Commit Graph

5806 Commits

Author SHA1 Message Date
robert
b6bec7cc6a update to 9.0.597.107 2011-03-03 10:37:33 +00:00
sthen
f8cb2e15f0 install style.css so that 'i' works (switches to a low-contrast
easy-on-the-eyes colour scheme).  pointed out by marco@ ok laurent@
2011-03-02 16:07:36 +00:00
landry
626024186a Update to firefox-i18n-3.6.14. 2011-03-02 15:51:00 +00:00
landry
d4c868a945 Update to firefox35 3.5.17. 2011-03-02 14:41:09 +00:00
landry
ab7613e577 Update to firefox 3.6.14. (Fixes MFSA-2011-01->11)
Patches for https://bugzilla.mozilla.org/show_bug.cgi?id=573039 merged
upstream.
2011-03-02 14:39:48 +00:00
sthen
0a92e00836 update to 1.339 and fix desktop file; ok laurent@ lots of prodding marco@ 2011-03-02 13:31:16 +00:00
robert
e1213a297b no need to use gcc from ports anymore, the pragma patch has been
commited to base
2011-03-02 11:11:31 +00:00
robert
7edcdfdb76 Use KERN_PROC2 everywhere instead of trying to use /proc and use
kvm(3) to help chrome identify it's own processes.
2011-03-02 08:53:51 +00:00
giovanni
e749a09db5 Bsdi emulation is dead, switch to FreeBSD emulation.
ok sthen@
2011-03-02 08:44:08 +00:00
jasper
a87f904c7a - the issues some people have been seeing with the build crashing in v8, is
related to too low limits, so remove the comment and set VMEM_WARNING instead.

(ports is unlocked, but no new files/directories/imports!, if in doubt, ask!)
2011-03-02 06:29:44 +00:00
pea
9b749c36f3 Fix CVE-2010-1452
ok sthen@, landry@
2011-02-12 21:05:38 +00:00
jasper
7fa477c473 - SECURITY UPDATE of chromium to 9.0.597.94, fixes about 13 CVE's.
tested by myself on amd64, and espie@ on i386.
"sure, make sure it works" robert@ (MAINTAINER), ok espie@
2011-02-12 10:42:43 +00:00
jasper
84ff9e5db1 Security fixes for django that address CVE-2011-069{6,7,8}.
Patches from upstream svn, via ryan boggs (MAINTAINER)
ok espie@
2011-02-11 11:45:48 +00:00
jasper
368a34f067 Security update of phpmyadmin to 3.3.9.1, addresses PMASA-2011-1.
pointed out by rpointel@
ok kevlo@ (MAINTAINER) aja@
2011-02-10 12:55:05 +00:00
espie
da899085eb fix MESSAGE, bump 2011-02-10 08:26:06 +00:00
sthen
ed3d1a0a57 tweak wrapper script; use larger default limits for FD and datasize
(you may still need to raise them if you open many tabs, but this
should be enough to avoid problems in normal use), only warn if
softlimits can't be raised, and adjust messages to mention login.conf
(and login.conf.db if detected).

ok espie@ "feel free to modify it if you don't like it" robert@
2011-02-08 21:10:28 +00:00
espie
8422be1e92 ... and ditch older patches too 2011-02-08 09:48:26 +00:00
espie
ae6e8f236b late update to chromium 9, robert@ did the work, but he doesn't have the
time right now.
Tree is still locked!
Reasons for the update:
- good work that can be used now
- only builds on i386/amd64, and they're fast
- multiple security problems in old chrome
- old chrome half working, can't break it more than it was.

This one requires resources (see MESSAGE), but it's ways more stable.

Again, discussed with sthen@, jasper@, naddy@, miod@
2011-02-08 09:43:02 +00:00
stephan
55eedb8bbe security update to 3.9, addresses SA-CONTRIB-2011-002 (XSS), see
http://drupal.org/node/1024972 for details.
"These are security things that need to go in before the lock. So commit with my OK." jasper@, maintainer timeout.
2011-02-04 10:28:01 +00:00
stephan
ef44e77bb0 update to 1.8 as a prerequisite for a security update of www/drupal6/panels.
"These are security things that need to go in before the lock. So commit it with my OK." jasper@
2011-02-04 10:22:16 +00:00
robert
1c272110c2 Disable on amd64, because it does not work.
After unlock a chrome update will come...

