ajacoutot
3569b20b7d
Add missing symlink to p11-kit-proxy.so.
2015-03-22 07:39:48 +00:00
sthen
a41d0d0532
last piece of the puzzle, this patch also needs to die: both flavours now
...
package ok.
2015-03-21 15:26:18 +00:00
ajacoutot
8ac19790e8
Add BUILD_DEPENDS on devel/py-hgtools${MODPY_FLAVOR}.
...
discussed with sthen@ ; should fix packaging that port
2015-03-21 13:21:46 +00:00
sthen
0d0ec202ad
drop the version string in LIB_DEPENDS and just use the one picked up from
...
libnet's PKGSPEC
2015-03-21 13:07:09 +00:00
naddy
030b50217c
fold PFRAG.shared into PLIST for SHARED_ONLY ports
2015-03-20 22:47:40 +00:00
sthen
f9790344fd
SECURITY update to OpenSSL 1.0.1m
...
http://openssl.org/news/secadv_20150319.txt
2015-03-19 16:22:04 +00:00
dcoppa
fa31b7d6b0
Update to wpa_supplicant-2.4
...
Tested by pascal@ and Fabian Raetz
OK pascal@
2015-03-18 15:35:43 +00:00
ajacoutot
ad641cf0fd
Allow building with USE_SYSTRACE.
...
Fix keyring/cli.py shebang while here.
2015-03-16 22:49:46 +00:00
landry
08c6cabf90
Bugfix update to nss 3.17.4.
...
See https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.17.4_release_notes
for details.
2015-03-16 19:15:44 +00:00
naddy
2382144b92
fold lib-only PFRAG.shared into PLIST, regen PLIST, and bump
2015-03-16 18:07:34 +00:00
gonzalo
c24234bd9a
Update for Lynis 2.0.0:
...
https://github.com/CISOfy/Lynis/blob/master/CHANGELOG
OK benoit@
2015-03-16 15:09:12 +00:00
ajacoutot
1727309843
+py-keyring,python3
...
+py-secretstorage,python3
2015-03-16 11:10:22 +00:00
ajacoutot
b95beaa5c8
Update to py-keyring-5.3 and add a python3 FLAVOR.
2015-03-16 11:09:37 +00:00
ajacoutot
8e1f08ba63
Add a python3 FLAVOR.
2015-03-16 11:07:27 +00:00
benoit
0b280ed44b
Update to py-ecdsa-0.13.
2015-03-16 08:59:06 +00:00
sthen
4c2f1cc581
update to sslsplit-0.4.11
...
note, needed patching for libressl:
-#if (OPENSSL_VERSION_NUMBER < 0x1000200fL)
+#if defined(LIBRESSL_VERSION_NUMBER) || (OPENSSL_VERSION_NUMBER < 0x1000200fL)
2015-03-16 08:50:08 +00:00
ajacoutot
6b6d1d5a1e
Update to libtasn1-4.3.
2015-03-15 08:43:46 +00:00
naddy
50ee09dadb
remove patches or patch fragments for make -C
2015-03-14 21:30:54 +00:00
sthen
fff7d10a67
minor update to yubikey-personalization-gui 3.1.19
2015-03-14 21:12:32 +00:00
jturner
93b4703e2c
Update spiped to 1.5.0
2015-03-14 20:52:50 +00:00
jca
8db7b9c34e
SECURITY update to gnupg-1.4.19
...
* Use ciphertext blinding for Elgamal decryption [CVE-2014-3591].
See http://www.cs.tau.ac.il/~tromer/radioexp/ for details.
* Fixed data-dependent timing variations in modular exponentiation
[related to CVE-2015-0837, Last-Level Cache Side-Channel Attacks
are Practical].
This update introduces additional fixes and features, see
http://lists.gnupg.org/pipermail/gnupg-announce/2015q1/000363.html
ok sthen@
2015-03-01 12:12:54 +00:00
ajacoutot
5062835772
SECURITY update to libgcrypt-1.6.3.
...
CVE-2014-3591, CVE-2015-0837
prodded by "Corey"
ok sthen@
2015-02-28 09:56:23 +00:00
jca
ce01fb6ded
Unbreak tinyca.
...
Input from and ok naddy@
2015-02-27 17:24:44 +00:00
espie
87154de247
fix fucked-up update. gnupg-1 and gnupg-2 are not allowed to conflict!
...
this breaks the bulk builds.
2015-02-19 18:18:30 +00:00
naddy
15f8863012
A dot or a single quote introduces a roff(7) macro; fix text lines
...
beginning with such a character. Drop USE_GROFF.
ok and delousing schwarze@
2015-02-17 19:47:01 +00:00
naddy
6bb8d0674b
Drop USE_GROFF from ports where the formatting differences are acceptable
...
or mandoc provides the more useful output.
