Commit Graph

464074 Commits

Author SHA1 Message Date
Jan Beich
8a99a1201f MFH: r491899
security/nss: update to 3.42.1

Changes:	https://developer.mozilla.org/docs/Mozilla/Projects/NSS/NSS_3.42.1_release_notes
Changes:	https://hg.mozilla.org/projects/nss/shortlog/NSS_3_42_1_RTM
ABI:		https://abi-laboratory.pro/tracker/timeline/nss/
Approved by:	ports-secteam blanket (required by Firefox 66)
2019-02-01 23:53:21 +00:00
Jan Beich
b486320ff2 MFH: r491893
emulators/citra: update to s20190201

Changes:	8b047a49a...2731437a1
Approved by:	ports-secteam (swills, implicit for snapshots)
2019-02-01 23:44:56 +00:00
Jan Beich
e60087ff98 MFH: r491892
emulators/rpcs3: update to 0.0.6.7776

Changes:	25aa5f80a...8920eda32
Approved by:	ports-secteam (junovitch, implicit for snapshots)
2019-02-01 23:44:29 +00:00
Matthias Fechner
92c270cb75 MFH: r491093 r491734 r491752
Bugfix release to version 11.6.5.
https://about.gitlab.com/2019/01/17/gitlab-11-6-5-released/

Approved by:	mentors (implicit)

Upgrade to 11.7.0.
For detailed changelog see:
https://about.gitlab.com/2019/01/22/gitlab-11-7-released/

Security upgrade to version 11.7.3.
For more details see here:
https://about.gitlab.com/2019/01/31/security-release-gitlab-11-dot-7-dot-3-released/

Security:	467b7cbe-257d-11e9-8573-001b217b3468

Approved by:	ports-secteam (miwi)
2019-02-01 19:55:53 +00:00
Matthias Fechner
c32c8c5565 MFH: r491732 r491750
Upgrade to 8.0.0 which is required for gitlab-ce 11.7 upgrade.

Upgrade to 8.0.1 which is required for security update of gitlab-ce 11.7.3.

Approved by:	ports-secteam (miwi)
2019-02-01 19:54:32 +00:00
Matthias Fechner
60657928e1 MFH: r491731
Upgrade to 8.4.4 which is required for gitlab-ce 11.7 upgrade.

Approved by:	ports-secteam (miwi)
2019-02-01 19:53:40 +00:00
Matthias Fechner
088f23e216 MFH: r491730 r491751
Upgrade to 1.12.1 which is required for gitlab-ce 11.7 upgrade.

Upgrade to 1.12.2 which is required for security update of gitlab-ce 11.7.3.

Approved by:	ports-secteam (miwi)
2019-02-01 19:53:01 +00:00
Matthias Fechner
87f4219b30 MFH: r491729
Upgrade to 1.5.0 which is required for gitlab-ce 11.7 upgrade.

Approved by:	ports-secteam (miwi)
2019-02-01 19:52:05 +00:00
Matthias Fechner
6a340d4a01 MFH: r491728
Upgrade to 1.3.1 which is required for gitlab-ce 11.7 upgrade.
Made portlint happy.

Approved by:	ports-secteam (miwi)
2019-02-01 19:51:28 +00:00
Matthias Fechner
20adcccb3d MFH: r491727
Upgrade to 0.6.0 which is required for gitlab-ce 11.7 upgrade.

Approved by:	ports-secteam (miwi)
2019-02-01 19:50:49 +00:00
Matthias Fechner
df98eea7e2 MFH: r491726
Upgrade to 0.9.5.
Fixed license.

Reported by:	PORTSCOUT

Approved by:	ports-secteam (miwi)
2019-02-01 19:50:06 +00:00
Matthias Fechner
88edd5f631 MFH: r491725
Upgrade to version 1.8.13.

Reported by:	PORTSCOUT

Approved by:	ports-secteam (miwi)
2019-02-01 19:49:20 +00:00
Matthias Fechner
d160bd5efa MFH: r491724
Upgrade devel/libgit2 to 0.27.8 and required ports.

