| Commit message (Collapse) | Author | Age | Files | Lines |
|
|
|
|
|
| |
PR: ports/106214
Submitted by: chinsan
Approved by: maintainer timeout (17 days)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
maintains compatibility with Password Safe files. MyPasswordSafe has the
following features:
* Safes are encrypted when they are stored to disk.
* Passwords never have to be seen, because they are copied to the clipboard.
* Random passwords can be generated.
* Window size, position, and column widths are remembered.
* Passwords remain encrypted until they need to be decrypted at the dialog and
file levels.
* A safe can be made active so it will always be opened when MyPasswordSafe
starts.
* Supports Unicode in the safes.
* Languages supported: English and French.
WWW: http://www.semanticgap.com/myps/
|
| |
|
|
|
|
| |
Submitted by: farrokhi
|
|
|
|
|
| |
PR: ports/106779
Submitted by: Peter Thoenen <peter.thoenen@yahoo.com> (maintainer)
|
|
|
|
|
|
| |
adjusting some package names, and collapsing some ruby entries that
can be combined. Also properly sort the <bid> and <cvename> tags.
b comes before c.
|
|
|
|
| |
Reported by: pointyhat via kris
|
|
|
|
| |
Submitted by: mnag
|
|
|
|
| |
Reported by: pointyhat
|
| |
|
|
|
|
|
|
| |
- Remove some empty lines
- Respect 2 spaces between <body> and <p>
- Respect empty line between <vuln vid=""> entry.
|
|
|
|
|
| |
PR: 106679
Submitted by: TAKAHASHI Kaoru <kaoru@kaisei.org>
|
|
|
|
| |
Changelog at: http://www.allard.nu/pfw/history
|
|
|
|
|
|
|
|
|
|
| |
The port security/blocksshd has the location of the config file hard-coded
into it as "/etc/blocksshd.conf", while the port places the config file
into "/usr/local/etc/blocksshd.conf"
- bump PORTREVISION
PR: ports/106629
Submitted by: Rob B<rbyrnes_AT_mailshack dot com>
|
|
|
|
| |
Submitted by: pointyhat via kris
|
| |
|
| |
|
|
|
|
|
|
|
|
|
|
| |
Bump PORTREVISION of all dependent ports.
Fix the build errors in the few ports that still use the long deprecated,
and now obsoleted, cURL options.
Thanks to everyone who took the time to look over the patch!
Discussed on: -ports
|
| |
|
| |
|
|
|
|
|
| |
Reviewed by: simon
Approved by: secteam
|
|
|
|
| |
first place)
|
|
|
|
|
|
|
| |
Python secure hash and message digest module MD5, SHA1, SHA224, SHA256,
SHA384 and SHA512 (backported from Python 2.5 for use on 2.3 and 2.4)
WWW: http://code.krypto.org/python/hashlib/
|
|
|
|
|
| |
Security: http://www.vuxml.org/freebsd/eb5124a4-8a20-11db-b033-00123ffe8333.html
With hat: secteam
|
| |
|
|
|
|
|
|
| |
PR: ports/106567
Submitted by: Jose Fernandes<jose@diasfernandes.pt>
Approved by: maintainer
|
|
|
|
|
| |
PR: ports/106609
Submitted by: Sergei Vyshenski <svysh@cryptocom.ru> (maintainer)
|
|
|
|
| |
Noticed by: kris (via pointyhat)
|
|
|
|
|
|
|
|
| |
PR: 106620
Submitted by: Michael Scheidell <scheidell___secnap.net>
Approved by: maintainer timeout (18 hours)
With hat: secteam
Security: http://secunia.com/advisories/23347/, http://www.quantenblog.net/security/virus-scanner-bypass
|
| |
|
|
|
|
|
|
|
| |
Portlint fixups.
PR: TBA
Submitted by: Jin-Shan Tseng <tjs@cdpa.nsysu.edu.tw>
|
|
|
|
|
|
|
| |
Portlint fixups.
PR: TBA
Submitted by: Jin-Shan Tseng <tjs@cdpa.nsysu.edu.tw>
|
|
|
|
|
|
|
|
| |
Vadim Kurland, the author of libfwbuilder and fwbuilder, wishes that I
maintain this port for him.
