1
0
mirror of https://git.FreeBSD.org/ports.git synced 2025-01-01 05:45:45 +00:00
Commit Graph

523254 Commits

Author SHA1 Message Date
Kurt Jaeger
e811eaced7 net/apache-commons-net: update 3.6 -> 3.7.1
Relnotes:	https://gitbox.apache.org/repos/asf?p=commons-net.git;a=blob;f=RELEASE-NOTES.txt;h=0923e7443fe70abcc97887154abc130fa1070649;hb=refs/heads/release
2020-10-04 10:42:57 +00:00
Jimmy Olgeni
d673168584 Update benchmarks/ali to version 0.3.2. 2020-10-04 10:33:01 +00:00
Kurt Jaeger
80b4baf4eb New port: dns/knot3-lib
This port allows to install only libknot, which comes along with
Knot DNS (authoritative), but also is a depency of knot-resolver

WWW: https://www.knot-dns.cz/

PR:		249364
Submitted by:	Leo Vandewoestijne <freebsd@dns.company>
Relnotes:	https://www.knot-resolver.cz/2020-09-08-knot-resolver-5.1.3.html
2020-10-04 10:29:36 +00:00
Kurt Jaeger
c5f816884f New port: dns/knot3
Knot DNS is a high-performance authoritative-only DNS server which
supports all key features of the domain name system including zone
AXFR and IXFR, DDNS and DNSSEC.  Its key features:

 * Open source
 * High-performance, multi-threaded, and mostly lock-free
   implementation which scales well on SMPs
 * Object-oriented design
 * Support for all important DNS protocols:
   - Full and incremental zone transfers
   - EDNS0 and DNSSEC extensions, including NSEC3
   - NSID

WWW: https://www.knot-dns.cz/

PR:		249363
Submitted by:	Leo Vandewoestijne <freebsd@dns.company>
Relnotes:	https://www.knot-dns.cz/2020-09-09-version-300.html
2020-10-04 10:18:00 +00:00
Tobias C. Berner
423cebb5f4 audio/faudio: update to 20.10
New Features:
    * XACT:
        * Add support for WAVESTOP notifications
        * Add support for engines without settings files (or empty settings files)

Fixes:
    * Add power-of-two quantum fallback paths for *BSD and Emscripten
    * Return a unique error code for audio engines with a bad platform ID
    * Fix a deadlock in Wolfenstein: The Old Blood related to callbacks
    * Fix a crash for streaming WaveBanks when calling Destroy
    * stb_vorbis: Handle malloc(0) calls
2020-10-04 09:57:52 +00:00
Mikael Urankar
be9a0f6a2a audio/suil: Update to version 0.10.8
Fix X11 in Gtk size regressions (thanks Robin Gareus)
    Fix compilation on MacOS older than 10.12
    Fix drag and drop for X11 in Gtk
    Fix various minor warnings and other code quality issues

PR:		250078
Submitted by:	Michael Beer (maintainer)
2020-10-04 09:44:44 +00:00
Mikael Urankar
e13c6d6ba1 audio/lilv: Update to version 0.24.10
Fix memory leaks in lv2bench
    Fix various minor warnings and other code quality issues
    Make lilv_world_get() use translations
    Split and clean up test suite

PR:		250079
Submitted by:	Michael Beer (maintainer)
2020-10-04 09:42:43 +00:00
Tobias C. Berner
444ce6d943 devel/py-apispec: Update to 4.0.0
Release notes:
https://github.com/marshmallow-code/apispec/blob/dev/CHANGELOG.rst#400-2020-09-30

PR:		250063
Submitted by:	Goran Mekić <meka@tilda.center> (maintainer)
2020-10-04 09:41:40 +00:00
Tobias C. Berner
505768b9c6 devel/py-python-jsonrpc-server: Update to 0.30.6
PR:		250066
Submitted by:	Goran Mekić <meka@tilda.center> (maintainer)
2020-10-04 09:40:32 +00:00
Tobias C. Berner
31862336d1 devel/serd: Update to 0.30.6
Release notes:
	https://gitlab.com/drobilla/serd/-/releases/v0.30.6

PR:		250065
Submitted by:	Goran Mekić <meka@tilda.center>  (maintainer)
2020-10-04 09:34:18 +00:00
Mikael Urankar
2f469203e2 misc/broot: Update to 1.0.1
* Added optional CLIPBOARD feature
  (X11 clipboard support).
* Enable CLIENT_SERVER and CLIPBOARD
  features by default.