Reported by:	PORTSCOUT, swills

Approved by:	ports-secteam (miwi)
2019-02-01 19:48:38 +00:00
Matthias Fechner
fce2604ee1 MFH: r491723
In preparation for gitlab 11.7 upgrade switch rails4 to rails50.
If required upgraded version to work correctly with rails50.
Fixed some cosmetic issue to make portlint happy.

Reviewed by:	sunpoet
Differential Revision:	https://reviews.freebsd.org/D18957

Approved by:	ports-secteam (miwi)
2019-02-01 19:47:16 +00:00
Matthew Seaman
5da16b3fc9 MFH: r491757
Security update to 0.06

ChangeLog:	https://metacpan.org/source/BPS/Email-Address-List-0.06/Changes
Security:	22b90fe6-258e-11e9-9c8d-6805ca0b3d42

Approved by:	ports-secteam (miwi)
2019-02-01 14:35:31 +00:00
Dan Langille
c3d70c455e MFH: r491659
Fix the symlink to be relative.
symlinks in PREFIX should always be relative.

PR:		235327
Approved by:	ports-secteam (joneum)
2019-01-31 11:53:10 +00:00
Tobias Kortkamp
b231273b9c MFH: r491705
misc/mc: Do not override variables after bsd.port.pre.mk

At least the Python run dependency is not added on FreeBSD >= 12.0
because of it.

PR:		234587
Approved by:	woodsb02 (maintainer timeout, 4 weeks)

Approved by:	ports-secteam blanket
2019-01-31 11:17:50 +00:00
Jan Beich
3ffeb0e056 MFH: r491078
mail/thunderbird: update to 60.5.0

Changes:	https://www.thunderbird.net/thunderbird/60.5.0/releasenotes/
PR:		235161
Submitted by:	cmt
Security:	b1f7d52f-fc42-48e8-8403-87d4c9d26229
Approved by:	ports-secteam blanket
2019-01-31 00:58:37 +00:00
Dan Langille
7a56421290 MFH: r491654
Install has a bug with relative links and is creating an incorrect symlink.

Changing this to a full link.

PR:		235327
Approved by:	ports-secteam (joneum)
2019-01-30 22:59:32 +00:00
Jan Beich
5f0dc5829e MFH: r491633
emulators/rpcs3: update to 0.0.5.7767

Changes:	587fe421e...25aa5f80a
Approved by:	ports-secteam (junovitch, implicit for snapshots)
2019-01-30 17:22:42 +00:00
Tobias Kortkamp
f0852ac46a MFH: r491513
mail/pop3proxy: Fix build with OpenSSL 1.1.1

- Add license
- Fix config file location
- Reorder some things to pet portlint
- Mark it deprecated too as it appears to have no upstream anymore
  and only works properly with unencrypted traffic

PR:		232134
Submitted by:	freebsd_ports@k-worx.org

Approved by:	ports-secteam (miwi)
2019-01-29 17:49:12 +00:00
Ryan Steinmetz
26c315c724 MFH: r491585
- Update to 2.3.10.2

Approved by:	ports-secteam (with hat)
2019-01-29 17:21:27 +00:00
Tobias Kortkamp
47348dae71 MFH: r491573
games/moonlight-embedded: Add patch to fix runtime with GFE 3.16

Submitted by:	Brian Bostwick

Approved by:	ports-secteam runtime fix blanket
2019-01-29 15:54:09 +00:00
Tobias Kortkamp
287a80291c MFH: r491550
sysutils/flexbackup: Fix some issues

- flexbackup shows a perl deprecated warning with perl 5.16
- lzma support compression level 0
- compress flags do not work, if you use afio+lzma

PR:		221003
Submitted by:	Lars Herschke <lhersch@dssgmbh.de>

Approved by:	ports-secteam bug fix blanket
2019-01-29 09:34:02 +00:00
Jan Beich
a377c991a5 MFH: r491535
textproc/groff: unhang on qemu-aarch64-static after r488509

checking whether printf survives out-of-memory conditions...

