aboutsummaryrefslogtreecommitdiff
path: root/security
Commit message (Collapse)AuthorAgeFilesLines
* phpwebftp -- "language" Local File InclusionMarcus Alves Grando2006-05-031-0/+34
| | | | Notes: svn path=/head/; revision=161295
* Update to DAT 4754James E. Housley2006-05-032-4/+4
| | | | Notes: svn path=/head/; revision=161294
* Makefile:Renato Botelho2006-05-035-20/+221
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | - introduce OPTIONS to enable/disable features - add more features to the OPTION dialog - choose reasonable defaults for OPTIONS (disabled patented stuff) - remove usesless WRKSRC line - move LDFLAGS to the place where it is necessary - extend CONFIGURE_ARGS to set the directory for the adminport socket * Note: racoonctl is useless without adminport enabled * create the socket dir in post-install - bump PORTREVISION that users notice the changes - finally: remove one item from the TODO list on top of the Makefile ;) pkg-descr: - shortened by one line to please portlint pkg-plist: - slight reorganization - add create instructions for the adminport socket dir for the "installing from package" case - add removal instructions for the adminport socket dir files/patch-configure: - add some stuff to detect libiconv when the GSSAPI OPTION is enabled - iconv is required for GSSAPI but the library is not added to LIBS in the original configure script - Why not use USE_AUTOTOOLS and patch configure.ac? * because the leads to configure running twice which is useless overhead. I found no way to avoid this so we patch configure. files/racoon.sh.in: - add the adminsocket directory to required_dirs PR: ports/96368 Submitted by: Joerg Pulz <Joerg.Pulz@frm2.tum.de> Approved by: maintainer Notes: svn path=/head/; revision=161283
* Update to 20060503Renato Botelho2006-05-033-17/+4
| | | | Notes: svn path=/head/; revision=161273
* - Chase libgpg-error shlib version bump (.1 -> .2)Sergei Kolobov2006-05-034-5/+8
| | | | | | | - Bump PORTREVISION Notes: svn path=/head/; revision=161270
* - Update to 1.3 (shlib version bumped to 2)Sergei Kolobov2006-05-033-8/+11
| | | | Notes: svn path=/head/; revision=161269
* Add py-gnome-desktop to fix build after GNOME 2.14 import.Koop Mast2006-05-031-1/+2
| | | | | | | Submitted by: Alex Salazar on IRC Notes: svn path=/head/; revision=161263
* Document firefox -- denial of service vulnerabilityVasil Dimov2006-05-031-0/+38
| | | | | | | Reviewed by: simon Notes: svn path=/head/; revision=161258
* - Updating the Medusa password brute-forcer to 1.1.Cheng-Lung Sung2006-05-033-4/+11
| | | | | | | | | | | | | | | - maintainer notes: This was actually the version I should have ported originally, but as of yesterday the website had not yet been changed to make the 1.1 release available for download. - This release includes several new modules for brute-forcing pcanywhere, ftp, imap, rsh, rexec, rlogin, and a wrapper for other methods. PR: ports/96689 Submitted by: maintainer (David Thiel) Notes: svn path=/head/; revision=161233
* trac -- Wiki Macro Script Insertion VulnerabilityMarcus Alves Grando2006-05-031-0/+34
| | | | Notes: svn path=/head/; revision=161230
* rsync -- "xattrs.diff" Patch Integer Overflow VulnerabilityMarcus Alves Grando2006-05-031-0/+35
| | | | Notes: svn path=/head/; revision=161229
* clamav -- Freshclam HTTP Header Buffer Overflow VulnerabilityMarcus Alves Grando2006-05-031-0/+40
| | | | Notes: svn path=/head/; revision=161227
* Take maintainership.Thierry Thomas2006-05-021-1/+1
| | | | | | | | PR: ports/95840 Submitted by: Andrew Pantyukhin <infofarmer (at) gmail.com> Notes: svn path=/head/; revision=161208
* Update to DAT 4753James E. Housley2006-05-022-4/+4
| | | | Notes: svn path=/head/; revision=161203
* - update to 0.13Cheng-Lung Sung2006-05-022-5/+4
| | | | Notes: svn path=/head/; revision=161175
* Updating the Samhain HIDS to 2.2.0. Changes since last version:Cheng-Lung Sung2006-05-023-10/+7
