Commit Graph

561141 Commits

Author SHA1 Message Date
Jan Beich
8133b76614 x11-wm/wayfire-plugins-extra: enable dbus and windecor plugins
(cherry picked from commit f081b8b768)
2021-12-20 14:46:32 +00:00
Dmitry Wagin
1fcdc643b4
devel/zookeeper: Update log4j to 2.17
Fix CVE-2021-45105

PR:		260570
(cherry picked from commit fd1a56edee)
2021-12-20 22:17:38 +08:00
Matthew Seaman
1e810df643 www/grafana8: remove duplicates from distinfo
The Azure go-autorest project (https://github.com/Azure/go-autorest)
provides several go modules within the same tarball, but the Grafana
code requires different commits for several of those modules, hence
the same source appearing multiple times at different commmit hashes
in distinfo.

Unfortunately, with grafana 8.3.3, three of the go-autorest modules
required the same commit hash, leading to duplication in the distinfo.
This causes a problem when trying to download the distfiles the first
time -- a number of the downloads will fail.  Repeatedly attempting to
download will succeed for one more of the various different versions
of the go-autorest distfile, until eventually everything has been
successfully downloaded.

Remove the duplicate items in distinfo so that first-time download
into a virgin distfiles directory does succeed.	 This means that the
result of `make makesum` cannot be used un-edited.

PR:		260537
Reported by:	John D.

(cherry picked from commit dcd67527ab)
2021-12-19 23:59:02 +00:00
Matthew Seaman
36698615c5 www/grafana8: update to 8.3.3
Update to 8.3.2 with moderate severity security fix (
https://grafana.com/blog/2021/12/10/grafana-8.3.2-and-7.5.12-released-with-moderate-severity-security-fix/
)

ChangeLog:	https://github.com/grafana/grafana/releases/tag/v8.3.2

Update to 8.3.3

Changelog:	https://github.com/grafana/grafana/releases/tag/v8.3.3

PR:		260401, 260358
Reported by:	Boris Korzun (maintainer), ohauer
Security:	c2a7de31-5b42-11ec-8398-6c3be5272acd
Security:	a994ff7d-5b3f-11ec-8398-6c3be5272acd

(cherry picked from commit 352b384cbd)
2021-12-19 23:55:51 +00:00
Christoph Moench-Tegeder
fb24a4d28d www/firefox: update to 95.0.2
Release Notes:
  https://www.mozilla.org/en-US/firefox/95.0.2/releasenotes/

(cherry picked from commit b1799d523a)
2021-12-19 21:55:12 +01:00
Jan Beich
300ff0bdde emulators/citra: update to s20211218
Changes:	28039d39a...0126ecb3e
(cherry picked from commit 18a382b734)
2021-12-19 00:19:49 +00:00
Jan Beich
01d7f72769 emulators/citra: update to s20211212
Changes:	5a7d80172...28039d39a
(cherry picked from commit 772274a15b)
2021-12-19 00:19:44 +00:00
Jan Beich
17cb2a53a1 emulators/yuzu: update to s20211218
Changes:	a2fb5a13b...8e33cf1c2
(cherry picked from commit 097b6241bb)
2021-12-19 00:18:47 +00:00
Jan Beich
adacebd7f3 emulators/yuzu: update to s20211202
Changes:	8a613f6c8...a2fb5a13b
(cherry picked from commit 4d27418c2e)
2021-12-19 03:18:38 +03:00
Jan Beich
e2bfc2e23e emulators/yuzu: update to s20211130
Changes:	051e63c9a...8a613f6c8
(cherry picked from commit 6b914238cc)
2021-12-19 03:18:38 +03:00
Jan Beich
6001333a94 emulators/yuzu: update to s20211129
Changes:	564f10527...051e63c9a
(cherry picked from commit c196bfdf71)
2021-12-19 03:18:38 +03:00
Jan Beich
440a957b91 emulators/yuzu: update to s20211127
Changes:	157985f55...564f10527
(cherry picked from commit ff9778994a)
2021-12-19 03:18:38 +03:00
Jan Beich
04b816c059 emulators/yuzu: update to s20211126
Changes:	cd6cf0422...157985f55
(cherry picked from commit bb5255ef22)
2021-12-19 03:18:38 +03:00
Jan Beich
0b1e70732d emulators/yuzu: update to s20211124
Changes:	daecbd3a7...cd6cf0422
(cherry picked from commit 5ed03a0d6d)
2021-12-19 03:18:38 +03:00
Tobias C. Berner
8bf5428a44 x11-toolkits/qt5-quick3d: switch to use bundled assimp
Quick3d is at the moment not compatible with assimp-5.1.0. In poudriere,
due to assimp not being available, the port was already built with the
bundled assimp version.