PR:		224740
Approved by:	ports-secteam blanket
2019-01-29 02:02:48 +00:00
Jan Beich
14dab91140 MFH: r491532
security/nss: update to 3.42

Changes:	https://developer.mozilla.org/docs/Mozilla/Projects/NSS/NSS_3.42_release_notes
Changes:	https://hg.mozilla.org/projects/nss/shortlog/NSS_3_42_RTM
ABI:		https://abi-laboratory.pro/tracker/timeline/nss/
Approved by:	ports-secteam blanket (required by Firefox 66)
2019-01-29 00:53:19 +00:00
Jan Beich
28c101f9d4 MFH: r490910 r491042 r491043 r491119
www/firefox: update to 65.0

Backport a fix for WebRender on Wayland e.g.,

$ GDK_BACKEND=wayland MOZ_WEBRENDER=1 MOZ_ACCELERATED=1 firefox https://example.com/

Changes:	https://www.mozilla.org/firefox/65.0/releasenotes/
PR:		233791
Security:	b1f7d52f-fc42-48e8-8403-87d4c9d26229
Approved by:	ports-secteam blanket
Differential Revision:	https://reviews.freebsd.org/D18432
2019-01-29 00:45:04 +00:00
Jan Beich
401bb69464 MFH: r490962 r491213
nwww/firefox-esr: update to 60.5.0

Changes:	https://www.mozilla.org/firefox/60.5.0/releasenotes/
Patch churn by:	https://bugzilla.mozilla.org/show_bug.cgi?id=1513900
Security:	b1f7d52f-fc42-48e8-8403-87d4c9d26229
Approved by:	ports-secteam blanket
2019-01-29 00:42:31 +00:00
Steve Wills
f67027b470 MFH: r491494
dns/powerdns-recursor: update to 4.1.10

PR:		235113
Submitted by:	Ralf van der Enden <tremere@cainites.net> (maintainer)
Reported by:	nusenu <freebsd-vheg@riseup.net>
Security:	40d92cc5-1e2b-11e9-bef6-6805ca2fa271
Approved by:	ports-secteam (implicit)
2019-01-28 17:04:55 +00:00
Koichiro Iwao
595aedf2fd MFH: r491461
net/freerdp: Fix build with LibreSSL 2.9.0 (libressl-devel)

PR:		234731
Obtained from:	https://github.com/FreeRDP/FreeRDP/pull/5183
Sponsored by:	HAW International, Inc.

Approved by:	portmgr (miwi)
2019-01-28 09:44:05 +00:00
Jochen Neumeister
fc578f4c94 MFH: r491091
Update to 0.11.79

Changelog:

    LDAP group verification doesn't work when using 'dn' as user attribute #4684
    LDAP group verification fails #4792
    Emoji's do not work in wiki #4869
    Log level not applied from configuration #5007
    Not able to go get a repository with non-80 port #5305
    Fix critical CSRF vulnerabilities on API routes #5355
    Wrong redirect after updated protect branch setting whose name contains # #5442
    Clear labels not working #5445
    [Security] Remote command execution #5469
    Push event webhook is not triggered when new branch fetched to mirror repository #5473
    Large issue comment exceeds dashboard section #5502
    List collaborator API does not contain permission information #5538
    [Security] Log out only deletes browser cookies #5540
    [Security] Some routes need to be POST #5541
    [Security] Stored XSS in external issue tracker URL format #5545

PR:		235030
Submitted by:	Dmitri Goutnik <dg@syrec.org> (maintainer)
Sponsored by:	Netzkommune GmbH

Approved by:	ports-secteam (miwi)
2019-01-28 09:16:43 +00:00
Matthew Seaman
59714efab1 MFH: r491332
Security update to 4.8.5

This fixes arbitrary file disclosure and sql injection vulnerabilities.