ok ajacoutot@, sthen@ and requested by many people
2011-02-03 10:31:12 +00:00
landry
1c74338058 Fix an unaligned access on sparc64 leading to random crashes when
mozilla tries to read a malformed ICC profile on random image content
found on the web.
backport of http://hg.mozilla.org/mozilla-central/rev/e8207773d54d
ref: https://bugzilla.mozilla.org/show_bug.cgi?id=629057
issue reported and fix found by naddy@
ok naddy@ ajacoutot@
2011-01-28 21:38:12 +00:00
okan
613460855d zap stray 2011-01-18 15:53:06 +00:00
landry
109b199a68 mozilla.port.mk makes all mozilla ports use the sydney_audio_sndio.c
file from www/mozilla-firefox, so remove old instances of that file that
weren't updated with last commits (and were unused anyway)
While here bump all REVISIONs after LIB_DEPENDS change.
ok naddy@
2011-01-18 12:37:44 +00:00
landry
008d9875bc Bump after LIB_DEPENDS changed, and add an empty
sa_stream_get_min_write() func to sydney_audio_sndio.c, required by
ffx4.0b9. (ofc it doesn't confuse other mozilla ports)
2011-01-18 12:33:38 +00:00
landry
7337b6d3c1 Tighten LIB_DEPENDS on very latest nss 3.12.9/nspr 4.8.7.
Remove @ silencing files/ copies.
ok naddy@
2011-01-18 12:31:24 +00:00
dcoppa
1247fd64da From upstream svn:
bump QuickTime emulation to 7.6.9 (fix apple.com movie trailers)
set width and height from the style attribute if present
2011-01-18 11:04:23 +00:00
benoit
dc23299924 - update p5-XML-Atom-SimpleFeed to 0.86
- maintainer timeout
2011-01-17 11:57:10 +00:00
sthen
b51c226ab2 SECURITY update to 5.2.17, and sync WANTLIB-imap while there.
lang/php will follow later.  ok robert@ (maintainer) aja@ jasper@
2011-01-17 11:47:19 +00:00
landry
958982dc66 Forgot to bump REVISION-lightning. All mozilla and no play makes jack a
dull boy.
Spotted by naddy@, thanks...
2011-01-16 16:56:02 +00:00
ajacoutot
8800006e21 Update to xcache-1.3.1.
from Brad (maintainer)
2011-01-16 07:58:09 +00:00
jasper
90847ee882 - remove USE_GROFF=Yes, manpages checked by brad.
from brad (MAINTAINER)
2011-01-15 10:56:51 +00:00
naddy
4cb3e73f03 bump revision for plist changes 4.8 -> 4.9 2011-01-15 01:09:42 +00:00
naddy
5ba9e6cafd Epoch bump for lang/gcc/3.3 because the version number shouldn't
count as older than one from 2005.

Revision bump for all ports that depend on libstdc++-3 because the
package specs have changed.
2011-01-15 01:07:45 +00:00
landry
f325f438b2 Add same PRAGMA secure_delete patch to seamonkey and ffx35 for the sake
of consistency, and build against systemwide sqlite.
2011-01-14 22:56:11 +00:00
landry
8bcab2e860 Actually depend on sqlite 3.7.4 which is the version where PRAGMA
secure_delete was added, and where FTS3 is enabled for mozilla-firefox.
2011-01-14 22:52:37 +00:00
jasper
23bdc66288 Remove mjc@ as maintainer after several generous time-outs. 2011-01-14 22:50:56 +00:00
landry
b07f44ae2e Add a patch doing PRAGMA secure_delete ON when opening connection to
sqlite database. Allows us to build against system sqlite3 again, and
get rid of the infamous symbol size mismatch warning reported several
times on ports@.
See https://bugzilla.mozilla.org/show_bug.cgi?id=445164 for why mozilla
now hard-requires secure_delete, and
https://bugzilla.mozilla.org/show_bug.cgi?id=546162 for the reasons they
don't want to make that an option and forces us to do such hacks.
ok jasper@
2011-01-14 22:49:47 +00:00
landry
7b2880d114 For all mozilla ports (but ffx4), build against system sqlite.
Trick configure into believing our sqlite has secure_delete enabled by
default.
2011-01-14 22:46:29 +00:00
jasper
00d1353d18 - update linkchecker to 6.2 2011-01-14 19:56:01 +00:00
jasper
a5b4450ad2 - SECURITY UPDATE of mhonarc to 2.6.18
Fixes:
CVE-2010-1677: DoS when processing html messages with deep nesting
CVE-2010-4524: Improper escaping of certain HTML sequences (XSS)
Specially crafted <base href> can lead to XSS exploit (bug id #32080)

