Pkgsrc changes:
* for zabbix-frontend, adjust PLIST
Upstream changes:
Changes for 3.4.12
3.4.12rc1 was released as 3.4.12 without any changes
------------------------------
Changes for 3.4.12rc1
Bug fixes:
........S. [ZBX-14548] fixed the disk usage counters reading for
ESX/ESXi hosts (MVekslers)
..F....... [ZBX-9236] fixed timeselector period used to select 'all'
values of particular item (miks)
...G...... [ZBX-13393] fixed agent compilation error on AlphaServer
Tru64 5.1B (Andris)
..F....... [ZBX-13165] fixed Y-axis small value gradation issue in
graphs (Ivo)
..F....... [ZBX-14575] fixed Norwegian locale key for windows (vmurzins)
.......PS. [ZBX-14566] fixed possible data loss due to MariaDB
server restart (vso)
.......PS. [ZBX-13010] fixed crash of poller processes in ODBC
checks, simplified code (Andris, wiper)
....I..... [ZBX-14370] fixed deleting of files after compiling a
program (make clean) for Solaris (MVekslers)
..F....... [ZBX-14519] fixed displaying timeline points of days in
Problems widget (vasilijs)
..F....... [ZBX-14491] fixed link "show value mappings", which leads
to no permission page (vasilijs)
........S. [ZBX-12380] improved function parameter parsing for
trigger functions (MVekslers)
..F....... [ZBX-13641] disabled preprocessing update for discovered
items (vasilijs)
A......... [ZBX-13732] fixed status change for linked template items
through parent template if host assigned (agriscenko)
..F....... [ZBX-14432] removed redundant code and improved
performance in event details screen (miks)
........S. [ZBX-14410] improved error message handling in
zbx_function_find() (MVekslers)
........S. [ZBX-14500] fixed crash when reporting unknown triggers
and using $1-$9 macros at the same time (vso)
..F....... [ZBX-12104] added limit ZBX_HISTORY_PERIOD for
{ITEM.VALUE} macro resolving in trigger name (gcalenko)
..F....... [ZBX-14402] fixed internal item parameter that does not
match documentation (vasilijs)
------------------------------
Changes for 3.4.11
New features:
A.F....... [ZBX-1357] added and enabled Norwegian translation to be
displayed by default (zalex_ua)
A.F....... [ZBX-1357] updated English (United States), French,
Hebrew, Japanese, Portuguese (Brazil), Russian, Ukrainian
translations; thanks to Zabbix translators (zalex_ua)
------------------------------
Changes for 3.4.11rc1
Bug fixes:
...G...... [ZBX-6046] fixed the functions 'net.if.*' for Solaris
with empty 64 bits counters (MVekslers)
A.F....... [ZBX-13355] fixed media type a required password field
successfully passing validation while being empty and
prevented auto-filling stored passwords by browser (Ivo)
.D........ [ZBX-14398] improved "Server" parameter description in
Zabbix agent configuration file (vso)
.......PS. [ZBX-14447] reverted ZBX-13788 fix because of broken
server-proxy compatibility between minor versions (wiper)
...G...... [ZBX-12250] fixed logrt[] item to analyze log file from
start if no log files match and no log files were seen
before (Andris)
.......PS. [ZBX-13765] fixed discovered host status update if it was
down and a service was discovered on that host (Andris)
...G...... [ZBX-12070] fixed "proc.num" and "proc.mem" items
calculation of values when zabbix_agentd called in test
mode (Sergejs)
........S. [ZBX-14423] fixed use of initialized variable during
application discovery (vso)
.......PS. [ZBX-12990] improved "vmware.hv.datastore.size" through
usage the performance counters (MVekslers)
------------------------------
Changes for 3.4.10
3.4.10rc1 was released as 3.4.10 without any changes
------------------------------
Changes for 3.4.10rc1
Bug fixes:
