aboutsummaryrefslogtreecommitdiff
path: root/security
Commit message (Collapse)AuthorAgeFilesLines
...
* libssh2 version entry range was missing PORTEPOCHMark Felder2015-09-221-1/+2
| | | | | | | Security: 9770d6ac-614d-11e5-b379-14dae9d210b8 Notes: svn path=/head/; revision=397558
* Document vulnerability in security/libssh2Mark Felder2015-09-221-0/+30
| | | | | | | Security: CVE-2015-1782 Notes: svn path=/head/; revision=397557
* Summary: Document recent Mozilla vulnerabilitiesJan Beich2015-09-221-5/+144
| | | | Notes: svn path=/head/; revision=397554
* Update to 0.9.38 release.Alex Dupre2015-09-222-4/+3
| | | | | | | | PR: 203228 Submitted by: Franco Fichtner Notes: svn path=/head/; revision=397545
* security/pecl-scrypt: various fixes and improvementsBartek Rutkowski2015-09-211-11/+21
| | | | | | | | | | | | | - Bump PORTREVISION - Replace STRIP_CMD with INSTALL_TARGET=install-strip - Remove STACKPROTECTOR and STACKPROTECTORALL from options - Add EXAMPLES and TEST to options PR: 200698 Submitted by: Horia Racoviceanu <horia@racoviceanu.com> (maintainer) Notes: svn path=/head/; revision=397516
* Fix pkg-descr, Strongswan supports IKEv1 since version 5.0.0Renato Botelho2015-09-211-1/+2
| | | | | | | | | Spotted by: Jim Thompson <jim@netgate.com> Approved by: strongswan@Nanoteq.com (maintainer) Sponsored by: Rubicon Communications (Netgate) Notes: svn path=/head/; revision=397487
* Update security/strongswan to 5.3.3Renato Botelho2015-09-215-24/+5
| | | | | | | | | PR: 203178 Approved by: strongswan@Nanoteq.com (maintainer) Sponsored by: Rubicon Communications (Netgate) Notes: svn path=/head/; revision=397485
* Typos, whitespace and capitalization fixes (S-X).Jimmy Olgeni2015-09-2017-22/+23
| | | | Notes: svn path=/head/; revision=397463
* - Update to 1.0.1Sunpoet Po-Chuan Hsieh2015-09-202-3/+3
| | | | | | | Changes: https://github.com/linchus/omniauth-gitlab/commits/master Notes: svn path=/head/; revision=397445
* - Fix OpenSSL dependencySunpoet Po-Chuan Hsieh2015-09-202-8/+8
| | | | | | | | | | | | | | | | | | | | - Remove WITH_OPENSSL_PORT - While I'm here: - Remove RUN_DEPENDS: ExtUtils::CChecker and ExtUtils::PkgConfig are build dependencies - Update TEST_DEPENDS - Sort PLIST - Bump PORTREVISION for dependency change This port works fine with OpenSSL from base. I manually added libcrypto.pc (modified one from security/openssl with s|/local||) to /usr/libdata/pkgconfig before running tests. Though author assumes libcrypto.pc existence (in tests), the functionality itself is not affected. I decided to remove WITH_OPENSSL_PORT. PR: 203205 Submitted by: Geoffroy Desvernay <dgeo@centrale-marseille.fr> Notes: svn path=/head/; revision=397439
* - Drop 8.x supportDmitry Marakasov2015-09-202-25/+1
| | | | | | | | | - Switch to options helpers Approved by: portmgr blanket Notes: svn path=/head/; revision=397388
* - Switch to options helpersDmitry Marakasov2015-09-201-5/+3
| | | | | | | Approved by: portmgr blanket Notes: svn path=/head/; revision=397384
* Remove BROKEN on Tier-2 systems statements which no longer true at leastAlexey Dokuchaev2015-09-203-9/+0
| | | | | | | | | | on PowerPC (verified for all of them) and some also on SPARC (whenever I was able to test those on flame.freebsd.org) and even IA64 (which should be OK to remove anyways, because it was never really supported system in ports land and was officially killed in -CURRENT a while ago. Notes: svn path=/head/; revision=397374
* - Update to 0.7.2 (bugfix release) [1]Johan van Selst2015-09-202-4/+4
| | | | | | | | | | - Switch MASTER_SITE as the original one is down PR: 203171 [1] Submitted by: rakuco Notes: svn path=/head/; revision=397366
