aboutsummaryrefslogtreecommitdiffstats
path: root/security
Commit message (Collapse)AuthorAgeFilesLines
* Depend on archivers/gtar on CURRENT later than 600022lofi2005-04-042-0/+6
|
* Update to 20050402vs2005-04-042-3/+3
| | | | | | | | | | - W32/Bagle.BS@mm - W32/Bagle.BT@mm - W32/Kelvir.F - W32/Mydoom.BJ@mm PR: ports/79443 Submitted by: maintainer
* Reset inactive maintainer. Thanks for your work in the past!kris2005-04-041-1/+1
|
* Add CVE name to hashash entry.simon2005-04-031-0/+2
|
* Update to DAT 4460jeh2005-04-032-3/+3
|
* Document hashcash format string vulnerability.naddy2005-04-031-0/+29
|
* - fix manpagesdinoex2005-04-031-2/+2
|
* - update to 0.9.7fdinoex2005-04-034-13/+10
|
* Update to 1.13skv2005-04-022-3/+3
|
* - Merge sysconfdir and userdb configurable from courier-imap [1]oliver2005-04-024-18/+40
| | | | | | | | - Make the port conflicts with mail/courier [1] - add an option to disable make install-configure to merge new otpions into old cfg files PR: ports/79062 [1] Submitted by: Jose M Rodriguez <josemi@freebsd.jazztel.es> [1]
* Remove BROKEN tag left in after previous commit that fixed the plist.kris2005-04-021-2/+0
| | | | Approved by: portmgr (self)
* Implement a fix for MITKRB5-SA-2005-001: buffer overflows in telnet client.cy2005-04-018-0/+384
| | | | | Approved by: portsmgr (krion) Obtained from: Tom Yu <tlyu@mit.edu> on kerberos-announce
* BROKEN on sparc64: Does not buildkris2005-03-271-1/+7
| | | | Approved by: portmgr (self)
* BROKEN: Incomplete pkg-plistkris2005-03-271-0/+2
| | | | Approved by: portmgr (self)
* Document clamav -- zip handling DoS vulnerability.simon2005-03-271-0/+30
| | | | Approved by: portmgr (blanket, VuXML)
* Document Wine information disclosure.nectar2005-03-241-0/+43
| | | | | | Based on an entry that was Submitted by: Devon H. O'Dell <dodell@offmyserver.com> Approved by: portmgr (blanket, VuXML)
* Document the most serious of the recently disclosednectar2005-03-241-0/+117
| | | | | | | | Mozilla/Firefox/Thunderbird vulnerabilities. Based on entries that were Submitted by: Devon H. O'Dell <dodell@offmyserver.com> Approved by: portmgr (blanket, VuXML)
* Document Sylpheed buffer overflow.nectar2005-03-241-0/+31
| | | | | Reminded by: netchild Approved by: portmgr (blanket, VuXML)
* Fix a bug that prevents gpgsm from opening pinentry.lofi2005-03-232-1/+12
| | | | | | Reported by: Jie Gao <gaoj@cpsc.ucalgary.ca> Obtained from: gnupg CVS Approved by: portmgr (K.P.)
* Fix configure and thus the build.danfe2005-03-231-0/+1
| | | | Approved by: portmgr (marcus)
* Document xv -- filename handling format string vulnerability.simon2005-03-221-0/+31
| | | | Approved by: portmgr (implicit, VuXML)
* Document kdelibs -- local DCOP denial of service vulnerability.simon2005-03-221-0/+37
| | | | Approved by: portmgr (implicit, VuXML)
* Update to KDE 3.4lofi2005-03-218-24/+34
|
* Update to 20050320vs2005-03-203-4/+4
| | | | | PR: ports/79050 Submitted by: Tim Bishop (maintainer)
* Add gaim-otr 1.0.1, allows deniable private conversations using GAIM.danfe2005-03-2021-0/+373
| | | | | PR: ports/75352 Submitted by: Conor McDermottroe <ports(at)mcdermottroe.com>
* Chase the Gaim 1.2.0 update.marcus2005-03-202-2/+2
|
* - Update to 4.0p1ahze2005-03-209-68/+137
| | | | | PR: ports/79029 Submitted by: Dimitry Andric <dimitry@andric.com>
* - Update to 0.13.1pav2005-03-207-127/+227
| | | | | | | - Take maintainership PR: ports/79003 Submitted by: Marcus Grando <marcus@corp.grupos.com.br>
* Mark grip port as fixed for recent vulnerability.simon2005-03-191-1/+2
| | | | Requested by: ahze
* Update to DAT 4450jeh2005-03-192-3/+3
|
* Update to 0.4.0.danfe2005-03-183-64/+57
| | | | | PR: ports/78969 Submitted by: maintainer
* Update to DAT 4449jeh2005-03-182-3/+3
|
* - Update to 0.2.0pav2005-03-172-33/+25
| | | | | | | - Fix dependencies, .. PR: ports/78891 Submitted by: Antonio Carlos Venancio Junior <antonio@php.net> (maintainer)
* - Update to 0.15.0pav2005-03-172-29/+22
| | | | | | | | - Fix dependencies - Remove PHP dependency check PR: ports/78890 Submitted by: Antonio Carlos Venancio Junior <antonio@php.net> (maintainer)
* Fully-qualify the path to update-desktop-database and update-mime-database inmezz2005-03-172-4/+5
| | | | the plist since /usr/local/bin isn't in pkg_add's PATH. Bump the PORTREVISION.
