Commit Graph

8721 Commits

Author SHA1 Message Date
pascal
b6ee0c371b SECURITY update to tor 0.2.2.38. From the ChangeLog:
Changes in version 0.2.2.38 - 2012-08-12
  Tor 0.2.2.38 fixes a rare race condition that can crash exit relays;
  fixes a remotely triggerable crash bug; and fixes a timing attack that
  could in theory leak path information.
2012-08-13 16:39:35 +00:00
naddy
635d3f8dd9 0.98.9 does not require access to private libpng data structures any longer
ok maintainer, jasper@
2012-08-13 14:07:01 +00:00
jasper
c2d045892e - update to 0.98.9
from Azwaw OUSADOU (MAINTAINER)
2012-08-12 17:33:04 +00:00
bluhm
d074592c11 update p5-DNS-ZoneParse to 1.10
from Stefan Rinkes; ok Girish Venkatachalam (maintainer)
2012-08-07 21:20:23 +00:00
okan
40da2487b6 unbreak PLIST; ok sthen@ 2012-08-07 14:03:58 +00:00
naddy
ee86b61264 arpa/inet.h and netinet/in.h can now be #included in either order 2012-08-07 10:18:47 +00:00
sthen
c4cebc1945 Security update to BIND 9.9.1-P2, from Brad.
CVE-2012-3868: High TCP Query Load Can Trigger a Memory Leak
CVE-2012-3817: Heavy DNSSEC Validation Load Can Cause a "Bad Cache"
Assertion Failure
2012-08-07 07:44:27 +00:00
naddy
e35bc83fd4 fix prototypes; no need for groff 2012-08-06 17:35:34 +00:00
sthen
cebf0414ca use MODLUA_BIN to unbreak 2012-08-06 09:50:50 +00:00
sthen
082443441c unbreak path to lua binary 2012-08-06 09:47:20 +00:00
ajacoutot
6bb66a06ba ${SYSCONFDIR}/rc.d -> ${RCDIR} 2012-08-06 08:46:59 +00:00
naddy
8772c908e9 arpa/inet.h and netinet/in.h can now be #included in either order 2012-08-05 20:28:51 +00:00
jasper
141f87c6ce Security fix for CVE-2012-3435
'itemid' was not properly sanitized which would lead to an SQL injection flaw.

ok robert@ (MAINTAINER)
2012-08-05 19:29:35 +00:00
ajacoutot
44375fc467 Remove the samba,cups FLAVORs. 2012-08-05 09:57:23 +00:00
dcoppa
862fb57f81 Remove this; committed by mistake.
ok ajacoutot@, sthen@
2012-08-05 08:14:56 +00:00
sthen
7ce46402a0 We no longer patch the autoconf input files, so switch back to
CONFIGURE_STYLE=gnu - from Brad.
2012-08-05 08:02:11 +00:00
sthen
7c0e03bbef update to ISC-DHCP 4.2.4-P1, from Brad
CVE-2012-3570: An Error in the Handling of an Unexpected Client
Identifiers can Cause Server Crash When Serving DHCPv6

CVE-2012-3571: An Error in the Handling of Malformed Client Identifiers
can Cause a Denial-of-Service Condition in Affected Servers

CVE-2012-3954: Memory Leaks Found in ISC DHCP
2012-08-04 21:15:35 +00:00
sthen
73f342959a update to unbound 1.4.18; includes a crash fix (assertion failure).
- rc.d script now generates the unbound-control keys if they don't exist
and the sample config file is patched to enable this, various rc.d/unbound
actions depend on this, pointed out/ok aja@
2012-08-04 20:43:54 +00:00
ajacoutot
5787f3b87c Set rc_usercheck to NO. 2012-08-04 15:28:14 +00:00
ajacoutot
d09d99daf0 Fix WANTLIB/LIB_DEPENDS now that iniparser has been fixed. 2012-08-04 15:13:26 +00:00
ajacoutot
9824017b25 Remove the cups FLAVOR and depends on cups,-libs.
Fix to build with cups >= 1.6.
2012-08-04 14:45:34 +00:00
espie
39ab78796c ... and some of the patches I forgot to add 2012-08-04 14:25:33 +00:00
espie
6fdca43594 fix non-sensible libtool parameters, allows us to drop some very weird
libtool code.
2012-08-04 14:24:23 +00:00
sthen
c397356e55 +isc-bind 2012-07-19 08:37:02 +00:00
sthen
1fae95c381 import BIND 9.9.1-P1 as ports/net/isc-bind - this is newer than the
version of BIND than is in the base OS (some people require features
from this version e.g. DNS64), but note that it does not include
the hardening changes made to the version in base.

feedback from naddy@ giovanni@, ok giovanni@.