* Mention ports with libzip copyJan Beich2015-09-201-0/+17
| | | | Notes: svn path=/head/; revision=397362
* Fix typoJan Beich2015-09-201-2/+3
| | | | Notes: svn path=/head/; revision=397359
* Next avidemux2 may have CVE-2015-3395 fix, adjustJan Beich2015-09-201-2/+2
| | | | | | | https://github.com/mean00/avidemux2/commit/cfb9760 Notes: svn path=/head/; revision=397358
* Document recent ffmpeg vulnerabilitiesJan Beich2015-09-201-0/+186
| | | | | | | | | libav 11.4 was released before the fixes were made while ffmpeg 2.3.x and lower are not maintained anymore. Bundle consumers are out of luck unless low impact there or the fixes are easy to cherry-pick. Notes: svn path=/head/; revision=397357
* - Update to 4.0Wen Heping2015-09-202-4/+4
| | | | | | | | PR: 203215 Reviewed by: stargrave@stargrave.org(maintainer) Notes: svn path=/head/; revision=397353
* Update to 2.6.1 release.Alex Dupre2015-09-192-3/+3
| | | | Notes: svn path=/head/; revision=397311
* Update dcraw entry in VUXMLCarlo Strub2015-09-181-3/+2
| | | | | | | | | PR: 203034 Submitted by: yuri@rawbw.com (maintainer of lightzone) Security: 57325ecf-facc-11e4-968f-b888e347c638 Notes: svn path=/head/; revision=397296
* - Update to 1.71Sunpoet Po-Chuan Hsieh2015-09-183-5/+5
| | | | | | | | | - Pet portlint: fix diff header of patch files Changes: http://search.cpan.org/dist/Net-SSLeay/Changes Notes: svn path=/head/; revision=397283
* Document Moodle multiple security vulnerabilitiesJason Unovitch2015-09-181-0/+38
| | | | | | | | | Note upstream has not released CVE assignments or details of the issues at this time. Document the current verbiage from the release notes to help downstream users proactively update. Notes: svn path=/head/; revision=397210
* Document squid TLS/SSL parser denial of service vulnerabilityJason Unovitch2015-09-181-0/+41
| | | | | | | | | No CVE assigned yet PR: 203186 Notes: svn path=/head/; revision=397209
* Document remind buffer overflow with malicious reminder file inputJason Unovitch2015-09-181-0/+30
| | | | | | | | PR: 202942 Security: CVE-2015-5957 Notes: svn path=/head/; revision=397208
* - Update to 2.0.0Sunpoet Po-Chuan Hsieh2015-09-172-3/+3
| | | | | | | Changes: https://github.com/tinfoil/devise-two-factor/commits/master Notes: svn path=/head/; revision=397189
* - Add NO_ARCHSunpoet Po-Chuan Hsieh2015-09-172-1/+2
| | | | | | | - Sort PLIST Notes: svn path=/head/; revision=397157
* Alter <topic> of some of my recent entries to be more consistently wordedMark Felder2015-09-171-3/+3
| | | | Notes: svn path=/head/; revision=397127
* Normalize "use after free" as "use-after-free" in <topic>Mark Felder2015-09-171-8/+8
| | | | | | | | | | I noticed when browsing vuxml.freebsd.org an even split between "use after free" and "use-after-free". It seemed to make sense to standardize on one style so future editors will have a common usage to guide them when new entries are created. Notes: svn path=/head/; revision=397126
* Document deskutils/shutter vulnerabilityMark Felder2015-09-171-0/+31
| | | | | | | Security: CVE-2015-0854 Notes: svn path=/head/; revision=397123
* Document graphics/openjpeg vulnerabilityMark Felder2015-09-171-0/+27
| | | | | | | No CVE assigned yet Notes: svn path=/head/; revision=397121
* Document vulnerability in older graphics/optipngMark Felder2015-09-171-0/+26
| | | | | | | No CVE assigned yet Notes: svn path=/head/; revision=397117
* Document net/openslp vulnerabilityMark Felder2015-09-171-0/+29
| | | | | | | Security: CVE-2015-5155 Notes: svn path=/head/; revision=397115
* Update MASTER_SITESCarlo Strub2015-09-161-1/+1