* DMitry (Deepmagic Information Gathering Tool) is a UNIX/Linux command linepav2005-03-175-0/+43
| | | | | | | | | program coded purely in C with the ability to gather as much information as possible about a host. PR: ports/77142 Submitted by: Vaida Bogdan <vaidab@phenix.rootshell.be>, James Greig <james@mor-pah.net>
* Remove (correct) pixmaps directory and its parent, if empty.anders2005-03-171-1/+2
| | | | Requested by: pointyhat/bugmagnet
* Update to DAT 4448jeh2005-03-172-3/+3
|
* - Update to 1.0.4 from Debianvs2005-03-164-5/+41
| | | | | | | - Include patch to make this work again with GnuPG 1.0.4. This will break support for older versions of GnuPG! Noticed by: Marcus Frings
* - Update to 1.1.3pav2005-03-162-21/+10
| | | | | | | | - Fix dependency on pear - Fix OPTIONS PR: ports/78858 Submitted by: Antonio Carlos Venancio Junior <antonio@php.net> (maintainer)
* - Fix PostgreSQL knobpav2005-03-161-1/+1
| | | | | PR: ports/78843 Submitted by: Paul Schmehl (pauls@utdallas.edu) (maintainer)
* Document phpmyadmin -- increased privilege vulnerability.simon2005-03-161-0/+30
|
* + fix CATEGORIESthierry2005-03-162-21/+50
| | | | | | | | | | | + take maintainership + update COMMENT + add PEAR package dependencies and use OPTIONS + replace @version@ strings + update pkg-descr PR: ports/78862 Submitted by: Antônio Carlos Venâncio Júnior
* - stop creatng /var/run/authdaemond during the package installationoliver2005-03-166-20/+28
| | | | | | | | - create /var/run/authdaemond within the rc.subr Script in case the directory doesn't exist. - Bump PORTREVISION Suggested By: brooks
* Note that recent Quake2-LNX is fixed.danfe2005-03-161-1/+5
|
* Update to DAT 4447jeh2005-03-162-3/+3
|
* - change socket and pid location from /usr/local/var/spool/authdaemon/ to ↵oliver2005-03-166-32/+28
| | | | | | | | | /var/run/authdaemond/ - fix default user/group premissions. PR: 78866 Submitted by: Artis Caune <Artis.Caune@latnet.lv>
* Recent mysql snapshot import fixed several vulnerabilities.ale2005-03-151-5/+9
|
* - Update to 2.3.2:sergei2005-03-152-5/+5
| | | | | | | | - Removed end-of-line parser fix (introduced in 2.3.1) in favor of completely reworking this at the next parser overhaul. PR: ports/78846 Submitted by: Linh Pham <question+fbsdports@closedsrc.org>
* - update to 1.4.6clsung2005-03-154-18/+4
| | | | | | | | | | - ChangeLog [http://botan.randombit.net/logs/log-14.php] * Fix an error in the shutdown code introduced in 1.4.5 * Setting base/pkcs8_tries to 0 disables the builtin fail-out * Support for XMPP identifiers in X.509 certificates * Duplicate entries in X.509 DNs are removed * More fixes for Borland C++, from Friedemann Kleint * Add a workaround for buggy iostreams
* Correct the packing list by adding entries for locale directoriestrevor2005-03-151-3/+3
| | | | | | | (it might be better if these were created by mtree). PR: 78511 Submitted by: sem
* Document ethereal -- multiple protocol dissectors vulnerabilities.simon2005-03-151-0/+46
|
* Document "grip -- CDDB response multiple matches buffer overflowsimon2005-03-151-0/+29
| | | | vulnerability".
* Update references for latest MySQL entry:simon2005-03-151-1/+4
| | | | | - Use bid tag for Bugtraq ID reference. - Add CVE names.
