1
0
mirror of https://git.FreeBSD.org/ports.git synced 2024-12-01 01:17:02 +00:00
Commit Graph

28061 Commits

Author SHA1 Message Date
Mateusz Piotrowski
cfc95c2866 New port: security/kbfsd: Service daemon for the Keybase filesystem (KBFS)
Its aim is to ease the process of using KBFS on FreeBSD. It takes care of
the configuration the Keybase user would have to do manually otherwise.

Reviewed by:	mat
Approved by:	mat (mentor)
Differential Revision:	https://reviews.freebsd.org/D16821
2018-08-22 13:42:36 +00:00
Sunpoet Po-Chuan Hsieh
59c33ba7bd Update to 4.4.2
Changes:	https://github.com/doorkeeper-gem/doorkeeper/releases
2018-08-21 18:24:55 +00:00
Sunpoet Po-Chuan Hsieh
ac39771e57 Update to 4.4.2
Changes:	https://github.com/doorkeeper-gem/doorkeeper/releases
2018-08-21 18:24:50 +00:00
Sunpoet Po-Chuan Hsieh
07109c993b Update to 4.4.2
Changes:	https://github.com/doorkeeper-gem/doorkeeper/releases
2018-08-21 18:24:45 +00:00
Sunpoet Po-Chuan Hsieh
6b82609cf4 Update to 0.9.0
Changes:	https://github.com/google/signet/releases
2018-08-21 18:24:24 +00:00
Sunpoet Po-Chuan Hsieh
d910261572 Update to 0.6.5
Changes:	https://github.com/google/google-auth-library-ruby/blob/master/CHANGELOG.md
		https://github.com/google/google-auth-library-ruby/commits/master
2018-08-21 18:24:19 +00:00
Dave Cottlehuber
7eca37dc8f security/vuxml: add CVE-2018-11769 for databases/couchdb versions < 2.2.0
Reported by:	Apache CouchDB PMC
Approved by:	jrm
Security:	CVE-2018-11769
Security:	https://lists.apache.org/thread.html/1052ad7a1b32b9756df4f7860f5cb5a96b739f444117325a19a4bf75@%3Cdev.couchdb.apache.org%3E
Differential Revision:	https://reviews.freebsd.org/D16820
2018-08-21 17:53:08 +00:00
Tobias Kortkamp
3c6c4b3bee security/keyprint: Add OPIE support to fix functionality
Since the opieprint port has been removed, and since the S/Key
utilities are no longer included with FreeBSD, it makes sense to
patch this port to make it functional once again - and there is
nothing gained by leaving it unusable.

