Commit graph

391219 commits

Author SHA1 Message Date
Kurt Jaeger
f7c0b265c5 security/tls-check: add missing dependencies
Submitted by:	netchild
2016-04-03 18:19:53 +00:00
Muhammad Moinur Rahman
44a7f6beb7 devel/gsoap: Update version 2.8.29=>2.8.30 2016-04-03 17:22:49 +00:00
Muhammad Moinur Rahman
07ddd62dee databases/geoserver-mysql-plugin: Update version 2.8.2=>2.8.3 2016-04-03 16:03:29 +00:00
Muhammad Moinur Rahman
35575386ec graphics/geoserver: Update version 2.8.2=>2.8.3 2016-04-03 16:01:08 +00:00
Jason Unovitch
6a2558d8a8 security/strongswan: unbreak FreeBSD 9 builds
- Add patch to include sys/endian.h header

PR:		208446
Submitted by:	strongswan@Nanoteq.com (maintainer)
MFH:		2016Q2 (build fix blanket)
2016-04-03 14:59:51 +00:00
Jason Unovitch
0bdf2543ac lang/php70: update 7.0.4 -> 7.0.5
Changelog:	http://www.php.net/ChangeLog-7.php#7.0.5

Approved by:	ports-secteam (with hat)
Security:	https://vuxml.FreeBSD.org/freebsd/482d40cb-f9a3-11e5-92ce-002590263bf5.html
MFH:		2016Q2
2016-04-03 14:20:22 +00:00
Jason Unovitch
249caec873 lang/php56: update 5.6.19 -> 5.6.20
converters/php56-mbstring: chase update; drop PORTREVISION

Changelog:	http://www.php.net/ChangeLog-5.php#5.6.20

PR:		208465
Reported by:	Christian Schwarz <me@cschwarz.com>
Approved by:	ports-secteam (with hat)
Security:	https://vuxml.FreeBSD.org/freebsd/482d40cb-f9a3-11e5-92ce-002590263bf5.html
MFH:		2016Q2
2016-04-03 14:20:06 +00:00
Jason Unovitch
0a54d046b0 lang/php55: update 5.5.33 -> 5.5.34
converters/php55-mbstring,graphics/php55-gd: chase update; drop PORTREVISION

Changelog:	http://www.php.net/ChangeLog-5.php#5.5.34

Approved by:	ports-secteam (with hat)
Security:	https://vuxml.FreeBSD.org/freebsd/482d40cb-f9a3-11e5-92ce-002590263bf5.html
MFH:		2016Q2
2016-04-03 14:19:43 +00:00
Jason Unovitch
927f94f3eb Document multiple vulnerabilities from the 31 Mar 16 PHP releases
PR:		208465
Reported by	Christian Schwarz <me@cschwarz.com>
Security:	https://vuxml.FreeBSD.org/freebsd/482d40cb-f9a3-11e5-92ce-002590263bf5.html
2016-04-03 14:19:01 +00:00
Jason Unovitch
d81521f987 devel/pcre: Add patch to resolve heap overflow vulnerability
PR:		208260
Reported by:	Sevan Janiyan <venture37@geeklan.co.uk>
Approved by:	ports-secteam (with hat)
Obtained from:	PCRE svn (r1636)
Security:	CVE-2016-1283
Security:	https://vuxml.FreeBSD.org/freebsd/497b82e0-f9a0-11e5-92ce-002590263bf5.html
MFH:		2016Q2
2016-04-03 13:43:29 +00:00
Jason Unovitch
ccb5f4c71a Document PCRE heap overflow vulnerability
PR:		208260
Reported by:	Sevan Janiyan <venture37@geeklan.co.uk>
Security:	CVE-2016-1283
Security:	https://vuxml.FreeBSD.org/freebsd/497b82e0-f9a0-11e5-92ce-002590263bf5.html
2016-04-03 13:43:13 +00:00
Thomas Zander
66152c9477 Update to upstream version 9.0.1, retire CURL OPTION
Details:
- Update to upstream version 9.0.1 (released on 2016-03-28
- Update MASTER_SITES
- Retire CURL OPTION. Rationale: curl is not required for mkvtoolnix
  core functionality, but to check for upstream updates. There is little
  use for this feature when distributing software via ports / packages.
2016-04-03 13:23:47 +00:00
Raphael Kubo da Costa
09a24ce117 Re-roll pluginloader entries in distinfo.
The port broke in the beginning of February when upstream uploaded a new
pluginloader tarball to MASTER_SITES.

