3634 Commits

Author SHA1 Message Date
sthen
2a503e3ef5 missing REVISION bump with HOMEPAGE change 2014-07-11 13:33:29 +00:00
espie
4afa811dc8 fix HOMEPAGE to the same, you guys suck 2014-07-11 07:34:23 +00:00
rpe
b0fefb1d19 Move ports that used filename{url}sufx to fetch DISTFILES from
Github to GH_ACCOUNT, GH_PROJECT, GH_TAGNAME, GH_COMMIT.

OK sthen@ jasper@ aja@
2014-07-10 11:06:37 +00:00
jasper
ddbbde83f6 - remove unreachable homepages on berlios and add a working one where applicable
- move master sites to the berliosbot created sourceforge projects
2014-07-09 16:49:35 +00:00
landry
52fd890687 Bugfix update to 3.16.2, required by upcoming gecko 31 releases.
See https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.16.2_release_notes
2014-07-08 20:07:53 +00:00
pea
9c7f0f7478 Bugfix update to 2.0.25
ok sthen@
2014-07-08 10:36:03 +00:00
ajacoutot
067408556f Update to libtasn1-4.0. 2014-07-06 09:33:19 +00:00
ajacoutot
df237a5da6 Update to p11-kit-0.20.3. 2014-07-06 09:21:32 +00:00
sthen
4b3cc61c0f update to libsodium-0.6.0 2014-07-02 08:49:42 +00:00
sthen
040d487684 cleanup includes, ok benoit@ 2014-07-01 12:15:10 +00:00
sthen
0e0b010ad2 Set J in MAKE_FLAGS (to MAKE_JOBS). john-jumbo make infrastructure passes
this as -j$(J) to child processes, so if undefined this results in "gmake -j".
As gmake(1) says, "If the -j option is given without an argument, gmake
will not limit the number of jobs that can run simultaneously."

Hopefully this fixes a weird build failure that naddy saw and I was able
to replicate after a bunch of build attempts.
2014-06-26 22:10:33 +00:00
sthen
b1b06532b4 call cl_initialize_crypto() from cl_init(), to unbreak HAVP following update
to clamav 0.98.4

https://bugzilla.clamav.net/show_bug.cgi?id=11037
2014-06-26 15:36:11 +00:00
sthen
50e88f9946 Update to gnupg-2.0.24; various fixes including "infinite loop in uncompressing
garbled packets" (CVE-2014-4617). Fix capitalization in COMMENT while there
as was already done in security/gnupg (gpg1.x). OK pea@ (maintainer).
2014-06-26 13:38:06 +00:00
sthen
ea3247717b update to gnupg-1.4.17
http://lists.gnupg.org/pipermail/gnupg-announce/2014q2/000344.html

CVE-2014-4617: DoS due to garbled compressed data packets
2014-06-26 00:30:15 +00:00
sthen
65bd7d3cd9 update to p5-Authen-SASL 2.16 2014-06-23 13:40:15 +00:00
bluhm
e5805f57e0 update p5-IO-Socket-SSL to 1.994 2014-06-22 14:19:31 +00:00
bluhm
861c374caf update p5-IO-Socket-SSL to 1.993 2014-06-20 13:34:56 +00:00
bluhm
c03eb1968b update p5-Net-SSLeay to 1.64 2014-06-19 23:07:31 +00:00
sthen
89e3a3abaa forced whitespace-only commit to test a theory about cvsync 2014-06-19 15:21:53 +00:00
sthen
b5aa8b37a3 update to clamav 0.98.4, fixes infinite loop in clamdscan when clamd
is not running (the fix for buffer underruns with multipart MIME was
already patched locally)
2014-06-17 09:12:45 +00:00
sthen
9f71d7e708 @comment zero-byte perl .bs files 2014-06-14 23:26:00 +00:00
sthen
5ac2bb534a fix mktemp template, from Ted Roby
while there, kill groff and tidy Makefile a little
2014-06-12 18:21:12 +00:00
bluhm
bbb5cf4e67 update p5-IO-Socket-SSL to 1.992 2014-06-09 02:21:18 +00:00
bluhm
247707c151 update p5-Net-SSLGlue to 1.053 2014-06-08 21:35:16 +00:00
pea
5c2fa0acce Update to 2.0.23
ok pascal@
2014-06-06 08:14:07 +00:00
sthen
8260785533 switch to a snapshot version 2014-06-04 13:52:40 +00:00
robert
092a3bc3d8 apply security patch for CVE-2014-3879 which fixes an incorrect error
handling in PAM policy parser
http://www.freebsd.org/security/advisories/FreeBSD-SA-14:13.pam.asc
2014-06-04 08:50:08 +00:00
sthen
e7d0856ba7 add conflict marker 2014-06-03 14:28:40 +00:00
sthen
fdb847093a +john-jumbo 2014-06-03 14:28:10 +00:00
sthen
8c67524622 import ports/security/john-jumbo, a patched version of John the Ripper with
support for additional hashes etc. ok benoit@, plus I made a minor fix after
OK to use the gettext module.
2014-06-03 14:27:54 +00:00
rpointel
403fd3e5d7 changed python3 default version so bump revision. 2014-06-03 11:35:12 +00:00
lteo
16be997947 Remove PFRAG.mysql, which is no longer needed since the update to
p0f 2.0.5 has removed MySQL support.