PR:		32936, 71089, 219177
Submitted by:	crahman@gmail.com
2018-08-21 16:25:42 +00:00
Rene Ladan
7526a10e45 Remove expired ports:
2018-08-20 net/openmq: Broken for more than 5 months
2018-08-20 net/coda6_server: Broken for more than 5 months
2018-08-20 net/ceph-devel: Broken for more than 5 months
2018-08-20 java/jgrapht: Broken for more than 5 months
2018-08-20 mail/mutt14: mutt 1.4.x has been out of support for 10+ years use mail/mutt
2018-08-20 www/pydio: Broken for more than 5 months
2018-08-20 security/fastd-devel: Broken for more than 5 months
2018-08-20 security/fastd: Broken for more than 5 months
2018-08-20 devel/bhyve-vm-goagent: Broken for more than 5 months
2018-08-20 devel/cherivis-devel: Depends on broken and expiring cheritrace-devel
2018-08-20 devel/cheritrace-devel: Broken for more than 5 months
2018-08-20 devel/javolution: Broken for more than 5 months
2018-08-20 devel/bisoncpp: Depends on broken and expiring libbobcat
2018-08-20 databases/php5-pdo_cassandra: Broken for more than 5 months
2018-08-20 games/crafty-open-large: Broken for more than 5 months
2018-08-20 games/crafty-open-enormous: Broken for more than 5 months
2018-08-20 games/crafty-open-medium: Broken for more than 5 months
2018-08-20 math/jakarta-commons-math: Broken for more than 5 months
2018-08-20 math/hfst: Broken for more than 5 months
2018-08-20 math/octave-forge-communications: Broken for more than 5 months
2018-08-20 lang/v8-devel: Broken for more than 5 months
2018-08-20 sysutils/rubygem-fluentd010: Broken for more than 5 months
2018-08-21 12:06:54 +00:00
Kurt Jaeger
36fda79715 security/pam_ssh_agent_auth: perl is only needed during build
PR:		229536
Submitted by:	Gyoergy Teubel <tgyurci@gmail.com>
2018-08-20 18:56:19 +00:00
Steve Wills
6e3ac49171 security/py-kerberos: Update to 1.3.0
PR:		230385
Submitted by:	John W. O'Brien <john@saltant.com>
Approved by:	dvl (maintainer)
2018-08-20 18:34:53 +00:00
Baptiste Daroussin
f2d2d5b452 Update to 0.6 2018-08-20 17:20:04 +00:00
Renato Botelho
51a00331b2 security/sudo: Update to 1.8.24
PR:		230739
Submitted by:	Yasuhiro KIMURA <yasu@utahime.org>
Sponsored by:	Rubicon Communications, LLC (Netgate)
2018-08-20 14:23:52 +00:00
Mathieu Arnold
bc4b55e923 For ports using hash as distribution files, add DIST_SUBDIR. 2018-08-20 10:20:26 +00:00
Danilo Egea Gondolfo
92e240aef2 - Use GH_SUBDIR instead of post-patch 2018-08-20 03:36:16 +00:00
Sunpoet Po-Chuan Hsieh
f85c60e14c Update to 3.6.6
Changes:	https://www.pycryptodome.org/en/latest/src/changelog.html
		https://github.com/Legrandin/pycryptodome/blob/master/Changelog.rst
PR:		230754
Submitted by:	John W. O'Brien <john@saltant.com> (maintainer)
2018-08-19 20:32:47 +00:00
Sunpoet Po-Chuan Hsieh
1962f6e7d5 Update MAINTAINER: use @FreeBSD.org 2018-08-18 20:42:46 +00:00
Babak Farrokhi
38cf161faf security/n2n: Cleanup Makefile
Reported by:	mat@
2018-08-18 13:42:41 +00:00
Babak Farrokhi
eba58e717b New Port: security/n2n: Layer Two Peer-to-peer VPN 2018-08-18 09:06:53 +00:00
Steve Wills
071682e2de security/botan2: update to 2.7.0
While here, bump PORTREVISION on dependent ports

PR:		230666
Submitted by:	Ralf van der Enden <tremere@cainites.net> (maintainer
MFH:		2018Q3
Security:	7762d7ad-2e38-41d2-9785-c51f653ba8bd
2018-08-17 21:07:58 +00:00
Steve Wills
11658a1bcb Document issue in security/botan2
PR:		230666
2018-08-17 21:07:32 +00:00
Bradley T. Hughes
9da17ccebc security/p5-openxpki,security/openxpki-i18n: Update 2.0.2 -> 2.0.3
PR:		230232
Submitted by:	svysh.fbsd@gmail.com (maintainer)
Sponsored by:	Miles AS
2018-08-17 19:40:09 +00:00
Antoine Brodin
61647c3884 Update yara and py-yara to 3.8.1 2018-08-17 13:07:56 +00:00
Gavin Atkinson
ac60275dfa Switch security/sslscan to the official way for handling "GitHub release
plus upstream patches", as documented in the Porter's Handbook, ex 5.14.

