Commit graph

24926 commits

Author SHA1 Message Date
David Thiel
52811c6207 Turn into a slave port.
Submitted by:	lifanof
2017-02-17 21:04:38 +00:00
Guido Falsi
1c47a68e82 Document multiple vulnerabilities in optipng.
PR:		216955
Submitted by:   Thomas Hurst <tom@hur.st> (affected port maintainer)
2017-02-16 21:40:34 +00:00
Ruslan Makhmatkhanov
a4f5c26d5e security/py-AccessControl: update to 3.0.13 2017-02-16 19:10:25 +00:00
Bernard Spil
7c980746c3 security/openssl-devel: Upgrade to 1.1.0e
- Vulnerability fix update to 1.1.0e

MFH:		2017Q1
Security:	1a802ba9-f444-11e6-9940-b499baebfeaf
Security:	CVE-2017-3733
2017-02-16 13:17:20 +00:00
Sunpoet Po-Chuan Hsieh
883ba86b1e Complete PKGNAMEPREFIX of py-diffoscope 2017-02-16 12:51:20 +00:00
Bernard Spil
249eccc6fd security/vuxml: Document openssl-devel vulnerability
- While here fix whitespace on 077bbadf-f2f4-11e6-92a7-902b34361349
2017-02-16 12:42:51 +00:00
Lars Engels
305c35cba8 security/lynis:
Update to 2.4.2
2017-02-16 11:18:08 +00:00
Rene Ladan
676b34a127 Return the ports mistakenly reset to ports@ in r433856 to John Marino.
The mistake was completely on my part, I somehow connected the dots the
wrong way in my head.

The only exceptions (for now) are archivers/zstd and ports-mgmt/synth
which were already picked up by new volunteers in the mean time.
2017-02-15 21:33:11 +00:00
Ed Maste
404e6ef5e2 Document arbitrary file write in diffoscope < 76
Reported by:	koobs (via Debian bug report)
Reviewed by:	delphij
Approved by:	delphij
Sponsored by:	The FreeBSD Foundation
Differential Revision:	https://reviews.freebsd.org/D9598
2017-02-15 18:38:34 +00:00
Lars Engels
a32dc532c6 sysutils/lynis:
- Update to 2.4.1
- Add a runtime dependency on sysutils/lsof [1]

Suggested by:	Andrea Venturoli <ml@netfence.it> [1]
2017-02-15 12:52:20 +00:00
Tobias Kortkamp
98058b8684 Update MAINTAINER to tobik@FreeBSD.org for my ports
Approved by:	mat (mentor)
Differential Revision:	https://reviews.freebsd.org/D9610
2017-02-15 12:28:29 +00:00
Jan Beich
09c5ed08f4 security/nss: update to 3.29
Changes:	https://developer.mozilla.org/docs/Mozilla/Projects/NSS/NSS_3.29_release_notes
Changes:	https://hg.mozilla.org/projects/nss/shortlog/NSS_3_29_RTM
MFH:		2017Q1
2017-02-15 09:48:00 +00:00
Kirill Ponomarev
26e9ef4de6 Update security/govpn to 7.2
PR:		217091
Submitted by:	maintainer
Approved by:	mat (mentor)
Differential Revision:	https://reviews.freebsd.org/D9600
2017-02-15 06:23:59 +00:00
David Thiel
e620d9edc8 Add 5.1-specific version of luasec 2017-02-15 00:12:17 +00:00
Jan Beich
86410cdb1c security/nss: stop excessive getpid(2) calls
FreeBSD implements pthread_atfork(3) and (as required by a nearby
code comment) deregisters callbacks located in dlclose(3)ed shared
objects. Take advantage of it instead of looping with getpid(2).

