aboutsummaryrefslogtreecommitdiffstats
path: root/security
Commit message (Collapse)AuthorAgeFilesLines
* - Add entry for mail/perditionbeech2007-11-061-0/+31
| | | | | PR: ports/117796 Approved by: portmgr (pav), linimon (mentor)
* - gftp -- multiple vulnerabilitiesmiwi2007-11-061-0/+33
| | | | | Reviewed by: simom Approved by: portmgr (blanket) (ports-security blanket)
* - Update dirproxy -- remote denial of servicemiwi2007-11-051-1/+6
| | | | | | | | * Add net/dirproxy with the same affect * Update net/dirproxy-devel as safe Reviewed by: simon Approved by: portmgr (blanket) (ports-security blanket)
* - dirproxy -- remote denial of servicemiwi2007-11-041-0/+30
| | | | | Reviewed by: remko Approved by: portmgr (blanket) (ports-security blanket)
* - Fix discovery date on my previous commitmiwi2007-11-011-1/+1
| | | | Approved by: portmgr (ports-security blanket)
* - document wordpress -- cross-site scriptingmiwi2007-11-011-0/+36
| | | | | Reviewed by: simon Approved by: portmgr (ports-security blanket)
* Extend coverage to OpenLDAP 2.4.x series which is affected accordingdelphij2007-11-011-0/+2
| | | | | | to CVS history. Approved by: portmgr (ports-security blanket)
* Document openldap multiple vulnerabilities.delphij2007-11-011-0/+29
| | | | Approved by: portmgr (ports-security blanket)
* Bump modified date for entry updated in last commit.simon2007-11-011-1/+1
| | | | Approved by: portmgr (secteam blanket)
* Update vuxml to reflect that mod_jk and mod_jk-ap2 havegirgen2007-11-011-1/+4
| | | | | | different portepochs. Approved by: portmgr (pav)
* - Update mozilla -- code execution via Quicktime media-link filesmiwi2007-10-311-1/+2
| | | | | | | PR: 117704 Submitted by: John Hein <jhein@timing.com> Reviewed by: simon Approved by: portmgr (blanket) secteam (blanket via simon)
* gnutls-devel is now older than gnutls, so in order not to update or delete itnovel2007-10-311-0/+2
| | | | | | during the freeze, mark it IGNORE. Approved by: portmgr (linimon)
* Chase opencdk shared lib version change.novel2007-10-311-2/+3
| | | | Approved by: portmgr (pav) (as a part of security/opencdk commit)
* Update to 0.6.0 - the versioin compatible with the current versionnovel2007-10-314-17/+19
| | | | | | | of gnutls in ports. Therefore, it fixes the problem described in ports/117671. Approved by: portmgr (pav)
* - Update to 1.17miwi2007-10-302-7/+5
| | | | | PR: 117659 Submitted by: TAKAHASHI Kaoru <kaoru@kaisei.org> (maintainer)
* Update to 0.7.3lofi2007-10-302-5/+5
|
* - Update to version 2.0.2.alepulver2007-10-303-13/+19
| | | | | | - Update the NAT-T patch notice (in pre-everything). Submitted by: Matthew Grooms <mgrooms@shrew.net> (maintainer, via e-mail)
* Update to KDE 3.5.8lofi2007-10-304-6/+98
|
* Fix build for OpenSSL 0.9.8.cy2007-10-308-28/+20
| | | | | PR: 117552 Submitted by: Hirohisa Yamaguchi <umq@umo.co.jp>
* This program uses a brute force algorithm to guess your encryptedmiwi2007-10-304-0/+40
| | | | | | | | | | | compressed file's password. If you forget your encrypted file password, this program is the solution. This program can crack zip,7z and rar file passwords. WWW: http://sourceforge.net/projects/rarcrack PR: ports/117630 Submitted by: Philippe Audeoud <jadawin at tuxaco.net>
* Fix build under 7.0-PRERELEASE.cy2007-10-3012-4/+76
|
* - Update www and master sitessat2007-10-302-12/+7
|
* Update to 1.1.novel2007-10-302-4/+4
|
* Update to stunnel-4.21.roam2007-10-307-18/+29
|
* Update to 2.0.2.novel2007-10-304-8/+47
|
* Update to 1.12mat2007-10-292-4/+4
|
* Re-add a file (for cracklib support) that was inadvertently removed withshaun2007-10-291-0/+21
| | | | | | | | the last update. PR: ports/117351 [1], ports/116864 [2] Submitted by: Koji Yokota <yokota@res.otaru-uc.ac.jp> [1], Matthias Andree <matthias.andree@gmx.de> [2]
* - Update my mail address.chinsan2007-10-291-1/+1
|
* Add uberkey, a keylogger for x86 systems.chinsan2007-10-294-0/+36
| | | | WWW: http://www.linuks.mine.nu/uberkey/
* Document django DoS issue.delphij2007-10-291-0/+48
|
* - Update to 0.2.0.9-alphamiwi2007-10-282-4/+4
| | | | | | PR: 117582 Submitted by: bf <bf2006a@yahoo.com> Approved by: maintainer
* Update to 0.6.14 release.ale2007-10-282-4/+4
|
* - Add WWW link.chinsan2007-10-281-0/+2
|
* Update f-prot to 4.6.8.tdb2007-10-284-9/+9
|
* - Fix day entry for 498a8731-7cfc-11dc-96e6-0012f06707f0miwi2007-10-271-1/+2
| | | | Reviewed by: simon
* - Fix previous commit by edwin - 500000 != 600000. While here, fix packagingpav2007-10-261-2/+1
| | | | Reported by: pointyhat
* Fix erroneous patch.cy2007-10-268-16/+28
| | | | | PR: 117469 Submitted by: Karen Andrews <dearmiss@optusnet.com.au>
* - Document opera -- multiple vulnerabilitiesmiwi2007-10-261-0/+41
| | | | Reviewed by: remko
* - Update MASTER_SITESmiwi2007-10-251-1/+1
| | | | Submitted by: pointyhat
* - Document drupal --- multiple vulnerabilitiesmiwi2007-10-251-0/+84
| | | | Reviewed by: simon
* - Update to 0.9.16clsung2007-10-254-4/+193