Since the tarball is unversioned and only contains prebuilt Windows binaries,
here's an attempt at explaining what happened (thanks to Grzegorz Junka for the
investigation):

- Pipelight seems to be really bad at communication. The "News" section on the
  website says 0.2.8 is the latest version.
- The "Compile Pipelight" section says 0.2.8.1 is the latest version.
- 0.2.8.2 was tagged in BitBucket in October 2015 but was never announced
  anywhere on the website, and the project does not seem to have a mailing
  list.
- The pluginloader tarballs, which contain prebuilt Windows binaries for
  Pipelight's src/windows directory, were not updated at the time 0.2.8.2 was
  tagged (the SHA256 checksums match those in the 0.2.8.1 directory in
  MASTER_SITES). This only happened in February 2016, which broke our distinfo.

Note that it is unclear why the pluginloader tarballs were not generated in
October, and since those are binary blobs it is still possible that they do not
correspond to their respective source files. In the future, it would be good to
build those binaries with our MinGW ports instead of relying on those blobs.

PR:		207210
Submitted by:	Piotr Kubaj <pkubaj@anongoth.pl>,
		Grzegorz Junka <list1@gjunka.com>
MFH:		2016Q2
2016-04-03 13:20:21 +00:00
Mathieu Arnold
33e2e58c95 Remove ${PORTSDIR}/, again.
With hat:	tota
Sponsored by:	Absolight
2016-04-03 13:11:01 +00:00
Dmitry Marakasov
898ba9da71 - Switch to options helpers 2016-04-03 12:02:45 +00:00
Dmitry Marakasov
1665f8c1ac - Add LICENSE_FILE
- Switch to options helpers
2016-04-03 12:02:37 +00:00
Dmitry Marakasov
1d32eaa140 - Clarify LICENSE
- Add NO_ARCH
- Switch to options helpers
2016-04-03 12:02:00 +00:00
Dmitry Marakasov
4cac328dae - Switch to options helpers 2016-04-03 12:01:54 +00:00
Dmitry Marakasov
2d7ee0d870 - Switch profiler which depends on x86 assembly off by default, fixing build on arm
PR:		207559
Submitted by:	lightside@gmx.coma (maintainer)
2016-04-03 12:00:26 +00:00
Kurt Jaeger
596e0b1cc7 lang/parrot: 7.9.0 -> 8.1.0
2016-02-16    release 8.1.0
    - Core
        + Annotate needed -Wcast-align fixes (for early armv5 systems)
    - Documentation
        + Fixed typo in move_buffer_callback doc
        + Add missing hyperref package for latex
    - Tests
        + Restore make configure_tests, remove outdated t/steps/auto/labs-01.t

2015-12-15    release 7.11.0
    - Build
        + Improve darwin and cygwin build, seperate installable libparrot.
          GH #1212, 1096
        + Honor --disable-rpath on darwin, skip -install_name then
        + Update default cygwin compiler and linker to gcc with 1.7
        + Add darwin and windows smokers (travis + appveyor), prev. linux only
        + use a smaller default target: core (most parrot_utils, not all)
          make all builds now all, including docs and installables

2015-11-17    release 7.10.0
    - Documentation
        + Accept cperldoc as fallback to perldoc GH #1211
2016-04-03 11:20:55 +00:00
TAKATSU Tomonari
ce0568d6ef - Update to 2.9.0
- Restrict Python version and pyparsing version
- Switch from GOOGLE_CODE to USE_GITHUB
- Add LICENSE section
- Add NO_ARCH
- Update WWW in pkg-descr
- Make portlint happy
- Take maintainership

PR:		208477
Submitted by:	tota@ (myself)
Approved by:	romain@ (maintainer)
2016-04-03 11:00:20 +00:00
Raphael Kubo da Costa
f38cdf7d75 Fix package names in the dependencies added in r412429.
This fixes errors such as:
===>   kipi-plugins-4.2.0_1,1 depends on package: digikam-kde4-doc>=4.2.0 - not found

that effectively broke the port after my previous commit.
2016-04-03 10:41:02 +00:00
Kurt Jaeger
7962caf263 devel/rudiments: 0.54 -> 0.55.0
databases/sqlrelay: 0.64 -> 0.65.0

