Automatic conversion of the NetBSD pkgsrc CVS module, use with care
Find a file
wen fd9a9eb6f5 Update to 4.2.8p7
Upstream changes:
(4.2.8p7) 2016/04/26 Released by Harlan Stenn <stenn@ntp.org>

* [Sec 2901] KoD packets must have non-zero transmit timestamps.  HStenn.
* [Sec 2936] Skeleton Key: Any system knowing the trusted key can serve
  time. Include passive servers in this check. HStenn.
* [Sec 2945] Additional KoD packet checks.  HStenn.
* [Sec 2978] Interleave can be partially triggered.  HStenn.
* [Sec 3007] Validate crypto-NAKs.  Danny Mayer.
* [Sec 3008] Always check the return value of ctl_getitem().
  - initial work by HStenn
  - Additional cleanup of ctl_getitem by perlinger@ntp.org
* [Sec 3009] Crafted addpeer with hmode > 7 causes OOB error. perlinger@ntp.org
   - added more stringent checks on packet content
* [Sec 3010] remote configuration trustedkey/requestkey values
  are not properly validated. perlinger@ntp.org
  - sidekick: Ignore keys that have an unsupported MAC algorithm
    but are otherwise well-formed
* [Sec 3011] Duplicate IPs on unconfig directives will cause an assertion botch
  - graciously accept the same IP multiple times. perlinger@ntp.org
* [Sec 3020] Refclock impersonation.  HStenn.
* [Bug 2831]  Segmentation Fault in DNS lookup during startup. perlinger@ntp.org
  - fixed yet another race condition in the threaded resolver code.
* [Bug 2858] bool support.  Use stdbool.h when available.  HStenn.
* [Bug 2879] Improve NTP security against timing attacks. perlinger@ntp.org
  - integrated patches by Loganaden Velvidron <logan@ntp.org>
    with some modifications & unit tests
* [Bug 2952] Symmetric active/passive mode is broken.  HStenn.
* [Bug 2960] async name resolution fixes for chroot() environments.
  Reinhard Max.
* [Bug 2994] Systems with HAVE_SIGNALED_IO fail to compile. perlinger@ntp.org
* [Bug 2995] Fixes to compile on Windows
* [Bug 2999] out-of-bounds access in 'is_safe_filename()'. perlinger@ntp.org
* [Bug 3013] Fix for ssl_init.c SHA1 test. perlinger@ntp.org
  - Patch provided by Ch. Weisgerber
* [Bug 3015] ntpq: config-from-file: "request contains an unprintable character"
  - A change related to [Bug 2853] forbids trailing white space in
    remote config commands. perlinger@ntp.org
* [Bug 3019] NTPD stops processing packets after ERROR_HOST_UNREACHABLE
  - report and patch from Aleksandr Kostikov.
  - Overhaul of Windows IO completion port handling. perlinger@ntp.org
* [Bug 3022] authkeys.c should be refactored. perlinger@ntp.org
  - fixed memory leak in access list (auth[read]keys.c)
  - refactored handling of key access lists (auth[read]keys.c)
  - reduced number of error branches (authreadkeys.c)
* [Bug 3023] ntpdate cannot correct dates in the future. perlinger@ntp.org
* [Bug 3030] ntpq needs a general way to specify refid output format.  HStenn.
* [Bug 3031] ntp broadcastclient unable to synchronize to an server
             when the time of server changed. perlinger@ntp.org
  - Check the initial delay calculation and reject/unpeer the broadcast
    server if the delay exceeds 50ms. Retry again after the next
    broadcast packet.
* [Bug 3036] autokey trips an INSIST in authistrustedip().  Harlan Stenn.
* Document ntp.key's optional IP list in authenetic.html.  Harlan Stenn.
* Update html/xleave.html documentation.  Harlan Stenn.
* Update ntp.conf documentation.  Harlan Stenn.
* Fix some Credit: attributions in the NEWS file.  Harlan Stenn.
* Fix typo in html/monopt.html.  Harlan Stenn.
* Add README.pullrequests.  Harlan Stenn.
* Cleanup to include/ntp.h.  Harlan Stenn.

