Commit Graph

532063 Commits

Author SHA1 Message Date
Jan Beich
cc9b64eef6 MFH: r569525
graphics/jpeg-xl: update to 0.3.7

Changes:	https://gitlab.com/wg1/jpeg-xl/-/releases/v0.3.7
Reported by:	Repology
2021-03-29 23:52:45 +00:00
Glen Barber
76b526f6b7 MFH: r569498
Add 13.0-RC4 MANIFESTs.
Prune 13.0-RC2 MANIFESTs.

Sponsored by:	Rubicon Communications, LLC ("Netgate")
2021-03-29 19:34:01 +00:00
Kirill Ponomarev
afefb2eac4 MFH: r569433
Update to 2.1.3
2021-03-29 07:38:21 +00:00
Jan Beich
19285f106d MFH: r569422
x11-wm/hikari: update to 2.2.3

PR:		254629
Submitted by:	Alexander Sieg (maintainer)
2021-03-29 00:47:53 +00:00
Kirill Ponomarev
615d50c3d8 MFH: r569301
Update to 2.0.29

Changes: https://miniflux.app/releases/2.0.29.html
2021-03-27 08:25:34 +00:00
Jan Beich
6f4eeb0a71 MFH: r569171 r569282
graphics/mesa-devel: update to 21.0.b.3716

Changes:	cb4287608a...ba8ddc0c68
2021-03-27 00:43:16 +00:00
Bernard Spil
30f801444f MFH: r569247
security/openssl: Security update to 1.1.1k

PR:		254551
Submitted by:	Pascal Christen <pascal christen hostpoint ch>
Security:	5a668ab3-8d86-11eb-b8d6-d4c9ef517024

Approved by:	ports-secteam (blanket)
2021-03-26 08:15:42 +00:00
Jan Beich
015d27ca11 MFH: r569242
graphics/jpeg-xl: update to 0.3.6

Changes:	https://gitlab.com/wg1/jpeg-xl/-/tags/v0.3.6
Changes:	https://gitlab.com/wg1/jpeg-xl/-/compare/v0.3.5...v0.3.6
2021-03-26 06:43:15 +00:00
Cy Schubert
3689883c38 MFH: r569156
mail/spamassassin: Update 3.4.4 --> 3.4.5, fixing CVE-2020-1946

According to https://s.apache.org/ng9u9, 3.4.5 fixes CVE-2020-1946.
The announce text:

Apache SpamAssassin 3.4.5 was recently released [1], and fixes an issue
of security note where malicious rule configuration (.cf) files can be
configured to run system commands.

In Apache SpamAssassin before 3.4.5, exploits can be injected in a number
of scenarios. In addition to upgrading to SA 3.4.5, users should only use
update channels or 3rd party .cf files from trusted places.

Apache SpamAssassin would like to thank Damian Lukowski at credativ for
ethically reporting this issue.

This issue has been assigned CVE id CVE-2020-1946 [2]

To contact the Apache SpamAssassin security team, please e-mail
security at spamassassin.apache.org. For more information about Apache
SpamAssassin, visit the https://spamassassin.apache.org/ web site.

Apache SpamAssassin Security Team

[1]: https://s.apache.org/ng9u9

[2]: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-1946

PR:		254526
Submitted by:	cy
Reported by:	cy
Approved by:	maintainer (zeising)
Security:	https://s.apache.org/ng9u9
		https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-1946
2021-03-24 20:05:31 +00:00
Jan Beich
588b85e42f MFH: r569152
graphics/jpeg-xl: update to 0.3.5

Changes:	https://gitlab.com/wg1/jpeg-xl/-/tags/v0.3.5
Changes:	https://gitlab.com/wg1/jpeg-xl/-/compare/v0.3.4...v0.3.5
2021-03-24 18:47:36 +00:00
Christoph Moench-Tegeder
b18cae6f0a MFH: r568868 r568985
update thunderbird to 78.9.0

Release Notes:
  https://www.thunderbird.net/en-US/thunderbird/78.9.0/releasenotes/
2021-03-24 18:01:49 +00:00
Jan Beich
32aa86cce5 MFH: r569142
www/youtube_dl: update to 2021.03.25

Changes:	https://github.com/ytdl-org/youtube-dl/releases/tag/2021.03.25
Reported by:	GitHub (watch releases)
2021-03-24 17:46:38 +00:00
Mathieu Arnold
067817fbdc MFH: r569105
Fix build.
2021-03-24 11:16:11 +00:00
Adam Weinberger
418de1b3a9 MFH: r569084
www/gitea: Update to 1.13.16

This is a security release.