For builds in a non-clean-room environment, explitely specify, that we
want the bundled one too.

PR:		260355
Reported by:	Bertrand Petit <bsdpr@phoe.frmug.org>

(cherry picked from commit b452cf359e)
2021-12-18 18:39:34 +01:00
Kurt Jaeger
f5ba47a031 www/mod_perl2: fix build with perl >= 5.33.7
- patch from upstream
  916376b455

PR:		260511
Approved by:	fluffy

(cherry picked from commit fb780db214)
2021-12-18 17:15:15 +01:00
Dmitry Wagin
113de59fd2
devel/zookeeper: Update log4j to 2.16
Fix CVE-2021-44228 / CVE-2021-45046

PR:		260481
(cherry picked from commit afc7a8e483)
2021-12-19 00:12:42 +08:00
Jan Beich
42934f25e4 emulators/rpcs3: update to 0.0.19.13106
Changes:	43b7d1fe9...18f59d3be
(cherry picked from commit 052974c802)
2021-12-18 00:29:55 +00:00
Christoph Moench-Tegeder
05eaaf1c8c mail/thunderbird: update to 91.4.1 (rc1)
Release Notes (soon):
  https://www.thunderbird.net/en-US/thunderbird/91.4.1/releasenotes/

(cherry picked from commit 9ce6c757c9)
2021-12-17 17:25:45 +01:00
Adriaan de Groot
4c2c034e21 x11-toolkits/qt5-declarative: fix testlib-build-failures
Since Qt5 testlib tries to be a build-dependency only when
needed, and since we build the QML bits without installing
the corresponding test-tools, declarative had the following
problem:
- without testlib installed, would build fine
- with testlib installed, would assume the QML test bits
  are available, and then fail in the build.

This is basically our split-up-packaging without subpackages
shooting us in the foot; fix the build by removing one more
place where testlib leads to the building-of-tests. (The existing
patch files/patch-src_src.pro does something similar)

PR:		257102 260433
Reported by:	Frank Reisert, Philipp Ost

(cherry picked from commit 9224581a10)
2021-12-17 14:13:47 +01:00
Kirill Ponomarev
2a1298c5b8 devel/py-tiamat: Update to 7.10.3
(cherry picked from commit c3d24a0a9f)
2021-12-17 09:26:19 +01:00
Kirill Ponomarev
33ecc5c685 devel/py-pop: Update to 20.1.1
(cherry picked from commit d94546ce69)
2021-12-17 09:23:13 +01:00
Kirill Ponomarev
5ec61b5e66 devel/py-pop-config: Update to 8.0.2
(cherry picked from commit ba2296eba8)
2021-12-17 09:19:58 +01:00
Kirill Ponomarev
0c47122451 sysutils/py-dict-toolbox: Update to 2.1.2
(cherry picked from commit 4d0782d288)
2021-12-17 09:16:07 +01:00
Kirill Ponomarev
6d9c34ca36 www/miniflux: Update to 2.0.34
(cherry picked from commit 4b750e33a6)
2021-12-17 09:09:12 +01:00
Jan Beich
465a1177ab net/wayvnc: update to 0.4.1
Changes:	https://github.com/any1/wayvnc/releases/tag/v0.4.1
Reported by:	GitHub (watch releases)

(cherry picked from commit c7dbfbd90d)
2021-12-17 04:02:30 +00:00
Jan Beich
4c3fced875 www/youtube_dl: update to 2021.12.17
Changes:	https://github.com/ytdl-org/youtube-dl/releases/tag/2021.12.17
Reported by:	GitHub (watch releases)

(cherry picked from commit 347de090b9)
2021-12-17 04:02:30 +00:00
Matthias Fechner
44e1143696 textproc/apache-solr: security update to 8.11.1
Updates bundled log4j2 dependencies to address CVE-2021-44228 (SOLR-15843)
Upgrade jaegertracing to 1.6.0 and libthrift to 0.14.1 to address CVE-2020-13949 (SOLR-15324)

Changelog:
https://cwiki.apache.org/confluence/display/SOLR/ReleaseNote8_11_1

PR:		260373
MFH:		2021Q4
Security:	66cf7c43-5be3-11ec-a587-001b217b3468
(cherry picked from commit bbfc927ee0)
2021-12-16 23:54:44 +01:00
Juraj Lutter
108a7ce68e net-mgmt/unifi6: Update to 6.5.55
This is a security release, bundling the latest log4j library.

