Commit graph

114620 commits

Author SHA1 Message Date
joerg
08e238e949 Use libnbcompat and fix build issues on Solaris.
Don't depend on sin_len. Slightly factor out code for setting
non-blocking IO.

Bump to pbulk-0.2. Tested by dmcmahill@.
2007-06-25 21:38:43 +00:00
dmcmahill
bb42376c1c make sure guile can find its loadable modules 2007-06-25 21:36:18 +00:00
joerg
eadd1213a4 More portability workarounds in libnbcompat. 2007-06-25 21:36:17 +00:00
dmcmahill
0e15e6e564 fix PLIST and WRKSRC for the sparc version 2007-06-25 21:35:48 +00:00
joerg
c13f697f19 Add asprintf implementation based on snprintf.
Add vsnprintf prototype as the function is implemented and used.
Add all the macros from NetBSD's sys/queue.h defined for the types
implemented.
Bump version to libnbcompat-20070622.

Tested by dmcmahill@NetBSD.org on Solaris.
OK jlam@, agc@
2007-06-25 21:35:03 +00:00
joerg
2e2abb6ffb Fix build on DragonFly 1.8+. 2007-06-25 21:18:52 +00:00
rillig
877c171288 Shell scripts should not use the += operator for variable assignments.
In this case, the += operator appears in an embedded AWK script, so it
is ok.
2007-06-25 21:18:37 +00:00
lkundrak
7f99e6c64f Fix for CVE-2007-3360 security flaw. 2007-06-25 14:17:53 +00:00
lkundrak
894333673c Fix for a security issue, CVE-2007-3360. A malicious server could direct
the client into executing arbitrary code.
2007-06-25 14:15:21 +00:00
tron
e9fe55194e Fix build problems with GCC 4.x if netboot support is enabled.
Patches provided by Dieter Roelants in PR pkg/36549.
2007-06-25 13:05:56 +00:00
joerg
a83b9335ce OpenBSD is "special" as it doesn't have bzip2. 2007-06-25 10:53:21 +00:00
tls
36ca7970b3 Fix privilege-escalation vulnerability with PKG_OPTIONS.sudo=kerberos:
cleanse environment of variables that alter behavior of Kerberos library
so the user can't override the default keytab location, and do *not*
ignore missing keytab errors.  Prevents root compromise via spoofed KDC
on systems with Kerberos libraries but no host key in keytab, no keytab,
or keytab overidden via environment.

Don't insist that the keytab key be DES -- some Kerberos sites are 3DES/AES
only.

Somewhat less invasive than the fix Todd incorporated into the 1.6.9 branch
of sudo (presently beta) but equivalent (though not as clean).
2007-06-25 09:53:42 +00:00
jmmv
035ecc47a4 Note revision bump for monotone-server to 1. 2007-06-24 20:56:04 +00:00
jmmv
d387b0550a Fix this package to adhere to the "new" monotone behavior. It has probably
been broken since monotone 0.32...
2007-06-24 20:55:27 +00:00
abs
c12a34c870 Updated mail/exim to 4.67 2007-06-24 10:56:56 +00:00
abs
214bbd8234 Update mail/exim to 4.67:
Prompted by report from Peter Avalos that exim 4.66 would not build
	against openssl 0.9.8e

Changelog:

MH/01 Fix for bug #448, segfault in Dovecot authenticator when interface_address
      is unset (happens when testing with -bh and -oMi isn't used). Thanks to
      Jan Srzednicki.

PH/01 Added a new log selector smtp_no_mail, to log SMTP sessions that do not
      issue a MAIL command.

PH/02 In an ACL statement such as

        deny dnslists = X!=127.0.0.2 : X=127.0.0.2

      if a client was not listed at all, or was listed with a value other than
      127.0.0.2, in the X list, but was listed with 127.0.0.2 in the Y list,
      the condition was not true (as it should be), so access was not denied.
      The bug was that the ! inversion was incorrectly passed on to the second
      item. This has been fixed.

PH/03 Added additional dnslists conditions == and =& which are different from
      = and & when the dns lookup returns more than one IP address.

PH/04 Added gnutls_require_{kx,mac,protocols} to give more control over the
      cipher suites used by GnuTLS. These options are ignored by OpenSSL.

PH/05 After discussion on the list, added a compile time option ENABLE_DISABLE_
      FSYNC, which compiles an option called disable_fsync that allows for
      bypassing fsync(). The documentation is heavily laced with warnings.

SC/01 Updated eximstats to collate all SpamAssassin rejects into one bucket.