Changelog:

 * https://github.com/canop/broot/releases/v1.0.1

PR:		250085
Submitted by:	Lewis Cook (maintainer)
2020-10-04 09:17:26 +00:00
Tobias C. Berner
e0e5f7b049 audio/sratom: Update to 0.6.6
PR:		250077
Submitted by:	Michael Beer <beerml@sigma6audio.de>  (maintainer)
2020-10-04 08:53:58 +00:00
Matthias Andree
c5e7a0d7f1 x11-themes/gnome-themes-extra: avoid messing up STAGEDIR/plist failure
PR:		249429
Approved by:	freebsd-gnome (maintainer timeout, 15d)
2020-10-04 08:19:24 +00:00
Tobias C. Berner
db532efebd devel/libdbusmenu: add DOCS optiom
PR:		236288
Submitted by:	rozhuk.im@gmail.com
2020-10-04 07:15:59 +00:00
Tobias C. Berner
1dacc41bd8 audio/shntool: add upstream fix
* Added WAVE_FORMAT_EXTENSIBLE with value 0xfffe and supressed error on wav
  header parsing with that format

PR:		250088
Reported by:	Danoz <danoz@danoz.net>
2020-10-04 06:41:35 +00:00
Yuri Victorovich
336320f33c devel/rabs: Update 2.11.5 -> 2.11.7
Reported by:	portscout
2020-10-04 06:38:22 +00:00
Tobias C. Berner
8b18861bca deskutils/kdeconnect-kde: add upstreams mitigations for CVE-2020-26164
From https://kde.org/info/security/advisory-20201002-1.txt:
	Solution
	========

	KDE Connect 20.08.2 patches several code paths that could result in a DoS.
	You can apply these patches on top of 20.08.1:
	f183b5447b
	b279c52101
	d35b88c1b2
	b496e66899
	5310eae85d
	721ba9faaf
	ae58b9dec4
	66c768aa9e
	85b691e40f
	48180b4655

Security:	CVE-2020-26164
2020-10-04 06:29:14 +00:00
Yuri Victorovich
31553aaf86 graphics/drawpile: Backport patch fixing compilation with libmicrohttpd 0.9.71; Backport patches fixing missing #include <QPainterPath>
PR:		250087
Submitted by:	daniel.engberg.lists@pyret.net
2020-10-04 06:24:09 +00:00
Tobias C. Berner
62fb1252f8 vuxml: fix version check in r551354 2020-10-04 06:03:47 +00:00
Tobias C. Berner
fc1a5ce7e9 vuxml: document deskutils/kdeconnect-kde vulnerability
KDE Project Security Advisory
=============================

Title:           KDE Connect: packet manipulation can be exploited in a Denial of Service attack
Risk Rating:     Important
CVE:             CVE-2020-26164
Versions:        kdeconnect <= 20.08.1
Author:          Albert Vaca Cintora <albertvaka@gmail.com>
Date:            2 October 2020

Overview
========

An attacker on your local network could send maliciously crafted packets to other hosts running
kdeconnect on the network, causing them to use large amounts of CPU, memory or network
connections, which could be used in a Denial of Service attack within the network.

Impact
======

Computers that run kdeconnect are susceptible to DoS attacks from the local network.

Workaround
==========

We advise you to stop KDE Connect when on untrusted networks like those on airports or conferences.

