Commit graph

38 commits

Author SHA1 Message Date
Pav Lucistnik
a6b9ddac1d - Update to 2.16.7, a security release:
Class:       Unauthorized Bug Change
Versions:    2.9 through 2.18rc2 and 2.19
Description: It is possible to send a carefully crafted HTTP POST
	     message to process_bug.cgi which will remove keywords from
	     a bug even if you don't have permissions to edit all bug
	     fields (the "editbugs" permission).  Such changes are
	     reported in "bug changed" email notifications, so they are
	     easily detected and reversed if someone abuses it.
Reference:   https://bugzilla.mozilla.org/show_bug.cgi?id=252638

- Correct SQL command in pkg-message

PR:		ports/71161, ports/73166
Submitted by:	Dmitry A Grigorovich <odip@bionet.nsc.ru>
2004-10-27 19:23:53 +00:00
Edwin Groothuis
a69b025bfe [PATCH] devel/bugzilla: update to 2.16.6
- Update to 2.16.6

PR:		ports/69105
Submitted by:	TAKATSU Tomonari <tota@rtfm.jp>
2004-07-17 05:22:20 +00:00
Oliver Eikemeier
44dd2efdea Fix DIST_SUBDIR and make the port fetchable again.
Note that it is still vulnerable to
  <http://www.freebsd.org/ports/portaudit/672975cb-d526-11d8-b479-02e0185c0b53.html>
2004-07-14 23:18:18 +00:00
Kris Kennaway
f849251bc1 BROKEN: Unfetchable 2004-07-14 22:19:50 +00:00
Oliver Eikemeier
8be7372f0d - update devel/bugzilla to 2.16.5
- new slave port japanese/bugzilla

PR:		68318, 68319
Submitted by:	TAKATSU Tomonari <tota@rtfm.jp>
2004-06-30 08:27:10 +00:00
Mark Linimon
12de0893b7 Modifications to make this a master port for upcoming slave port
japanese/bugzilla.  Should have no effect otherwise.

PR:		ports/62545
Submitted by:	TAKATSU Tomonari <tota@rtfm.jp>
2004-02-12 04:36:05 +00:00
Trevor Johnson
54467b6156 Remove redundant master site.
PR:		62372
Submitted by:	Tom McLaughlin
2004-02-05 19:17:40 +00:00
Trevor Johnson
0c881ba59c SIZEify. 2004-01-29 07:24:56 +00:00
James E. Housley
1b1d295810 There are several security related problem in bugzilla 2.16.3 and earlier,
The bugzilla developer released a security advisory.
see: http://www.bugzilla.org/security/2.16.3/

PR:		58905
Submitted by:	Kang Liu
2003-11-21 11:36:02 +00:00
Trevor Johnson
e99ceadaf6 Use the FIND and XARGS macros introduced in bsd.port.mk 1.391. 2003-11-13 14:45:08 +00:00
Ying-Chieh Liao
c634b4bb83 utilize SITE_PERL
PR:		58166
Submitted by:	Cheng-Lung Sung <clsung@dragon2.net>
2003-10-24 12:05:09 +00:00
Yen-Ming Lee
fc877ef545 The devel/bugzilla port has an explicit LIB_DEPENDS dependency on
libmysqlclient.so.10 from the mysql323-client port.  However, bugzilla
will work fine with just about any version of MySQL.

Could just insert USE_MYSQL, but the bugzilla port only really needs
access to the perl DBD::Mysql modules and can depend on MySQL
implicitly through that port..

PR:		57607
Submitted by:	Matthew Seaman <m.seaman@infracaninophile.co.uk>
2003-10-05 16:40:42 +00:00
Edwin Groothuis
b705cbc95c ECHO -> ECHO_MSG
(ECHO_CMD for deskutils/notebook)

PR:		ports/56767-56770,56772-56774,56776-56784
Submitted by:	KATO Tsuguru <tkato@prontomail.com>
2003-09-27 00:23:56 +00:00
Erwin Lansing
6b470bae86 Conditionalise dependencies on databases/p5-DBI: for perl
5.005_03 use databases/p5-DBI-137 as newer versions do not
support the old perl.

Note that for some port, I merely removed the explicit
dependency as they already have implicit dependencies
via other ports.

Approved by:	portmgr (marcus)
2003-09-16 05:43:52 +00:00
Sergey A. Osokin
9a4a70b187 Fix a typo: s/NOPORTSDOCS/NOPORTDOCS/ for Makefile [1]
Use ${DOCSDIR} [2]
s/share\/doc\/.../%%DOCSDIR%%/ for pkg-plist [2]

PR:		53911
Submitted by:	Oliver Eikemeier <eikemeier@fillmore-labs.com> [1]
		osa [2]
Approved by:	fjoe (mentor) (implicit)
2003-07-03 14:26:03 +00:00
Johann Visagie
f7e21a2e0d - Fix something which has been broken in this port for a long time:
installation to ${PREFIX}/www/data.default.  "data.default" was an artifact
  of a long obsolete version of the Apache port.  Put installation directory
  under control of a variable $BUGZILLADIR instead.  Carry through to
  pkg-plist via a pragma.
- Bump $PORTREVISION.
2003-05-20 07:26:34 +00:00
Max Khon
d72ecd650d redirect rmdir stderr to /dev/null 2003-05-13 17:05:55 +00:00
Max Khon
389d9a9348 Security update to 2.16.3.
See http://www.bugzilla.org/security/2.16.2/.

