6935 Commits

Author SHA1 Message Date
tb
125552165a Update to tlsfuzzer 20210426 2021-04-26 17:19:33 +00:00
gonzalo
50cb66e8b2 Update for Suricata to 6.0.2
OK jasper@
2021-04-26 09:09:01 +00:00
tb
7fe7a3bf6d Use FLAVOR instead of MODPY_DEFAULT_VERSION_3.
Pointed out by aja and jca
2021-04-24 12:19:10 +00:00
bluhm
46662e0f3c update botan2 to 2.18.0 2021-04-24 11:05:48 +00:00
landry
7828fdf909 security/nss: update to 3.64
see https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.64_release_notes
will be required by firefox 89 (#1699657)
2021-04-24 08:17:07 +00:00
ajacoutot
4664208dbd Update to libgcrypt-1.9.3. 2021-04-24 07:44:41 +00:00
tb
bd902044ab +py-fastecdsa,python3 2021-04-24 04:35:30 +00:00
tb
8fd3f5c57e import py-fastecdsa, ok inoguchi sthen
Fast elliptic curve cryptography, specifically digital signatures.  There
is no nonce reuse, no branching on secret material, and all points are
validated before any operations are performed on them.  Timing side
channels are mitigated via Montgomery point multiplication.  Nonces are
generated per RFC6979.
2021-04-24 04:33:53 +00:00
rsadowski
a593fc8227 Update knockpy to 5.1.0
With help and feedback from jca@, gnezdo@ and sthen@
2021-04-24 04:23:59 +00:00
jeremy
b0b1d925a7 Stop building ruby26 ports by default
Ruby 2.6 is now in security maintenance mode, so per our Ruby support
policy, we will no longer build ruby26 packages by default.
2021-04-24 00:31:55 +00:00
tb
5097bb8426 Update to tlsfuzzer 20210419 2021-04-23 20:54:58 +00:00
sthen
62d368be0a update to clamav-0.103.2, https://blog.clamav.net/2021/04/clamav-01032-security-patch-release.html
CVE-2021-1252 <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1252>:
Fix for Excel XLM parser infinite loop. Affects 0.103.0 and 0.103.1 only.

CVE-2021-1404 <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1404>:
Fix for PDF parser buffer over-read; possible crash. Affects 0.103.0 and 0.103.1 only.

CVE-2021-1405 <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-1405>:
Fix for mail parser NULL-dereference crash. Affects 0.103.1 and prior.

Fix possible memory leak in PNG parser.

FreshClam: Deprecate the SafeBrowsing config option. The SafeBrowsing
option will no longer do anything.

FreshClam: Improved HTTP 304, 403, & 429 handling.

