1
0
mirror of https://git.FreeBSD.org/ports.git synced 2025-02-06 11:41:52 +00:00

20569 Commits

Author SHA1 Message Date
Li-Wen Hsu
8ad3597657 - Fix description of 9c7b6c20-a324-11e4-879c-00e0814cab4e 2015-01-24 17:58:07 +00:00
Antoine Brodin
364abe76fd Switch some dependencies from a directory name or a file generated by pkg-install
to a package name,  as the former can't be attributed to a package
2015-01-24 15:07:39 +00:00
Alexey Dokuchaev
62b818217f Sanitize port description (obtained upstream) and kill EOL whitespace. 2015-01-24 10:25:21 +00:00
Koop Mast
268c173ab8 Install vala "bindings"
Add LICENSE
Update WWW
2015-01-24 10:09:10 +00:00
Mark Felder
ff76b3eb0c Patch parser to fix matching for Cyrus IMAP login attempts which are not
plaintext.

PR:		196943
Submitted by:	jakob.alvermark@bsdlabs.com
2015-01-23 20:15:34 +00:00
Tijl Coosemans
86c6fc4c0d - Update devel/automake to 1.15
- Update devel/gettext to 0.19.4
- Update devel/libtool and devel/libltdl to 2.4.5
- This version of libtool has been fixed to pass -fstack-protector to the
  compiler during linking.  Add the same fix to USES=libtool.  This should
  improve SSP support on FreeBSD/i386 8 and 9.
- databases/libmemcached, security/sssd: patch configure.ac so
  AC_CONFIG_AUX_DIR appears earlier.
  For databases/libmemcached changing configure.ac causes manpages to be
  regenerated which requires extra dependencies so patch a makefile to
  prevent that.
- devel/xfce4-dev-tools: only depend on recent versions of autoconf and
  automake

PR:		196938
Exp-run by:	antoine
Approved by:	portmgr (antoine)
2015-01-23 18:54:01 +00:00
Li-Wen Hsu
f3324ced2c Document Django 2014-01-13 vulnerabilty 2015-01-23 17:47:00 +00:00
Ryan Steinmetz
d67d09e2ba - Update to 5.10 2015-01-22 23:33:14 +00:00
Mikhail Teterin
af56c7fc52 Add a note about the just-fixed vulnerability of applications using net/libutp.
PR:		196351
Differential Revision:	D1575
Submitted by:	Jan Beich
Approved by:	bapt
2015-01-22 17:43:47 +00:00
Jase Thew
4a3017391b security/polarssl13:
- Add upstream patch to address crafted certificates vulnerability
- Add USES cpe

MFH:		2015Q1
Security:	CVE-2015-1182
Security:	a5856eba-a015-11e4-a680-1c6f65c3c4ff
Approved by:	maintainer (chris@bsdjunk.com)
2015-01-22 17:28:10 +00:00
Johannes Jost Meixner
128d64ac67 security/linux-c6-openssl: upgrade to 1.0.1e_3
- Upgrade to 1.0.1e_3
- Fixes CVEs from 2015-01-08.

Differential Revision:	https://reviews.freebsd.org/D1597
Security:	4e536c14-9791-11e4-977d-d050992ecde8
Approved by:	swills (mentor)
2015-01-22 17:10:25 +00:00
Johannes Jost Meixner
2925c75bbb Amend linux-c6-openssl version in OpenSSL entry from 2015-01-08.
Approved by:	swills (mentor)
2015-01-22 17:09:22 +00:00
Vsevolod Stakhov
a91fe34f1e Add CVE-2015-0206 description for LibreSSL port. 2015-01-22 17:02:40 +00:00
Vsevolod Stakhov
469e0c88d8 - Update to 2.1.3
PR:		197005
Submitted by:	Bernard Spil <spil.oss at gmail.com>
2015-01-22 16:48:37 +00:00
Tijl Coosemans
96f7bce425 Document Adobe Flash Player vulnerabilities 2015-01-22 12:54:13 +00:00
David Thiel
cd4ac85168 Update to 1.31.
PR:		196529
Submitted by: lightside
2015-01-22 00:42:35 +00:00
Rene Ladan
3872f5cc79 Document new vulnerabilities in www/chromium < 40.0.2214.91
Also affects FFmpeg, ICU, DOM but the links on the webpage all result in a 403.

