aboutsummaryrefslogtreecommitdiff
path: root/security
diff options
context:
space:
mode:
authorAdam Weinberger <adamw@FreeBSD.org>2019-07-09 15:56:50 +0000
committerAdam Weinberger <adamw@FreeBSD.org>2019-07-09 15:56:50 +0000
commit62e153b776bd50fc1321b23d8238606d940f5c03 (patch)
tree749860fdaf0e675c6438b57d8843072c04f55846 /security
parentbd7ce02f31463dafae84163d041a11197df609c6 (diff)
downloadports-62e153b776bd50fc1321b23d8238606d940f5c03.tar.gz
ports-62e153b776bd50fc1321b23d8238606d940f5c03.zip
MFH: r506281
gnupg: Update to 2.2.17, with security fixes * gpg: Ignore all key-signatures received from keyservers. This change is required to mitigate a DoS due to keys flooded with faked key-signatures. The old behaviour can be achieved by adding keyserver-options no-self-sigs-only,no-import-clean to your gpg.conf. [#4607] * gpg: If an imported keyblocks is too large to be stored in the keybox (pubring.kbx) do not error out but fallback to an import using the options "self-sigs-only,import-clean". [#4591] * gpg: New command --locate-external-key which can be used to refresh keys from the Web Key Directory or via other methods configured with --auto-key-locate. * gpg: New import option "self-sigs-only". * gpg: In --auto-key-retrieve prefer WKD over keyservers. [#4595] * dirmngr: Support the "openpgpkey" subdomain feature from draft-koch-openpgp-webkey-service-07. [#4590]. * dirmngr: Add an exception for the "openpgpkey" subdomain to the CSRF protection. [#4603] * dirmngr: Fix endless loop due to http errors 503 and 504. [#4600] * dirmngr: Fix TLS bug during redirection of HKP requests. [#4566] * gpgconf: Fix a race condition when killing components. [#4577] Release-info: https://dev.gnupg.org/T4606 Approved by: portmgr (with hat)
Notes
Notes: svn path=/branches/2019Q3/; revision=506283
Diffstat (limited to 'security')
-rw-r--r--security/gnupg/Makefile2
-rw-r--r--security/gnupg/distinfo6
2 files changed, 4 insertions, 4 deletions
diff --git a/security/gnupg/Makefile b/security/gnupg/Makefile
index 869c12839cd6..afaa825a3011 100644
--- a/security/gnupg/Makefile
+++ b/security/gnupg/Makefile
@@ -1,7 +1,7 @@
# $FreeBSD$
PORTNAME= gnupg
-PORTVERSION= 2.2.16
+PORTVERSION= 2.2.17
CATEGORIES= security
MASTER_SITES= GNUPG
diff --git a/security/gnupg/distinfo b/security/gnupg/distinfo
index 5d5a30830f24..9d29bd6e4c61 100644
--- a/security/gnupg/distinfo
+++ b/security/gnupg/distinfo
@@ -1,3 +1,3 @@
-TIMESTAMP = 1559097348
-SHA256 (gnupg-2.2.16.tar.bz2) = 6cbe8d454bf5dc204621eed3016d721b66298fa95363395bb8eeceb1d2fd14cb
-SIZE (gnupg-2.2.16.tar.bz2) = 6699113
+TIMESTAMP = 1562687164
+SHA256 (gnupg-2.2.17.tar.bz2) = afa262868e39b651a2db4c071fba90415154243e83a830ca00516f9a807fd514
+SIZE (gnupg-2.2.17.tar.bz2) = 6717554