| | | | | | | | | | | | | | | | | | | | | - Added two patches due to some system umask settlement(s). Added file(s): - files/patch-prelude-admin__prelude-admin.c - files/patch-src__prelude-failover.c Changelog libprelude-0.9.16: - Implement prelude-admin list [-l] command, which provide the ability to list existing profile name, permission, registration permission, analyzerID, and Issuer analyzerid. - Implement multiple analyzer deletion in prelude-admin. - Correct printing of IDMEF time field using non local GMT offset. - Patch to avoid struct typespec redefinition, due to variable mispelling. This fixes a compilation problem on OpenBSD 3.8. - Various bug fixes. PR: ports/117417 Submitted by: maintainer (Robin Gruyters)
* - Update to 0.9.10clsung2007-10-252-5/+6
| | | | | | | | | | | | | | | Changelog prelude-manager-0.9.10: - Make threshold act like a real threshold: pass every Nth events in the defined amount of seconds. - Allow mixing Limit and Threshold. - Do not share the tresholding hash accross thresholding plugin instance: previously, the shared hash would result in strange thresholding plugin behavior if you had several instance of thresholding loaded. - Various bug fixes concerning plugin instance un-subscribtion (unsubscribtion of certain plugin was not triggered). PR: ports/117416 Submitted by: maintainer (Robin Gruyters)
* Update to 1.3.delphij2007-10-253-9/+6
| | | | | PR: ports/117459 Approved by: gabor (via IRC)
* Presenting GNOME 2.20.1 and all related works for FreeBSD. The officialmarcus2007-10-2529-293/+386
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | GNOME 2.20 release notes can be found at http://www.gnome.org/start/2.20/notes/en/ . Beyond that, this update includes the new GIMP 2.4 (courtesy of ahze). The GNOME 2.20 update also includes a huge change in the FreeBSD GNOME hierarchy. We are now using the more standard DATADIR of ${PREFIX}/share rather than ${PREFIX}/share/gnome. The result is that fewer patches and hacks are needed to port GNOME components to FreeBSD. This will mean some user changes may be required, so be sure to read /usr/ports/UPDATING for more details. This release and the things we accomplished in it would not have been possible without mezz's crazy idea to collapse DATADIR, and his persistence to make it happen successfully. Ahze and pav also deserve thanks for their work on porting modules and testing the whole ball of wax on pointyhat (respectively). The FreeBSD GNOME team would also like to thank our various testers and contributors: Yasuda Keisuke Frank Jahnke Pawel Worach Brian Gruber Franz Klammer Yuri Pankov Nick Barkas Cristian KLEIN Tony Maher Scot Hetzel Martin Matuska (mm) Benoit Dejean Martin Wilke (miwi) (And anyone else I may have missed) PRs fixed in this release: 111272, 113470, 115995, 116338
* pdfcrack is a command line, password recovery tool for PDF-files.miwi2007-10-244-0/+33
| | | | | | | WWW: http://sourceforge.net/projects/pdfcrack PR: ports/117442 Submitted by: Philippe Audeoud <jadawin at tuxaco.net>
* Update to 1.8.4.marcus2007-10-242-4/+4
| | | | | | | | | | | fix for BUG#291: don't suppress password policy errors which should not be suppressed fix for BUG#312: pam_ldap does not try to reconnect when LDAP server closed the connection PR: 116176 Submitted by: mm
* - Use PLIST_FILES, remove pkg-plisttabthorpe2007-10-242-3/+5
| | | | | | | | | - Bump PORTREVISION - Pass maintainership to submiiter PR: ports/117426 Submitted by: Philippe Audeoud <jadawin tuxaco.net> Approved by: clsung (mentor, implicit)
* Update bsmtrace to 1.1.0.csjp2007-10-242-4/+4
| | | | | | | | | | | | | | | | | | | | | | | | | 1.1.0 fixes a pretty serious bug which resulted in BSM records without pathname tokens being processed in some cases. Additionally, timeout-window and timeout-probability features were added to allow people defining sequences with timeouts to add an element of randomness to the timeout, in theory making it more difficult for people to attack. timeout 60; timeout-window 10; timeout-probability 65; Basically equates to: "This sequence should timeout in a random amount of time, where the probability of the timeout being from 60-70 is 65%" It should be noted that there is a probability of 35% that the value will be completely random. So naturally, the lower the timeout-probability, the more random the timeout will be. Approved by: tmclaugh
* - Update to 0.22clsung2007-10-244-8/+18
| | | | | | | - Reset maintainership PR: ports/117408 Submitted by: Gea-Suan Lin <gslin_AT_gslin dot org>
* - remove option OPENSSL_OVERWRITE_BASEdinoex2007-10-242-47/+11
| | | | it was only supported for FreeBSD 4.x
* - update to 0.9.8gdinoex2007-10-242-4/+4
|
* - Update to 0.6.1miwi2007-10-232-4/+4
| | | | | PR: 117294 Submitted by: Philippe Audeoud <jadawin@tuxaco.net>
* - Update to 0.2.0.7-alphamiwi2007-10-232-4/+4
| | | | | PR: 117328 Submitted by: Peter Thoenen <peter.thoenen@yahoo.com> (maintainer)
* - Document ldapscripts -- Command Line User Credentials Disclosuremiwi2007-10-231-0/+31
| | | | | | | PR: 117152 Submitted by: Ganael Laplanche <ganael.laplanche at martymac.com> (maintainer/author) rafan@ Reviewed by: simon@
* Update 1.6.2 --> 1.6.3cy2007-10-2312-44/+20
| | | | | | | Security: fix CVE-2007-3999, CVE-2007-4743 svc_auth_gss.c buffer overflow fix CVE-2007-4000 modify_policy vulnerability Also: add PKINIT support
* Update to 1.9.4tmclaugh2007-10-234-5/+37
| | | | | | | - Required due to recent update to Mono. Submitted by: Phillip Neumann Approved by: maintainer timeout
* Update to 1.6.9p6tmclaugh2007-10-232-5/+5
| | | | | - Sudo now only prints the password prompt if the process is in the foreground.