* - Add forgotten pkg-message.flz2005-03-151-0/+15
| | | | Noticed by: David Thiel <lx@redundancy.redundancy.org> (maintainer)
* - s/pkg-message/${PKGMESSAGE}/ to fix build if you're not actually in directoryahze2005-03-151-1/+1
| | | | | PR: ports/78835 Submitted by: Maintainer
* Update to DAT 4446jeh2005-03-152-3/+3
|
* Document multiple mysql remote vulnerabilities.ale2005-03-141-0/+43
|
* Unbreak by removing duplicate typedef that is now provided by libdnet.thierry2005-03-143-20/+35
| | | | | | | Since I'm there, pet portlint. PR: ports/78796 Submitted by: Johan van Selst
* - Add dissembler 0.9, Tiny and clever tool to convert shellcode to ASCII.flz2005-03-145-0/+90
| | | | | PR: ports/78783 Submitted by: Jonathan <onatan@gmail.com>
* Add an entry about rxvt-unicode bufer overflow.thierry2005-03-131-0/+27
|
* fix building for cases where WRKDIR is a nfs mountoliver2005-03-132-0/+10
|
* Update to 0.7.6.marcus2005-03-127-34/+62
| | | | | PR: 78697 Submitted by: maintainer
* Bump PORTREVISION to chase the glib20 shared lib version change.marcus2005-03-1217-11/+17
|
* - Update to 4.1.3sem2005-03-126-46/+29
| | | | | | | | | - rcNGfy and add message how activate it - Add mirror site - Turn on "fancy cli" by default PR: ports/78713 Submitted by: maintainer
* - Fix plistpav2005-03-121-0/+1
|
* New port: security/pear-File_SMBPasswd PEAR class for managing SAMBA style ↵pav2005-03-124-0/+33
| | | | | | | | | | password files With PEAR::File_SMBPasswd you can maintain smbpasswd-files, usualy used by SAMBA. PR: ports/78642 Submitted by: Antonio Carlos Venancio Junior <antonio@php.net>
* PEAR::Crypt_CHAP provides Classes for generating CHAP packets.pav2005-03-124-0/+38
| | | | | | | | | | Currently these types of CHAP are supported: * CHAP-MD5 * MS-CHAPv1 * MS-CHAPv2 PR: ports/78641 Submitted by: Antonio Carlos Venancio Junior <antonio@php.net>
* New port: security/pear-File_HtAccess PEAR class to manipulate .htaccess filespav2005-03-124-0/+29
| | | | | | | Provides methods to create and manipulate .htaccess files. PR: ports/78603 Submitted by: Antonio Carlos Venancio Junior <antonio@php.net>
* Update to DAT 4445jeh2005-03-122-3/+3
|
* . Update to 1.5.3. [1]glewis2005-03-123-7/+10
| | | | | | | | . Set MAINTAINER to the submitter. [1] . Minor grammar improvements to COMMENT and pkg-descr. PR: 78637 Submitted by: Danny Koenig <dako@bsdberlin.org>
* Unbreak: Also BUILD_DEPENDS on gnupgvs2005-03-111-1/+2
|
* - Fix packing list.flz2005-03-111-1/+13
| | | | | | PR: ports/77073 Submitted by: flz Approved by: pav (mentor), maintainer timeout (1 month)
* Update to DAT 4444jeh2005-03-112-3/+3
|
* - Update to 2.3.1sergei2005-03-112-8/+6
| | | | | | - Update MASTER_SITES Prompted by: Fafa Diliha Romanova <fteg@london.com>
* Update to 1.01.tobez2005-03-102-3/+3
|
* - Update to 0.10leeym2005-03-104-9/+10
| | | | | | | | | - remove redundant whitespace in Makefile - add WWW: in pkg-descr - fix PLIST PR: 78137 Submitted by: leeym
* Update to DAT 4443jeh2005-03-102-3/+3
|
* - utilize SITE_PERLleeym2005-03-103-7/+8
| | | | | | | | | - add WWW in pkg-descr - remove extra directory PR: 77999 Submitted by: leeym Approved by: maintainer timeout
* - Add aimsniff 0.9d, an AOL Instant Messanger Sniffing and Reading Tool.flz2005-03-094-0/+67
| | | | | | PR: ports/63936 Submitted by: Andrew Marks <spam@amrx.net> Approved by: pav (mentor)
* Update to 1.40.tobez2005-03-093-18/+3
|
* Document two phpMyAdmin issues.simon2005-03-091-0/+82
|
* Document libexif -- buffer overflow vulnerability.simon2005-03-091-0/+27
|
* Update to DAT 4442jeh2005-03-092-3/+3
|
* BROKEN: Incompatibilities with (current) libdnet from ports(?)vs2005-03-081-0/+2
|
* Use @freebsd.org address for my ports.novel2005-03-081-1/+1
| | | | Approved by: krion (mentor)
* Add secure_delete 3.1, a secure data deletion toolkit.flz2005-03-087-0/+80
| | | | | | PR: ports/69556 Submitted by: bugghy <bugghy@phenix.rootshell.be> Approved by: pav (mentor)
* - Update to 20050307.flz2005-03-082-3/+3
| | | | | | PR: ports/78546 Submitted by: Tim Bishop <tim@bishnet.net> (maintainer) Approved by: pav (mentor)
* update to DAT 4441jeh2005-03-082-3/+3
|
* Fix invalid date.nectar2005-03-071-2/+2
| | | | Noticed by: Kang Liu <liukang@bjut.edu.cn>
* - Update to 0.7.0.flz2005-03-074-34/+16
| | | | | | PR: ports/78519 Submitted by: supraexpress@globaleyes.net Approved by: pav (mentor)
* Update to 0.4.2.marcus2005-03-076-6/+8
|
* Add <modified> date for recent commit to phpbb vulnerability.nectar2005-03-071-2/+4
| | | | | | Forgotten by: delphij While here, add msgids for recent phpbb addition.
