Commit Graph

551609 Commits

Author SHA1 Message Date
Jan Beich
5d6eb9d394 emulators/yuzu: update to s20211002
Changes:	36d45b4a7...21ed944ff
(cherry picked from commit cfdb18e50f)
2021-10-03 00:38:11 +00:00
Christoph Moench-Tegeder
24c6d07433 www/firefox: fix build on 32bit
this brings the double_t-related typedefs in line with our definitions
and brings back the rounding helpers for those.

PR:		258804
Reported by:	Felix Palmen

(cherry picked from commit edae8a1c04)
2021-10-02 23:16:09 +02:00
Michael Gmelin
f24c5f685d devel/phabricator: Bump minimum arcanist-lib dependency
This makes sure phabricator is using the Mozilla root CA bundle
when doing webhook calls (e.g., from harbormaster).

Before it would use the custom root CA bundle that shipped with
arcanist, which hasn't been updated in a while. This caused
problems with Let's Encrypt issued certificates, after the R3
Let's Encrypt intermediate CA expired.

(cherry picked from commit e48613f2da)
2021-10-02 14:54:20 +02:00
Michael Gmelin
43ac6aef76 devel/arcanist-lib: Use Mozilla root CA bundle
This fixes problems with Let's Encrypt certificates after
the R3 Let's Encrypt intermediate CA expired.

Arcanist uses its own certificate bundle by default (default.pem),
overriding curl's default, unless curl.cainfo is set explicitly.

The port now replaces this custom bundle with a symlink to Mozilla's
root CA bundle as installed by security/ca_root_nss.

PR: 258824
Reported by: yasu

(cherry picked from commit 21ddc093a4)
2021-10-02 14:54:09 +02:00
Jan Beich
5fd2ec7881 graphics/mesa-devel: update to 21.2.b.3070
Changes:	1da70c7e93...2aa705ec87
(cherry picked from commit 3fd1b09751)
2021-10-02 00:57:51 +00:00
Evgeniy Khramtsov
b7f6e07017 www/firefox: unbreak build with devel/llvm13 (lacks patch-D77776)
Restore patch-bug1628567 to unbreak glslopt crate build due to cc crate
passing Rust target "x86_64-unknown-freebsd" without OS version to clang++:

[glslopt 0.1.9] cargo:warning=/wrkdirs/usr/ports/www/firefox/work/.build/
ist/system_wrappers/new:3:15: fatal error: 'new' file not found
[glslopt 0.1.9] cargo:warning=#include_next <new>

PR:		258837
(cherry picked from commit dcc587e702)
2021-10-02 00:12:08 +00:00
Jan Beich
70bc9cb3be x11-wm/river: update to s20210930
Changes:	6616d32...e6bb373
(cherry picked from commit 4106f765f2)
2021-10-02 00:11:36 +00:00
Jan Beich
23e70aba22 emulators/yuzu: update to s20211001
Changes:	b9251155f...36d45b4a7
(cherry picked from commit 89d1bb8ae9)
2021-10-02 00:11:36 +00:00
Jan Beich
0671938439 x11/kanshi: chase to the new home
https://github.com/emersion/kanshi/commit/0faad7544323
"This repository has been archived by the owner. It is now read-only."

(cherry picked from commit bcd938765b)
2021-09-30 20:10:08 +00:00
Jan Beich
1f0368c7e8 devel/basu: chase to the new home
https://github.com/emersion/basu/commit/9ff82e33e501
"This repository has been archived by the owner. It is now read-only."

(cherry picked from commit 220c5f4afe)
2021-09-30 20:05:08 +00:00
Cy Schubert
1188e21867 security/sudo: Update to 1.9.8p2
Major changes between sudo 1.9.8p2 and 1.9.8p1:

 * Fixed a potential out-of-bounds read with "sudo -i" when the
   target user's shell is bash.  This is a regression introduced
   in sudo 1.9.8.  Bug #998.

 * sudo_logsrvd now only sends a log ID for first command of a session.
   There is no need to send the log ID for each sub-command.

 * Fixed a few minor memory leaks in intercept mode.

 * Fixed a problem with sudo_logsrvd in relay mode if "store_first"
   was enabled when handling sub-commands.  A new zero-length journal
   file was created for each sub-command instead of simply using
   the existing journal file.

