aboutsummaryrefslogtreecommitdiffstats
path: root/security
Commit message (Collapse)AuthorAgeFilesLines
* - Fix latest firefox entrymiwi2009-02-121-2/+2
|
* - Document firefox -- multiple vulnerabilitiesmiwi2009-02-111-0/+61
|
* - document codeigniter -- arbitrary script execution in the newglarkin2009-02-111-1/+31
| | | | Form Validationclass
* - Document pyblosxom -- atom flavor multiple XML injection vulnerabilitiesjadawin2009-02-111-0/+33
| | | | Reviewed by: miwi
* - Document typo3 -- cross-site scripting and information disclosuremiwi2009-02-111-0/+35
|
* Fix an issue in the py-openssl package that can lead tosobomax2009-02-112-0/+242
| | | | | | | | | | | | | | | interpreter crash with the following error message: Fatal Python error: ceval: tstate mix-up Abort trap: 6 (core dumped) Detailed explanation and analysis can be found here: https://sourceforge.net/tracker2/?func=detail&aid=2543118&group_id=31249&atid=401760 Bump PORTREVISION. Approved by: MAINTAINER
* - Update latest squid* entrymiwi2009-02-111-0/+2
| | | | | | Add CVE-2009-0478 Submitted by: jadawin
* Update to 1.5.lx2009-02-114-82/+74
|
* The OpenPGP SDK project provides an open source library, written in C,miwi2009-02-104-0/+44
| | | | | | which implements the OpenPGP specification. WWW: http://openpgp.nominet.org.uk/
* - reset maintainershipleeym2009-02-101-1/+1
|
* - Remove PKGMESSAGEmiwi2009-02-101-1/+0
| | | | | Reported by: pav Approved by: maintainer via irc
* - Update to 1.21miwi2009-02-102-5/+4
| | | | | | PR: 131419 Submitted by: Wen Heping <wenheping@gmail.com> Approved by: maintainer
* py-PF is a pure-Python module for managing OpenBSD's Packet Filter. It aimsmiwi2009-02-106-0/+74
| | | | | | | | | | | to combine the flexibility of PF's C API and the power of Python, making it easier to manage PF data and to integrate firewalling capabilities in more complex applications. WWW: http://www.kernel-panic.it/software/py-pf/ PR: ports/131463 Submitted by: Sofian Brabez <sbrabez at gmail.com>
* - Update ruby vuxml entries due to ruby19 version bump.stas2009-02-101-3/+6
|
* The Nmap::Parser library provides a Ruby interface tomiwi2009-02-104-0/+42
| | | | | | | | | | | | | | | Nmap's scan data. It can run Nmap and parse its XML output directly from the scan, parse a file containing the XML data from a separate scan, parse a String of XML data from a scan, or parse XML data from an object via its read() method. This information is presented in an easy-to-use and intuitive fashion for storage and manipulation. WWW: http://rubynmap.sourceforge.net/ PR: ports/131516 Submitted by: Daniel Roethlisberger <daniel at roe.ch>
* - Document amaya -- multiple buffer overflow vulnerabilitiesmiwi2009-02-091-0/+42
| | | | | PR: based on 131508 Submitted by: Mark Foster <mark@foster.cc>
* - Document websvn -- multiple vulnerabilitiesmiwi2009-02-091-0/+44
| | | | | PR: based on 130934 Submitted by: Mark Foster <mark@foster.cc>
* - Document phplist -- local file inclusion vulnerabilitymiwi2009-02-091-0/+29
| | | | PR: based on 130932
* - Document squid -- remote denial of service vulnerabilitymiwi2009-02-091-0/+30
| | | | PR: based on 131431
* - Fix topic s/typo/typo3miwi2009-02-091-1/+1
|
* - Document typo3 -- Multiple Vulnerabilitiesmiwi2009-02-091-0/+56
|
* Update to 2.5.2.lx2009-02-092-4/+4
| | | | | | | | | | | | | | | | | Changes: - On request, there is now a global option LooseDirCheck ([false]/true) to drop reports on directories with changes of size/mtime/ctime (resulting from changes within the directory) - An option to improve hidden process detection from within an OpenVZ container has been added - Port check now reports process pid, reporting to prelude is more complete now - A bug has been fixed whereby for files larger than 2GB, a filesize of exactly 2GB could be inserted into the RDBMS (if logging to one)
* The KDE FreeBSD team is proud to announce the release of KDE 4.2.0miwi2009-02-098-136/+64
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | for FreeBSD. The official KDE 4.2.0 (Codename: "The Answer") release notes can be found at: http://kde.org/announcements/4.2/index.php. New supported languages include Arabic, Icelandic, Basque, Hebrew, Romanian, Tajik and several Indian languages (Bengali India, Gujarati, Kannada, Maithili, Marathi) indicating a rise in popularity in this part of Asia. New ports for KDE 4.2.0: arabic/kde4-l10n Arabic hebrew/kde4-l10n Hebrew misc/kde4-l10n-bn_IN Bengali (India) misc/kde4-l10n-eu Basque misc/kde4-l10n-gu Gujarati misc/kde4-l10n-is Icelandic misc/kde4-l10n-kn Kannada misc/kde4-l10n-mai Maithili misc/kde4-l10n-mr Marathi misc/kde4-l10n-ro Romanian misc/kde4-l10n-tg Tajik math/eigen2 Lightweight library for vector and matrix math graphics/kipi-plugins-kde4 KDE4 kipi graphics plugins sysutils/policykit-kde PolicyKit manager for KDE Unfortunately FreeBSD 6.4 support is dropped. We'd like to say thanks for feedback and help to: Matt Tosto, Kris Moore, stickibit, David Johnson, Markus Brueffer, David Naylor, Thomas Schlesinger, Warren Liddell, Thomas Abthorpe, Diego Depaoli, Mats Andreassen, portmgr for exp-run and repocopies.
