Commit Graph

356430 Commits

Author SHA1 Message Date
Jan Beich
d7e9c9e696 MFH: r380090, r380096, r380101, r380109, r380142, r380547, r380888
MFH: r381889, r381911

- Update OpenH264 to 1.4.0
- Update NSS and ca_root_nss to 3.18
- Update Firefox to 36.0.4
- Update Firefox ESR and libxul to 31.5.3
- Update Thunderbird to 31.5.0
- Update SeaMonkey to 2.33.1
- Update Enigmail to 1.8
- Check if NS_NewNativeLocalFile() succeeds before using [1]
- Unbreak build when LOGGING option is disabled [2]
- Remove GIO description after r314893
- bsd.gecko.mk: Prune conditionals for files removed 4 months ago

Changes:	https://github.com/cisco/openh264/releases/tag/v1.4.0
Changes:	http://mozilla.6506.n7.nabble.com/ANNOUNCE-NSPR-4-10-8-Release-td332365.html
Changes:	https://developer.mozilla.org/docs/Mozilla/Projects/NSS/NSS_3.18_release_notes
Changes:	https://www.mozilla.org/firefox/36.0.4/releasenotes/
Changes:	https://www.mozilla.org/firefox/31.5.3/releasenotes/
Changes:	http://www.seamonkey-project.org/releases/seamonkey2.33/
Changes:	https://www.enigmail.net/download/changelog.php#enig1.8
PR:		198090 [2]
Reported by:	Piotr Kubaj <pkubaj@riseup.net> [2]
Reported by:	Matthew D. Fuller <fullermd@over-yonder.net> [2]
Reported by:	rozhuk.im@gmail.com [2]
Obtained from:	PkgSrc [1]
Obtained from:	https://github.com/mozilla/gecko-dev/commit/6af7f0e6 [2]
Security:	https://vuxml.freebsd.org/freebsd/99029172-8253-407d-9d8b-2cfeab9abf81.html
Security:	https://vuxml.freebsd.org/freebsd/76ff65f4-17ca-4d3f-864a-a3d6026194fb.html
Approved by:	ports-secteam (zi, delphij), portmgr (erwin)
2015-03-25 06:47:03 +00:00
Xin LI
366e00e067 Update to 2014-09-29d.
Approved by:	ports-secteam@
2015-03-24 19:32:07 +00:00
Johannes Jost Meixner
2eca34efb2 MFH: r382089
security/linux-c6-openssl: update to 1.0.1e_4

- update to 1.0.1e_4

Approved by:	swills (mentor)
Approved by:	ports-secteam (zi)
Differential Revision:	https://reviews.freebsd.org/D2125
Security:	9d15355b-ce7c-11e4-9db0-d050992ecde8
Security:	CVE-2015-0286
Security:	CVE-2015-0287
Security:	CVE-2015-0289
Security:	CVE-2015-0292
Security:	CVE-2015-0293
2015-03-24 13:04:32 +00:00
Johan van Selst
d380c8d7d5 MFH: r381946
Add security fix for CVE-2014-8118

PR:		198796
Submitted by:	Sevan Janiyan <venture37@geeklan.co.uk>
Obtained from:	https://bugzilla.redhat.com/show_bug.cgi?id=1168715
Approved by:	portmgr
2015-03-22 19:49:34 +00:00
Xin LI
b4a013cf4f MFH r381695 (dinoex), 381697:
- Mark BROKEN options
 - Fix build for i386.

Approved by:	ports-secteam
2015-03-19 22:19:06 +00:00
Xin LI
a2d06ca10f MFH r381686: update to 1.0.1m.
Approved by:	ports-secteam@
2015-03-19 20:29:19 +00:00
Bryan Drewery
863766d8a5 MFH: r381622
Disable SSLv2 and SSLv3.

PR:		197027
Submitted by:	Kai Gallasch <k@free.de>
2015-03-19 17:04:38 +00:00
Johannes Jost Meixner
8a7f18bf05 MFH: r381428
www/linux-*-flashplugin11: update to 11.2r202.451

- Update to 11.2r202.451

Differential Revision:	https://reviews.freebsd.org/D2061
Approved by:	swills (mentor)
Approved by:	ports-secteam (erwin)
Security:	8b3ecff5-c9b2-11e4-b71f-00bd5af88c00
Security:	CVE-2015-0332
Security:	CVE-2015-0333
Security:	CVE-2015-0334
Security:	CVE-2015-0335
Security:	CVE-2015-0336
Security:	CVE-2015-0337
Security:	CVE-2015-0338
Security:	CVE-2015-0339
Security:	CVE-2015-0340
Security:	CVE-2015-0341
Security:	CVE-2015-0342
2015-03-18 11:46:19 +00:00
Koop Mast
59feb3290e MFH: r381529
Update libXfont to 1.4.9.