From Christian Rueger (MAINTAINER)
2011-01-13 09:53:50 +00:00
stephan
78db77e639 update to 2.10 2011-01-13 08:46:36 +00:00
rpointel
1ad25b4ea2 Update ruby-thin to 1.2.7.
ok jeremy@ landry@
2011-01-12 17:47:38 +00:00
jeremy
0f569324e1 SUBDIR += squid,ntlm
OK jasper@
2011-01-11 18:01:09 +00:00
sthen
d803e5a5f6 update to 2.2 2011-01-11 14:04:30 +00:00
sebastia
0a41f531a0 Add sogo to the build, so that even more people might try it.
OK jasper@, landry@
2011-01-10 18:29:42 +00:00
marco
12e1cb6cd6 Bug fixes
ok stu and ian
2011-01-09 21:28:37 +00:00
stephan
0c4e382bcf update to 1.23 2011-01-08 13:31:15 +00:00
stephan
6b32512eaf update to 1.12 2011-01-08 13:24:28 +00:00
stephan
e296934ac9 update to 2.7 2011-01-08 13:21:17 +00:00
stephan
69f397385a update to 1.2, fix COMMENT 2011-01-08 13:14:26 +00:00
stephan
1689e80d3f update to 2.9 2011-01-08 13:10:54 +00:00
stephan
2cd5bcd3ae update to 3.9 2011-01-08 13:07:12 +00:00
stephan
c0a6e0ebef update to 2.4 2011-01-08 12:54:52 +00:00
stephan
1d028b9c06 update to 1.4 2011-01-08 12:48:46 +00:00
stephan
adc0696ba3 update to 2.2 2011-01-08 12:46:30 +00:00
landry
3eaef10d18 Fix WANTLIB. For some reason this one was not catched in bulks with
openldap 2.4.
2011-01-08 08:47:53 +00:00
laurent
9392b0743f Update xxxterm to 1.221, in in in in marco@, desktop goo by ian@ 2011-01-07 22:40:52 +00:00
jasper
d24d786d45 - zap defunt master site that's timing out
ok sthen@
2011-01-07 15:32:41 +00:00
benoit
f7fc26dafe - update p5-XML-Atom to 0.37 2011-01-07 14:51:41 +00:00
jasper
e240391264 - sync 2011-01-07 13:47:19 +00:00
jasper
89964f5c6c import p5-Starman 0.2007
from Abel Abraham Camarillo Ojeda with cleanups by me
	ok landry@
2011-01-07 13:45:39 +00:00
jasper
4ccecad9dc import p5-HTTP-Parser-XS 0.13
from Abel Abraham Camarillo Ojeda with cleanups by me
ok landry@
2011-01-07 13:45:11 +00:00
benoit
f5956858ba - update p5-CSS-Squish to 0.10 2011-01-07 11:46:58 +00:00
rpointel
8f0662bf7f Update CherryPy to 3.1.2.
ok Joerg Zinke (MAINTAINER).
2011-01-06 17:28:43 +00:00
jeremy
4f9664ab00 REVISION bump for rbx FLAVOR PLIST change.
OK landry@
2011-01-06 04:24:22 +00:00
jeremy
ae3933e98f REVISION bump for rbx FLAVOR PLIST change.
While here, fix the depends so it works for multiple FLAVORS.

OK landry@
2011-01-06 04:22:17 +00:00
dhill
a0455266a4 update to 1.45
take maintainership

ok jasper@
2011-01-05 17:43:48 +00:00
ajacoutot
ae70c849c2 Make use of rcexec.
While here, force postgresql to quit in rc_stop, ok pea@
2011-01-05 16:05:54 +00:00
jasper
1545bba4f5 - SECURITY fixes for SA42810
MediaWiki "Clickjacking" Security Bypass Vulnerability

Patches from upstream svn

ok stephan@ (MAINTAINER)
2011-01-05 11:51:57 +00:00
jasper
4e213d3d7b - SECURITY update phpmyadmin to 3.3.9
fixes Spoofing Weakness and Information Disclosure
CVE-2010-4480 and CVE-2010-4481

ok kevlo@ (MAINTAINER)
2011-01-05 11:48:01 +00:00
giovanni
54f30a4320 Update to release 1.1.1 2011-01-05 11:17:17 +00:00
dcoppa
8ae916b6af Update to predis-0.6.3 2011-01-05 11:03:31 +00:00
dcoppa
729f3f4f79 Apply the cups fix to the rest of Mozilla apps (mozilla-thunderbird,
sunbird, firefox35, seamonkey).

