted by:	Geoffroy Desvernay <dgeo@centrale-marseille.fr> [1]
Feature safe:	yes
2012-03-13 12:04:26 +00:00
Koop Mast
e4ba89db1d Do proper input validation for libXfont. This is for CVE-2011-2895.
Feature safe:	yes
2012-03-13 09:37:28 +00:00
Carlo Strub
0dae17c430 Update to 0.1.1 (and bump PORTEPOCH)
Approved by:	glarkin@ (mentor, implicit)
Feature safe:	yes
2012-03-12 22:34:36 +00:00
Ryan Steinmetz
fd299125d2 - Fix IPv6 OPTIONS support
- Do not bump PORTREVISION

Reported by:	scheidell@
Feature safe:	yes
2012-03-12 10:03:37 +00:00
Kevin Lo
3d6a97a9a8 - Add missing dependency on py-pycrypto
- Bump PORTREVISION

Feature safe:	yes
2012-03-12 07:46:07 +00:00
Wesley Shields
5bc12cbf97 Typo fix.
Feature safe:	yes
2012-03-12 02:23:58 +00:00
Simon L. B. Nielsen
8659bcc60f - Document portaudit -- auditfile remote code execution.
- Update (c) year.

Feature safe:	yes
2012-03-11 21:37:42 +00:00
Ryan Steinmetz
d391588c75 - Do not install examples whenever NOPORTEXAMPLES is defined [1]
- Do not install duplicate sample config files
- Do not bump PORTREVISION

PR:		ports/165800 [1]
Submitted by:	Michael Scheidell <scheidell@FreeBSD.org> [1]
Feature safe:	yes
2012-03-11 19:26:45 +00:00
Wesley Shields
00071a3c04 Appease the tidy target. ;)
Feature safe:	yes
2012-03-11 16:07:58 +00:00
Rene Ladan
6f56c36e73 Document vulnerabilities in www/chromium < 17.0.963.79
Security:	CVE-2011-3047
Feature safe:	yes
2012-03-11 11:16:48 +00:00
Jun Kuriyama
5e3a340af9 - Upgrade to 0.10.
Feature safe:	yes
2012-03-11 09:15:38 +00:00
Ruslan Makhmatkhanov
5f1c531586 - update to 0.9
- install license via LICENSE framework, not manually
- strict python versions
- drop py-psyco dependency (also suggested at [1]), because it will work
  only with python < 2.6 (EOL versions only)

PR:		165902 [1]
Submitted by:	antoine [1]
Feature safe:	yes
2012-03-10 20:53:18 +00:00
Olli Hauer
20458e3715 - adjust FreeBSD version provuded by snort-rules
( pulledpork bug id:110)
- fix SSL download
- remove check for perl < 501000
- portlint

Feature safe:	yes
2012-03-10 20:46:26 +00:00
Ryan Steinmetz
120a30a80d - Do not install examples whenever NOPORTEXAMPLES is defined [1]
- Do not install duplicate sample config files
- Do not bump PORTREVISION

PR:		ports/165800 [1]
Submitted by:	Michael Scheidell <scheidell@FreeBSD.org> [1]
Feature safe:	yes
2012-03-10 16:48:22 +00:00
Renato Botelho
9dd0f4b923 Update to 20120305
Feature safe:	yes
2012-03-10 14:54:34 +00:00
Ryan Steinmetz
6c63f314ca - Add security/sudo to RUN_DEPENDS
- Do not bump PORTREVISION

PR:		ports/165755
Submitted by:	Olivier Cochard-Labbé <olivier@cochard.me>
Feature safe:	yes
2012-03-10 12:39:27 +00:00
Olli Hauer
a638ec23f1 - update to version 5.61TEST5
small snippet from changelog:
 http://nmap.org/changelog.html

 o Integrated all of your IPv4 OS fingerprint submissions since June 2011 (about 1,900 of them)
   Added about 256 new fingerprints (total 3,572)
 o Integrated all of your service/version detection fingerprints submitted since November 2010
   (signature count increased to 7,423)
 o Integrated your latest IPv6 OS submissions and corrections
 o [NSE] Added 43(!) NSE scripts, bringing the total up to 340
 o [NSE] Added 14 new protocol libraries
 o [CPE] (Common Platform Enumeration) OS classification is now supported for IPv6 OS detection
 o Added a new --script-args-file option
 o [NSE] Added support for decoding EIGRP broadcasts from Cisco routers to broadcast-listener
 o [NSE] Added redirect support to the http library
 o Update to the latest MAC address prefix assignments from IEEE as of March 8, 2012

