6605 Commits

Author SHA1 Message Date
tb
3a3b720046 Add a test for zero content type from jsing
This checks whether a TLSv1.3 server handles the case of a record
with all-zero plaintext correctly (i.e., by sending an unexpected
message alert) in various contexts.  This would have caught a bug
where the LibreSSL TLSv1.3 record layer would call freezero() with
a size of -1.

What's missing is a test that sends a completely empty record. The
framework doesn't seem to permit that easily.
2020-08-13 17:16:05 +00:00
afresh1
476becf898 +p5-Alt-Crypt-RSA-BigInt +p5-Crypt-OpenPGP +p5-Unix-OpenBSD-Random 2020-08-13 03:10:37 +00:00
afresh1
9d77bcfc14 Bring back p5-Crypt-OpenPGP
The patch by me converts it to use arc4random_buf instead of normal
ways of getting random data.


Crypt::OpenPGP is a pure-Perl implementation of the OpenPGP standard.
In addition to support for the standard itself, Crypt::OpenPGP
claims compatibility with many other PGP implementations, both those
that support the standard and those that preceded it.

Crypt::OpenPGP provides signing/verification, encryption/decryption,
keyring management, and key-pair generation; in short it should
provide you with everything you need to PGP-enable yourself.
Alternatively it can be used as part of a larger system; for example,
perhaps you have a web-form-to-email generator written in Perl, and
you'd like to encrypt outgoing messages, because they contain
sensitive information. Crypt::OpenPGP can be plugged into such a
scenario, given your public key, and told to encrypt all messages;
they will then be readable only by you.

This module currently supports RSA and DSA for digital signatures,
and RSA and ElGamal for encryption/decryption. It supports the
symmetric ciphers 3DES, Blowfish, IDEA, Twofish, CAST5, and Rijndael
(AES). Rijndael is supported for key sizes of 128, 192, and 256
bits. Crypt::OpenPGP supports the digest algorithms MD5, SHA-1, and
RIPE-MD/160. And it supports ZIP and Zlib compression.

Originally from henning@ with patches and adjustements by me
OK sthen@
2020-08-13 03:09:52 +00:00
afresh1
07a64a758a Import security/p5-Unix-OpenBSD-Random
A wafer-thin wrapper around the arc4random(3) library function.

OK sthen@
2020-08-13 03:06:01 +00:00
afresh1
1f43e610fd Import security/p5-Alt-Crypt-RSA-BigInt
This is a rework of Crypt::RSA to remove Math::Pari and instead base
all operations on Math::BigInt.

This first version is intended to be a plug-in replacement for
Crypt::RSA, with no user-visible changes. This means some issues
will remain unresolved until future versions.

Originally from henning@ with adjustments by me
OK sthen@
2020-08-13 03:05:17 +00:00
naddy
e10775e205 pull in upstream fix so aarch64 builds; ok ajacoutot@ phessler@ 2020-08-11 10:50:55 +00:00
jmatthew
d75fbef5a8 update to 0.6.1 2020-08-08 11:05:26 +00:00
jasper
402f322974 switch py-ropper to python3 by default 2020-08-07 09:59:10 +00:00
tb
628b21d886 Update to tlsfuzzer 20200805 2020-08-07 03:56:22 +00:00
sebastia
5903365488 update to 2020-08-06 2020-08-06 10:35:09 +00:00
tb
b2813769da Update to tlsfuzzer 20200804 2020-08-05 09:58:28 +00:00
abieber
171c50893f Update to 1.9.2. Diff from Raymond E. Pasco <ray at ameretat dot dev>. Tweak
from me for setting main.version.

Thanks Raymond!
2020-08-01 14:43:32 +00:00
sthen
999eb1097f update to py-cryptography 3.0
drop maintainer
2020-08-01 11:47:16 +00:00
sthen
97ba85a83b drop maintainer 2020-08-01 11:30:36 +00:00
ajacoutot
3c0042b3a4 Remove reference to the mysql FLAVOR which doesn't exist.
Drop myself as maintainer while here.
2020-07-31 13:28:05 +00:00
benoit
483b37a045 Update to p5-Crypt-LE-0.36, from wen heping 2020-07-31 08:06:04 +00:00
rpointel
5f7f754eb8 update floss to 1.6.1. 2020-07-31 05:19:31 +00:00
tb
0f35bab626 Update to tlsfuzzer 20200725 2020-07-30 11:23:55 +00:00
pvk
a4c773a20b Change default SSH signature algorithm from sha to sha2-256
ok ajacoutot@
2020-07-30 08:14:53 +00:00
bket
5688f6f29e Update to rhash-1.4.0
Changes: https://github.com/rhash/RHash/releases/tag/v1.4.0.

