13579 Commits

Author SHA1 Message Date
espie
9993904419 overriding the flags on the command line means bsd.dep.mk can't do its job.
fix it.

(not an issue with clang)
2017-07-02 20:33:06 +00:00
bcallah
6c76b62307 Update to 2.5, bugfix update.
Requested by fcambus@
ok jca@
2017-07-01 20:12:31 +00:00
pascal
b5d0483656 SECURITY update to 0.3.0.9. Fixes CVE-2017-0377. 2017-07-01 19:11:57 +00:00
ajacoutot
f3a307595e Update to py-botocore-1.5.78. 2017-07-01 11:23:44 +00:00
sthen
3473d62b0d update to radcli-1.2.8 2017-06-30 13:37:34 +00:00
jca
c8f699cfbf Fix pexp in rcscript.
You may need to manually remove /var/run/rc.d/ladvd.

From MAINTAINER Paul de Weerd.
2017-06-30 08:12:58 +00:00
ajacoutot
922efd9171 Update to py-botocore-1.5.77. 2017-06-30 07:55:12 +00:00
sthen
ab9e1e6794 Update to BIND 9.10.5-P2
An error in TSIG handling could permit unauthorized zone transfers
or zone updates. CVE-2017-3142, CVE-2017-3143.

Also updates the address of b.root in hints.
2017-06-29 21:14:54 +00:00
jca
dac26607b9 SECURITY update to knot-2.4.5
o Improper TSIG validity period check can allow TSIG forgery
  No CVE assigned (yet?)
2017-06-29 17:10:06 +00:00
sthen
b8e25c5765 update to ldns-1.7.0, maintainer timeout 2017-06-29 10:31:05 +00:00
sthen
48109a318b Switch lftp to using mandoc, fixing tables.
Add a patch from schwarze@ to avoid information loss in both groff and
mandoc (".PP text" to ".PP\ntext").

"It looks like pkg_create(1) is not passing the -t option to groff(1)
because lftp(1) lacks the tbl(7) annotation that you can see in the
first source line of, for example, xz(1)." and OK schwarze@

OK rsadowski@ (maintainer)
2017-06-29 08:49:33 +00:00
bluhm
0ef52d0821 update p5-Net-DNS to 1.11 2017-06-28 17:04:10 +00:00
sthen
ed49e497ad use getpwnam_shadow to unbreak non-anonymous ftp connections in vsftpd.
ok benoit@
2017-06-28 15:03:42 +00:00
ajacoutot
9eb479e347 Our cp(1), mv(1) and rm(1) support `-v' now.
ok sthen@
2017-06-28 13:16:48 +00:00
ajacoutot
17413c78af Update to bro-2.5.1. 2017-06-28 09:56:09 +00:00
ajacoutot
a571dad984 Update to py-botocore-1.5.76. 2017-06-28 08:49:05 +00:00
naddy
09c9be5d65 Maintenance update to 7.54.1. The security fix does not affect us. 2017-06-27 19:16:40 +00:00
kirby
79eb77c369 update to seafile-6.0.7 2017-06-26 12:42:22 +00:00
sthen
df619bc55b update to librenms-1.29 2017-06-25 22:34:36 +00:00
landry
428b96ea62 Update to xl2tpd 1.3.9.
ok sthen@
2017-06-25 10:31:47 +00:00
ajacoutot
82be0069d7 Update to py-botocore-1.5.75. 2017-06-25 09:25:18 +00:00
czarkoff
7af541df5d +telegram-purple 2017-06-24 00:25:12 +00:00
czarkoff
f2243e7f66 import telegram-purple
Telegram-purple is a libpurple protocol plugin that adds support for the
Telegram messenger.

OK, feedback and tweaks bcallah@, sthen@
2017-06-24 00:20:17 +00:00
ajacoutot
91ceab98dc Bump.
-@depend devel/gettext:gettext->=0.10.38:gettext-0.19.8.1
2017-06-23 14:54:03 +00:00
ajacoutot
d17c563c6e Update to py-botocore-1.5.74. 2017-06-23 13:11:17 +00:00
fcambus
f5b3638189 Update a few things in libmaxminddb:
- Update the geolite2 maintainer target to cope with new upstream
  packaging scheme, and also fetch the ASN database
- Add a subpackage for the ASN database
- Update GeoLite2 databases to latest version