* Modify firefox entry to cover linux-* variants.delphij2007-10-231-0/+6
|
* Fix install path of CHANGES.txt when using nikto -update and bump PORTREVISION.itetcu2007-10-221-2/+3
| | | | | PR: ports/117379 Submitted by: Naram Qashat
* Document firefox JavaScript Entrapment vulnerabilities.delphij2007-10-221-0/+33
|
* This port contains the Shrew Soft ike daemon and client tools. Thealepulver2007-10-215-0/+113
| | | | | | | | | | | | software supports ike v1 communications between two gateways or a a client and a gateway. For more information please visit ... WWW: http://www.shrew.net/ PR: ports/116684 Submitted by: mgrooms at shrew.net
* - Update to 1.3.0miwi2007-10-216-90/+69
| | | | | | PR: 117269 Submitted by: Philippe Audeoud <jadawin@tuxaco.net> Approved by: maintainer implicit
* - Fix year entry in 498a8731-7cfc-11dc-96e6-0012f06707f0miwi2007-10-211-2/+2
| | | | | Submitted by: freshports Thanks to: Dan Langille
* OpenFWTK is an application proxy toolkit which inherits the ideologynovel2007-10-2013-0/+355
| | | | | | | | | | | of TIS fwtk and maintains API backwards compatibility. The design goal is to make it simple yet powerful; no performance hacks allowed in the code and library dependencies are reduced to minimum. WWW: http://sourceforge.net/projects/openfwtk PR: ports/117194 Submitted by: Anton Karpov <toxa at toxahost.ru>
* - Add new line between entries.mnag2007-10-191-0/+2
|
* - Add entry about recent phpMyAdmin XSS server_status.php vulnerabilitystas2007-10-181-2/+31
| | | | - Fix URL in my previous entry while I'm here.
* Migration from bison 1.x to 2.xade2007-10-174-5/+8
| | | | | PR: 117086 Tested by: -exp runs
* - Unbreakmiwi2007-10-172-7/+12
| | | | | | | | - Fix build gcc 4.2 PR: 116815 Submitted by: miwi Approved by: maintainer timeout
* - Update patchfiles to match latest release (Nov 2001)johans2007-10-177-63/+136
| | | | | | | | - Fix MASTER_SITES (adding local mirror) The old master sites referenced distinct distfiles with the same filename. Primary site carries the latest version which includes minor bugfixes. Patches in previous commit were broken as they matched the older release.
* - Fix Makefile, update distinfo, bump portrevision (forgotten in prev commit)johans2007-10-172-19/+21
|
* - Fix build with gcc 4.2johans2007-10-174-4/+180
| | | | - Fix plist now that all libraries build
* - Secuurity update to 0.9.8fdinoex2007-10-175-211/+5
| | | | Security: CVE-2007-4995
* - Fix package name in 51b51d4a-7c0f-11dc-9e47-0011d861d5e2 andstas2007-10-171-2/+4
| | | | 229577a8-0936-11db-bf72-00046151137e entries (phpmyadmin->phpMyAdmin).
* - Add entry about phpMyAdmin XSS vulnerability.stas2007-10-171-0/+33
|
* 2007-09-10 security/p5-Digest-SHA2: Has numerious known bugs, deprecated in ↵tabthorpe2007-10-165-45/+0
| | | | favor of Digest::SHA
* Correct build, libtool is a dependency.anders2007-10-161-2/+2
| | | | | PR: ports/116982 Submitted by: Cory R. King <coryking@mozimedia.com>
* Update to 1.11erwin2007-10-162-4/+4
| | | | | PR: 117212 Submitted by: Esa Karkkainen <ejk@iki.fi>
* - Port was building stuffs on post-patch: target, fix it using do build: [1]garga2007-10-161-2/+4
| | | | | | | - Since i'm here, just make it respect PREFIX PR: ports/117106 [1] Submitted by: maintainer [1]
* update to 0.60.2oliver2007-10-152-4/+4
|
* - Add a note "require LDAP" in GPGSM knob for $OPTIONS. This may helpkuriyama2007-10-131-1/+2
| | | | | | | | to reduce confusion when "WITHOUT_LDAP and WITH_GPGSM selected, but OpenLDAP dependency exists" situcation. PR: ports/116558 Reported by: Jo Rhett <jrhett@netconsonance.com>
* nagios-plugins -- Long Location Header Buffer Overflow Vulnerabilitymiwi2007-10-131-0/+31
| | | | Reviewed by: simon
* Update to 1.05 release.ale2007-10-132-4/+4
|
* Reset delta@lackas.net due to maintainer-timeouts and no response to email.linimon2007-10-121-1/+1
| | | | Hat: portmgr
* - Fix compilation with gcc 4.2johans2007-10-121-7/+5
| | | | | - Note: testfile still fails, but does exactly the same with old gcc might be a broken test - leaving this to somebody with ruby-foo
* - Fix compilation on FreeBSD 7 (openssl issues)johans2007-10-121-7/+7
| | | | | - Fix libnss option - Grab maintainership (and feed patches upstream)
* - Update to 20071011 to reflect 0.92RC2garga2007-10-123-5/+5
|
* Document png -- multiple vulnerabilitiesmiwi2007-10-121-0/+44
| | | | Reviewed by: simon
* Update WWWgarga2007-10-121-1/+1
|
* Fix build under 7.0-CURRENT (gcc 4.2.1 20070719).cy2007-10-113-0/+31
| | | | | PR: 112884 Submitted by: Scot Hetzel<swhetzel@gmail.com>
* Document ImageMagick - Multiple vulnerabilitiesremko2007-10-101-0/+55
| | | | Submitted by: Nick Barkas
* Correct mediawiki package names.remko2007-10-101-7/+1
| | | | Spotted by: Nick Barkas
* - Update to 1.10clsung2007-10-102-4/+4
|
* - Update to 0.9.1084miwi2007-10-104-8/+14
| | | | | PR: 116859 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Update to 0.9.957miwi2007-10-103-7/+6
| | | | | PR: 116860 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Update to 0.9.985miwi2007-10-103-7/+6
| | | | | PR: 116858 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Update to 0.9.1068miwi2007-10-104-14/+6
| | | | | PR: 116863 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Update to 0.9.1068miwi2007-10-103-7/+6
| | | | | PR: 116861 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Update to 0.9.1086miwi2007-10-104-7/+10
| | | | | PR: 116862 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Mark DEPRECATED (distribution is broken and no longer supported.)miwi2007-10-101-1/+3
| | | | | PR: 116870 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* update to 0.60.1oliver2007-10-103-21/+4
|
* Update to 0.11.7.lx2007-10-102-4/+4
|
* - Dokument jdk/jre -- Applet Caching May Allow Network Access Restrictions ↵miwi2007-10-091-0/+46
| | | | | | to be Circumvented Reviewed by: remko
* Update 0.11 --> 0.13.1cy2007-10-095-39/+14
|
* Document xfs -- multiple vulnerabilities.flz2007-10-081-0/+35
|
* Mark as broken on gcc4.2.linimon2007-10-071-1/+7