rudiments:
- file::open sets errno=ENOENT if the file or path wasn't found on
  Windows now
- fixed a bug with filedescriptor::printf when printing to non-buffered
  files on Windows and Solaris 11
- fixed a bug that caused a crash in codetree if codeposition is NULL
- added missing dll export clause to codetreegrammar class
- added xmldomevents class
- added namespace discrimination in codetree::write
- fixed a codetree end-of-string-during-concatenation bug
- fixed a codetree tree reset bug
- fixed an xmlsax bug that caused text nodes with empty values to be
  inserted between tag nodes when there is no text between tags
- added escapechar option to filedescriptor::read-until-terminator
  methods
- added a generic securitycontext class and integrated it with
  filedescriptor
- implemented GSS/SSPI and TLS/SSL children of securitycontext
- removed old SSL integration with filedescriptor
- updated inet/unixsocketclient to close() as the first step of connect()
- updated charstring::to(Unsigned)Integer-with-endptr methods to have
  const char **endptr arguments
- updated configure script to find erlang on openbsd 5.8
- buffers allocated by vasprintf are free()'ed now rather than deleted
- fixed a commandline bug that could cause it to return the next
  parameter for getValue() of a parameter with no value
- fixed connect()/useBlockingMode error masking bug
- removed -revision during link and adopted Semantic Versioning 2.0
- added pthread_create/EAGAIN retry
- added methods to configure and examine process::fork and thread::run
  retry behavior
- thread methods test for invalid thread before operating on it now
- charstring::split doesn't crash if list or listlength are null now
- added debugprint header
- removed problematic thread::cancel() method
- added thread::runDetached() methods
- removed useBlockingMode() call in stdio constructor as is caused
  problems with apps like Apache that actually need stdin/out/err
  to be in non-blocking mode sometimes

sqlrelay:
- removed erroneous SQLR_SQLExecute export in ODBC driver
- fixed call type of internal ODBC driver functions and made them static
- fixed --disable-API flags in configure.vbs
- fixed bad user/password copy logic in ODBC SQLConnect function
- added missing default implementation of
  sqlrservercursor::getColumnTypeName()
- added parser debug option
- normalize translation can convert foreign decimals now
- updated missing-tnsnames.ora warning
- updated sqlr-start and sqlr-scaler to run programs using fully
  qualified path names
- fixed query timer in sqlrsh
- add timer="query/command" parameter to slowqueries logger
- added odbcversion parameter to ODBC connection
- updated erlang api to use the C++ compiler to link (for netbsd 7.0)
- added major-version check to node.js api for node 4.x+
- ODBC driver's SQLGetData can deal with NULL targetvalue now
- fixed normalize || bug
- fixed normalize bug that removed spaces around * for "all columns"
  improperly
- removed freetds warning, modern sybase has different library file names
- updates to support python3
- added several --disable options to the configure script for unix/linux
- removed sqlr-fields/sqlr-query and updated sqlrsh to provide the same
  functionality
- removed antiquated sqlrelay.dtd
- moved default example directory to share/sqlrelay/examples
- sqlrelay.conf example is installed under example directory now
- Python DB -> Python DB-API in the docs
- moved private members and support classes into C++ API's .cpp files
- removed -revision during link and adopted Semantic Versioning 2.0
- added missing get*List methods to Java API
- removed errant information_schema views from getTableList with mysql
- refactored listenertimeout to use timed semaphore ops and only fall
  back to an alarm if the system doesn't support timed sem ops
  and the instance isn't configured to use threads
- fixed inode-check in logger modules - works correctly with logrotate
- change "an error occurred" to "server closed connection" to reduce
  false-positives from log analyzers - "real" errors will still
  be reported elsewhere
- refactored the config file parser
- added support for kerberos authentication and encryption
- added krb_userlist auth module
- renamed "authentication" to "auth" (for authentication/authorization,
  also matches module name prefix) in config file and docs
- removed an errant flushWriteBuffer after client auth
- moved debugprint stuff into rudiments
- added support for tls authentication and encryption
- added tls_userlist auth module
- fixed long-standing copyrefs bug
- when calling after-triggers, "success" flag is set correctly now
- fixed bug where after-triggers could mask failed queries
- added support for "before and after" triggers
- moved call to set stdinput to use blocking mode from
  rudiments::stdiofiledescriptor to sqlrsh, as doing it in every
  case caused problems with apps like Apache, which need
  stdin/out/err to be in non-blocking mode sometimes (fixes bug
  where PHP's that used the SQL Relay API would cause apache
  workers to hang closing connections after a graceful restart)
- made auth_database module always re-login
- added auth_proxied module to support Oracle's (and potentially other
  databases') n-tier/proxied authentication
- fixed a long-standing bug where passwords weren't checked when
  switching between oracle n-tier authenticated users
2016-04-03 10:17:44 +00:00
Emanuel Haupt
fac6479b25 Update to 4.06
Approved by:	lx (maintainer)
2016-04-03 09:49:38 +00:00
Gerald Pfeifer
26e50a29f4 Update to the 20160329 snapshot of GCC 5. A fair number of fixes
backported from the GCC 6/trunk line.
2016-04-03 08:21:14 +00:00
Kurt Jaeger
e6b2a1e5dd devel/py-raven: 5.11.2 -> 5.12.0
- Empty and otherwise falsy (None, False, 0) DSN values are now assumed
  to be equivalent to no DSN being provided.
2016-04-03 08:04:42 +00:00
Kurt Jaeger
74dd767e99 devel/antlr4: 4.5.2 -> 4.5.3
- New grammar option: contextSuperClass. All parse tree internal
  nodes will derive from this. Default is ParserRuleContext. Should
  derive from ultimately RuleContext at minimum. Java target can use
  contextSuperClass=org.antlr.v4.runtime.RuleContextWithAltNum for
  convenience. It adds a backing field for altNumber, the alt matched
  for the associated rule node.
- Added getMaxTokenType() to Vocabulary interface