Release notes: https://community.ui.com/releases/r/network/6.5.55

(cherry picked from commit b5068e3392)
2021-12-16 17:19:02 +01:00
Christoph Moench-Tegeder
37dcf180ca www/firefox-esr: update to 91.4.1
Release Notes (soon):
  https://www.mozilla.org/en-US/firefox/91.4.1/releasenotes/

(cherry picked from commit e5ff61315b)
2021-12-16 14:33:25 +01:00
Christoph Moench-Tegeder
107e16bf4c www/firefox: update to 95.0.1
Release Notes (soon):
  https://www.mozilla.org/en-US/firefox/95.0.1/releasenotes/

(cherry picked from commit 01ec19a5fd)
2021-12-16 14:09:47 +01:00
Kyle Evans
dde2a8ee71 games/gzdoom: bump PORTREVISION after 446e0f2e6c
Pointy hat:	kevans
2021-12-15 23:46:12 -06:00
Kyle Evans
446e0f2e6c games/gzdoom: fix wildmidi crash
get_patch_data() may recurse on itself, which is not OK to do while
using std::lock_guard<>.  Move the contents of get_patch_data() to a
get_patch_data_locked() that may recurse on itself.

This is a direct commit to quarterly, as this has since been fixed by
the version present in main.  Specifically, a later refactoring ends up
dropping the patch_lock entirely after get_patch_data() and friends are
pushed into an Instruments class anyways.

Based on triage work and an initial patch by wpaul@.
2021-12-15 23:40:55 -06:00
Daniel O'Connor
0a7ee2e927
sysutils/pefs-kmod: Add aarch64 to the list of supported architectures
PR:		260463
(cherry picked from commit 39829be244)
2021-12-16 09:03:25 +07:00
Jan Beich
24eccd506b emulators/rpcs3: update to 0.0.19.13104
Changes:	2f93df480...43b7d1fe9
(cherry picked from commit 314e01781b)
2021-12-16 00:32:34 +00:00
Jan Beich
31301a26ed x11-servers/xwayland-devel: update to 21.0.99.1.149
Changes:	d189102c7...6c1a1fcc4
(cherry picked from commit 58f041b842)
2021-12-15 21:46:36 +03:00
Jan Beich
1765f0ae85 x11-servers/xwayland-devel: unbreak fetch due to repo shrink
fetch: https://github.com/freedesktop/xorg-xserver/commit/42e34498f87a.patch: size mismatch: expected 10310, actual 10298

-index 37c39497c3..f0f9d748aa 100644
+index 37c39497c..f0f9d748a 100644
-index 0000000000..1668dda570
+index 000000000..1668dda57
-index 0000000000..be8fb39d92
+index 000000000..be8fb39d9
-index b249dbb083..ddf6336565 100644
+index b249dbb08..ddf633656 100644
-index f04d431c74..e1e610f87d 100644
+index f04d431c7..e1e610f87 100644
-index 21587dbb64..7a02515044 100644
+index 21587dbb6..7a0251504 100644
-index 16c13fb64e..508294c6c6 100644
+index 16c13fb64..508294c6c 100644
-index 672647f713..bb0a71f8db 100644
+index 672647f71..bb0a71f8d 100644
-index d2fa4e0bb2..9c3ab32d2a 100644
+index d2fa4e0bb..9c3ab32d2 100644
-index 74a46994fe..919a227680 100644
+index 74a46994f..919a22768 100644
-index ddf6336565..3dd8446b31 100644
+index ddf633656..3dd8446b3 100644
-index e1e610f87d..594140301f 100644
+index e1e610f87..594140301 100644
-index 00f161eda0..1b2487c077 100644
+index 00f161eda..1b2487c07 100644
-index 508294c6c6..a88a3d3116 100644
+index 508294c6c..a88a3d311 100644
-index 69c02dce42..6a06708924 100644
+index 69c02dce4..6a0670892 100644
-index 1b2487c077..ed3903853f 100644
+index 1b2487c07..ed3903853 100644