|
* Respect OPENSSLBASE.stefan2007-10-072-5/+9
| | | | | PR: 116986 [1], 109041 [2] Submitted by: maintainer [1], supraexpress@globaleyes.net [2]
* - Update security/chntpw to 070923.chinsan2007-10-062-4/+4
| | | | | PR: ports/116967 Submmitter: maintainer
* - Update to 3.04sat2007-10-062-4/+4
|
* - Sort category Makefilessat2007-10-061-2/+2
| | | | | Inspired by: Jason Harris <jharris@widomaker.com> Howto: http://twiki.cenkes.org/Cenkes/SortingCategoryMakefiles
* fix the patch I messed up!oliver2007-10-061-47/+2
| | | | *sigh*
* - Update gsskex patch to 20070927mnag2007-10-052-9/+8
| | | | | | - Update HPN patch to hpn12v19 [1] Notified by: ale [1]
* - Document tcl/tk -- buffer overflow in ReadImage functionmiwi2007-10-051-0/+33
| | | | | | PR: 116881 Submitted by: Nick Barkas <snb@threerings.net> Reviewed by: simon
* Update to 1.04 release.ale2007-10-052-5/+6
|
* - Update to 2.24clsung2007-10-052-6/+5
|
* Remove errornous # DO NOT DELETE lines caused by makedepend(1)edwin2007-10-052-2/+0
|
* - update prelude library dependencyclsung2007-10-051-1/+2
| | | | | PR: ports/116111 Submitted by: Robin Gruyters <r dot gruyters_AT_yirdis dot nl>
* - update dependency on libpreludeclsung2007-10-051-1/+2
| | | | | PR: ports/116110 Submitted by: maintainer (Robin Gruyters)
* - Update to 0.9.13clsung2007-10-053-6/+11
| | | | | | | | | | | | | | | | | | | | | | | | - bump libprelude library Changelog libpreludedb: - Source and Target now use a 16 bits index (required for CorrelationAlert with large number of source/target). CorrelationAlert Alertident now use a 32 bits index (required to link large number of Alert together). - Fix compilation on system without ENOTSUP (fix #227): Include modified patch from Alexandre Anriot <aanriot@atlantilde.com>. - [pgsql] Patch by Pierre Chifflier <chifflier@inl.fr>, that fixes type conversions preventing PostgreSQL to use indexes (fix #225). - [preludedb-admin] Use separate alert / heartbeat command: this is done to have a coherent implementation of the --offset and --count command line options. - [preludedb-admin] Fix --offset with the load command. - [preludedb-admin] Give the delete table a decent size, should speedup the delete command. - [documentation] preludedb-admin manpage (fix #230), by Pierre Chifflier <chifflier@inl.fr>. PR: ports/116109 Submitted by: maintainer (Robin Gruyters)
* - Update to 0.9.9.1clsung2007-10-052-5/+5
| | | | | | | | | | | | - bump libprelude library Changelog prelude-manager: - Fix for new libprelude (0.9.15) runtime warning. - Add documentation for SQLite3 in the template configuration file (S??繅astien Tricaud <toady at gscore.org>). PR: ports/116108 Submitted by: maintainer (Robin Gruyters)
* - Update to 0.9.15.2clsung2007-10-054-16/+20
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | - Updated patch-Makefile.in - Added Man page Changelog libprelude: - prelude-adduser has been renamed to prelude-admin, and now include command to print or send files containing binary IDMEF data. - Brand new failover implementation, Feature a real 'journaling' log, allowing to restart where we were interupted. Allow multiple process to write to the same failover, and is chroot safe. - prelude-admin manpage, thanks to Frederic Motte <fred at ubixis com>. - Use SHA1 in place of MD5 for Analyzer checksum. - Do not set TCP option on UNIX socket, avoid un-necessary warning. - New measure all over the public interface to protect against bad API usage, when a function is not used correctly, a critical warning is triggered. - [logging]: New PRELUDE_LOG_CRIT logging priority. - [logging]: Correctly map Prelude log level to Syslog priority. - [logging]: Improved logging format (include timestamp, level, process pid). - [logging]: New LIBPRELUDE_ABORT variable, useful if you'd like libprelude to abord on critical assertion. - [logging]: Automatically switch to syslog mode if we detect stdout/stderr closure. - [IDMEF-Criteria]: When we try to match a value against a path that is not part of a message using a 'not' operator, the match should succeed (Example: alert.classification.text != 'stuff' should match if the message has no classification object). - [IDMEF-Criteria]: When matching multiple listed values within the same path using a 'not' operator, return an explicit 'no match' if the provided comparison value was found at least once. - [IDMEF-Path] (fix #251): Fixes NULL pointer dereference when the last element of an IDMEF path to an enumeration is not the enumeration itself (S??鞋bastien Tricaud <toady at gscore.org> - Fix a possible race condition with the internal libprelude reference to the program idmef_analyzer_t when asynchronous timer were used. - Workaround possible deadlock at exit on OpenBSD, Linux Glibc. - Only configure libltdl if it is required. - Various bug fixes, minor enhancements. - Write the children PID into specified pidfile (fixes #257). - Fix double free on idmef_criterion_value_t cloned regexp object (thanks to Helmut Azbest <helmut.azbest at gmail.com>). - Allow Python thread to run, while entering libprelude C function. - Return PRELUDE_ERROR_ASSERTION when API check fail, in place of PRELUDE_ERROR_GENERIC. - Make prelude_plugin_unsubcribe() work as expected (call the plugin instance destroy function). - Various bug fixes, minor enhancements. PR: ports/116107 Submitted by: maintainer (Robin Gruyters)
* - This patch fixes broken install.db2007-10-051-1/+1
| | | | | | PR: ports/116875 Reported by: db Submitted by: Maintainer
* Remove always true/always false OSVERSION conditions.edwin2007-10-052-27/+20
|
* Document firebird multiple remote buffer overflow vulnerabilitiesdelphij2007-10-051-0/+28
|
* fix build of courier-authlib-vchkpwoliver2007-10-041-9/+14
|
* Wapiti allows you to audit the security of your web applications.rafan2007-10-044-0/+48