Obtained from:	http://googlechromereleases.blogspot.nl
2015-01-21 22:09:38 +00:00
Frederic Culot
39557796a8 - Update to 1.12
- Shorten COMMENT

Changes:	http://search.cpan.org/dist/Data-Password/Changes
2015-01-21 15:03:22 +00:00
Anton Berezin
b874fcc48e Update to 1.73. 2015-01-21 12:57:27 +00:00
Max Brazhnikov
4e6233d1c5 security/pinentry:
- Make it apparent that Qt 4 frontend is broken on 10.x and greater

PR:		196681
Submitted by:	Gerard Seibert
2015-01-21 10:38:38 +00:00
John Marino
3fcf85f9b8 security/p5-Mcrypt: strip Mcrypt.so upon installation
PR:		196416
Submitted by:	maintainer (Tatsuki Makino)
2015-01-20 20:57:46 +00:00
Jase Thew
f57e5d76bd security/polarssl:
- Add upstream patch to address crafted certificates vulnerability
- Add USES cpe

MFH:		2015Q1
Security:	CVE-2015-1182
Security:	a5856eba-a015-11e4-a680-1c6f65c3c4ff
2015-01-19 21:19:31 +00:00
Jase Thew
d0fe2da51c security/vuxml:
- Document security/polarssl and security/polarssl13 crafted certificates
  vulnerability (CVE-2015-1182)
2015-01-19 20:52:53 +00:00
Matthias Andree
a202dc8d67 Grab maintainership and unmark BROKEN.
Bump PORTREVISION for the benefit of those that used TRYBROKEN=*.

PR: 190497
2015-01-19 20:37:32 +00:00
Matthias Andree
9d0ba19501 Fix crash when configuration file is not EOL-terminated. 2015-01-19 20:36:42 +00:00
Matthias Andree
0dff9e6c89 Fix warnings due to missing #import. 2015-01-19 20:36:21 +00:00
Matthias Andree
64325337c3 work around missing deps in src/Makefile[.in] 2015-01-19 16:45:47 +00:00
Sunpoet Po-Chuan Hsieh
f45b356a16 - Fix *_DEPENDS: parent is already in all supported Perl releases
- Bump PORTREVISION for dependency change
- While I'm here, move LICENSE upward

With hat:	perl
2015-01-19 13:06:16 +00:00
Koop Mast
bb89f80c35 Update ImageMagick to 6.9.0.4.
- Normalize the ImageMagick library name so it stays the same regardless of
  what the 16-bit and HDRI option are set to [1]. Teach cmake to look for
  the new name. Bump ports that link to the libraries due to this.
- As a result do away with the "HALFSUPPORTED" option block, and list
  16-bit and HDRI with the other options.
- ImageMagick ships a basic SVG plugin when not using librsvg2 for SVG
  support. This basic SVG plugin needs libxml2 to work [2]. Make libxml2
  a mandatory dependency (instead of only when the SVG option was selected).
- Don't touch .keep files in the modules directory, there files there so
  it useless.

PR:		194949 [1]
PR:		195227 [2]
Requested by:	many [1]
Submitted by:	software-freebsd@interfasys.ch [2]
2015-01-18 21:12:42 +00:00
Thomas Zander
ab68814eff Update to upstream version 1.11b
PR:		196765
Submitted by:	fk@fabiankeil.de (maintainer)
2015-01-18 19:27:00 +00:00
Kurt Jaeger
68aae0b0e7 New port: security/p5-Digest-GOST
Digest::GOST provides an interface to the GOST R 34.11-94
message digest algorithm, also defined in RFC 5831.

WWW: http://search.cpan.org/dist/Digest-GOST/
2015-01-18 11:20:54 +00:00
Sunpoet Po-Chuan Hsieh
3580345a42 - Update to 1.67
- Sort PLIST

Changes:	http://search.cpan.org/dist/Net-SSLeay/Changes
2015-01-18 10:34:43 +00:00
Kubilay Kocak
43650faa38 security/py-cryptography: Update to 0.7.2, Fix LibreSSL
- Update to 0.7.2
- Update BUILD_DEPENDS and TEST_DEPENDS
- Patch upstream sources to fix LibreSSL:

  * Remove EGD (Perl Entropy Gathering Daemon) support. This hasn't
    been needed on FreeBSD since FreeBSD 4.2
  * Disable compression conditionally using OPENSSL_NO_COMP
  * Check features, not version for x509_vfy

[1] https://github.com/pyca/cryptography/issues/928

PR:		196827
Submitted by:	Bernard Spil <spil.oss gmail com>
2015-01-18 09:38:15 +00:00
Kubilay Kocak
4658660b42 security/suricata: Update to 2.0.6, add lots of OPTIONS
- Update to 2.0.6
- Update pkg-plist
- Add LICENSE_FILE
- Add OPTIONS for:

  * LUA scripting support
  * LUAjit scripting support
  * Suricata socket client

- Fix a reverse logic bug for JSON option
- Suricata links to nspr as a dependent of nss, add it to LIB_DEPENDS
- Create LOGS_DIR post-install
- Add patch to fix upstream issue 1353 [1]

[1] https://redmine.openinfosecfoundation.org/issues/1353

PR:		196801
Submitted by:	cheffo freebsd-bg org (with changes)
2015-01-18 07:12:37 +00:00
Ruslan Makhmatkhanov
9af1bc3a48 security/py-potr: update to 1.0.1 2015-01-18 00:07:02 +00:00
Matthias Andree
05baf683fe Add a fix to prevent crashes on close if initialization failed. 2015-01-17 10:28:50 +00:00
Rong-En Fan
8ed73fa040 Drop maintainership as I no longer use these software nor have time and
energy to keep up.
2015-01-16 17:28:13 +00:00
Tijl Coosemans
73fd13bf63 Add USES=libtool 2015-01-16 16:36:36 +00:00
Dirk Meyer
88e0c8f493 - update to 1.0.1l
- fix option PADLOCK
2015-01-16 09:17:38 +00:00
Emanuel Haupt
c27b61c442 Document multiple archivers/unzip vulnerabilities (CVE-2014-8139,
CVE-2014-8140, CVE-2014-8141).

PR:		196777 (based on)
Submitted by:	rsimmons0@gmail.com
2015-01-16 08:18:13 +00:00
Timur I. Bakeyev
a6a5351c99 Add description of CVE-2014-8143 in net/samba4 and net/samba41 2015-01-16 04:05:17 +00:00
Alex Kozlov
34ae7a3272 - Remove vestiges of alpha support
Approved by: portmgr (erwin)
2015-01-15 20:00:09 +00:00
Mathieu Arnold
cf808657fc Give those to perl@, they're up-to-date, but I wouldn't want to keep someone
from updating them.

Sponsored by:	Absolight
2015-01-15 14:52:12 +00:00
Muhammad Moinur Rahman
9307eaf5d2 security/barnyard2: Ports cleanup
- Move DATABASE Backend options to OPTIONS_RADIO as only one backend is
  supported at a time. MYSQL and MYSQL_SSL will create conflict in
  previous state
- Update pkg-plist to make proper use of @sample
- Pass Maintainership [1]

PR:			196552 [1]
Differential Revision:	https://reviews.freebsd.org/D1514
Submitted by:		pauls@utdallas.edu [1]
Approved by:		bapt(mentor)
2015-01-15 09:48:34 +00:00
Tijl Coosemans
c88aaf5c89 Add missing USE_OPENSSL=yes
PR:		195796
2015-01-15 09:05:37 +00:00
Raphael Kubo da Costa
a1819b117a Add entry for CVE-2013-7252 in x11/kde4-runtime. 2015-01-14 21:54:30 +00:00
Andrej Zverev
58b27a0787 New port: security/asignify
Asignify tool is heavily inspired by signify used in OpenBSD. However, the main
goal of this project is to define high level API for signing files, validating
signatures and encrypting using public keys cryptography. Asignify is designed
to be portable and self-contained with zero external dependencies. It uses
blake2b as the hash function and ed25519 implementation from tweetnacl.

Key features:

- Zero dependencies (libc and C compiler are likely required though), so it
  could be easily used in embedded systems.
- Modern cryptography primitives (ed25519, blake2 and sha512 namely).
- Ability to encrypt files with the same keys using curve25519 based cryptobox.
- Protecting secret keys by passwords using PBKDF2-BLAKE2 routine.
- Asignify can convert ssh ed25519 private keys to the native format and verify
  signatures using just ssh ed25519 public keys (without intermediate
  conversions).
- Asignify provides high level API for application developers for signing,
  verifying, encrypting and keys generation.
- All keys, signatures and encrypted files contain version information allowing
  to change cryptographical primitives in the future without loosing of
  backward compatibility.
2015-01-14 18:35:31 +00:00
Beat Gaetzi
6cbf8fb6e3 Document mozilla vulnerabilities 2015-01-14 07:10:09 +00:00
Cy Schubert
432f44171d Fix, /usr/local/libdata/cracklib.pwd.gz: No such file or directory
PR:		196384
Submitted by:	Ting-Wei Lan <lantw44@gmail.com>
2015-01-14 04:34:38 +00:00
Philippe Audeoud
44237925e5 - Update to 2.009 2015-01-13 14:54:01 +00:00