Test builds sponsored by redports.org

Feature safe: yes
2012-03-10 12:31:25 +00:00
Sahil Tandon
55642cf2bf - Update to 1.35
Feature safe:	yes
2012-03-10 04:11:45 +00:00
Eitan Adler
de4af32152 Fix formatting so that "make tidy" passes
Feature safe:	yes
2012-03-10 01:47:32 +00:00
Eitan Adler
c5ec397d35 Document the latest flash player vulnerabilities
Reviewed by:	nox
Feature safe:	yes
2012-03-10 01:45:51 +00:00
Steve Wills
9b4c2c30b2 - Avoid use of SITE_PERL in DEPENDS
- Sort DEPENDS
- Add TEST_DEPENDS to enable testing

Feature safe:	yes
2012-03-09 21:09:08 +00:00
Steve Wills
80f1b4b0ed Perl Crypto Extention to OpenSSL
WWW:	http://search.cpan.org/dist/OpenCA-OpenSSL/
Feature safe:	yes
2012-03-09 19:55:35 +00:00
Steve Wills
019c0460b1 Perl extension for handling X509 Certificates
WWW:	http://search.cpan.org/dist/OpenCA-X509/

Feature safe:	yes
2012-03-09 19:30:46 +00:00
Philippe Audeoud
41fb37c54e - Update to 1.59
- Changelog: http://cpansearch.perl.org/src/SULLR/IO-Socket-SSL-1.59/Changes

Feature safe:	yes
2012-03-09 16:19:41 +00:00
Rene Ladan
ff109a4a44 Mark chromium < 17.0.963.78 as vulnerable.
Security:	CVE-2011-3046
Feature safe:	yes
2012-03-09 10:03:54 +00:00
Steve Wills
0e1d038bc9 - Add TEST_DEPENDS to enable testing
Approved by:	portmgr (blanket)
2012-03-08 23:18:06 +00:00
Chris Rees
321de69c46 Update to 1.3.2
PR:		ports/165854
Submitted by:	Jaap Akkerhuis <jaap@NLnetLabs.nl> (maintainer)
2012-03-08 21:24:18 +00:00
Philip M. Gollucci
2cf4c1e2c8 - Remove ports that only work with < perl 5.12 (devel/p5-B-Size, devel/p5-Devel-Arena)
- Remove conditionals for PERL_LEVEL < 501200
- Remove regression-test targets b/c this will be centralized in Mk/bsd.perl.mk
- Other minor cleanups
  RUN_DEPENDS = ${BUILD_DEPENDS} -> RUN_DEPENDS:= ${BUILD_DEPENDS}

PR:             ports/165605
Submitted by:   pgollucci (myself)
Approved by:    portmgr (linimon)
Exp Run by:     linimon
Tested by:      make index
2012-03-08 18:45:38 +00:00
Steve Wills
414c2f5806 - Include BUILD_DEPENDS as well as RUN_DEPENDS since the module seems to
hard code the paths to the pgp/gpg at build time
- Switch to gpg as default since tests fail on 64bit with pgp for me and
  more folks are likely to have gpg already installed since it seems more
  common these days
2012-03-08 15:40:53 +00:00
Sunpoet Po-Chuan Hsieh
c401538bea - Fix build with curl 7.24.0: curl/types.h was removed (unused since Apr 2004)
Submitted by:	sunpoet (myself)
Tested by:	exp-run by linimon
Approved by:	linimon (with portmgr hat)
2012-03-08 08:04:10 +00:00
Li-Wen Hsu
ff7e1deed2 Document jenkins XSS vulnerability.
Submitted by:	Gersom van de Bunt <gersom.vandebunt@pine.nl>
2012-03-07 18:44:29 +00:00
Steve Wills
e988ea0af6 - Add TEST_DEPENDS to enable testing
Approved by:	portmgr (blanket)
2012-03-07 14:40:29 +00:00
Steve Wills
765948fc78 - Add missing BUILD_DEPENDS and RUN_DEPENDS
- Pet portlint by moving LICENSE up
- Bump PORTREVISION due to RUN_DEPENDS changing causing package to change

PR:		ports/165741
Approved by:	Dereckson <dereckson@gmail.com> (maintainer)
2012-03-06 03:32:03 +00:00
Rene Ladan
aa212da18b Add new vulnerabilities for www/chromium < 17.0.963.65
Obtained from:	http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security:	CVE-2011-[3031-3044]
2012-03-05 18:16:18 +00:00
Florian Smeets
692b81883c Update to 3.13.3 2012-03-05 17:00:58 +00:00
Philippe Audeoud
4e9082fd62 - Update to 1.58
- Changelog: http://cpansearch.perl.org/src/SULLR/IO-Socket-SSL-1.58/Changes
2012-03-05 15:42:36 +00:00
Alex Kozlov
334afe85b0 Document dropbear security issue
Approved by:	eadler (mentor)
2012-03-04 23:07:08 +00:00
Alex Kozlov
286e4ef4d4 Update to 2012.55
- fix arbitrary code execution (CVE-2012-0920)

