Commit Graph

579441 Commits

Author SHA1 Message Date
VVD
cbc9cfb51d www/tomcat10: Update to 10.0.20
Harden the class loader to provide a mitigation for CVE-2022-22965
a Spring Framework vulnerability: Effectively disable the
WebappClassLoaderBase.getResources() method as it is not used and
if something accidently exposes the class loader this method can be used to gain
access to Tomcat internals.

Changes: https://tomcat.apache.org/tomcat-10.1-doc/changelog.html#Tomcat_10.1.0-M14_(markt)

PR:		262975
2022-04-01 12:57:06 +02:00
VVD
e9395fe9f8 www/tomcat9: Update to 9.0.62
Harden the class loader to provide a mitigation for CVE-2022-22965
a Spring Framework vulnerability: Effectively disable the
WebappClassLoaderBase.getResources() method as it is not used and
if something accidently exposes the class loader this method can be used to gain
access to Tomcat internals.

Changes: https://tomcat.apache.org/tomcat-9.0-doc/changelog.html#Tomcat_9.0.62_(remm)

PR:		262975
2022-04-01 12:57:05 +02:00
VVD
8126f2d8db www/tomcat85: Update to 8.5.78
Harden the class loader to provide a mitigation for CVE-2022-22965
a Spring Framework vulnerability: Effectively disable the
WebappClassLoaderBase.getResources() method as it is not used and
if something accidently exposes the class loader this method can be used to gain
access to Tomcat internals.

Changes: https://tomcat.apache.org/tomcat-8.5-doc/changelog.html#Tomcat_8.5.78_(markt)

PR:		262975
2022-04-01 12:57:05 +02:00
phil
85cb635b5f lang/snobol4: Update to 2.3.1
Changes: http://www.regressive.org/snobol4/csnobol4/2.3/History

PR:		262813
2022-04-01 12:40:21 +02:00
Adam Weinberger
bc43a03179 editors/vim: Update to 8.2.4659 2022-04-01 03:50:54 -06:00
Michael Muenz
fbee5420ab net/py-pcapy-ng: Update to 1.0.7
PR:		262974
2022-04-01 11:45:31 +02:00
Muhammad Moinur Rahman
16e48a3e79 security/libprelude: Resurrect
Update to latest release 5.2.0
2022-04-01 03:40:50 -05:00
Muhammad Moinur Rahman
2a2c74f5b2 finance/py-stripe: Update version 2.67.0=>2.70.0
Relnotes:
https://github.com/stripe/stripe-python/blob/master/CHANGELOG.md
2022-04-01 03:40:50 -05:00
Daniel Menelkir
a1087ccda0 audio/strawberry: Update to 1.0.3
PR:	262919
Reported by:	dmenelkir@gmail.com (maintainer)
2022-04-01 09:55:42 +02:00
Matthias Fechner
c02349a659 cleanup: Remove expired ports:
textproc/rubygem-diffy330

Obsolete, please use textproc/rubygem-diffy
2022-04-01 09:38:34 +02:00
TAKATSU Tomonari
1795f00f39 devel/R-cran-vctrs: Update to 0.4.0 2022-04-01 07:09:01 +00:00
Robert Clausecker
60c5972553 graphics/lux: Add new port
lux is an image viewer for 'normal' images and the most common types of
panoramic images, typically showing a 'rectilinear' view to the image
data, which looks as if this view had been taken with an 'ordinary'
lens.  The view can be zoomed, panned, scrolled, rotated and modified in
several ways.  lux displays images, it does not modify them.  But it can
produce high-quality images from the view it shows.  lux can also
produce synoptic views of several images and do stitching, HDR blending,
exposure fusions, focus stacks and deghosting, usually from 'PTO' files,
processing a subset of the panotools standard used by panorama stitching
software like hugin.