Since kdeconnect is dbus activated it is relatively hard to make sure it stays stopped so the brute
force approach is to uninstall the kdeconnect package from your system and then run
    kquitapp5 kdeconnectd
Just install the package again once you're back in a trusted network.

Solution
========

KDE Connect 20.08.2 patches several code paths that could result in a DoS.
You can apply these patches on top of 20.08.1:
f183b5447b
b279c52101
d35b88c1b2
b496e66899
5310eae85d
721ba9faaf
ae58b9dec4
66c768aa9e
85b691e40f
48180b4655

Credits
=======

Thanks Matthias Gerstner and the openSUSE security team for reporting the issue.
Thanks to Aleix Pol, Nicolas Fella and Albert Vaca Cintora for the patches.

Security:	CVE-2020-26164
2020-10-04 05:49:09 +00:00
TAKATSU Tomonari
c7d7cfc214 - Update to 3.0-0 2020-10-04 05:47:55 +00:00
TAKATSU Tomonari
079425a6de - Update to 0.7.1 2020-10-04 04:51:35 +00:00
TAKATSU Tomonari
7d332bd4ad - Update to 0.2.2 2020-10-04 03:06:11 +00:00
TAKATSU Tomonari
9d2df19ddd - Update to 0.6-1 2020-10-04 02:51:49 +00:00
Yuri Victorovich
ecbc08c2ab news/husky-hpt: Fix build on 13 by adding CFLAGS=-fcommon
Reported by:	Build failure on 13-CURRENT
Approved by:	portmgr (build fix)
2020-10-04 02:00:41 +00:00
Yuri Victorovich
fa519f0f6c news/husky-htick: Fix build on 13 by adding CFLAGS=-fcommon
Reported by:	Abuild failure on 13-CURRENT
Approved by:	portmgr (build fix)
2020-10-04 01:59:53 +00:00
TAKATSU Tomonari
42f6a28b99 - Update to 2.4 2020-10-04 01:05:41 +00:00
Joe Marcus Clarke
cad90cf745 Update to 3.13.
See https://shrubbery.net/rancid/CHANGES for a list of changes in this
release.
2020-10-03 21:07:00 +00:00
Thierry Thomas
a811ec49a9 Minor update to v1.3.2.
Release notes at
<https://github.com/libsemigroups/libsemigroups/releases/tag/v1.3.2>.
2020-10-03 20:13:56 +00:00
Tobias C. Berner
461571f8f5 sysutils/logstash7: Update to 7.9.2
Changelog since 7.9.1:
* Notable issues fixed
  - Secret store thread safety issues with multiple pipelines
        - Since 7.8.0, a change to optimise the speed of loading variables from
          the Logstash Secret Store could cause Logstash not to be able to start
          when the feature was used in conjunction with multiple pipelines.
  - App Search output startup failure
        - Since 7.9.0, a regression was introduced which prevented pipelines
          using the Elastic App Search output from starting.
* Compatibility notice: Logstash and JDK 15
  - Logstash is not yet compatible with JDK 15.
        - While we are working to support JDK 15, we encourage you to use supported
          JDK versions (8, 11 or 14). See Java (JVM) version for details and the
          Elastic Support Matrix for the official word on supported versions
          across products and releases.
* Plugins
  - Sleep Filter - 3.0.7
        - Changed Fixnum to Integer. Fixnum was deprecated in ruby 2.4.
  - Elastic_app_search Output - 1.1.1
        - Added missed dependency (elastic-app-search) to the gemspec

Release notes:
	https://www.elastic.co/guide/en/logstash/current/logstash-7-9-2.html