* Fix the project URLtimur2009-02-081-1/+1
| | | | Submitted by: wom
* Take maintainership.makc2009-02-081-1/+1
| | | | Approved by: miwi (implicit)
* - Fix previous entrymiwi2009-02-071-8/+8
|
* Security update for sudo to 1.6.9p20 for CVE 2009-0034tmclaugh2009-02-073-5/+37
| | | | | | | | | | | | | | | Changes: - Only use the cached supplementory group vector when matching groups for the invoking user. (security) - When setting the umask, use the union of the user's umask and the default value set in sudoers so that we never lower the user's umask when running a command. - Sudo now operates in the C locale again when doing a match against sudoers. PR: 131446 Submitted by: Eygene Ryabinkin Security: vid:13d6d997-f455-11dd-8516-001b77d09812
* Update to 0.2.29krion2009-02-064-6/+8
|
* - Fix a typo (s/drual/drupal)miwi2009-02-041-1/+1
|
* - Cleanupmiwi2009-02-041-2/+2
|
* - Document drupal -- multible vulnerabilitiesmiwi2009-02-041-0/+43
|
* Crypt::Juniper - Encrypt/decrypt Juniper $9$ secretsgabor2009-02-045-0/+35
| | | | | | | WWW: http://search.cpan.org/dist/Crypt-Juniper/ PR: ports/131126 Submitted by: Tsung-Han Yeh <snowfly at yuntech.edu.tw>
* The Mcrypt modules provides and simple and inuitive perl abstraction of thegabor2009-02-045-0/+42
| | | | | | | | | | libmcrypt cryptography library. It provide mechanisms for encoding and decoding perl scalars. WWW: http://search.cpan.org/dist/Mcrypt/ PR: ports/131051 Submitted by: Tatsuki Makino <tatsuki_makino@hotmail.com>
* - Update to 4.44.1pgollucci2009-02-0417-332/+131
| | | | | | | | | | - While here: fix DISTNAME/DISTFILES and ordering pet portlint rename rc.d scripts from foo.sh -> foo.in (.sh is legacy) PR: ports/131292, ports/131293, ports/131300, ports/131301 Submitted by: Demin Alexander <support@spectrum.ru> (maintainer)
* Update php5-gd entry.ale2009-02-041-1/+2
|
* 2009-01-19 games/emacs-chess: has been broken for more than 6 monthsmiwi2009-02-046-136/+0
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | 2009-02-01 devel/subversion-devel: Use devel/subversion or devel/subversion-freebsd instead of this port 2009-01-19 devel/hs-hat: has been broken for more than 6 months 2009-01-19 devel/hs-hpl: has been broken for more than 6 months 2009-01-19 databases/mysqlbigram: has been broken for more than 6 months 2009-01-19 mail/claws-mail-clamav: has been broken for more than 6 months 2009-01-19 mail/sylpheed2-devel: has been broken for more than 6 months 2009-01-19 www/pecl-mnogosearch: has been broken for more than 6 months 2009-01-31 x11-fonts/mathfonts: This port was supported by Mozilla 1.8 (including Firefox 2.0) - to be replaced by STIX fonts for Firefox 3.x 2009-01-19 x11-wm/fluxspace: has been broken for more than 6 months 2009-01-31 x11-wm/expocity: project has been abandoned 2009-01-19 x11/bbuname: has been broken for more than 6 months 2009-01-19 security/squidclam: has been broken for more than 6 months 2009-01-19 print/virtualpaper: depends on broken, expired port 2009-01-19 print/ifhp: has been broken for more than 6 months 2009-01-19 net-p2p/peercast: has been forbidden for more than 6 months 2009-01-19 palm/pdbc: has been broken for more than 6 months 2009-01-19 net-mgmt/NeTraMet: has been broken for more than 6 months 2009-01-19 net-im/sulci: has been broken for more than 6 months 2009-01-19 multimedia/mjpegtools-yuvfilters: has been broken for more than 6 months 2009-01-19 multimedia/helixplayer: has been broken for more than 6 months 2009-01-19 lang/quack: has been broken for more than 6 months 2009-01-19 misc/pybliographer: has been broken for more than 6 months 2009-01-19 net/versuch: has been broken for more than 6 months 2009-01-19 net/py-mantissa: has been broken for more than 6 months 2009-01-19 net/libunpipc: has been broken for more than 6 months 2009-01-19 net/gnometelnet: has been broken for more than 6 months 2009-01-19 net/gacxtool: depends on expired, broken port 2009-01-19 devel/py-coro: has been broken for more than 6 months 2009-01-19 chinese/stardict2-dict-zh_TW: has been broken for more than 6 months 2009-01-19 x11-themes/gtk-industrial-theme: has been broken for more than 6 months
* - Document perl -- Directory Permissions Race Conditionmiwi2009-02-041-0/+37
| | | | PR: based on 129317
* Mark this port deprecated. Pam_krb5 has been in base since FreeBSD 5. It iscy2009-02-041-0/+2
| | | | set to expire August 31, 2009.