WWW: https://bitbucket.org/kfj/pv

PR:		262943
2022-04-01 07:38:53 +02:00
TAKATSU Tomonari
a30c5e20ea math/R-cran-spdep: Update to 1.2-3 2022-04-01 05:35:29 +00:00
Yasuhiro Kimura
f646a017a4 devel/ice: Fix build with Berkeley DB 18.x
PR:		262930
Tested by:	grembo
Approved by:	grembo (maintainer)
2022-04-01 14:32:59 +09:00
Yasuhiro Kimura
e733a030f5 devel/forge-devel: Update to latest snapshot
Changes:	0f43617...c2d21a3
2022-04-01 14:32:55 +09:00
Yasuhiro Kimura
ee90d9bdd4 devel/magit-devel: Update to latest snapshot
Changes:	0f96d398...6a5c79fd
2022-04-01 14:32:51 +09:00
Yasuhiro Kimura
3a8eaac4dd databases/redis-devel: Update to latest snapshot
Changes:	4a45386...b8eb2a7
2022-04-01 14:32:46 +09:00
Yasuhiro Kimura
211bfe6366 devel/rubygem-debug: Update to 1.5.0
ChangeLog:	https://github.com/ruby/debug/releases/tag/v1.5.0
2022-04-01 14:32:39 +09:00
Li-Wen Hsu
75f7f6f29f
net/wireproxy: Update to 1.0.0 2022-04-01 12:33:48 +08:00
Alexey Dokuchaev
3d3c1deeb4 sysutils/squashfs-tools-ng: new port had been added (+)
This project originally started out as a fork of squashfs-tools 4.3,
after encountering some short comings and realizing that there have
been no updates on the SourceForge site or mailing list for a long
time.  Even before the first public release, the fork was replaced
with a complete re-write after growing frustrated with the existing
code base.

The utilities provided by squashfs-tools-ng offer alternative tooling
and are intentionally named differently, so both packages can be
installed side by side.

WWW: https://infraroot.at/projects/squashfs-tools-ng/
2022-04-01 04:27:46 +00:00
Jan Beich
6122e74dd2 multimedia/libva-intel-media-driver: update to 22.3.1
Changes:	https://github.com/intel/media-driver/compare/intel-media-22.3.0...intel-media-22.3.1
Reported by:	Repology
2022-04-01 04:15:58 +00:00
Jan Beich
a0b7678e33 www/flexget: update to 3.3.7
Changes:	https://github.com/Flexget/Flexget/compare/v3.3.6...v3.3.7
Reported by:	Repology
2022-04-01 04:15:34 +00:00
Mitchell Clay
9478a8c169 emulators/gxemul: Update to 0.7.0 and take maintainership
Changelog:	http://gavare.se/gxemul/gxemul-stable/doc/RELEASE.html

PR:		261874
2022-04-01 00:12:21 -04:00
Guangyuan Yang
1336dfe4a2 finance/R-cran-tseries: Update to 0.10-50 2022-04-01 00:11:57 -04:00
Guangyuan Yang
a58d5b1561 security/openfortivpn: Update to 1.17.2
Changelog:	https://github.com/adrienverge/openfortivpn/blob/master/CHANGELOG.md#1172
2022-04-01 00:11:37 -04:00
Glen Barber
908a373471 misc/freebsd-release-manifests: prune 13.1-BETA3
Sponsored by:	Rubicon Communications, LLC ("Netgate")
2022-03-31 21:15:27 -04:00
Glen Barber
5b00c04f75 misc/freebsd-release-manifests: Add 13.1-RC1
Sponsored by:	Rubicon Communications, LLC ("Netgate")
2022-03-31 21:08:55 -04:00
Joseph Mingrone
b3a08eedd7
editors/emacs-devel: Update to 2022-03-31 commit, c5af19c
7829f1b...c5af19c