| | | | | | | | | | | | | It performs "black-box" scans, i.e. it does not study the source code of the application but will scans the webpages of the deployed webapp, looking for scripts and forms where it can inject data. Once it gets this list, Wapiti acts like a fuzzer, injecting payloads to see if a script is vulnerable. WWW: http://wapiti.sourceforge.net/ PR: ports/116873 Submitted by: Philippe Audeoud <jadawin at tuxaco.net>
* remove double bsd.port.mkedwin2007-10-041-2/+0
|
* Remove always-false/true conditions based on OSVERSION 500000edwin2007-10-0430-174/+34
|
* Remove support for OSVERSION < 5edwin2007-10-046-33/+6
|
* [PATCH] security/fwbuilder: cleanup non-supported FreeBSD versionsedwin2007-10-033-18/+9
| | | | | | | | | - removed support to 4.X (EOL) - add correct NOPORTDOCS PR: ports/111822 Submitted by: Marcelo Araujo <araujo@bsdmail.org> Approved by: maintainer timeout
* update to 0.60.0oliver2007-10-034-115/+171
|
* Update the bugzilla and mediawiki entries to properly match their correctedremko2007-10-031-5/+6
| | | | | | versions. Prodded by: Nick Barkas (and a few others)
* Update to reflect the fixed version of id3lib.delphij2007-10-021-1/+2
|
* Document id3lib insecure temporary file creation vulnerabilitydelphij2007-10-021-0/+29
|
* Mark as broken with gcc4.2 on 64-bits archs.linimon2007-09-301-0/+6
|
* Fine-tune broken message.linimon2007-09-301-1/+1
|
* Mark as broken on gcc4.2.linimon2007-09-301-1/+7
|
* Remove 4.X cruft.linimon2007-09-301-4/+0
|
* Remove cruft.linimon2007-09-301-34/+0
|
* Also broken with gcc4.2.linimon2007-09-301-1/+5
|
* Mark as broken with gcc4.2.linimon2007-09-301-1/+7
|
* Mark as broken with gcc4.2 on 64-bit archs.linimon2007-09-301-1/+9
|
* Mark as broken: fails to install.linimon2007-09-301-0/+4
|
* Mark as only for i386-6.linimon2007-09-302-0/+14
| | | | | | | Based on: PR: ports/115474 Submitted by: maintainer
* Add USE_PERL5. This will be needed to conditionalize bsd.perl.mk inclusion.linimon2007-09-302-0/+2
| | | | Approved by: maintainer
* [update] security/pam-mysql to 7.0RC1edwin2007-09-304-8/+26
| | | | | | | | | | | Includes fix for correct use of -lmd to find MD5 functions (see: http://sourceforge.net/tracker/index.php?func=detail&aid=1485390&group_id=5741&atid=105741) Note: Used autoconf 2.61 to prevent problems with the upcoming sweep PR: ports/113882 Submitted by: Angelo Turetta <aturetta@bestunion.it> Approved by: maintainer timeout
* Before bsd.port.pre.mk, set either USE_PERL5 or WANT_PERL, depending onlinimon2007-09-301-0/+1
| | | | | whether the perl dependency is unconditional or conditional. This will be needed for the conditional inclusion of bsd.perl.mk.
* Switch autoconf dependencies from 2.53 or 2.59 to 2.61.linimon2007-09-308-11/+16
| | | | | PR: ports/116639 Submitted by: aDe
* Update to 1.2.4.1. Changes include:hrs2007-09-303-20/+20
| | | | - "*grabServer" resource bug has been fixed.
* - Make it work on 64-bit systems.alepulver2007-09-305-8/+138
| | | | | | | - Avoid the build failing when OpenSSL is installed as a port too. PR: ports/94921 Submitted by: Mats Palmgren <mats.palmgren@bredband.net>
* - Turn off keyboard grabbing to avoid mouse pointer lock after returning fromalepulver2007-09-301-0/+58
| | | | | | | the screensaver. PR: ports/103395 Submitted by: Vladimir Grebenschikov <vova@fbsd.ru>
* - Mark BROKEN everywhere: does not compilepav2007-09-291-4/+2
| | | | Reported by: pointyhat
* - cleanup Makefiletabthorpe2007-09-282-34/+8
| | | | | | | - update comment/descripttion to indicate port is a wrapper to Digest::MD5 - pass maintainership to perl@ Approved by: miwi (co-mentor)
* Upgrade to 1.0.1.shaun2007-09-277-79/+178
| | | | | PR: ports/115589 Submitted by: Rasmus Kaj <kaj@kth.se>
* [UPDATE] security/tor-develedwin2007-09-252-5/+4
| | | | | | | | Update to latest release. Suggest all users upgrade as there is a remote code exploit in versions less than 2.0.7 PR: ports/115534 Submitted by: Peter Thoenen <peter.thoenen@yahoo.com>
* Add missing files from pkg-plist after upgrade to masterportedwin2007-09-251-0/+3
| | | | | | Noticed by: YAPHR PR: ports/115868 (indirect)
* - Update to 1.3.1miwi2007-09-252-14/+9
| | | | | | | - Fix using sendmail from Ports (115270) PR: 116587 Submitted by: Petr Rehor <prehor@gmail.com> (maintainer)
* Dominic is a new dad, and will be too busy for a while to work on ports.linimon2007-09-241-1/+1
| | | | Congratulations :-)
* security/libgcrypt portlint fixesedwin2007-09-241-2/+2
| | | | | | | | | 1. remove quotes from COMMENT 2. INSTALLS_SHLIB -> USE_LDCONFIG PR: ports/115286 Submitted by: David Yeske <dyeske@gmail.com> Approved by: maintainer timeout
* - In managed mode the script does not return the proper value due to $?rafan2007-09-232-5/+8
| | | | | | | | | | is reset by the if command. Therefore, the script does not fail when starts with broken configuration files - While I'm here, use %%RC_SUBR%% instead of /etc/rc.subr PR: ports/110320 Submitted by: Dominic Fandrey <lon_kamikaze at gmx.de> Approved by: maintainer timeout (6 months)
* Update to 0.7.6.stefan2007-09-233-6/+7
|
* - Add missing patchmiwi2007-09-232-1/+43
| | | | | | - Fix whitspaces Submitted by: Dave Grochowski <malus.x@gmail.com> (maintainer)
* - modify mediawiki entry (add missing mediawiki18)miwi2007-09-231-0/+5
| | | | Reviewed by: remko
* - Update to 0.9lwhsu2007-09-233-16/+4
| | | | | PR: ports/116554 Submitted by: Peter Johnson <johnson.peter AT gmail.com> (maintainer)
* Update port: security/sfs, fix build with gcc42edwin2007-09-2311-10/+339
| | | | | | | | | | | | | The attached patch fixes security/sfs so it builds with gcc42. The only change I made that I am wary of is commenting out the LIBTOOL variable in ${WRKSRC}/sfsrwcd/Makefile. However, this seems to work fine on both 7.0-CURRENT and 6.2-STABLE. In addition, I would not mind maintaining the port. PR: ports/116389 Submitted by: Dave Grochowski <malus.x@gmail.com>
* Some PHP 5.x vulnerabilities is also found in PHP 4.x series,delphij2007-09-231-1/+6
| | | | | | | | unfortunately it seems that there is no newer PHP release to fix these issue for 4.x series, so mark it as so. While I'm there add a new CVE that was not mentioned in previous revision of entry.