"BIND is open source software that implements the Domain Name System
(DNS) protocols for the Internet. It is a reference implementation
of those protocols, but it is also production-grade software,
suitable for use in high-volume and high-reliability applications."
2012-07-19 08:36:45 +00:00
jasper
1082d1b985 - update to 2.8.4
from piotr sikora (MAINTAINER)
2012-07-18 14:03:44 +00:00
jasper
e36ebe3043 Update to 2.10.6, includes a security fix for:
CVE-2012-3374 Fix a buffer overflow vulnerability when parsing incoming messagescontaining inline images.

from brad (MAINTAINER)
2012-07-18 13:31:49 +00:00
sthen
1883325b00 update to the version of queryperf distributed with BIND 9.9.1-P1 2012-07-18 10:22:44 +00:00
dcoppa
d2f37796e0 Update to mldonkey-3.1.2
While here, fix some errors wrt non-native ocaml architectures
2012-07-17 13:26:49 +00:00
jasper
3ddd3990e2 remove gnet, it's deprecated and shouldn't be used anymore since the
functionality has been in glib >= 2.22.

ok aja@
2012-07-17 10:49:13 +00:00
jasper
a6d1858786 unhook gnet 2012-07-17 10:48:57 +00:00
jasper
433ff4d7f4 sync 2012-07-17 10:46:41 +00:00
jasper
d554330325 remove outdated, deprecated and half-working cruft
ok sthen@
2012-07-17 10:46:23 +00:00
jasper
5267fbd152 remove broken scli, which also lacks working non-default community strings
ok sthen@
2012-07-17 10:46:01 +00:00
dcoppa
c3d8c9b9b0 Mention that miniupnpc wants 'multicast_host=YES'
suggestions/ok ajacoutot@
2012-07-17 08:30:58 +00:00
sthen
33753eb2d0 sync 2012-07-16 15:22:29 +00:00
sthen
173a380270 import ports/net/ttg, ok jasper@
TTG is a small command-line utility to display the throughput (bandwidth
usage) on an interface of a remote device such as a router, switch, etc.,
over SNMP.

Unlike tools like MRTG which sample bandwidth over a relatively long
interval (often 5 minutes), TTG is normally used to display throughput
over as little as one second.
2012-07-16 15:22:05 +00:00
landry
3c6705d52c Update to iftop 1.0pre2.
Better than what we have in tree, and upstream is practically dead.
Tested on amd64/ppc/sparc64.
From Brad, MAINTAINER timeout.
2012-07-16 08:49:38 +00:00
giovanni
7cc1504616 Major update to 6.01
tests & ok benoit@, thanks
2012-07-16 07:39:31 +00:00
dcoppa
5a72116b35 Back out the update to 0.13.2/0.9.2; too much problems to make
release.

OK sthen@, naddy@
2012-07-15 10:20:07 +00:00
espie
ffcdf26940 fix typo.
reported to Niels Provos, in case he still cares...
2012-07-13 17:51:42 +00:00
ajacoutot
42b587edf7 Bump to force rebuild so that a new package will be ready for 08/25.
requested by mlarkin@
2012-07-13 17:15:09 +00:00
ajacoutot
afa6611b95 --disable-static 2012-07-13 16:56:55 +00:00
sthen
599929145d update to OpenConnect 4.05 2012-07-12 23:10:23 +00:00
naddy
a4e4debdb1 update to 7.26.0 and update DESCR 2012-07-11 22:15:00 +00:00
sthen
6e611dc992 fix timestamps to avoid autotools cascade
regen patch while there
2012-07-11 09:38:39 +00:00
dcoppa
de5f8fb099 Fix a crash when total number of connections exceeds 1024
(from FreeBSD)

Fix a bug where manual tracker update for a preferred tracker that
fails would end up rerequesting instantly
(upstream git commit 78f56ee74cecd8e82d39baaea10395301fbec4b8)
2012-07-11 08:33:39 +00:00
william
2d7fd6010b Add dependency on logtail and enable the amavis, courier, mailscanner,
and perdition plugins.  The dependency can be satisfied by either the
logtail or logsentry ports (thanks to sthen for realizing this!)

ok sthen
2012-07-11 03:46:42 +00:00
espie
6ae86a797e somehow, some wrong options passed to gnu libtool vanish.
Correct to the right option
2012-07-10 22:53:57 +00:00
jasper
144e2930d7 handle multiple lua versions, for now everything builds with the "old" 5.1 in the new location.
use FLAVOR=lua52 to use lua 5.2 with these ports.
2012-07-10 15:22:44 +00:00