PR:		258666
Submitted by:	cy
Reported by:	cy
Approved by:	garga (maintainer)

(cherry picked from commit 3c5b4dac33)
2021-09-30 07:00:00 -07:00
Cy Schubert
5815766ccf security/sudo: Update to 1.9.8p1 to fix LDAP SEGFAULT
Sudo version 1.9.8 patchelevel 1 is now available which fixes a few
regressions introduced in sudo 1.9.8.

Source:
    https://www.sudo.ws/dist/sudo-1.9.8p1.tar.gz
    ftp://ftp.sudo.ws/pub/sudo/sudo-1.9.8p1.tar.gz

SHA256 checksum:
    0939ee24df7095a92e0ca4aa3bd53b2a10965a7b921d51a26ab70cdd24388d69
MD5 checksum:
    ae9c8b32268f27d05bcdcb8f0c04d461

Binary packages:
    https://www.sudo.ws/download.html#binary
    https://github.com/sudo-project/sudo/releases/tag/SUDO_1_9_8

For a list of download mirror sites, see:
    https://www.sudo.ws/download_mirrors.html

Sudo web site:
    https://www.sudo.ws/

Sudo web site mirrors:
    https://www.sudo.ws/mirrors.html

Major changes between sudo 1.9.8p1 and 1.9.8:

 * Fixed support for passing a prompt (sudo -p) or a login class
   (sudo -c) on the command line.  This is a regression introduced
   in sudo 1.9.8.  Bug #993.

 * Fixed a crash with "sudo ALL" rules in the LDAP and SSSD back-ends.
   This is a regression introduced in sudo 1.9.8.  Bug #994.

 * Fixed a compilation error when the --enable-static-sudoers configure
   option was specified.  This is a regression introduced in sudo
   1.9.8 caused by a symbol clash with the intercept and log server
   protobuf functions.

PR:		258537
Submitted by:	cy
Reported by:	Adrian Waters <draenan _ gmail_com>
Approved by:	garga (maintainer)
MFH:		2021Q3

(cherry picked from commit 549e87a5ed)
2021-09-30 09:20:54 -03:00
Kirill Ponomarev
e50f1f5b0d lang/sbcl: update to 2.1.9
(cherry picked from commit faedd9f824)
2021-09-30 08:45:31 +02:00
Alex Kozlov
e28d4d2d9d archivers/ha: Fix CVE-2015-1198
Fix directory traversal vulnerabilities (CVE-2015-1198)

Reported by:	decke

(cherry picked from commit 0e6da3c2e1)
2021-09-30 02:26:49 +00:00
Koichiro Iwao
e8a8d2eb01 devel/ruby-build: Update to 20210928
Changes:	https://github.com/rbenv/ruby-build/releases/tag/v20210928
PR:		258774
MFH:		2021Q3
Approved by:	meta (mentor)

(cherry picked from commit 8d6b60f0f5)
2021-09-30 10:17:42 +09:00
Jan Beich
28d7c589b1 graphics/mesa-devel: update to 21.2.b.2896
Changes:	e043b97704...1da70c7e93
(cherry picked from commit 8b46fac80d)
2021-09-30 00:47:07 +00:00
Jan Beich
6d9d94988e emulators/yuzu: update to s20210929
Changes:	90014ada8...b9251155f
(cherry picked from commit bfcfabc6c7)
2021-09-30 00:47:05 +00:00
Kyle Evans
9fb203bbb0 devel/nexus2-oss: fix inappropriately transcribed patch
PR:		252564
Pointyhat:	kevans
(cherry picked from commit 46599b3120)
2021-09-29 09:07:09 -05:00
Chris Hutchinson
79805f17dc x11-fm/mucommander: unbreak
PR:		258100
MFH:		2021Q3
(cherry picked from commit 4886d3afe2)
2021-09-29 20:56:25 +09:00
Christoph Moench-Tegeder
37bcc71efa www/firefox: update to 93.0 (rc1)
Releasenotes (soon):
  https://www.mozilla.org/en-US/firefox/93.0/releasenotes/

(cherry picked from commit 457aeb3d57)
2021-09-29 12:21:49 +02:00
Christoph Moench-Tegeder
f8a904a221 www/firefox-esr: update to 78.15.0 (rc1)
Releasenotes (soon):
  https://www.mozilla.org/en-US/firefox/78.15.0/releasenotes/

(cherry picked from commit 0c581d277f)
2021-09-29 12:21:22 +02:00
Torsten Zuehlsdorff
9430d87af7 lang/php80: Update from 8.0.10 to 8.0.11
Changelog:

    Core:
        Fixed bug #81302 (Stream position after stream filter removed).
        Fixed bug #81346 (Non-seekable streams don't update position after write).
        Fixed bug #73122 (Integer Overflow when concatenating strings).
    GD:
        Fixed bug #53580 (During resize gdImageCopyResampled cause colors change).
    Opcache:
        Fixed bug #81353 (segfault with preloading and statically bound closure).
    Shmop:
        Fixed bug #81407 (shmop_open won't attach and causes php to crash).
    Standard:
        Fixed bug #71542 (disk_total_space does not work with relative paths).
        Fixed bug #81400 (Unterminated string in dns_get_record() results).
    SysVMsg:
        Fixed bug #78819 (Heap Overflow in msg_send).
    XML:
        Fixed bug #81351 (xml_parse may fail, but has no error code).
    Zip:
        Fixed bug #80833 (ZipArchive::getStream doesn't use setPassword).
        Fixed bug #81420 (ZipArchive::extractTo extracts outside of destination).

Sponsored by:	Bounce Experts

(cherry picked from commit 4a295722e6)
2021-09-29 11:56:04 +02:00
Torsten Zuehlsdorff
be45b7fd0f lang/php74: Update from 7.4.23 to 7.4.24
Changelog:

    Core:
        Fixed bug #81302 (Stream position after stream filter removed).
        Fixed bug #81346 (Non-seekable streams don't update position after write).
        Fixed bug #73122 (Integer Overflow when concatenating strings).
    GD:
        Fixed bug #53580 (During resize gdImageCopyResampled cause colors change).
    Opcache:
        Fixed bug #81353 (segfault with preloading and statically bound closure).
    Shmop:
        Fixed bug #81407 (shmop_open won't attach and causes php to crash).
    Standard:
        Fixed bug #71542 (disk_total_space does not work with relative paths).
        Fixed bug #81400 (Unterminated string in dns_get_record() results).
    SysVMsg:
        Fixed bug #78819 (Heap Overflow in msg_send).
    XML:
        Fixed bug #81351 (xml_parse may fail, but has no error code).
    Zip:
        Fixed bug #81420 (ZipArchive::extractTo extracts outside of destination). (CVE-2021-21706)

Sponsored by:	Bounce Experts

(cherry picked from commit 4f8082baa8)
2021-09-29 11:55:57 +02:00
Torsten Zuehlsdorff
f821ca6641 lang/php73: Update from 7.3.30 to 7.3.31
Changelog:

Zip:

    Fixed bug #81420 (ZipArchive::extractTo extracts outside of destination). (CVE-2021-21706)

Sponsored by:	Bounce Experts

(cherry picked from commit 607fd2a936)
2021-09-29 11:55:42 +02:00
Robert Clausecker
a6dfa43d8f net/unfs3: Fix build with -fno-common (FreeBSD 13 or later)
* Update MASTER_SITES and WWW as project has moved to GitHub
* Pass maintainership to submitter
* Clean up and reformat Makefile

PR:		258326
Approved by:	meta (mentor)
MFH:		2021Q3
Differential Revision:	https://reviews.freebsd.org/D32220

(cherry picked from commit 4c35fa18e7)
2021-09-29 18:34:29 +09:00
Derek Schrock
5e019790c2 text/py-sphinxcontrib-autoprogram: require python 3.7
- Requires python 3.7 [1]

[1] https://github.com/sphinx-contrib/autoprogram/issues/47

PR:		257872
MFH:		2021Q3
(cherry picked from commit 9179bc3865)
2021-09-29 17:59:47 +09:00
Kyle Evans
07b3d79b46 devel/nexus2-oss: update to 2.14.20-02
This is primarily a secure release; 2.14.20 also includes:
- [NEXUS-25956] Signatures with ECC algorithm not being recognized

PR:		252564
Security:	b2f1f86f-20e6-11ec-a574-080027eedc6a
Security:	730e922f-20e7-11ec-a574-080027eedc6a

(cherry picked from commit 1e427d2595)
2021-09-29 00:57:34 -05:00
Kai Knoblich
70843a665d devel/py-tables: Disable AVX2 CPU optimizations
On amd64 platforms that have a CPU with Haswell New Instructions (AVX2),
related optimizations are automatically compiled in, unless this is
explicitly prevented.