Ok & tested by landry@
2011-01-05 08:22:30 +00:00
giovanni
8f6ed5b4c9 Update to 2.23.03.28 and take maintainership
ok benoit@
2011-01-05 08:19:18 +00:00
sthen
7910273066 update horde apps to the latest version; tested by myself and
Johan Huldtgren, thanks!
2011-01-04 09:46:51 +00:00
benoit
dc6901323e - update wbox to 5
- change license
- update email of maintainer
- regen PLIST

ok laurent@
2011-01-03 20:46:02 +00:00
robert
fd4c5155c2 Update to 5.2.16 2011-01-03 15:03:03 +00:00
jasper
50f9688070 - and another chunk bites the dust 2011-01-03 10:50:51 +00:00
jasper
19860cb9ec - update node.js to 0.2.6 2011-01-03 10:22:29 +00:00
jasper
c3a30cbb2d - this port doesn't only have build dependencies...they ought to be run_depends
instead. and a missing one from maintainer
2011-01-03 09:30:33 +00:00
marco
1828da6c40 * rewrite of the cookie code to work around all kinds of libsoup issues.
* undo tab closure
* add socket to drive browser from CLI
* add option to only launch one xxxterm session
* add yank/paste support
* add runtime JS toggle
* add runtime cookie toggle
* add basic command aliasing
* add generic code to display runtime settings
* add new tab navigation button
* add runtime file to save cookie and JS white list items
* add restart browser command
* add ctrl-arrow keys to navigate tabs
* add wrap-around tab support
* make ESC go to command mode when in search or address bar
* fix tabbing through entry fields
* move X on tabs to left and make it a real button
* add option to open new tab after the current one instead of always
  appending to end of tab lists
* add session and persistent cookies in a sane matter (damn you libsoup)
* several other minor bug fixes

ok sthen
2011-01-02 22:15:13 +00:00
rpointel
5be9e1992c Update django to 1.2.4 from Ryan Boggs (Maintainer).
Add spaces around variables.

SECURITY FIX :
http://www.djangoproject.com/weblog/2010/dec/22/security/
2011-01-02 22:04:09 +00:00
fgsch
994c89dec3 Update to flup 1.0.2. martynas@ ok. 2011-01-02 20:50:55 +00:00
stephan
819967abb7 +image 2011-01-01 11:56:53 +00:00
stephan
25f8f34ed5 import drupal6-image-1.1, a very basic image handling module:
This module allows users with proper permissions to upload images into
Drupal. Thumbnails and additional sizes are created automatically.
Images could be posted individually to the front page, included in
stories or grouped in galleries.
Image module ships with several add-on modules: Image Gallery, Image
Attach, Image Import and ImageMagick Advanced.

ok landry@
2011-01-01 11:55:58 +00:00
dcoppa
6171c1e666 Regen patch-src_MainWindow_cpp
No functional changes, no bump.
2010-12-31 11:46:01 +00:00
landry
2a58dd58a7 Update to webkit 1.2.6, bugfixes only. Tweak WANTLIB while here. 2010-12-30 17:55:32 +00:00
giovanni
e5f2080ec0 Update to 0.92a and add an rcscript
Hints and ok ajacoutot@, ok benoit@
2010-12-30 10:21:25 +00:00
jasper
eddfe1e804 Enable node and add a note as to why it's using the bundled libcares 2010-12-30 08:54:52 +00:00
jasper
0abba27e81 - Fix install by setting LIB_DEPENDS so we can grab the libraries
ok dcoppa@ (MAINTAINER)
2010-12-30 08:33:59 +00:00
jasper
67f737d489 - erl(1) needs $HOME to be set, so remove the patch and properly deal with
it in CONFIGURE_ENV.
2010-12-30 08:33:24 +00:00
jasper
d6b8f76bab - this won't work on ARM untill __ARM_NR_cacheflush is implemented/worked-around in the v8 code. 2010-12-29 17:49:41 +00:00
jasper
968ba62354 - honor CXXFLAGS with this utterly retarded and stupid "build system"
(though this fix was simple, i take every opportunity to rant at scons)
2010-12-29 15:06:48 +00:00
jasper
8948bf2b4a - remove patch, and just set ALL_TARGET accordingly 2010-12-29 12:39:54 +00:00
jasper
fad598871c - remove unneeded patch. 2010-12-29 12:37:27 +00:00
jasper
f346c0f658 - don't link with -lpthread 2010-12-29 12:24:39 +00:00
ajacoutot
1a65cf35c8 Update to timetrex-3.3.1. 2010-12-29 12:20:40 +00:00
jasper
ddbc876d2c - remove unneeded patches 2010-12-29 12:06:32 +00:00
jasper
291509b4b5 - add (start of a) README 2010-12-29 11:50:34 +00:00
jasper
52b0f8c41d - fix another instance of putting the hostname of build machine in a config file
- let -main depend -web, instead of the other way around, this allows for no futher tweaks to run yaws

prompted/ok aja@
2010-12-29 10:26:35 +00:00
ajacoutot
9145731ac1 Fix rc_stop and rc_reload so that one can use sudo to manipulate the
daemon using the rc script. Make the rc script conform to rc.subr style.
2010-12-29 10:15:13 +00:00
jasper
d050660782 - add an rc script
rc.d-cluestick from aja@
2010-12-29 09:45:50 +00:00
ajacoutot
4a561ad806 Unbreak after previous commit. 2010-12-29 07:33:08 +00:00
jasper
dbf085daa1 import WIP node.js 0.2.5
Node.js is an evented I/O framework for the V8 JavaScript engine. It is
intended for writing scalable network programs such as web servers.