* - Update to 1.0.1pgollucci2009-02-033-11/+6
|
* - Use GNOME macro instead of ${MASTER_SITE_GNOME}, removearaujo2009-02-021-2/+1
| | | | | | | | | MASTER_SITE_SUBDIR when possible. PR: ports/125243 Submitted by: pgollucci Reworked by: myself Tested on: pointyhat exp-run (pav)
* Argh. So, the update notifier was wrong, and 0.2 is not a new releaselx2009-02-023-17/+43
| | | | | | | (of course), but I was fooled because there's a separate project called libssh which *did* just have a new release. 1.0 is the real update. Pointed out by: J. Johnston
* - Update to 1.22gabor2009-02-022-4/+4
|
* - Update download locationpav2009-02-011-1/+2
| | | | Reported by: -fetch-original pointyhat run
* - Update download locationpav2009-02-011-1/+1
| | | | Reported by: -fetch-original pointyhat run
* Include appropriate openssl headers.lx2009-02-011-0/+11
|
* - Update py-twisted-* to 8.2.0lwhsu2009-01-313-6/+40
| | | | | | | | | | | | | - turn devel/py-twisted into a meta port. - Update USE_TWISTED{,_BUILD,_RUN} in bsd.python.mk: * Remove flow, pair, xish, which are deprecated (but still update them to latest release in the tree) * Remove USE_TWISTED=13 (no port uses this) * Fix typos in twisted components _DEPENDS PR: ports/130001 Submitted by: lwhsu Approved by: maintainer timeout
* Update to 0.2.lx2009-01-312-38/+6
|
* - Update download locationpav2009-01-311-1/+1
| | | | Reported by: -fetch-original pointyhat run
* - Rework ganglia entrymiwi2009-01-301-4/+3
| | | | | * Fix topic * Fix discovery and entry day
* - Set modified for b9077cc4-6d04-4bcb-a37a-9ceaebfdcc9e entrymiwi2009-01-301-0/+2
| | | | - more cleanup
* - Document moinmoin -- multiple cross site scripting vulnerabilitiesmiwi2009-01-301-0/+37
|
* - Cleanup previous entrymiwi2009-01-301-3/+4
| | | | | * remove whitespaces * sort bid/cvename/url
* - Add patch to fix handling of send_mailsyncs flagjohans2009-01-303-1/+52
| | | | | | - Update website Submitted by: Joseph Oreste Bruni
* Upgrade Ganglia to 3.1.1 plus a fix for CVE-2009-0241.brooks2009-01-301-0/+34
| | | | | | PR: ports/129822, ports/131067 Submitted by: Mark Foster <mark at foster dot cc> (vuxml) Security: vid:b9077cc4-6d04-4bcb-a37a-9ceaebfdcc9e
* - Update to 0.2.0.33miwi2009-01-302-5/+5
| | | | | | PR: 130849 Submitted by: bf <bf2006a@yahoo.com> Security: http://www.vuxml.org/freebsd/100a9ed2-ee56-11dd-ab4f-0030843d3802.html
* - Update to 0.2.1.11-alphamiwi2009-01-302-4/+4
| | | | | | | PR: 130838 Submitted by: bf <bf2006a@yahoo.com> Approved by: maintainer Security: http://www.vuxml.org/freebsd/100a9ed2-ee56-11dd-ab4f-0030843d3802.html
* - Document Tor -- Unspecified Memory Corruption Vulnerabilitymiwi2009-01-301-0/+33
|
* Reassign my p5-* ports to perl@ so more than one personerwin2009-01-307-7/+7
| | | | can look at them.
* - Update to 1.1.8lwhsu2009-01-292-4/+4
|
* Update my email address to @FreeBSD.org.beat2009-01-292-2/+2
| | | | Approved by: miwi (mentor)
* - Cleanupmiwi2009-01-281-9/+9
| | | | | * Fix whitespaces/ Tabs * Sort <bid>/<cvename>/<url>
* - Rewording 2ffb1b0d-ecf5-11dd-abae-00219b0fc4d (glpi -- SQL Injection)miwi2009-01-281-4/+6
| | | | - Add more reference sites
* Document glpi -- SQL Injection vulnerabiltypgollucci2009-01-281-0/+28
| | | | | PR: ports/131011 Submitted by: Mathias Monnerville <mathias@monnerville.com>
* - Update to 1.0.3tabthorpe2009-01-282-5/+5
| | | | | | | - Pass maintainership to submitter PR: ports/131003 Submitted by: Wen Heping <wenheping gmail.com>
* - Update to 0.19.1mnag2009-01-273-133/+10
| | | | | PR: 130823 Submitted by: Wen Heping <wenheping___gmail.com>
* Update to 3.24. From the changelog:lx2009-01-272-4/+4
| | | | | | | | | | | | | | * Do not attempt to re-resolve IP addresses * Add '-C <file>' command to load in specific config file * Cope with random/strange config files better * Correct some minor typos * Create the .csshrc file if it doesnt already exist and amend pod * Amend host menu items to be a little more descriptive * Remove 'Catpure Terminal' from Hosts menu as it doesnt do anything useful * Ensure loading of hosts from user ssh config file is case insensitive Submitted by: ehaupt
* - Add logging knobbeech2009-01-253-0/+48
| | | | | | PR: ports/130893 Submitted by: Michael Scheidell <scheidell@secnap.net> Approved by: Matthias Andree <matthias.andree@gmx.de> (maintainer)
* - Document openfire -- multiple vulnerabilitiestabthorpe2009-01-251-0/+37
| | | | | PR: ports/130606 Submitted by: Mark Foster <mark foster.cc>
* - Mark BROKEN on 6.x: does not packagepav2009-01-241-1/+7
| | | | Reported by: pointyhat
* Update to paperkey-1.0.roam2009-01-242-4/+4
|
* Update information about 9fff8dc8-7aa7-11da-bf72-00123f589060delphij2009-01-241-4/+10
| | | | | | | and 651996e0-fe07-11d9-8329-000e0c2e438a, newer versions of apache+ipv6 has the problems fixed. Submitted by: sumikawa
* This package provides efficient cryptographic hash implementations forpgj2009-01-249-0/+153
| | | | | | | | | | strict and lazy bytestrings for the functional programming language Haskell. WWW: http://hackage.haskell.org/cgi-bin/hackage-scripts/package/digest Reviewed by: gabor Approved by: tabthorpe
* - Update X.org ports to 7.4+ (few ports are more recent than the katamari).flz2009-01-242-6/+3
| | | | | | | | - Bump PORTREVISION for all ports depending on libglut since the shlib version number went from 4 to 3. - Bump PORTREVISION for all ports depending on libXaw as libXaw.so.8 isn't installed anymore. - Couple of ports fixes (mostly missing xorg components added to USE_XORG).