..F....... [ZBX-14414] fixed PHP 7.2 error message in the
Monitoring->Latest data page (Sasha)
A.F....... [ZBX-13712] fixed "Undefined index: master_itemid" and
SQL errors in item.update and itemprototypr.update
methods; fixed updating of discovered items (Sasha)
..F....... [ZBX-13549] fixed displaying of not monitored triggers in
maps (miks)
..F....... [ZBX-12359] fixed "Automatic icon selection" checkbox not
working and displaying two icons at once in map
constructor (Ivo)
........S. [ZBX-14333] fixed {ESC.HISTORY} and action log not to
display colon without target host when executed on Zabbix
server (vso)
A.F....... [ZBX-13361] fixed error messages when configuring an
existing item to have an update interval (miks)
........S. [ZBX-13043] removed error message for when user has
defined media but all of them are disabled (viktors)
........S. [ZBX-14312] fixed possible deadlock in history syncer
when housekeeper is deleting events (vso)
..F....... [ZBX-13697] fixed session expiration when changing
default authentication method (miks)
A.F....... [ZBX-13680] fixed action not being cloned due to existing
operation id being submitted (agriscenko)
..F....... [ZBX-13775] fixed map tree widget border color (Andzs)
...G...PS. [ZBX-13782] fixed decoding of Unicode characters in JSON
(Andris)
..F....... [ZBX-13767] fixed "undefined index: acknowledges" error
on problems page (agriscenko)
..F....... [ZBX-12175] fixed subfilter entries with long names going
off the screen (agriscenko, Andzs)
..F....... [ZBX-12644] fixed filter being partially reset when using
pagination in availability report page (Ivo)
..F....... [ZBX-12882] fixed in popup window being allowed to select
applications from different hosts when editing item mass
update form (agriscenko)
.......PS. [ZBX-13788] fixed host availability stuck in unknown
state after proxy changes (wiper)
........S. [ZBX-12372] fixed duplication of prefix "/" for second
parameter "path" in items "web.page.*" (MVekslers)
...G...... [ZBX-14315] fixed validation of "max_depth" in
"vfs.dir.size" for agent (MVekslers)
------------------------------
Changes for 3.4.9
3.4.9rc3 was released as 3.4.9 without any changes
------------------------------
Changes for 3.4.9rc3
Bug fixes:
........S. [ZBX-14313] fixed trigger level correlation when multiple
tags are set (wiper)
------------------------------
Changes for 3.4.9rc2
Bug fixes:
...G...... [ZBX-13781] fixed possible crash in the function
"web.page.get" of Zabbix Agentd (MVekslers)
------------------------------
Changes for 3.4.9rc1
Bug fixes:
..F....... [ZBX-14337] fixed persistent xss in map navigation tree
widget (vjaceslavs)
..F....... [ZBX-14336] fixed persistent xss vulnerability in
services (vjaceslavs)
..F....... [ZBX-12821] fixed multiple javascript memory leaks (miks)
........S. [ZBX-13755] fixed proxy lastaccess update on 32-bit
Zabbix server (vso)
..F....... [ZBX-12425] fixed selection of web items in the "Plain
text" screen element (Sasha)
...G...... [ZBX-13781] fixed CRLF injection in Zabbix Agentd (MVekslers)
........S. [ZBX-13766] fixed comparison of two large float numbers
in expressions (Sergejs)
.......PS. [ZBX-13481] fixed incorrect parsing of BITS data type in
SNMP response (vso)
.......PS. [ZBX-13744] fixed potential shared memory leak when item
is removed (Sergejs)
A.F....... [ZBX-13742] fixed parsing of the operator "not" in
trigger expression (Sasha)
.........T [ZBX-13535] fixed trigger recovery expression for 'High
error rate' trigger (vitaly)
.........T [ZBX-13278] fixed trigger expression for 'Link down'
trigger (vitaly)
...G...... [ZBX-12805] increased command line limit for proc.num