As there are still some issues to resolve, this won't be hooked up yet.

ok landry@
2010-12-28 18:19:28 +00:00
ajacoutot
e1e1b90b01 Update to xapian-omega-1.2.4. 2010-12-28 17:46:49 +00:00
marco
20b7e8636c Disable debug and add js toggle button.
ok laurent
2010-12-28 13:39:12 +00:00
jasper
282a6a3ca6 SECURITY FIX for SA42726
PECL phar Extension Format String Vulnerabilities.

patch from upstream svn
2010-12-27 20:34:29 +00:00
jasper
4be71cdd53 - fix build on at least mips64el by syncing the endian definitions, tested
on both big and little endian machines.
2010-12-27 15:48:01 +00:00
ajacoutot
4ec44530ca Simplify after recent rc.subr change.
The framework is now stable and we will start documenting it (at last).
2010-12-27 14:50:22 +00:00
stsp
fabc72b73a Apply patch from upstream to fix the "Print" and "Print Preview" crashes.
https://bugzilla.mozilla.org/show_bug.cgi?id=573039
https://bug573039.bugzilla.mozilla.org/attachment.cgi?id=499233
suggested by and ok landry@
2010-12-26 13:16:29 +00:00
landry
1cd5d235f9 Add gst-plugins-bad to RUN_DEPENDS, so that webkit-based browsers know
how to handle WebM/vp8 video out of the box. From brad.
2010-12-26 08:32:07 +00:00
ajacoutot
b28452a489 Cope with recent rc.subr changes. 2010-12-24 10:40:04 +00:00
marco
4361eb1c74 Roll to 1.138
ok and help to fix WANTLIB sthen laurent
2010-12-23 15:54:28 +00:00
jasper
fa852d74ae - SECURITY update of pmwiki to 2.2.21
which fixes SA42608, PmWiki "from" Cross-Site Scripting Vulnerability

If you're upgrading a previous installation, please take a moment to read
http://www.pmwiki.org/wiki/PmWiki/ReleaseNotes
2010-12-23 13:06:50 +00:00
jasper
2030b69976 - use libiconv module
ok kili@
2010-12-22 23:59:49 +00:00
jasper
e4c8edf922 - use gettext module
ok landry@ (MAINTAINER)
2010-12-22 22:41:35 +00:00
jasper
6a77ca74da - use gettext module
- regen WANTLIB
2010-12-22 22:39:04 +00:00
jasper
1642aaf973 - sync 2010-12-22 20:26:04 +00:00
jasper
8ecd9e3d51 import p5-SOAP-WSDL 2.00.10
SOAP::WSDL provides easy access to Web Services with WSDL descriptions.
The WSDL is parsed and stored in memory. Your data is serialized
according to the rules in the WSDL.  The only transport mechanisms
currently supported are http and https.

ok sthen@
2010-12-22 20:25:22 +00:00
sthen
d06d8de05f add missing build dep needed now we have added i18n support;
spotted jasper@, ok jasper@
2010-12-22 19:55:00 +00:00
jasper
bb4498eee3 - sync 2010-12-22 18:39:45 +00:00
jasper
ec1a42aa3c import yaws 1.89
Yaws is a HTTP high perfomance 1.1 webserver particularly well suited
for dynamic-content web applications. Two separate modes of operations
are supported:

    * Standalone mode where Yaws runs as a regular webserver daemon.
      This is the default mode.
    * Embedded mode where Yaws runs as an embedded webserver in another
      Erlang application.

Yaws is entirely written in Erlang, and furthermore it is a
multithreaded webserver where one Erlang lightweight process is used to
handle each client.

