Commit Graph

6972 Commits

Author SHA1 Message Date
gonzalo
70488cb82f Update for Fluxbb to 1.5.0 with some security update:
* Use proper status codes for "Bad request" (and similar) error messages.
* Negative values in some config options leading to strange situations.
* Path disclosure through error messages in search.php (and others).
* Subscriptions were handled incorrectly when merging or splitting topics.
* Ignore BBCodes in search strings.
* The Technetium style had an issue with resizing images.
* Renaming users would unban them.

And others http://fluxbb.org/forums/viewtopic.php?id=6328

While here, the extract part is not needed.

Ok aja@.
2012-08-18 18:33:55 +00:00
sebastia
5b49a7b0f8 Fix the patch, spotted by jasper@ 2012-08-18 12:46:06 +00:00
ajacoutot
7ab36748ae Remove irrelevant $FreeBSD RCS ids. 2012-08-18 12:41:37 +00:00
ajacoutot
b7eab0566c boring morning useless cleanup: remove the FreeBSD RCS tags; it makes
sense for ports Makefile but not really for categories.

ok espie@
2012-08-18 07:25:25 +00:00
sebastia
3e702402f1 update sogo to latest release.
feedback and OK sthen@
2012-08-17 09:59:08 +00:00
sebastia
8c913c9354 Update sope to latest release.
OK sthen@
2012-08-17 09:57:30 +00:00
jasper
17019fba7a security update to 2.10.19, fixes CVE-2012-3952
phplist "unconfirmed" Cross-Site Scripting Vulnerability
2012-08-17 08:58:46 +00:00
ajacoutot
9449a84a6c Update to owncloud-4.0.7. 2012-08-16 08:50:22 +00:00
jasper
d765606865 - update to 3.4.3 2012-08-14 08:10:53 +00:00
jasper
7aa69cf58d - update to 3.4.4 2012-08-13 08:27:31 +00:00
jasper
1558c51d65 - update to 2.3 2012-08-12 17:15:13 +00:00
jasper
14b29e9792 - update to 1.11 2012-08-12 17:13:49 +00:00
fgsch
29e9a5a126 - Better fix for the cups API deprecation issue
- Remove unneeded patch since we have openat(5) now (and from 5.0)
- Bump revision

ajacoutot@ robert@ (maintainer) ok.
2012-08-12 15:13:57 +00:00
fgsch
399b378f5d Update to werkzeug 0.8.3 2012-08-10 20:13:37 +00:00
fgsch
d4442e0a0f Update to flask 0.9. 2012-08-10 20:13:10 +00:00
gonzalo
a6e3adbf99 Update to 1.2.2
* [NEW] Implement a new setting, do_not_track, to set the Do Not Track
  HTTP header.  This setting is disabled by default in normal mode and
  enabled in whitelist mode.
* Fix the keybindings in the example config so they properly represent
  the default values in the source code.
* Add some additional paranoia in the input focus code to prevent a
  segfault on some sites (most notably, pnc.com).
* Fix a bug where HSTS would never be enabled if referer_mode = always
* Fix the build when debugging is enabled
* Show a warning when the binary could not be run when executing a
  program based on a MIME type, except for the special "donothing"
  binary name.

Tested by severals.

Ok aja@ gsoares@
2012-08-10 14:12:58 +00:00
landry
ca5db3ed4a Sync firefox(1) with firefox -h.. fix a bunch of lies. 2012-08-07 16:16:52 +00:00
landry
fb0432c4b2 Bugfix update to webkit 1.8.2.
See http://trac.webkit.org/wiki/WebKitGTK/1.8.x for list of fixes.
2012-08-07 09:35:37 +00:00
landry
735225a7b4 Update to seamonkey-i18n 2.11 2012-08-07 09:03:31 +00:00
landry
9bbed215fb Update to seamonkey 2.11/enigmail 1.4.3.
- see http://www.seamonkey-project.org/releases/seamonkey2.11/
- remove the -rpath hack, not needed since matthew's ld.so fix from
  12/06
- backport cset from #750620 to fix ppc (and other exotic archs) build.
- force-disable gconf in configure.in (bug #765556)
- remove the chunk from #763408, packaging was fixed
2012-08-07 09:02:33 +00:00
landry
b1e3e34607 Update to firefox-i18n 14.0.1. 2012-08-07 08:56:55 +00:00
landry
4c781ead8a Update to firefox 14.0.1.
- see http://www.mozilla.org/en-US/firefox/14.0.1/releasenotes/
- enable H.264 video support through gstreamer. Mention that one needs to
  manually install gstreamer-ffmpeg. Not all videos/sites will work.
- backport cset from #776838 & #747257 for various gst fixes.
- backport cset from #750620 to fix ppc (and other exotic archs) build.
- backport cset from #752895 to fix packaging issues.
- remove patch-content_xslt_src_base_txDouble_cpp, useless since mozilla
  switched to mfbt/double-conversion.
- remove nss opening hack in Sync, it works fine without it.
- remove the -rpath hack, not needed since matthew's ld.so fix from 12/06
2012-08-07 08:55:40 +00:00
ajacoutot
f3bfa4d4c6 Don't die on deprecated declaration warnings, aka fix build with cups >= 1.6.
spotted by fgsch@
ok robert@ (maintainer)
2012-08-06 17:21:32 +00:00
naddy
af7e54d962 remove USE_GROFF from ports that don't install any man pages 2012-08-06 11:14:39 +00:00
ajacoutot
075139b57f Regen checksum for date-7.x-2.5.fr.po which has been changed.
ok espie@ (maintainer)
2012-08-06 07:54:34 +00:00
ajacoutot
207493fd52 Missed in previous. 2012-08-05 22:16:21 +00:00
ajacoutot
92b8792c46 Upstream rerolled tarball, spotted by naddy@ 2012-08-05 22:15:51 +00:00
naddy
8772c908e9 arpa/inet.h and netinet/in.h can now be #included in either order 2012-08-05 20:28:51 +00:00
ajacoutot
080b1a9b48 +zurmo 2012-08-04 15:19:53 +00:00
ajacoutot
23bfa3fa24 Import zurmo-0.7.10.
Zurmo is an open source CRM  application written in PHP utilizing
jQuery, Yii Framework, and RedBeanPHP.