Sponsored by:	The FreeBSD Foundation
2022-03-31 19:33:10 -03:00
Rene Ladan
3a54959a32 emulators/kcemu: spell "DEPRECATED" correctly 2022-04-01 00:21:53 +02:00
Rene Ladan
564ba8cabd audio/tuxguitar: expire on 2022-06-30 for devel/itext 2022-03-31 23:49:28 +02:00
Rene Ladan
d5fb968ee0 deskutils/osmo: expire on 2022-06-30, needs security/libgringotts 2022-03-31 23:48:15 +02:00
Rene Ladan
e40996d93e multimedia/lives: drop OPTION for expired multimedia/schroedinger 2022-03-31 23:46:22 +02:00
Rene Ladan
a569d97b38 emulators/kcemu: expire on 2022-06-30, needs multimedia/schroedinger 2022-03-31 23:43:21 +02:00
Rene Ladan
4f00068249 multimedia/ccextractor: fix expiration date 2022-03-31 23:42:55 +02:00
Rene Ladan
32fc5d2bb3 multimedia/ccextractor: expire for 2021-06-30, needs multimedia/schroedinger 2022-03-31 23:40:12 +02:00
Rene Ladan
23692fba5f multimedia/libquicktime: drop OPTION for expired multimedia/schroedinger 2022-03-31 23:39:11 +02:00
Jung-uk Kim
550147cf95 sysutils/acpica-tools: Update to 20220331
https://acpica.org/node/199
2022-03-31 17:36:46 -04:00
Rene Ladan
0ad3bc4d9f cleanup: Remove expired ports:
2022-03-31 devel/hadoop2: Depends on expired devel/maven3
databases/opentsdb
2022-03-31 databases/hbase: Outdated, unsupported by upstream since June 2019 (upstream is at 2.3 and higher)
2022-03-31 23:33:55 +02:00
Brooks Davis
27c74dce89 devel/llvm-devel: Fix plist without EXTRAS
The clang-pseudo program is provided by clang-tools-extras (the
EXTRAS option), but was incorrectly tagged as part of CLANG.
This also broke the lite flavor.
2022-03-31 22:26:06 +01:00
Rene Ladan
f8dea99712 MOVED: fix duplicate entry for java/apache-commons-discovery
Reported by:	ler
2022-03-31 23:08:25 +02:00
Rene Ladan
00fe726856 cleanup: Remove expired ports:
2022-03-31 security/hashcat-legacy: Unsupported upstream, please consider using security/hashcat
2022-03-31 security/razorback-masterNugget: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 security/razorback-syslogNugget: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 security/pxytest: Abandonware, last release around 2003, dead upsteam and unfetchable
2022-03-31 security/razorback-api: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 23:06:58 +02:00
Rene Ladan
34eabd5edc cleanup: Remove expired ports:
2022-03-31 devel/spark: Depends on expired devel/maven33

This should fix INDEX again.