* - Update to 1.4.4amdmi32009-01-232-4/+4
| | | | | PR: 130914 Submitted by: Hirohisa Yamaguchi <umq at ueo dot co dot jp> (maintainer)
* Bump the version of the curl shared library after the ftp/curl updateroam2009-01-239-8/+13
| | | | | | to 7.19.2. Bump PORTREVISION, even on the ports that do not have a versioned dependency, since the binaries will most probably still stop working.
* - Add missing dependencygabor2009-01-221-0/+3
| | | | | | | - Bump PORTREVISION PR: ports/130630 Submitted by: Gea-Suan Lin <gslin@gslin.org>
* - Update to 0.9.1386.araujo2009-01-223-4/+7
| | | | | PR: ports/130803 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Update to 0.9.1284.araujo2009-01-222-4/+4
| | | | | PR: ports/130802 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Update to 0.9.1313.araujo2009-01-222-4/+4
| | | | | PR: ports/130801 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Update to 0.9.1395.araujo2009-01-223-4/+7
| | | | | PR: ports/130800 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Update to 0.9.1396.araujo2009-01-223-13/+22
| | | | | PR: ports/130799 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Update to 0.9.1389.araujo2009-01-223-6/+15
| | | | | PR: ports/130795 Submitted by: Sergei Vyshenski <svysh@pn.sinp.msu.ru> (maintainer)
* - Mark BROKEN on amd64/7: segfault during buildpav2009-01-221-1/+7
| | | | Reported by: pointyhat
* - Original website is now cyberquatted; point to a swik entry insteadpav2009-01-221-1/+1
|
* - Document two old ipsec-tools DoSwxs2009-01-221-0/+32
| | | | | PR: ports/129468 Submitted by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* - Add notice about CAMELLIA option (for testing only) [1].kuriyama2009-01-211-1/+2
| | | | | | - Turn CAMELLIA off by default for above reason. Suggested by: dougb [1]
* - Update to 1.0.1pav2009-01-212-8/+6
| | | | | PR: ports/130754 Submitted by: Eric F Crist <ecrist@secure-computing.net> (maintainer)
* Update to 1.7.novel2009-01-212-5/+4
| | | | | PR: 130551 Submitted by: Hirohisa Yamaguchi <umq@ueo.co.jp>
* - Document directory traversal bug in teamspeak serverwxs2009-01-201-0/+29
| | | | | PR: ports/130608 Submitted by: Mark Foster <mark@foster.cc>
* - Document graphics/optipng buffer overflowwxs2009-01-201-0/+36
| | | | | PR: ports/129072 Submitted by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* - Document old gitweb privilege escalation vulnerability.wxs2009-01-201-0/+31
| | | | | PR: ports/130600 Submitted by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* Resurrect the patch to sudosh.c to fix a pty issue.cy2009-01-202-0/+258
|
* Chase libtasn1 shared library version bump.novel2009-01-195-9/+11
|
* Update to 1.8.novel2009-01-193-6/+8
|
* Fix compile time errors.cy2009-01-182-0/+22
|
* Document vulnerability in older versions of GNU tar.naddy2009-01-171-0/+32
| | | | | PR: 130602 Submitted by: Mark Foster <mark@foster.cc>
* - Update to 0.2.1.10-alphamiwi2009-01-162-4/+4
| | | | | | PR: 130531 Submitted by: bf <bf2006a@yahoo.com> Approved by: maintainer
* - Mark net-mgmt/nagios2 as securemiwi2009-01-161-1/+2
|
* - Document mplayer -- vulnerability in STR files processormiwi2009-01-161-0/+36
| | | | PR: based on 130573
* - Update to 4.08miwi2009-01-163-26/+48
| | | | | PR: 130465 Submitted by: Ports Fury
* Add sudosh2.cy2009-01-163-12/+25
|
* - Fix plist with perl 5.8.9pav2009-01-151-3/+5
|
* - Fix plist with perl 5.8.9pav2009-01-152-2/+3
| | | | - While here, remove duplicite entry from plist
* - Fix plist with perl 5.8.9pav2009-01-151-0/+9
|
* - Update to 1.0.5amdmi32009-01-153-15/+4
| | | | | PR: 130550 Submitted by: Hirohisa Yamaguchi <umq at ueo dot co dot jp>
* - Update to 0.5.12miwi2009-01-153-8/+4
| | | | | PR: 130487 Submitted by: Wen Heping <wenheping@gmail.com> (maintainer)
* - Update to 2.2.2acm2009-01-143-7/+4
|
* kde@freebsd team is pleased to announce KDE 4.1.4, the last bugfix release ↵makc2009-01-146-10/+18
