Personal patches
Go to file
Ben Woods a2389f045c MFH: r459011 r459013 r459492
net-p2p/transmission-daemon: Mitigate DNS rebinding attack

Incorporate upstream pull request 468, proposed by Tavis Ormandy from
Google Project Zero, which mitigates this attack by requiring a host
whitelist for requests that cannot be proven to be secure, but it can
be disabled if a user does not want security.

PR:		225150
Submitted by:	Tavis Ormandy
Approved by:	crees (maintainer)
Obtained from:	https://github.com/transmission/transmission/pull/468#issuecomment-357098126
Security:	https://www.vuxml.org/freebsd/3e5b8bd3-0c32-452f-a60e-beab7b762351.html

Add note to UPDATING for net-p2p/transmission-daemon explaining how to
allow client access with the new DNS rebinding mitigations.

PR:		225150
Security:	https://www.vuxml.org/freebsd/3e5b8bd3-0c32-452f-a60e-beab7b762351.html

net-p2p/transmission-daemon: Improve UPDATING entry and add pkg-message

This will ensure users who do not read UPDATING are still presented with
the message about how to allow clients to connect to the daemon using
DNS when they upgrade the package.

PR:		225150
Reported by:	swills
Security:	https://www.vuxml.org/freebsd/3e5b8bd3-0c32-452f-a60e-beab7b762351.html