* Update to 0.57erwin2007-09-232-4/+4
|
* - Change libevent lib and bump PORTREVISION since devel/libevent are updated.mnag2007-09-225-8/+10
|
* Document mediawiki -- cross site scripting vulnerability, our port versionsremko2007-09-211-0/+36
| | | | | | had not been updated yet, 1.8.x is not vulnerable by default unless you are using the $wgEnableAPI = true; statement, in that case please set it to $wgEnableAPI = false; (where possible ofcourse, else upgrade to 1.8.5).
* Document wordpress -- remote sql injection vulnerability, our versions areremko2007-09-211-0/+36
| | | | already up to date for this vulnerability.
* samba -- nss_info plugin privilege escalation vulnerability, the FreeBSDremko2007-09-211-0/+41
| | | | port had already been fixed for this.
* Document bugzilla -- multiple vulnerabilitiesremko2007-09-211-0/+46
| | | | | PR: ports/116060 Submitted by: Nick Barkas <snb at threerings dot net>, minor nits from me
* Document clamav CVE-2007-4510 issue (Remote DoS).delphij2007-09-211-0/+28
|
* Make the Protocol Helpers advanced settings window aestheticallycy2007-09-216-12/+18
| | | | pleasing once again.
* Document coppermine -- multiple vulnerabilities, the FreeBSDremko2007-09-201-0/+28
| | | | port is already up to date.
* Document openoffice -- arbitrary command execution vulnerability,remko2007-09-201-0/+37
| | | | | | | | all current versions marked vulnerable, everything as of 2.3 is believed to be fixed, but we do not have that yet ( I am also not sure whether the -devel version has the correct fix or not ) so lets be on the safe side till we know what version will be fixed in our repro.
* Document bugzilla -- "createmailregexp" security bypass vulnerability,remko2007-09-201-0/+32
| | | | | marking all versions as vulnerable till we know what version is the one fixed in our CVS repository.
* - Update to 0.26beech2007-09-203-7/+7
| | | | | | PR: ports/116429 Submitted by: TAKAHASHI Kaoru <kaoru@kaisei.org> (maintainer) Reviewed by: sat (mentor)
* Add support for Kerberos 5 kshell and Kerberos 4 ekshell using the IP Filtercy2007-09-2015-0/+411
| | | | rcmd proxy.
* Spell Ulf Harnhammar (ASCII version of name) using UTF-8 instead of HTMLsimon2007-09-201-1/+1
| | | | | | entities which can't be assumed is available to a paser by default. This fixes a warning from packaudit.
* Document kdm -- passwordless login vulnerabilityremko2007-09-201-0/+65
| | | | | | Document konquerer -- address bar spoofing Inspired by: lofi's cvs commits
* Document flyspray -- authentication bypassremko2007-09-201-0/+29
| | | | Submitted by: Nick Hilliard <nick at foobar dot org>
* Document mozilla -- code execution via Quicktime media-link files,remko2007-09-201-0/+57
| | | | | The Mozilla advisory talks somewhat about Windows for this matter, but better be safe then sorry (An updated firefox is available already).
* 2007-08-29 security/vncrypt: not supported on any current version of FreeBSDmiwi2007-09-186-81/+0
| | | | 2007-09-15 net-mgmt/ocs-unix-agent: Use net-mgmt/ocsinventory-agent instead
* - make work with fqdntabthorpe2007-09-182-4/+4
| | | | | | | | - bump PORTREVISION PR: ports/115210 Submitted by: Alex Keda <admin_AT_lissyara.su> Approved by: Jui-Nan Lin (maintainer), clsung (mentor)
* - Add PORTSCOUT skipvmm2007-09-182-0/+4
|
* Add COMMENT escaping.ale2007-09-184-4/+4
|
* - Update to 2.2.0acm2007-09-181-1/+7
|
* - New port: security/fpc-opensslacm2007-09-183-0/+33
| | | | Free Pascal unit for OpenSSL
* - Update to 1.1.4lwhsu2007-09-182-4/+4
|
* Chase the libpurple shared lib version.marcus2007-09-182-3/+4
|
* Update to 1.6.9p5:tmclaugh2007-09-172-5/+5
| | | | | | - Fixed a bug in the IP address matching introduced by the IPV6 merge. - Fixed sudoedit when used on a non-existent file. - Groups and netgroups are now valid in an LDAP sudoRunas statement.