PR:		254515
Submitted by:	maintainer
Security:	yes
2021-03-24 03:19:35 +00:00
Kirill Ponomarev
cfbf8464df MFH: r569045
Update to 3002.6

Changes: https://github.com/saltstack/salt/blob/v3002.6/CHANGELOG.md

Approved by:	maintainer
2021-03-23 18:32:48 +00:00
Jan Beich
840bbcde67 MFH: r569001
Unbreak fetch from git.sr.ht

Git footer have changed e.g.,

 ---
-2.30.1
+2.30.2
2021-03-23 00:48:18 +00:00
Jan Beich
b8e3c96517 MFH: r568999
graphics/mesa-devel: update to 21.0.b.3531

Changes:	921dafc98b...cb4287608a
2021-03-23 00:43:24 +00:00
Yuri Victorovich
eb31b9e34e MFH: r560458 r561196 r561879 r563831 r565172 r566285 r567987 r568107 r568370 r568983
www/authelia: Update 4.24.1 -> 4.25.0

Reported by:	portscout

www/authelia: Update 4.25.0 -> 4.25.1

Reported by:	portscout

www/authelia: Update 4.25.1 -> 4.25.2

Reported by:	portscout

www/authelia: Update 4.25.2 -> 4.26.0

Reported by:	portscout

www/authelia: Update 4.26.0 -> 4.26.1

Reported by:	portscout

www/autheli: Update 4.26.1 -> 4.26.2

Reported by:	portscout

www/authelia: Update 4.26.2 -> 4.27.0

www/authelia: Update 4.27.0 -> 4.27.1

Reported by:	portscout

www/authelia: Update 4.27.1 -> 4.27.2

Reported by:	portscout

www/authelia: Add pre-built public_html to the build to fix Authelia bug showing an empty page; Add config file sample

Reported by:	upstream
2021-03-22 22:02:40 +00:00
Christoph Moench-Tegeder
2836da359f MFH: r568516
update firefox-esr to 78.9.0

Release Notes (soon):
  https://www.mozilla.org/en-US/firefox/78.9.0/releasenotes/
2021-03-22 13:12:12 +00:00
Christoph Moench-Tegeder
64b874d99c MFH: r568897 r568900
update firefox to 87.0

Release Notes (soon):
  https://www.mozilla.org/en-US/firefox/87.0/releasenotes/

www/firefox: bump minimum dependencies after r568897
2021-03-22 13:10:04 +00:00
Chris Rees
ebb3230a02 MFH: r568935
sysutils/fusefs-squashfuse: Update to 0.1.103

PR:		ports/254281
Approved by:	jsmith@resonatingmedia.com (maintainer)
2021-03-21 22:11:03 +00:00
Chris Rees
e7031205f2 MFH: r568538
- Update to version 4.4 and unforbid
- Add LZ4 and ZSTD compression support
- Improve or drop option descriptions
- Convert to option helpers while here

PR:		ports/254316
Security:	317487c6-85ca-11eb-80fa-14dae938ec40
2021-03-21 22:07:33 +00:00
Adam Weinberger
444522b8cc MFH: r568930
www/gitea: Update to 1.13.5

PR:		254468
Submitted by:	maintainer
Security:	yes
2021-03-21 18:34:01 +00:00
Kirill Ponomarev
e23d9464f9 MFH: r568927
Update to 13.0.3

Changes: https://github.com/cbsd/cbsd/releases/tag/v13.0.3

Submitted by:	maintainer
2021-03-21 17:47:43 +00:00
Jan Beich
1c9253e006 MFH: r566134
security/nss: update to 3.62

Changes:	https://developer.mozilla.org/docs/Mozilla/Projects/NSS/NSS_3.62_release_notes
Changes:	https://hg.mozilla.org/projects/nss/shortlog/NSS_3_62_RTM
2021-03-21 00:56:45 +00:00
Glen Barber
80200dbbe4 MFH: r568872
Add MANIFESTs for 13.0-RC3.
Prune MANIFESTs for 13.0-RC1.

Sponsored by:	Rubicon Communications, LLC ("Netgate")
2021-03-20 15:59:49 +00:00
Rainer Hurling
be76a61f07 MFH: r566555
devel/py-watchdog: Update to 0.10.6

On Github, there is already v2.0.2, but from v1.0.0 on 'make test'
produces many errors for functions, which passes fine until <= v1.0.0.
Newer tests run with an update of devel/py-pytest >= v5.0.0 [1][2].