Submitted by: Vadim Kurland <vadim@fwbuilder.org>
Approved by: Maintainer: Vadim Kurland <vadim@fwbuilder.org>
|
| |
|
|
|
|
|
|
|
| |
o Use the FDP style to fill in the entry.
o Remove the secunia references and use the libxine information.
o Properly sort the references section
o Add the modified tag (since I changed it).
|
|
|
|
|
|
|
|
| |
(not connected in ../Makefile)
- Tweak installation directory for documents to avoid conflict against
coming gnupg upgrade (2.0.1).
I'm still testing my patch to upgrade to 2.0.1, so please wait. :-)
|
|
|
|
|
| |
Noticed by: pointyhat via kris
Pointy hat to: rafan
|
|
|
|
| |
Approved by: erwin (mentor)
|
| |
|
|
|
|
|
| |
PR: ports/106456
Submitted by: jjuanino@gmail.com
|
| |
|
|
|
|
|
| |
PR: ports/106477
Submitted by: Peter Thoenen <peter.thoenen@yahoo.com> (maintainer)
|
| |
|
|
|
|
| |
- Add secunia reference in las entry
|
|
|
|
|
| |
PR: ports/106368
Submitted by: Sunpoet Po-Chuan Hsieh <sunpoet_AT_sunpoet dot net>
|
|
|
|
|
| |
* Fix the URL in references, the former one gives 404 Not found.
Kuriyama, where did you get it from?
|
| |
|
|
|
|
|
| |
Security: CVE-2006-6235
References: http://lists.gnupg.org/pipermail/gnupg-announce/2006q4/000491.html
|
|
|
|
| |
- Fix many wrong BUILD_DEPENDS. Thanks to ldd(1)
|
| |
|
|
|
|
|
| |
PR: ports/106069
Submitted by: Sergei Vyshenski <svysh@cryptocom.ru> (maintainer)
|
|
|
|
|
|
|
|
|
|
|
|
| |
examines the sequence of client-server exchanges, their relative
layer 7 payload sizes, and transmission intervals (as opposed to
inspecting the contents, which is what most passive fingerprinters
and "smart" sniffers would do to analyze transmissions). This is
then matched against a database of traffic pattern signatures to
infer some interesting facts about the traffic.
PR: ports/106351
Submitted by: trasz <trasz at pin.if.uz.zgora.pl>
|
| |
|
|
|
|
| |
- This vulnerability was not fixed in ruby_static
|
| |
|
|
|
|
|
|
|
|
|
| |
- Sneak in master sites beautification and use_ldconfig
while I'm here
PR: ports/105488
Submitted by: bz
Approved by: VANHULLEBUS Yvan <yvan.vanhullebus@netasq.com> (maintainer)
|
| |
|
|
|
|
|
|
|
| |
- Set EXPIRATION_DATE
PR: 106237
Submitted by: gabor
|
|
|
|
|
|
|
| |
- Set EXPIRATION_DATE
PR: 106236
Submitted by: gabor
|
| |
|
| |
|
| |
|
|
|
|
| |
Pointy hat to: simon
|
|
|
|
| |
Reviewed by: simon
|
| |
|
| |
|
| |
|
|
|
|
|
| |
PR: ports/101613
Submitted by: alepulver
|
|
|
|
|
|
|
|
|
|
|
| |
! Remove Proc::Daemon & Proc::PID::File
! Add Net::Subnets
- Respect PREFIX for default configuration file.
- Change back TARGETDIR to PREFIX.
- Bump PORTREVISION.
PR: ports/105953
Submitted by: Gea-Suan Lin <gslin_AT_gslin dot org>
|
| |
|
| |
|
| |
|
|
|
|
|
|
| |
PR: ports/104944
Submitted by: Thomas Abthorpe <thomas@goodking.ca>
Approved by: Howard Owen <hbo@egbok.com> (maintainer timeout, 30 days)
|
| |
|
|
|
|
|
|
| |
- Use "Werner Koch reports" instead of "Author reports" to follow
normal style in vuln.xml.