There are PRs to update this port and import hadoop3.
2022-03-31 22:52:40 +02:00
Yuri Victorovich
4fd527f812 devel/spark: Release maintainership 2022-03-31 13:47:24 -07:00
Dima Panov
96dc13babd databases/adodb5: update to 5.22.1 release
Changelog:	https://github.com/ADOdb/ADOdb/blob/v5.22.1/docs/changelog.md
2022-03-31 23:36:04 +03:00
Rene Ladan
97cf09b1df cleanup: Remove expired ports:
2022-03-31 security/revealrk: Deprecate, marked BROKEN on 12+ in 2018
2022-03-31 devel/apache-commons-modeler: Abandoned upstream, last release in 2013
2022-03-31 security/afl: Abandoned upstream, no new release since 2017. Please consider using security/afl++ instead
2022-03-31 www/mod_line_edit: Abandoned upstream, last release in 2006, Apache includes mod_sed
2022-03-31 www/myfaces: Unsupported by upstream, released in 2005
2022-03-31 www/mod_backtrace: Abandoned upstream in 2012 (version 2.0)
2022-03-31 security/base: Broken with PHP 7+, forked here https://github.com/NathanGibbs3/BASE/
2022-03-31 security/find-zlib: Deprecated, no longer relevant
2022-03-31 security/razorback-clamavNugget: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 security/shimmer: Abandonware, last release in 2008
2022-03-31 security/kripp: Abandonware, upstream returns 404 and last release was back in 2007
2022-03-31 security/ipfilter2dshield: Abandonware, no word of it on upstream web site
2022-03-31 security/sha: Obsolete, we have tools in base
2022-03-31 security/gputty: Unfetchable, dead upstream
2022-03-31 java/apache-commons-discovery: Abandoned upstream, last release in 2006
2022-03-31 www/geronimo: Port outdated, unsupported upstream and depends on deprecated software
2022-03-31 security/isakmpd: 15+ years old and broken on multiple versions
2022-03-31 security/razorback-swfScanner: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 devel/hadoop: Outdated, unsupported upstream
2022-03-31 java/apache-commons-primitives: Abandoned upstream, last release in 2003
2022-03-31 security/l5: Abandonware, broken on amd64 for 10+ years
2022-03-31 security/unicornscan: Very outdated and abandoned, current version in tree was released in 2004 and last release by upstream in Aug 2013. Please consider using security/nmap or security/rustscan
2022-03-31 security/gringotts: Abandonware, upstream dead and last release in 2009
2022-03-31 security/axTLS: Very outdated and abandoned, current version in tree was released in 2013 and last by upstream in 2019
2022-03-31 security/shttpscanner: Abandonware, last release in 2006
2022-03-31 security/sniff: Abandonware, last release around 2000 and dead upstream. Please consider using net/wireshark
2022-03-31 security/razorback-archiveInflate: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 security/scanssh: Abandonware, last release in 2005. Please consider using security/nmap or security/rustscan
2022-03-31 security/symbion-sslproxy: Abandonware, last release in 2009 and inactive upstream
2022-03-31 security/manipulate_data: Abandonware, unsupported upstream
2022-03-31 security/vinetto: Obsolete, targets deprecated Windows operating systems such as XP and 2003 Server
2022-03-31 security/pbnj: Abandonware, last release in 2006 and reported broken upstream in 2017 upstream
2022-03-31 databases/jasperreports: Unsupported by upstream, released in 2013
2022-03-31 security/retranslator: Deprecated upstream (EOL)
2022-03-31 security/cp2fwb: Abandonware, used with deprecated software Firewall Builder.
2022-03-31 security/webscarab: Deprecated by upstream in 2014
2022-03-31 security/pscan: Abandonware, last release in 2000
2022-03-31 security/vnccrack: Outdated and abandoned, last release in 2008. Upstream is at 2.1 while version in ports is 1.0.0
2022-03-31 security/doscan: Abandonware, last release in 2014. Please consider using security/masscan or sysutils/pnscan
2022-03-31 security/radamsa: Abandonware, last release in 2017 and marked as BROKEN in late 2020
2022-03-31 security/trinokiller: Abandonware, dead upstream
2022-03-31 security/spybye: Abandonware, last release in 2008 and no upstream development
2022-03-31 security/razorback-officeCat: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 textproc/crimson: Deprecated by upstream 2010-08-06
2022-03-31 security/tripwire-131: Deprecated, please consider using security/tripwire instead
2022-03-31 security/bruteforceblocker: Abandonware, please consider using security/sshguard