The goal with Zurmo is to provide an easy-to-use, easy-to-customize CRM
application that can be adapted to any business use case. 
Special care has been taken to think through many different use cases
with a system designed to provide a high degree of flexibility, covering
a wide variety of use cases out of the box.
<...>

ok jasper@
2012-08-04 15:19:32 +00:00
ajacoutot
2fc0a48c2f SECURITY update to owncloud-4.0.6. 2012-08-04 15:06:07 +00:00
ajacoutot
96e81080c6 There is no more gtk+2-cups. 2012-08-04 15:01:50 +00:00
ajacoutot
2e47348b05 Remove dependency on x11/gtk+2,-cups; this package will soon disapear. 2012-08-04 14:46:24 +00:00
espie
6454700bfa fix dep, no need to pull drupal6 in (which may pull a lot of shit along
if you're running d7 with sqlite).

okay jasper@
2012-07-20 09:31:35 +00:00
landry
7b446d9807 Fix url in README, reminded by viq. 2012-07-19 15:27:11 +00:00
jasper
83b6738491 some distfiles have been re-rolled 2012-07-19 08:26:30 +00:00
landry
d47ed74f3f Bugfix update to tt-rss 1.5.11. 2012-07-19 07:19:21 +00:00
jasper
e89a6bc56c - update to 3.2.13
from vtamara@pasosdeJesus.org
maintainer timed-out
2012-07-18 14:10:28 +00:00
sthen
32268b7d14 Update to the Apache HTTP server 2.2.22, the current release on the 2.2 branch.
Merged from diffs from myself, Rodolfo Gouveia and with an rc script from
giovanni@.

This is a security update, fixing CVE-2011-3348, CVE-2011-3368, CVE-2011-3607,
CVE-2011-4317, CVE-2012-0021, CVE-2012-0031 and CVE-2012-0053.
2012-07-18 08:45:42 +00:00
landry
ee585ea0a0 +py-cef, py-metlog, py-repoze-who, py-recaptcha-client, py-gevent, py-greenlet 2012-07-17 19:34:09 +00:00
landry
3ba85fac23 Import py-repoze-who 2.0.
repoze.who is an identification and authentication framework for
arbitrary WSGI applications. it can be configured either as WSGI
middleware or as an API for use by an application.

Required by upcoming firefox sync server port.
ok rpointel@
2012-07-17 19:30:50 +00:00
landry
938b5d16fa Import py-recaptcha-client 1.0.6.
Provides a CAPTCHA for Python using the reCAPTCHA service. Does not
require any imaging libraries because the CAPTCHA is served directly
from reCAPTCHA.  Also allows you to securely obfuscate emails with
Mailhide. This functionality requires pycrypto. This library requires
two types of API keys. If you'd like to use the CAPTCHA, you'll need a
key from https://www.google.com/recaptcha/admin/create.  For Mailhide,
you'll need a key from http://www.google.com/recaptcha/mailhide/apikey.

Required by upcoming firefox sync server port.
ok rpointel@
2012-07-17 19:29:13 +00:00
landry
9ae851a904 Update to dokuwiki 2012-01-25b.
Hotfix release for a XSS issue, see
http://bugs.splitbrain.org/index.php?do=details&task_id=2561

From Christopher Zimmermann, commiting on behalf of pea@ (maintainer)
2012-07-17 17:28:35 +00:00
jasper
d6d127eaf4 sync 2012-07-13 10:12:45 +00:00
jasper
3f33e2ccdf import nodes in block
Nodes in block makes it possible to add nodes into a block. A number of
configurable blocks are generated which you can assign to a region.
Visibility settings of this block are automatically set to 'Show on only
the listed pages'. On the node content form, you define the weight and
visibility per node thus making it easier for content administration as
all your content is now in the same place. With this module, you don't
have to explain your customers how blocks work but is still able to
decide on which pages content must be rendered.
2012-07-13 09:58:42 +00:00
jasper
8303b294ca - fix wantlib
- add missing modules
2012-07-13 09:16:44 +00:00
jasper
7ec7167fc8 sync 2012-07-12 21:50:09 +00:00
jasper
dffc571fb4 import theme-atcommerce
AT Commerce is fresh, professionally designed theme for eCommerce sites
with baked in support for the Commerce module and Ubercart.

Mobile eCommerce is supported using responsive design methods, so your
online store will display and work across mobile channels without any
extra work or effort.
2012-07-12 21:49:35 +00:00
jasper
b968848807 import adaptive-theme
Adaptivetheme is a powerful theme framework with smoking hot support for
responsive web design.

Adaptivetheme is the perfect start for themers, site builders and anyone
wanting to support the mobile web without additional development
overhead and cost.
2012-07-12 21:48:58 +00:00
jasper
04f534eb55 import disable_messages
Gives a site owner options to disable specific messages shown to end
users. The core drupal message system as offered by drupal_set_message
is an excellent way for modules to send out messages to the end users.
However not all drupal site owners are keen to show all the messages
sent out by drupal core and all modules to their users. This module
gives site administrators a reasonably powerful way to filter out
messages shown to the end users.
2012-07-12 21:48:14 +00:00