* - Update to 2.35.flz2005-03-064-8/+6
| | | | | | PR: ports/78457 Submitted by: ports@c0decafe.net <ports@c0decafe.net> (maintainer) Approved by: pav (mentor)
* Wipe is a file and block device wiping utilitypav2005-03-067-0/+85
| | | | | | PR: ports/77108 Submitted by: Edson Brandi <ebrandi@fugspbr.org>, Mark Laws <mdl@60hz.org>
* Document a low risk HTML injection (configuration bypass)delphij2005-03-051-0/+31
| | | | | | | | vulnerability [1] of phpBB. (maintainer contacted and is preparing a fix) [1] http://marc.theaimsgroup.com/?l=bugtraq&m=110987231502274
* Add bugtraq bug ID for phpbb vulnerability.delphij2005-03-051-0/+1
| | | | Submitted by: Kang LIU <liukang bjut edu cn>
* update to 0.55oliver2005-03-054-32/+42
| | | | | | | | | migrate to OPTIONS [1] add WITH_SYSLOG_FACILITY knob [2] PR: 78362 [1] Submitted by: Marcus Grando <marcus@corp.grupos.com.br> [1] Sascha Holzleiter <sascha@daemonground.de> [2]
* Document two phpnuke vulnerabilities, and a Linux RealPlayernectar2005-03-051-0/+109
| | | | | | | vulnerability. Based on entries that were Submitted by: Devon H. O'Dell <dodell@sitetronics.com>
* Update to DAT 4440jeh2005-03-052-3/+3
|
* - update to 1.3clsung2005-03-043-14/+5
| | | | | | | - prune pkg-message PR: 78157 Submitted by: Marcus Grando <marcus AT corp dot grupos dot com dot br>
* - Document ImageMagick -- format string vulnerability.simon2005-03-041-1/+33
| | | | - Fix typo on older tiff entry.
* - Put lex.l back under #if 0pav2005-03-042-11/+6
| | | | | | PR: ports/77394 Submitted by: Christopher Sean Hilton <chris@vindaloo.com> Approved by: maintainer timeout (19 days)
* Update to DAT 4439. This is becoming a daily ritural. Glad I am not stuck ↵jeh2005-03-042-3/+3
| | | | on M$
* Update master sitevs2005-03-032-1/+3
| | | | | PR: ports/78338 Submitted by: Dominik Brettnacher (maintainer)
* Update to DAT 4438jeh2005-03-032-3/+3
|
* Document the privilege escalation vulnerability in uim.nobutaka2005-03-021-0/+33
|
* - Unbreak by updating distinfo.flz2005-03-022-4/+3
| | | | | | PR: ports/78232 Submitted by: Alexander Demin <support@spectrum.ru> (maintainer) Approved by: pav (mentor)
* - Update to 1.41ahze2005-03-022-3/+3
| | | | | PR: ports/78259 Submitted by: Jim Shewmaker <jimshew@gmail.com> (maintainer)
* - botan-1.4.4 does not build on perl5.005clsung2005-03-021-2/+1
| | | | Noted by: krismail
* Update to DAT 4437jeh2005-03-022-3/+3
|
* Add BSD master.passwd processing to pw2userdboliver2005-03-024-2/+210
| | | | | | | Bump PORTREVISION PR: ports/78163 Submitted by: Jose M Rodriguez <josemi@freebsd.jazztel.es>
* - fix Makefile [1]oliver2005-03-024-2/+10
| | | | | | | | | - Bump PORTREVISION - create and remove PREFIX/var/spool/authdaemon on (de)installation [2] PR: ports/78613 [1] - partly Submitted by: Jose M Rodriguez <josemi@freebsd.jazztel.es> [1] Noted by: Gustavo A. Baratto <gbaratto@superb.net> [2]
* Update to DAT 4436jeh2005-03-012-3/+3
|
* Fix typo in linux-tiff version number fornectar2005-03-011-2/+2
| | | | | | http://vuxml.freebsd.org/8f86d8b5-6025-11d9-a9e7-0001020eed82.html Reported by: Ian Moore <no-spam@swiftdsl.com.au>
* Document lighttpd information disclosure bug.nectar2005-03-011-0/+33
| | | | | This entry is based on one that was Submitted by: Devon H. O'Dell <dodell@offmyserver.com>
* Change my email address in MAINTAINER lines for ports I maintain toflz2005-03-011-1/+1
| | | | | | flz@FreeBSD.org. Approved by: pav (mentor)
* Fix plist and unbreak.lofi2005-03-011-2/+1
| | | | | Not approved by: maintainer, but I need this port unbroken right now and the fix is trivial.