2015-02-16 22:57:07 +00:00
pea
333c017e18
Update to 2.1.2
...
ok ajacoutot@
2015-02-12 15:36:21 +00:00
sthen
2538df1cc8
fix paths
2015-02-11 14:07:29 +00:00
sthen
7bf01e0baa
missed cvs rm
2015-02-11 11:13:27 +00:00
sthen
3215911fe5
Update to mbedtls 1.3.10 (the name changed). This version is still under GPL
...
but a forthcoming version moves to the Apache license.
2015-02-10 12:21:55 +00:00
jasper
eb13cb11d4
effectively unbreak/enable arc4random usage, introduced 7 years ago, made obvious with
...
the recent update to 2.07:
- AC_CONFIG_HEADERS was called *before* AC_INIT, and thus a noop -> no
config.h created
- randnum.c's patch was garbled (hinted at by the "no such line 93"), the
#endif was not wrapping the /dev/random usage case
- this didn't matter, because randnum.c was not including config.h and thus
could never see the HAVE_ARC4RANDOM, even if it was defined.
ok robert@ (MAINTAINER)
2015-02-09 18:56:11 +00:00
rpointel
d06cede62d
Update libssh to 0.6.4, bugfix and security release.
...
More information: https://www.libssh.org/2014/12/19/libssh-0-6-4-security-and-bugfix-release/
Few tweaks from jca@ and aja@, thanks.
2015-02-09 08:16:54 +00:00
sthen
51636aae95
update to xca 1.1.0. templates didn't seem to work in 0.9.3 previously (though
...
they have worked in the past); this fixes it for me.
2015-02-07 21:52:57 +00:00
abieber
60cb47691e
bump native modules for node update
2015-02-03 15:51:31 +00:00
sthen
e9ea937b3e
SECURITY update to clamav 0.98.6, tested by myself and ajacoutot on various
...
arches, ok ajacoutot
http://blog.clamav.net/2015/01/clamav-0986-has-been-released.html
2015-01-28 15:13:51 +00:00
ajacoutot
2eb58f9a17
Update to libgpg-error-1.18.
2015-01-28 13:25:23 +00:00
benoit
0f48a47ae3
Update to p5-Crypt-OpenSSL-X509-1.806.
...
ok ajacoutot@
2015-01-25 09:09:31 +00:00
rpe
90ef1ef72d
Update security/py-keyczar to 0.715
...
bump EPOCH due to changed versioning scheme
feedback and OK sthen@
2015-01-25 07:35:46 +00:00
naddy
90bea15d2f
Drop USE_GROFF: trivial page footer differences only.
2015-01-22 21:17:46 +00:00
rpe
a9a501f396
Update security/pwgen to 2.07
...
Fixes:
- CVE-2013-4440 pwgen: non-tty passwords are trivially weak by default
- CVE-2013-4442 pwgen: silent fallback to insecure entropy
OK robert@ (MAINTAINER)
2015-01-22 20:22:17 +00:00
naddy
c6299e5727
Drop USE_GROFF: trivial page footer difference only.
2015-01-22 18:41:16 +00:00
naddy
1cab369547
Drop USE_GROFF since groff and mandoc produce identical output.
2015-01-22 17:47:50 +00:00
naddy
3fe8791930
Drop USE_GROFF since groff and mandoc produce identical output.
2015-01-22 12:52:45 +00:00
sthen
a35f4d1768
drop USE_GROFF, output checked with gmdiff
2015-01-21 14:40:09 +00:00
bentley
eb5d566e19
Remove Kevin Lo as maintainer, by request.
2015-01-21 06:23:33 +00:00
sthen
407eeca0ce
Fix gpgme BUILD_DEPENDS to explicitly request gnupg 2.x (otherwise it also
...
matches 1.x).
Fix RUN_DEPENDS to allow either gnupg 1.x or 2.x (gpgme can use either version).
OK aja
2015-01-20 20:43:37 +00:00
sthen
86fd5c1df2
Patch PolarSSL for CVE-2015-1182.
...
An error during parsing of an ASN.1 sequence (triggerable during certificate
parsing) results in an uninitialized pointer being freed.
https://polarssl.org/tech-updates/security-advisories/polarssl-security-advisory-2014-04
2015-01-20 09:47:47 +00:00
jca
65c861cbc8
Respect DEBUG=-g and avoid using uninitialized mem.
2015-01-20 02:32:49 +00:00
jca
ef8d3b674e
Working MASTER_SITES; .tgz -> .tar.gz; no checksum change
2015-01-20 02:25:30 +00:00
naddy
6dfe1e0668
<sys/socket.h> already exposes struct iovec, no need to include <sys/uio.h>.
...
Remove now useless (parts of) patches.
2015-01-19 20:44:14 +00:00