2022-03-31 security/razorback-fsMonitor: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 security/tlswrap: Abandonware, last release in 2007 and dead upstream
2022-03-31 security/sslsniffer: Abandonware, last release in 2001. Please consider using security/sslsplit or security/sslproxy
2022-03-31 security/strobe: Abandonware, last release around 2000 and dead upstream. Please consider using security/nmap or security/rustscan
2022-03-31 security/amap: Abandoned upstream, no new release for 10+ years. Please consider using security/nmap or security/rustscan
2022-03-31 security/ppars: Abandonware, no word of it on upstream web site
2022-03-31 security/zebedee: Abandonware, last release in 2005 and runtime issues reported upstream
2022-03-31 security/matrixssl: Abandonware, dead upstream
2022-03-31 security/razorback-virusTotal: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 security/stud: Abandonware, marked BROKEN on 12+ in 2019
2022-03-31 security/sslwrap: Abandonware, marked BROKEN on 12+ in 2019
2022-03-31 security/dcetest: Targets deprecated protocol by Microsoft in favour of .NET
2022-03-31 security/l0phtcrack: Obsolete, Microsoft LANMAN and NT password hashes are deprecated
2022-03-31 security/slurpie: Abandonware, last release around 2000 and dead upstream
2022-03-31 security/ike: Abandonware, last release in 2013 and IKEv1 is considered to be insecure
2022-03-31 security/mussh: Abandonware, last release in 2011 please consider using security/teleport
2022-03-31 security/razorback-fsWalk: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 security/hackbot: Abandonware, last release in 2003. Please consider using security/nmap or security/rustscan
2022-03-31 security/phpsecinfo: Abandonware, last release in 2006
2022-03-31 security/libpreludedb: Very outdated, current version in tree was released back in 2015 and upstream is still active
2022-03-31 security/ipfw2dshield: Abandonware, no word of it on upstream web site
2022-03-31 security/razorback-fileInject: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 security/gwee: Abandonware, last release 15+ years ago and dead upstream
2022-03-31 security/pktsuckers: Abandonware, last release from somewhere around 1999
2022-03-31 security/slush: Obsolete, listed as alpha quality, last release around 2000 and dead upstream
2022-03-31 security/integrit: Abandonware, last release in 2003
2022-03-31 security/razorback-pdfFox: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 security/razorback-yaraNugget: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 security/hlfl: Abandonware, last release in 2003
2022-03-31 security/jbrofuzz: Abandonware, no word of it on upstream web site and last release was 10 years ago
2022-03-31 security/libpwstor: Abandonware, last release in 2008
2022-03-31 security/smtpscan: Abandonware, last release in 2003 and dead upstream. Please consider using security/nmap
2022-03-31 security/cisco-torch: Abandonware, dead upstream
2022-03-31 security/amavis-stats: Abandoned, upstream is dead and last release was back in 2005
2022-03-31 textproc/lucene4: Unsupported by upstream, released in 2015
2022-03-31 java/apache-commons-discovery: Abandoned upstream, last release in 2006
2022-03-31 devel/liballium: Abandonware, last release in 2014 and upstream is dead
2022-03-31 www/sakai: Depends on expired www/tomcat7
2022-03-31 graphics/deegree-wpvs: Depends on expired www/tomcat7
2022-03-31 graphics/deegree-igeoportal: Depends on expired www/tomcat7
2022-03-31 www/jspwiki: Depends on expired www/tomcat7
2022-03-31 graphics/deegree-wcs: Depends on expired www/tomcat7
2022-03-31 graphics/deegree-csw: Depends on expired www/tomcat7
2022-03-31 graphics/deegree-wms: Depends on expired www/tomcat7
2021-12-31 www/tomcat7: Tomcat 7 is EOL on 2021-03-31. Please upgrade to a later version
2022-03-31 devel/gitblit: Depends on expired www/tomcat7
2022-03-31 graphics/barbecue: Depends on expired www/tomcat7
2022-03-31 graphics/deegree-wfs: Depends on expired www/tomcat7
2022-03-31 graphics/deegree-wps: Depends on expired www/tomcat7
2022-03-31 sysutils/rubygem-smart_proxy_chef: Depends on expired sysutils/rubygem-chef-api
2021-12-31 sysutils/rubygem-chef-api: The chef-api gem is no longer maintained. Please use the supported Chef::ServerAPI library from the Chef gem
2022-03-31 databases/redis5: EOLed upstream