PR:		249913
Submitted by:	Juraj Lutter <juraj@lutter.sk>
2020-10-03 20:10:38 +00:00
Tobias C. Berner
c7afd12602 textproc/kibana7: Update to 7.9.2
Changelog since 7.9.1:
* Enhancement
  - Machine Learning
        - Improves performance of job exists check
* Bug fixes
  - Alerting
        - Fixes alerts unable to create or update when the name has trailing whitepace
  - Machine Learning
        - Swim lane pagination for viewing by job ID
        - Fixes custom URLs processing for security app
  - Management
        - Fixes an issue in Snapshot and Restore UI where creating a policy, repository, or snapshot with a special character, like a colon, in the name would result in a 404 when viewing details or editing any of the aforementioned
        - Indices that contain the characters % { [ @ no longer cause a 405 error in Index Management
        - Fixes an issue in the snapshot and restore policy creation form that allowed a policy to be created without an index specified
        - The snapshot and restore wizard now notifies users when a policy configured with a non-existing repository is being updated and requires that the user select a new repository
        - Fixes an issue in the grok debugger where simulation error messages are not being displayed
  - Maps
        - Fixes drawing shapes in maps app broken in 7.9.1
  - Monitoring
        - Prevents edit/create for Stack Monitoring alerts in Alerts Management
        - Fixes improper lodash syntax
        - Fixes UI error when alerting is not available
  - Platform
        - Fixes bug causing multiple overrides to only show the last confirm modal
        - Fixes remoteAddress being duplicated in userAgent field
        - Fixes an issue that caused savedObject migration errors to not being displayed in the logs
        - Fixes an issue where defaultAppId redirect could fire outside home app
        - Suppresses error logs when clients connect over HTTP instead of HTTPS
  - Reporting
        - Adds back in custom images for reporting + tests
  - Security
        - Adds Lens as a readable saved object for read-only dashboard users
  - Uptime
        - Fixes alerting false positives

Release notes:
	https://www.elastic.co/guide/en/kibana/7.9/release-notes-7.9.2.html

PR:		249914
Submitted by:	Juraj Lutter <juraj@lutter.sk>
2020-10-03 20:07:42 +00:00
Tobias C. Berner
08df4154be textproc/elasticsearch7: Update to 7.9.2
Changelog since 7.9.1:

* Deprecations
  - Infra/Plugins
	- Deprecate xpack.eql.enabled setting and make it a no-op
* Enhancements
  - Mapping
	- Improve error messages on bad [format] and [null_value] params for date mapper
* Bug fixes
  - Aggregations
	- Cardinality request breaker leak
	- Fix bug with terms' min_doc_count
  - Analysis
	  - Fix standard filter BWC check to allow for cacheing bug
  - Authentication
	  - Ensure domain_name setting for AD realm is present
	  - Update authc failure headers on license change
  - Authorization
	  - Ensure authz operation overrides transient authz headers
  - CCR
	  - CCR should retry on CircuitBreakingException
  - EQL
	  - Create the search request with a list of indices
  - Engine
	- Allow enabling soft-deletes on restore from snapshot
  - Features/Data streams
	- Always validate that only a create op is allowed in bulk api for data streams
	- Fix NPE when deleting multiple backing indices on a data stream
	- Fix data stream wildcard resolution bug in eql search api.
	- Prohibit the usage of create index api in namespaces managed by data stream templates
  - Features/ILM+SLM
	- Fix condition in ILM step that cannot be met
  - Features/Ingest
	- Add Missing NamedWritable Registration for ExecuteEnrichPolicyStatus
  - Features/Java High Level REST Client
	- Drop assertion that rest client response warnings conform to RFC 7234
	- Infra/Packaging
	- Check glibc version
  - Machine Learning
	- Add null checks for C++ log handler
	- Persist progress when setting data frame analytics task to failed
	- Fix reporting of peak memory usage in memory stats for data frame analytics
	- Fix reporting of peak memory usage in model size stats for anomaly detection
  - Mapping
	- Allow empty null values for date and IP field mappers
	- Take resolution into account when parsing date null value
  - Network
	- Log alloc description after netty processors set
  - SQL
	- Do not resolve self-referencing aliases
  - Search
	- Fix disabling allow_leading_wildcard
	- Search memory leak
  - Transform
	- Disable optimizations when using scripts in group_by
* Upgrades
  - Infra/Packaging
	- Upgrade the bundled JDK to JDK 15