- Fix some indentation and markup in body.
|
|
|
|
| |
Security: https://bugs.g10code.com/gnupg/issue728
|
|
|
|
|
| |
- add optional signer plugin
- fix build when libassuan is installed
|
| |
|
|
|
|
| |
References: http://lists.gnupg.org/pipermail/gnupg-announce/2006q4/000241.html
|
|
|
|
|
| |
PR: ports/105882
Submitted by: David Thiel <lx@redundancy.redundancy.org> (maintainer)
|
|
|
|
|
|
|
|
|
| |
- Don't quote amavis_p0f_daemon_flags in the p0f rc.d script [1]
- Don't use -p option of daemon on 4.X since it doesn't have such [1]
Requested by: Michael Scheidell <scheidell@secnap.net> [1]
PR: 105862
Submitted by: gabor (maintainer)
|
|
|
|
| |
Forgotten by: erwin
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- library version update of related ports
Changelog libprelude:
- Hook class comparison function. Accept NULL, equal, not equal operator.
- Introduce better error checking in the idmef-class API, which is now
considered public and might be used by external application. Rename
error code to reflect the API.
- Change to the way IDMEF listed element are handled. Specifying negative
number as the position of the element from the low level API now allow
to position the element at the specified (reversed) index. Using the
high level API a negative index permit to address a list of element
backward (replace an element).
- Build fixes for SWIG > 1.3.27.
- Modify idmef_value_match() so that it always unroll listed value
(do it for both val1 and val2. Remove assertion, and let
idmef_value_type_compare() return an error code in case there is an issue.
- Handle path using IDMEF_LIST_APPEND or IDMEF_LIST_PREPEND as
path using an undefined list index on idmef_path_get() call.
- Make criteria parser accept (*) list index.
- Implement comparison function for all IDMEF object.
PR: ports/104328
Submitted by: maintainer (Robin Gruyters)
Approved by: portmgr (pav)
|
|
|
|
|
| |
PR: ports/105866
Submitted by: TAKAHASHI Kaoru <kaoru at kaisei.org> (maintainer)
|
| |
|
| |
|
|
|
|
|
| |
PR: ports/105816
Submitted by: Luiz Eduardo Roncato Cordeiro <cordeiro@cert.br> (maintainer)
|
|
|
|
|
|
|
|
|
|
|
| |
ClamAV clamd service - an anti-virus daemon process.
You can find more information about clam anti-virus at
WWW: http://www.clamav.net/
File::Scan::ClamAV was originally based on the Clamd module
Submitted by: Jan-Peter Koopmann <Jan-Peter.Koopmann at seceidos.de>
|
| |
|
|
|
|
|
|
|
|
|
| |
- Use denyhost.conf (FreeBSD's default config file) instead of denyhost.cfg.
- Bump PORTREVISION.
PR: ports/105305
Submitted by: Gea-Suan Lin <gslin_AT_gslin dot org>
Approved by: maintainer (Mohacsi Janos)
|
| |
|
| |
|
| |
|
|
|
|
|
| |
PR: ports/105727
Submitted by: Linh Pham (maintainer)
|
|
|
|
|
|
|
|
| |
- Fix detection for optional subversion module
PR: ports/104891
Submitted by: Nicolas Blais <nb_root@videotron.ca>
Approved by: maintainer timeout (3 weeks)
|
|
|
|
| |
Requested by: remko
|
|
|
|
|
| |
PR: ports/105596
Submitted by: Joshua D. Abraham <jabra@ccs.neu.edu> (maintainer)
|
| |
|
|
|
|
| |
Approved by: mnag
|
|
|
|
|
| |
PR: ports/105618
Submitted by: Andrea Venturoli <freebsd@netfence.it> (maintainer)
|
|
|
|
| |
Take Maintainership.
|
|
|
|
|
| |
PR: ports/105591
Submitted by: David Thiel <lx@redundancy.redundancy.org> (maintainer)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
an open source intrusion detection system.
The actual interface and GUI server are written in tcl/tk.
Sguil also relies on other open source software
in order to function properly.
The client requires gpg, iwidgets and other tcl packages and may
also use wireshark, festival and tls depending on your selection
of options. Run "make config" in the port to see what options
are available.
Sguil currently functions as an analysis interface and has
no snort sensor or rule management capabilities.