OK sthen@
2017-06-23 11:40:36 +00:00
sthen
f97cdca07a update to scamper-20161204a 2017-06-22 21:55:48 +00:00
sthen
6cbbbbd480 drop the gettext module from olsrd, ok stsp@ 2017-06-22 16:47:17 +00:00
ajacoutot
52651853c0 Update to py-botocore-1.5.73. 2017-06-22 07:44:26 +00:00
bcallah
2c19bc9d76 Remove net/texapp. The service it targeted has been shut down.
ok fcambus@
2017-06-21 20:30:39 +00:00
jca
b4c7ab72a1 Switch to self-hosted tarballs
Upstream seems to serve two versions of the 2.4.3 tarball (issues with
cloudflare ?).
2017-06-21 19:01:23 +00:00
jca
a2403ca8e7 SECURITY update to openvpn-2.4.3
Fixes for:
- CVE-2017-7508 Remotely-triggerable ASSERT() on malformed IPv6 packet
- CVE-2017-7520 Pre-authentication remote crash/information disclosure
  for clients
- CVE-2017-7521 Potential double-free in --x509-alt-username
- CVE-2017-7512 Remote-triggerable memory leaks
- CVE-2017-7522 Post-authentication remote DoS when using
  the --x509-track option
- Null-pointer dereference in establish_http_proxy_passthru()

Full description at
https://community.openvpn.net/openvpn/wiki/VulnerabilitiesFixedInOpenVPN243

This update kills some of our patches that were committed upstream.
Similar diff proposed by pirofti@, ok pirofti@ stsp@
2017-06-21 12:51:08 +00:00
espie
1d61e4c67d you guys missed one, or gcc gets ioctl magically 2017-06-21 11:28:06 +00:00
ajacoutot
f081fe31b1 Update to py-botocore-1.5.72. 2017-06-21 07:18:02 +00:00
jca
5acbabebc6 Drop extra line, and ack successful test reports from Sebastien Leclerc 2017-06-20 22:29:38 +00:00
shadchin
cfe4dbd2f1 Update to py-idna 2.5
ok sthen@, bcallah@
2017-06-20 20:23:39 +00:00
danj
09168d30e1 Update to haproxy-1.6.13 2017-06-20 17:38:40 +00:00
stsp
d1ead8c734 Several fixes for our net/olsrd port:
Make sendto() work for IPv4 by setting the IP_MULTICAST_IF socket option.
Allows this port to drop the dependency on net/libnet and stop using the
associated sendto() replacement hack (which supports only IPv4).

Make IPv6 work: Fix adding/deleting IPv6 routes, and don't complain
about a missing net.inet6.icmp6.rediraccept sysctl.

Also enable the verbose build so build logs show the commands
being used to compile things.

ok danj@ sthen@
2017-06-20 15:14:10 +00:00
ajacoutot
07cf83b8c1 Update to py-botocore-1.5.71. 2017-06-20 07:33:55 +00:00
ajacoutot
a89bcf8abc Update to libepc-0.4.6. 2017-06-20 07:18:19 +00:00
sebastia
737d8ff67a Use the modern libobjc2 runtime from x11/gnustep/libbojc2, make
use of the gnustep module.

Patches for the modern runtime from Debian (pointer to it from jca@)

Additionally, some failing tests, due to using the modern runtime, are disabled

The package is currently broken, and this is an attempt to fix it, and
give people a chance to actually test it.

proposed to go ahead by sthen@, also OK espie@, jca@
2017-06-19 21:02:11 +00:00
schwarze
3727539c8f Drop USE_GROFF and bump.
There is a bit less bold face with mandoc because with mandoc, .in
terminates .ft, but in many of these cases, i doubt that the author
even intended so much bold face, and the mandoc output looks better.
2017-06-17 17:45:23 +00:00
jasper
9d7bc1103c update to neon-0.30.2 2017-06-17 13:23:32 +00:00
schwarze
336576512d identical formatting, drop USE_GROFF and bump 2017-06-17 13:14:49 +00:00
feinerer
b3642b0a51 Update to Syncthing 0.14.30
"go ahead" edd@
2017-06-17 07:26:50 +00:00
ajacoutot
35f69be843 Update to py-botocore-1.5.70. 2017-06-17 07:23:28 +00:00
sthen
995eac158e update to ladvd-1.1.1, from Paul de Weerd (maintainer) 2017-06-16 15:05:00 +00:00
sthen
970ca1237a update to pear-Net-Socket-1.2.2 2017-06-16 14:12:04 +00:00
sthen
18ed72c09c nupdate to pear-Net-IDNA2-0.2.0 2017-06-16 14:10:39 +00:00
sthen
56c7465af5 update to pear-Net-SMTP-1.8.0, enable tests 2017-06-16 14:03:46 +00:00