This release fixes CVE-2015-1802, CVE-2015-1803 and CVE-2015-1804.

Security:	f7d79fac-cd49-11e4-898f-bcaec565249c
Approved by:	portmgr (erwin@)
2015-03-18 09:25:01 +00:00
Brad Davis
f16410add6 MFH: r381161
Update mail/sympa to 6.1.24.

PR:		198508
Submitted by:	Geoffroy Desvernay <dgeo@centrale-marseille.fr>
Approved by:	portmgr (bapt)
2015-03-13 03:44:09 +00:00
Matthew Seaman
03b40ad4a4 MFH: r380777
Security update to 4.3.11.1

Security Advisory: http://www.phpmyadmin.net/home_page/security/PMASA-2015-1.php
Release Notes:	   http://sourceforge.net/projects/phpmyadmin/files/phpMyAdmin/4.3.11.1/phpMyAdmin-4.3.11.1-notes.html/view

Security:	81b4c118-c586-11e4-8495-6805ca0b3d42
Approved by:	ports-secteam (zi)
2015-03-11 20:44:42 +00:00
Bryan Drewery
50e510c11f MFH: r381021
Fix build on 9.3 with clang

With hat:	portmgr
2015-03-11 16:12:30 +00:00
Matthew Seaman
103ed39cff MFH: r380791
HTML-FormatExternal lets you turn HTML into plain text using one of
the browsing/formatting programs,

    elinks        http://elinks.cz/
    html2text     http://www.mbayer.de/html2text/
    links         http://links.twibright.com/
    lynx          http://lynx.isc.org/
    netrik        http://netrik.sourceforge.net/
    vilistextum   http://bhaak.dyndns.org/vilistextum/
    w3m           http://sourceforge.net/projects/w3m
    zen           http://www.nocrew.org/software/zen/

WWW: http://search.cpan.org/dist/HTML-FormatExternal/
Approved by:	ports-secteam (delphij)
2015-03-10 19:29:58 +00:00
Matthew Seaman
dc85a31709 MFH: r380802
Security update to 4.2.10

     - Now requires p5-Encode >= 2.64 from the converters/p5-Encode
       port, as the version bundled with perl is too old.
     - New dependency p5-HTML-FormatExternal

There are database schema updates to apply, but these only affect
people using MySQL

ChangeLog:   https://bestpractical.com/release-notes/rt/4.2.10
Security Advisory:	http://blog.bestpractical.com/2015/02/security-vulnerabilities-in-rt.html

Security:	d08f6002-c588-11e4-8495-6805ca0b3d42
Approved by:	ports-secteam (delphij)
2015-03-10 07:45:55 +00:00
Matthew Seaman
7db4643344 MFH: r380772
Security update to 4.0.23

   - Now requires p5-Encode >= 2.64 from the converters/p5-Encode
     port, as the version bundled with perl is too old.
   - Modernize plist

No database schema changes are required with this update.

ChangeLog:     https://bestpractical.com/release-notes/rt/4.0.23
Security Advisory:	http://blog.bestpractical.com/2015/02/security-vulnerabilities-in-rt.html

Security:	d08f6002-c588-11e4-8495-6805ca0b3d42
Approved by:	ports-secteam (delphij)
2015-03-10 07:42:30 +00:00
Gordon Tetlow
8c4ce1b96a MFH: r380832
Update p4d to 2014.2/1014956.

PR:		198378
Differential Revision:	https://reviews.freebsd.org/D2028
Submitted by:	dteske@
Approved by:	mentor (mat)
Approved by:	ports-secteam (delphij)
2015-03-10 07:23:00 +00:00
Johannes Jost Meixner
46e9cbfba0 MFH: r378579
www/linux-*-flashplugin11: update to 11.2r202.442

- Update to 11.2r202.442
- Fix 0day reported in CVE-2015-0313

Differential Revision:	https://reviews.freebsd.org/D1783
Approved by:	koobs (mentor)
Approved by:	ports-secteam (erwin)
Security:	734bcd49-aae6-11e4-a0c1-c485083ca99c
2015-03-07 17:03:27 +00:00
Jason Helfman
fb9c297930 Approved by: ports-secteam (zi)
MFH: r380475

- fix fetch, upstream is shifting to static parent to better track
2015-03-06 23:05:18 +00:00
Raphael Kubo da Costa
1f36381c01 MFH: r380452
Add patch for CVE-2015-0295, DoS vulnerability in the BMP image handler.