OK sthen@
2020-07-29 13:33:22 +00:00
gonzalo
54116c7b26 Update SQLmap to 1.4.7
OK benoit@
2020-07-27 08:12:08 +00:00
kmos
87eebc03ae sslscan does not compile with base-gcc. Need at least ports-gcc for
non-base-clang architectures.

ok sthen (maintainer)
2020-07-26 20:03:34 +00:00
naddy
1ec3c8bf91 drop sslscan,openssl from category Makefile, too 2020-07-25 22:10:52 +00:00
sthen
e4103c34a0 update to sslscan-2.0.0, merge flavour into default version 2020-07-25 17:27:00 +00:00
robert
1a290538d4 update to openpam dated at 20200510 2020-07-25 09:47:59 +00:00
ajacoutot
05eb61fcd7 Update to vault-1.5.0. 2020-07-25 07:52:05 +00:00
landry
32637dc565 Update to nss 3.55, will be required by gecko 80.
See https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.55_release_notes
2020-07-25 05:38:27 +00:00
benoit
df9c9d68ba Drop maintainership, no more use. 2020-07-24 13:49:28 +00:00
tb
3e39af0559 Update to tlsfuzzer 20200721 2020-07-22 12:57:23 +00:00
tb
b44685a53d Avoid buffer overflow in SIOCGIFMEDIA
In 2015, stsp changed the ifm_ulist from int * to uint64_t.
This was fixed by sthen but the patch got lost in an update.
Upstream aircrack-ng has this fixed in 1.6.0 and later.

Found by Martin (martingot protonmail com) and MALLOC_OPTIONS=C
Tested by Martin and clematis

ok stsp
maintainer timeout
2020-07-22 12:53:31 +00:00
sthen
955ba39131 update to clamav-0.102.4 2020-07-20 11:42:54 +00:00
lteo
1a1d4931d7 Update to Ghidra 9.1.2.
https://ghidra-sre.org/releaseNotes_9.1.2.html

Thanks to Jeremy O'Brien for testing!
2020-07-19 01:29:23 +00:00
jasper
65bd229722 update to pwntools-4.2.1 2020-07-17 18:08:56 +00:00
jasper
b8eb493f21 py-M2Crypto -> py3-M2Crypto 2020-07-17 17:48:11 +00:00
jasper
dc4714e72c - update to py-M2Crypto-0.36.0
- make this python3-only
2020-07-17 17:47:30 +00:00
jasper
a8409d79db update to cryptodome-3.9.8 (mostly fixes related to the Shamir's Secret Sharing implementation) 2020-07-14 17:59:56 +00:00
sthen
6cc9779250 switch my maintainer email addresses to my own domain 2020-07-11 22:54:35 +00:00
rsadowski
e188f5170c Update keepassxc to 2.6.0
- Enable Keeshare.
- Fix ld issue with missing library path.
- Add patch to unbreak ninja build.

Changlog from upstream:
https://github.com/keepassxreboot/keepassxc/releases/tag/2.6.0

README forf unveail docs from Timo Myyrä, OK kn@ Thanks!
2020-07-07 17:33:56 +00:00
kn
0a1cfa833a Update to angr 8.20.7.6 2020-07-07 14:51:51 +00:00
ajacoutot
2d46f6ee5c Update to libgcrypt-1.8.6. 2020-07-07 07:08:29 +00:00
ajacoutot
655f86f720 Update to gnupg-2.2.20.
from Aisha Tammy
maintainer timeout
2020-07-05 10:10:38 +00:00
espie
b39082aa1a fix broken conflict spec. nice thinko 2020-07-05 10:05:40 +00:00
jca
68cb7c0868 Drop maintainership
Being listed as the maintainer kinda implies that I care, but I don't:
I haven't used gpg1 for years.  In fact, it's been years since I think
this port ought to be removed and the tree should be moved to
security/gnupg2.  But someone has to do that work.
2020-07-05 09:40:19 +00:00
ajacoutot
9ca9820fa6 Update to vault-1.4.3.
based on a patch from pvk@
2020-07-04 10:44:36 +00:00
sthen
22f39b485e bump; plist changed but no forced python dep 2020-07-04 09:59:56 +00:00
sthen
95d31a4bd8 bump for search.cpan.org->metacpan.org change 2020-07-03 21:44:29 +00:00
sthen
d9cfe4113e bump REVISION; python 3 default changed to 3.8 2020-07-03 21:12:24 +00:00
rsadowski
9c25b885c4 Remove qoauth 2020-07-03 13:58:08 +00:00
rsadowski
2b6e2b882c Remove qoauth 2020-07-03 13:57:40 +00:00
bket
bcb752cbc6 Update to mbedtls-2.16.7
This update includes a fix for a side-channel attack on ECC key import
and validation. Overview on changes can be found at
https://github.com/ARMmbed/mbedtls/releases/tag/mbedtls-2.16.7.

OK inoguchi@
2020-07-03 07:35:41 +00:00