| Commit message (Collapse) | Author | Age | Files | Lines |
|
|
|
|
|
|
|
|
|
|
| |
Update sqlite to 3.33.0 (3330000).
Release announcement at https://www.sqlite.org/releaselog/3_33_0.html.
MFC after: 1 month
Notes:
svn path=/head/; revision=364720
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Update sqlite to 3.32.3 (3320300).
Release Announcement: https://www.sqlite.org/releaselog/3_32_3.html
See also: ports r541414
PR: 247819
Reported by: Pavel Volkov <pavelivolkov at gmail.com>
MFC after: 1 week
Notes:
svn path=/head/; revision=362997
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Update sqlite3 to 3.32.2 (3320200).
CVE-2020-11655: SQLite through 3.31.1 allows attackers to cause a denial of
service (segmentation fault) via a malformed window-function query because
the AggInfo object's initialization is mishandled.
CVE-2020-13434: SQLite through 3.32.0 has an integer overflow in
sqlite3_str_vappendf in printf.c.
CVE-2020-13435: SQLite through 3.32.0 has a segmentation fault in
sqlite3ExprCodeTarget in expr.c.
CVE-2020-13630: ext/fts3/fts3.c in SQLite before 3.32.0 has a
use-after-free in fts3EvalNextRow, related to the snippet feature
CVE-2020-13631: SQLite before 3.32.0 allows a virtual table to be renamed
to the name of one of its shadow tables, related to alter.c and build.c.
CVE-2020-13632: ext/fts3/fts3_snippet.c in SQLite before 3.32.0 ha s a
NULL pointer dereference via a crafted matchinfo() query.
PR: 247149
Reported by: spam123@bitbert.com
MFC after: 3 days
Security: vuxml: c4ac9c79-ab37-11ea-8b5e-b42e99a1b9c3
https://nvd.nist.gov/vuln/detail/CVE-2020-11655
https://nvd.nist.gov/vuln/detail/CVE-2020-13434
https://nvd.nist.gov/vuln/detail/CVE-2020-13435
https://nvd.nist.gov/vuln/detail/CVE-2020-13630
https://nvd.nist.gov/vuln/detail/CVE-2020-13631
https://nvd.nist.gov/vuln/detail/CVE-2020-13632
Notes:
svn path=/head/; revision=362145
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Update sqlite3 3.31.1 --> 3.32.0.
PR: 247149
Reported by: spam123@bitbert.com
Reminded by: emaste
MFC after: 3 days
Security: CVE-2020-11655, CVE-2020-13434, CVE-2020-13435,
CVE-2020-13630, CVE-2020-13631, CVE-2020-13632
Notes:
svn path=/head/; revision=362095
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
The segfault fix was originally developed by our upstream, sqlite.org,
to address S/390 and Sparc segfaults, both of which are big endian.
Our PowerPC is also big endian, which this patch also fixes.
Reported by: Mark Millard <marklmi at yahoo.com>
Tested by: Mark Millard <marklmi at yahoo.com>
Obtained from: https://www.sqlite.org/src/vinfo/04885763c4cd00cb?diff=1
https://sqlite.org/forum/forumpost/672291a5b2
MFC after: 1 month
X-MFC with: r360221, 360221
Notes:
svn path=/head/; revision=360223
|
|
|
|
|
|
|
|
|
|
|
|
| |
Update sqlite3-3.31.0 (3310000) --> sqlite3-3.31.1 (3310100)
Tested by: Mark Millard <marklmi at yahoo.com>
With to be committed PowerPC patch
MFC after: 1 month
X-MFC with: r360221
Notes:
svn path=/head/; revision=360222
|
|
|
|
|
|
|
|
|
|
|
|
| |
recommit r357201: MFV r357163, which was reverted by r357522
due to segfault under PowerPc.
Update sqlite3-3.30.1 (3300100) --> sqlite3-3.31.0 (3310000)
MFC after: 1 month
Notes:
svn path=/head/; revision=360221
|
|
|
|
|
|
|
|
|
|
|
| |
sqlite3-3.30.1 (3300100), as it causes svnlite segfaults on PowerPC,
resulting in corruption.