WWW: http://sguil.sourceforge.net/index.php
pauls@utdallas.edu
PR: ports/105496
Submitted by: Paul Schmehl <pauls at utdallas.edu>
|
|
|
|
|
| |
PR: ports/105552
Submitted by: Lars Sommer<lasg@lasg.dk>
|
| |
|
|
|
|
|
| |
skip over the installation of example files and scripts. Of course,
stunnel.conf-sample is still installed into etc/stunnel/.
|
| |
|
| |
|
| |
|
|
|
|
|
| |
Submitted by: Alex Samorukov
PR: ports/105233
|
|
|
|
|
|
| |
PR: ports/105299
Submitted by: Bill Moran <wmoran@collaborativefusion.com> (maintainer)
Approved by: flz (mentor)
|
|
|
|
| |
Reviewed by: simon
|
|
|
|
|
| |
PR: ports/105486
Submitted by: Thomas Abthorpe <thomas@goodking.ca> (maintainer)
|
|
|
|
|
|
|
| |
- Change maintainer to perl@
PR: ports/105509
Submitted by: Gea-Suan Lin <gslin_AT_gslin dot org>
|
|
|
|
|
|
|
|
|
|
|
| |
securiry/krb5.
Bump PORTREVISION accordingly.
PR: ports/105442
Submitted by: Ruben van Staveren <ruben@verweg.com>
Reviewed by: shaun@, cy@
Approved by: flz (mentor)
|
|
|
|
|
| |
PR: ports/105432
Submitted by: Milan Obuch<bsd@dino.sk> (maintainer)
|
|
|
|
|
| |
Submitted by: miwi via privat mail
Approved by: maintainer
|
| |
|
|
|
|
|
| |
PR: ports/105397
Submitted by: Jonathan <afarsec@012.net.il> (maintainer)
|
|
|
|
|
| |
PR: ports/105449
Submitted by: Matthias Andree (maintainer)
|
|
|
|
| |
Hat: portmgr
|
|
|
|
|
|
| |
Update earleir bugzilla entry with better topic, add ja-bugzilla as
also potentially vulnerable (thought the version currently in
ja-bugzilla isn't), and add more references.
|
|
|
|
|
|
|
|
|
| |
Platform-independent tool for Authenticode signing of EXE/CAB files - uses
OpenSSL and libcurl. It also supports timestamping.
PR: ports/105353
Submitted By: Nick Barkas <snb@threerings.net>
Approved By: flz (mentor)
|
|
|
|
|
| |
PR: 105391
Submitted by: Paul Schmehl (maintainer)
|
|
|
|
|
| |
PR: ports/105388
Submitted by: Paul Schmehl <pauls@utdallas.edu> (maintainer)
|
|
|
|
|
|
| |
in message if chroot() fail.
Notified by: Chris Gardner <chris_g_g___hotmail.com>
|
|
|
|
|
|
|
| |
- patch-sshd.c unconditionally includes <gssapi.h>. Include "ssh-gss.h" instead. [1]
PR: 104481 [1]
Submitted by: Mark Andrews <Mark_Andrews___isc.org> [1]
|
|
|
|
|
| |
PR: ports/105322
Submitted by: maintainer (Thomas Abthorpe)
|
| |
|
|
|
|
|
| |
PR: porst/105321
Submitted by: maintainer (Thomas Abthorpe)
|
|
|
|
|
| |
PR: ports/105320
Submitted by: maintainer (Thomas Abthorpe)
|
|
|
|
|
| |
PR: ports/105319
Submitted by: maintainer (Thomas Abthorpe)
|
|
|
|
|
| |
PR: ports/105318
Submitted by: maintainer (Thomas Abthorpe)
|
|
|
|
|
| |
PR: ports/105317
Submitted by: maintainer (Thomas Abthorpe)
|
|
|
|
| |
Notified by: krismail
|
|
|
|
|
| |
PR: ports/104638
Submitted by: KIMURA Yasuhiro <yasu at utahime dot org>
|
| |
|
|
|
|
|
|
|
| |
- Bump PORTREVISION
PR: 105209
Submitted by: Jonathan Arnold<jdarnold___buddydog.org>
|
| |
|
|
|
|
| |
Approved by: miwi (mentor)
|
|
|
|
|
| |
Suggested by: kris
Noticed by: alepulver
|
|
|
|
|
|
| |
PR: ports/105226
Submitted by: Peter Thoenen <peter.thoenen@yahoo.com> (maintainer)
Reviewed by: flz (mentor)
|
|
|
|
| |
Approved by: flz (mentor)
|
|
|
|
|
|
|
|
|
|
|
| |
ChangeLog:
- Handle local logins properly [1]
- Honor allow_on_error in setcred() [1]
- Use the default (*) rule if we can't resolve the hostname [2]
PR: ports/104946
Submitted by: Dan Lukes <dan@obluda.cz> [1]
Reported by: Tsurutani Naoki <turutani@scphys.kyoto-u.ac.jp> [2]
|
| |
|
| |
|
|
|
|
|
|
|
|
| |
- Add distribution kit for FreeBSD 6.1.
