mirror of
https://git.FreeBSD.org/ports.git
synced 2024-12-24 04:33:24 +00:00
Integrate the following vendor patches as published on
http://www.squid-cache.org/Versions/v2/2.5/bugs/: - a malformed hostname can cause squid to return random data as error messages, possibly leaking internal information from former requests (squid bug #1143). (This is classified as a minor security issue by the squid developers, so maintainer cc'ed security-team@. See VuXML entry.) - the "httpd_accel_port 0" directive does not work on its own (squid bug #1121) - fix crashes occuring when using cachemgr's "vm_objects" operation (squid bug #1149) PR: ports/74859 Submitted by: maintainer
This commit is contained in:
parent
2a27888eaf
commit
4c0635e2e4
Notes:
svn2git
2021-03-31 03:12:20 +00:00
svn path=/head/; revision=123503
@ -32,6 +32,33 @@ EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
|
||||
|
||||
-->
|
||||
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
|
||||
<vuln vid="f0db930b-496b-11d9-bf86-0050569f0001">
|
||||
<topic>squid -- possible information disclosure</topic>
|
||||
<affects>
|
||||
<package>
|
||||
<name>squid</name>
|
||||
<range><lt>2.5.7_4</lt></range>
|
||||
</package>
|
||||
</affects>
|
||||
<description>
|
||||
<body xmlns="http://www.w3.org/1999/xhtml">
|
||||
<p>The squid-2.5 patches pages notes:</p>
|
||||
<blockquote cite="http://www.squid-cache.org/Versions/v2/2.5/bugs/#squid-2.5.STABLE7-dothost">
|
||||
<p>In certain conditions Squid returns random data as error messages
|
||||
in response to malformed host name, possibly leaking random
|
||||
internal information which may come from other requests.</p>
|
||||
</blockquote>
|
||||
</body>
|
||||
</description>
|
||||
<references>
|
||||
<url>http://www.squid-cache.org/Versions/v2/2.5/bugs/#squid-2.5.STABLE7-dothost</url>
|
||||
</references>
|
||||
<dates>
|
||||
<discovery>2004-11-23</discovery>
|
||||
<entry>2004-12-09</entry>
|
||||
</dates>
|
||||
</vuln>
|
||||
|
||||
<vuln vid="323784cf-48a6-11d9-a9e7-0001020eed82">
|
||||
<topic>viewcvs -- information leakage</topic>
|
||||
<affects>
|
||||
|
@ -74,7 +74,7 @@
|
||||
|
||||
PORTNAME= squid
|
||||
PORTVERSION= 2.5.7
|
||||
PORTREVISION= 3
|
||||
PORTREVISION= 4
|
||||
CATEGORIES= www
|
||||
MASTER_SITES= \
|
||||
ftp://ftp.squid-cache.org/pub/%SUBDIR%/ \
|
||||
@ -91,7 +91,10 @@ PATCHFILES= squid-2.5.STABLE7-half_closed_POST.patch \
|
||||
squid-2.5.STABLE7-LDAP_version_documentation.patch \
|
||||
squid-2.5.STABLE7_req_resp_header.patch \
|
||||
squid-2.5.STABLE7-helper_shutdown.patch \
|
||||
squid-2.5.STABLE7-blank_response.patch
|
||||
squid-2.5.STABLE7-blank_response.patch \
|
||||
squid-2.5.STABLE7-dothost.patch \
|
||||
squid-2.5.STABLE7-httpd_accel_vport.patch \
|
||||
squid-2.5.STABLE7-cachemgr_vmobjects.patch
|
||||
PATCH_DIST_STRIP= -p1
|
||||
|
||||
MAINTAINER= tmseck@netcologne.de
|
||||
|
@ -10,3 +10,9 @@ MD5 (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = bf5a91a22a4a982e2f5dd97
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = 11579
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-blank_response.patch) = b4d3265c55888f9b9ba3c5bc7d073822
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-blank_response.patch) = 723
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-dothost.patch) = 81034e9092a06d9aa1e9ede26632ae03
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-dothost.patch) = 2155
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 2366a84e29fad439c2a488b03f112779
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 843
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = fdde57025dbfb8caf9154e24b4e1bf3e
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = 6238
|
||||
|
@ -74,7 +74,7 @@
|
||||
|
||||
PORTNAME= squid
|
||||
PORTVERSION= 2.5.7
|
||||
PORTREVISION= 3
|
||||
PORTREVISION= 4
|
||||
CATEGORIES= www
|
||||
MASTER_SITES= \
|
||||
ftp://ftp.squid-cache.org/pub/%SUBDIR%/ \
|
||||