---
(4.2.8p6) 2016/01/20 Released by Harlan Stenn <stenn@ntp.org>

* [Sec 2935] Deja Vu: Replay attack on authenticated broadcast mode. HStenn.
* [Sec 2936] Skeleton Key: Any trusted key system can serve time. HStenn.
* [Sec 2937] ntpq: nextvar() missing length check. perlinger@ntp.org
* [Sec 2938] ntpq saveconfig command allows dangerous characters
  in filenames. perlinger@ntp.org
* [Sec 2939] reslist NULL pointer dereference.  perlinger@ntp.org
* [Sec 2940] Stack exhaustion in recursive traversal of restriction
  list. perlinger@ntp.org
* [Sec 2942]: Off-path DoS attack on auth broadcast mode.  HStenn.
* [Sec 2945] Zero Origin Timestamp Bypass. perlinger@ntp.org
* [Sec 2948] Potential Infinite Loop in ntpq ( and ntpdc) perlinger@ntp.org
* [Bug 2772] adj_systime overflows tv_usec. perlinger@ntp.org
* [Bug 2814] msyslog deadlock when signaled. perlinger@ntp.org
  - applied patch by shenpeng11@huawei.com with minor adjustments
* [Bug 2882] Look at ntp_request.c:list_peers_sum(). perlinger@ntp.org
* [Bug 2891] Deadlock in deferred DNS lookup framework. perlinger@ntp.org
* [Bug 2892] Several test cases assume IPv6 capabilities even when
             IPv6 is disabled in the build. perlinger@ntp.org
  - Found this already fixed, but validation led to cleanup actions.
* [Bug 2905] DNS lookups broken. perlinger@ntp.org
  - added limits to stack consumption, fixed some return code handling
* [Bug 2971] ntpq bails on ^C: select fails: Interrupted system call
  - changed stacked/nested handling of CTRL-C. perlinger@ntp.org
  - make CTRL-C work for retrieval and printing od MRU list. perlinger@ntp.org
* [Bug 2980] reduce number of warnings. perlinger@ntp.org
  - integrated several patches from Havard Eidnes (he@uninett.no)
* [Bug 2985] bogus calculation in authkeys.c perlinger@ntp.org
  - implement 'auth_log2()' using integer bithack instead of float calculation
* Make leapsec_query debug messages less verbose.  Harlan Stenn.
* Disable incomplete t-ntp_signd.c test.  Harlan Stenn.
2016-04-27 15:59:19 +00:00
archivers Update to 2.24 2016-04-17 13:59:18 +00:00
audio Updated qsynth to version 0.4.1. 2016-04-23 12:32:47 +00:00
benchmarks sunet.se stopped mirroring lots of stuff, remove/comment out references to it 2016-04-24 10:34:43 +00:00
biology Use OPSYSVARS. 2016-02-25 11:21:11 +00:00
bootstrap No need to set USE_DESTDIR now. 2016-04-10 16:18:45 +00:00
cad Use PKGMANDIR. Use SUBST_VARS instead of manual SUBST_SEDs. 2016-04-21 13:15:15 +00:00
chat Update chat/ejabberd to 16.03. 2016-04-25 20:24:14 +00:00
comms Recursive revbump from textproc/icu 57.1 2016-04-11 19:01:33 +00:00
converters Add missing DEPENDS. 2016-04-26 12:42:33 +00:00
cross Add missing end-of-here-document marker as suggested by Robert Elz. 2016-04-04 17:28:57 +00:00
databases Updated to databases/p5-DBI-1.635 2016-04-25 14:18:59 +00:00