Approved by:	eadler (mentor)
2012-03-04 21:20:55 +00:00
Wesley Shields
00edd6849b Whitespace cleanup and stick to ASCII in recent openx entry. 2012-03-04 01:00:33 +00:00
Eitan Adler
62e14eca21 security/blocksshd: security/sshguard is more active and a better tool.
2011-11-26 net/p5-Net-Subnets: Disappeared from CPAN

Approved by:	maintainer (implicit)
2012-03-03 20:21:17 +00:00
Brendan Fabeny
2dbc7784bc update math/R to 2.14.2, and adjust dependent ports 2012-03-03 16:59:36 +00:00
Martin Matuska
8becf0813d Update to 1.1.1 2012-03-03 14:54:38 +00:00
Martin Matuska
c0a3fc90f4 Update to 1.0.5 2012-03-03 14:54:30 +00:00
Alex Kozlov
7ca108f3bd Update maintainer email in my ports
Approved by:	eadler (mentor)
2012-03-02 23:43:45 +00:00
Pav Lucistnik
b1e2bf8464 - Mark BROKEN: fails to install
install: /usr/ports/security/nacl/work/nacl-20110221/build/jail-31/bin/nacl-sha256: No such file or directory

Reported by:	pointyhat
2012-03-02 21:40:40 +00:00
Pav Lucistnik
5e2b42b46e - Chase libarchive shlib bump
Reported by:	pointyhat
Pointy hat to:	glewis
2012-03-02 21:37:00 +00:00
Jason Helfman
8539f60185 document latest openx security issue
PR:	ports/165613
2012-03-02 21:32:37 +00:00
Florian Smeets
89b7029586 Just overwrite the link if it still exists. That way we are sure that the link
points to the correct file and there is no reason trying to protect the link as
it would be deleted on deinstall anyway.

Suggested by:	dougb
2012-03-02 19:53:35 +00:00
Jason Helfman
5a9f87b5a3 -Update to 0.8
* Mac OS X keyring backend now uses subprocess calls to the `security`
command instead of calling the API, which with the latest updates, no
longer allows Python to invoke from a virtualenv. Fixes issue #13.
* When using file-based storage, the keyring files are no longer stored
in the user's home directory, but are instead stored in platform-friendly
locations (`%localappdata%\Python Keyring` on Windows and according to
the freedesktop.org Base Dir Specification
(`$XDG_DATA_HOME/python_keyring` or `$HOME/.local/share/python_keyring`)
on other operating systems). This fixes #21.

*Backward Compatibility Notice*

Due to the new storage location for file-based keyrings, keyring 0.8
supports backward compatibility by automatically moving the password
files to the updated location. In general, users can upgrade to 0.8 and
continue to operate normally. Any applications that customize the storage
location or make assumptions about the storage location will need to take
this change into consideration. Additionally, after upgrading to 0.8,
it is not possible to downgrade to 0.7 without manually moving
configuration files. In 1.0, the backward compatibilty
will be removed.

PR:	ports/165606
Submitted by:	maintainer, douglas@douglasthrift.net
2012-03-02 18:47:43 +00:00
Pav Lucistnik
9cd91f3661 - Remove conditional checks for FreeBSD 6.X
PR:		ports/165608
Submitted by:	pgollucci
Approved by:	portmgr (hat)
2012-03-02 14:56:37 +00:00
Wen Heping
4f9c8578c5 - Update to 0.4.0 2012-03-01 13:16:33 +00:00
Wen Heping
942f50f2f2 - Update to 2.1.8 2012-03-01 08:22:09 +00:00
Wesley Shields
27250d2045 Update to 1.8.4p2
PR:		ports/165528
Submitted by:	rea@
2012-03-01 02:06:48 +00:00
Sunpoet Po-Chuan Hsieh
4f6378567c - Update to 5.71
Changes:	http://search.cpan.org/dist/Digest-SHA/Changes
2012-02-29 16:16:54 +00:00
Chris Rees
4b54b2253a Document latest PostgreSQL vulnerabilities
Security:	http://www.postgresql.org/about/news/1377/
2012-02-28 19:19:01 +00:00
Dmitry Sivachenko
023789bfc6 Fix build with recent OpenSSL from ports. 2012-02-28 10:12:33 +00:00
Philip M. Gollucci
1a96be633c devel/apr hasn't existed in quite some time.
Also subversion will pull in apr as a LIB_DEPENDS