Reported by:	mat
Reviewed by:	mat
Approved by:	mat
2018-08-17 12:32:15 +00:00
Cy Schubert
cbab7fa2f5 Pet portlint. 2018-08-17 02:18:41 +00:00
Cy Schubert
155e2b46bf Switch to grouping of patches per site as suggested by mat@ in D16718.
Reported by:	mat@
2018-08-17 02:12:01 +00:00
Rene Ladan
8eb6e71856 security/amavisd-new: drop non-default and expired dependency on archivers/freeze 2018-08-16 20:30:03 +00:00
Rene Ladan
b1b87a72c8 security/maia: drop non-default and expired dependency on archivers/freeze 2018-08-16 20:29:28 +00:00
Rene Ladan
048dda0400 Remove expired ports:
2018-08-16 net/traceroute: Upstream gone
2018-08-15 net/e169-stats: unknown license
2018-08-15 net/l4ip: unknown license
2018-08-15 net/dhcprelay: unknown license
2018-08-15 emulators/m2000: unknown license
2018-08-15 textproc/ant-xinclude-task: unknown license
2018-08-15 textproc/bomstrip: unknown license
2018-08-15 x11-fonts/ecofont: unknown license
2018-08-15 mail/roundcube-groupvice: unknown license
2018-08-15 security/pft: unknown license
2018-08-15 devel/kickassembler: unknown license
2018-08-15 devel/gdbmods: unknown license
2018-08-15 devel/as31: unknown license
2018-08-15 databases/dbf2mysql: unknown license
2018-08-15 misc/xpns: unknown license
2018-08-15 misc/amfm: unknown license
2018-08-15 games/smashbattle: unknown license
2018-08-15 games/syobon: unknown license
2018-08-15 games/optimax: unknown license
2018-08-15 games/xgospel: unknown license
2018-08-15 biology/blat: unknown license
2018-08-15 x11-clocks/swisswatch: unknown license
2018-08-15 palm/ppmtoTbmp: unknown license
2018-08-15 dns/ghtool: unknown license
2018-08-15 x11-themes/beastie: unknown license
2018-08-15 converters/uudx: unknown license
2018-08-15 sysutils/areca-cli: unknown license
2018-08-16 20:28:32 +00:00
Tijl Coosemans
ec6eba48f5 Add patch to replace c_rehash. The base system OpenSSL does not have this
because it's a Perl script.
2018-08-16 09:52:31 +00:00
Gavin Atkinson
f82246e223 Upgrade security/sslscan to just past the 1.11.11 release, pulling in
a couple of bug fixes from upstream that have not yet made it into a
release.

Approved by:	zeising
2018-08-15 21:26:19 +00:00
Li-Wen Hsu
721fbc044e Document Jenkins Security Advisory 2018-08-15
Sponsored by:	The FreeBSD Foundation
2018-08-15 21:01:23 +00:00
Kirill Ponomarev
19cfe377f1 Update to 1.0.0 2018-08-15 16:27:42 +00:00
Renato Botelho
f14f6c8bb9 security/openvpn-admin:
- Use a source tarball already patched and remove patch from files/
- Add new available Russian translation
- Set NO_ARCH
- Transfer maintainership to submitter

PR:		230060
Submitted by:	Vinícius Zavam <egypcio@gmail.com>
Sponsored by:	Rubicon Communications, LLC (Netgate)
2018-08-15 14:16:18 +00:00
Florian Smeets
43ff18a3b8 Don't warn when using ramdisk, according to the submitter who discussed it
with kib, the warning is no longer appropriate.

Reported by:	Willem Jan Withagen <wjw@digiware.nl>
2018-08-15 13:30:40 +00:00
Cy Schubert
bdf27728c9 WPA: Ignore unauthenticated encrypted EAPOL-Key data
Ignore unauthenticated encrypted EAPOL-Key data in supplicant
processing. When using WPA2, these are frames that have the Encrypted
flag set, but not the MIC flag.