devel Githubify. 2016-04-27 04:20:10 +00:00
distfiles
doc Updated lang/nodejs to 6.0.0 2016-04-27 15:03:22 +00:00
editors Add bug report URL for paxctl issue. 2016-04-25 12:12:40 +00:00
emulators Use CMAKE_INSTALL_MANDIR. Add patch comments. 2016-04-21 11:31:22 +00:00
filesystems Update filesystems/glusterfs to 3.7.11 2016-04-19 03:12:42 +00:00
finance Recursive revbump from textproc/icu 57.1 2016-04-11 19:01:33 +00:00
fonts No reason to have MASTER_SITE_LOCAL here, there's a valid upstream. 2016-04-12 08:06:24 +00:00
games Update freeciv to 2.5.3 2016-04-24 06:52:44 +00:00
geography Add opencpn-plugin-watchdog and opencpn-plugin-draw 2016-04-24 10:24:40 +00:00
graphics Update oxygen-icons to 5.21 2016-04-26 09:27:11 +00:00
ham Add manual CMAKE_INSTALL_MANDIR handling. 2016-04-21 12:26:19 +00:00
inputmethod Recursive revbump from textproc/icu 57.1 2016-04-11 19:01:33 +00:00
lang Update lang/nodejs to 6.0.0. 2016-04-27 15:03:10 +00:00
licenses Add Historical Permission Notice and Disclaimer (HPND) license. 2016-04-21 07:48:27 +00:00
mail Remove non-working mirror. 2016-04-24 10:37:39 +00:00
math Update py-scipy to 0.17.0 2016-04-23 22:51:57 +00:00
mbone Remove redundant if statement to handle linker flags on amd64. 2016-01-03 22:48:52 +00:00
meta-pkgs Bump oxygen-icons version. Fixes pbulk scan resolution. 2016-04-26 20:56:07 +00:00
misc Update misc/erlang-p1_utils to 1.0.3. 2016-04-22 14:41:38 +00:00
mk Add hpnd to DEFAULT_ACCEPTABLE_LICENSES and *default_acceptable_licenses. 2016-04-21 07:51:51 +00:00
multimedia Update phonon-{,qt5-}backend-gstreamer{,-shared} 4.9.0 2016-04-26 09:04:23 +00:00
net Update to 4.2.8p7 2016-04-27 15:59:19 +00:00
news sunet.se stopped mirroring lots of stuff, remove/comment out references to it 2016-04-24 10:34:43 +00:00
packages
parallel Bump PKGREVISION for security/openssl ABI bump. 2016-03-05 11:27:40 +00:00
pkgtools Add hpnd to DEFAULT_ACCEPTABLE_LICENSES and *default_acceptable_licenses. 2016-04-21 07:51:51 +00:00
print Add patches to adapt zathura-pdf-mupdf to the mupdf-1.9 API. 2016-04-27 12:38:45 +00:00
regress update PKG_{FAIL,SKIP}_REASON with += 2016-04-11 04:22:33 +00:00
security Enable/disable updated/removed Erlang packages. 2016-04-25 20:39:15 +00:00
shells Get a working ast-ksh build for SunOS using c99 and defining _XPG6 2016-03-22 19:31:15 +00:00
sysutils Update gsettings-desktop-schemas to 3.20.0 2016-04-22 23:11:01 +00:00
templates
textproc Enable/disable updated/removed Erlang packages. 2016-04-25 20:39:15 +00:00
time Updated py35-vdirsyncer to 0.10.0. 2016-04-24 09:48:43 +00:00
wm Explicitly pull in -lX11 on SunOS. 2016-04-14 10:47:12 +00:00
www nghttp2 v1.10.0: 2016-04-26 16:31:59 +00:00
x11 Update gnome-desktop3 to 3.20.1 2016-04-26 07:18:10 +00:00
Makefile
pkglocate
README

$NetBSD: README,v 1.18 2005/05/07 22:18:28 wiz Exp $

Please see doc/pkgsrc.txt for information.