Commit Graph

15196 Commits

Author SHA1 Message Date
espie
f68a7941fa kde3 has a separate arts package 2002-03-20 14:32:43 +00:00
form
f77f85dd37 upgrade to 5.22
SECURITY ADVISORY                                      20th March 2002
----------------------------------------------------------------------
Program: analog
Versions: all versions prior to 5.22
Operating systems: all
----------------------------------------------------------------------
Yuji Takahashi discovered a bug in analog which allows a cross-site
scripting type attack.

It is easy for an attacker to insert arbitrary strings into any web
server logfile. If these strings are then analysed by analog, they can
appear in the report. By this means an attacker can introduce
arbitrary Javascript code, for example, into an analog report produced
by someone else and read by a third person. Analog already attempted
to encode unsafe characters to avoid this type of attack, but the
conversion was incomplete.

Although it is not known that this bug has been exploited, it is easy
to exploit, and all users are advised to upgrade to version 5.22 of
analog immediately. The URL for analog is http://www.analog.cx/
I apologise for the inconvenience.

Thank you to Yuji Takahashi, Motonobu Takahashi and Takayuki Matsuki
for their help with this bug.

                                                        Stephen Turner
                                         analog-author@lists.isite.net
2002-03-20 13:09:29 +00:00
mark
45349d0ec4 should have left MASTER_SITES alone, thanks wilfried 2002-03-20 12:01:46 +00:00
couderc
216311823b Update comment, thanks jcs@ 2002-03-20 11:43:52 +00:00
mark
12e6907615 +castle-combat 2002-03-20 08:27:43 +00:00
mark
e3b795943a port from Lurene Grenier <lurene@menagerie.tf>
Castle-Combat is a clone of the arcade classic, Rampart. This version 
currently supports 2 to 4 players on local or remote servers. Players
build castle walls, place cannons inside these walls, and shoot at the 
walls of their enemy(s). If a player can't build a complete wall around 
one of his castles, he loses. The last surviving player wins.
2002-03-20 08:25:57 +00:00
shell
4ebf7e9161 Updated to libxslt-1.0.14 2002-03-20 08:00:40 +00:00
mark
c61738f361 Revert back to GMAKE, BSD make links twice during faking, thus
incrementing the fns elisp file needed for Eshell and bumping
Emacs version to 21.1.2 rather then the expected 21.1.1.

Needs more investigation.  ok espie@
2002-03-20 02:27:24 +00:00
espie
1564158513 +corewars 2002-03-20 02:13:44 +00:00
espie
841b51e127 Classic game. 2002-03-20 02:12:34 +00:00
espie
dab6511720 find-all-conflicts found this:
directories common to ggi and gii should not be removed here...
2002-03-19 23:17:49 +00:00
espie
2224ca5690 Register dirrm collisions as well. 2002-03-19 22:20:50 +00:00
matthieu
6b7dec5019 Re-add xautolock as a port. It was removed from main tree because
of its GPL license. Ok brad@
2002-03-19 19:45:15 +00:00
brad
d4dab887c8 - use -p flag for mkdir in mysql_install_db
- if the socket dir does not exist then create it as part of startup in
safe_mysqld
2002-03-19 19:11:39 +00:00
brad
670c14f805 remove section which disables optimization, our compiler does not seem to have this bug. also fixes build on powerpc. 2002-03-19 15:20:07 +00:00
espie
a2f6903ae2 forgot md5 -> distinfo 2002-03-19 14:05:16 +00:00
wilfried
fc52e620cc add MyCC 2002-03-19 13:58:40 +00:00
wilfried
4dc4571ab6 Initial import of MyCC, a GUI client for MySQL 2002-03-19 13:58:12 +00:00
wilfried
47e23bddac Don't need to fool automake anymore
md5 -> distinfo
2002-03-19 10:11:16 +00:00
fgsch
cb867679f4 add mips. 2002-03-19 08:28:00 +00:00
fgsch
599e74229c mips support, based on diffs submited by Wilbern Cobb <vedge@csoft.org>. 2002-03-19 08:27:31 +00:00
kevlo
eaaed7cb51 upgrade to version 2.4.18 2002-03-19 07:42:42 +00:00
lebel
14426910d5 * install neon's autoconf macros
* install html documentation
* install man pages
* install README, NEWS, BUGS, TODO, and THANKS
2002-03-19 03:34:04 +00:00
espie
b96e8276c4 fix inline crap. 2002-03-19 03:22:40 +00:00
lebel
9b355ea8ea +neon 2002-03-19 02:59:18 +00:00
lebel
81e7907f2d initial import of neon-0.19.3:
--
neon is an HTTP and WebDAV client library, with a C interface. 