With Hat:   apache@
2012-02-28 05:16:34 +00:00
Eitan Adler
425cc3d0e3 - Add information about make tidy checking now that it actually functions
- use ' instead of `
- add a note about ports-security
2012-02-28 00:09:56 +00:00
Eitan Adler
aaee0aaa7f Document recent flash vulns
Reviewed by:	nox
2012-02-28 00:04:11 +00:00
Eitan Adler
94cc4dbc5b Pacify 'make tidy' and use valid XML.
While make diff against the tidy version a canconical test.
2012-02-27 23:49:42 +00:00
Matthew Seaman
2f3d72014c - Take maintainership
- Fix LIB_DEPENDS when WITH_CRACKLIB is selected

Approved by:	   shaun (mentor)
PRs:	 	   ports/165313 [1], ports/165469 [2]
Submitted by:	   anatoly.borodin@gmail.com [1], freebsd@omnilan.de [2]
2012-02-27 23:44:44 +00:00
Florian Smeets
cbe409d1f3 make sure installation does not fail if for whatever reason the symlink in
/etc/ssl is still there on (re)install phase with ETCSYMLINK option set.

Submitted by:	mi
2012-02-27 23:35:11 +00:00
Koop Mast
20f0df8834 Add libxml2 vulnability.
PR:		ports/164270
Submitted by:	kj <b4039413@nwldx.com>
2012-02-27 23:10:36 +00:00
Greg Larkin
b48da6b6c5 - Reassign to the heap
Requested by:	roam (on ports-developers@)
2012-02-27 20:32:31 +00:00
Steve Wills
3ca48c54d4 - Update to 1.45 2012-02-27 20:14:10 +00:00
Jason Helfman
cda6516059 - Update to 201208 snapshot
- while here use INSTALL_LIB for library installation

PR:	ports/165504
Submitted by:	maintainer, ecrist@secure-computing.net
2012-02-27 19:20:42 +00:00
Munechika SUMIKAWA
bae8ac0c1d install rc.d scripts on FreeBSD 10.x and above
PR:		ports/165456
Submitted by:	rea
2012-02-27 04:40:57 +00:00
Wesley Shields
ea5710fc9b Fixup python entry. No need to have python metaport listed.
Reviewed by:	miwi@
2012-02-27 03:04:47 +00:00
Chris Rees
f817567dd6 Fix i386 packaging-- sha256c.so was named wrongly in the binaries tarball 2012-02-26 16:58:55 +00:00
Ryan Steinmetz
da89a71867 - Update to 2.04b 2012-02-26 12:38:09 +00:00
Martin Matuska
dfa6b6b1dd Return maintainership back to pool 2012-02-26 12:20:47 +00:00
Ryan Steinmetz
db7c1b8062 - Update to 1.8 2012-02-25 16:39:05 +00:00
Ryan Steinmetz
799302962a - Update to 4.52
- Use USERS/GROUPS
- Remove support for FreeBSD 5.x/6.x
- Cosmetic changes
2012-02-25 16:15:12 +00:00
Ryan Steinmetz
6cb55cd984 - Adopt port per maintainers request
Approved by:	roam@
2012-02-25 14:08:09 +00:00
Ryan Steinmetz
3312c909b9 - Take maintainership per request of current maintainer
Approved by:	roam@
2012-02-25 13:48:18 +00:00
Carlo Strub
d390fcd4ac Update to 5.3b
PR:		ports/165377
Submitted by:	Gerard Seibert <gerard@seibercom.net>
Approved by:	glarkin@ (mentor, implicit)
2012-02-24 20:00:35 +00:00
Carlo Strub
66103e8c5c obfsproxy is a tool that attempts to circumvent censorship, by transforming the
Tor traffic between the client and the bridge. This way, censors, who usually
monitor traffic between the client and the bridge, will see innocent-looking
transformed traffic instead of the actual Tor traffic.