| | | | | | | | | | | | | - For files under the 'GrowingLogfiles' policy, the checksum is now verified up to the previous size. - Server-to-server relay is possible. - More user policies are available now. PR: ports/96643 Submitted by: maintainer (David Thiel) Notes: svn path=/head/; revision=161164
* Add medusa 1.0, a speedy, massively parallel, modular, loginCheng-Lung Sung2006-05-025-0/+44
| | | | | | | | | | brute-forcer. PR: ports/96641 Submitted by: David Thiel <lx@redundancy.redundancy.org> Notes: svn path=/head/; revision=161161
* courierpasswd is an authentication and password changing utilityPav Lucistnik2006-05-014-0/+54
| | | | | | | | | | | | | | that uses the courier-authlib authentication library to find user credentials. Its interface follows that of Daniel J. Bernstein's checkpassword program. WWW: http://www.arda.homeunix.net/store/ PR: ports/96572 Submitted by: Andrew St. Jean <andrew@arda.homeunix.net> Notes: svn path=/head/; revision=161132
* - uphold CC flagAndrej Zverev2006-05-011-0/+5
| | | | | | | | | PR: ports/93455 Submitted by: lioux@ Approved by: maintainer Notes: svn path=/head/; revision=161123
* Update to DAT 4752James E. Housley2006-05-012-4/+4
| | | | Notes: svn path=/head/; revision=161084
* - Add last jabberd entry:Marcus Alves Grando2006-05-011-0/+33
| | | | | | | jabberd -- SASL Negotiation Denial of Service Vulnerability Notes: svn path=/head/; revision=161078
* add p5-Authen-TypeKey 0.05Ying-Chieh Liao2006-05-015-0/+52
| | | | | | | | | | TypeKey authentication verification PR: 94679 Submitted by: Gea-Suan Lin <gslin@gslin.org> Notes: svn path=/head/; revision=161002
* - Update to 0.5.1Pav Lucistnik2006-04-303-28/+28
| | | | | | | | PR: ports/96533 Submitted by: Aleksander Fafula <alex@BSDGuru.org> Notes: svn path=/head/; revision=160961
* Update to 0.88.2Renato Botelho2006-04-302-4/+4
| | | | Notes: svn path=/head/; revision=160869
* Presenting GNOME 2.14.1 for FreeBSD! CheckoutJoe Marcus Clarke2006-04-3012-103/+42
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | http://www.gnome.org/start/2.14/ for the official release notes, and a list of all the gooides in this new release. In particular, GNOME 2.14 focused on performance, and they did not miss the mark. There's some new eye candy, but most of the big things are waiting until GNOME 2.16. On the FreeBSD side, we tried to clean up all the crashers we could. In particular, we really improved GNOME's 64-bit support. The good news is that this release does not bring any big shared library version bumps, so you can almost do a simple portupgrade to get to 2.14. There are a few minor gotchas that will be documented in UPDATING shortly. The FreeBSD GNOME Team would like th thank the following users for their patches, feedback, and sometimes incessant complaing about crashes (you know who you are). Yasuda Keisuke <kysd@po.harenet.ne.jp> Pascal Hofstee <caelian@gmail.com> rmgls@wanadoo.fr tmclaugh Yuri Pankov <yuri.pankov@gmail.com> sajd on #freebsd-gnome ade ankon on #FreeBSD-Gnome mux Pascal Hofstee <caelian@gmail.com> QuiRK on #freebsd-gnome Vladimir Timofeev <vovkasm@gmail.com> Notes: svn path=/head/; revision=160863
* Tcl SASL provides a Tcl interface to the Cyrus SASLv2 library.Pav Lucistnik2006-04-297-0/+90
| | | | | | | | | | WWW: http://beepcore-tcl.sourceforge.net/tclsasl.html PR: ports/96359 Submitted by: Denis Shaposhnikov <dsh@vlink.ru> Notes: svn path=/head/; revision=160803
* Password Manager helps to manage large numbers of passwords and relatedPav Lucistnik2006-04-295-0/+109
| | | | | | | | | | | | | | | | | information and simplifies the tasks of searching and entering password data. KedPM is written as an extensible framework, which allows users to plug in custom password database back-ends and custom user interface front-ends. Currently, only the Figaro PM back-end supported. To control KedPM user can choose between CLI and GTK2 based GUI front-ends. WWW: http://kedpm.sourceforge.net PR: ports/96321 Submitted by: Tim Welch <twelch@thepentagon.org> Notes: svn path=/head/; revision=160799
* Add an additional mirror.Emanuel Haupt2006-04-291-1/+2
| | | | | | | Submitted by: Shaun Amott <shaun@inerd.com> (maintainer) Notes: svn path=/head/; revision=160720