| | | | | | | | | | | | | | in 4.1.x series. You have only two weeks to play with it -- KDE 4.2.0 is coming ;) Great thanks for those who helped us with testing 4.1.2 and 4.1.3 during long-long ports ice-age. For lists of bugfixes and improvements please see: http://www.kde.org/announcements/changelogs/changelog4_1_1to4_1_2.php http://www.kde.org/announcements/changelogs/changelog4_1_2to4_1_3.php http://www.kde.org/announcements/changelogs/changelog4_1_3to4_1_4.php Approved by: miwi (mentor)
* - Update to 1.12.1amdmi32009-01-142-4/+4
| | | | | PR: 130510 Submitted by: Ganael Laplanche <ganael dot laplanche at martymac dot com>
* Fail2ban scans log files like /var/log/pwdfail or /var/log/apache/error_logpgollucci2009-01-145-0/+163
| | | | | | | and bans IP that makes too many password failures. It updates firewall rules to reject the IP address. WWW: http://www.fail2ban.org/wiki/index.php/Main_Page
* - Cleanup previous entrymiwi2009-01-131-1/+3
| | | | - Add more references
* Welcome the new sudosh2 port. Sudosh2 was forked from sudosh in 2007.cy2009-01-138-296/+18
|
* - Add missing blockquote and linewrap properlywxs2009-01-131-2/+3
|
* - Document cgiwrap XSS vulnerabilitywxs2009-01-131-0/+32
| | | | | PR: ports/130277 Submitted by: Eric W. Bates <ericx@vineyard.net>
* Upgrade to 2.0.10.kuriyama2009-01-133-44/+73
| | | | | | PR: ports/130430 Submitted by: Hirohisa Yamaguchi <umq@ueo.co.jp> Announcement: https://lists.gnupg.org/pipermail/gnupg-announce/2009q1/000284.html
* - Add mysql/postgresql to REQUIRE: in rc.script for correct start orderamdmi32009-01-131-1/+9
| | | | | | PR: 127954 Submitted by: Helmut Schneider <jumper99 at gmx dot de> Approved by: maintainer timeout
* - Document nagios -- web interface privilege escalation vulnerabilitymiwi2009-01-121-0/+35
|
* Fix the plist, bump the PORTREVISION.mezz2009-01-122-1/+2
| | | | Reported by: QAT
* - Document pdfjam -- insecure temporary filesmiwi2009-01-121-0/+32
| | | | PR: based on 130028
* - Document verlihub -- insecure temporary file usage and arbitrary command ↵miwi2009-01-121-0/+41
| | | | execution
* Fix the epiphany version number.marcus2009-01-121-1/+2
| | | | Reported by: QA Tinderbox
* - Updated to 1.0.5glarkin2009-01-122-4/+4
| | | | | PR: ports/130332 Submitted by: Hirohisa Yamaguchi <umq at ueo dot co dot jp>
* - Document mysql -- empty bit-string literal denial of servicemiwi2009-01-121-0/+34
| | | | | PR: based on 129978 Submitted by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* - Fix discovery datemiwi2009-01-111-1/+1
|
* - Document mysql multiple vulnerabilities:miwi2009-01-111-0/+93
| | | | | | | | | * mysql -- renaming of arbitrary tables by authenticated users * mysql -- remote Denial of Service via malformed password packet * mysql -- privilege escalation and overwrite of the system table information PR: based on 130025 Submitted by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* - Fix runtime crash on 64 bit platformspav2009-01-112-0/+13
| | | | | PR: ports/127616 Submitted by: Tom Evans <tevans.uk@googlemail.com>
* - Document imap-uw -- imap c-client buffer overflowmiwi2009-01-111-0/+29
| | | | | | PR: 130013 Submitted by: Mark Foster <mark@foster.cc> Approved by: maintainer timeout
* - Fix a small typomiwi2009-01-111-1/+1
|
* - Document imap-uw -- local buffer overflow vulnerabilitiesmiwi2009-01-111-0/+29
| | | | | | PR: 128923 Submitted by: Mark Foster <mark@foster.cc> Approved by: maintainer timeout
* - Document libcdaudio -- remote buffer overflow and code executionmiwi2009-01-111-0/+38
|
* - Make this use openssl from port on 6.xpav2009-01-111-1/+7
| | | | Reported by: pointyhat
* Presenting GNOME 2.24 for FreeBSD.marcus2009-01-1025-208/+779
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | See http://library.gnome.org/misc/release-notes/2.24/ for the general release notes. On the FreeBSD front, this release introduces Fuse support in HAL, adds multi-CPU support to libgtop, WebKit updates, and fixes some long-standing seahorse and gnome-keyring bugs. The documentation updates to the website are forthcoming. This release features commits by adamw, ahze, kwm, mezz, and myself. It would not have been possible without are contributors and testers: Alexander Loginov Craig Butler [1] Dmitry Marakasov [6] Eric L. Chen Joseph S. Atkinson Kris Moore Lapo Luchini [7] Nikos Ntarmos Pawel Worach Romain Tartiere TAOKA Fumiyoshi [3] Yasuda Keisuke Zyl aZ [4] bf [2] [5] Florent Thoumie Peter Wemm pluknet PR: 125857 [1] 126993 [2] 130031 [3] 127399 [4] 127661 [5] 124302 [6] 129570 [7] 129936 123790
