Automatic conversion of the NetBSD pkgsrc CVS module, use with care
Find a file
prlw1 2bbaa92ff0 Update clamav to 0.101.2
Remove rar support to workaround PR pkg/54420

  This release includes 3 extra security related bug fixes that do not
   apply to prior versions. In addition, it includes a number of minor bug
   fixes and improvements.
     * Fixes for the following vulnerabilities affecting 0.101.1 and
       prior:
          + CVE-2019-1787: An out-of-bounds heap read condition may occur
            when scanning PDF documents. The defect is a failure to
            correctly keep track of the number of bytes remaining in a
            buffer when indexing file data.
          + CVE-2019-1789: An out-of-bounds heap read condition may occur
            when scanning PE files (i.e. Windows EXE and DLL files) that
            have been packed using Aspack as a result of inadequate
            bound-checking.
          + CVE-2019-1788: An out-of-bounds heap write condition may occur
            when scanning OLE2 files such as Microsoft Office 97-2003
            documents. The invalid write happens when an invalid pointer
            is mistakenly used to initialize a 32bit integer to zero. This
            is likely to crash the application.
     * Fixes for the following ClamAV vulnerabilities:
          + CVE-2018-15378: Vulnerability in ClamAV's MEW unpacking
            feature that could allow an unauthenticated, remote attacker
            to cause a denial of service (DoS) condition on an affected
            device. Reported by Secunia Research at Flexera.
          + Fix for a 2-byte buffer over-read bug in ClamAV's PDF parsing
            code. Reported by Alex Gaynor.
     * Fixes for the following vulnerabilities in bundled third-party
       libraries:
          + CVE-2018-14680: An issue was discovered in mspack/chmd.c in
            libmspack before 0.7alpha. It does not reject blank CHM
            filenames.
          + CVE-2018-14681: An issue was discovered in kwajd_read_headers
            in mspack/kwajd.c in libmspack before 0.7alpha. Bad KWAJ file
            header extensions could cause a one or two byte overwrite.
          + CVE-2018-14682: An issue was discovered in mspack/chmd.c in
            libmspack before 0.7alpha. There is an off-by-one error in the
            TOLOWER() macro for CHM decompression.
          + Additionally, 0.100.2 reverted 0.100.1's patch for
            CVE-2018-14679, and applied libmspack's version of the fix in
            its place.
     * Fixes for the following CVE's:
          + CVE-2017-16932: Vulnerability in libxml2 dependency (affects
            ClamAV on Windows only).
          + CVE-2018-0360: HWP integer overflow, infinite loop
            vulnerability. Reported by Secunia Research at Flexera.
          + CVE-2018-0361: ClamAV PDF object length check, unreasonably
            long time to parse relatively small file. Reported by aCaB.