* Update to DAT 4435jeh2005-03-012-3/+3
|
* Fix typo in linux-tiff version number fornectar2005-02-281-1/+1
| | | | | | http://vuxml..freebsd.org/fc7e6a42-6012-11d9-a9e7-0001020eed82.html Reported by: Ian Moore <no-spam@swiftdsl.com.au>
* Document latest phpBB critical security vulnerabilities.delphij2005-02-281-0/+31
| | | | Submitted by: Kang LIU <liukang bjut edu cn>
* fix dependency. don't forget `+'.ume2005-02-282-2/+2
|
* BROKEN: Size mismatchkris2005-02-282-1/+5
|
* BROKEN: Incomplete pkg-plistkris2005-02-282-0/+4
|
* Correct the linux-tiff version number for several entries.nectar2005-02-281-8/+20
| | | | Reported by: netchild
* BROKEN: Incomplete pkg-plistkris2005-02-281-0/+2
|
* BROKEN: Incomplete pkg-plistkris2005-02-281-0/+2
|
* Incomplete pkg-plist (installs files into nonstandard locale directory)kris2005-02-281-1/+2
|
* Add pear-Crypt_HMAC 1.0.1, PEAR class to calculate RFC 2104thierry2005-02-284-0/+30
| | | | | | | compliant hashes. PR: 77853 Submitted by: Antônio Carlos Venâncio Júnior
* Document curl -- authentication buffer overflow vulnerability.simon2005-02-281-0/+50
|
* - Document cyrus-imapd -- multiple buffer overflow vulnerabilities. [1]simon2005-02-281-1/+43
| | | | | | - Use bid tag for a reference in sup entry. Advice from: ume [1]
* Satisfy pointyhat: install pixmap in commonly used gnome directory.anders2005-02-282-11/+13
| | | | Use DOCSDIR.
* Document format string vulnerabilities in net/sup.hrs2005-02-271-0/+33
|
* - Just use mozilla in title for last entry for consistency.simon2005-02-271-1/+77
| | | | - Document mozilla -- insecure temporary directory vulnerability.
* Update list of affected mozilla/firefox ports by the web browsers --simon2005-02-271-5/+14
| | | | window injection vulnerabilities entry.
* backout use of USE_INC_LIBTOOL_VER. libtool13 is marked asume2005-02-272-1/+33
| | | | | | | DEPRECATED. libtool15 is incompatible, and I couldn't find how to build and install static libs by libtool15. Suggensted by: Angelo Turetta <aturetta@commit.it>
* Update to version 3.81krion2005-02-264-8/+13
| | | | | | PR: ports/77425 Submitted by: krion Approved by: maintainer timeout
* Document mozilla & firefox -- arbitrary code execution vulnerability.simon2005-02-261-0/+87
| | | | Submitted by: Devon H. O'Dell <dodell@sitetronics.com> (original version)
* - Update to 20050225pav2005-02-262-3/+3
| | | | | PR: ports/78056 Submitted by: Tim Bishop <tim@bishnet.net> (maintainer)
* - Update to 4.5.4pav2005-02-262-3/+3
| | | | | PR: ports/78055 Submitted by: Tim Bishop <tim@bishnet.net> (maintainer)
* Chase the Gaim 1.1.4 update.marcus2005-02-262-2/+2
|
* Update to DAT 4434jeh2005-02-262-3/+3
|
* simplify.ume2005-02-262-22/+24
|
* use USE_INC_LIBTOOL_VER.ume2005-02-252-33/+1
|
* Improve the description of the latest phpBB information disclosurenectar2005-02-251-5/+16
| | | | | | bugs. Submitted by: delphij (in part)
* Update to DAT 4433jeh2005-02-252-3/+3
|
* Document a format string vulnerability in mkbold-mkitalic.hrs2005-02-241-0/+24
| | | | Reviewed by: simon
* Allow to use Berkeley DB 4.3.ume2005-02-242-2/+8
| | | | | PR: ports/76154 Submitted by: Sunpoet Po-Chuan Hsieh <sunpoet@sunpoet.net>
* Update to DAT 4432jeh2005-02-242-3/+3
|
* Add CVE names for wget.nectar2005-02-241-0/+3
|
* De-confuse latest AWStats entry: rewrite description, and add relevantnectar2005-02-231-13/+22
| | | | | references. There were so many bugs, it was hard to keep them straight (^_^).
* Format the <topic> of the most recent entry so that it is morenectar2005-02-231-1/+1
| | | | consistent with other entries.
* Correctly list man-pages, including a work-around for a corner-casevs2005-02-232-0/+5
| | | | Submitted by: kris via maintainer
* Document latest phpbb vulnerabilities.delphij2005-02-231-0/+47
| | | | Discussed with: phpbb maintainer
* Add more references to recent putty vulnerability.simon2005-02-231-0/+4
|
* The mod_dosevasive port was upgraded.nectar2005-02-231-1/+3
|
* Nit:nectar2005-02-231-26/+6
| | | | | | | | | | | | | - In most recent `unace' entry, replace HTML entity with the Unicode character. We do not use HTML entities so that a VuXML document may be processed without using the DTD. (We also avoid character entity references for more natural grep'ing, sed'ing, and editor searching.) Corrections: - An invalid UUID was assigned to a FreeRADIUS vulnerability, and went undetected since last October. (>_<) Correct it. - A bnc vulnerability was duplicated. Cancel the older, less informative entry and update the newer entry.
