1
0
mirror of https://git.FreeBSD.org/ports.git synced 2024-10-20 20:09:11 +00:00
Commit Graph

15162 Commits

Author SHA1 Message Date
Xin LI
b5331c8392 Correct tomcat version represetations.
Pointed out by:	Tim Zingelman <tez netbsd.org>
2011-09-30 18:06:53 +00:00
Adam Weinberger
354f3d3bc8 Change the substitution delimiters to allow for CC to be redefined
with a path.

Approved by:	garga (maintainer)
2011-09-30 17:51:58 +00:00
Frederic Culot
e16500bfdc - Update to 1.25 [1]
- Add LICENSE (Artistic 1 & GPLv1)
- Reset PORTREVISION

Changes:	http://search.cpan.org/dist/Crypt-GCrypt/Changelog
PR:		ports/161125 [1]
Submitted by:	TAKAHASHI Kaoru <kaoru@kaisei.org> (maintainer)
2011-09-30 10:51:29 +00:00
Doug Barton
d3586a3ed6 Remove optional dependencies and comments related to the removal of
security/pgp6
2011-09-30 09:21:12 +00:00
Doug Barton
9766a65fd0 As previously advertised, delete ports that have
vulnerabilities listed in portaudit, and those
that depend on them - part 1

math/mupad
	Relies on xpm, vulnerable since 2004-09-15
net-p2p/torrentflux
	Vulnerable since 2006-10-07
net/tptest
	Vulnerable since 2009-12-17
security/pgp6
	Vulnerable since 2005-07-31
www/p5-RTx-RightsMatrix
	Only works with www/rt36, which is FORBIDDEN
www/p5-RTx-Shredder
	Only works with www/rt36, which is FORBIDDEN
www/p5-RTx-Statistics
	Only works with www/rt36, which is FORBIDDEN
www/plone
	Vulnerable since 2011-02-10
www/pyblosxom
	Vulnerable since 2009-02-11
www/rt36
	Vulnerable since 2009-12-09
www/zope-archetypes
	Depends on www/plone, which is FORBIDDEN
www/zope-calendaring
	Depends on www/plone, which is FORBIDDEN
www/zope-coreblog2
	Depends on www/plone, which is FORBIDDEN
www/zope-i18nlayer
	Depends on www/plone, which is FORBIDDEN
www/zope-plonelanguagetool
	Depends on www/plone, which is FORBIDDEN
www/zope-simpleblog
	Depends on www/plone, which is FORBIDDEN
2011-09-30 09:12:36 +00:00
Cheng-Lung Sung
dd1324ee69 - Update to 0.44 2011-09-30 00:36:14 +00:00
Eitan Adler
102bae9959 - deprecate security/p5-Digest-SHA256 and point people to Digest::SHA instead
Submitted by:	brd
Approved by:	bapt (mentor)
2011-09-28 20:51:33 +00:00
Beat Gaetzi
f4e12827fb - Document mozilla -- multiple vulnerabilities 2011-09-28 15:58:02 +00:00
Sunpoet Po-Chuan Hsieh
f46d491945 - Update to 1.41
Changes:	http://search.cpan.org/dist/Net-SSLeay/Changes
2011-09-28 14:06:51 +00:00
Cheng-Lung Sung
3c8aa5325d - update master-site and www in pkg-descr
PR:		ports/160697
Submitted by:	Ruslan Mahmatkhanov <cvs-src@yandex.ru>
Reported by:    Juergen Dankoweit <Juergen.Dankoweit at T-Online dot de> via ports@
2011-09-28 01:39:55 +00:00
Roman Bogorodskiy
37efc66b85 Update to 0.7. 2011-09-27 22:46:40 +00:00
Wen Heping
ff9f11b489 - Update to 2.6
PR:		ports/159786
Submitted by:	Jake Smith <jake@avenue22.net>
Approved by:	maintainer(timeout, > 40 days)
2011-09-27 06:56:19 +00:00
Ryan Steinmetz
f93892c8fa - Fix build when WITH_SSH is used
- No need to bump PORTREVISION

PR:		ports/161039
Submitted by:	Ruslan Mahmatkhanov <cvs-src@yandex.ru> (maintainer)
Reported by:	Jason Hellenthal <jhell@DataIX.net>
2011-09-26 21:26:45 +00:00
Jun Kuriyama
a601d24917 - Fix libcurl detection.
PR:		ports/160535
Submitted by	John Marshall <john.marshall@riverwillow.com.au>
2011-09-26 14:49:01 +00:00
Doug Barton
75fbecdf73 Mark FORBIDDEN the remaining ports that are vulnerable for more than
2 weeks according to portaudit (ranging from 23 days to 7 years).
The maintainers were notified by mail that this action would be taken
on 2011-09-03. (Ports for which maintainers responded have been/will be
dealt with separately.)

