| Commit message (Collapse) | Author | Age | Files | Lines |
|
|
|
| |
Notes:
svn path=/head/; revision=169772
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
All people using mod_rewrite are strongly encouraged to update.
An off-by-one flaw exists in the Rewrite module, mod_rewrite.
Depending on the manner in which Apache httpd was compiled, this
software defect may result in a vulnerability which, in combination
with certain types of Rewrite rules in the web server configuration
files, could be triggered remotely. For vulnerable builds, the nature
of the vulnerability can be denial of service (crashing of web server
processes) or potentially allow arbitrary code execution.
This issue has been rated as having important security impact
by the Apache HTTP Server Security Team
Updates to latest versions will follow soon.
Notified by: so@ (simon)
Obtained from: Apache Security Team
Security: CVE-2006-3747
Notes:
svn path=/head/; revision=168904
|
|
|
|
| |
Notes:
svn path=/head/; revision=162218
|
|
|
|
|
|
|
|
|
| |
apache acts as a proxy.
Reported by: Bjoern Voigt <bjoern@cs.tu-berlin.de>
Notes:
svn path=/head/; revision=162010
|
|
|
|
|
|
|
| |
Pointed out by: Marian Cerny <cerny@icomvision.com>
Notes:
svn path=/head/; revision=161163
|
|
|
|
|
|
|
|
| |
Spotted by: mnag
Pointy hat to: clement
Notes:
svn path=/head/; revision=161101
|
|
|
|
|
|
|
| |
Spotted by: krion
Notes:
svn path=/head/; revision=161035
|
|
|
|
| |
Notes:
svn path=/head/; revision=161024
|
|
|
|
|
|
|
| |
Approved by: portmgr (kris)
Notes:
svn path=/head/; revision=156749
|
|
|
|
|
|
|
|
|
|
| |
We have not checked for this KEYWORD for a long time now, so this
is a complete noop, and thus no PORTREVISION bump. Removing it at
this point is mostly for pedantic reasons, and partly to avoid
perpetuating this anachronism by copy and paste to future scripts.
Notes:
svn path=/head/; revision=156534
|
|
|
|
| |
Notes:
svn path=/head/; revision=154857
|
|
|
|
|
|
|
| |
Approved by: krion@
Notes:
svn path=/head/; revision=154308
|
|
|
|
|
|
|
|
| |
Approved by: krion@
PR: ports/88711 (related)
Notes:
svn path=/head/; revision=154116
|
|
|
|
| |
Notes:
svn path=/head/; revision=153715
|
|
|
|
|
|
|
|
|
| |
Noticed by: erwin, pav, KOMATSU Shinichiro <koma2@lovepeers.org> [1]
PR: ports/91849 [1]
Pointy hat to: clement
Notes:
svn path=/head/; revision=153628
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- remove useless options (and fix thread stuff) [1]
- move print-closest-mirror to bsd.apache.mk
- move threads configure options out of Makefile.modules
- Fix stupid logic to disable v4mapped address [2]
- and more...
Submitted/spotted by: many, Hirohisa Yamaguchi <umq@ueo.co.jp> [1]
ume[2]
PR: ports/91813 [1]
Notes:
svn path=/head/; revision=153583
|
|
|
|
|
|
|
|
|
|
|
|
| |
mod_imap: Escape untrusted referer header before outputting in HTML
to avoid potential cross-site scripting. Change also made to
ap_escape_html so we escape quotes. Reported by JPCERT.
[Mark Cox]
Reported by: simon
Notes:
svn path=/head/; revision=151042
|
|
|
|
|
|
|
| |
- Bump PORTREVISION
Notes:
svn path=/head/; revision=150379
|
|
|
|
|
|
|
| |
pointy hat to: clement
Notes:
svn path=/head/; revision=150354
|
|
|
|
| |
Notes:
svn path=/head/; revision=150324
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
in bsd.autotools.mk essentially makes this a no-op given that all the
old variables set a USE_AUTOTOOLS_COMPAT variable, which is parsed in
exactly the same way as USE_AUTOTOOLS itself.
Moreover, USE_AUTOTOOLS has already been extensively tested by the GNOME
team -- all GNOME 2.12.x ports use it.
Preliminary documentation can be found at:
http://people.FreeBSD.org/~ade/autotools.txt
which is in the process of being SGMLized before introduction into the
Porters Handbook.
Light blue touch-paper. Run.