* Document unace-1.2b vulnerabilities: buffer overflows, directory traversal.naddy2005-02-221-0/+32
|
* Update to DAT 4431jeh2005-02-212-3/+3
|
* - nikto have bundled LW, so it doesn't depend on security/libwhiskerleeym2005-02-212-34/+32
| | | | | | - correct the setting of plugin direcroty and utilize DATADIR Noticed by: kris
* Add security/base:sergei2005-02-216-0/+192
| | | | | | | | | | | | | | | | | | BASE is the Basic Analysis and Security Engine. It is based on the code from the ACID project. This application provides a PHP-based web front-end to query and analyze the alerts coming from a Snort IDS system. BASE is a web interface to perform analysis of intrusions that Snort has detected on your network. It uses a user authentication and role-base system, so that you as the security admin can decide what and how much information each user can see. It also has a simple to use, web-based setup program for people not comfortable with editing files directly. WWW: http://secureideas.sourceforge.net/ PR: ports/74492 [1], ports/77103 [2] Submitted by: Linh Pham <question+fbsdports@closedsrc.org> [1], Paul Schmhel <pauls@utdallas.edu> [2]
* Security update to 0.57.simon2005-02-212-3/+3
| | | | | Security: http://vuxml.FreeBSD.org/a413ed94-836e-11d9-a9e7-0001020eed82.html Approved by: erwin (mentor)
* For the the recent kdelibs entry; note that dcopidlng is only used atsimon2005-02-211-0/+4
| | | | | | build time. Reported by: lofi
* Document heap corruption vulnerabilities in putty.simon2005-02-211-0/+34
|
* Now installs Radius dictionary. This also unbreaks build om perl 5.005_03 [1].lth2005-02-212-0/+35
| | | | Noticed by: pointyhat
* - older versions of 1.8 incorrectly identify themselves as 1.7 [1]leeym2005-02-203-51/+16
| | | | | | | - Utilize PORTDOCS and PLIST_FILES PR: [1] 77702 Submitted by: Sam Lawrance <boris at brooknet.com.au>
* Fix for compilation on 5.x.thierry2005-02-202-12/+4
| | | | | PR: ports/76320 Submitted by: Johan van Selst
* Update affected versions of latest postgresql entry now that the portssimon2005-02-191-2/+4
| | | | have been fixed.
* Fix MASTER_SITES.krion2005-02-191-3/+1
| | | | | PR: ports/77704 Submitted by: Sam Lawrance <boris at brooknet.com.au>
* - Change MASTER_SITES in case of fetch error problemclsung2005-02-191-1/+1
| | | | Note by: krisbot
* Update to DAT 4430jeh2005-02-192-3/+3
|
* Chase the Gaim 1.1.3 update.marcus2005-02-192-0/+2
|
* Add poly1305-20050218, Prof. Daniel J. Bernstein's public domain messageroam2005-02-195-0/+84
| | | | authenticator library.
* As previously announced, remove ports that have reached their expiry date,kris2005-02-195-77/+0
| | | | and the handful of ports that depended on them.
* Document insecure temporary file creation in kdelibs.simon2005-02-191-0/+30
|
* Document format string vulnerability in bidwatcher.simon2005-02-191-0/+32
|
* SSCEP is a client-only implementation of the SCEP (Cisco System's Simplesem2005-02-196-0/+76
| | | | | | | | | Certificate Enrollment Protocol). SSCEP is designed for OpenBSD's isakmpd, but it will propably work with any Unix system with a recent compiler and OpenSSL toolkit libraries installed. PR: ports/77595 Submitted by: Vsevolod Stakhov <vsevolod(at)highsecure.ru>
* Document a directory traversal vulnerability in gftp.simon2005-02-191-0/+33
|
* - Document two Opera vulnerabilities.simon2005-02-191-1/+73
| | | | | - Update information about fixed version for Opera with regard to "Window Injection" issues (based on release notes for Opera 7.54u2).
* - Depend on pkg-config to allow for clean package deinstallationsergei2005-02-183-22/+7
| | | | | | | | (due to presence of files installed into ${PREFIX}/libdata/pkgconfig) - Remove patches in favor of simpler REINPLACE substitution PR: ports/77279 (based on) Submitted by: Roman Bogorodskiy <bogorodskiy@inbox.ru>
* amavis-stats is a simple AMaViS statistics generator based on rrdtool. Itpav2005-02-1810-0/+178
| | | | | | | | | | produces graphs of clean emails, spam emails and infected emails broken down by virus, from amavis log entries. RRD files are created and updated by a perl script run from cron. Graphs are generated by a php script and viewed with a web browser. PR: ports/68934 Submitted by: Mantas Kaulakys <stone@tainet.lt>
* - Update to 0.83pav2005-02-183-22/+9
| | | | | | PR: ports/77561 Submitted by: Marcus Grando <marcus@corp.grupos.com.br> Approved by: Rob Evers <rob@debank.tv> (maintainer)
* Document multiple buffer overflows in postgresql.simon2005-02-181-0/+31
|
* - Update to 0.32 (also fixes fetching)sergei2005-02-182-3/+3
| | | | Reminded by: pointyhat via kris
* UPdate to 4429jeh2005-02-172-3/+3
|
* - update to 1.4.4clsung2005-02-174-26/+34
| | | | - add an extra-patch for gcc295, a quick and dirty patch I thought...