ChangeLog: https://www.phpmyadmin.net/files/4.8.5/

Security:	111aefca-2213-11e9-9c8d-6805ca0b3d42

Approved by:	ports-secteam (miwi)
2019-01-27 17:03:46 +00:00
Tim Bishop
2ce6461628 MFH: r490904 r490905
Fix libstatgrab on FreeBSD 12

On FreeBSD 12 (since r309017) v_cache_count no longer exists. A
compatibility shim is in place if COMPAT_FREEBSD11 is defined in
the kernel, but if not libstatgrab fails to return any memory
statistics. This patch modifies libstatgrab to mimic this compatibility
behaviour (ie. return 0), regardless of whether COMPAT_FREEBSD11
is defined, which ensures the remaining statistics are returned
correctly.

A more complete solution will be considered upstream and hopefully
be included in the next release.

Reported by:	Alexey Milevsky <a.milevsky@gmail.com>
Approved by:	ports-secteam (miwi)
2019-01-27 15:25:33 +00:00
Tobias C. Berner
d47aba596e MFH: r491339
security/botan2: Update to 2.9.0 (Fixes CVE-2018-20187)

PR:		234938
Submitted by:	Ralf van der Enden <tremere@cainites.net> (maintainer)
Security:	d8e7e854-17fa-11e9-bef6-6805ca2fa271

Approved by:	ports-secteam (miwi)
2019-01-27 13:55:07 +00:00
Tobias Kortkamp
e1faf2d665 MFH: r491337
devel/libhoard: Unbreak build with Clang 6 (C++14 by default)

include/hoard/geometricsizeclass.h:137:5: error: non-type template argument evaluates to -2147483648, which cannot be narrowed to type 'size_t' (aka 'unsigned long') [-Wc++11-narrowing]
           MaxObjectSize>::VALUE };
           ^

http://beefy3.nyi.freebsd.org/data/112amd64-quarterly/491309/logs/errors/libhoard-3.10.log

- Respect CXX, CXXFLAGS, LDFLAGS
- Add a soname to the library
- Use INSTALL_LIB to install it

Approved by:	ports-secteam build fix blanket
2019-01-27 10:38:02 +00:00
Jochen Neumeister
e764939ad5 MFH: r491299
www/gitea: Update to 1.7.0 [1]

Add sqlite_unlock_notify tag [2]

PR:		235140 [1], 234709 [2]
Submitted by:	stb@lassitu.de (maintainer) [1]
Reported by:	adamw [2]
Approved by:	maintainer [2]
Security:	7f6146aa-2157-11e9-9ba0-4c72b94353b5
Sponsored by:	Netzkommune Gmbh

Approved by:	ports-secteam (miwi)
2019-01-27 09:03:11 +00:00
Mahdi Mokhtari
168dddb293 MFH: r491308
databases/mysql80-{client, server}: Update to latest release 8.0.14
This update (released on Jan 21st) includes:
Bugs Fixed:
  Important Change: Fix importing a dump from a MySQL 5.7 server 8.0 failure.
    (ER_WRONG_VALUE_FOR_VAR, when an unsupported [by 8.0] SQL mode was used).
    The behavior of the server in such circumstances now depends on the setting of the
    `pseudo_slave_mode` system variable.
    If this is false, the server rejects the mode setting with ER_UNSUPPORTED_SQL_MODE.
    Otherwise, server just gives a warning. (Bug #90337, Bug #27828236).

  InnoDB: Properly initialize the static thread-local 'tables' variable in
    the TempTable storage engine (on Solaris X86) was not properly initialized.
    (Bug #28987365)

  InnoDB: Fix incorrect lock order caused a deadlock when one thread attempted to
    drop a table while another created an encrypted tablespace. (Bug #28774259)

More info from upstream:
  https://dev.mysql.com/doc/relnotes/mysql/8.0/en/news-8-0-14.html

While here, Adapt some local patches with new upstream changes.