Release notes:
	https://www.elastic.co/guide/en/elasticsearch///reference/current/release-notes-7.9.2.html

PR:		249915
Submitted by:	Juraj Lutter <juraj@lutter.sk>
2020-10-03 20:05:15 +00:00
Tobias C. Berner
ebc8e584cb sysutils/beats7: Update to 7.9.2
Changes since 7.9.1:
* Breaking changes
  - Affecting all Beats
        - Autodiscover doesn’t generate any configuration when a variable is
          missing. Previously it generated an incomplete configuration.
* Bugfixes
  - Affecting all Beats
        - Explicitly detect missing variables in autodiscover configuration,
          log them at the debug level.
        - Fix libbeat.output.write.bytes and libbeat.output.read.bytes metrics of
          the Elasticsearch output.
  - Filebeat
        - Provide backwards compatibility for the set processor when Elasticsearch is
          less than 7.9.0.
        - Fix an error updating file size being logged when EOF is reached.
        - Fix error when processing AWS Cloudtrail Digest logs.
  - Metricbeat
        - The Kibana collector applies backoff when errored at getting usage stats
        - The elasticsearch/index metricset only requests wildcard expansion for hidden
          indices if the monitored Elasticsearch cluster supports it.
        - Fix panic index out of range error when getting AWS account name.
        - Handle missing counters in the application_pool metricset.
  - Functionbeat
        - Do not need Google credentials if not required for the operation.
        - Fix dependency issues of GCP functions.
* Added
  - Affecting all Beats
        - Add container ECS fields in kubernetes metadata.

FreeBSD notes:
  - Fixed PRs:
    - bug #248499
    - bug #244627
    - bug #228785
  - Fix paths in various (mostly example) files

Release Notes:
	https://www.elastic.co/guide/en/beats/libbeat/current/release-notes-7.9.2.html

PR:		249912
Submitted by:	Juraj Lutter <juraj@lutter.sk>
2020-10-03 20:03:35 +00:00
Tobias C. Berner
e79aa951f5 devel/sord: Update to version 0.16.6
PR:		250080
Submitted by:	Michael Beer <beerml@sigma6audio.de> (maintainer)
2020-10-03 19:31:49 +00:00
Hans Petter Selasky
d72aa5b419 Add missing LD_PRELOAD= environment variable to the virtual_oss rc.d .
PR:		250046
Approved by:	pi (implicit)
2020-10-03 19:23:22 +00:00
Warner Losh
85054f7726 Upgrade to intel-pcm-202009
Update to the freshly minted 202009 version.

Submitted by: mjg@
2020-10-03 18:57:23 +00:00
Tobias C. Berner
edabf7a61c devel/jetbrains-phpstorm: Update to 2020.2.2
Release notes:
	https://confluence.jetbrains.com/display/PhpStorm/PhpStorm+2020.2.2+Release+Notes

PR:		249983
Submitted by:	Dmitry Wagin <dmitry.wagin@ya.ru> (maintainer)
MFH:		2020Q4
2020-10-03 18:36:50 +00:00
Tobias C. Berner
18272760f9 devel/upnp: update to 1.14.0
Update to newer release which contains a fix for CVE-2020-13848:
	c805c1de11

MFH:		2020Q4
Security:	CVE-2020-13848
2020-10-03 17:50:29 +00:00
Glen Barber
2989d88ca6 Add MANIFESTs for 12.2-RC1.
Remove MANIFESTs for 12.2-BETA3.

MFH:		2020Q4 (re blanket)
Sponsored by:	Rubicon Communications, LLC (netgate.com)
2020-10-03 17:46:00 +00:00
Tobias C. Berner
cc94c23760 vuxml: document vulnerability in devel/upnp
Security:	CVE-2020-13848
2020-10-03 17:21:32 +00:00
Mateusz Piotrowski
ebbdf47814 devel/dbus: Fix honoring LOCALBASE
Bits we were replacing in dbus/dbus-sysdeps-unix.c were moved to
dbus/dbus-sysdeps-util-unix.c. Make the patch more robust by first using
a patch and then REINPLACE_CMD.