Approved by:	ports-secteam (swills)
2018-01-20 01:28:56 +00:00
accessibility Convert Python ports to FLAVORS. 2017-11-30 15:50:30 +00:00
arabic - Update to 0.8.0 2017-12-09 17:35:51 +00:00
archivers MFH: r459324 2018-01-18 14:24:36 +00:00
astro MFH: r458934 2018-01-19 19:23:05 +00:00
audio MFH: r458963 2018-01-19 22:32:34 +00:00
base
benchmarks Set LLD_UNSAFE=yes that the port will continue to link with ld.bfd if 2017-12-30 21:15:25 +00:00
biology - Update to 3.697 2018-01-01 08:40:22 +00:00
cad MFH: r457965 r458047 2018-01-11 01:45:36 +00:00
chinese MFH: r457833 2018-01-02 07:26:29 +00:00
comms - Unbreak the build on sparc64: gcc was generating assembler code that 2017-12-30 10:40:38 +00:00
converters - Unsilence installation commands 2017-12-27 09:00:43 +00:00
databases Pull in GitLab security update and all commits needed for it to run properly 2018-01-19 23:03:40 +00:00
deskutils Simplify some USES=python 2017-12-29 09:01:54 +00:00
devel Pull in GitLab security update and all commits needed for it to run properly 2018-01-19 23:03:40 +00:00
dns MFH: r459435 2018-01-19 18:06:11 +00:00
editors Upgrade to Apache OpenOffice 4.1.5. 2017-12-31 00:00:06 +00:00
emulators MFH: r459487 2018-01-20 00:25:19 +00:00
finance MFH: r458165 2018-01-10 19:42:34 +00:00
french MFH: r459400 2018-01-19 15:49:13 +00:00
ftp - Update to 4.8 2017-12-26 23:26:33 +00:00
games MFH: r458224 2018-01-06 06:01:14 +00:00
german MFH: r459400 2018-01-19 15:49:13 +00:00
graphics MFH: r459017 2018-01-15 14:13:15 +00:00
hebrew Update to 5.3.7. 2017-11-02 21:12:58 +00:00
hungarian Update to 5.3.7. 2017-11-02 21:12:58 +00:00
irc MFH: r458290 2018-01-11 12:43:54 +00:00
japanese MFH: r459400 2018-01-19 15:49:13 +00:00
java bouncycastle15: update to version 1.59 2017-12-29 09:21:11 +00:00
Keywords
korean Fix packaging with python3 2017-12-13 16:01:51 +00:00
lang MFH: r458655 2018-01-15 16:50:30 +00:00
mail MFH: r458113 2018-01-05 04:20:27 +00:00
math MFH: r458212 2018-01-06 05:24:56 +00:00
misc MFH: r459270 2018-01-17 17:28:40 +00:00
Mk MFH: r458394 2018-01-08 00:25:28 +00:00
multimedia MFH: r457965 r458047 2018-01-11 01:45:36 +00:00
net MFH: r458159 2018-01-15 15:02:01 +00:00
net-im MFH: r458145 2018-01-05 15:02:12 +00:00
net-mgmt MFH: r459417 2018-01-19 14:26:47 +00:00
net-p2p MFH: r459011 r459013 r459492 2018-01-20 01:28:56 +00:00
news - Add LICENSE 2017-12-27 09:00:39 +00:00
palm graphics/netpbm: Update to 10.80.00 2017-10-06 11:18:35 +00:00
polish Update to 20171224 2017-12-25 13:53:49 +00:00
ports-mgmt MFH: r459259 2018-01-17 14:30:51 +00:00
portuguese Update to 20171225 2017-12-27 19:52:00 +00:00
print MFH: r458102 2018-01-05 02:59:43 +00:00
russian MFH: r459399 2018-01-19 15:50:21 +00:00
science MFH: r457958 2018-01-03 12:28:45 +00:00
security Merge missed commit needed by r459482 2018-01-19 23:32:30 +00:00
shells Add LICENSE 2017-12-31 22:23:43 +00:00
sysutils Again sync up with HEAD 2018-01-16 20:57:51 +00:00
Templates Remove MPL (without version) license 2017-11-04 13:14:01 +00:00
textproc Pull in GitLab security update and all commits needed for it to run properly 2018-01-19 23:03:40 +00:00
Tools Follow up on last commit and actually allow editing 2017-12-29 13:20:47 +00:00
ukrainian Update to 5.3.7. 2017-11-02 21:12:58 +00:00
vietnamese - Remove archivers/zip build dependency 2017-11-08 06:04:45 +00:00
www Pull in GitLab security update and all commits needed for it to run properly 2018-01-19 23:03:40 +00:00
x11 Add PORTSCOUT 2017-12-31 22:23:48 +00:00
x11-clocks Fix configure options for gnustep-make 2017-12-03 12:23:53 +00:00
x11-drivers For ports that are marked BROKEN on armv6, and also fail to build on 2017-11-30 06:13:34 +00:00
x11-fm x11-fm/doublecmd: update to version 0.8.1 2017-12-30 23:36:07 +00:00
x11-fonts New port: x11-fonts/meslo 2017-12-26 04:40:27 +00:00
x11-servers For ports that are marked BROKEN on armv6, and also fail to build on 2017-11-30 06:13:34 +00:00
x11-themes Make x11-themes/qtcurve patch apply 2017-12-31 10:14:03 +00:00
x11-toolkits Update to 1.11.1 2017-12-28 13:41:44 +00:00
x11-wm x11-wm/plank: Update to 0.11.4 2017-12-28 15:28:18 +00:00
.arcconfig
.gitattributes
.gitignore
CHANGES Add CMAKE_ON and CMAKE_OFF to cmake.mk 2017-12-31 09:43:05 +00:00
CONTRIBUTING.md
COPYRIGHT Update copyright of the ports tree to 2018 2017-12-31 22:20:04 +00:00
GIDs devel/gogs: Changed user from gogs to git; Moved ini file under /usr/local/etc 2017-12-18 23:57:06 +00:00
LEGAL . Add entries for the java/linux-oracle-{jdk,jre}9 ports. 2017-10-14 18:55:09 +00:00
Makefile
MOVED Remove expired ports: 2018-01-01 11:41:37 +00:00
README
UIDs devel/gogs: Changed user from gogs to git; Moved ini file under /usr/local/etc 2017-12-18 23:57:06 +00:00
UPDATING MFH: r459011 r459013 r459492 2018-01-20 01:28:56 +00:00

This is the FreeBSD Ports Collection.  For an easy to use
WEB-based interface to it, please see:

	http://www.FreeBSD.org/ports

For general information on the Ports Collection, please see the
FreeBSD Handbook ports section which is available from:

	http://www.FreeBSD.org/doc/en_US.ISO8859-1/books/handbook/ports.html
		for the latest official version
	or:
	The ports(7) manual page (man ports).

These will explain how to use ports and packages.

If you would like to search for a port, you can do so easily by
saying (in /usr/ports):


	make search name="<name>"
	or:
	make search key="<keyword>"

which will generate a list of all ports matching <name> or <keyword>.
make search also supports wildcards, such as:

	make search name="gtk*"

For information about contributing to FreeBSD ports, please see the Porter's
Handbook, available at:

	http://www.FreeBSD.org/doc/en_US.ISO8859-1/books/porters-handbook/

NOTE:  This tree will GROW significantly in size during normal usage!
The distribution tar files can and do accumulate in /usr/ports/distfiles,
and the individual ports will also use up lots of space in their work
subdirectories unless you remember to "make clean" after you're done
building a given port.  /usr/ports/distfiles can also be periodically
cleaned without ill-effect.