- Bump portrevision.
PR: ports/104562
Submitted by: Demin Alexander <support@spectrum.ru> (maintainer)
|
| |
|
|
|
|
|
|
| |
PR: ports/105176
Submitted by: Udo Schweigert <udo.schweigert@siemens.com> (maintainer)
Sponsored by: FreeBSD Bug-a-thon #2
|
| |
|
|
|
|
|
| |
PR: ports/104730
Submitted by: Nick Rogness <nick@rogness.net> (maintainer)
|
| |
|
|
|
|
|
| |
PR: ports/105159
Submitted by: David Thiel (maintainer)
|
|
|
|
|
|
| |
PR: ports/105018
Submitted by: chinsan@
Sponsored by: FreeBSD Bug-a-thon #2
|
|
|
|
|
| |
PR: ports/104257
Submitted by: Josh Paetzel <josh@tcbug.org>
|
|
|
|
|
| |
PR: ports/104256
Submitted by: Josh Paetzel <josh@tcbug.org>
|
|
|
|
|
| |
PR: ports/104214
Submitted by: Josh Paetzel <josh@tcbug.org>
|
| |
|
|
|
|
| |
Reviewed by: simon
|
|
|
|
| |
Grab maintainership
|
|
|
|
|
|
|
| |
a function. Seems that only the compiler in 4-stable complains about
this violation of the C standard ...
Reported by: pointyhat via kris
|
|
|
|
|
|
| |
PR: ports/104770
Submitted by: Joe Horn <joehorn_AT_leobbs dot net>
Approved by: maintainer (Jui-Nan Lin)
|
|
|
|
| |
PR: 105114
|
| |
|
| |
|
|
|
|
|
| |
no user given symetric key encryption
Submitted by: dinoex
|
|
|
|
|
|
| |
2.0 release, so mark 2.0 as fixed.
Prodded by: ahze
|
| |
|
| |
|
| |
|
| |
|
| |
|
|
|
|
|
| |
PR: ports/104908
Submitted by: Yonatan <onatan@gmail.com> (maintainer)
|
|
|
|
|
|
| |
PR: ports/104249
Submitted by: Jo Rhett<jrhett_AT_netconsonance dot com>
Approved by: maintainer (Petr Rehor)
|
|
|
|
|
| |
PR: ports/104987, ports/104991
Submitted by: Paul Schmehl <pauls@utdallas.edu> (maintainer)
|
| |
|
|
|
|
|
|
| |
PR: ports/104223
Submitted by: Mykola Dzham <freebsd@levsha.org.ua>
Approved by: Alexander Demin <support@spectrum.ru> (maintainer)
|
|
|
|
|
|
|
| |
- Pass maintainership to submitter
PR: ports/104729
Submitted by: chinsan@
|
|
|
|
|
| |
PR: ports/104658
Submitted by: Michael Ranner <mranner at inode.at> (maintainer)
|
|
|
|
|
|
| |
PR: ports/104415
Submitted by: Gea-Suan Lin <gslin_AT_gslin dot org>
Approved by: maintainer (gabor)
|
|
|
|
|
|
|
| |
- Reset maintainership to ports@FreeBSD.org
PR: ports/104334
Submitted by: Gea-Suan Lin <gslin@gslin.org>
|
|
|
|
|
| |
PR: ports/104414
Submitted by: Gea-Suan Lin <gslin_AT_gslin dot org>
|
|
|
|
|
| |
PR: ports/104957
Submitted by: Gea-Suan Lin <gslin_AT_gslin dot org>
|
|
|
|
|
| |
PR: ports/103815
Submitted by: David Thiel <lx@redundancy.redundancy.org> (maintainer)
|
|
|
|
|
| |
PR: ports/104932
Submitted by: maintainer (Peter Thoenen)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Security Monitoring (NSM). NSM is the collection,
analysis, and escalation of indications and warnings
to detect and respond to intrusions. NSM tools are
used more for network audit and specialized
applications than traditional alert-centric "intrusion
detection" systems.