For the full release notes, see:
https://github.com/Cisco-Talos/clamav-devel/blob/clamav-0.101.2/NEWS.md
2019-08-05 14:44:20 +00:00
archivers Update libmspack to 0.10.1alpha 2019-08-05 13:39:24 +00:00
audio fasttracker2: Update to b163 2019-08-02 17:16:33 +00:00
benchmarks Update packages using a search.cpan.org HOMEPAGE to metacpan.org. 2019-06-30 20:14:13 +00:00
biology *: recursive bump for gdk-pixbuf2-2.38.1 2019-07-21 22:23:57 +00:00
bootstrap trivial typos 2019-07-26 15:41:43 +00:00
cad Update to QCAD 3.23.0 2019-07-31 19:30:20 +00:00
chat chat: Add miniircd 2019-08-02 10:24:01 +00:00
comms Update Flash Operator Panel to 0.30. 2019-07-22 03:36:54 +00:00
converters R-base64enc: update to canonical form of an R package. 2019-07-31 14:32:04 +00:00
cross *: recursive bump for gdk-pixbuf2-2.38.1 2019-07-21 22:23:57 +00:00
databases py-peewee: updated to 3.10.0 2019-08-05 07:56:42 +00:00
devel tex-doclicense{,-doc}: update to 1.10.0 2019-08-05 11:14:51 +00:00
distfiles
doc doc: Updated archivers/libmspack to 0.10.1alpha 2019-08-05 13:39:51 +00:00
editors Update to version 8.1.1778. 2019-08-03 21:01:11 +00:00
emulators haxm: Update to 7.5.2 2019-08-01 17:02:43 +00:00
filesystems *: recursive bump for gdk-pixbuf2-2.38.1 2019-07-21 22:23:57 +00:00
finance R-tseries: update to version 0.10.47. 2019-07-31 15:55:32 +00:00
fonts tex-heuristica{,-doc}: update to 1.092 2019-08-05 11:47:42 +00:00
games Remove games/et, replacement games/etlegacy + games/etlegacy-data 2019-08-01 22:37:24 +00:00
geography R-maptools: update to version 0.9.5. 2019-07-31 15:58:35 +00:00
graphics tex-pstricks{,-doc}: update to 2.97 2019-08-04 04:25:06 +00:00
ham *: recursive bump for gdk-pixbuf2-2.38.1 2019-07-21 22:23:57 +00:00
inputmethod *: recursive bump for gdk-pixbuf2-2.38.1 2019-07-21 22:23:57 +00:00
lang npm: updated to 6.10.2 2019-08-03 07:32:55 +00:00
licenses etlegacy-data: set LICENSE and add it to licenses/ 2019-07-26 11:32:07 +00:00
mail R-mime: update to version 0.7. 2019-07-31 16:19:01 +00:00
math R-RandomFieldsUtils: add a missing buildlink3.mk file. 2019-08-01 14:26:45 +00:00
mbone Updated mbone/mdd to 20180824 2018-08-29 00:50:12 +00:00
meta-pkgs texlive-collection-langeuropean: Add tex-hyphen-occitan 2019-08-05 09:32:28 +00:00
misc Fix packaging under Linux 2019-08-04 14:41:27 +00:00
mk teach extract about .txz, a weird alias for .tar.xz. 2019-08-02 11:48:17 +00:00
multimedia Add multimedia/movit. 2019-08-02 10:11:35 +00:00
net Update to version 2.0.3. 2019-08-03 20:37:19 +00:00
news Make it build with enchant2. 2019-08-01 22:23:14 +00:00
packages
parallel *: recursive bump for nettle 3.5.1 2019-07-20 22:45:58 +00:00
pkgtools pkgtools/pkglint: update to 5.7.19 2019-08-02 18:55:07 +00:00
print tex-texinfo: update to 5.1.51312 2019-08-05 11:09:53 +00:00
regress lang/python: fix PYVERSSUFFIX escaping for print-PLIST 2019-07-17 18:34:16 +00:00
security Update clamav to 0.101.2 2019-08-05 14:44:20 +00:00
shells oksh: update to 6.5 2019-07-24 11:15:41 +00:00
sysutils py-xattr: updated to 0.9.6 2019-08-04 11:24:52 +00:00
templates
textproc tex-lwarp{,-doc}: update to 0.72 2019-08-05 11:33:54 +00:00
time py-arrow: updated to 0.14.4 2019-08-03 04:35:12 +00:00
wm py-tyle: remove 2019-07-26 18:12:47 +00:00
www py-werkzeug: updated to 0.15.5 2019-08-05 10:21:32 +00:00
x11 Update python-xlib to 0.25 2019-08-05 12:26:15 +00:00
Makefile
pkglocate
README README: minor grammatical fix 2019-01-29 03:11:03 +00:00

$NetBSD: README,v 1.21 2019/01/29 03:11:03 gutteridge Exp $

pkgsrc is a framework for building software on UNIX-like systems.

To use, bootstrap using:
    cd pkgsrc/bootstrap/
    ./bootstrap

build packages, use:
    cd pkgsrc/category/package-name
    $PREFIX/bin/bmake install

Where $PREFIX is where you've chosen to install packages (typically /usr/pkg)

Bugs and patches can be filed in the following link (use category 'pkg'):
https://www.netbsd.org/cgi-bin/sendpr.cgi?gndb=netbsd

To fetch the main CVS repository:
    cvs -d anoncvs@anoncvs.NetBSD.org:/cvsroot checkout -P pkgsrc

It's also possible to contribute through pkgsrc wip (work in progress), for
more information, see http://pkgsrc.org/wip/users/

Please see doc/pkgsrc.txt for information.