ok aja@
2010-12-22 18:38:03 +00:00
sebastia
ac9f7a15ec update WANTLIB and PLIST after gnustep.port.mk and bundles changes.
OK aja@
2010-12-22 09:23:01 +00:00
sebastia
2ec9484bb4 Update WANTLIB and PLIST after gnustep.port.mk and gnustep bundles changes
OK aja@
2010-12-22 09:21:44 +00:00
ajacoutot
204996fe1b Install language files.
from Fernando Quintero (maintainer)
2010-12-22 07:28:04 +00:00
joshe
0c8e04fdd9 Hook up www/conkeror
ok jasper@
2010-12-21 20:59:00 +00:00
joshe
96f8c3664e Import www/conkeror: keyboard-oriented Mozilla-based browser
Conkeror is a keyboard-oriented, highly-customizable, highly-extensible
web browser based on Mozilla XULRunner, written mainly in JavaScript,
and inspired by exceptional software such as Emacs and vi. Conkeror
features a sophisticated keyboard system, allowing users to run
commands and interact with content in powerful and novel ways. It is
self-documenting, featuring a powerful interactive help system.
2010-12-21 20:47:48 +00:00
kili
9779902ca8 Enable i18n support.
ok sthen@ (maintainer)
2010-12-21 18:17:27 +00:00
jeremy
fe75084c4f +=ruby-jekyll 2010-12-20 18:52:43 +00:00
jeremy
37157faaef Import ruby-jekyll 0.8.0
Jekyll is a simple, blog aware, static site generator. It takes a
template directory (representing the raw form of a website), runs it
through Textile or Markdown and Liquid converters, and spits out a
complete, static website suitable for serving with Apache or your
favorite web server.
2010-12-20 18:21:08 +00:00
jeremy
3c204b76fd Bump ruby-sinatra version to 1.1.0.
Permission given from landry@ and espie@ to commit ruby ports without
OKs.
2010-12-20 17:28:43 +00:00
ajacoutot
abbe07858a Update to cherokee-1.0.14.
From Fernando Quintero (maintainer).
Several fixes/tweaks as well as the rc script added by myself.
2010-12-20 07:51:58 +00:00
rpointel
8c9f1066fc Update to aria2 1.10.8.
ok landry@ (thanks for my first commit!)
2010-12-19 20:25:59 +00:00
jasper
eef504563b - remove Net::Jabber from the dependency list, it does nothing as
jabber support requires a different module.
2010-12-17 22:06:46 +00:00
ajacoutot
4d475fe43d Use the gettext module instead of the libiconv one and set WANTLIB
accordingly.

ok landry@ (maintainer)
2010-12-17 16:17:54 +00:00
jasper
3b3da075f5 - update p5-SOAP-Lite to 0.712
- fix license
- set MODCPAN_EXAMPLES
2010-12-17 00:00:45 +00:00
stephan
1782b7cee7 update to views-2.12, addresses SA-CONTRIB-2010-111 (Cross Site Scripting)
full details at http://drupal.org/node/999380, no DB update required.
2010-12-16 09:33:00 +00:00
dcoppa
805de1a031 Update to predis-0.6.2 2010-12-15 15:50:30 +00:00
jasper
4dcc0b9047 - sort 2010-12-15 00:09:12 +00:00
jasper
dfa4896385 - add missing dependency, spotted by aja@ 2010-12-14 08:57:01 +00:00
sebastia
c57b6e3df4 fix PLIST for the README file, should use FULLPKGNAME.
remove unused SUBST_VARS from Makefile.
2010-12-13 18:30:10 +00:00
jakemsr
5e4c653ebd update to minitube-1.3 following youtube.com changes
from Antti Harri (similar patches from steven@ and dcoppa@ too)
2010-12-13 17:22:06 +00:00
sthen
6e05e64e55 - update p5-CGI-Session to 4.42 and move some optional dependencies from
RUN_DEPENDS to REGRESS_DEPENDS.

- remove former MAINTAINER at his request.
2010-12-13 13:15:06 +00:00
espie
5cb978edde cut the "monster patches" into small pieces. pval can fix it to his liking
if he comes back.
In the mean time, fix build of chromium by adding the required
-I/usr/local/includes to gyp glue where needed.
2010-12-13 09:51:45 +00:00
jasper
27b23ec6b9 style 2010-12-12 18:58:32 +00:00
dcoppa
10cbb45d9c Update to youtube-dl 2010.12.09.
Similar diff from ckuethe@
Ok sthen@
2010-12-12 18:51:23 +00:00
kili
b19c725031 Update to hs-snap-server-0.2.16.2, necessary after the update of hs-text.
Tested by jim@.
2010-12-12 16:32:59 +00:00
kili
4b1cb58fc2 Update to hs-snap-core-0.2.16, necessary for an update of hs-snap-server
(and after the update to hs-text).

Tested by jim@.
2010-12-12 16:31:28 +00:00
sebastia
833d7a510c cleanup PLIST and some patches, fix hostname of build machine in about dialog,
was OK sthen@
additionally update rc script to latest changes (patch and OK from ajacoutot@).
Will be enabled after I find time to test on a clean system.
2010-12-11 14:21:08 +00:00
sebastia
c0a2726211 Fix an abort() in sogo, and bump.
was OK landry@
2010-12-11 14:10:32 +00:00
ajacoutot
8a39ef78ea Move these to rc_reload=NO. 2010-12-11 12:57:37 +00:00
landry
cde74941c8 +p5-Plack and its new dependencies 2010-12-11 09:55:51 +00:00
landry
622b3c36fd Import p5-Plack 0.9956 :
Plack is a set of tools for using the PSGI stack. It contains middleware
components, a reference server and utilities for Web application
frameworks. Plack is like Ruby's Rack or Python's Paste for WSGI.