PR:		52096
2003-05-12 13:54:49 +00:00
Max Khon
c928f4bc0f Add WITH_CONTRIB knob to install contributed scripts.
Submitted by:	Alexey Neyman <alexey.neyman (at) auriga.ru>
2003-03-24 15:15:45 +00:00
Max Khon
c3a03942b9 Update to 2.16.2
PR:		47883
2003-03-24 14:45:34 +00:00
Akinori MUSHA
7cc1393a93 De-pkg-comment. 2003-02-20 17:07:10 +00:00
Alexey Zelkin
72fac42126 Resign from maintainership. I don't use it anymore. 2003-01-23 15:54:12 +00:00
Alexey Zelkin
4d15848cd8 Update to 2.14.4 (one more security update)
PR:		ports/43883
Submitted by:	Jason Li <delphij@frontfree.net>
2002-10-11 14:28:29 +00:00
Alexey Zelkin
3c8d362837 Update to 2.14.3.
Fixes broken in 2.14.2 ability to sort bug lists on more then one field
and possible security hole with contrib/bug_email.pl and
contrib/bugzilla_email_append.pl scripts.

This is bugfix release and latest release from 2.14 branch. This update
provided for 2.14 users who would like to stay with 2.14. All new users
should wait until port is updated to 2.16.
2002-08-18 15:33:46 +00:00
Alexey Zelkin
01d667067f Remove leftovers (read *.bak) of REINPLACE_CMD execution. 2002-07-08 15:26:41 +00:00
Alexey Zelkin
2d0b047518 PERL -> REINPLACE_CMD
PR:		39749
Submitted by:	Paul Marquis <pmarquis@pobox.com>
2002-07-08 15:23:24 +00:00
Alexey Zelkin
6617bbf87b Rename patch file for consistency. 2002-07-08 15:07:24 +00:00
Alexey Zelkin
3e4a5707bf Fix plist 2002-07-08 15:04:41 +00:00
Alexey Zelkin
324d367a6b Update to 2.14.2. This is security update! Upgrade recomended!
PR:		ports/39041
Submitted by:	Paul Marquis <pmarquis@pobox.com>
2002-07-08 15:03:44 +00:00
Alexey Zelkin
23da0a8b71 Fix path to perl for runtests.sh (appeared in 2.14.1) 2002-01-08 11:10:50 +00:00
Alexey Zelkin
9c5942db4b Update to 2.14.1 (security update). Upgrade to all users highly
recomended!

From Security Advisory for Bugzilla:

: *** SECURITY ISSUES RESOLVED ***
:
: - Multiple instances of user-account hijacking capability were fixed (Bugs
: 54901, 108385, 185516)
:
: - Two occurrences of allowing data protected by Bugzilla's groupset
: restrictions to be visible to users outside of those groups were fixes
: (Bugs 102141, 108821)
:
: - One instance of an untrusted variable being echoed back to a user via
: HTML was fixed (Bug 98146)
:
: - Multiple instances of untrusted variables being passed to SQL queries
: were fixed (Bugs 108812, 108822, 109679, 109690)
2002-01-08 11:03:19 +00:00
Alexey Zelkin
54b7c3fb35 Use perl expression to fix path to sendmail rather than using
plain patches for each case.

Also fix some whitespace.

Suggested by: nectar, lioux
2001-12-20 17:55:20 +00:00
Alexey Zelkin
d64a41cc7f Fix default location of sendmail binary
Noticed by:	Jamie Flournoy <jamie@white-mountain.org>
2001-12-17 18:53:25 +00:00
Alexey Zelkin
8a7428945f Fix path
PR:		ports/32426
Submitted by:	Paul Marquis <pmarquis@pobox.com>
2001-12-05 22:05:14 +00:00
Alexey Zelkin
3e7796fd07 * reconstruct Makefile defaults to make it more package friendly
* learn default distribution about some default FreeBSD settings
* add new option to setup XML modules used to export/import bugs to share
  them between different Bugzilla instances
* use ${INSTALL_SCRIPT} rather than ${INSTALL}. Inspired by petef's letter.
  This also caused me to think "when such complex system as FreeBSD ports
  should do such simple things like prepearing of cap of coffee?"
2001-10-08 18:42:23 +00:00
Alexey Zelkin
0623a06e86 * don't setup README.docs. It's developers resource.
* use ${INSTALL} directly instead of ${INSTALL_DATA} to preserve
  exec permissions for scripts
* add post-install target to display pkg-message
* rewrite pkg-message to give minimal quick setup instructions
2001-10-02 19:37:42 +00:00
Alexey Zelkin
502263e433 Use two colons after "pre-everything" target
Requested by: "Dan Langille" <dan@langille.org>
2001-10-01 14:35:19 +00:00
Alexey Zelkin
8fb5fbc340 Add bugzilla 2.14, bug-tracking system developed by Mozilla Project 2001-10-01 13:18:55 +00:00