When using WPA2, EAPOL-Key frames that had the Encrypted flag set but
not the MIC flag, had their data field decrypted without first verifying
the MIC. In case the data field was encrypted using RC4 (i.e., when
negotiating TKIP as the pairwise cipher), this meant that
unauthenticated but decrypted data would then be processed. An adversary
could abuse this as a decryption oracle to recover sensitive information
in the data field of EAPOL-Key messages (e.g., the group key).
(CVE-2018-14526)

Signed-off-by: Mathy Vanhoef <Mathy.Vanhoef@cs.kuleuven.be>

Security:	CVE-2018-14526
Security:	VuXML: 6bedc863-9fbe-11e8-945f-206a8a720317
2018-08-14 20:21:58 +00:00
Cy Schubert
105a748c05 Document WPA unauthenticated encrypted EAPOL-Key data vunlerability.
Security:	CVE-2018-14526
2018-08-14 20:21:52 +00:00
Jung-uk Kim
d83895f028 Document the latest Flash Player vulnerabilities.
https://helpx.adobe.com/security/products/flash-player/apsb18-25.html
2018-08-14 19:08:38 +00:00
Steve Wills
5cdd47a3df security/snuffleupagus: update to 0.3.0
PR:		230346
Submitted by:	Franco Fichtner <franco@opnsense.org> (maintainer)
2018-08-14 16:51:42 +00:00
Sunpoet Po-Chuan Hsieh
e85b5873e0 Fix gemspec for rubygem-hashie 3.6.0 update
- Bump PORTREVISION for package change
2018-08-14 16:41:19 +00:00
Jochen Neumeister
1b85ef7259 Fix PORTREVISION 2018-08-14 15:12:32 +00:00
Bernard Spil
47ac20cf7c security/openssl: Add engines patches to distinfo
- Undo clobbering distinfo

Reported by:	mat
2018-08-14 15:04:04 +00:00
Bernard Spil
b8837b0fe6 security/openssl-devel: Update to 1.1.0i
- Includes vulnerability fixes that were already
   added to the port as patches
2018-08-14 14:25:18 +00:00
Bernard Spil
de269f48f9 security/openssl: Update to 1.0.2p
- Includes vulnerability fixes that were already
   added to the port as patches
2018-08-14 14:12:53 +00:00
Timur I. Bakeyev
7c00a96f8a Add an entry about multiple Samba vulnerabilities:
* CVE-2018-1139  (Weak authentication protocol allowed.)
* CVE-2018-1140  (Denial of Service Attack on DNS and LDAP server.)
* CVE-2018-10858 (Insufficient input validation on client directory
  listing in libsmbclient.)
* CVE-2018-10918 (Denial of Service Attack on AD DC DRSUAPI server.)
* CVE-2018-10919 (Confidential attribute disclosure from the AD LDAP
  server.)

Security:	CVE-2018-1139
		CVE-2018-1140
		CVE-2018-10858
		CVE-2018-10918
		CVE-2018-10919
Sponsored by:	iXsystems Inc.
2018-08-14 13:37:34 +00:00
Tijl Coosemans
bc29727131 Add missing dependencies. 2018-08-14 09:21:13 +00:00
Kirill Ponomarev
10726afe78 Bump PORTREVISION on *-sbcl ports after lang/sbcl upgrade. 2018-08-14 07:53:09 +00:00
Yuri Victorovich
f52973261a security/vanguards-tor: Update 0.1.1 -> 0.2.1
Reported by:	upstream notification
2018-08-14 01:16:31 +00:00
Yuri Victorovich
9ae63ed135 security/theonionbox: Add sqlite3 dependency; Backport fixes that the upstream made.
Port changes:
* sqlite3 dependency is need as a workaround for bug#230613
* Backport the fix of the problem of python3 compatibility
* Backport the fix of python2 build error
* Backport the fix of windows newline in the shell script
* Backport the Onionoo protocol version mismatch fix

PR:		230599
Submitted by:	Carsten Larsen <cs@innolan.net> (sqlite3 part)
2018-08-14 01:09:33 +00:00
Brooks Davis
9b0734ea61 Update clang/llvm version to 6.0 (used on FreeBSD 10)
PR:		230486
Approved by:	Chie Taguchi (taguchi.ch@gmail.com> (maintainer)
Sponsored by:	DARPA, AFRL
2018-08-13 21:31:22 +00:00