ok nigel@ (maintainer)
2014-06-03 02:56:13 +00:00
lteo
1228bd9c17 Update MASTER_SITES.
ok nigel@ (maintainer)
2014-06-03 02:55:50 +00:00
sthen
52c24aaed1 Update license marker; as of Feb 2012 this is no longer dual GPL/BSD, it is
just plain 3-clause BSD. No pkg change.
2014-06-02 20:12:53 +00:00
sthen
dc617c1689 off-by-one in length checking in printf_encode, crash reported by jirib at
devio dot us
2014-06-02 11:26:21 +00:00
sthen
22834a1fe2 Update to gnutls-3.2.15, fixes memory corruption in TLS client "Server Hello"
parsing found by Codenomicon, and various other issues. No API/ABI change.
ok ajacoutot@
2014-05-30 11:32:21 +00:00
sthen
29b317842f Update to libtasn1-3.6, fixes possible invalid memory accesses by the DER
decoder found using the Codenomicon TLS test suite. ok ajacoutot@

No API/ABI changes, asn1_der_decoding_element() is marked as deprecated but
nothing in-tree uses it.
2014-05-30 11:30:40 +00:00
bluhm
5aa52e4820 update p5-IO-Socket-SSL to 1.989 2014-05-26 23:30:33 +00:00
bluhm
821780bdb0 update p5-Net-SSLeay to 1.63 2014-05-26 22:27:52 +00:00
sthen
a7bde2ca8d don't rely on openssl to pull in string.h 2014-05-23 12:37:17 +00:00
sthen
4ac75f4f02 don't rely on openssl for string.h 2014-05-23 12:33:30 +00:00
naddy
f776d36af0 fix build on -current; from maintainer David Hill 2014-05-22 11:33:05 +00:00
bluhm
cd9b66996e update p5-IO-Socket-SSL to 1.988 2014-05-18 23:01:59 +00:00
bluhm
4b40f402ff update p5-IO-Socket-SSL to 1.986 2014-05-17 09:23:27 +00:00
bluhm
6f4c884149 update p5-IO-Socket-SSL to 1.985 2014-05-15 23:19:39 +00:00
bluhm
679288028f update p5-IO-Socket-SSL to 1.984, this provides OCSP support 2014-05-15 22:33:21 +00:00
sthen
99ce12ef9a switch to a different test for the simple "is it at least possible to
import this module" check done at build time, viq noticed that the package
was now working (following safestack.h r1.13 et al) but the test still failed.
2014-05-15 22:00:13 +00:00
jturner
14b5fcf80c Hook up reop. Reminded by bcallah@ 2014-05-15 12:05:24 +00:00
jturner
fb145a4259 Import ports/security/reop. MAKE_FLAGS suggestion and ok sthen@
reop (reasonable expectation of privacy) is a utility that creates and
verifies cryptographic signatures. It supports both asymmetric and
symmetric encryption.
2014-05-15 00:40:45 +00:00
sthen
b50c3300e1 update to libsodium 0.50, openbsd-relevant entries from changelog are:
- sodium_mlock()/sodium_munlock() have been introduced to lock pages
in memory before storing sensitive data, and to zero them before
unlocking them.
 - High-level wrappers for crypto_box and crypto_secretbox
(crypto_box_easy and crypto_secretbox_easy) can be used to avoid
dealing with the specific memory layout regular functions depend on.
 - crypto_pwhash_scryptxsalsa208sha256* functions have been added
to derive a key from a password, and for password storage.
 - Salsa20 and ed25519 implementations now support overlapping
inputs/keys/outputs (changes imported from supercop-20140505).
 - The poly1305-53 implementation has been replaced with Floodyberry's
poly1305-donna32 and poly1305-donna64 implementations.
 - sodium_hex2bin() has been added to complement sodium_bin2hex().
 - On OpenBSD and Bitrig, arc4random() is used instead of reading
/dev/urandom.
 - crypto_auth_hmac_sha512() has been implemented.
 - sha256 and sha512 now have a streaming interface.
 - hmacsha256, hmacsha512 and hmacsha512256 now support keys of
arbitrary length, and have a streaming interface.
 - crypto_verify_64() has been implemented.
 - CPU features are now detected at runtime.
2014-05-14 10:06:08 +00:00