Fix the FreshClam mirror-sync issue where a downloaded database is
"older than the version advertised."
2021-04-07 19:17:21 +00:00
sthen
f5275046a3 update to passwdqc-2.0.2 2021-04-05 13:26:31 +00:00
sebastia
e76eb15cd9 include missing patch from last update
build failure reported by naddy@
2021-04-04 12:45:17 +00:00
sebastia
3ebbe955d7 update 6.1.5 -> 6.1.6 2021-04-03 21:48:56 +00:00
sebastia
cf83e031bb update to 2021-04-02 2021-04-02 20:49:57 +00:00
rsadowski
993be15487 Update qca-qt5 to 2.3.2 2021-04-01 12:19:41 +00:00
sthen
52c69678d4 update to certbot/py-acme 1.13.0 2021-03-31 20:46:19 +00:00
sthen
f0452cfca8 update to py-josepy-1.8.0 2021-03-31 20:39:22 +00:00
sthen
957028d194 update to scrypt-1.3.1 2021-03-31 20:37:37 +00:00
jasper
0c7e890365 - update angr to 9.0.6642
- submitted patches have been merged upstream
- get rid of another superfluous patch and handle it with CXXFLAGS
- drop maintainership
2021-03-31 18:12:19 +00:00
tb
ea424e1815 security/py-cryptography: SSL_OP_NO_DTLSv1{,_2} were added to libcrypto
ok jsing sthen
2021-03-31 17:18:54 +00:00
sthen
66c340f7e6 The py2 version of py-openssl is no longer needed 2021-03-29 12:13:52 +00:00
sthen
8fe8557fa6 Replace (unmaintained py2-only) yubiserve with "yubikeyedup", a rewrite.
Note, while it is broadly compatible with the most common use of
yubiserve it has its limits: it supports only sqlite3 (using the same
schema as before) not other databases, and it only supports HTTP
internally, if you require HTTPS then you will need to use a proxy (e.g.
relayd or nginx). It no longer uses a configuration file, only command
line arguments.
2021-03-29 12:08:39 +00:00
sthen
fc390f5d6c add missing FLAVOR?= 2021-03-29 09:03:39 +00:00
jasper
5d60db212d update to ROPGadget-6.5 2021-03-28 14:17:23 +00:00
sthen
43dd50f4f5 update to sslscan-2.0.9 2021-03-27 14:10:00 +00:00
tb
21b1ac0907 Update to tlsfuzzer 20210326 2021-03-26 22:01:53 +00:00
pvk
0ac40ce972 Update vault 1.6.3 -> 1.7.0
Changelog: https://github.com/hashicorp/vault/blob/master/CHANGELOG.md#170
ok ajacoutot@
2021-03-25 18:13:54 +00:00
sthen
e7022f0e0b bump for openssl update 2021-03-25 14:56:48 +00:00
sthen
1e85553ac5 update to openssl-1.1.1k 2021-03-25 14:54:12 +00:00
sebastia
bac4c64da9 hook up py-fickling 2021-03-24 19:51:50 +00:00
sebastia
e04bf8c9d5 import py-fickling
Fickling is a decompiler, static analyzer, and bytecode rewriter for
Python pickle object serializations.

Pickled Python objects are in fact bytecode that is interpreted by a
stack-based virtual machine built into Python called the "Pickle
Machine". Fickling can take pickled data streams and decompile them into
human-readable Python code that, when executed, will deserialize to the
original serialized object.

feedback and OK sthen@
2021-03-24 19:50:29 +00:00
ajacoutot
2cd67ebcef Update to libgpg-error-1.42. 2021-03-24 07:39:18 +00:00
sebastia
d9f5c2e535 simple update 3.8.15 -> 3.8.17 2021-03-23 22:19:19 +00:00
sebastia
a1a7c72741 simple update 0.13.1 -> 0.13.3 2021-03-23 22:18:40 +00:00
sthen
86a7e430a0 update to libassuan-2.5.5 2021-03-23 14:53:06 +00:00
landry
bc5d9fa3ab security/nss: update to 3.63.
Will be required by gecko 88.
Relnotes will be at
https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.63_release_notes
2021-03-22 15:05:00 +00:00
ajacoutot
cfca9e8e9e Update to libnettle-3.7.2. 2021-03-21 16:20:20 +00:00
abieber
44973d77a2 Update rbw to 1.1.2. 2021-03-21 14:19:48 +00:00
tb
b7d2b39972 Unhook py-axolotl 2021-03-21 08:58:37 +00:00
tb
dcd4dcb8aa Move py-axolotl to python3-only.
ok feinerer (maintainer), kmos, sthen
2021-03-21 08:57:54 +00:00
daniel
565c1ce9cd remove subdirs for ports that are python3 only now 2021-03-20 15:57:03 +00:00
tb
6dbd19a940 Update to tlsfuzzer 20210320 2021-03-20 06:50:06 +00:00
abieber
0969b4a3f7 Update to 1.1.0 2021-03-17 00:45:27 +00:00
jca
a395bbab12 Update to keyringer-0.5.5
From Gregoire Jadi (maintainer)
2021-03-16 23:27:51 +00:00
millert
06641650cf Update to sudo 1.9.6p1 2021-03-15 18:49:47 +00:00
sthen
230868dc06 drop unused py-sqlite dep, this uses python's built-in sqlite3 support 2021-03-14 11:47:04 +00:00
sthen
5595817cce add some notes on the chain of deps needed to update py-fido2 2021-03-12 21:43:47 +00:00
sthen
76cb4e5f83 update to py-scrypt-0.8.17
(yet another pytest port needing PY_IGNORE_IMPORTMISMATCH=1 to avoid
"imported module .../lib... is not the same as the test file we want to
collect [file without lib...]")
2021-03-12 21:25:54 +00:00