* - Update to 1.09miwi2007-09-172-4/+4
|
* - Update to 3.03sat2007-09-152-4/+4
|
* Add marker that reminds to keep the last of the dirrm lines whense2007-09-141-0/+1
| | | | the (only temporarily included) local copy of pygoogle is removed.
* - Update MD5/SHA256 of openssh hpn patch. This patch are rerolled to update ↵mnag2007-09-141-2/+2
| | | | | | | | | | | | | | | | version: --- openssh-4.7p1-hpn12v18.diff 2007-09-13 17:11:05.000000000 -0300 +++ /usr/ports/distfiles/openssh-4.7p1-hpn12v18.diff 2007-09-05 18:13:03.000000000 -0300 @@ -1580,5 +1580,5 @@ #define SSH_PORTABLE "p1" -#define SSH_RELEASE SSH_VERSION SSH_PORTABLE -+#define SSH_HPN "-hpn12v18" ++#define SSH_HPN "-hpn12v17" +#define SSH_RELEASE SSH_VERSION SSH_PORTABLE SSH_HPN Reported by: Tsurutani Naoki <turutani___scphys.kyoto-u.ac.jp>
* Upgrade to 2.3.7, which fixes a Prelude integration bug.lx2007-09-142-4/+4
|
* Update the PHP vulnerability entry:delphij2007-09-131-8/+51
| | | | | | | | - Use php5 to cover php 5.x as the port did. - Add more information about the vulnerability. Submitted by: Nick Barkas <snb threerings net> PR: ports/116182
* - Properly clean up directoriespav2007-09-121-1/+1
| | | | Reported by: pointyhat
* Update port: security/kopete-otredwin2007-09-122-4/+5
| | | | | | | Update kopete-otr to version 0.6. PR: ports/116271 Submitted by: Dave Grochowski <malus.x@gmail.com>
* Patch for MIT krb5 Security Advisory 2007-006 - kadmind RPC lib buffercy2007-09-128-0/+24
| | | | | overflow, uninitialized pointer Security: MIT krb5 Security Advisory 2007-006
* Update 2.1.13 --> 2.1.14cy2007-09-1218-27/+33
|
* Undo changes to the header.edwin2007-09-121-2/+2
|
* Correct a style nit and bump modification date.remko2007-09-121-1/+3
| | | | | Bump modification date for "xpdf -- stack based buffer overflow" which was forgotten by Jeremy (mezz) :-)
* Document Apache 2.0.x, 2.2.x series' vulnerabilities as welldelphij2007-09-111-0/+74
| | | | as security related improvements in php 5.2.4.
* There is no code of CVE-2007-3387 vulnerability in evince, therefore removemezz2007-09-111-4/+0
| | | | | it from the database. It only merely depends on poppler and poppler has been patched (marked as safe in database).
* Update to 0.11.4 release.ale2007-09-113-6/+18
|
* - Update to 3.02sat2007-09-113-4/+5
|
* - lighttpd -- FastCGI header overrun in mod_fastcgimnag2007-09-101-0/+31
|
* security/bro, port upgrade to version 1.2.1, take over maintainershipedwin2007-09-1027-251/+856
| | | | | | | | | | | | | | | | | | | | | | This is an upgrade of the security/bro port to the current stable version. The port is very complex, so it needs to be tested carefully to make sure that I'm not screwing anything up or using wrong conventions. Also, I'm willing to take over maintainership of the port if it's accepted into the tree. Please note, there are several files that need to be removed from the port and quite a few that need to be added. All these files are in FILESDIR. I have provided blank patches for the files that need to be removed, so the patches will create blank files. Added IS_INTERACTIVE to the port Left original freebsd header comments in it. Next time please use one big patch-file instead of lots of little ones :-) PR: ports/114999 Submitted by: Paul Schmehl <pauls@utdallas.edu>
* [UPDATE] security/vinetto to 0.07edwin2007-09-102-6/+5
| | | | | | | | | Update from 0.06 to 0.07. Changelog: - Added utf8 support and symlinks from real filenames to numbered filenames PR: ports/116063 Submitted by: "R.Mahmatkhanov" <R.Mahmatkhanov@SKYLINK.ru>
* [patch] Ossec-hids-server upgrade to 1.3edwin2007-09-103-4/+10
| | | | | | | Attached patch updates ossec-hids-server to version 1.3 PR: ports/115868 Submitted by: valerio.daelli@gmail.com
* - Update to 1.1.3lwhsu2007-09-103-14/+4
|
* RATS is under new ownership, so change download and WWW info.lx2007-09-092-4/+4
| | | | | | PR: ports/116194 Submitted by: bf <bf2006a@yahoo.com> Approved by: lx
* Add fix for compilation problems as suggested atedwin2007-09-092-0/+12
| | | | | | http://point-at-infinity.org/ssss/ Noticed by: YAPHR
* Fix mismerge.linimon2007-09-091-1/+1
| | | | Hat: portmgr
* - Update to 1.0.6gabor2007-09-082-4/+4
|
* new port: security/afterglow, a collection of graph-generating scriptsedwin2007-09-085-0/+100
| | | | | | | | | | | | | AfterGlow is a collection of scripts which facilitate the process of generating event graphs and treemaps. AfterGlow 1.x is written in Perl and generates output that can be read by GraphViz or LGL. All the scripts and other files for afterglow are installed in ${DATADIR} WWW: http://sourceforge.net/projects/afterglow PR: ports/115186 Submitted by: Paul Schmehl <pauls@utdallas.edu>
* - Update to 4.7p1mnag2007-09-083-41/+9
| | | | | - Update HPN patch to 4.7p1-hpn12v18 - Mark as BROKEN WITH_KERB_GSSAPI while developer release a new patch
* Welcome bsd.perl.mk. Add support for constructs such as USE_PERL5=5.8.0+.linimon2007-09-0859-397/+63
| | | | | | | | Drop support for antique perl. Work done by: gabor Sponsored by: Google Summer of Code 2007 Hat: portmgr
* Remove support for antique perl.linimon2007-09-086-86/+3
| | | | Hat: portmgr
* new port security/ssss - Shamir's Secret Sharing Schemeedwin2007-09-076-0/+294