Want to learn more about Network Security Monitoring
(NSM)? Then check out Richard Bejtlich's recently
released book, The Tao of Network Security Monitoring:
Beyond Intrusion Detection. An excerpt reads:
"Network security monitoring (NSM) equips security
staff to deal with the inevitable consequences of too
few resources and too many responsibilities. NSM collects
the data needed to generate better assessment, detection,
and response processes--resulting in decreased impact from
unauthorized activities."
WWW: http://sguil.sourceforge.net/index.php
pauls@utdallas.edu
PR: ports/104227
Submitted by: Paul Schmehl <pauls at utdallas.edu>
|
|
|
|
|
|
|
| |
- Remove BROKEN, DEPRECATED and EXPIRATION_DATE.
PR: ports/104593
Submitted by: Alexander Logvinov <ports@logvinov.com>
|
|
|
|
|
|
|
| |
- Take maintainership.
PR: ports/104235
Submitted by: Thomas Abthorpe <thomas@goodking.ca>
|
|
|
|
|
|
|
| |
- Take maintainership.
PR: ports/104233
Submitted by: Thomas Abthorpe <thomas@goodking.ca>
|
|
|
|
| |
* When package building, don't automatically fetch the newest DAT
|
|
|
|
|
| |
Approved by: portmgr (erwin)
Security: http://www.vuxml.org/freebsd/8012a79d-5d21-11db-bb8d-00123ffe8333.html
|
|
|
|
|
|
|
| |
I knew I should ask someone before committing, however trivial was the change.
Spotted by: remko
Approved by: portmgr (implicit)
|
|
|
|
| |
Approved by: portmgr (implicit)
|
|
|
|
| |
Approved by: portmgr (secteam blanket)
|
|
|
|
|
|
| |
PR: ports/104890
Submitted by: Henrik Brix Andersen <henrik@brixandersen.dk>
Approved by: portmgr (secteam blanket)
|
|
|
|
|
| |
Reviewed by: markus@
Approved by: portmgr (implicit VuXML), secteam (Remko (not reviewed yet))
|
|
|
|
|
|
| |
entry by sat
Approved by: portmgr (erwin)
|
|
|
|
|
|
| |
Software to opera -- URL parsing heap overflow vulnerability entry,
Approved by: portmgr (secteam blanket)
|
|
|
|
| |
Approved by: portmgr (secteam blanket)
|
|
|
|
|
|
| |
was also affected, so mark it as such.
Approved by: portmgr (secteam blanket)
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
vulnerability:
- Add new info about vulnerable versions from NVIDIA.
- Add workaround.
- Add more references.
- Remove suggestion to move to "nv" driver now that we have a simpler
workaround.
Approved by: portmgr (secteam blanket)
Parts submitted by: mnag
|
|
|
|
|
| |
Approved by: portmgr (secteam blanket)
Security: http://www.vuxml.org/freebsd/8012a79d-5d21-11db-bb8d-00123ffe8333.html
|
|
|
|
|
|
| |
Approved by: portmgr (VuXML blanket)
Submitted by: Thomas Sandford
Facilitated by: Snow B.V.
|
|
|
|
|
|
|
| |
Previous commit was also reviewed by myself.
Approved by: portmgr (Blanket VuXML)
Facilitated by: Snow B.V.
|
|
|
|
|
|
| |
PR: ports/104405
Submitted by: Fabian Keil<fk@fabiankeil.de>
Approved by: portmgr (erwin), Peter Thoenen (maintainer)
|
|
|
|
| |
Approved by: portmgr (erwin)
|
|
|
|
|
|
|
|
|
|
| |
drupal -- HTML attribute injection
drupal -- cross site request forgeries
drupal -- multiple XSS vulnerabilities
Submitted by: brooks
Reviewed by: remko
Approved by: portmgr (erwin)
|
|
|
|
|
|
| |
Submitted by: thierry
Reviewed by: remko
Approved by: portmgr (erwin)
|
|
|
|
|
|
|
|
| |
details from Steffan Essers advisory about the implications of this
issue. The advisory was not public when this issue was initially
fixed.