WWW: https://www.torproject.org/projects/obfsproxy.html.en

Approved by:	glarkin@ (mentor)
2012-02-24 15:06:25 +00:00
Frederic Culot
c5858ea961 - Update to 0.4.2
PR:		ports/165425
Submitted by:	Kurt Jaeger <fbsd-ports@opsec.eu> (maintainer)
2012-02-24 13:14:32 +00:00
Sunpoet Po-Chuan Hsieh
a2f8e46c31 - Update to 1.43
- Add TEST_DEPENDS

Changes:	http://search.cpan.org/dist/Net-SSLeay/Changes
2012-02-24 10:09:58 +00:00
Ryan Steinmetz
9d538b3c20 - Update to 1.2.1 [1]
- Reset maintainership due to multiple maintainer timeouts
- Take maintainership

PR:		ports/164471 [1]
Submitted by:	Nikolay Denev <ndenev@gmail.com> [1]
2012-02-23 14:05:49 +00:00
Philippe Audeoud
d00ee76818 - Update to 1.56
- Changelog: http://cpansearch.perl.org/src/SULLR/IO-Socket-SSL-1.56/Changes
2012-02-23 14:04:08 +00:00
Cy Schubert
b5198bca2e Misc fixes (not comprehensive) for freebsd8.
Submitted by:	Maintainer (Joe Greco <jgreco@ns.sol.net>)
Approved by:	Implicitly approved by maintainer
2012-02-23 00:34:28 +00:00
Alex Dupre
902f3b04d9 Really install samples. 2012-02-22 16:58:07 +00:00
Alex Dupre
ee8f97bee9 Update to 1.5.0 release. 2012-02-22 16:19:04 +00:00
Ashish SHUKLA
709e7e7325 - Chase Emacs updates
PR:		ports/165082
2012-02-22 13:31:32 +00:00
Dirk Meyer
38afb1ece3 - tamper SHLIB_VERSION_NUMBER in opensslv.h
This allows some qt apps to dynamicly load openssl
2012-02-22 05:15:12 +00:00
Jason Helfman
65088eec9e - Update to 0.7.1
From CHANGES.txt:

0.7.1
* Removed non-ASCII characters from README and CHANGES docs (required by
distutils if we're to include them in the long_description). Fixes #55.

0.7
* Python 3 is now supported. All tests now pass under Python 3.2 on
Windows and Linux (although Linux backend support is limited). Fixes #28.
* Extension modules on Mac and Windows replaced by pure-Python ctypes
implementations. Thanks to Jerome Laheurte.
* WinVaultKeyring now supports multiple passwords for the same service. Fixes
#47.
* Most of the tests don't require user interaction anymore.
* Entries stored in Gnome Keyring appears now with a meaningful name if you try
to browser your keyring (for ex. with Seahorse)
* Tests from Gnome Keyring no longer pollute the user own keyring.
* `keyring.util.escape` now accepts only unicode strings. Don't try to encode
strings passed to it.

PR:	ports/165345
Submitted by:	maintainer, douglas@douglasthrift.net
2012-02-21 21:47:27 +00:00
Philippe Audeoud
ba08aaefe4 - Update to 1.55
- Changelog: http://cpansearch.perl.org/src/SULLR/IO-Socket-SSL-1.55/Changes
2012-02-21 16:36:15 +00:00
TAKATSU Tomonari
07583ac6e4 - Update to 0.9.1 2012-02-21 14:06:18 +00:00
David Thiel
66dbf3c051 Fix library arch mismatch on amd64, hopefully fix powerpc as well. 2012-02-20 22:47:17 +00:00
Florian Smeets
a966a05ace update to 3.13.2 2012-02-20 21:41:44 +00:00
Wesley Shields
1dc2b02630 Update to 2.5
PR:		ports/164597
Submitted by:	Denis Generalov <gd@rambler-co.ru>
Approved by:	maintainer timeout
2012-02-20 13:38:34 +00:00
Eitan Adler
d27e0f4dbb Minor whitespace fixup 2012-02-20 04:28:51 +00:00
Jun Kuriyama
bcaf3cacdf This is a set of various Samba VFS modules to scan and filter virus
files on Samba file services with an anti-virus scanner.

Supported Anti-Virus engines:
  - ClamAV (clamd daemon)
  - F-Secure Anti-Virus (fsavd daemon)
  - Sophos Anti-Virus (savdid daemon)

WWW: https://github.com/fumiyas/samba-virusfilter
2012-02-20 02:16:07 +00:00
Martin Wilke
fccbe38c14 - Update to 4.37
PR:		164907
Submitted by:	Armin Pirkovitsch <armin@frozen-zone.org>
2012-02-19 23:25:06 +00:00
Rene Ladan
d35ee799a8 Include PORTREVISION in plib version number to fix previous commit. 2012-02-19 22:27:33 +00:00
Rene Ladan
69a050c522 Document a remote code execution via a buffer overflow in PLIB.
Security:	CVE-2011-4620
2012-02-19 22:14:32 +00:00
Eitan Adler
60bc1dbcf8 Remove quotes from BROKEN and IGNORE as they are not required
Reset maintainer due to bouncing mail
2012-02-19 15:44:09 +00:00
Ruslan Makhmatkhanov
b3e78ade01 - replace YES' with yes' in USE_PYTHON/USE_PYDISTUTILS (mostly)
They all non-functional changes.
2012-02-19 07:02:58 +00:00
David Thiel
bc81d6d707 Fix build on x86, show output from build 2012-02-19 03:17:37 +00:00
Gabor Pali
3884eb7918 HsOpenSSL is an (incomplete) OpenSSL binding for Haskell. It can
generate RSA and DSA keys, read and write PEM files, generate message
digests, sign and verify messages, encrypt and decrypt messages.  It has
also some capabilities of creating SSL clients and servers.

