Commit Graph

11951 Commits

Author SHA1 Message Date
sthen
1268bf479e update to BIND 9.10.3P3
- Fixed a regression in resolver.c:possibly_mark() which caused
known-bogus servers to be queried anyway. [RT #41321]

- render_ecs errors were mishandled when printing out a OPT record
resulting in a assertion failure. (CVE-2015-8705) [RT #41397]

- Specific APL data could trigger a INSIST. (CVE-2015-8704) [RT #41396]
2016-01-19 22:24:05 +00:00
ajacoutot
20434e1a07 Update to libproxy-0.4.12.
Add KDE support.
2016-01-19 16:16:37 +00:00
sthen
c2095a5cef missed adding the patch in previous 2016-01-19 15:21:19 +00:00
sthen
aa40cba572 In the last update netatalk3 changed behaviour to listening on :: rather
than 0.0.0.0 by default. This isn't good on OpenBSD which deliberately
doesn't allow IPv4 connections on an IPv6 socket so revert that change.

Failure reported and fix tested by Johan Huldtgren, ok aja@
2016-01-18 22:30:44 +00:00
sthen
275b716f52 bump tevent 2016-01-18 12:10:51 +00:00
sthen
49181ac407 update to bwm-ng 0.6.1 and take maintainer ("Looks alright.
Please update maintainer to whoever wants to take over" from former
maintainer Genadijus Paleckis).
2016-01-17 22:51:33 +00:00
sthen
6c1ba8aad4 disable ssl support, and disable USE_GROFF, mandoc copes OK these days. 2016-01-17 17:49:46 +00:00
sthen
9005d1d063 sync WANTLIB 2016-01-17 17:29:07 +00:00
ajacoutot
0089f03d0a Update to py-botocore-1.3.20. 2016-01-17 09:08:54 +00:00
shadchin
c23d8bdb56 Update to py-zmq 15.2.0 2016-01-17 07:11:03 +00:00
naddy
87c99161d8 fix rc_check; ok ajacoutot@ 2016-01-17 01:54:50 +00:00
rpointel
fa28884f77 update zabbix to 2.4.7 (ok robert@ (maintainer)). 2016-01-16 14:49:24 +00:00
sthen
b12af54d6d Add upstream patches to ldns-utils to include the required leading zeros
when generating ECDSA RRSIG records. From dhill. More information at
https://open.nlnetlabs.nl/pipermail/ldns-users/2015-August/000814.html
2016-01-16 13:15:26 +00:00
sthen
c3bd7f9864 add an easily-greppable marker for ports known to use pledge().
it's not so important while they're only in patches in the ports tree,
but for any which get upstreamed it saves a ~100GB grep to find them.
2016-01-15 19:57:23 +00:00
shadchin
73c8f58036 Bugfix update to zeromq 4.1.4
ok ajacoutot@
2016-01-15 14:12:37 +00:00
ajacoutot
1d5ac2c89d Update to py-botocore-1.3.19. 2016-01-15 06:45:11 +00:00
jsing
765d5c0c45 Update net/go-websocket for go.port.mk changes.
ok sthen@ jasper@ kspillner@
2016-01-14 15:50:43 +00:00
sthen
7f3f8ef36a Security update to ISC DHCP 4.3.3-P1
CVE-2015-8605: UDP payload length not properly checked

"A badly formed packet with an invalid IPv4 UDP length field can
cause a DHCP server, client, or relay program to terminate abnormally."
2016-01-13 09:33:02 +00:00
ajacoutot
45482aee23 Update to py-botocore-1.3.18. 2016-01-13 08:41:06 +00:00
shadchin
d026dd690d +py-zmq,python3 2016-01-13 07:25:12 +00:00
shadchin
ea2efd0e58 Update to py-zmq 15.1.0. Add python3 flavor and take maintainer.
ok ajacoutot@
2016-01-13 07:23:03 +00:00
ajacoutot
1ef81463b6 Consistent email address. 2016-01-12 13:19:37 +00:00
dcoppa
9fb3614f1d Revert previous: 0.9.14 is broken.
I'll open an issue on upstream's github.
2016-01-12 10:22:32 +00:00
abieber
ad6992ae4d Update from MAINTAINER Eric Lalonde <eric.c.lalonde@gmail.com>.
Changes include fixes for memleaks, better tmux support, character
set decoding, improved UTF-8 support.