Approved by: portmgr (secteam blanket)
|
|
|
|
|
|
|
| |
rows now enclosed in an "else" block.
Submitted by: ale
Approved by: portmgr (erwin)
|
|
|
|
|
|
|
| |
were optional. The quicktime codecs are still vulnerable though, but we
rely on the conditional FORBIDDEN statement in the ports Makefile for this.
Approved by: portmgr (self), secteam (simon)
|
|
|
|
|
|
|
|
|
| |
Note that I haven't actually had time to make a test system to reproduce
this on FreeBSD, but due to the nature of this issue and that there is a
PoC exploit in the advisory, I'm adding this entry due to "better safe
than sorry"...
Approved by: portmgr (secteam blanket)
|
|
|
|
|
| |
Reviewed by: secteam (simon)
Approved by: portmgr (secteam blanket)
|
|
|
|
| |
Approved by: portmgr (mnag with secteam hat)
|
|
|
|
|
|
|
|
| |
- portlint(1)
Approved by: portmgr (mnag with secteam hat), garga (maintainer)
Security: http://lurker.clamav.net/message/20061016.015114.dc6a8930.en.html,
http://secunia.com/advisories/22370/
|
|
|
|
|
|
| |
PR: ports/104362
Submitted by: Joshua Abraham<jabra@ccs.neu.edu> (maintainer)
Approved by: portmgr (clement)
|
|
|
|
|
| |
Reviewed by: secteam (simon)
Approved by: portmgr (secteam blanket)
|
|
|
|
|
|
|
| |
- Correct Javier's name spelling in an old advisory
Reviewed by: secteam (simon)
Approved by: portmgr (secteam blanket)
|
|
|
|
|
| |
Reviewed by: secteam (simon)
Approved by: portmgr (secteam blanket)
|
|
|
|
|
| |
Reviewed by: secteam (simon)
Approved by: portmgr (implicit)
|
|
|
|
|
|
|
|
| |
in gnome-keyring. It is a direct competitor to (the unmaintained)
quintuple-agent.
Submitted by: ahze
Approved by: portmgr (kris and marcus)
|
|
|
|
|
|
|
| |
new freetype2 where needed.
Submitted by: mezz, ahze, pav, and many others
Approved by: portmgr (implicit, kris)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
amount of work by the FreeBSD GNOME Team and our testers.
On top of the usual GNOME update, we have taken this opportunity to move
GNOME from X11BASE to LOCALBASE. This means roughly 600 ports NOT part of
the GNOME Desktop also need to be changed. The bulk of the move was carried
out by ahze, mezz, and pav, but it would not have been possible without
cooperation from the FreeBSD KDE team who worked with us to make sure
GNOME and KDE can still coexist happily. We would also like to send a
shout out to kris and pointyhat for putting up with multiple test runs
until we got something that was solid.
Back to GNOME 2.16. This release brings a huge amount of new functionality
to FreeBSD. The standard release notes can be read at
http://www.gnome.org/start/2.16/ . But on top of what you will read there,
jylefort and marcus have completed work on a port of HAL to FreeBSD. This
will allow FreeBSD to take advantage of closer hardware interaction such
as auto-mounting CD-ROMs, USB drives, and music players; auto-playing
audio CDs; and managing laptop power consumption.
But where would this all be without our loyal testers and contributors?
Therefore, the FreeBSD GNOME team would like to thank the following users:
Phillip Neumann <pneumann@gmail.com>
tmclaugh
mux
Yuri Pankov <yuri.pankov@gmail.com>
chinsan
Thomas <freebsdlists@bsdunix.ch>
Brian Gruber <knightbg@yahoo.com>
Franz Klammer <klammer@webonaut.com>
Dominique Goncalves <dominique.goncalves@gmail.com>
Pascal Hofstee <caelian@gmail.com>
Yasuda Keisuke <kysd@po.harenet.ne.jp>
backyard <backyard1454-bsd@yahoo.com>
Andris Raugulis <endrju@null.lv> <endrju@null.lv>
Eric L. Chen <d9364104@mail.nchu.edu.tw>
Pawel Worach <pawel.worach@gmail.com>
QuiRK on #freebsd-gnome
Shane Bell <decept0@gmail.com>
luigi
sajd on #freebsd-gnome
sat
Chris Coleman <chrisc@vmunix.com>
kaeru on #freebsd-gnome
crsd_ via irc.freenode.org/#FreeBSD-GNOME
Joel Diaz <joeldiaz@mac.com>
Enjoy!