* - Preserv .conf file.Marcus Alves Grando2006-04-293-9/+15
| | | | | | | | | | | - Bump PORTREVISION PR: 95553 Reported by: Torfinn Ingolfsen <torfinn.ingolfsen___broadpark.no> Approved by: maintainer timeout (19 days) Notes: svn path=/head/; revision=160708
* Update to DAT 4751James E. Housley2006-04-292-4/+4
| | | | Notes: svn path=/head/; revision=160705
* - Add LDAP support (off by default)Sergey Matveychuk2006-04-282-1/+30
| | | | | | | | | | | | - OPTIONS'fy - Remove obsoleted USE_REINPLACE PR: ports/95598 Submitted by: Dmitriy Kirhlarov <dkirhlarov@localhost.oilspace.com> Approved by: maintainer timeout (2 weeks) Notes: svn path=/head/; revision=160670
* Update to 3.6.0Emanuel Haupt2006-04-284-15/+17
| | | | | | | | PR: 95952 Submitted by: klm <klm@uidzero.org> (maintainer) Notes: svn path=/head/; revision=160654
* Update to 1.08Erwin Lansing2006-04-282-4/+6
| | | | | | | | PR: 96439 Submitted by: leeym Notes: svn path=/head/; revision=160645
* - Update to 0.9.7.1Marcus Alves Grando2006-04-283-4/+7
| | | | | | | | PR: 96354 Submitted by: maintainer Notes: svn path=/head/; revision=160636
* upgrade to 1.3Ying-Chieh Liao2006-04-282-4/+4
| | | | | | | | PR: 96312 Submitted by: maintainer Notes: svn path=/head/; revision=160630
* - Take MAINTAINERMarcus Alves Grando2006-04-281-1/+1
| | | | | | | | PR: 96378 Submitted by: Martin Wilke <freebsd@unixfreunde.de> Notes: svn path=/head/; revision=160621
* Add a message explaining why it won't be upgraded to 2.0.7 version, toRenato Botelho2006-04-273-0/+18
| | | | | | | | | | | | | | | | | prevent a lot of people asking maintainer about it: # ----------------------------------------------------- # DO NOT BOTHER TO SEND NOTICES ABOUT 2.0.7 AS IT FIXES # A WINDOWS-ONLY BUG THAT DOESN'T AFFECT *BSD AND THUS # DOES NOT WARRANT A PORT UPGRADE! AND UPGRADE REQUESTS # WILL BE DROPPED. -- Matthias Andree, 2006-04-26 # ----------------------------------------------------- PR: ports/96383 Submitted by: maintainer Notes: svn path=/head/; revision=160591
* Also mark linux-seamonkey vulnerable to recent mozillaSimon L. B. Nielsen2006-04-271-1/+2
| | | | | | | | | vulnerabilities. Reported by: Andrew Pantyukhin infofarmer at gmail dotty com Notes: svn path=/head/; revision=160585
* Add a forgotten patch to fix build on 4.xRenato Botelho2006-04-271-0/+13
| | | | | | | Reported by: krismail Notes: svn path=/head/; revision=160583
* cacti -- ADOdb "server.php" Insecure Test Script Security IssueMarcus Alves Grando2006-04-271-0/+30
| | | | Notes: svn path=/head/; revision=160569
* amaya -- Attribute Value Buffer Overflow VulnerabilitiesMarcus Alves Grando2006-04-271-0/+35
| | | | Notes: svn path=/head/; revision=160566
* lifetype -- ADOdb "server.php" Insecure Test Script Security IssueMarcus Alves Grando2006-04-271-2/+33
| | | | Notes: svn path=/head/; revision=160565
* ethereal -- Multiple Protocol Dissector VulnerabilitiesMarcus Alves Grando2006-04-271-0/+47
| | | | Notes: svn path=/head/; revision=160564
* Update to DAT 4749James E. Housley2006-04-262-4/+4
| | | | Notes: svn path=/head/; revision=160525
* Remove uneeded patch, it was added to sourceRenato Botelho2006-04-261-11/+0
| | | | Notes: svn path=/head/; revision=160521
* - Update to 20060426Renato Botelho2006-04-263-4/+6
| | | | Notes: svn path=/head/; revision=160518
* - Update net-ssh to 1.0.9Pav Lucistnik2006-04-264-18/+6
| | | | | | | | PR: ports/95883 Submitted by: Roderick van Domburg <r.s.a.vandomburg@student.utwente.nl> (maintainer) Notes: svn path=/head/; revision=160504
* - Update to 1.1.2Pav Lucistnik2006-04-252-6/+34
| | | | | | | | PR: ports/95847 Submitted by: Petr Rehor <prehor@gmail.com> (maintainer) Notes: svn path=/head/; revision=160478
* - Update to 0.3.3Marcus Alves Grando2006-04-252-7/+4
| | | | Notes: svn path=/head/; revision=160474
* My 100th commit to the vuln.xml file:Remko Lodder2006-04-251-0/+29
| | | | | | | - Document Asterisk -- denial of service vulnerability, local system access. Notes: svn path=/head/; revision=160471