* Fix entry date for last commit.simon2005-02-171-1/+1
|
* Document vulnerabilities in awstats. Note that this entry will mostsimon2005-02-171-0/+35
| | | | likely be updated soon when more information becomes available.
* UPdate to 4428jeh2005-02-172-3/+3
|
* - Chase master sitevs2005-02-164-12/+19
| | | | | | | - Cleanup Makefile a bit (me) PR: ports/77552 Submitted by: "Jonatan B" (maintainer)
* - Update to 0.3.8. See ChangeLog for details.brooks2005-02-166-153/+104
| | | | | | | | | | | | | - Install sample config file in etc/wpa_supplication.conf.sample instead of DOCSDIR. - Obey PREFIX. - Follow move of binaries from bin to sbin. Committed from a laptop running this version against an AP with WPA-PSK and AES encription. Submitted by: Yamamoto Shigeru <shigeru at iij dot ad dot jp> PR: 75609 (by Rong-En Fan <rafan at infor dot org>)
* Add a few more references to the awstats entry.simon2005-02-161-0/+3
|
* Remove empty pkgconfig directory upon uninstallation, to pleaseanders2005-02-151-0/+1
| | | | pointyhat.
* Update to 1.2.4vs2005-02-157-56/+4
| | | | | PR: ports/77531 Submitted by: Meno Abels (maintainer)
* Reset undeliverable maintainer address [1]. Comment out unfetchable masterkris2005-02-151-2/+2
| | | | | | | site. [1] Diagnostic-Code: X-Postfix; host apollo.post1.com[202.27.17.99] said: 550 5.1.1 <ngps@post1.com>... User unknown (in reply to RCPT TO command)
* Update to 4.1.2:vs2005-02-152-4/+3
| | | | | | | | - fixed notification email bug with url not being added to email. - fixed http_host field not being used for log reports URLs. PR: ports/77522 Submitted by: David Thiel (maintainer)
* - Distfile rerolledpav2005-02-151-2/+2
| | | | | PR: ports/77485 Submitted by: Alexander Demin <support@spectrum.ru> (maintainer)
* security/rng_82802 is obsoleteskv2005-02-151-1/+0
|
* Obsoleteskv2005-02-155-79/+0
|
* - Update to 2.3.0sem2005-02-152-11/+12
| | | | | PR: ports/77420 Submitted by: maintainer
* Change affected packages version for the emacs movemail format stringnobutaka2005-02-141-1/+1
| | | | | vulnerability since I fixed editors/emacs port by adding a patch instead of upgrading it to 21.4.
* Update to 1.7.1vs2005-02-142-5/+6
| | | | | PR: ports/77508 Submitted by: Jonatan B. (maintainer)
* - Update to 2.3.0sem2005-02-149-36/+159
| | | | | PR: ports/77420 Submitted by: maintainer
* - Update to 2.2.3sem2005-02-149-3922/+155
| | | | | PR: ports/77419 Submitted by: maintainer
* - correct the arguments of pw groupaddleeym2005-02-141-2/+2
| | | | Noticed by: kris
* Document DoS in powerdns.simon2005-02-141-0/+26
|
* Document format string vulnerability in the Emacs movemail utility.simon2005-02-141-0/+53
|
* - update to amap-4.8leeym2005-02-144-16/+22
| | | | | PR: 77451 Submitted by: Yonatan <onatan at gmail.com>
* Update to 1.7vs2005-02-146-120/+27
| | | | | | PR: ports/77320 Submitted by: Roland Smith Approved by: maintainer
* With portmgr hat on, reset maintainership of these ports. Maintainer'slinimon2005-02-142-2/+2
| | | | | | | | | old email address bounces, and he has not been responsive to email on the only other one we have for him. These ports are now available for adoption. Come back coop, we miss ya ...
* - register UID:GID 110 for vscanleeym2005-02-144-6/+9
| | | | | | PR: 77366 Submitted by: Scott Balmos <scott.balmos at utoledo.edu> Approved by: Blaz Zupan <blaz at si.FreeBSD.org>
* update to 0.54oliver2005-02-134-6/+6
|
* Fixed libpcap dependency, bumped PORTREVISIONniels2005-02-131-1/+2
| | | | | | | | Derived from maintainer patch. Approved by: nectar (mentor) Reported by: kris (via pointyhat) Submitted by: maintainer
* Fixed broken pkg-plist, bumped PORTREVISIONniels2005-02-132-7/+7
| | | | | | Approved by: nectar (mentor) Submitted by: maintainer PR: ports/77048
* - Reflect fixing vulnerability in `net/opendchub'danfe2005-02-131-2/+3
| | | | - Print project's name correctly
* - Fix a cvename that should have been a certvu.simon2005-02-131-13/+16
| | | | | - Delete trailing white space. - Fix some nearby formatting while I'm here anyway.