Additionally, new features are listed at
https://weechat.org/files/changelog/ChangeLog-1.4.html

OK sthen@
2016-01-11 15:11:31 +00:00
sthen
1df77c4ac7 security update to Prosody 0.9.9, from maintainer Henrik Friedrichsen
(plus, compared to Henrik's diff, reinstate some make/MAKE_PROGRAM patches)

- mod_http_files could serve requests outside of the configured public root
- server-to-server dialback authentication (mod_dialback) weak RNG
2016-01-11 12:11:36 +00:00
czarkoff
b1777cceb2 change my email address 2016-01-11 11:04:21 +00:00
ajacoutot
05039e94de Use consistent email address for the MAINTAINER line.
ok bentley@ (maintainer)
2016-01-11 09:35:44 +00:00
dcoppa
71b4d62cea Update to impacket-0.9.14 2016-01-11 09:28:16 +00:00
naddy
73f2e7d414 Update to 3.1.2: This is a bug-fix release. It includes a security
fix for a transfer from a sender that you don't fully trust.

Originally gonzalo@ submitted a broken update to espie@ who passed
it around and then everybody forgot.
2016-01-10 21:36:22 +00:00
sthen
86caf8c1af FD-related fixes for wide-dhcpv6, part of a diff from Brad.
Mostly from Debian.
2016-01-10 16:23:17 +00:00
sthen
fc519fa31e mark BROKEN; these need adapting following the changes in go 1.5
ajacoutot jasper naddy in agreement
2016-01-10 16:04:24 +00:00
jasper
543958e7e7 update to msgpack-0.7.4 2016-01-10 15:43:51 +00:00
sthen
20813a4a8a update to ocserv-0.10.11, similar diff from Björn Ketelaars 2016-01-09 16:01:42 +00:00
bluhm
15f8647727 update p5-Net-PcapWriter to 0.721 2016-01-09 15:47:44 +00:00
sthen
11d0cbb742 update to scamper-20141211d 2016-01-08 12:48:22 +00:00
jasper
4a30296f9d ignore some bogus tags 2016-01-08 10:37:34 +00:00
sthen
522498f40f update to libbgpdump-1.4.99.15 2016-01-07 23:09:19 +00:00
jasper
71e3fd2dce remove HOMEPAGE from ports that had the (now default) pypi homepage 2016-01-07 21:37:48 +00:00
sthen
cc812871c8 add comment about where ethercodes.dat now comes from, prompted by me forgetting 2016-01-07 21:29:31 +00:00
sthen
62b4b52eb9 update to dhcpcd-6.10.0
http://roy.marples.name/projects/dhcpcd/info/595883e2a431f65d
- Ensure that option length fits inside data length less option size.
(can lead to an invalid read/crash via malformed dhcp responses)

http://roy.marples.name/projects/dhcpcd/info/76a1609352263bd9
- dhcp_optlen now returns the length of the data we can sanely work
on given the option definition and data length. Call dhcp_optlen in
dhcp_envoption1 to take into ensure these bounds are not overstepped.
Fixes an issue reported by Nico Golde where extra undersized data was
present in the option. An example of this would be an array of uint16's
with a trailing byte.
(reporter says "exploitation is non-trivial, but i'd love to be
proven wrong.")
2016-01-07 21:19:53 +00:00
giovanni
6ac605272d Update to 7.01 and drop maintainership
new maintainer is David Carlier
ok jca@
2016-01-07 13:23:47 +00:00
sthen
d148dd7700 Set pexp="${daemon}.*" for net-snmp; avoids a long delay at boot if the
user has set a command-line arguments containing '+' (not totally uncommon).
Otherwise rc_check() now waits for pexp to match, which fails due to
the + being handled as part of a regular expression.
2016-01-07 12:35:53 +00:00
benoit
7ea9e4c647 Update to p5-Net-OpenSSH-0.68.
from Abel Abraham Camarillo Ojeda (maintainer)
2016-01-07 08:51:37 +00:00
ajacoutot
1ae60fd9e6 +py-boto3
+py-boto3,python3
2016-01-07 08:18:38 +00:00
ajacoutot
25c30b11ee Import py-boto3-1.2.3.
Boto3 is the Amazon Web Services (AWS) Software Development Kit (SDK) for
Python, which allows Python developers to write software that makes use of
services like Amazon S3 and Amazon EC2. You can find the latest, most up to
date, documentation at `Read the Docs`_, including a list of services that are
supported.

ok sthen@
2016-01-07 08:17:56 +00:00
ajacoutot
a1f155c39b Update to py-botocore-1.3.17. 2016-01-07 08:10:43 +00:00
kirby
37563a15f0 update to seafile-5.0.1 2016-01-07 06:34:01 +00:00
jeremy
b3fc876df0 Build ruby 2.3 versions of ruby gem ext ports 2016-01-07 01:03:28 +00:00
sthen
d750a7e5da zap unnecessary bash use 2016-01-06 20:03:56 +00:00
jasper
78f191199b remove a few more unneeded DISTNAMEs 2016-01-06 20:02:19 +00:00