checks on hp-ux systems (Andris, wiper)
..F....... [ZBX-13728] fixed problem duration on trigger page being
calculated incorrectly (agriscenko)
...G...PS. [ZBX-13660] fixed data types passed to is_ushort() for
converting PID, port and process number (Andris)
..F....... [ZBX-12935,ZBX-13539] fixed displaying of floating point
values under the "Latest data" page (Sasha)
...G...PS. [ZBX-13579] fixed unnecessary data getting when agent
becomes available in the non-collection data period
(Sergejs)
..F....... [ZBX-13685] fixed maintenance entries displayed in list
when filter is applied (agriscenko)
....I..... [ZBX-12756] improved configure script to check iconv
library (MVekslers)
........S. [ZBX-13667] added notification in zabbix server log about
'error' in elasticsearch json response (MVekslers)
..F....... [ZBX-13683] fixed multiselect items not being sorted by
name (agriscenko)
........S. [ZBX-13299] fixed autoregistration, discovery and
internal notifications not being sent due to
uninitialized severity (vso)
....I..... [ZBX-13607] changed ping script to return success also
for timeouts (wiper)
..F....... [ZBX-12967] fixed slide show refresh interval multiplier
menu not working (agriscenko)
........S. [ZBX-13696] added maximum record limit to old session
removal in housekeeper (wiper)
..F....... [ZBX-13642] fixed undefined index in user edit form
(agriscenko)
..F....... [ZBX-13668] fixed dynamic widget searching for item key
in item prototypes (agriscenko)
..F....... [ZBX-13500] fixed fractional values in triggers being
misinterpreted without a leading 0 (agriscenko)
..F....... [ZBX-13561] fixed incorrectly displayed pie graph when
first item has no data (Ivo)
..F....... [ZBX-13517] fixed undefined index in pie charts (Ivo)
..F....... [ZBX-13499] fixed checkbox selector in problems table
(ashubin, miks)
........S. [ZBX-13598] fixed crash when Zabbix process cannot
connect to preprocessing service (viktors, vso)
..F....... [ZBX-13625] fixed blinking in the problem widget (agriscenko)
..F....... [ZBX-13560] fixed acknowledge notifications being visible
in the event popup (agriscenko)
..F....... [ZBX-13298] fixed missing graph after faulty graph edit
form submission (nikita)
pkgsrc changes:
- Add patch for NetBSD 8 support
- Update patches to note they can be removed in the next release
- Fix existing patch so it doesn't crash when running with swap enabled
Changes:
Version 2018.3.2 is a bugfix release for 2018.3.0.
The 2018.3.2 release contains only a small number of fixes, which are
detailed below.
This release fixes two critical issues.
The first is Issue #48038, which is a critical bug that occurs in a
multi-syndic setup where the same job is run multiple times on a minion.
The second issue is #48130. This bug appears in certain setups where the
Master reports a Minion time-out, even though the job is still running
on the Minion.
Both of these issues have been fixed with this release.
authentication schemes.
The qpasswd tools are meant for use with checkpassword-compatible
authentication programs like qmail-popup and qmail-smtpd. Currently, the
following auth mechanisms are supported: plain, login, apop, cram-md5,
cram-sha1, cram-ripemd, and digest-md5. The tools:
- multicheckpw (runs multiple checkpassword programs)
- checkqpasswd (for virtual users)
- checkpasswd (for system users in /etc/passwd)
2018-08-01: Avoid OOB read on invalid entry point length
Don't let the entry point checksum verification run beyond the end
of the buffer holding it (32 bytes). This bug was discovered by
Lionel Debroux using the AFL fuzzer and AddressSanitizer.