[1] https://docs.pytest.org/en/latest/changelog.html?highlight=pytestunknownmarkwarning
[2] https://github.com/pytest-dev/pytest/pull/5416

Changelog: https://github.com/gorakhargosh/watchdog/releases/tag/v0.10.6

PR:		244031
Submitted by:	Evilham <contact@evilham.com>
Approved by:	Nicola Vitale <nivit@FreeBSD.org> (maintainer timeout)
Differential Revision:	https://reviews.freebsd.org/D23608
2021-03-20 09:06:48 +00:00
Jan Beich
8f22e7633d MFH: r568824
graphics/mesa-devel: update to 21.0.b.3400

Changes:	91192696e6...921dafc98b
2021-03-20 00:36:15 +00:00
Jan Beich
8b875502ae MFH: r568820
www/gallery-dl: update to 1.17.1

Changes:	https://github.com/mikf/gallery-dl/releases/tag/v1.17.1
Reported by:	GitHub (watch releases)
2021-03-20 00:33:44 +00:00
Mathieu Arnold
27e6537c83 MFH: r568799 r568800
Update BIND9 to 9.16.13 & 9.11.29.

Changes: https://downloads.isc.org/isc/bind9/9.11.29/RELEASE-NOTES-bind-9.11.29.html
Changes: https://downloads.isc.org/isc/bind9/9.16.13/doc/arm/html/notes.html#notes-for-bind-9-16-13
2021-03-19 14:33:30 +00:00
Jung-uk Kim
600e493bba MFH: r568772
Chase repository change from FreeBSDDesktop/kms-firmware to
freebsd/drm-kmod-firmware.

PR:		254390
Approved by:	blanket (trivial fetch/build fix)
2021-03-19 05:41:56 +00:00
Li-Wen Hsu
5c394c3062 MFH: r568537
net/gsocket: Update to 1.4.25

PR:		254317
Submitted by:	Andrew Reiter <arr@watson.org> (maintainer)
2021-03-18 13:21:25 +00:00
Jan Beich
6cb29557d0 MFH: r568730
devel/renpy: update to 7.4.4

Changes:	https://www.renpy.org/release/7.4.4 (see Announcment)
Changes:	https://www.renpy.org/doc/html/changelog.html#renpy-7-4-4
Reported by:	portscout
2021-03-18 09:39:56 +00:00
Jan Beich
2bd7a6de38 MFH: r568711
graphics/mesa-devel: update to 21.0.b.3294

Changes:	3dc8102420...91192696e6
2021-03-18 00:53:07 +00:00
Jan Beich
7aef2c390d MFH: r568710
x11-wm/river: update to s20210316

Changes:	c9a4dde...8627a2f
2021-03-18 00:52:46 +00:00
Wen Heping
a1e019ab9f MFH: r568699
- Update moodle to 3.10.2 and 3.9.5
  (include security fix)
- Adjust CONFLICTS
2021-03-17 23:47:53 +00:00
Jan Beich
8c9c1e7d25 MFH: r568697
graphics/jpeg-xl: update to 0.3.4

Changes:	https://gitlab.com/wg1/jpeg-xl/-/tags/v0.3.4
Changes:	https://gitlab.com/wg1/jpeg-xl/-/compare/v0.3.3...v0.3.4
2021-03-17 23:31:28 +00:00
Cy Schubert
9eefc17f08 MFH: r568629
security/wpa_supplicant: fix for P2P provision vulnerability

Latest version available from: https://w1.fi/security/2021-1/

Vulnerability

A vulnerability was discovered in how wpa_supplicant processes P2P
(Wi-Fi Direct) provision discovery requests. Under a corner case
condition, an invalid Provision Discovery Request frame could end up
reaching a state where the oldest peer entry needs to be removed. With
a suitably constructed invalid frame, this could result in use
(read+write) of freed memory. This can result in an attacker within
radio range of the device running P2P discovery being able to cause
unexpected behavior, including termination of the wpa_supplicant process
and potentially code execution.

Vulnerable versions/configurations

wpa_supplicant v1.0-v2.9 with CONFIG_P2P build option enabled

An attacker (or a system controlled by the attacker) needs to be within
radio range of the vulnerable system to send a set of suitably
constructed management frames that trigger the corner case to be reached
in the management of the P2P peer table.

Note: The P2P option is not default.

Security:	https://w1.fi/security/2021-1/\
	wpa_supplicant-p2p-provision-discovery-processing-vulnerability.txt
2021-03-17 19:33:46 +00:00
Cy Schubert
84bc1563e2 MFH: r561297
Fix build on llvm10 and gcc.