* Add a new framework for browser plugins, USE_WEBPLUGINS. It is for which foomezz2009-01-102-2/+8
| | | | | | | | | | | | | | plugins support one of web browsers and can take care of plist (depend on how you use it) at the same time. I have written a complete document and even show how it works in the www/firefox/Makefile.webplugins so be sure to read in there. If there is anything that isn't clear in the document, please feel free to ask and I will try my best to improvement it. FYI: GNOME 2.24 depends on this, so it's coming. BTW: It's based on www/linux-mplayer-plugin/Makefile.npapi with heavy modified. Approved by: portmgr
* pyClamd is a python interface to Clamd (Clamav daemon).miwi2009-01-106-0/+97
| | | | | | | | By using pyClamd, you can add virus detection capabilities to your python software in an efficient and easy way. PR: ports/130312 Submitted by: Milan Obuch
* - update to 0.9.8jdinoex2009-01-1021-728/+130
| | | | | | | - move patches from files-beta back to files - FIPS disabled with force - support for crypto_hw device cloning restored - support for crypto_hw aes_256 restored
* - retire openssl-beta portdinoex2009-01-101-19/+0
|
* - disconnect openssl-betadinoex2009-01-101-1/+0
|
* - Update to 4.26miwi2009-01-092-4/+4
| | | | | PR: 130160 Submitted by: "Beat Gätzi" <beat@chruetertee.ch>
* - Security fix for incorrect checks for malformed signaturesdinoex2009-01-092-3/+152
| | | | Security: http://www.openssl.org/news/secadv_20090107.txt
* Re-add gnutls-devel port at version 2.7.4.novel2009-01-096-0/+733
|
* - cleanup 0.97dinoex2009-01-092-90/+49
|
* - mark FORBIDDENdinoex2009-01-091-0/+1
| | | | Security: incorrect checks for malformed signatures
* Mark BROKEN on 8: does not build after the arp-v2 import.erwin2009-01-091-0/+4
| | | | Submitted by: pointyhat
* - USE_GZIP does not need to be defined last few yearspav2009-01-091-1/+0
|
* - USE_KDE is nothing, removepav2009-01-091-2/+0
|
* - mark BROKENdinoex2009-01-081-0/+2
|
* - update to 1.19leeym2009-01-082-4/+10
|
* - Update to 1.1.7miwi2009-01-082-4/+4
| | | | | PR: 130176 Submitted by: Wen Heping <wenheping@gmail.com> (maintainer)
* - Update to 20090107garga2009-01-083-5/+4
|
* - Update maintainer addresspav2009-01-081-1/+1
| | | | Reported by: bounce message
* - Update to 1.2.1tabthorpe2009-01-072-5/+5
| | | | | PR: ports/130223 Submitted by: Wen Heping <wenheping gmail.com>
* - Remove conditional checks for FreeBSD 5.x and olderpav2009-01-0727-197/+22
|
* - Update to 2.6.3novel2009-01-076-56/+46
| | | | | | | | - Remove WITH_OPENCDK knob since it's not relevant anymore - Add WITH_LZO knob PR: 127330 (partially) Submitted by: Yarema <yds@CoolRat.org>
* - Bump PORTREVISION due to share library version bump in security/libgcryptrafan2009-01-0614-20/+25
| | | | PR: ports/127478
* - Update to 1.4.3rafan2009-01-063-7/+7
| | | | | | | | - Pass maintainership to submitter per PR 127224 PR: ports/127478 Submitted by: Hirohisa Yamaguchi <umq at ueo.co.jp> Approved by: arved (maintainer)
* - Add another MASTER_SITEwxs2009-01-062-4/+3
| | | | | | | | - Pass maintainer to submitter - Cleanup pkg-descr PR: ports/130099 Submitted by: Daniel Roethlisberger <daniel@roe.ch>
* - Mark xterm 238 safetabthorpe2009-01-061-1/+2
|
* Bump PORTREVISION's after OpenLDAP update.delphij2009-01-0611-5/+11
| | | | Suggested by: rafan
* - Update address of my distfile mirroramdmi32009-01-061-1/+1
|
* Import latest FreeBSD-SA's so that we are up to date again.remko2009-01-051-0/+196
|
* - Document xterm vulnerability.stas2009-01-051-0/+32
|
* - Document PHP gd library vulnerability.stas2009-01-051-0/+30
|
* - Pass maintainership to submittermiwi2009-01-052-3/+3
| | | | Submitted by: "Beat Gätzi" <beat@chruetertee.ch>
* update to 0.62.1oliver2009-01-042-4/+4
|
* Upgrade to 0.9.okazaki2009-01-044-51/+69
| | | | Install documents.