2022-03-31 security/outguess: Abandonware, dead upstream and last release in 2001
2022-01-15 devel/maven3: Outdated, unsupported upstream
2022-01-15 devel/maven33: Outdated, unsupported upstream
2022-03-31 devel/monotone: Abandoned upstream, no release since 2014
2022-03-31 security/botan110: Deprecated upstream, users are recommended to migrate to 2.x
2022-03-31 net/hping: Deprecated upstream, please consider using net/hping3 instead
2022-03-31 sysutils/autopsy: Very outdated, current version in tree was released back in 2010 and upstream is still active
2022-03-31 java/cryptix-jce: Abandonware, last release in 2005 and listed as dead upstream
2022-03-31 net-mgmt/netustad: Abandonware, dead upstream, unfetchable and is marked BROKEN for 13+
2022-03-31 www/paros: Abandonware, last release in 2006 and dead upstream
2022-03-31 net/queso: Abandonware and obsolete, last release back in 1998. Please consider using security/nmap instead
2022-03-31 mail/rlytest: Abandonware, last release in 2003 and dead upstream
2022-03-31 net/ssvnc: Abandonware, last release in 2011 and broken functionality reported upstream
2022-03-31 sysutils/webjob: Abandonware, last release in 2012 and broken on multiple architectures
2022-03-31 dns/bundy: Project is in hibernation and not recommended to use in production
2022-03-31 lang/ruby26: Use newer version of Ruby. Ruby 2.6 will reach its EoL on March 31, 2022
2022-03-31 textproc/kibana6: Uses expired www/node10
2021-04-30 www/node10: Node.js v10.x reaches end-of-life on 2021-04-30, see https://github.com/nodejs/Release
2022-03-31 comms/zssh: Abandonware, last release in 2003. Please consider using scp or net/croc instead
2022-03-31 devel/py-dataclasses: Included in Python 3.7 or later
2022-03-31 net-im/diligent: Abandoned upstream, users also confirms port to be non working
2022-03-31 www/typo3-9: Mainstream support ended 2021-09-30
2022-03-31 databases/adodb: Unsupported upstream, cannot be used with PHP 8.0+
2022-03-31 audio/clementine-player: Last release in 2016, many issue reports upstream and little to no development for years. Please consider using audio/strawberry
2022-03-31 security/libprelude: Very outdated, current version in tree was released back in 2015 and upstream is still active
2022-03-31 www/crp: Abandonware, last release in 2003 and upstream refers to PHP 4.x and is dead
2022-03-31 devel/fb-adb: Last release in 2016 and deprecated by upstream, please consider using devel/android-tools-adb instead
2022-03-31 comms/o2sms: Abandonware, last release in 2010 and upstream is dead
2022-03-31 comms/p5-SMS-Send-TW-Qma: QMA service provider is no longer around
2022-03-31 comms/p5-SMS-Send-TW-ShareSMS: Service provider is no longer around
2022-03-31 comms/yaps: Service providers are no longer around and/or are no longer providing this service
2022-03-31 security/arirang: Abandoned upstream and last release was back in 2011
2022-03-31 security/openvpn-mbedtls: mbedTLS only has a minimum viable TLSv1.3 implementation, and OpenVPN-mbedtls does not work on FreeBSD 14-CURRENT
2022-03-31 www/mod_proxy_xml: Abandoned upstream, last release in 2004
2022-03-31 www/mod_xmlns: Abandoned upstream, last release in 2004
2022-03-31 www/mod_authnz_crowd: Abandoned upstream in 2014, doesn't work with Apache 2.4+
2022-03-31 security/razorback-scriptNugget: Abandonware, last release in 2012 and listed as alpha quality by upstream
2022-03-31 dns/bind911: End of life, please migrate to a newer version of BIND9
2022-03-31 www/grafana6: EOLed upstream, unfixed vulnerabilities
2022-03-31 security/govpn: Deprecated upstream, reference: http://www.govpn.info/
2022-03-31 22:31:14 +02:00
Dan Langille
67656e65ca security/cyberchef: Update to 9.37.0
Changelog
https://github.com/gchq/CyberChef/blob/master/CHANGELOG.md
2022-03-31 20:15:58 +00:00
Dima Panov
d5f03fef61 mail/exim: port TLS patches from upstream (+)
This fixes hang in TLS transport after 4xx or 5xx bug
(see https://bugs.exim.org/show_bug.cgi?id=2864)

PR:		262594
Tested by:	Kurt Jaeger, David Siebörger
2022-03-31 22:57:25 +03:00
Emanuel Haupt
770421e7c0 audio/protracker: Update to 1.43 2022-03-31 21:28:29 +02:00
Kirill Ponomarev
7a7a4a7a36 sysutils/cbsd: 13.0.27
Changes: https://github.com/cbsd/cbsd/releases/tag/v13.0.27
2022-03-31 20:47:55 +02:00
Dmitry Marakasov
b6a16d419a devel/py-types-Pillow: update 8.3.11 → 9.0.8 2022-03-31 21:36:13 +03:00