* Document two vulnerabilities in ngircd.simon2005-02-131-0/+57
|
* Document mod_python information leakage vulnerability.simon2005-02-131-0/+32
|
* Document mailman directory traversal vulnerability.simon2005-02-131-0/+29
|
* - Add forgotten startup scriptssem2005-02-132-0/+40
|
* Add a workaround patch to avoid protocol attack (but will not bekuriyama2005-02-124-2/+98
| | | | | | | | | effective in the real world). References: http://lists.gnupg.org/pipermail/gnupg-announce/2005q1/000190.html (broken mailman archive) http://www.pgp.com/library/ctocorner/openpgp.html http://eprint.iacr.org/2005/033 Reported by: dougb
* BROKEN: Incomplete pkg-plistkris2005-02-121-0/+2
|
* Expand HTML entity reference in latest VuXML entry.nectar2005-02-121-1/+1
|
* BROKEN: Unfetchablekris2005-02-121-0/+2
|
* Document enscript-{a4,letter,letterdj} vulnerabilities.naddy2005-02-121-0/+31
|
* - Add (or fix) CONFLICTS line. The ports install bin/digest.sem2005-02-122-2/+4
| | | | Approved by: portmgr (krion)
* - Update to version 0.12leeym2005-02-122-3/+3
| | | | | PR: 77390 Submitted by: Florent Thoumie <flz at xbsd.org>
* Vulnerability in unrtf is fixed now.danfe2005-02-111-1/+2
|
* - Libtomcrypt released a patchset to fix a few security bugs.pav2005-02-112-2/+15
| | | | | | PR: ports/77349 Submitted by: Wesley Shields <wxs@csh.rit.edu> Approved by: Jonatan B <onatan@gmail.com> (maintainer)
* use new scheme of USE_RC_SUBR.ume2005-02-113-9/+3
|
* - Update to 4.32.1sem2005-02-115-206/+353
| | | | | | | | - New maintainer PR: ports/75391 Submitted by: Demin Alexander <support(at)spectrum.ru> Approved by: former maintainer
* - Remove NLS dirs from pkg-plist the port shouldn't removesem2005-02-111-2/+0
|
* - Update to 4.32.1sem2005-02-115-220/+331
| | | | | | | | - Pass maintainership to submitter PR: ports/75353 Submitted by: Demin Alexander <support(at)spectrum.ru> Approved by: former maintainer
* - Unbreak on amd64sem2005-02-101-4/+2
| | | | | PR: ports/77328 Submitted by: Johan van Selst <johans(at)stack.nl>
* Barnyard is output spool reader for Snort! It decouples output overheadpav2005-02-108-0/+159
| | | | | | | | | | | | from the Snort network intrusion detection system and allows Snort to run at full speed. It accepts binary inputs from snort and outputs human readable files to disc or to a database. At present, barnyard is designed to accept binary inputs from snort and produce either human readable files for parsing by log parsers or feed data directly to a database (either mysql or postgresql at present.). PR: ports/77044, ports/77322 Submitted by: Paul Schmehl <pauls@utdallas.edu>
* Update to 4427jeh2005-02-102-3/+3
|
* Fix plistvs2005-02-101-1/+2
| | | | | | PR: ports/76892 Submitted by: maintainer Additional credits: tobez
* - Fix crashing of milter by turning off SESSION support [1]pav2005-02-092-2/+20
| | | | | | | | | - Fix build when libmilter was built with LDAP [2] PR: ports/77255 [1], ports/77235 [2] Submitted by: Sergey N. Voronkov <serg@tmn.ru> [1], Lewis Thompson <lewiz@compsoc.man.ac.uk> [2] Approved by: Rob Evers <rob@debank.tv> (maintainer)
* - Update to 1.7pav2005-02-094-7/+20
| | | | | PR: ports/77262 Submitted by: Jonathan <onatan@gmail.com> (maintainer)
* - Update to 4.5pav2005-02-094-52/+5
| | | | | PR: ports/77179 Submitted by: Laurent LEVIER <llevier@argosnet.com> (maintainer)
* Update to 0.9.7.adamw2005-02-094-24/+6
|
* Document privilege escalation vulnerability in postgresql.simon2005-02-091-0/+38
|
* Document multiple protocol dissectors vulnerabilities in ethereal.simon2005-02-091-0/+53
|
* - There was a bug that caused osirisd not to start if built without osirismdpav2005-02-082-2/+6
| | | | | | | | because of the lack of a ${PREFIX}/osiris directory. This is now created no matter what options are set. PR: ports/77221 Submitted by: David Thiel <lx@redundancy.redundancy.org> (maintainer)
* Update to version 0.2.5krion2005-02-083-4/+5
|
* Add another squid issue.nectar2005-02-081-0/+34
| | | | | PR: ports/76967 Submitted by: Thomas-Martin Seck <tmseck@netcologne.de>
* Add CERT Vulnerability Note reference for one squid issue,nectar2005-02-081-3/+4
| | | | | | and correct the reference for another one [1]. Reported by: Thomas-Martin Seck <tmseck@netcologne.de> [1]
* Add CVE name for squid confusing empty ACL issue.nectar2005-02-081-1/+2
|
* - Update to 0.82sem2005-02-082-5/+8
| | | | | PR: ports/77231 Submitted by: maintainer
* Add US-CERT Vulnerability Note references for recent squid issues.nectar2005-02-081-2/+5
|