PH/06 Some tidies to the infrastructure of the Test Suite that is concerned
      with the auxiliary C programs that it uses: (1) Arrange for BIND_8_COMPAT
      to be defined when compiling on OSX (Darwin); (2) Tidies to the Makefile,
      including adding "make clean"; (3) Added -fPIC when compiling the test
      dynamically loaded module, to get rid of a warning.

MH/02 Fix for bug #451, causing paniclog entries to be written if a bounce
      message fails, move_frozen_messages = true and ignore_bounce_errors_after
      = 0s. The bug is otherwise harmless.

PH/07 There was a bug in the dovecot authenticator such that the value of
      $auth1 could be overwritten, and so not correctly preserved, after a
      successful authentication. This usually meant that the value preserved by
      the server_setid option was incorrect.

PH/08 Added $smtp_count_at_connection_start, deliberately with a long name.

PH/09 Installed PCRE release 7.0.

PH/10 The acl_not_smtp_start ACL was, contrary to the documentation, not being
      run for batched SMTP input. It is now run at the start of every message
      in the batch. While fixing this I discovered that the process information
      (output by running exiwhat) was not always getting set for -bs and -bS
      input. This is fixed, and it now also says "batched" for BSMTP.

PH/11 Added control=no_pipelining.

PH/12 Added $sending_ip_address and $sending_port (mostly Magnus Holmgren's
      patch, slightly modified), and move the expansion of helo_data till after
      the connection is made in the smtp transport (so it can use these
      values).

PH/13 Added ${rfc2047d: to decoded RFC 2047 strings.

PH/14 Added log_selector = +pid.

PH/15 Flush SMTP output before delaying, unless control=no_delay_flush is set.

PH/16 Add ${if forany and ${if forall.

PH/17 Added dsn_from option to vary the From: line in DSNs.

PH/18 Flush SMTP output before performing a callout, unless control =
      no_callout_flush is set.

PH/19 Change 4.64/PH/36 introduced a bug: when address_retry_include_sender
      was true (the default) a successful delivery failed to delete the retry
      item, thus causing premature timeout of the address. The bug is now
      fixed.

PH/20 Added hosts_avoid_pipelining to the smtp transport.

PH/21 Long custom messages for fakedefer and fakereject are now split up
      into multiline reponses in the same way that messages for "deny" and
      other ACL rejections are.

PH/22 Applied Jori Hamalainen's speed-up changes and typo fixes to exigrep,
      with slight modification.

PH/23 Applied sieve patches from the maintainer "tracking the latest notify
      draft, changing the syntax and factoring some duplicate code".

PH/24 When the log selector "outgoing_port" was set, the port was shown as -1
      for deliveries of the second and subsequent messages over the same SMTP
      connection.

PH/25 Applied Magnus Holmgren's patch for ${addresses, ${map, ${filter, and
      ${reduce, with only minor "tidies".

SC/02 Applied Daniel Tiefnig's patch to improve the '($parent) =' pattern match.

PH/26 Added a "continue" ACL modifier that does nothing, for the benefit of its
      expansion side effects.

PH/27 When a message times out after an over-quota error from an Exim-imposed
      quota, the bounce message says "mailbox is full". This message was not
      being given when it was a system quota that was exceeded. It now should
      be the same.

MH/03 Made $recipients available in local_scan(). local_scan() already has
      better access to the recipient list through recipients_list[], but
      $recipients can be useful in postmaster-provided expansion strings.

PH/28 The $smtp_command and $smtp_command_argument variables were not correct
      in the case of a MAIL command with additional options following the
      address, for example: MAIL FROM:<foo@bar> SIZE=1234. The option settings
      were accidentally chopped off.

PH/29 SMTP synchronization checks are implemented when a command is read -
      there is a check that no more input is waiting when there shouldn't be
      any. However, for some commands, a delay in an ACL can mean that it is
      some time before the response is written. In this time, more input might
      arrive, invalidly. So now there are extra checks after an ACL has run for
      HELO/EHLO and after the predata ACL, and likewise for MAIL and RCPT when
      pipelining has not been advertised.

PH/30 MH's patch to allow iscntrl() characters to be list separators.

PH/31 Unlike :fail:, a custom message specified with :defer: was not being
      returned in the SMTP response when smtp_return_error_details was false.
      This has been fixed.

PH/32 Change the Dovecot authenticator to use read() and write() on the socket
      instead of the C I/O that was originally supplied, because problems were
      reported on Solaris.