| | | | | | | | PR: 202919 Submitted by: w.litter@aon.at Notes: svn path=/head/; revision=397091
* Document archivers/p7zip vulnerabilityMark Felder2015-09-161-0/+31
| | | | | | | Security: CVE-2015-1038 Notes: svn path=/head/; revision=397078
* Remove ansi version fo wxGTK 2.8 and only keep the unicode versionBaptiste Daroussin2015-09-161-0/+1
| | | | | | | | | | | All applications in the ports tree works correctly with unicode version of wxGTK Newer version of wxGTK are unicode only (3.0+) Note that now WX_UNICODE macro is noop Notes: svn path=/head/; revision=397077
* - Switch to autoplist, fixing .egg-info handlingDmitry Marakasov2015-09-163-30/+15
| | | | | | | | | - Fix PIL dependency handling and detection - Add LICENSE - Add NO_ARCH Notes: svn path=/head/; revision=397073
* Document www/h2o vulnerabilityMark Felder2015-09-161-0/+34
| | | | | | | | | PR: 203096 PR: 203147 Security: CVE-2015-5638 Notes: svn path=/head/; revision=397072
* It seems some people keep adding $FreeBSD$ to patch files.Mathieu Arnold2015-09-163-5/+0
| | | | | | | | | | | Patches must not be changed by the vcs, this includes the svn:keyword expansion. Set fbsd:nokeywords to a couple of patches. With hat: portmgr Sponsored by: Absolight Notes: svn path=/head/; revision=397064
* krb5-111 is EOLed and retired.Cy Schubert2015-09-161-5/+1
| | | | | | | Thanks to rene@ for reminding me. Notes: svn path=/head/; revision=397037
* Expiry date has passed, retire security/krb5-111.Cy Schubert2015-09-1613-543/+0
| | | | | | | EOLed by MIT in December 2014. Notes: svn path=/head/; revision=397036
* Fix build with LibreSSLCarlo Strub2015-09-154-23/+73
| | | | | | | | | PR: 198992 Submitted by: brnrd@ Approved by: maintainer Notes: svn path=/head/; revision=397032
* Fix spelling of zh_CN for wordpress vulnerabilities.Xin LI2015-09-151-7/+10
| | | | Notes: svn path=/head/; revision=397029
* security/libressl: Fix AESNI supportBernard Spil2015-09-151-1/+7
| | | | | | | | PR: 200894 Approved by: vsevolod (maintainer, mentor) Notes: svn path=/head/; revision=397017
* Document wordpress multiple vulnerabilities.Xin LI2015-09-151-0/+50
| | | | Notes: svn path=/head/; revision=397010
* Update to 4.7.Roman Bogorodskiy2015-09-153-4/+4
| | | | Notes: svn path=/head/; revision=397006
* - Drop ARCH condition for removing -m32 flag: on i386 it's no-op anywayDmitry Marakasov2015-09-151-10/+2
| | | | | | | | | | | | - Drop ONLY_FOR_ARCHS, it builds fine on arm, mips and mips64, however not sure if it's usable there - Switch to options helpers PR: 202870 Submitted by: amdmi3 Approved by: buganini@gmail.com (maintainer) Notes: svn path=/head/; revision=396956
* Upgrade to version 1.1.3.Jimmy Olgeni2015-09-152-3/+3
| | | | Notes: svn path=/head/; revision=396951
* Make it so that the default Perl is always called perl5.Mathieu Arnold2015-09-1418-33/+33
| | | | | | | | | | | | | | | | | | | - Move Perl's man1 files along with its man3 files. - Move where Perl installs its modules man1 pages. - Convert the ports installing man1 pages. - Make different Perl versions installable at the same time. Though you should note that only the default version can be used to install Perl modules, and the non default Perl versions cannot use the modules installed via ports if they contain .so as they are installed in a version specific directory. Reviewed by: bapt (the Mk bits) Exp-run by: antoine Sponsored by: Absolight Differential Revision: https://reviews.freebsd.org/D3542 Notes: svn path=/head/; revision=396892
* - document bugzilla CVE-2015-4499Olli Hauer2015-09-141-0/+37
| | | | Notes: svn path=/head/; revision=396877