* - Update awstats entry (also affect www/awstats-devel)miwi2009-01-041-0/+4
|
* - Fix the affected version of awstatschinsan2009-01-041-1/+1
|
* - Document awstats -- multiple XSS vulnerabilitieschinsan2009-01-041-0/+36
| | | | | | | PR: ports/129957 Submitted by: Eygene Ryabinkin <rea-fbsd _at\ codelabs.ru> Approved by: Alex Samorukov (maintainer) Security: http://secunia.com/advisories/31519
* - Cleanup (fix whitespaces, typos)miwi2009-01-031-13/+12
|
* - Completely fix CVE-2005-0448chinsan2009-01-031-0/+33
| | | | | PR: ports/129301 Submitted by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* Bump copyright year.erwin2009-01-021-1/+1
|
* - Document vim -- multiple vulnerabilities in the netrw moduletabthorpe2009-01-021-0/+47
| | | | | PR: ports/129137 Submitted by: Eygene Ryabinkin <rea-fbsd codelabs.ru>
* Update to 1.1.3.lx2009-01-023-8/+5
|
* Add vinagre -- format string vulnerability entry.mezz2009-01-011-0/+35
| | | | | PR: ports/129959 Submitted by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* Reset mattdharris@users.sourceforge.net: address bounces.linimon2008-12-312-2/+2
| | | | Hat: portmgr
* Document twiki - multiple vulnerabilitiesglarkin2008-12-311-0/+36
|
* Add entry for roundcube.ale2008-12-311-0/+29
| | | | Submitted by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* - Update to 1.0.9dinoex2008-12-302-5/+4
|
* - fix reload and restart targetsdinoex2008-12-301-17/+14
| | | | Submitted by:i igor <soft[at]antrax-energo.msk.ru>
* - retire this portdinoex2008-12-301-22/+0
|
* - disconnect openssl-stabledinoex2008-12-301-1/+0
|
* - Document mysql -- MyISAM table privileges security bypass vulnerability ↵miwi2008-12-301-0/+40
| | | | for symlinked paths
* - Document mplayer -- twinvq processing buffer overflow vulnerabilitymiwi2008-12-301-0/+35
| | | | Reported by: Thomas Zander <riggs@rrr.de> (mplayer maintainer)
* Fix build on 64-bit archs.ale2008-12-291-3/+9
|
* - Add PORTSCOUT variable.miwi2008-12-281-0/+2
|
* PyMe is a Python interface to GPGME library.johans2008-12-285-0/+119
| | | | | | | | | PyMe's development model is GPGME + Python + SWIG (just like m2crypto is an OpenSSL + Python + SWIG) combination which means that most of the functions and types are converted from C into Python automatically by SWIG. In short, to be able to use PyMe you need to be familiar with GPGME. WWW: http://pyme.sourceforge.net/
* - Update to version 0.0.7danfe2008-12-272-5/+5
| | | | | | - Drop maintainership PR: ports/128479
* - Update to 0.52miwi2008-12-272-4/+5
| | | | | PR: 129961 Submitted by: Alex Kozlov <spam@rm-rf.kiev.ua> (maintainer)
* - ampache -- insecure temporary file usagejadawin2008-12-261-0/+33
|
* - Update to 2.6.2 [1]gabor2008-12-263-28/+6
| | | | | | | | - Inplace edit Perl path to be ${PERL} [2] PR: ports/129670 [1] Submitted by: Michael Scheidell <scheidell@secnap.net> [1] Requested by: Andre Luiz dos Santos <andre@netvision.com.br> [2]
* - Small cleanup for the last cups-base entrymiwi2008-12-261-13/+10
| | | | | | | | | * CVE-2008-5184 was fixed in 1.3.8. * CVE-2008-1722 does not related to anything in this entry; * PNG buffer overflow is really CVE-2008-5286. Reported by: Eygene Ryabinkin <rea-fbsd@codelabs.ru> No Cookies for: miwi
* - Update to 20081223garga2008-12-232-4/+4
|
* - Update to 0.2.1.8-alphamiwi2008-12-234-6/+6
| | | | | | PR: 129540 Submitted by: bf <bf2006a@yahoo.com> Approved by: maintainer
* Remove BROKEN.okazaki2008-12-221-3/+0
| | | | Replace explicit dependence on xerces-c2 with indirect one via apache-xml-security-c.