WWW:	https://github.com/phonohawk/HsOpenSSL

Obtained from:	FreeBSD Haskell
2012-02-18 18:46:37 +00:00
Gabor Pali
94dc53a878 A set of extra definitions, default values and helpers for the tls
package.

WWW:	http://github.com/vincenthz/hs-tls-extra

Obtained from:	FreeBSD Haskell
2012-02-18 16:24:24 +00:00
Gabor Pali
98c816c3be Native Haskell TLS and SSL protocol implementation for server and
client.

This provides a high-level implementation of a sensitive security
protocol, eliminating a common set of security issues through the use of
the advanced type system, high level constructions and common Haskell
features.

Currently implement the SSL3.0, TLS1.0, TLS1.1 and TLS1.2 protocol, with
only RSA supported for Key Exchange.

WWW:	http://github.com/vincenthz/hs-tls

Obtained from:	FreeBSD Haskell
2012-02-18 16:23:00 +00:00
Gabor Pali
b00b470fac Certificates and Key reader/writer. At the moment only X509 certificate
and unencrypted private key are supported, but will include PGP
certificate and pkcs8 private keys.

WWW:	http://github.com/vincenthz/hs-certificate

Obtained from:	FreeBSD Haskell
2012-02-18 16:19:56 +00:00
Gabor Pali
45819fa559 This library implements the RSA encryption and signature algorithms for
arbitrarily-sized ByteStrings.  While the implementations work, they are
not necessarily the fastest ones on the planet.  Particularly key
generation.  The algorithms included are based of RFC 3447, or the
Public-Key Cryptography Standard for RSA, version 2.1 (a.k.a, PKCS#1
v2.1).

WWW:	http://hackage.haskell.org/package/RSA

Obtained from:	FreeBSD Haskell
2012-02-18 16:09:15 +00:00
Gabor Pali
b57a83d9a7 An unrolled implementation of MD5 purely in Haskell.
WWW:	http://hackage.haskell.org/package/pureMD5

Obtained from:	FreeBSD Haskell
2012-02-18 16:06:05 +00:00
Matthew Seaman
37035a72be Security update to 3.4.10.1
XSS in replication setup

  ChangeLog:

    Welcome to phpMyAdmin 3.4.10.1, a minor security release.

3.4.10.1 (2012-02-18)
- [security] XSS in replication setup, see PMASA-2012-1

  Security Advisory:

    http://www.phpmyadmin.net/home_page/security/PMASA-2012-1.php

Approved by:	shaun (mentor)
2012-02-18 15:00:46 +00:00
Jason Helfman
bbac183004 - document latest piwik security vulnerability
PR:	ports/165217
2012-02-17 21:21:41 +00:00
Florian Smeets
26e461e4ec - document recent mozilla vulnerabilities
- wrap a long line
2012-02-17 19:38:33 +00:00
David Thiel
b084dd313f Update to 3.0.2 - minor bugfixes. 2012-02-16 22:05:15 +00:00
Chris Rees
836248363e Update to 1.5.3.6
With much handholding from upstream (Thanks!), include C sha256 module for
FreeBSD/amd64 and FreeBSD/i386
2012-02-16 18:08:13 +00:00
Ruslan Makhmatkhanov
d92cbc50ed - add PACKETSTORM mirror 2012-02-16 17:30:38 +00:00
Ashish SHUKLA
97ddb4e13d - Bump PORTREVISION to chase the update of multimedia/libvpx 2012-02-16 15:57:34 +00:00
Rene Ladan
ff8224ca02 Document vulnerabilities in chromium < 17.0.963.56
Obtained from:	http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security:	CVE-2011-[3015-3027]
2012-02-15 23:16:01 +00:00
Jason Helfman
3047181800 Add new port (security/tsshbatch)
'tsshbatch' is a tool to enable you to issue a command to many
servers without having to log into each one separately. When writing
scripts, this overcomes the 'ssh' limitation of not being able to
specify the password on the command line.