PH/33 Compile failed with OpenSSL 0.9.8e. This was due to a coding error in
      Exim which did not show up earlier: it was assuming that a call to
      SSL_CTX_set_info_callback() might give an error value. In fact, there is
      no error. In previous releases of OpenSSL, SSL_CTX_set_info_callback()
      was a macro that became an assignment, so it seemed to work. This has
      changed to a proper function call with a void return, hence the compile
      error. Exim's code has been fixed.

PH/34 Change HDA_SIZE in oracle.c from 256 to 512. This is needed for 64-bit
      cpus.

PH/35 Applied a patch from the Sieve maintainer which fixes a bug in "notify".

PH/36 Applied John Jetmore's patch to add -v functionality to exigrep.

PH/37 If a message is not accepted after it has had an id assigned (e.g.
      because it turns out to be too big or there is a timeout) there is no
      "Completed" line in the log. When some messages of this type were
      selected by exigrep, they were listed as "not completed". Others were
      picked up by some special patterns. I have improved the selection
      criteria to be more general.

PH/38 The host_find_failed option in the manualroute router can now be set
      to "ignore", to completely ignore a host whose IP address cannot be
      found. If all hosts are ignored, the behaviour is controlled by the new
      host_all_ignored option.

PH/39 In a list of hosts for manualroute, if one item (either because of multi-
      homing or because of multiple MX records with /mx) generated more than
      one IP address, and the following item turned out to be the local host,
      all the secondary addresses of the first item were incorrectly removed
      from the list, along with the local host and any following hosts (which
      is what is supposed to happen).

PH/40 When Exim receives a message, it writes the login name, uid, and gid of
      whoever called Exim into the -H file. In the case of the daemon it was
      behaving confusingly. When first started, it used values for whoever
      started the daemon, but after a SIGHUP it used the Exim user (because it
      calls itself on a restart). I have changed the code so that it now always
      uses the Exim user.

PH/41 (Following a suggestion from Tony Finch) If all the RCPT commands in a
      message are rejected with the same error (e.g. no authentication or bad
      sender address), and a DATA command is nevertheless sent (as can happen
      with PIPELINING or a stupid MUA), the error message that was given to the
      RCPT commands is included in the rejection of the DATA command. This is
      intended to be helpful for MUAs that show only the final error to their
      users.

PH/42 Another patch from the Sieve maintainer.

SC/02 Eximstats - Differentiate between permanent and temporary rejects.
      Eximstats - Fixed some broken HTML links and added missing column headers
                  (Jez Hancock).
      Eximstats - Fixed Grand Total Summary Domains, Edomains, and Email
                  columns for Rejects, Temp Rejects, Ham, and Spam rows.

SC/03 Eximstats - V1.58 Fix to get <> and blackhole to show in edomain tables.

PH/43 Yet another patch from the Sieve maintainer.

PH/44 I found a way to check for a TCP/IP connection going away before sending
      the response to the final '.' that terminates a message, but only in the
      case where the client has not sent further data following the '.'
      (unfortunately, this is allowed). However, in many cases there won't be
      any further data because there won't be any more messages to send. A call
      to select() can be used: if it shows that the input is "ready", there is
      either input waiting, or the socket has been closed. An attempt to read
      the next input character can distinguish the two cases. Previously, Exim
      would have sent an OK response which the client would never have see.
      This could lead to message repetition. This fix should cure that, at
      least in a lot of common cases.