Full list of changes:
  https://github.com/antlr/antlr4/pulls?q=milestone%3A4.5.3+is%3Aclosed+is%3Apr
2016-04-03 07:59:16 +00:00
Kurt Jaeger
3961f4b443 devel/lfcbase: 1.8.0 -> 1.8.1
databases/cego: 2.29.3 -> 2.30.2

Changes:
- Fix in CegoAction and CegoDbHandler to handle query abort requests correctly
  ( initiated by cgadm via abort db thread command )
- Fix in CegoDistCursor for query plan calculation ( join objects )
- Fix in CegoAdminThreadPool and CegoLogThreadPool for thread load
  calculation
- Major change for tablecache and querycache management,
  for both dedicated tableset entries are managed. Cache enabling,
  cache size and num entries can be controlled now on tableset level.
- Fixes for date format handling. The format string whihc is specified
  for the server is also used now for client formatting. This results
  in some network protocol fixes for serial but also xml network
  protocol.
- Changed default protocol from xml to serial. Date format handling
  completely implemented

Submitted by:	Bjoern Lemke <lemke@lemke-it.com>
2016-04-03 07:52:02 +00:00
Kurt Jaeger
fe894a6511 security/tls-check: seperate TEST_DEPENDS from other DEPENDS
Submitted by:	adamw
2016-04-03 07:30:52 +00:00
Sergey A. Osokin
9725643770 Upgrade third-party brotli module from 86998c6 to 2fc6f12.
Changes:	2fc6f123b4
2016-04-03 05:48:43 +00:00
Sergey A. Osokin
37404b97d0 Upgrade from 1.9.12 to 1.9.13.
Remove needless vendor's patches.

<ChangeLog>

*) Change: non-idempotent requests (POST, LOCK, PATCH) are no longer
   passed to the next server by default if a request has been sent to a
   backend; the "non_idempotent" parameter of the "proxy_next_upstream"
   directive explicitly allows retrying such requests.

*) Feature: the ngx_http_perl_module can be built dynamically.

*) Feature: UDP support in the stream module.

*) Feature: the "aio_write" directive.

*) Feature: now cache manager monitors number of elements in caches and
   tries to avoid cache keys zone overflows.

*) Bugfix: "task already active" and "second aio post" alerts might
   appear in logs when using the "sendfile" and "aio" directives with
   subrequests.

*) Bugfix: "zero size buf in output" alerts might appear in logs if
   caching was used and a client closed a connection prematurely.

*) Bugfix: connections with clients might be closed needlessly if
   caching was used.
   Thanks to Justin Li.

*) Bugfix: nginx might hog CPU if the "sendfile" directive was used on
   Linux or Solaris and a file being sent was changed during sending.

*) Bugfix: connections might hang when using the "sendfile" and "aio
   threads" directives.

*) Bugfix: in the "proxy_pass", "fastcgi_pass", "scgi_pass", and
   "uwsgi_pass" directives when using variables.
   Thanks to Piotr Sikora.

*) Bugfix: in the ngx_http_sub_filter_module.

*) Bugfix: if an error occurred in a cached backend connection, the
   request was passed to the next server regardless of the
   proxy_next_upstream directive.

*) Bugfix: "CreateFile() failed" errors when creating temporary files on
   Windows.

</ChangeLog>
2016-04-03 05:33:13 +00:00
Alexey Dokuchaev
05a09f12a3 Update to version 1.6.0. 2016-04-03 05:24:35 +00:00
Sergey A. Osokin
922d339841 Enable several vendor's modules to be in sync with vendor's
original packages for some linux distros, please see
http://nginx.org/en/linux_packages.html for detauls.