PR:		234984
Sponsored by:	The FreeBSD Foundation

Approved by:	ports-secteam (feld, CVE-patch blanket)
2019-01-26 18:42:23 +00:00
Thomas Zander
951d661583 MFH: r491262
Update to upstream version 0.9.1

Details:
- Addressing an out-of-bounds read which might be exploitable,
  see upstream changelog:
  https://github.com/uriparser/uriparser/blob/uriparser-0.9.1/ChangeLog

PR:		234670
Submitted by:	riggs
Approved by:	maintainer timeout

Approved by:	ports-secteam (riggs)
2019-01-26 11:04:26 +00:00
Jochen Neumeister
d2c06ef5ef lang/php56: Update to 5.6.40
Changelog: http://php.net/ChangeLog-5.php

Approved by:	ale (maintainer)
Approved by:	ports-secteam (miwi)
Sponsored by:	Netzkommune GmbH
2019-01-26 08:24:49 +00:00
Jan Beich
d94265515a MFH: r491219
emulators/citra: update to s20190124

Changes:	a17a31a93...8b047a49a
Approved by:	ports-secteam (swills, implicit for snapshots)
2019-01-26 00:45:05 +00:00
Jan Beich
7985be00ad MFH: r491218
emulators/rpcs3: update to 0.0.5.7757

Changes:	afeacc171...587fe421e
Approved by:	ports-secteam (junovitch, implicit for snapshots)
2019-01-26 00:44:43 +00:00
Jan Beich
1c9e9f5a9b MFH: r491217
games/openbor: update to 6662

Changes:	3ded2363...545b4f94
Approved by:	ports-secteam (feld, implicit for snapshots)
2019-01-26 00:44:10 +00:00
Fernando Apesteguía
094da943fa MFH: r491061
japanese/man: unbreak in several archs.

The port was broken in 12 and in different archs.

mips is still to be tested.

PR: 235058
Submitted by: phd_kimberlite@yahoo.co.jp
Reviewed by:  Ronald Klop (aarch64)  mikael.urankar@gmail.com (armv6, armv7)

Approved by: ports-secteam (miwi)
2019-01-24 18:08:17 +00:00
Sunpoet Po-Chuan Hsieh
73a6da65b3 MFH: r489116 r489288 r490179
Fix Perl 5.28+ warning

PR:		234464
Submitted by:	Risto <toivonenristo@netscape.net>

- Bump portrevision because of r489116.
- Fix a portlint issue.

PR:		ports/234621
Submitted by:	stephen@FreeBSD.org
Approved by:	portmgr (blanket: just fix it)

Update htmlxref.cnf and texinfo.tex

- Update htmlxref.cnf from 2016-07-11.22 to 2018-08-23.18
- Update texinfo.tex from 2017-08-23.19 to 2018-09-21.20
- Bump PORTREVISION for package change

Changes:	https://svn.savannah.gnu.org/viewvc/texinfo/trunk/util/htmlxref.cnf
		https://svn.savannah.gnu.org/viewvc/texinfo/trunk/doc/texinfo.tex

Approved by:	ports-secteam (delphij)
2019-01-24 16:21:31 +00:00
Sunpoet Po-Chuan Hsieh
1e04814a8b MFH: r489415
Fix CVE-2018-6616

- Bump PORTREVISION for package change

Obtained from:	8ee335227b
PR:		234473
Submitted by:	Andres Montalban <amontalban@gmail.com>

Approved by:	ports-secteam (delphij)
2019-01-24 16:19:00 +00:00
Torsten Zuehlsdorff
fb071a5bb1 MFH: r491031
lang/php73: disable DTRACE option on PowerPC

DTRACE causes ld(1) link probe failures and therefore fails the build.

PR:           233850
Submitted by: Chip Cuccio <chip.cuccio@gmail.com>

Approved by:	ports-secteam (miwi)
2019-01-24 09:02:30 +00:00
Jochen Neumeister
00f6714918 MFH: r491041
Update to 2.4.38

Changelog:
  *) SECURITY: CVE-2018-17199 (cve.mitre.org)
     mod_session: mod_session_cookie does not respect expiry time allowing
     sessions to be reused.  [Hank Ibell]

  *) SECURITY: CVE-2018-17189 (cve.mitre.org)
     mod_http2: fixes a DoS attack vector. By sending slow request bodies
     to resources not consuming them, httpd cleanup code occupies a server
     thread unnecessarily. This was changed to an immediate stream reset
     which discards all stream state and incoming data.  [Stefan Eissing]