If the package is then used on other amd64 platforms, that have no AVX2
support, this causes problems, because the generated .so files are
incompatible and lead to crashes with SIGILL upon invocation.

Remedy the issue by turning off AVX2 support by default which is also
upstream's default and bump PORTREVISION to force a rebuild.

PR:		258714
Reported by:	dvl (on IRC)
Reviewed by:	wen (maintainer)
Approved by:	portmgr (blanket: build fix)
MFH:		2021Q3

(cherry picked from commit f31b25e7dc)
2021-09-28 10:04:57 +02:00
Yasuhiro Kimura
8a42d3d971 devel/ruby-build: Update to 20210925
This is a leaf port and worth tool to keep up to date. So should be MFH'ed
to quarterly.

Changes:	https://github.com/rbenv/ruby-build/releases/tag/v20210925
Differential Revision: https://reviews.freebsd.org/D32140
MFH:		2021Q3
Approved by:	meta (mentor)

(cherry picked from commit 22b087cde8)
2021-09-28 14:58:18 +09:00
Jan Beich
62e907e502 graphics/mesa-devel: update to 21.2.b.2768
Changes:	db99462de6...e043b97704
(cherry picked from commit 3aec707659)
2021-09-28 00:57:14 +00:00
Jan Beich
9ea889e9cf x11-wm/river: update to s20210927
Changes:	b8ebbc2...6616d32
(cherry picked from commit 77fcdc70c8)
2021-09-28 00:57:14 +00:00
Jan Beich
c10ef27d03 emulators/yuzu: update to s20210927
Changes:	9a53173e4...90014ada8
(cherry picked from commit a9495264d1)
2021-09-28 00:57:13 +00:00
Bradley T. Hughes
647fb0e055
www/node: Update 16.6.1 -> 16.6.2
https://nodejs.org/en/blog/release/v16.6.2/

This is a security release. See
https://nodejs.org/en/blog/vulnerability/aug-2021-security-releases/

Adopt the patch from https://github.com/nodejs/node/pull/39739, since
Node.js does not build with a system installed c-ares without it.

Security:	b092bd4f-1b16-11ec-9d9d-0022489ad614
MFH:		2021Q3
Sponsored by:	Miles AS

(cherry picked from commit 3d5b3fb783)
2021-09-27 20:23:36 +00:00
Bradley T. Hughes
cc7da111a9
www/node: Update 16.6.0 -> 16.6.1
https://nodejs.org/en/blog/release/v16.6.1/

Sponsored by:	Miles AS

(cherry picked from commit 163e134d81)
2021-09-27 20:23:35 +00:00
Bradley T. Hughes
509e9332f1
www/node: Update 16.5.0 -> 16.6.0
https://nodejs.org/en/blog/release/v16.6.0/

This is a security release. See
https://nodejs.org/en/blog/vulnerability/july-2021-security-releases-2/

Security:	f53dab71-1b15-11ec-9d9d-0022489ad614
MFH:		2021Q3
Sponsored by:	Miles AS

(cherry picked from commit 91694690e5)
2021-09-27 20:23:34 +00:00
Bradley T. Hughes
45ac4b550a
www/node: Update 16.4.2 -> 16.5.0
https://nodejs.org/en/blog/release/v16.5.0/

Sponsored by:	Miles AS

(cherry picked from commit 2877919793)
2021-09-27 20:23:33 +00:00
Bradley T. Hughes
3fb5e6fd47
www/node: Update 16.4.1 -> 16.4.2
https://nodejs.org/en/blog/release/v16.4.2/

Sponsored by:	Miles AS

(cherry picked from commit b87fb39486)
2021-09-27 20:23:31 +00:00
Bradley T. Hughes
016bd82a2b
www/node: Update 16.4.0 -> 16.4.1
https://nodejs.org/en/blog/release/v16.4.1/

This is a security release. See
https://nodejs.org/en/blog/vulnerability/july-2021-security-releases/

Security:	c174118e-1b11-11ec-9d9d-0022489ad614
MFH:		2021Q3
Sponsored by:	Miles AS

(cherry picked from commit e674a048b6)
2021-09-27 20:23:30 +00:00
Bradley T. Hughes
f84542f9cf
www/node: Update 16.3.0 -> 16.4.0
https://nodejs.org/en/blog/release/v16.4.0/