Also mark DEPRECATED ports that rely on the FORBIDDEN ports, and a few
ports that rely on those DEPRECATED ports.
2011-09-26 09:24:20 +00:00
Sofian Brabez
6ec4ad0ae6 - Add LICENSE
- Add support for tun devices [1]
- Update MASTER_SITES
- Make happy portlint
- Bump PORTEPOCH

PR:		ports/159078 [1]
Submitted by:	Lung-Pin Chang <changlp at cs.nctu.edu.tw>
Approved by:	jadawin@ (mentor)
2011-09-26 08:26:18 +00:00
Ryan Steinmetz
95eb0e54ac - Update to 7.0 [1]
- Mark MAKE_JOBS_SAFE

PR:		ports/160985
Submitted by:	Ruslan Mahmatkhanov <cvs-src@yandex.ru> (maintainer) [1]
2011-09-26 02:01:30 +00:00
Cy Schubert
ffbdd696f3 Remove MD5 sum. 2011-09-25 14:57:31 +00:00
Hajimu UMEMOTO
0f58d58a02 Update to 2.1.25. 2011-09-24 09:13:35 +00:00
TAKATSU Tomonari
291b1e2fc3 - Update to 0.0.8 2011-09-24 04:22:13 +00:00
Dmitry Marakasov
6f6fbe4bdf - Add LDFLAGS to CONFIGURE_ENV and MAKE_ENV (as it was done with LDFLAGS)
- Fix all ports that add {CPP,LD}FLAGS to *_ENV to modify flags instead

PR:		157936
Submitted by:	myself
Exp-runs by:	pav
Approved by:	pav
2011-09-23 22:26:39 +00:00
Olli Hauer
f0318868a4 - update to 5.61TEST1
Here is the (partial) CHANGELOG since 5.59BETA1:

Nmap 5.61TEST1 [2011-09-19]

o The changelog entries below for this test release are not yet
  finished or comprehensive.  We'll update them soon.

o [Ncat] Updated ca-bundle.crt (primarily to remove DigiNotar).

o Fixed compilation on OS X 10.7 Lion. Thanks to Patrik Karlsson and
  Babak Farroki for researching fixes.

o [NSE] Fixed SSL compressor names in ssl-enum-ciphers.nse, and
  removed redundant multiple listings of the NULL compressor.
  [Matt Selsky]

o [NSE] Added cipher strength ratings to ssl-enum-ciphers.nse.
  [Gabriel Lawrence]

o Added Common Platform Enumeration (CPE, http://cpe.mitre.org/)
  output for OS and service versions. These show up in normal output
  with the headings "OS CPE:" and "Service Info:":
    OS CPE: cpe:/o:linux:kernel:2.6.39
    Service Info: OS: Linux; CPE: cpe:/o:linux:kernel
  These also appear in XML output, which additionally has CPE entries
  for service versions. [David, Henri]

o [NSE] Added new default credential list for Oracle and modified the
  oracle-brute script to make use of it. [Patrik]

o [NSE] Added xmpp-info.nse as a replacement for xmpp.nse. This updated version
  brings new features and fixes. [Vasiliy Kulikov]

o Fixed RPC scan for 64-bit architectures by using fixed-size data
  types. [David]

o Relaxed the XML DTD to allow validation of files where the verbosity
  level changed during the scan. [Daniel Miller]

o Made a service confidence of 8 (used when tcpwrapped) and indeed any
  number between 0 and 10 be legal in XML output according to the DTD.
  [Daniel Miller]