'tsshbatch' also understands basic 'sudo' syntax and can be used
to access a server, 'sudo' a command, and then exit.

'tsshbatch' thus allows you to write complex, hands-off scripts that
issue commands to many servers without the tedium of manual login and
'sudo' promotion. System administrators, especially, will find this
helpful when working in large server farms.

WWW: http://www.tundraware.com/Software/tsshbatch

PR:	ports/163866
Submitted by:	Tim Daneliuk, tsshbatch at tundraware.com
2012-02-15 22:42:08 +00:00
Greg Larkin
284c51c9bd - Added gpg run dependency
- Bumped PORTREVISION
2012-02-15 20:36:10 +00:00
Greg Larkin
b475cafb5d - Updated the recent WebCalendar entry to match <= 1.2.4 instead of < 1.2.4,
since 1.2.4 (not yet in tree) is vulnerable, and 1.2.5 has not been
  released by upstream yet
- Fixed the URL in the recent WebCalendar entry
- Canonicalized naming in other WebCalendar entries
- Fixed various nits flagged by "make tidy"
2012-02-15 19:58:37 +00:00
Greg Larkin
856f889285 gpgr is a very light interface to the command-line GPG (GNU Privacy
Guard) tool which is soley concerned with making it as easy as
possible to encrypt files with one (or more) public keys. It does
not provide any major key management tools and does not support
decryption.

WWW: https://github.com/HHRy/gpgr
2012-02-15 18:27:31 +00:00
Steve Wills
4773158a43 - Mark broken on 7.x. Builds fine, doesn't work, according to "make test" 2012-02-15 15:59:49 +00:00
Michael Scheidell
f79e947068 - Fix missing \n in SIZE line for distinfo
PR:		ports/157174
Submitted by:	Alex kozlov <spam@rm-rf.kiev.ua>
Approved by:	maintainer (implicit), gabor (mentor, implicit)
2012-02-15 12:22:27 +00:00
MANTANI Nobutaka
bcd4b07741 Update to 4.1. 2012-02-15 11:19:03 +00:00
Sunpoet Po-Chuan Hsieh
32bad5bbda - Add official site to MASTER_SITES
Reported by:	pointyhat
2012-02-15 08:14:56 +00:00
Sunpoet Po-Chuan Hsieh
718ed795d8 - Add BUILD_DEPENDS 2012-02-15 07:52:25 +00:00
Eitan Adler
67b3c147de This vuln also affects pypy 2012-02-15 00:03:39 +00:00
Brendan Fabeny
783eb638d7 update to 0.2.3.12-alpha 2012-02-14 20:43:32 +00:00
Philip M. Gollucci
9ab0db09f9 - Bump PORTREVISION
- Better/different fix for /dev/null issue

PR:             ports/165096
Submitted by:   Jui-Nan Lin <jnlin@csie.nctu.edu.tw> (maintainer)
2012-02-14 19:17:12 +00:00
Roman Bogorodskiy
83c80f10a0 Update to 0.11. 2012-02-14 17:45:40 +00:00
Martin Matuska
dbbf004162 Bump pcre library dependency due to 8.30 update 2012-02-14 12:45:35 +00:00
Ruslan Makhmatkhanov
d506063ebc - update to 7.2
changes:
http://freeworld.thc.org/thc-hydra/CHANGES
2012-02-14 11:23:55 +00:00
Eitan Adler
8eb253c8cb typo 2012-02-14 03:32:30 +00:00
Eitan Adler
c015f4eda7 Inform users of the DoS issue in the python SimpleXMLRPCServer function 2012-02-14 03:31:45 +00:00
Eitan Adler
37324fb0cc Add the recently assigned cve number 2012-02-13 16:27:11 +00:00
Gabor Pali
382c38ca72 - Update to 0.0.1.0
Obtained from:	FreeBSD Haskell
2012-02-13 05:22:37 +00:00
Gabor Pali
b40f1ddf5f - Update to 4.2.4
Obtained from:	FreeBSD Haskell
2012-02-13 05:21:39 +00:00
Josh Paetzel
2d6d82f1d5 Update to 1.0.4
PR:	ports/165079
Submitted by:	Eric F Crist <ecrist@secure-computing.net>
2012-02-13 04:38:57 +00:00
Gabor Pali
1a2291a4cf - Connect all the previously added hs- ports to the build
Obtained from:	FreeBSD Haskell
2012-02-13 03:58:47 +00:00
Gabor Pali
c4aebd467c - Please welcome GHC 7.0.4
GHC in the ports tree has been updated to version 7.0.4 and the port revision
for all the Haskell ports without version changes are bumped.  Other per-port
updates are coming soon.