Sponsored by:	Miles AS

(cherry picked from commit 22d1c3d778)
2021-09-27 20:23:29 +00:00
Bradley T. Hughes
693d288d4f
www/node: Update 16.2.0 -> 16.3.0
https://nodejs.org/en/blog/release/v16.3.0/

Sponsored by:	Miles AS

(cherry picked from commit 7bcc4cfed1)
2021-09-27 20:23:29 +00:00
Bradley T. Hughes
2685875847
www/node14: Update 14.17.5 -> 14.17.6
https://nodejs.org/en/blog/release/v14.17.6/

This is a security release. See
https://nodejs.org/en/blog/vulnerability/aug-2021-security-releases2/

Security:	7062bce0-1b17-11ec-9d9d-0022489ad614
MFH:		2021Q3
Sponsored by:	Miles AS

(cherry picked from commit 0e510f5c2f)
2021-09-27 20:19:29 +00:00
Bradley T. Hughes
69094f564e
www/node14: Update 14.17.4 -> 14.17.5
https://nodejs.org/en/blog/release/v14.17.5/

This is a security release. See
https://nodejs.org/en/blog/vulnerability/aug-2021-security-releases/

Adopt the patch from https://github.com/nodejs/node/pull/39739, since
Node.js does not build with a system installed c-ares without it.

Security:	b092bd4f-1b16-11ec-9d9d-0022489ad614
MFH:		2021Q3
Sponsored by:	Miles AS

(cherry picked from commit d361a41d06)
2021-09-27 20:19:28 +00:00
Bradley T. Hughes
8bef3bdc51
www/node14: Update 14.17.3 -> 14.17.4
https://nodejs.org/en/blog/release/v14.17.4/

This is a security release. See
https://nodejs.org/en/blog/vulnerability/july-2021-security-releases-2/

Security:	f53dab71-1b15-11ec-9d9d-0022489ad614
MFH:		2021Q3
Sponsored by:	Miles AS

(cherry picked from commit e7eff73cb3)
2021-09-27 20:19:27 +00:00
Bradley T. Hughes
754b965609
www/node14: Update 14.17.2 -> 14.17.3
https://nodejs.org/en/blog/release/v14.17.3/

Sponsored by:	 Miles AS

(cherry picked from commit 5edfe39940)
2021-09-27 20:19:26 +00:00
Bradley T. Hughes
c9c818d8d2
www/node14: Update 14.17.1 -> 14.17.2
https://nodejs.org/en/blog/release/v14.17.2/

This is a security release. See
https://nodejs.org/en/blog/vulnerability/july-2021-security-releases/

Security:	c174118e-1b11-11ec-9d9d-0022489ad614
MFH:		2021Q3
Sponsored by:	Miles AS

(cherry picked from commit cbc1577a29)
2021-09-27 20:15:47 +00:00
Bradley T. Hughes
dd69becb05
www/node14: Update 14.17.0 -> 14.17.1
https://nodejs.org/en/blog/release/v14.17.1/

Drop files/patch-deps_v8_src_objects_js-list-format.cc since the change
has been upstreamed along with the ICU minimum version bump.

Sponsored by:	Miles AS

(cherry picked from commit 6cc50a438b)
2021-09-27 20:15:32 +00:00
Jan Beich
b519e329d6 graphics/vulkan-extension-layer: update to 1.2.193
Changes:	https://github.com/KhronosGroup/Vulkan-ExtensionLayer/compare/v1.2.191...v1.2.193
Reported by:	portscout

(cherry picked from commit ea81c720a8)
2021-09-27 17:17:12 +00:00
Mathieu Arnold
8ecddd296f
dns/bind916: update to 9.16.21
Changes:	https://downloads.isc.org/isc/bind9/9.16.21/doc/arm/html/notes.html#notes-for-bind-9-16-21
(cherry picked from commit fccfb7d497)
2021-09-27 15:17:16 +02:00
Li-Wen Hsu
346b04c874
x11/luit: Update MASTER_SITES
Add "/pub" which is the canonical path in FTP as site owner suggested
Add the HTTP master site as submitter suggested

PR:		258741
Reported by:	bas@area536.com
MFH:		2021Q3

(cherry picked from commit 9abd1e471d)
2021-09-27 16:52:39 +08:00
Kirill Ponomarev
5d43b9a8ef www/miniflux: update to 2.0.33
(cherry picked from commit ecfff71243)
2021-09-26 09:23:36 +02:00