@ -91,7 +91,10 @@ PATCHFILES= squid-2.5.STABLE7-half_closed_POST.patch \
|
||||
squid-2.5.STABLE7-LDAP_version_documentation.patch \
|
||||
squid-2.5.STABLE7_req_resp_header.patch \
|
||||
squid-2.5.STABLE7-helper_shutdown.patch \
|
||||
squid-2.5.STABLE7-blank_response.patch
|
||||
squid-2.5.STABLE7-blank_response.patch \
|
||||
squid-2.5.STABLE7-dothost.patch \
|
||||
squid-2.5.STABLE7-httpd_accel_vport.patch \
|
||||
squid-2.5.STABLE7-cachemgr_vmobjects.patch
|
||||
PATCH_DIST_STRIP= -p1
|
||||
|
||||
MAINTAINER= tmseck@netcologne.de
|
||||
|
@ -10,3 +10,9 @@ MD5 (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = bf5a91a22a4a982e2f5dd97
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = 11579
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-blank_response.patch) = b4d3265c55888f9b9ba3c5bc7d073822
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-blank_response.patch) = 723
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-dothost.patch) = 81034e9092a06d9aa1e9ede26632ae03
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-dothost.patch) = 2155
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 2366a84e29fad439c2a488b03f112779
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 843
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = fdde57025dbfb8caf9154e24b4e1bf3e
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = 6238
|
||||
|
@ -74,7 +74,7 @@
|
||||
|
||||
PORTNAME= squid
|
||||
PORTVERSION= 2.5.7
|
||||
PORTREVISION= 3
|
||||
PORTREVISION= 4
|
||||
CATEGORIES= www
|
||||
MASTER_SITES= \
|
||||
ftp://ftp.squid-cache.org/pub/%SUBDIR%/ \
|
||||
@ -91,7 +91,10 @@ PATCHFILES= squid-2.5.STABLE7-half_closed_POST.patch \
|
||||
squid-2.5.STABLE7-LDAP_version_documentation.patch \
|
||||
squid-2.5.STABLE7_req_resp_header.patch \
|
||||
squid-2.5.STABLE7-helper_shutdown.patch \
|
||||
squid-2.5.STABLE7-blank_response.patch
|
||||
squid-2.5.STABLE7-blank_response.patch \
|
||||
squid-2.5.STABLE7-dothost.patch \
|
||||
squid-2.5.STABLE7-httpd_accel_vport.patch \
|
||||
squid-2.5.STABLE7-cachemgr_vmobjects.patch
|
||||
PATCH_DIST_STRIP= -p1
|
||||
|
||||
MAINTAINER= tmseck@netcologne.de
|
||||
|
@ -10,3 +10,9 @@ MD5 (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = bf5a91a22a4a982e2f5dd97
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = 11579
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-blank_response.patch) = b4d3265c55888f9b9ba3c5bc7d073822
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-blank_response.patch) = 723
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-dothost.patch) = 81034e9092a06d9aa1e9ede26632ae03
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-dothost.patch) = 2155
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 2366a84e29fad439c2a488b03f112779
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 843
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = fdde57025dbfb8caf9154e24b4e1bf3e
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = 6238
|
||||
|
@ -74,7 +74,7 @@
|
||||
|
||||
PORTNAME= squid
|
||||
PORTVERSION= 2.5.7
|
||||
PORTREVISION= 3
|
||||
PORTREVISION= 4
|
||||
CATEGORIES= www
|
||||
MASTER_SITES= \
|
||||
ftp://ftp.squid-cache.org/pub/%SUBDIR%/ \
|
||||
@ -91,7 +91,10 @@ PATCHFILES= squid-2.5.STABLE7-half_closed_POST.patch \
|
||||
squid-2.5.STABLE7-LDAP_version_documentation.patch \
|
||||
squid-2.5.STABLE7_req_resp_header.patch \
|
||||
squid-2.5.STABLE7-helper_shutdown.patch \
|
||||
squid-2.5.STABLE7-blank_response.patch
|
||||
squid-2.5.STABLE7-blank_response.patch \
|
||||
squid-2.5.STABLE7-dothost.patch \
|
||||
squid-2.5.STABLE7-httpd_accel_vport.patch \
|
||||
squid-2.5.STABLE7-cachemgr_vmobjects.patch
|
||||
PATCH_DIST_STRIP= -p1
|
||||
|
||||
MAINTAINER= tmseck@netcologne.de
|
||||
|
@ -10,3 +10,9 @@ MD5 (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = bf5a91a22a4a982e2f5dd97
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = 11579