Bump PORTREVISION.
2016-04-03 05:23:19 +00:00
Sergey A. Osokin
817ca4e7b3 Enable several vendor's modules to be in sync with vendor's
original packages for some linux distros, please see
http://nginx.org/en/linux_packages.html for detauls.

Bump PORTREVISION.
2016-04-03 05:22:46 +00:00
Carlos J. Puga Medina
53dc74803b security/py-{letsencrypt,acme}: Update to 0.4.2
- Update py-acme and py-letsencrypt ports.

Approved by:	koobs (maintainer, letsencrypt)
2016-04-03 04:48:22 +00:00
Jason Unovitch
65283680a9 Document djblets vulnerability from the 0.9.2 release notes
Security:	https://vuxml.FreeBSD.org/freebsd/df328fac-f942-11e5-92ce-002590263bf5.html
2016-04-03 02:27:46 +00:00
Carlos J. Puga Medina
d259dc3584 - Update to 0.10.0
- Update MAINTAINER to my @FreeBSD.org address
- Update GUI dependency to GTK3
- Add EXAMPLES option
- Fix pkg-plist

Changelog:

http://lists.gnu.org/archive/html/pspp-announce/2016-03/msg00000.html

Approved by:	junovitch (mentor)
2016-04-03 02:20:14 +00:00
Carlos J. Puga Medina
32ba3aae3c - Update to 0.8
- Update MAINTAINER to my @FreeBSD.org address

Approved by:	junovitch (mentor)
2016-04-03 02:17:52 +00:00
Jason Unovitch
dffec6cc8d Document multiple security advisories for Moodle
Security:	CVE-2016-2151
Security:	CVE-2016-2152
Security:	CVE-2016-2153
Security:	CVE-2016-2154
Security:	CVE-2016-2155
Security:	CVE-2016-2156
Security:	CVE-2016-2157
Security:	CVE-2016-2158
Security:	CVE-2016-2159
Security:	CVE-2016-2190
Security:	https://vuxml.FreeBSD.org/freebsd/a430e15d-f93f-11e5-92ce-002590263bf5.html
2016-04-03 02:11:52 +00:00
Jason Unovitch
3324d4936d Add additional reference URL for Kamailio entry from r411376
Security:	CVE-2016-2385
Security:	https://vuxml.FreeBSD.org/freebsd/c428de09-ed69-11e5-92ce-002590263bf5.html
2016-04-03 00:48:24 +00:00
Dmitry Marakasov
0380f5e917 - Add LICENSE_FILE
- Switch to options helpers
2016-04-03 00:38:12 +00:00
Dmitry Marakasov
42b5064acc - Add LICENSE_FILE
- Switch to USES=tar:tgz
- Switch to options helpers
- Regenerate patches with `make makepatch`
2016-04-03 00:27:19 +00:00
Jason Unovitch
249e429010 Document squid multiple vulnerabilities
PR:		208463
Security:	CVE-2016-3947
Security:	CVE-2016-3948
Security:	https://vuxml.FreeBSD.org/freebsd/297117ba-f92d-11e5-92ce-002590263bf5.html
2016-04-03 00:00:26 +00:00
Muhammad Moinur Rahman
71ee51aa48 databases/freetds-devel: Update version 0.99.614=>0.99.640 2016-04-02 22:25:09 +00:00
Kurt Jaeger
d2522fcf35 security/tls-check: patch is no longer necessary 2016-04-02 20:39:25 +00:00
Kurt Jaeger
8fbe1271f4 security/tls-check: use modbuild, not configure
Submitted by:	pi (maintainer)
2016-04-02 20:32:23 +00:00
Kurt Jaeger
804d50d3f9 New port: security/tls-check
Scan a list of domains for TLS-related compliance stats.

WWW: https://github.com/tls-check/TLS-Check
2016-04-02 20:14:29 +00:00
Muhammad Moinur Rahman
a87119b967 databases/freetds: Update version 0.95.87=>0.95.91 2016-04-02 19:41:53 +00:00
Raphael Kubo da Costa
9c8557bd56 Fix the dependencies for the DOCS and NLS options.
The current code was a no-op because it was left out of the options helper
conversion in r340628.
2016-04-02 19:02:15 +00:00
Adam Weinberger
ce30e8d286 Add devel/p5-namespace-clean-xs, essentially a drop-in replacement for
devel/p5-namespace-clean, but in XS and with no dependencies.

WWW: https://metacpan.org/pod/namespace::clean::xs
2016-04-02 17:32:53 +00:00