o [NSE] Added three scripts that do host discovery on local IPv6
  subnets. Each of them uses a different multicast technique, meaning
  that even very large networks have host discovery done without
  needing to probe every address individually.
  + targets-multicast-ipv6-echo: Sends a multicast echo request, like
    broadcast-ping does for IPv4.
  + targets-multicast-ipv6-invalid-dst: Sends an invalid packet that
    can elicit an ICMPv6 Parameter Problem response.
  + targets-multicast-ipv6-slaac: Sends a phony router advertisement,
    which causes hosts to allocate a temporary address and then send a
    packet to discover if anyone else is using the address.
  [Weilin, David]

o [NSE] Added functions to packet.lua to make it easier to build IPv6
  packets. [Weilin]

o [NSE] Added new script http-vuln-cve2011-3192 which checks whether an instance
  of Apache is vulnerable to a DoS attack exploiting the byterange filter.
  [Duarte Silva].

o [NSE] Fixed authentication problems in the TNS library that would prevent
  authentication from working against Oracle 11.2.0.2.0 XE [Chris Woodbury]

o Removed some restrictions on probe matching that, for example,
  prevented a RST/ACK reply from being recognized in a NULL scan. This
  was found and fixed by Matthew Stickney and Joe McEachern.

o Rearranged some characters classes in service matches to avoid any
  that look like POSIX collating symbols ("[.xyz.]"). John Hutchison
  discovered this error caused by one of the match lines:
    InitMatch: illegal regexp: POSIX collating elements are not supported
  [Daniel Miller]

o [NSE] Added the address-info.nse script, which shows extra information about IP addresses.

o [NSE] Added scripts http-joomla-brute, http-wordpress-brute, http-wp-enum and
  http-awstatstotal-exec. [Paulino]

o [Zenmap] Fixed zenmap deleting ports based on newer scans which did
  not actually scan the port in question. Additionally ncat now only
  updates ports with new information if the new information is the same
  protocol. Not just the same port. [Colin Rice]

o [Ncat] Fixed ncat crashing with --ssl-verify -vvv on windows. [Colin Rice]

o [NSE] Added script http-waf-detect. This script tries to determine
  if an IDS/IPS/WAF is protecting a web server. [Paulino]

o [NSE] Added the bittorrent library and bittorrent-discovery script which
  enables us to discover peers and nodes for a particular torrent file or
  magnet link.

o [NSE] Added basic query support to the Oracle TNS library making it possible
  for scripts to query the database server using SQL. [Patrik]

o [Ncat] Added --append-output option, that when used along with -o and/or -x
  prevents clobbering(truncating) an existing file. [Shinnok]

o [NSE] Added script broadcast-listener that attempts to discover hosts by
  passively listening to the network. It does so by decoding ethernet and IP
  broadcast and multicast messages. [Patrik]

o Fixed a bug that would make Nmap segfault if it failed to open an interface
  using pcap. The bug details and patch are posted here:
  http://seclists.org/nmap-dev/2011/q3/365 [Patrik]

o Ncat SCTP mode supports connection brokering now(--sctp --broker). [Shinnok]

o Nmap now defers options parsing until it has read through all the command line
  arguments. You can now use options like -S with an IPv6 address before
  specifying -6 at the command line, which previously got you an error.
  [Shinnok]

o [NSE] Added the library xmpp.lua and the script xmpp-brute that performs
  brute force password auditing against XMPP (Jabber) servers. [Patrik]

o [NSE] Fixed a bug in the ssh2-enum-algos script that would prevent it from
  displaying any output unless run in debug mode. [Patrik]

o [NSE] Fixed the nsedebug print_hex() function so it does not print an
  empty line if there are no remaining characters, and improved its NSEDoc.
  [Chris Woodbury].