Featuring:

* High-level interface to HTTP and WebDAV methods (PUT, GET, HEAD etc)
* Low-level interface to HTTP request handling, to allow implementing new
  methods easily.
* persistent connections
* RFC2617 basic and digest authentication (including auth-int, md5-sess)
* Proxy support (including basic/digest authentication)
* SSL/TLS support using OpenSSL (including client certificate support)
* Generic WebDAV 207 XML response handling mechanism
* XML parsing using the expat or libxml parsers
* Easy generation of error messages from 207 error responses
* WebDAV resource manipulation: MOVE, COPY, DELETE, MKCOL.
* WebDAV metadata support: set and remove properties, query any set of
  properties (PROPPATCH/PROPFIND).
* autoconf macros supplied for easily embedding neon directly inside an
  application source tree. 

WWW: http://www.webdev.org/neon/
2002-03-19 02:56:40 +00:00
lebel
1cebf9f4c5 * make sure we use the included neon library (a port is coming which is
incompatible)
* use SSL
* make sure we use libxml2
2002-03-19 02:39:12 +00:00
lebel
3a761226d2 +cadaver 2002-03-19 01:48:02 +00:00
lebel
febe78bc5c initial import of cadaver-0.19.1:
--
cadaver is a command-line WebDAV client for Unix. It supports file
upload, download, on-screen display, namespace operations (move/copy),
collection creation and deletion, and locking operations.

It even works just fine with Apple's iDisk!

WWW: http://www.webdav.org/cadaver/
2002-03-19 01:47:06 +00:00
brad
ee295b1bcc upgrade to bison 1.34 2002-03-18 21:46:31 +00:00
jsyn
8fdaaa2d7e update MASTER_SITE_PACKETSTORM mirror list; ok naddy@ 2002-03-18 20:04:07 +00:00
espie
929524fc60 Update to 3.67, adjust license according to what the author says. 2002-03-18 15:59:57 +00:00
wilfried
bba5bbb1ca update to version 1.0.5, from maintainer Sebastian Stark <seb@todesplanet.de>
o now supports playing mp3 (via madplay/sox)
o include a transformation script called mksong.sh
o rename main binary from tempest to tempest_for_eliza because
  there's now another one called tempest_for_mp3
o md5 -> distinfo
o bump NEED_VERSION
o don't need to fool automake
2002-03-18 15:37:37 +00:00
wilfried
4d4275cd97 add abcde 2002-03-18 15:10:14 +00:00
wilfried
756d294134 Initial import of abcde, from Han Boetes <han@mijncomputer.nl>
A command-line utility to rip and encode audio cds
2002-03-18 15:08:45 +00:00
couderc
f8df742085 Add dillo 2002-03-18 14:39:23 +00:00
couderc
2c898eca3f Initial import of www/dillo
--
Dillo is a graphical web browser that's completely written in C,
very fast, small in code and binary. It basically depends on GTK+,
and renders a good subset of HTML, frames are managed same as lynx,
no jvm, no javascript.
2002-03-18 14:31:20 +00:00
form
e5debc1dbe upgrade to 1.8.0
make it compile on -current (ugly hack for very ugly sources)...
2002-03-18 06:51:24 +00:00
jakob
af9ec80046 update to v1.1.5 + pfixtls v0.8.5 2002-03-18 05:26:38 +00:00
espie
694ee2b937 Move konqueror-embedded files out of the way, so that no conflict is left. 2002-03-18 04:11:20 +00:00
espie
bacf19755d Fix (forgot to run update-patches) 2002-03-18 03:24:34 +00:00
espie
25c3970285 oops, bad exec in a combined command 2002-03-18 03:18:24 +00:00
pvalchev
3a450dc0dc fix some drug-ery, get patches in shape 2002-03-18 02:59:14 +00:00
espie
1c8f153f2e Tsk, tsk. 2002-03-18 02:00:00 +00:00
espie
c4dbce5bb2 Simpler flavors. 2002-03-18 01:58:03 +00:00
espie
8f76f3fa33 can't set both motif and lesstif flavors at once. 2002-03-18 01:55:40 +00:00
espie
b6d50a2151 Handle ERRORS+='Fatal:...' as well 2002-03-18 01:52:46 +00:00
lebel
20ad736815 add the missing @comment 2002-03-18 01:49:09 +00:00
lebel
9a5089372e change the python depends from 2.1.* to 2.2. Thanks to matt@ 2002-03-17 23:40:00 +00:00
lebel
7bf4dbafe2 update vim/snapshot to 6.1b.23:
- use python 2.2 instead of 2.1.*; thanks to matt@
2002-03-17 23:33:29 +00:00