PH/45 Do not advertise STARTTLS in response to HELP unless it would be
      advertised in response to EHLO.
2007-06-24 10:55:40 +00:00
mjl
b97aebd7a2 Updated asterisk to 1.2.19. 2007-06-24 07:52:47 +00:00
taca
0b80d25896 Note update of editors/tamago pacakge to 20020909nb2. 2007-06-24 05:35:48 +00:00
taca
f885f3b6f7 tamago works on emacs 22, add emacs22 to EMACS_VERSIONS_ACCEPTED.
Bump PKGREVISION.
2007-06-24 05:34:42 +00:00
markd
8bbfd97b26 Fix ordering of @dirrm's in PLIST - From Bernd Ernesti.
Bump PKGREVISION.
2007-06-23 21:41:23 +00:00
wiz
76bdbe2fc7 Mention drochner's updates from 06/15 and 06/19. 2007-06-23 12:41:07 +00:00
wiz
eb6a594786 Remove some completed updates. 2007-06-23 12:36:28 +00:00
minskim
1f59c2f2f8 Use stdlib.h instead of malloc.h, which is nonstandard. 2007-06-23 08:26:44 +00:00
minskim
7afa15017c Do not declare static functions in headers. 2007-06-23 08:25:30 +00:00
wiz
e92225f930 + amarok-1.4.6, gst-plugins0.10-good-0.10.6, hylafax-5.1.5,
mathomatic-12.7.3.
2007-06-23 08:07:24 +00:00
minskim
eb48d6ba0a Allow to use the Carbon library if it exists. 2007-06-23 08:06:00 +00:00
minskim
24cd4166d5 Use stdlib.h instead of malloc.h, which is nonstandard. 2007-06-23 08:01:08 +00:00
wiz
785a233000 + devhelp-0.15, gd-2.0.35, gimp-print-5.0.1 [now called gutenprint],
gnome-speech-0.4.14, gnome2-terminal-2.18.1, gthumb-2.10.4,
  gtk2-sharp-2.10.1, libglade-2.6.1, libglademm-2.6.4, nagios-3.0a5,
  ntp-4.2.4p2, pcre-7.2, scummvm-0.10.0, solfege-3.8.1, texmaker-1.6,
  vte-0.16.6, wxRemind-0.9.5.
2007-06-23 06:05:34 +00:00
obache
5adfb52e62 Updated mecab related packages. 2007-06-23 04:35:28 +00:00
obache
2bec870881 Update mecab to 0.96 and mecab-ipadic to 2.7.0-20070610.
Fix buffer overflow bug, dictionary incompatibility issue, some functionary
enhancements for dictionary
2007-06-23 04:31:55 +00:00
dmcmahill
d4795c1903 Updated devel/cogito to 0.18.2nb1 2007-06-22 22:31:43 +00:00
dmcmahill
8e06e1f62d on SunOS we need a grep that takes -q and an xargs that takes -0 so
stuff /usr/xpg4/bin/{f,}grep into all the scripts and get an xargs from
sysutils/findutils.  Now this package seems to actually work.
2007-06-22 21:46:14 +00:00
tron
d0d2660fbb Remove explicit dependence on "bash" package. "USE_TOOLS+= bash:run"
is enough and avoids building the package on system which have
"bash" in the base system.
2007-06-22 17:46:19 +00:00
lkundrak
db7acb61b8 Fix CVE-2007-3316 also in package for older branch of VLC. 2007-06-22 14:34:31 +00:00
lkundrak
baec70582d Fix for CVE-2007-3316 format-string vulnerabilities backported from 0.8.6c. 2007-06-22 14:34:16 +00:00
lkundrak
1e25c97437 Fixed the patch for CVE-2007-3316. 2007-06-22 14:32:24 +00:00
gdt
4c80c2d36b Remove RESTRICTED comment about US export control. (While lots of
things are restricted, pkgsrc's labeling rules aren't intended to
address export control issues, and there are vast numbers of packages
with apparently similar export control status and no RESTRICTED.)
2007-06-22 14:20:01 +00:00
lkundrak
0e7168a3ac Bumped VLC revision, after import of fix for CVE-2007-3316 format string flaws. 2007-06-22 14:18:31 +00:00
lkundrak
551597a4ea Fix for CVE-2007-3316 format-string vulnerability described by
VideoLAN-SA-0702 upstream advisory.  Backported from 0.8.6c.
2007-06-22 14:13:16 +00:00
adrianp
081d84f114 Fix breakage caused by me when I renamed some PKG_OPTIONS incompletly
Reported by Travis Mikalson in PR 36522
2007-06-22 13:14:22 +00:00
rillig
ac55c4ab67 Fixed file permissions.
PKGREVISION++
Ok'ed by wiz.
2007-06-22 11:21:23 +00:00
hira
2cd8b5f279 Note update of misc/openoffice2 to 2.2.1. 2007-06-22 03:53:59 +00:00
hira
b8b3ec245c Update to 2.2.1 during freeze because of security fixes (CVE-2007-0245
and CVE-2007-2754).