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-blank_response.patch) = b4d3265c55888f9b9ba3c5bc7d073822
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-blank_response.patch) = 723
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-dothost.patch) = 81034e9092a06d9aa1e9ede26632ae03
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-dothost.patch) = 2155
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 2366a84e29fad439c2a488b03f112779
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 843
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = fdde57025dbfb8caf9154e24b4e1bf3e
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = 6238
|
||||
|
@ -74,7 +74,7 @@
|
||||
|
||||
PORTNAME= squid
|
||||
PORTVERSION= 2.5.7
|
||||
PORTREVISION= 3
|
||||
PORTREVISION= 4
|
||||
CATEGORIES= www
|
||||
MASTER_SITES= \
|
||||
ftp://ftp.squid-cache.org/pub/%SUBDIR%/ \
|
||||
@ -91,7 +91,10 @@ PATCHFILES= squid-2.5.STABLE7-half_closed_POST.patch \
|
||||
squid-2.5.STABLE7-LDAP_version_documentation.patch \
|
||||
squid-2.5.STABLE7_req_resp_header.patch \
|
||||
squid-2.5.STABLE7-helper_shutdown.patch \
|
||||
squid-2.5.STABLE7-blank_response.patch
|
||||
squid-2.5.STABLE7-blank_response.patch \
|
||||
squid-2.5.STABLE7-dothost.patch \
|
||||
squid-2.5.STABLE7-httpd_accel_vport.patch \
|
||||
squid-2.5.STABLE7-cachemgr_vmobjects.patch
|
||||
PATCH_DIST_STRIP= -p1
|
||||
|
||||
MAINTAINER= tmseck@netcologne.de
|
||||
|
@ -10,3 +10,9 @@ MD5 (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = bf5a91a22a4a982e2f5dd97
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = 11579
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-blank_response.patch) = b4d3265c55888f9b9ba3c5bc7d073822
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-blank_response.patch) = 723
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-dothost.patch) = 81034e9092a06d9aa1e9ede26632ae03
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-dothost.patch) = 2155
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 2366a84e29fad439c2a488b03f112779
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 843
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = fdde57025dbfb8caf9154e24b4e1bf3e
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = 6238
|
||||
|
@ -74,7 +74,7 @@
|
||||
|
||||
PORTNAME= squid
|
||||
PORTVERSION= 2.5.7
|
||||
PORTREVISION= 3
|
||||
PORTREVISION= 4
|
||||
CATEGORIES= www
|
||||
MASTER_SITES= \
|
||||
ftp://ftp.squid-cache.org/pub/%SUBDIR%/ \
|
||||
@ -91,7 +91,10 @@ PATCHFILES= squid-2.5.STABLE7-half_closed_POST.patch \
|
||||
squid-2.5.STABLE7-LDAP_version_documentation.patch \
|
||||
squid-2.5.STABLE7_req_resp_header.patch \
|
||||
squid-2.5.STABLE7-helper_shutdown.patch \
|
||||
squid-2.5.STABLE7-blank_response.patch
|
||||
squid-2.5.STABLE7-blank_response.patch \
|
||||
squid-2.5.STABLE7-dothost.patch \
|
||||
squid-2.5.STABLE7-httpd_accel_vport.patch \
|
||||
squid-2.5.STABLE7-cachemgr_vmobjects.patch
|
||||
PATCH_DIST_STRIP= -p1
|
||||
|
||||
MAINTAINER= tmseck@netcologne.de
|
||||
|
@ -10,3 +10,9 @@ MD5 (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = bf5a91a22a4a982e2f5dd97
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-helper_shutdown.patch) = 11579
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-blank_response.patch) = b4d3265c55888f9b9ba3c5bc7d073822
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-blank_response.patch) = 723
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-dothost.patch) = 81034e9092a06d9aa1e9ede26632ae03
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-dothost.patch) = 2155
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 2366a84e29fad439c2a488b03f112779
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-httpd_accel_vport.patch) = 843
|
||||
MD5 (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = fdde57025dbfb8caf9154e24b4e1bf3e
|
||||
SIZE (squid2.5/squid-2.5.STABLE7-cachemgr_vmobjects.patch) = 6238
|
||||
|
Loading…
Reference in New Issue
Block a user