  *) SECURITY: CVE-2019-0190 (cve.mitre.org)
     mod_ssl: Fix infinite loop triggered by a client-initiated
     renegotiation in TLSv1.2 (or earlier) with OpenSSL 1.1.1 and
     later.  PR 63052.  [Joe Orton]

  *) mod_ssl: Clear retry flag before aborting client-initiated renegotiation.
     PR 63052 [Joe Orton]

  *) mod_negotiation: Treat LanguagePriority as case-insensitive to match
     AddLanguage behavior and HTTP specification. PR 39730 [Christophe Jaillet]

  *) mod_md: incorrect behaviour when synchronizing ongoing ACME challenges
     have been fixed. [Michael Kaufmann, Stefan Eissing]

  *) mod_setenvif: We can have expressions that become true if a regex pattern
     in the expression does NOT match. In this case val is NULL
     and we should just set the value for the environment variable
     like in the pattern case. [Ruediger Pluem]

  *) mod_session: Always decode session attributes early. [Hank Ibell]

  *) core: Incorrect values for environment variables are substituted when
     multiple environment variables are specified in a directive. [Hank Ibell]

  *) mod_rewrite: Only create the global mutex used by "RewriteMap prg:" when
     this type of map is present in the configuration.  PR62311.
     [Hank Ibell <hwibell gmail.com>]

  *) mod_dav: Fix invalid Location header when a resource is created by
     passing an absolute URI on the request line [Jim Jagielski]

  *) mod_session_cookie: avoid duplicate Set-Cookie header in the response.
     [Emmanuel Dreyfus <manu@netbsd.org>, Luca Toscano]

  *) mod_ssl: clear *SSL errors before loading certificates and checking
     afterwards. Otherwise errors are reported when other SSL using modules
     are in play. Fixes PR 62880. [Michael Kaufmann]

  *) mod_ssl: Fix the error code returned in an error path of
     'ssl_io_filter_handshake()'. This messes-up error handling performed
     in 'ssl_io_filter_error()' [Yann Ylavic]

  *) mod_ssl: Fix $HTTPS definition for "SSLEngine optional" case, and fix
     authz provider so "Require ssl" works correctly in HTTP/2.
     PR 61519, 62654.  [Joe Orton, Stefan Eissing]

  *) mod_proxy: If ProxyPassReverse is used for reverse mapping of relative
     redirects, subsequent ProxyPassReverse statements, whether they are
     relative or absolute, may fail.  PR 60408.  [Peter Haworth <pmh1wheel gmail.com>]

  *) mod_lua: Now marked as a stable module [https://s.apache.org/Xnh1]

Security:	eb888ce5-1f19-11e9-be05-4c72b94353b5
Sponsored by:	Netzkommune GmbH

Approved by:	ports-secteam (miwi)
2019-01-24 06:38:09 +00:00
Jan Beich
d1093174e9 MFH: r491077
security/nss: update to 3.41.1

Changes:	https://developer.mozilla.org/docs/Mozilla/Projects/NSS/NSS_3.41.1_release_notes
Changes:	https://hg.mozilla.org/projects/nss/shortlog/NSS_3_41_1_RTM
ABI:		https://abi-laboratory.pro/tracker/timeline/nss/
Approved by:	ports-secteam blanket (required Firefox 66.0 or 65.0.1)
2019-01-24 00:56:19 +00:00
Jan Beich
851a51874b MFH: r491069
emulators/citra: update to s20190123

Changes:	efd576839...a17a31a93
Approved by:	ports-secteam (swills, implicit for snapshots)
2019-01-24 00:15:07 +00:00
Jan Beich
6e327c7322 MFH: r491068
emulators/rpcs3: update to 0.0.5.7742

Changes:	688d5a991b...afeacc171
Approved by:	ports-secteam (junovitch, implicit for snapshots)
2019-01-24 00:14:44 +00:00