PR:		252577
Reported by:	David Sieborger <drs-freebsd _ sieborger.nom.za>
2021-03-17 19:26:41 +00:00
Bernard Spil
d779838e2c MFH: r565117 r568572
security/libressl: Bugfix update to 3.2.4

 * See errata 013 from OpenBSD 6.8
 * Various interoperability issues and memory leaks were discovered in
   libcrypto and libssl

security/libressl: Security fix for potential use-after-free

Security:	eeca52dc-866c-11eb-b8d6-d4c9ef517024

Approved by:	ports-secteam (blanket)
2021-03-17 16:15:19 +00:00
Steve Wills
118e991967 MFH: r565160 r566653 r566861 r568294 r568491 r568654
www/minio: update to 2021.02.11.08.23.43

www/minio: update to 2021.02.24.18.44.45

www/minio: update to 2021.03.01.04.20.55

www/minio: update to 2021.03.12.00.00.47

www/minio: fix runtime issue

PR:		253937
Reported by:	Boris Korzun <drtr0jan@yandex.ru>
Reported by:	xin3qu@protonmail.com
Reported by:	Thiago Damas <tdamas@gmail.com>

www/minio: update to 2021.03.17.02.33.02

Security:	b073677f-253a-41f9-bf2b-2d16072a25f6

Approved by:	ports-secteam (implicit)
2021-03-17 13:09:39 +00:00
Yuri Victorovich
0ac59fd229 MFH: r563905 r565324 r568584
security/tor: Update 0.4.4.6 -> 0.4.4.7

Reported by:	upstream notification

security/tor: Update 0.4.4.7 -> 0.4.5.6

Changelog: https://lists.torproject.org/pipermail/tor-announce/2021-February/000214.html
- contains major and minor bugfixes and new features.

Port options LTTNG,USDT,LOG_DEBUG backported from security/tor-devel.
LIB_DEPENDS is fixes in STATIC_TOR option.

Reported by:	upstream notification

security/tor: Update 0.4.5.6 -> 0.4.5.7

Changelog: https://gitweb.torproject.org/tor.git/tree/ChangeLog?h=tor-0.4.5.7 (security release)

Reported by:	upstream notification
2021-03-16 16:49:36 +00:00
Lewis Cook
a36be24437 MFH: r568565
sysutils/glow: Update to 1.4.0

Changes:	https://github.com/charmbracelet/glow/releases/tag/v1.4.0
2021-03-16 13:30:03 +00:00
Jan Beich
e9b23231d1 MFH: r568544
x11-wm/river: don't overwrite system-wide config
2021-03-16 08:49:06 +00:00
Torsten Zuehlsdorff
3ff3961206 MFH: r568541
databases/postgresql-mysql_fdw: Upgrade from 2.5.4 to 2.5.5

Fix various bugs, compilation warnings, and server crashes.
Souce: https://github.com/EnterpriseDB/mysql_fdw/releases/tag/REL-2_5_5

Also make minimum PostgreSQL version 9.6. The last version 2.5.4 already
dropped the PostgreSQL 9.5 support. Also imcrease max supported PostgreSQL
version from 11 to 13. This was also introduced in the last version 2.5.4.

Take maintainership

Sponsored by:	Bounce Experts

M    postgresql-mysql_fdw/Makefile
M    postgresql-mysql_fdw/distinfo
2021-03-16 07:40:37 +00:00
Koichiro Iwao
c3d3e821de MFH: r568539
This is a leaf port and it is useful to keep this up to date.

devel/ruby-build: Update to 20210309

Relnotes:	https://github.com/rbenv/ruby-build/releases/tag/v20210309
Sponsored by:	HAW International
2021-03-16 07:05:01 +00:00
Jan Beich
1fcdda5d4b MFH: r568526
graphics/mesa-devel: update to 21.0.b.3083

Changes:	a04a797b89...3dc8102420
2021-03-16 00:17:49 +00:00
Jan Beich
ae883b3be0 MFH: r568527
x11-wm/river: update to s20210314

Changes:	27cac16...c9a4dde
2021-03-16 00:16:51 +00:00
Juraj Lutter
3df580eea9 MFH: r568444
mail/dovecot-fts-xapian: Update to 1.4.8

- Update to 1.4.8

Reviewed by:	osa (mentor)
Approved by:	osa (mentor)
Differential Revision:	https://reviews.freebsd.org/D29251
2021-03-15 09:05:20 +00:00
Kirill Ponomarev
209f7068ca MFH: r568440
Update to 13.0.2

Changes: https://github.com/cbsd/cbsd/releases/tag/v13.0.2

Submitted by:	maintainer
2021-03-15 08:17:57 +00:00