See PSGI for the PSGI specification and PSGI::FAQ to know what PSGI and
Plack are and why we need them.

From MAINTAINER Abel Abraham Camarillo Ojeda on ports@
2010-12-11 09:51:31 +00:00
landry
721a3eef44 Import p5-PSGI 1.03:
This document specifies a standard interface between web servers and
Perl web applications or frameworks, to promote web application
portability and reduce the duplicated efforts by web application
framework developers.

From Abel Abraham Camarillo Ojeda on ports@
2010-12-11 09:46:56 +00:00
ajacoutot
fb9e2948ec Use quotes to be consistent with other rc scripts. 2010-12-11 08:05:38 +00:00
ajacoutot
8c14c39747 Regen WANTLIB to unbreak installation.
prodded by landry@
2010-12-11 06:33:58 +00:00
landry
38b73bb9e6 Update to firefox-i18n 3.6.13 2010-12-10 10:54:41 +00:00
landry
9390a47d47 Update to mozilla-firefox 3.6.13:
Fixes MFSA 2010-74->84
http://www.mozilla.org/security/known-vulnerabilities/firefox36.html
2010-12-10 10:53:40 +00:00
landry
f6b71b0013 Update to firefox35 3.5.16.
Fixes MFSA 2010-74->84.
http://www.mozilla.org/security/known-vulnerabilities/firefox35.html
2010-12-10 10:36:00 +00:00
landry
408d469cdb Update to seamonkey 2.0.11.
Fixes MFSA 2010-74->84.
2010-12-10 10:04:21 +00:00
jeremy
b0efc65894 sync 2010-12-09 20:58:37 +00:00
jeremy
6cb90e3248 Import ruby-rainbows.
Rainbows! is an HTTP server for sleepy Rack applications. It is based
on Unicorn, but designed to handle applications that expect long
request/response times and/or slow clients.

ok landry
2010-12-09 20:07:41 +00:00
jeremy
9c0c4b14d9 Import ruby-unicorn.
Unicorn is a HTTP server for Rack applications designed to take
advantage of features in Unix/Unix-like kernels and only serve
fast clients on low-latency, high-bandwidth connections.

ok landry
2010-12-09 20:06:47 +00:00
jeremy
0fe7b67a39 Update to 2.2.2, required by update to ruby-datamapper.
ok landry
2010-12-08 22:53:50 +00:00
jeremy
dc2e9a29bf Update rest of ruby-merb to 1.1.3
ok landry
2010-12-08 22:13:24 +00:00
jeremy
92d2729a69 Update ruby-merb_datamapper to 1.1.2.
This requiers an update to ruby-datamapper, which will be committed
shortly.

ok landry
2010-12-08 22:12:00 +00:00
jeremy
48c40e253c Remove ruby-merb-more, no longer used. It's been replaced by ruby-merb.
ok landry
2010-12-08 22:09:29 +00:00
jeremy
d5bbd2925e Update merb-auth{,core,more,slice-password} to 1.1.1
ok landry
2010-12-08 22:08:20 +00:00
jeremy
a1a5eee40b Tighten depends so it matches gem version
ok landry
2010-12-08 22:06:48 +00:00
jeremy
e84756d314 Update to 3.0.3.
All rails apps need at least minor modifications to upgrade from
the previous ports version (2.3.4) to 3.0.3. Check the Rails 3
Release notes for details:
http://edgeguides.rubyonrails.org/3_0_release_notes.html

ok landry
2010-12-08 21:55:21 +00:00
jeremy
f6b912fcc4 Update to 1.2.1.
ok landry
2010-12-08 21:48:59 +00:00
jeremy
f6f7353f5a Update to 3.0.3.
ok landry
2010-12-08 21:44:48 +00:00
jeremy
4b91a91317 sync 2010-12-08 21:37:06 +00:00
jeremy
f6cbc7c26e Import ruby-railties, one of the dependencies for Rails 3.
Railties is responsible for gluing the parts of Ruby on Rails together.
Overall, it:

* handles the entire bootstrapping process for a Rails application;
* manages the rails command line interface;
* provides the core Rails generators;

ok landry
2010-12-08 21:29:22 +00:00
jeremy
04c112b2a3 Import ruby-rack-test, one of the dependencies for Rails 3.
Rack::Test is a small, simple testing API for Rack apps. It can be used
on its own or as a reusable starting point for Web frameworks and
testing libraries to build on.