| | | | | | | | | | | | | | ssss is an implementation of Shamir's secret sharing scheme for UNIX/linux machines. It is free software, the code is licensed under the GNU GPL. ssss does both: the generation of shares for a known secret and the reconstruction of a secret using user provided shares. The software was written in 2006 by B. Poettering, it links against the GNU libgmp multiprecision library (version 4.1.4 works well) and requires the /dev/random entropy source. PR: ports/115949 Submitted by: Lukasz Komsta <luke@novum.am.lublin.pl>
* New port: security/seccure - SECCURE Elliptic Curve Crypto Utility for ↵edwin2007-09-076-0/+74
| | | | | | | | | | | | | | | | | | | | | | Reliable Encryption The seccure toolset implements a selection of asymmetric algorithms based on elliptic curve cryptography (ECC). In particular it offers public key encryption / decryption, signature generation / verification and key establishment. ECC schemes offer a much better key size to security ratio than classical systems (RSA, DSA). Keys are short enough to make direct specification of keys on the command line possible (sometimes this is more convenient than the management of PGP-like key rings). seccure builds on this feature and therefore is the tool of choice whenever lightweight asymmetric cryptography -- independent of key servers, revocation certificates, the Web of Trust or even configuration files -- is required. PR: ports/115943 Submitted by: Lukasz Komsta <luke@novum.am.lublin.pl>
* new port: security/hamachi (supersedes ports/110850)edwin2007-09-077-0/+377
| | | | | | | | | | | | | | | | | New port of Hamachi VPN, using Linux official binary and a patch on tuncfg.c based on the official OSX release. Hamachi is a software that eases the creation of secure VPNs even between nodes that would not be able to connect to each other (server-assisted connection can be established from two NATted client, if at least one of the two NAT associates the port to the client not checking remote host). UPX port is required in order to decompress the linux binary and avoid run-time dependency on /proc. PR: ports/112982 Submitted by: Lapo Luchini <lapo@lapo.it>
* As promised, remove net-im/gaim, and all dependent ports. Gaim has beenmarcus2007-09-079-158/+0
| | | | replaced by net-im/pidgin.
* New port: security/openvpn-auth-ldap - LDAP authentication plugin for OpenVPNedwin2007-09-075-0/+78
| | | | | | | | | | | | The OpenVPN Auth-LDAP Plugin implements username/password authentication via LDAP for OpenVPN 2.x. It also includes some integration with the OpenBSD packet filter, supporting adding and removing VPN clients from PF tables. WWW: http://dpw.threerings.net/projects/openvpn-auth-ldap/ PR: ports/113925 Submitted by: Nick Barkas <snb@threerings.net>
* Update to 2.3.6.lx2007-09-072-5/+4
|
* Fix build on -stable. Pointed out by Pointyhat via Pav. (Thanks!)se2007-09-061-1/+1
|
* Chase libprelude version bump.lx2007-09-061-1/+2
| | | | | | PR: ports/116112 Submitted by: Robin Gruyters <r.gruyters@yirdis.nl> Approved by: lx
* Update to 0.2.21krion2007-09-054-5/+7
|
* Fix mod_jk's version since PORTEPOCH came into play.remko2007-09-051-1/+2
| | | | | PR: 116115 Reported by: Klavs Klavsen <klavs at EnableIT dot dk>
* rkhunter -- insecure temporary file creationgabor2007-09-051-0/+36
| | | | Reviewed by: remko
* lsh -- multiple vulnerabilitiesgabor2007-09-051-1/+29
| | | | Reviewed by: remko
* Unbreak the build by adding an explicit dependency on intltooldougb2007-09-051-0/+1
|
* - Fix typo.jmelo2007-09-051-1/+1
|
* - Update to 0.3.6c.jmelo2007-09-052-10/+7
| | | | - Unbreak port.
* Remove spurious backslash.se2007-09-051-1/+1
|
* New port of w3af, the Web Application Audit and Attack Framework.se2007-09-056-0/+1302
| | | | | | | | | This is a Python based package of tools that can be used to assess the security of a web server (including automated advanced tests, e.g. for XSS or SQL injection vulnerabilities). I did not get this port to work with the py-google port, there for a local copy of pygoogle is included and packaged with this port.
* Update to 0.004mat2007-09-052-4/+4
|
* Install schema.OpenLDAP into DOCSDIR.tmclaugh2007-09-042-0/+2
| | | | Prompted by: flz
* Backout the commit with addition of pinentry as a run dependency becausenovel2007-09-031-2/+1
| | | | it needs discussion.
* Update to 0.1.2.17arved2007-09-032-4/+4
| | | | | PR: 116002 Submitted by: Nils Vogels <nivo+kw+ports.bfa274@is-root.com>
* Update to 0.7arved2007-09-036-60/+6
| | | | | PR: 115978 Submitted by: VANHULLEBUS Yvan <vanhu@netasq.com>
* Document fetchmail -- denial of service on reject of localsimon2007-09-021-0/+34
| | | | | | | warning message. Submitted by: Matthias Andree <matthias.andree@gmx.de> PR: ports/??? (Not received by GNATS yet)
* Add RUN_DEPEND on security/pinentry because gpg is almost uselessnovel2007-09-021-1/+2
| | | | | | | | without it. PR: 115760 Submitted by: novel Approved by: maintainer timeout (1 week, linimon ok)
* Document gtar directory traversal vulnerability.naddy2007-09-021-0/+32
| | | | | PR: 115914 Submitted by: Nick Barkas <snb@threerings.net>
* - Update to 3.01sat2007-09-012-4/+4
|
* Use the CPAN site macro.mat2007-08-312-4/+2
| | | | | Use DISTVERSION in place of DISTNAME where possible. Remove perl 5.005 shims.
* Update to 20070830garga2007-08-312-4/+4
|
* - Enable ssl-enginemnag2007-08-305-2349/+52
| | | | | | | | | | - Update gsskex patch to 4.6p1-gsskex-20070312 - Update lpk patch to 4.6p1-0.3.9 - Update hpn patch to 4.6p1-hpn12v17 - Fix challenge-response issue - Bump PORTREVISION Reported by: Stefan Lambrev [1], ale@ [1]
* - Modern rc.d scriptsem2007-08-303-5/+27
| | | | | | PR: ports/115198 Submitted by: Jan Srzednicki <w@wrzask.pl> Approved by: maintainer