o [NSE] Added the scripts http-axis2-dir-traversal and
  http-litespeed-sourcecode-download that exploits a directory traversal and
  null byte poisoning vulnerabilities in Apache Axis2 and LiteSpeed Web Server
  respectively. [Paulino]

o [Ncat] Ncat now no longer blocks while an ssl handshake is taking place or
  waiting to complete. [Shinnok]

o [NSE] Added the script broadcast-dhcp-discover that sends a DHCP discover
  message to the broadcast address and collects and reports the network
  information received from the DHCP server. [Patrik]

o [NSE] Added the script smtp-brute that performs brute force password
  auditing against SMTP servers. [Patrik]

o [NSE] Updated SMTP library to support authentication using both plain-text
  and the SASL library. [Patrik]

o [NSE] Added the script imap-brute that performs brute force password
  auditing against IMAP servers. [Patrik]

o [NSE] Updated IMAP library to support authentication using both plain-text
  and the SASL library. [Patrik]

o [NSE] Added SASL library created by Djalal Harouni and Patrik Karlsson
  providing common code for "Simple Authentication and Security Layer" to
  services supporting it. The algorithms supported by the library are:
  PLAIN, CRAM-MD5, DIGEST-MD5 and NTLM. [Patrik Karlsson, Djalal Harouni]

o [NSE] Added scripts cvs-brute.nse, cvs-brute-repository.nse and the cvs
  library. The cvs-brute-repository script allows for guessing possible
  repository names needed in order to perform password guessing using the
  cvs-brute.nse script. [Patrik]

o [Zenmap] The Zenmap crash handler now instructs you to mail in crash
  information to nmap-dev. [Colin Rice]

o Added IPv6 Neighbor Discovery ping. This is the IPv6 analog to IPv4
  ARP scan. It is the default ping type for local IPv6 networks.
  [Weilin]

o [NSE] Added smtp-vuln-cve2011-1764 script, which checks if the Exim
  SMTP server is vulnerable to the DKIM Format String vulnerability
  (CVE-2011-1764). [Djalal]

o Added the broadcast-ping script which sends icmp packets to broadcast
  addresses on the selected network interface, or all ethernet interfaces if
  none is selected. It has the option to add the discovered hosts as targets.

o [NSE] Applied patch from Chris Woodbury that adds the following additional
  information to the output of smb-os-discovery:
  + Forest name
  + FQDN
  + NetBIOS computer name
  + NetBIOS domain name

o [Ncat] Ncat now supports IPV6 addresses by default without the -6 flag.
  Additionally ncat listens on both :: and localhost when passed
  -l, or any other listening mode unless a specific listening address is
  supplied.

o [NSE] Split script db2-discover into two scripts, adding a new
  broadcast-db2-discover script. This script attempts to discover DB2
  database servers through broadcast requests. [Patrik Karlsson]

o Fixed broken XML output in the case of timed-out hosts; the
  enclosing host element was missing. The fix was suggested by Rémi
  Mollon.

o [NSE] Added ftp-vuln-cve2010-4221 script, which checks if the ProFTPD
  server is vulnerable to the Telnet IAC stack overflow vulnerability
  (CVE-2010-4221). [Djalal]

o [NSE] Added ftp-vsftpd-backdoor, which detects a backdoor that was introduced
  into vsftpd-2.3.4 source code distributions. [Daniel Miller]

o [NSE] ldap-brute.nse - Multiple changes:
  + Added support for 2008 R2 functional level Active Directory instances
    to ldap-brute.
  + Added detection for valid credentials where the target account was
    expired or limited by time or login host constraints.
  + Added support for specifying a UPN suffix to be appended to usernames
    when brute forcing Microsoft Active Directory accounts.
  + Added support for saving discovered credentials to a CSV file.
  + Now reports valid credentials as they are discovered when the script
    is run with -vv or higher.
	[Tom Sellers]

o [NSE] ldap-search.nse - Added support for saving search results to
  CSV.  This is done by using the ldap.savesearch script argument to
  specify an output filename prefix.  [Tom Sellers]

o [NSE] Updated smb-brute to add detection for valid credentials where the
  target account was expired or limited by time or login host constraints.
  [Tom Sellers]

o [NSE] Updated account status text in brute force password discovery
  scripts in an effort to make the reporting more consistent across
  all scripts.  This will have an impact on any code that parses these
  values.  [Tom Sellers]
2011-09-23 20:29:18 +00:00
Xin LI
2608caaa93 Properly mark version range for horde-imp. 2011-09-23 20:02:19 +00:00
Brendan Fabeny
37da0d8f4d add an option to use GNU make for those who wish
to perform parallel builds[1]; add a few mirrors to
tor-devel