Changes from 2.2.0:
 * freetypettg: fix CVE-2007-2754 for the internal freetype copy
 * autotext02: A showstopper fix for OOo2.2.1
 * l10n77316fix: contains fix for i77316
 * notepaint: Fix for invisible text in Calc notes while editing
 * macosxpbuildrepair_OOF680:
   This cws fixes broken Mac OS X 10.3 build, and does contain :
     - a fix for a build breaker in slideshow ( fixed by thb ) #i74325#
     - gcc-3.3 parser fixes #i75990#
     - a complete fix in sal for security.c ( with sb help ) #i76159#
     - a fix for broken linking ( because of extra symbols, due to bad
       filtering ) #i72922#
     - a fix for main.applescript ( build borken on Panther ) #i75972#
   All issue targeted 2.2.1 ( supposing the changes will be integrated
   in SRC680 too)
 * ause078_OOF680: quick and small to get back correct dependencies
 * os95_OOF680,plthes: add license-fixed polish thesaurus
 * olenoserver: A fix for a regression.
 * hro15: Unicode command line support fix for Windows only.
 * custompropsfix: Small bug fix in Word import for import of document
                   variables
 * dba221b: fix issue 73722, in its incarnation as issue 76434, for 2.2.1.
 * swvalgrind: Fix for i76133
 * calc221: Calc fixes for OOo2.2.1
 * fix75967: fix issue 75967
 * c03v8,c07v012,native86,nativebroffice: New Product BrOffice.org
 * impress120: Bugfix workspace for OOo 2.2.1
	sj->wg: the performance test hasn|t been finished yet, but I think
        it should be no problem to hand over this issue without the test.
 * larsbehr01: Bugfix for i66661: Slideshow bug fixing for 2.2.1
 * dba221a: ongoing DBA-related bugfixing towards OOo 2.2.1
 * sch17: Fixes for sch
 * tbe29: OOo 2.2.1 accessibility bug fixes
 * impress119: Bug fixes for OOo 2.2.1.
 * printhelpfix: Bugfix for 134037.
 * autotext01: A showstopper cws related to autotext bug.
 * native79: Preparing OOo 2.2.1 and SO 8 Update 7
 * vcl73_OOF680: 2.2.1 issues
 * cmcfixes32_OOF680: minor customized build fixes
 * jl57_OOF680: Contains a patch for building with an older gcc compiler.
 * fsfixes06_OOF680: Fix for a bug in WordPerfect typedetection that caused
                     us to crash on unsupported documents instead of refusing
                     them with grace
 * jl62,oasisrng02: Fixes of violations of the RelaxNG schema in ODF.
 * aw050: OOo 2.2.1 BugFixing
 * swqbugfix01: Issues in Writer regarding saving of documents
2007-06-22 03:52:20 +00:00
jlam
dada845b60 Note update of net/openvpn to 2.1rc4. 2007-06-21 21:45:55 +00:00
jlam
073181c3cc Update net/openvpn to 2.1rc4. Changes from version 2.1rc2 include:
* Fixed 64-bit portability bug in time_string function
  (Thomas Habets).

* Clean up configure on FreeBSD for recent autotool versions
  that require that all .h files have to be compiled.
  Also, FreeBSD install does not support GNU long options
  which the Makefile in easy-rsa/2.0 uses (not checked the
  others as we don't install those on Gentoo) (Roy Marples).
2007-06-21 21:44:42 +00:00
wiz
67e5e7e74c Note subversion-base PKGREVISION bump. 2007-06-21 21:07:00 +00:00
wiz
96baa6c9ca Add patch from
http://subversion.tigris.org/issues/show_bug.cgi?id=2382
to iterate over hosts' addresses instead of failing when one
of them is not reachable.

Bump PKGREVISION.
2007-06-21 21:06:33 +00:00
wiz
27f71ddbf3 ktorrent updated to 2.1.4. 2007-06-21 19:41:38 +00:00
wiz
361bff022b Update to 2.1.4 (security fix), based on patches provided
by Sergey Svishchev.

Changes in 2.1.4
- Fixed crash in parsing of DHT messages
- Fixed problem with files with .. in their name
- ScanFolder can now handle incomplete torrent files properly

Changes in 2.1.3
- Fixed crash in torrent parsing

Changes in 2.1.2
- Fix 2 security vulnerabilities (thanks to Bryan Burns from Juniper Networks
for finding them)

Changes in 2.1.1
- Rewrite of webserver
- New webgui : coldmilk
- Networking thread has been split up in 2 threads, one for upload, one for
download
- Significant speed improvements when downloading over a LAN

Changes in 2.1
- Some minor bug fixes

Changes in 2.1rc1
- Share ratio column added in main view
- Added option to use a different proxy then the default KDE proxy for HTTP trackers
- Added feature to show/hide columns in main view
- Moved search box to bottom, so that the window is not enlarged in 1024 x 768 resolutions, when you search for something
- Made sure no duplicates get into search box history
- Fixed 'Trackers' tab in InfoWidget to properly resize tracker URL label
- Zeroconf plugin added
- Added µTorrent compatible PEX
- Fixed a bug in WebInterface plugin causing JS tooltips not to show.
- Fixed a bug with 'Stop All' not stopping queued torrents.
2007-06-21 19:32:54 +00:00
minskim
6b464d4c64 Set "install" as a .PHONY target so that it works on case-insensitive
filesystems.
2007-06-21 19:25:47 +00:00