Security:	c9c3374d-c2c1-11e4-b236-5453ed2e2b49

Approved by:	ports-secteam (delphij)
2015-03-06 22:05:30 +00:00
Raphael Kubo da Costa
9f2a4f6580 MFH: r379187
Fix QSystemTray

Add a patch found by PCBSD's Kris Moore <kris@pcbsd.org> that fixes
QSystemTrayIcons on Desktops other than KDE.

Provided by Kris via mailing list on 2015-01-29.

Approved by:	rakuco (mentor)

Approved by:	portmgr (erwin)
2015-03-06 22:03:14 +00:00
Dmitry Marakasov
0077252c57 MFH: r380473
- Add some mirrors

Approved by:	ports-secteam (delphij)
2015-03-06 12:26:39 +00:00
Matthias Andree
df91a52481 MFH: r380554
Upgrade to upstream bugfix release 0.64.

This fixes a security bug, various other bugs, and supports SSH
connection sharing between multiple instances of PuTTY and its tools.

Security:	92fc2e2b-c383-11e4-8ef7-080027ef73ec
Security:	CVE-2015-2157
Approved by:	portmgr (erwin)
2015-03-05 23:47:43 +00:00
Rodrigo Osorio
35fd2d0fde MFH: r380498
Add a patch to fix buffer overrun (CVE-2015-2063)
Bump port revision
Take the port maintenership

PR:		198314
Submitted by:	rodrigo
Obtained from:	debian
Security:	CVE-2015-2063
Approved by:	ports-secteam
2015-03-05 22:56:33 +00:00
Antoine Brodin
50c9b14909 MFH: r376709
Update to 20150110.
2015-03-05 22:47:38 +00:00
Antoine Brodin
1fe71c1f46 MFH: r377828
- Upstream rerolled tarball
  * Updated DESCRIPTION file
- Update the patch to make fetchable more than 50 records because
  web page layout was changed in January 2015
2015-03-05 22:45:16 +00:00
Rodrigo Osorio
3ac0e319d7 MFH: r380457
Patch fcgi to address CVE-2012-6687 vulnerabilities.

PR:		197844
Submitted by:	rodrigo
Obtained from:	ubuntu
Security:	CVE-2012-6687
Approved by:	ports-secteam
2015-03-05 22:44:25 +00:00
Florian Smeets
c71f4f4fce MFH: r379853
Add patches for
- CVE-2014-8142
- CVE-2015-0231

Approved by:	portmgr (erwin)
2015-03-05 22:33:54 +00:00
Florian Smeets
171a5c75ef MFH: r377633
Update to 2.8.19

http://www.phpmyfaq.de/security/advisory-2014-11-30

Approved by:	portmgr (bapt)
2015-03-05 22:31:43 +00:00
Dmitry Marakasov
1472e61858 MFH: r380488
- Fix shebangs

Approved by:	ports-secteam (delphij)
2015-03-05 22:30:13 +00:00
Florian Smeets
b0ce93726b MFH: r377635
Update to 5.5.41-37.0

Fixes for CVE-2015-0411 and CVE-2015-0432

Approved by:	portmgr (bapt)
2015-03-05 22:29:54 +00:00
Dmitry Marakasov
406cadf1ed MFH: r380476
- Simplify MASTER_SITES
- Add LICENSE
- Fix references to STAGEDIR

Approved by:	ports-secteam (delphij)
2015-03-05 22:29:11 +00:00
Florian Smeets
e298fcc537 MFH: r377634
Update to 5.6.22-71.0

Approved by: portmgr (bapt)
2015-03-05 22:22:54 +00:00
Dmitry Marakasov
c308c6517d MFH: r380205
- Pet portlint
- Add LICENSE
- Fix references to stagedir from installed files

Approved by:	ports-secteam (delphij)
2015-03-04 23:51:13 +00:00
Dmitry Marakasov
aa8374f745 MFH: r380204
- Fix shebangs
- Add missing run-dependency on bash

Approved by:	ports-secteam (delphij)
2015-03-04 23:49:59 +00:00
Dmitry Marakasov
5f1c19be0f MFH: r380203
- Add LICENSE
- Fix references to stagedir from installed files
- Remove unneeded options.mk inclusion