Approved by:	portmgr blanket
2020-10-03 17:11:56 +00:00
Mateusz Piotrowski
7c3df8d918 devel/dbus: Do not pollute build products when TMPDIR is not /tmp
If you have a TMPDIR in your environment that points to an existing
directory other than /tmp (e.g., TMPDIR=/bigfilesystem/tmp), when you build
devel/dbus, a couple files get built with that value.

When the package is installed on a target system that may not have the
non-default TMPDIR used at build time, then you will get run-time errors.
Such as:

  % dbus-launch sh
  Failed to start message bus: Failed to bind socket "/bigfilesystem/tmp/dbus-1nT4MYueXb": No such file or directory
  EOF in dbus-launch reading address from bus daemon

PR:		238548
Submitted by:	John Hein <jcfyecrayz@liamekaens.com>
2020-10-03 17:02:18 +00:00
Mateusz Piotrowski
110c46dc76 devel/dbus: Remove remaining machine-id copy code
It was most likely meant to be removed in r493840, together with other
related bits.

PR:		238963
Reported by:	chadf@triularity.org
Approved by:	portmgr blanket
2020-10-03 16:45:44 +00:00
Mateusz Piotrowski
bfe5184fa6 devel/libIDL: Set LICENSE
Approved by:	portmgr blanket
2020-10-03 16:33:30 +00:00
Mateusz Piotrowski
e77348ea13 x11/gdm: Install gconftool-2 as it is needed by pkg-install
Before this patch, the following error could be observed during the
installation of the port:

  ===> Creating homedir(s)
  /bin/sh: gconftool-2: not found
  chown: /usr/local/etc/gdm/home/.gconf.mandatory: No such file or directory
  chmod: /usr/local/etc/gdm/home/.gconf.mandatory: No such file or directory
  chmod: /usr/local/etc/gdm/home/.gconf.mandatory/*.xml: No such file or directory
  GDM is installed.

Specifying USE_GNOME+=gconf2 seems to fix the error messages.

(BTW, for some reason the gconf2 dependency was removed in r372768.)

Approved by:	portmgr blanket
MFH:		2020Q4
2020-10-03 16:31:10 +00:00
Mateusz Piotrowski
41db943dd1 x11/gdm: Fix pkg-message
pkg-message does not contain %%PREFIX%% anymore, so a sed(1) call is not
necessary. In addition to that, passing pkg-message though fmt(1) was
breaking the UCL inside causing pkg-message to not be displayed at all.

Approved by:	portmgr blanket
MFH:		2020Q4
2020-10-03 16:12:49 +00:00
Mateusz Piotrowski
5a4f6b5dbf x11/gdm: Switch to USES=localbase
Approved by:	portmgr blanket
2020-10-03 16:07:35 +00:00
Mateusz Piotrowski
fc98790a2c x11/gdm: @sample-ify some GDM files in etc/
It's been reported that it would be desired to treat the following
files as samples:

- etc/dbus-1/system.d/gdm.conf.sample
- etc/gdm/Init/Default.sample
- etc/gdm/Xsession.sample
- etc/pam.d/gdm-autologin.sample
- etc/pam.d/gdm-launch-environment.sample
- etc/pam.d/gdm-password.sample

PR:		187558
Submitted by:	Eugene M. Kim <astralblue@gmail.com
Reported by:	robmessick@gmail.com
Approved by:	maintainer timeout
2020-10-03 16:00:21 +00:00
Nicola Vitale
a72e407b85 - Update to 0.5.4 2020-10-03 15:46:26 +00:00
Thierry Thomas
3dbc69dd59 - Upgrade to 2.7 (27r1)
Changelog at <http://pallini.di.uniroma1.it/changes24-27.txt>

- Install libnauty (static lib only ATM) so that it can be used by Sage-9.2.
2020-10-03 15:44:46 +00:00