Submitted by:	cem
MFH:		2017Q1
2017-02-14 21:49:25 +00:00
David Thiel
2d52b6d371 Update to 0.6.
PR:		210462
Submitted by:	Piotr Kubaj
2017-02-13 20:37:34 +00:00
Bernard Spil
b584ce29ca security/hitch: Fix build with LibreSSL
- Add upstream patch

PR:		217029
Obtained from:	https://github.com/varnish/hitch/commit/cc92c25
Approved by:	zi (maintainer)
2017-02-13 14:28:19 +00:00
Mathieu Arnold
81e55309a7 Don't overwrite vars file when upgrading.
(Also, don't overwrite securiy/easy-rsa's vars file when installing.)

Sponsored by:	Absolight
2017-02-13 10:12:31 +00:00
Adam Weinberger
4ca66b59bd Update to 1.1.2; now builds with cmake [1]
Remove no-longer-accurate block from pkg-message [2]

PR:		217018 [1]
Submitted by:	adamw [1], maintainer [2]
Approved by:	maintainer (Thomas Hurst)
2017-02-13 00:15:15 +00:00
Cy Schubert
7925108f45 Add missing patch files.
Reported by:	sunpoet
Pointy hat to:	cy (me)
2017-02-12 21:51:34 +00:00
Cy Schubert
c77a184151 Fix build with LbreSSL.
PR:		217027
Submitted by:	brnrd
2017-02-12 21:29:02 +00:00
Thomas Zander
a95dde640f Document heap overflow in multimedia/ffmpeg < 3.2.4 2017-02-12 12:19:36 +00:00
Sunpoet Po-Chuan Hsieh
7fdeb33502 Update to 1.207
Changes:	http://search.cpan.org/dist/Digest-Bcrypt/Changes
2017-02-12 08:12:55 +00:00
Sunpoet Po-Chuan Hsieh
f8cda54cea Update to 1.12.0
Changes:	https://github.com/capistrano/sshkit/blob/master/CHANGELOG.md
2017-02-11 14:19:58 +00:00
Rene Ladan
921fd6118f Return ports maintained by John Marino to the pool, see r433827 for details 2017-02-11 12:42:30 +00:00
Koop Mast
ea886dc9fc Document gtk-vnc bounds checking vulnabilities
Security:	CVE-2017-5884, CVE-2017-5885
2017-02-11 11:09:12 +00:00
Dmitry Marakasov
c1a733d7c2 - Add LICENSE
- Switch to USES=localbase
- Switch to options helpers
- Regenerate patches
2017-02-11 09:01:29 +00:00
Jason Unovitch
fd27c9bef9 Document Xen Security Advisory (XSA 208)
Reported by:	royger
Security:	CVE-2017-2615
Security:	https://vuxml.FreeBSD.org/freebsd/a73aba9a-effe-11e6-ae1b-002590263bf5.html
2017-02-11 02:10:57 +00:00
Sunpoet Po-Chuan Hsieh
1e7257e77e Update to 0.08
Changes:	http://search.cpan.org/dist/Crypt-OpenSSL-Bignum/Changes
2017-02-10 15:17:50 +00:00
Vanilla I. Shu
90be1ec63e Update to 0.5.1.
PR:		216948
Submitted by:	maintainer
2017-02-10 02:54:13 +00:00
Kirill Ponomarev
bde23a0338 Update security/py-pycryptodome to 3.4.5
PR:		216929
Submitted by:	yuri@rawbw.com
Approved by:	mat (mentor)
Differential Revision:	https://reviews.freebsd.org/D9505
2017-02-09 18:07:43 +00:00
Dmitry Marakasov
d4f64674bb - Update to 1.800201
PR:		215753
Submitted by:	svysh.fbsd@gmail.com (maintainer)
2017-02-09 17:01:52 +00:00
Sunpoet Po-Chuan Hsieh
357b50852b Update to 1.20
Changes:	http://search.cpan.org/dist/Net-SSL-ExpireDate/Changes
2017-02-08 23:45:54 +00:00
Matthew Seaman
5b94f6c68d MORPHiS is a global encrypted distributed datastore intended to replace the
cloud for storage and far more. This first release also includes DMAIL
(distributed mail), inherently spam resistant, inherently encrypted,
uncensorable, free distributed messaging.