Approved by:	ports-secteam (delphij)
2015-03-04 23:48:29 +00:00
Dmitry Marakasov
ceaef15613 MFH: r380201
- Simplify MASTER_SITES
- Fix installation from non-root
- Fix binary permissions

Approved by:	ports-secteam (delphij)
2015-03-04 23:46:44 +00:00
Dmitry Marakasov
efab62f416 MFH: r380200
- Pet portlint
- Fix references to stagedir from installed files

Approved by:	ports-secteam (delphij)
2015-03-04 23:45:04 +00:00
Dmitry Marakasov
2d8ddf5e37 MFH: r380199
- Add LICENSE
- Add missing library to plist

Approved by:	ports-secteam (delphij)
2015-03-04 23:42:29 +00:00
Dmitry Marakasov
f2abbbae1a MFH: r380198
- Add LICENSE
- Fix shebangs

Approved by:	ports-secteam (delphij)
2015-03-04 23:41:12 +00:00
Dmitry Marakasov
08b30c9d6c MFH: r380197
- Unbreak modules build
- Switch to @sample
- Fix plist
- Add LICENSE
- Strip binary

Approved by:	ports-secteam (delphij)
2015-03-04 23:39:39 +00:00
Dmitry Marakasov
013750f0bc MFH: r380196
- Fix shebangs
- Add LICENSE
- Fix comment

Approved by:	ports-secteam (delphij)
2015-03-04 23:36:19 +00:00
Antoine Brodin
f707794555 MFH: r379818
Author rerolled distfile without bumping version.
(diff is found in the referenced PR)

- Fixes error "rate limit rate failure"
- Enables SSL by default

PR:		197988
Approved by:	maintainer
2015-03-04 15:45:11 +00:00
Bartek Rutkowski
9683366597 MFH: r379453
www/tengine: multiple fixes

- Fix building issue when using custom port options
- Fix problem with agentzh modules moved by upstream to openresty repo
- Convert to @dir usage
- Add LICENSE FILE
- Pet portlint

PR:		196002
Approved by:	portmgr
2015-03-02 17:14:42 +00:00
Ryan Steinmetz
67de5a82e5 - Update PHP 5.4 to 5.4.38 release
- Update PHP 5.5 to 5.5.22 release
- Update PHP 5.6 to 5.6.6 release

MFH:		r377396,377730-377731,379433
Approved by:	ports-secteam
With hat:	ports-secteam
2015-03-02 14:14:31 +00:00
Ryan Steinmetz
edea96ca78 MFH: r377732
Update to 5.4.37 release.

Approved by:	ports-secteam
With hat:	ports-secteam
2015-03-02 13:55:02 +00:00
Li-Wen Hsu
9ebe69c425 MFH: r380172
Add entry for security issue in jenkins

Reviewed by:	zi

MFH: r380173

- Update to 1.600

Security:	7480b6ac-adf1-443e-a33c-3a3c0becba1e
Notified by:	swills

Approved by:	portmgr (swills)
2015-03-01 19:01:02 +00:00
Steve Wills
d577d1ab0d MFH: r380169
devel/jenkins-lts: update to 1.596.1
2015-03-01 15:53:47 +00:00
Dmitry Marakasov
b626c304ae MFH: r380131
- Simplify MASTER_SITES
- Remove unneeded MAN1
- Don't show pkg-message from Makefile
- Disable and mark broken RAZE and STAR options, as they fail to link
- Fix configure to properly detect amd64 arch
- When compiling with clang, drop compiler flags not supported by it
- Disable -malign-double on amd64, gcc says it makes no sense

Approved by:	bapt
Approved by:	ports-secteam (zi)
2015-02-28 16:19:16 +00:00
Dmitry Marakasov
60baa57008 MFH: r378362
- Fix volume reading
- Remove author from pkg-descr
- Fix WWW:

PR:		197247
Submitted by:	amdmi3
Approved by:	ports-secteam (zi), portmgr (mat)
2015-02-27 19:18:56 +00:00
Ryan Steinmetz
fca4eacd46 MFH: r378500
Update PostgreSQL-9.x to latests versions.

This update fixes multiple security issues reported in PostgreSQL over the past
few months. All of these issues require prior authentication, and some require
additional conditions, and as such are not considered generally urgent.
However, users should examine the list of security holes patched below in case
they are particularly vulnerable.

Security:	CVE-2015-0241,CVE-2015-0242,CVE-2015-0243, CVE-2015-0244,CVE-2014-8161
Approved by:	ports-secteam
With hat:	ports-secteam
2015-02-26 15:06:39 +00:00