Notes:
svn path=/head/; revision=148323
|
|
|
|
|
|
|
|
|
|
| |
normally
PR: ports/86402
Submitted by: Jarrod Sayers <jarrod@netleader.com.au>
Notes:
svn path=/head/; revision=146772
|
|
|
|
|
|
|
| |
Approved by: MAINTAINER timeout (2 weeks)
Notes:
svn path=/head/; revision=146347
|
|
|
|
| |
Notes:
svn path=/head/; revision=145377
|
|
|
|
|
|
|
|
|
| |
from ports
Reported by: erwin
Notes:
svn path=/head/; revision=143197
|
|
|
|
|
|
|
|
|
| |
exp build
Reported by: kris
Notes:
svn path=/head/; revision=143114
|
|
|
|
| |
Notes:
svn path=/head/; revision=142345
|
|
|
|
| |
Notes:
svn path=/head/; revision=140632
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
From Changelog:
*) SECURITY: CAN-2005-2088
core: If a request contains both Transfer-Encoding and Content-Length
headers, remove the Content-Length, mitigating some HTTP Request
Splitting/Spoofing attacks. [Paul Querna, Joe Orton]
- Rename previous patch to CVE ID
- bump PORTREVISION
Security: CAN-2005-2088
Obtained From: Apache repository
Notes:
svn path=/head/; revision=140136
|
|
|
|
|
|
|
| |
Reported by: thierry
Notes:
svn path=/head/; revision=140135
|
|
|
|
| |
Notes:
svn path=/head/; revision=136629
|
|
|
|
|
|
|
| |
It's a little bit experimental, but it works.
Notes:
svn path=/head/; revision=136628
|
|
|
|
| |
Notes:
svn path=/head/; revision=135838
|
|
|
|
|
|
|
| |
Recent changes in bsd.port.mk prevent from using PORTDOCS= #
Notes:
svn path=/head/; revision=129657
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
I blindly committed a change from my dev tree. Since USE_APACHE design
is flacky, it had a very annoying impact.
PR: ports/77391 [1]
Also reported by: pointyhat via kris,
Scot Hetzel <swhetzel@gmail.com> [1]
Pointy hat to: clement
Notes:
svn path=/head/; revision=128525
|
|
|
|
| |
Notes:
svn path=/head/; revision=128320
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- Download bz2'd tarball [1]
- Add print-closest-mirrors target.
It allows you to find the 6 (3 http/3 ftp) closest mirror,
base on http://www.apache.org/dyn/closer.cgi/httpd/
make print-closest-mirrors >> /etc/make.conf automatically add
the six closest mirror to the head of ${MASTER_SITE_APACHE_HTTPD}.
Requested by: delphij
Notes:
svn path=/head/; revision=128282
|
|
|
|
|
|
|
| |
Noticed by: Xavier Beaudouin <kiwi@oav.net>
Notes:
svn path=/head/; revision=127420
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
o Major change(s)
- in some cases, modules are still built as static modules, making
modules selection useless and generate a non-desired httpd
o Minor change(s)
- apxs detection is done only if port isn't a server one.
- Mark modules ports as IGNORED if apaxhe is built statically
- fix make show-modules when when WITH_ALL_STATIC_MODULES is defined
Most issues discovered by: Jason Mealins <jason_mealins@bigfix.com>
Notes:
svn path=/head/; revision=127400
|
|
|
|
|
|
|
|
|
| |
(it was still stuck with WITHOUT_<CATEGORY>)
Noticed by: Jason Mealins <jason_mealins@bigfix.com>
Notes:
svn path=/head/; revision=127300
|
|
|
|
|
|
|
|
|
|
|
| |
- rename files/patch-srclib:apr-utils:build:dbm.m4 to
files/patch-srclib:apr-util:build:dbm.m4
Based on PR: ports/76152 [1]
Submitted by: Sunpoet Po-Chuan Hsieh <sunpoet@sunpoet.net> [1]
Notes:
svn path=/head/; revision=126664
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- Use apache{2,21}flags variable in apache{2,21}_checkconfig().
It fixes restart when apache2ssl_enable is set to YES in rc.conf
and httpd.conf is "old" (i.e. non -DSSL safe) [1]
o Makefile
- split post-install target to add install-startup-script:
User can now upgrade startup script without reinstalling apache2.
NOTE: this is NOT package-safe and NOT supported, even if in most of
cases they're no risk.
Noticed by: many [1]
Notes:
svn path=/head/; revision=126134
|
|
|
|
| |
Notes:
svn path=/head/; revision=125283
|
|
|
|
|
|
|
| |
Since www/mod_python3 needs envvars.d stuff to work.
Notes:
svn path=/head/; revision=124511
|
|
|
|
|
|
|
|
|
|
| |
to send its data, ad vitam eternam.
Noticed by: Didier Bringer <bringer at echo dot fr>
Patched by: Bruno Ducrot <ducrot at poupinou dot org>
Notes:
svn path=/head/; revision=124335
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- Add support for modular sbin/envvars
You can now put your own scripts you want to execute at envvars
stage in ${PREFIX}/etc/apache2/envvars.d
Only script ending by *.env are run.
Example:
/usr/local/etc/apache2/envvars.d/mod_python3.env
Discussed with: perky on -apache@
Notes:
svn path=/head/; revision=124322
|
|
|
|
| |
Notes:
svn path=/head/; revision=123912
|
|
|
|
|
|
|
|
| |
- Move examples config files to ${EXAMPLESDIR}
- Relax permissions on ${PREFIX}/www instead of ${PREFIX}/www/data
Notes:
svn path=/head/; revision=123807
|
|
|
|
| |
Notes:
svn path=/head/; revision=123715
|
|
|
|
|
|
|
| |
httpd.conf.bak file at deinstall time.
Notes:
svn path=/head/; revision=122743
|