| Commit message (Collapse) | Author | Age | Files | Lines |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
package is installed or not using a precalculated regex.
This speeds up "portaudit -a" with around a factor of 10.
The change is slightly modified from the one from the PR by using
pkg_info -aE instead of ls /var/db/pkg for determining installed
packages.
Submitted by: Kuang-che Wu <kcwu@csie.org>
PR: ports/92942
Notes:
svn path=/head/; revision=159700
|
|
|
|
|
|
|
|
| |
Approved by: krion@
PR: ports/88711 (related)
Notes:
svn path=/head/; revision=154116
|
|
|
|
|
|
|
|
|
| |
secteam@ instead of security@ to make it more clear that the ports are
not maintained by the freebsd-security@ mailing list. Both addresses
go to the same people.
Notes:
svn path=/head/; revision=140487
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- Unbreak portaudit -vF.
- Sync usage with reality.
- Document the q, v, and V options.
- Markup fixes for the portaudit(1) manual page.
- Make quiet mode output even less "redundant" text [1].
- Set maintainership to security@. [2]
Suggested by: Phil Kernick philk at rotfl dot com dot au [1]
Suggested by: nectar, remko [2]
Notes:
svn path=/head/; revision=138430
|
|
|
|
|
|
|
|
|
|
| |
plans for improvements (though I have ideas) I feel that portaudit is
too important to not have an active maintainer.
Approved by: portmgr (linimon)
Notes:
svn path=/head/; revision=137463
|
|
|
|
|
|
|
| |
Approved by: portmgr (krion)
Notes:
svn path=/head/; revision=118136
|
|
|
|
|
|
|
| |
(first attempts to check the base system for vulnerabilities)
Notes:
svn path=/head/; revision=118082
|
|
|
|
|
|
|
| |
Noted by: nectar
Notes:
svn path=/head/; revision=117144
|
|
|
|
| |
Notes:
svn path=/head/; revision=116339
|
|
|
|
|
|
|
|
|
| |
report is not delayed when the distribution site is down.
Submitted by: kuriyama
Notes:
svn path=/head/; revision=116246
|
|
|
|
|
|
|
|
|
|
| |
modify the vulnerability report depending on -q/-v (experimental)
PR: 69935, 68942
Submitted by: Chris Pepper <pepper@reppep.com>, Johan Karlsson <k@numeri.campus.luth.se>
Notes:
svn path=/head/; revision=116131
|
|
|
|
|
|
|
| |
Useful for testing new entries.
Notes:
svn path=/head/; revision=114567
|
|
|
|
| |
Notes:
svn path=/head/; revision=113581
|
|
|
|
|
|
|
| |
Requested by: kris
Notes:
svn path=/head/; revision=112714
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
*** NOTE ***
The preferences file format has changed, as have the periodic.conf(5) names.
Normally the default settings should be adequate, except when you need to
configure a proxy. Use $PREFIX/etc/portaudit.conf.sample as an example.
- moved portaudit to sbin
- clean up, merging stuff into the portaudit script
- better return codes and errors to stderr
- -f can check stdin now
- dropped ports tree auditing
- merged the periodic(8) scripts into one
- run daily auditing as `nobody'
Notes:
svn path=/head/; revision=112658
|
|
|
|
|
|
|
|
|
| |
Use
portaudit [packagename ...]
to check if package is listed as vulnerable
Notes:
svn path=/head/; revision=112185
|
|
|
|
| |
Notes:
svn path=/head/; revision=112065
|
|
|
|
|
|
|
|
|
|
|
| |
To check which of the current ports have known vulnerabilities, do
portaudit -f /usr/ports/INDEX
This port requires pkg_install(-devel)>=20040623
Notes:
svn path=/head/; revision=112064
|
|
|
|
| |
Notes:
svn path=/head/; revision=111933
|
|
|
|
|
|
|
| |
Thanks to: kuriyama
Notes:
svn path=/head/; revision=111708
|
|
|
|
|
|
|
|
|
|
|
|
| |
- use passive ftp by default, don't retry on failure [1]
- add a -C flag, portlint style
- don't keep databases that are tool old [2]
Requested by: hubs [1]
Noticed by: Nicolas Rachinsky <nicolas@rachinsky.de> [2]
Notes:
svn path=/head/; revision=105829
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Since we are using the official VuXML database
the auditing should be pretty complete.
- mention web page
- add more mirrors, disabling .ru mirror (too much lag)
- allow combined options in portaudit shell script
- add sample configuration file
- use absolute paths for binaries, to ease use in crontab scripts [1]
- correct type in man page [2]
PR: 64005 [2]
Submitted by: Tomasz Pilat <poncki@axelspringer.com.pl> [1]
Nathan Dove <njdove@wafer.sandia.gov> [2]
Notes:
svn path=/head/; revision=103635
|
|
|
|
|
|
|
| |
Submitted by: will, nectar
Notes:
svn path=/head/; revision=102100
|
|
|
|
| |
Notes:
svn path=/head/; revision=102092
|
|
|
|
|
|
|
|
|
|
|
| |
update to fail
- add an install & deinstall message
Submitted by: nectar & Ion-Mihai Tetcu <itetcu@apropo.ro>
Notes:
svn path=/head/; revision=102046
|
|
|
|
|
|
|
|
|
|
|
| |
- new command line tool
- new man page
- reworked database update code, incorporating feedback from
Max Khon <fjoe>, Radim Kolar <hsn@netmag.cz> (PR 63066) and
Ion-Mihai Tetcu <itetcu@apropo.ro> (PR 62655)
Notes:
svn path=/head/; revision=101601
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
two databases cause more confusion than it is worth.
portaudit uses ports/security/vuxml/vuln.xml in the meantime,
please commit your changes there and send feedback wich format
you prefer.
Currently we have to migrate gnats, mailman, monkey and some
apache versions.
Notes:
svn path=/head/; revision=101364
|
|
|
|
| |
Notes:
svn path=/head/; revision=101200
|
|
|
|
| |
Notes:
svn path=/head/; revision=101082
|
|
|
|
| |
Notes:
svn path=/head/; revision=101079
|
|
|
|
| |
Notes:
svn path=/head/; revision=101077
|
|
|
|
| |
Notes:
svn path=/head/; revision=101070
|
|
|
|
|
|
|
| |
add libtool symlink vulnerability
Notes:
svn path=/head/; revision=100851
|
|
|
|
|
|
|
|
| |
PR: 62747
Submitted by: Radim Kolar <hsn@netmag.cz>
Notes:
svn path=/head/; revision=100807
|
|
|
|
| |
Notes:
svn path=/head/; revision=100697
|
|
|
|
| |
Notes:
svn path=/head/; revision=100663
|
|
|
|
|
|
|
|
| |
- www/apache13-ssl<1.3.29.1.53
- www/monkey < 0.8.2
Notes:
svn path=/head/; revision=100613
|
|
|
|
|
|
|
| |
PR: 62586
Notes:
svn path=/head/; revision=100552
|
|
|
|
| |
Notes:
svn path=/head/; revision=99323
|
|
of FreeBSD ports and tools to check if installed ports are listed.
Since this is a prerelease version, it is mostly usable for
committers that want to contribute to the project, and can currently
not be relied upon as an extensive security auditing tool.
Notes:
svn path=/head/; revision=99292
|