Signed-off-by: Jean Delvare <jdelvare@suse.de>
2018-08-01: Validate structure completeness before decoding
Ensure that the whole DMI structure fits in the announced table
length before performing any action on it. Otherwise we might end
up reading beyond the end of our memory buffer. This bug was
discovered by Lionel Debroux using the AFL fuzzer and
AddressSanitizer. Its probability is very low, as it requires a DMI
table corrupted in one of two very specific ways to trigger. This
bug exists since dmidecode version 2.9, although it is hard to
test because option --from-dump was only introduced in version
2.10.
Signed-off-by: Jean Delvare <jdelvare@suse.de>
## 1.2.2 (July 30, 2018)
SECURITY:
- acl: Fixed an issue where writes operations on the Keyring and
Operator were being allowed with a default allow policy even when
explicitly denied in the policy.
FEATURES:
- **Alias Checks:** Alias checks allow a service or node to alias the
health status of another service or node in the cluster.
- agent: New Cloud Auto-join providers: vSphere and Packet.net.
- cli: Added `-serf-wan-port`, `-serf-lan-port`, and `-server-port`
flags to CLI for cases where these can't be specified in config
files and `-hcl` is too cumbersome.
- connect: The TTL of leaf (service) certificates in Connect is now
configurable.
IMPROVEMENTS:
- proxy: With `-register` flag, heartbeat failures will only log once
service registration succeeds.
- http: 1.0.3 introduced rejection of non-printable chars in HTTP URLs
due to a security vulnerability. Some users who had keys written
with an older version which are now dissallowed were unable to delete
them. A new config option disable_http_unprintable_char_filter is
added to allow those users to remove the offending keys. Leaving this
new option set long term is strongly discouraged as it bypasses
filtering necessary to prevent some known vulnerabilities.
- agent: Allow for advanced configuration of some gossip related
parameters.
- agent: Make some Gossip tuneables configurable via the config file
- ui: Included searching on `.Tags` when using the freetext search
field.
- ui: Service.ID's are now shown in the Service detail page and (only
if it is different from the service name) the Node Detail >
[Services] tab.
BUG FIXES:
- acl/connect: Fix an issue that was causing managed proxies not to
work when ACLs were enabled.
- connect: Fix issue with managed proxies and watches attempting to
use a client addr that is 0.0.0.0 or ::
- connect: Allow Native and Unmanaged proxy configurations via config
file
- connect: Fix bug causing 100% CPU on agent when Connect is disabled
but a proxy is still running
- proxy: Don't restart proxies setup in a config file when Consul
restarts
- ui: Display the Service.IP address instead of the Node.IP address in
the Service detail view.
- ui: Watch for trailing slash stripping 301 redirects and forward the
user to the correct location.
- connect: Fixed an issue in the connect native HTTP client where it
failed to resolve service names.
## 1.2.1 (July 12, 2018)
IMPROVEMENTS:
- acl: Prevented multiple ACL token refresh operations from occurring
simultaneously.
- acl: Add async-cache down policy mode to always do ACL token
refreshes in the background to reduce latency.
- proxy: Pass through HTTP client env vars to managed proxies so that
they can connect back to Consul over HTTPs when not serving HTTP.
- connect: Persist intermediate CAs on leader change.
BUG FIXES:
- api: Intention APIs parse error response body for error message.
- agent: Intention read endpoint returns a 400 on invalid UUID
- agent: Service registration with "services" does not error on
Connect upstream configuration.
- dns: Ensure that TXT RRs dont get put in the Answer section for
A/AAAA queries.
- dns: Ensure that only 1 CNAME is returned when querying for services
that have non-IP service addresses.
- api: Fixed issue where `Lock` and `Semaphore` would return earlier
than their requested timeout when unable to acquire the lock.