This update also incorporates some improvements for bsd.cabal.mk that makes
working with Haskell ports even easier.

Thanks ashish@ for the help!

Obtained from:	FreeBSD Haskell
2012-02-13 03:49:32 +00:00
Gabor Pali
847e9c51b9 Skein [1] is a family of fast secure cryptographic hash functions. This
package uses bindings to the optimized C implementation of Skein.  There
is a high-level interface provided to some of the Skein use cases, and a
low-level interface when Skein has to be used in a different way.

Currently Skein is supported as cryptographic hash function as Skein as
a message authentication code (Skein-MAC).

[1] http://www.skein-hash.info/

WWW:	http://patch-tag.com/r/felipe/skein

Obtained from:	FreeBSD Haskell
2012-02-13 02:52:47 +00:00
Gabor Pali
447fda15e5 To store passwords securely, they should be salted, then hashed with a
slow hash function. This library uses PBKDF1-SHA256, and handles all the
details. It uses the cryptohash package for speed; if you need a pure
Haskell library, pwstore-purehaskell has the exact same API, but uses
only pure Haskell. It is about 25 times slower than this package, but
still quite usable.

WWW:	https://github.com/PeterScott/pwstore

Obtained from:	FreeBSD Haskell
2012-02-13 02:50:54 +00:00
Gabor Pali
d1e4cb2f82 A platform independent method to obtain cryptographically strong entropy
(urandom on Linux, CryptAPI on Windows, patches welcome). Users looking
for cryptographically strong (number-theoretically sound) PRNGs should
see the DRBG package too!

WWW:	http://trac.haskell.org/crypto-api/wiki

Obtained from:	FreeBSD Haskell
2012-02-13 02:49:00 +00:00
Gabor Pali
b7fae4b365 A collection of crypto hashes, with a practical incremental and one-pass,
pure APIs, with performance close to the fastest implementations available
in others languages.

The implementations are made in C with a haskell FFI wrapper that hide the
C implementation.

WWW:	http://github.com/vincenthz/hs-cryptohash

Obtained from:	FreeBSD Haskell
2012-02-13 02:47:14 +00:00
Gabor Pali
4ec9eee6db Symmetrical Block, Stream, and PubKey Ciphers.
WWW:	http://github.com/vincenthz/hs-cryptocipher

Obtained from:	FreeBSD Haskell
2012-02-13 02:44:48 +00:00
Gabor Pali
cc36c74ac3 Generic cryptography public keys algorithm types.
WWW:	http://github.com/vincenthz/hs-crypto-pubkey-types

Obtained from:	FreeBSD Haskell
2012-02-13 02:42:56 +00:00
Gabor Pali
3183595c0e A generic interface for cryptographic operations, platform independent quality
RNG, property tests and known-answer tests (KATs) for common algorithms, and a
basic benchmark infrastructure. Maintainers of hash and cipher implementations
are encouraged to add instances for the classes defined in Crypto.Classes.
Crypto users are similarly encouraged to use the interfaces defined in the
Classes module.  Any concepts or functions of general use to more than one
cryptographic algorithm (ex: padding) is within scope of this package.

WWW:	http://trac.haskell.org/crypto-api/wiki

Obtained from:	FreeBSD Haskell
2012-02-13 02:41:08 +00:00
Gabor Pali
b342c113c2 Simple crypto pseudo-random-number-generator with really good randomness
property.

WWW:	http://github.com/vincenthz/hs-cprng-aes

Obtained from:	FreeBSD Haskell
2012-02-13 02:39:04 +00:00
Gabor Pali
8bd3d20de2 Achieves security through AES-CTR encryption and Skein-MAC-512-256
authentication. Uses Base64 encoding to avoid any issues with
characters.

WWW:	http://github.com/snoyberg/clientsession/tree/master

Obtained from:	FreeBSD Haskell
2012-02-13 02:37:09 +00:00
Philip M. Gollucci
06f9d9cb62 - Pregenerate pw_dict since cracklib stopped distributing one
which dependant ports require at build-time.
- Convert dependant ports to LIB_DEPENDS
- Bump PORTREVISIONs

Reported by:    pav via pointyhat
2012-02-12 22:26:55 +00:00
Philip M. Gollucci
1b367ff903 - Patch the port to not remove /dev/null
Reported by:    many
Pointy Hat To:  myself
2012-02-12 20:35:44 +00:00
Pav Lucistnik
937e6a3a64 - Mark BROKEN immediately: this port deletes /dev/null during compilation
Reported by:	pointyhat
2012-02-12 20:24:07 +00:00