Approved by: portmgr (implicit, kris)
|
|
|
|
|
|
| |
broken at the time.
Approved by: portmgr (self)
|
|
|
|
|
|
|
|
|
| |
differences between the old and new files were entirely cosmetic. The
full diff is available in the Audit-Trail of the PR below.
PR: ports/104307
Submitted by: Frank J. Laszlo <laszlof@vonostingroup.com>
Approved by: portmgr (marcus)
|
|
|
|
|
|
| |
Submitted by: joerg
Pointyhat to: erwin
Approved by: portmgr (self)
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
(www.snort.org), an open source intrusion detection system.
The actual interface and GUI server are written in tcl/tk
(www.tcl.tk). Sguil also relies on other open source software
in order to function properly.
The sensor list includes security/barnyard, security/snort,
security/sancp, tcpdump (a part of the OS) and devel/tcltls as
well as lang/tcl84 and lang/tclX. Care has been taken to ensure
that everything you need to build a working sguil operation is
in the FreeBSD ports system or part of the OS already.
Sguil currently functions as an analysis interface and has
no snort sensor or rule management capabilities.
WWW: http://sguil.sourceforge.net/index.php
pauls@utdallas.edu
PR: ports/95018
Submitted by: Paul Schmehl <pauls at utdallas.edu>
|
|
|
|
|
| |
PR: ports/104211
Submitted by: maintainer (Peter Thoenen)
|
| |
|
|
|
|
|
|
|
| |
as that implies GNU_CONFIGURE which this port does NOT use
- Bump PORTREVISION
Noticed by: pointyhat via kris
|
|
|
|
|
| |
PR: ports/104202
Submitted by: Robin Gruyters <r.gruyters@yirdis.nl> (maintainer)
|
|
|
|
|
|
|
|
|
|
| |
libpreludedb Changelog:
- Fix PostgreSQL schema update version 5.
- Only export symbol starting with preludedb_.
- Verbose error reporting in case of libpreludedb initialization failure.
PR: ports/104201
Submitted by: maintainer (Robin Gruyters)
|
|
|
|
| |
Reported by: pointyhat via kris
|
|
|
|
|
|
|
|
|
|
| |
to remove the stunnel user and group at all - just kill the package
deinstall script.
PR: 104028
Reported by: jan grant <jan.grant@bristol.ac.uk>,
Stephen Hurd <shurd@sasktel.net> (in private mail a while ago),
and, I think, many others
|
|
|
|
|
|
| |
as per original advisory
Discussed with: ale
|
|
|
|
|
| |
Pointy hats to: rafan 6x, droso 2x, pav 2x, alepulve, clsung, glewis, itetcu,
miwi
|
|
|
|
| |
- Add WITHOUT_CXX knob to disable C++ wrapper library
|
| |
|
|
|
|
| |
Reported by: simon
|
|
|
|
|
|
|
|
|
|
|
| |
unicode strings:
- Python 2.5.c2 was already fixed (verified in upstream SVN).
- Python 2.4 port just got the fix.
- I can't find any trace of python23, python22, and python-devel ever
having existed as package names, so I removed them.
- Add python+ipv6. I don't really know if it contained the
problematic unicode code, but better safe than sorry.
|
|
|
|
| |
originally missed.
|
| |
|
|
|
|
| |
- Fixed in version 1.1.13.8.1
|
|
|
|
|
|
| |
- These are packages from BSD#'s (my project) development repo. Don't even
give the impression that FreeBSD is supporting security updates for an
outside project.
|
|
|
|
|
|
|
| |
- Add OPTION to enable LPK patch (ldap stored public key) [2]
PR: 86384 [1], 103399 [2]
Submitted by: Garrett Wollman <wollman___khavrinen.csail.mit.edu> [1], Dmitriy Kirhlarov <dkirhlarov___oilspace.com> [2]
|
|
|
|
|
|
|
|
| |
relating to default syslogd(8) behavior.
PR: ports/102605
Submitted by: Jeremie Le Hen <jeremie@le-hen.org>
Approved by: maintainer timeout (5 weeks)
|
|
|
|
| |
- Tidy up pkg-message.
|
| |
|
| |
|