- watch: Fix issue with HTTPs only agents not executing watches
properly
- agent: Managed proxies that bind to 0.0.0.0 now get a health check
on a sane IP
- server: (Consul Enterprise) Fixed an issue causing Consul to panic
when network areas were used
- license: (Consul Enterprise) Fixed an issue causing the snapshot
agent to log erroneous licensing errors
2018.07.29: I hereby place the checkpassword package (in particular,
checkpassword-0.90.tar.gz, with SHA-256 checksum
74300364b6be26be08e34f768532e911789827179e680bc89db3525fe415762f) into
the public domain. The package is no longer copyrighted.
Edit the tool to have a useful version identifier - avoiding any
attempts for repository-management tools to perform substitution on
$Revision$ and $Date$
Note that there is a bug in 4.11 (also present in recent 4.6 and 4.8)
which causes an infrequent assert failure when running NetBSD PV guests.
The root cause has not been found, but a workaround is inclued which doesn't
seems to have ill effects. See xenkernel411/patches/patch-zz-bouyer
for details.
On my system, these patches stop xfsettingsd (from XFCE) from crashing
and dumping core during session startup. Thus, it can actually apply the
settings it is supposed to.
I just wish upstream had done a bugfix release, the patches are from 2016 :(
Fixes PR pkg/53455, which I filed :)
ok youri@
pkgsrc changes:
- Remove all patches (no longer needed)
Changes:
1.3.3
-----
* Feature: Expand ~ in DOTFILES_DIR hooks (Eric Collins).
1.3.2
-----
* BUGFIX: Use =, not ==, in test(1) (Florian Tham).
* BUGFIX: Directories with spaces in rcup(1) (Florian Tham).
* BUGFIX: Fallback the LOGNAME from whoami (AJ Villalobos, Mike Burns).
* BUGFIX: Fix cd for paths beginning with hyphen (-) (Christian Höltje).
* Feature: Expand ~ in DOTFILES_DIR (Rebecca Meritz).
* Documentation improvements (Alan Yee, Eric Collins, Florian Tham, kajisha,
Matthew Horan, maxice8, Mike Burns, Rebecca Meritz, Scott Stevenson,
Tyson Gach, Yota Toyama).
- This version disables liblogging-stdlog by default. We now also
emit a warning message ("liblogging-stdlog will go away") so that
users know what is going on and my react.
- add openssl driver alongside GnuTLS one for TLS (experimental)
- GnuTLS TLS driver: support intermediate certificates
- omelasticsearch: write op types; bulk rejection retries
- lookup tables: reload message now with "info" severity (was "error")
- imptcp: add support for regex-based framing
- imjournal: add statistics counter
- config: permit 4-digit file creation modes
- ommongodb: add possibility to ignore some insertion error code
- omprog: simplify 'plugin-with-feedback.py' example
- core: misadressing when writing disk queue files
- core: fix message loss on target unavailibility during shutdown
- imrelp bugfix: error message "librelp too old" is always emitted ...
- imrelp: segfault on startup when cert without priv key is configured
- omrelp bugfix: segfault on first message sent when authmode was
wrong
- imfile bugfix: double-free on module shutdown
- imfile/core bugfix: potential misadressing in string copy routine
- imfile bugfix: if freshStartTail is set some initial file lines
missing
- core: fix undefined behaviour (unsigned computation may lead to
value < 0)
Changes:
0.19.1:
fixed the tar file to include ALL the files in the init directory
0.19.0:
Release 0.19.0 adds a bunch of documentation updates as well as:
a 10 minute timeout for mbuffer since many systems are way slower than we expected
a larger blocksize for mbuffer
a system v init script
an rpm spec file
do not start if no backups/snaps are configured
customized upstart and systemd startup files
5.4.6:
Bug fixes
- [Windows] Process.username() may cause a segfault (Python interpreter
crash).
- net_if_addr() namedtuple's name has been renamed from "snic" to
"snicaddr".
- [Linux] there was a small chance Process.children() may swallow
AccessDenied exceptions.
Performing substitutions during post-patch breaks tools such as mkpatches,
making it very difficult to regenerate correct patches after making changes,
and often leading to substituted string replacements being committed.