Requested by:	h.h. [1]
2011-09-23 19:58:35 +00:00
Eitan Adler
bf644bdfc6 - update to version 1.0
- remove stale mastersite
- bump USE_PYTHON to 2.5+
- use databases/py-sqlite3 instead of databases/py-pysqlite2x
- set WITHOUT_PSYCO if python 2.6+ since py-psyco doesn't work with it
- switch from custom do-build and do-install targets to USE_PYDISTUTILS
- add INSTALLS_ICONS, remove INSTALLS_EGGINFO (pydistutils will handle it)
- update WWW
- update pkg-plist
- patch out documentation build

PR:		ports/160072
Submitted by:	Ruslan Mahmatkhanov <cvs-src@yandex.ru>
Approved by:	maintainer timeout (30 days)
Approved by:	bapt (mentor)
2011-09-23 18:51:40 +00:00
Sunpoet Po-Chuan Hsieh
71040def1b - Update to 1.40
Changes:	http://search.cpan.org/dist/Net-SSLeay/Changes
2011-09-23 18:50:19 +00:00
Boris Samorodov
f7659919a6 Add linux-f10-gnutls 2.4.2, GNU Transport Layer Security library.
Changes over original shar file at the PR:
. change the maintainer to emulation@ (since it's an infrastructure linux port);
. use the latest version of the package (2.4.2-5.fc10);
. fix pkg-plist.

PR:		ports/159007
Submitted by:	Stas Timokhin <devel@stasyan.com>
2011-09-23 18:14:05 +00:00
Boris Samorodov
5a3460cbae Add linux-f10-libgpg-error 1.6, common error values for all GnuPG
components.

Changes over original shar file at the PR:
. change the maintainer to emulation@ (since it's an infrastructure linux port);
. add BRANDELF_FILES;
. fix pkg-plist.

PR:		ports/159007
Submitted by:	Stas Timokhin <devel@stasyan.com>
2011-09-23 17:38:32 +00:00
Boris Samorodov
218d121ee8 Add linux-f10-libgcrypt 1.4.4, general purpose crypto library based on
code used in GnuPG.

Changes over original shar file at the PR:
. change the maintainer to emulation@ (since it's an infrastructure linux port);
. use the latest version of the package (1.4.4-1.fc10);
. use PLIST_FILES, PLIST_DIRSTRY and post-install target instead of pkg-plist.

Notes: the port uses ${PREFIX}/etc/gcrypt directory for configuration files
(i.e. /compat/linux/etc/gcrypt). We usually try to use FreeBSD directories.
But there is no [/usr/local/]/etc/gcrypt directory.
I'm open to ideas on what to do here.

PR:		ports/159007
Submitted by:	Stas Timokhin <devel@stasyan.com>
2011-09-23 17:14:07 +00:00
Boris Samorodov
a4043f9cf1 Add linux-f10-libtasn1 1.5, ASN.1 structure parser library.
Changes over original shar file at the PR:
 . change the maintainer to emulation@ (since it's an infrastructure linux port);
 . remove commented out lines;
 . use PLIST_FILES, DOCSDIR_REL and PORTDOCS instead of pkg-plist.

PR:		ports/159007
Submitted by:	Stas Timokhin <devel@stasyan.com>
2011-09-23 16:38:21 +00:00
Baptiste Daroussin
6bbef7efb7 2011-09-23 devel/libnotifymm: Doesn't build and isn't used by anything.
2011-09-11 games/abuse: BROKEN after games/abuse_sdl update
2011-09-01 security/donkey: No more public distfiles
2011-09-01 graphics/moth: No more public distfiles
2011-09-01 net-mgmt/aguri: No more public distfiles
2011-09-01 games/senso: No more public distfiles
2011-09-01 net-im/jabber-users-agent: No more public distfiles
2011-09-01 games/cchess: No more public distfiles
2011-09-23 13:25:21 +00:00
Alex Dupre
995ee45760 Update to 1.2 release. 2011-09-23 09:35:57 +00:00
TAKATSU Tomonari
dca9984430 - Update to 0.5.1 2011-09-23 01:20:44 +00:00
Eitan Adler
675469aa39 - remove dep on databases/py-pysqlite23
- patch program to not use old pysqlite
- fix whitespace issue in pkg-descr
- bump portrevision