WWW: https://morph.is

PR:		215804
Submitted by:	Yuri Victorovich <yuri@rawbw.com>
2017-02-08 20:39:14 +00:00
Bernard Spil
e6a6b1491a security/openssl: Enable ASM by default
- Enable ASM option
    * By extension this enables AES-NI [1]
  - Order OPTIONS_DEFAULT alphabetically
  - Switch to using @sample [2]
  - Bump PORTREVISION

PR:		216559 [2]
Reported by:	dtestke [1]
Submitted by:	Franco Fichtner <franco@opnsense.org> [2]

Approved by:	asomers, allanjude
2017-02-08 20:16:31 +00:00
Ruslan Makhmatkhanov
da53e9e577 security/py-python-gnupg: update to 0.4.0
- update to 0.4.0
- correct LICENSE (BSD3C instead of GPLv3)
- add NO_ARCH, because package doesn't install platform-dependend files

PR:		216721
Approved by:	christer.edwards@gmail.com (maintainer)
2017-02-07 18:21:33 +00:00
Dan Langille
7e4f9251c7 Add newly created port py-virustotal-api
Sorry.
2017-02-07 16:50:36 +00:00
Dan Langille
fed2c12c6d Add virustotal-api: upload and scan files, submit and scan URLs, etc. 2017-02-07 16:49:28 +00:00
Dmitry Marakasov
d056b6c3bf - The port builds is no longer BROKEN with libressl
Submitted by:	Christian Sturm <reezer@reezer.org>
2017-02-07 13:48:09 +00:00
Mathieu Arnold
25c794224f Mark ports not building with PHP 7.1.
Sponsored by:	Absolight
2017-02-07 12:14:34 +00:00
Tijl Coosemans
180b957967 List all linux package names in latest libtiff vulnerability. 2017-02-07 11:43:10 +00:00
Bernard Spil
40ebf5e978 security/pgp: Only GnuPG 1.x supports non-OpenPGP
- Make DEPRECATED message not a personal statement [1]
  - Only GnuPG 1.x supports pre-OpenPGP algoritms [2]

Reported by:	mat [1], cy [2]
2017-02-07 08:33:19 +00:00
Dan Langille
6ae43d7f91 Upgrade to 1.2.5 2017-02-06 19:34:27 +00:00
Dan Langille
e6deb13ae0 Upgrade to 0.11.0 2017-02-06 19:20:55 +00:00
Tijl Coosemans
32e86937f9 Undocument a linux-*-curl vulnerability that has low impact and Red Hat
"will not fix".

Security:	https://access.redhat.com/security/cve/CVE-2016-0755
2017-02-06 18:13:40 +00:00
Tijl Coosemans
838359c19e Document libtiff vulnerabilities.
Security:	http://simplesystems.org/libtiff/v4.0.7.html
2017-02-06 18:09:29 +00:00
Bernard Spil
df9e0b8f6a security/sslscan: Update to 1.11.8
- Update to 1.11.8
  - Add USES= ssl
  - Re-roll patches
  - Fix build with libressl-devel

PR:		213652
Submitted by:	Piotr Kubaj <pkubaj@anongoth.pl>
Approved by:	maintainer time-out
2017-02-06 12:55:02 +00:00
Alex Dupre
32b240e625 Update to 0.4.4 release. 2017-02-06 08:25:05 +00:00
Ashish SHUKLA
46ba8c1f67 - Rename DOCS option to MANPAGES
Reported by:	adamw
2017-02-06 05:43:13 +00:00
Danilo Egea Gondolfo
2e7ddd7993 - Set ONLY_FOR_ARCHS=amd64 for now. The code is not building on i386 due inline assembly and sometimes clang is crashing. 2017-02-06 02:26:26 +00:00