Reported by: Mark Millard <marklmi at yahoo.com>
Francis Little <oggy at farscape.co.uk>
Notes:
svn path=/head/; revision=357522
|
|
|
|
|
|
|
|
|
| |
Update sqlite3-3.30.1 (3300100) --> sqlite3-3.31.0 (3310000)
MFC after: 1 month
Notes:
svn path=/head/; revision=357201
|
|
|
|
|
|
|
|
|
| |
Update sqlite3-3.29.0 (3290000) --> sqlite3-3.30.1 (3300100)
MFC after: 1 month
Notes:
svn path=/head/; revision=354269
|
|
|
|
|
|
|
|
|
| |
Update sqlite3-3.28.0 (3280000) --> sqlite3-3.29.0 (3290000)
MFC after: 1 week
Notes:
svn path=/head/; revision=350103
|
|
|
|
|
|
|
|
|
|
| |
Update sqlite3-3.27.2 (3270200) --> sqlite3-3.28.0 (3280000)
MFC after: 3 days
Security: CVE-2019-9937, CVE-2019-9936
Notes:
svn path=/head/; revision=347139
|
|
|
|
|
|
|
|
|
| |
Update sqlite3-3.27.1 (3270100) --> sqlite3-3.27.2 (3270200)
MFC after: 11 days
Notes:
svn path=/head/; revision=346459
|
|
|
|
|
|
|
|
|
| |
Update sqlite3-3.26.0 (3260000) --> sqlite3-3.27.1 (3270100)
MFC after: 2 weeks
Notes:
svn path=/head/; revision=345996
|
|
|
|
|
|
|
|
|
|
|
| |
Update sqlite3-3.23.1 --> sqlite3-3.26.0 (3260000)
MFC after: 3 days
Security: https://blade.tencent.com/magellan/index_en.html
No known CVE was apparently registered.
Notes:
svn path=/head/; revision=342183
|
|
|
|
| |
Notes:
svn path=/head/; revision=333352
|
|
|
|
|
|
|
| |
This fixes a possible client-side crash when parsing corrupt databases.
Notes:
svn path=/head/; revision=322386
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Update from sqlite3-3.12.1 (3120100) to sqlite3-3.14.1 (3140100).
This commit addresses the tmpdir selection vulnerability fixed in
sqlite3-1.13.0. See VuXML entry 546deeea-3fc6-11e6-a671-60a44ce6887b.
Security: VuXML 546deeea-3fc6-11e6-a671-60a44ce6887b
Security: CVE-2016-6153
Notes:
svn path=/head/; revision=304747
|
|
|
|
| |
Notes:
svn path=/head/; revision=298161
|
|
|
|
|
|
|
| |
kerberos)
Notes:
svn path=/head/; revision=286510
|
|
|
|
|
|
|
|
|
|
|
| |
Found almost accidentally by our native gcc when enhanced with
FORTIFY_SOURCE.
Submitted by: Oliver Pinter
Sponosored by: Google Inc. GSoC 2015
Notes:
svn path=/head/; revision=285644
|
|
|
|
| |
Notes:
svn path=/head/; revision=282328
|
|
|
|
| |
Notes:
svn path=/head/; revision=274884
|
|
|
|
| |
Notes:
svn path=/head/; revision=269851
|
|
This is actually a fully functional build except:
* All internal shared libraries are static linked to make sure there
is no interference with ports (and to reduce build time).
* It does not have the python/perl/etc plugin or API support.
* By default, it installs as "svnlite" rather than "svn".
* If WITH_SVN added in make.conf, you get "svn".
* If WITHOUT_SVNLITE is in make.conf, this is completely disabled.
To be absolutely clear, this is not intended for any use other than
checking out freebsd source and committing, like we once did with cvs.
It should be usable for small scale local repositories that don't
need the python/perl plugin architecture.
Notes:
svn path=/head/; revision=251886
|