PR:		ports/160288
Submitted by:	Ruslan Mahmatkhanov <cvs-src@yandex.ru>
Approved by:	maintainer timeout (23 days)
Approved by:	sahil (mentor)
2011-09-22 23:00:25 +00:00
Florian Smeets
cd017dcb5b update to 4.5.3
PR:		ports/160401
Submitted by:	Riaan Kruger <riaank@gmail.com> maintainer
2011-09-22 21:37:55 +00:00
Juergen Lock
2a400db18a - Update linux-f10-flashplugin to 10.3r183.10 . [1]
- Make gnome desktopfileutils dependency optional. [2]

PR:		ports/160894 [1]
Submitted by:   Garrett Cooper <yanegomi@gmail.com> [1]
Suggested by:	Peter Jeremy <peterjeremy@acm.org> [2]
Security:	http://www.freebsd.org/ports/portaudit/53e531a7-e559-11e0-b481-001b2134ef46.html
2011-09-22 20:47:10 +00:00
Martin Matuska
83acf446e6 Update to 1.2.1 2011-09-22 16:30:58 +00:00
Baptiste Daroussin
8a4b511e44 2012-09-20 www/ruby-http-access: Deprecated upstream, please use www/rubygem-httpclient
2011-09-01 sysutils/wots: No more public distfiles
2011-09-15 sysutils/gpart: Upstream disappeared
2011-09-01 sysutils/plod: No more public distfiles
2011-09-01 sysutils/checkservice: BROKEN for more than 6 month
2011-09-01 security/nsm-console: BROKEN for more than 6 month
2011-09-01 security/fressh: No more public distfiles
2011-09-01 palm/pose: No more public distfiles
2011-09-01 palm/isilo: No more public distfiles
2011-09-01 news/ija: BROKEN for more than 6 month
2011-09-01 news/PicMonger: Abandonware
2011-09-22 06:26:46 +00:00
Alex Dupre
f0e054c13b Update to 1.4.5 release.
PR:		ports/160809
Submitted by:	Pedro Giffuni <giffunip@tutopia.com>
2011-09-21 13:28:40 +00:00
Ryan Steinmetz
91c1b2c613 Improve accuracy of krb5 vulnerability entries for upcoming port addition of krb5-17.
(one entry was missed from the previous commit)
2011-09-21 11:35:28 +00:00
Martin Matuska
9f43f675be Update to 1.0.4 2011-09-21 08:48:48 +00:00
Martin Matuska
2499060251 Update to 1.3.0 2011-09-21 08:47:50 +00:00
Erwin Lansing
139cd08de7 Mark BROKEN: leaves files behind on deinstallation 2011-09-21 07:04:26 +00:00
Thomas Abthorpe
20256e352d - Reassign to the heap 2011-09-21 02:46:17 +00:00
Ryan Steinmetz
304893d490 Improve accuracy of krb5 vulnerability entries for upcoming port addition
of krb5-17.
2011-09-21 02:21:25 +00:00
Rene Ladan
d1fd43fd5f Document vulnerabilities in Chromium 13.0.x.y
Obtained from:	http://googlechromereleases.blogspot.com/
Security:	CVE-2011-[2834-2838, 2840-2844, 2846-2862, 2864, 2874-2875,
		          3234]
2011-09-20 18:24:20 +00:00
Brendan Fabeny
0e2f75346b add a few mirrors and mark MAKE_JOBS_UNSAFE [1]
PR:		160814 [1]
Submitted by:	amdmi3 [1]
2011-09-20 01:33:00 +00:00
Pawel Pekala
5f0c7d7294 - Update COMMENT and package description
- Add LICENSE

PR:		ports/160813
Submitted by:	Pedro Giffuni <giffunip@tutopia.com>
Approved by:	maintainer, miwi, wen (mentors implicit)
2011-09-19 21:35:07 +00:00
Ganael LAPLANCHE
e2fa1bc9ef Update to 2.2.3 2011-09-19 12:30:10 +00:00
Sofian Brabez
58c1bd2cfb - Fix build on 7.x
Reported by:	pav@
Approved by:	miwi@ (mentor)
2011-09-19 09:15:08 +00:00