(cherry picked from commit 4055fc841f)
2021-12-15 21:46:35 +03:00
Jan Beich
5506c30b63 x11-servers/xwayland-devel: update to 21.0.99.1.143
Changes:	089e7f98f...d189102c7
(cherry picked from commit 38afa36fcb)
2021-12-15 21:46:35 +03:00
Jan Beich
1d5fa1a815 x11-servers/xwayland-devel: update to 21.0.99.1.142
Changes:	0146fd6d3...089e7f98f
(cherry picked from commit 2f71913be4)
2021-12-15 21:46:35 +03:00
Jan Beich
42273dfcd6 x11-servers/xwayland-devel: update to 21.0.99.1.136
Changes:	04c93b98e...0146fd6d3
(cherry picked from commit 0207e5a408)
2021-12-15 21:46:35 +03:00
Jan Beich
2d2c722d14 x11-servers/xwayland-devel: update to 21.0.99.1.133
Changes:	80eeff3eb...04c93b98e
(cherry picked from commit d684832c1a)
2021-12-15 21:46:35 +03:00
Jan Beich
dc70366390 devel/sdl12-compat: update to s20211214
Changes:	8743305...8f54fd8
(cherry picked from commit f3127bd16f)
2021-12-15 18:43:43 +00:00
Jan Beich
7c2c2c0b9a x11/swaync: update to s20211214
Changes:	75894f5...f0c3918
(cherry picked from commit 5d56a8c6b6)
2021-12-15 18:43:43 +00:00
Jan Beich
4c50eda2cc games/openra: update IP2Location LITE to October snapshot
(cherry picked from commit 9505d5d44f)
2021-12-15 18:43:30 +00:00
Jan Beich
05735c1f46 games/openra: unbreak fetch due to repo shrink
fetch: https://github.com/openra/OpenRA/commit/e13fd693c386.patch: size mismatch: expected 71620, actual 71562

This reverts commit d5ecb8f8af.

(cherry picked from commit 8e8ef5a07c)
2021-12-15 18:43:29 +00:00
Jan Beich
1128782f31 games/openbor*: unbreak fetch due to repo shrink
fetch: https://github.com/DCurrent/openbor/commit/794ba23189a3.patch: size mismatch: expected 1278, actual 1276
fetch: https://github.com/DCurrent/openbor/commit/731d96887795.patch: size mismatch: expected 1293, actual 1291

This reverts commit aab0ad0d4a.

(cherry picked from commit dda2183658)
2021-12-15 18:43:29 +00:00
Mathieu Arnold
ea81d41cfb
dns/bind916: fix runnaway memory leak
Obtained from:	https://gitlab.isc.org/isc-projects/bind9/-/merge_requests/5626

(cherry picked from commit 925b730fbf)
2021-12-15 17:02:39 +01:00
Mathieu Arnold
f1581521a0
dns/bind916: update to 9.16.24
(cherry picked from commit 0090b81b1f)
2021-12-15 17:02:31 +01:00
Mathieu Arnold
9bc7725a63
dns/bind916: update to 9.16.23
Changes:	https://downloads.isc.org/isc/bind9/9.16.23/doc/arm/html/notes.html#notes-for-bind-9-16-23
(cherry picked from commit 72c2245218)
2021-12-15 17:02:22 +01:00
Fabian Keil
62a44ce069 www/privoxy: Update to 3.0.33 stable
This update fixes a couple of security issues. Quoting the ChangeLog:

    - Security/Reliability:
      - cgi_error_no_template(): Encode the template name to prevent
        XSS (cross-side scripting) when Privoxy is configured to servce
        the user-manual itself.
        Commit 0e668e9409c. OVE-20211102-0001. CVE-2021-44543.
        Reported by: Artem Ivanov
      - get_url_spec_param(): Free memory of compiled pattern spec
        before bailing.
        Reported by Joshua Rogers (Opera) who also provided the fix.
        Commit 652b4b7cb0. OVE-20211201-0003. CVE-2021-44540.
      - process_encrypted_request_headers(): Free header memory when
        failing to get the request destination.
        Reported by Joshua Rogers (Opera) who also provided the fix.
        Commit 0509c58045. OVE-20211201-0002. CVE-2021-44541.
      - send_http_request(): Prevent memory leaks when handling errors
        Reported by Joshua Rogers (Opera) who also provided the fix.
        Commit c48d1d6d08. OVE-20211201-0001. CVE-2021-44542.

The complete list of changes is available at:
https://lists.privoxy.org/pipermail/privoxy-announce/2021-December/000009.html

PR:		260290
MFH:		2021Q4
Security:	897e1962-5d5a-11ec-a3ed-040e3c3cf7e7
(cherry picked from commit dec093e215)
2021-12-14 20:04:55 -08:00