* - Fix pkg-plistkevlo2008-12-202-0/+5
| | | | - Bump PORTREVISION
* - Set for expiration in one month: has been broken for more than 6 monthspav2008-12-201-0/+2
|
* - Document opera -- multiple vulnerabilitiesmiwi2008-12-201-0/+51
|
* - Document mediawiki -- multiple vulnerabilitiesmiwi2008-12-201-0/+51
|
* - Fix make validatemiwi2008-12-201-0/+1
|
* - document drupal -- Multiple vulnerabilitiesmiwi2008-12-201-0/+36
|
* - Document mozilla -- multiple vulnerabilitiesmiwi2008-12-201-0/+73
|
* - Disable package build on pointyhat, it detects presence of /dev/bpfpav2008-12-201-0/+1
| | | | Reported by: pointyhat
* - Mark BROKEN on FreeBSD 6.xpav2008-12-201-1/+7
| | | | Reported by: pointyhat
* Update to 0.7.stefan2008-12-192-4/+4
| | | | | | PR: 126731 Submitted by: Wen heping <wenheping@gmail.com> Approved by: maintainer timeout
* - Fix plistjadawin2008-12-181-0/+3
| | | | Approved by: maintainer
* - Update to 1.1 (which works on 7.x systems only).stefan2008-12-184-21/+17
| | | | | | | - Drop maintainership. PR: 122768, 126161 Submitted by: maintainer
* Add USE_PERL5=yeskevlo2008-12-181-0/+1
|
* Add META file for use with ocaml-findlib.linimon2008-12-181-0/+6
| | | | PR: ports/122848
* Update to 1.3 and assign maintainership. Also, move the install fileslinimon2008-12-182-15/+19
| | | | | | | to lib/ocaml/cryptokit/ to correspond with other ocaml ports. Based on: PR/122848 Submitted by: Jaap Boender (new maintainer)
* - Update to 1.4kevlo2008-12-1820-864/+205
| | | | | | | - Take maintainership PR: ports/129715 Submitted by: kevlo
* Reset se@FreeBSD.org due to maintainer-timeouts and no response to email.linimon2008-12-183-3/+3
| | | | Hat: portmgr
* - Update to 0.4.0pav2008-12-183-20/+15
| | | | | | PR: ports/129133 Submitted by: Yi-Jheng Lin <yzlin@cs.nctu.edu.tw> Approved by: maintainer timeout (perky; 4 weeks)
* - Install PORTDOCS into the proper locationwxs2008-12-172-18/+28
| | | | | | | - Cleanup unnecessary files being installed PR: ports/129552 Submitted by: Janky@test.purplehat.org (maintainer)
* Update to 1.2.17 release.ale2008-12-162-5/+4
|
* - Update to 0.3.9miwi2008-12-153-21/+10
| | | | | | | | | - Take advantage of macro name 'SF' for MASTER_SITES - Use PORTDOCS & PLIST_FILES instead PR: 128967 Submitted by: Yi-Jheng Lin <yzlin@cs.nctu.edu.tw> Approved by: maintainer timeout
* - update to 1.05leeym2008-12-122-18/+6
|
* - Update to 1.02beech2008-12-124-21/+10
| | | | | | | - Change to PORTDOCS and remove pkg-plist PR: ports/129545 Submitted by: SeaD <sead@deep.perm.ru> (maintainer)
* - Fix a small typomiwi2008-12-121-1/+1
|
* - Document phpmyadmin -- cross-site request forgery vulnerabilitymiwi2008-12-121-0/+33
|
* Remove pecl-filter in favour of php5-filter.ale2008-12-114-42/+0
| | | | Approved by: maintainer
* Add php5 filter extension.ale2008-12-112-0/+15
|
* Mark it php4-only.ale2008-12-111-3/+2
| | | | Approved by: maintainer
* Add php5 hash extension.ale2008-12-112-0/+15
|
* Update to 3.0.3 (release, aka build 688).cy2008-12-108-20/+16
|
* - Update to 20081209garga2008-12-093-30/+4
|
* Update to 3.0.3 Build 687.cy2008-12-098-16/+20
|
* - Document php5 -- potential magic_quotes_gpc vulnerabilitytabthorpe2008-12-081-0/+28
| | | | Reviewed by: miwi
* Update to 2.5.1, which should really fix the amd64 build problems.lx2008-12-082-4/+4
|
* - Fix a typomiwi2008-12-081-1/+1
| | | | Reported by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* - Document wireshark -- SMTP Processing Denial of Service Vulnerabilitymiwi2008-12-081-0/+36
|
* - Document php -- multiple vulnerabilitiesmiwi2008-12-071-0/+51
|
* - Document mgetty+sendfax -- symlink attack via insecure temporary filesmiwi2008-12-071-0/+30
| | | | | PR: based on 129471 Submitted by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* - Document dovecot-managesieve -- Script Name Directory Traversal Vulnerabilitymiwi2008-12-071-0/+32
| | | | | PR: based on 129303 Submitted by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* Document habari -- Cross-Site Scripting Vulnerabilitymiwi2008-12-071-0/+30
| | | | | PR: 129475 Submitted by: Ayumi M <ayu@dahlia.commun.jp>
* - Add 32545 to the latest vlc entry.miwi2008-12-071-0/+2
|
* - Document vlc -- arbitrary code execution in the RealMedia processormiwi2008-12-071-0/+31
|
* - S/secunia/Secuniamiwi2008-12-071-2/+2
|
* - Document mantis - PHP Code Execution Vulnerabilitymiwi2008-12-071-0/+30
| | | | | PR: based on 129438 Submitted by: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
* Document mantis -- multiple vulnerabilitiesmiwi2008-12-071-0/+50
| | | | PR: based on 129438
* Update 3.0.2 Build 676 to 3.0.3 Build 683 (3.0.3 prerelease) to fix ancy2008-12-078-24/+20
| | | | IPv6 address issue in address and network objects.
* - Update to 1.0miwi2008-12-062-9/+8
| | | | | PR: 129380 Submitted by: ecrist@secure-computing.net (maintainer)
* - Update to 0.3.2miwi2008-12-063-22/+15
| | | | | | | - Pass maintainership to submitter PR: 129412 Submitted by: Wen Heping <wenheping@gmail.com>
* update to 0.61.1oliver2008-12-063-6/+7
|
* - Update to 0.09gabor2008-12-052-4/+4
|
* - Update to 0.051gabor2008-12-052-4/+4
|
* - Fix previous entrymiwi2008-12-051-5/+3
|
* - Update to 1.0.2miwi2008-12-052-4/+4
| | | | | PR: 129328 Submitted by: Alex Kapranoff <kappa@rambler-co.ru> (maintainer)
* - Document squirrelmail -- Cross site scripting vulnerabilitytabthorpe2008-12-051-0/+31
|
* Update to 0.8.perky2008-12-042-4/+4
| | | | | PR: 128839 Submitted by: wxs
* - Clean up shared directory share/applicationspav2008-12-042-0/+2
| | | | Reported by: pointyhat