ok landry
2010-12-08 21:28:33 +00:00
jeremy
8ddc1124e8 Import ruby-rack-mount, one of the dependencies for Rails 3.
Rack::Mount is a stackable dynamic tree based Rack router.  Rack::Mount
supports Rack's +X-Cascade+ convention to continue trying routes if the
response returns pass. This allows multiple routes to be nested or
stacked on top of each other. Since the application endpoint can trigger
the router to continue matching, middleware can be used to add arbitrary
conditions to any route. This allows you to route based on other request
attributes, session information, or even data dynamically pulled from a
database.

ok landry
2010-12-08 21:27:56 +00:00
dcoppa
bc962f5ffb +canto 2010-12-06 22:36:30 +00:00
dcoppa
562447ca19 Import www/canto.
Canto is an Atom/RSS feed reader for the console that is meant to be
quick, concise, and colorful. It provides a minimal, yet information
packed interface with almost infinite customization and extensibility.

OK landry@
2010-12-06 22:33:18 +00:00
jasper
8db1cdf2d6 - missed in previous:
- SECURITY FIX for SA42443, "multipart_init()" HTTP Header Injection Vulnerability
from upstream git.
2010-12-06 07:59:34 +00:00
jasper
72e30b3c33 - SECURITY FIX for SA42443, "multipart_init()" HTTP Header Injection Vulnerability
from upstream git.
2010-12-06 07:58:50 +00:00
landry
8e82f4c2a6 Update to aria2 1.10.7, from MAINTAINER Remi Pointel 2010-12-05 18:07:24 +00:00
landry
40bd5ee71c Minor tweak.. www/drupal5 went into the attic, so remove it from drush
CATEGORIES.
2010-12-05 17:34:14 +00:00
ajacoutot
df4e1203e4 Bump after recent cpan.port.mk change.
ok jasper@
(final commit)
2010-12-03 11:46:46 +00:00
jasper
b2f0dcd7a1 - boolean variables only take boolean values, not random chit chat.
from mikolaj kucharski.
2010-12-03 07:27:02 +00:00
sebastia
50fc800245 Include missing headers to get rid of compiler warnings, and bump.
OK sthen@, jasper@
2010-12-02 14:56:11 +00:00
dcoppa
ffe014ae90 Oops! Missed a bump. 2010-12-01 15:16:30 +00:00
dcoppa
927ee14bcd Fix Kerberos/GSSAPI authentication within mozilla ports.
OpenBSD does not have gssapi_krb5. So, to avoid undefined symbol
errors, link libxul with "-lkrb5 -lcrypto".

OK phessler@, landry@ (MAINTAINER)
2010-12-01 15:00:12 +00:00
jasper
5acccedf1d - SECURITY UPDATE of phpmyadmin to 3.3.8.1
Fixes CVE-2010-4329, phpMyAdmin Database Search Cross-Site Scripting Vulnerability

ok kevlo@ (MAINTAINER)
2010-12-01 09:03:31 +00:00
merdely
4866f5e9d0 Update Wordpress 3.0.2 2010-12-01 03:49:14 +00:00
jasper
b44f531dc3 - update py-turbogears to 1.1.1
from remi pointel, maintainer timed-out
2010-11-30 20:01:04 +00:00
dcoppa
557742f0fa I accidentally broke the ldap flavor. Mea culpa.
Pointed out by espie@
2010-11-29 23:06:39 +00:00
sthen
2a41c9ea91 Drop obsolete lines from DESCR and bump. 2010-11-29 21:27:23 +00:00
sthen
5aaf112216 Update tomcat/v5 to 5.5.31, adjust README, switch to SUBST_CMD,
kurt@ drops maintainership. From Daniel Dickman, "please commit" aja
2010-11-29 21:26:01 +00:00
stephan
e6cd25c8dd +drupal6-password_strength 2010-11-29 15:07:21 +00:00
stephan
110b22f331 Import drupal6-password_strength-1.0:
This module adds PHP-based password strength checking and validation
routines that mirror the jQuery routines, so that administrators can
restrict passwords to only be, for example, "high" strength. The module
simply modifies existing password confirm fields (where two passwords
are entered, like the user edit form), so no other setup is required
beyond configuring the desired enforcement rules.

ok landry@
2010-11-29 15:05:07 +00:00
dcoppa
c943621eb4 Style fix (no bump needed).
Pointed out by Brad
2010-11-27 11:12:12 +00:00
dcoppa
3646003328 "pexp is useless in the rc script, please remove it." ajacoutot@ 2010-11-26 15:44:33 +00:00
espie
be2f93f11d since db/v4 has db->=4,<5 as default, no need to specify it explicitly 2010-11-26 14:50:09 +00:00
dcoppa
81599f251c Add ntlm flavor for NTLM authentication
Fix pthread linkage
Fix default path for errors directory
Switch to pkg-readmes
Add an rcscript

OK giovanni@, Brad (MAINTAINER)
2010-11-26 13:45:04 +00:00