Browse Source

Merge remote-tracking branch 'freebsd/master'

* freebsd/master:
  net-im/telegram-desktop: Update to 1.9.21
  Add details for today's SAs.
  databases/mongodb36: upgrade 3.6.14 -> 3.6.17
  net/reaver: Update to 1.6.6
  devel/jetbrains-clion: Update to 2019.3.5
  gitea: Remove test that snuck in (no functional change)
  Although the secondary mirror seems dead, the primary master-site is very much up... Unbreak.
  gitea: Update to 1.11.3
  devel/jetbrains-phpstorm: Update to version 2019.3.4
  Update to 0.6.0
  Unbreak by fixing the master-site.
  *Triangle* is a python wrapper around Jonathan Richard Shewchuk's two-dimensional quality mesh generator and delaunay triangulator library. This implementation utilizes Cython_ to wrap the C API as closely as possible.
  Unbreak -- by changing the master-site.
  Update to the latest MIT KRB5 commits on github.
  --enable-shared is no longer configure option.
  Update to the latest cfengine commits on github.
  Remove the first site in the list. It no longer exists.
  Make fetchable again by pointing to csjp@'s GH repo, which is at v1.3. Update from v1.1 to v1.3.
  databases/mysql56-server: fix build on powerpc64 elfv2
  sysutils/twmn: Chase r528654, there is no -Wno-error=deprecated-copy in clang 9
master
HardenedBSD Sync Service 2 months ago
parent
commit
c0271492c2
38 changed files with 308 additions and 96 deletions
  1. +1
    -2
      databases/mongodb36/Makefile
  2. +3
    -3
      databases/mongodb36/distinfo
  3. +10
    -2
      databases/mysql56-server/Makefile
  4. +1
    -1
      devel/jetbrains-clion/Makefile
  5. +3
    -3
      devel/jetbrains-clion/distinfo
  6. +2
    -2
      devel/jetbrains-phpstorm/Makefile
  7. +3
    -3
      devel/jetbrains-phpstorm/distinfo
  8. +1
    -4
      ftp/mirror/Makefile
  9. +1
    -3
      java/jad/Makefile
  10. +1
    -0
      math/Makefile
  11. +24
    -0
      math/py-triangle/Makefile
  12. +3
    -0
      math/py-triangle/distinfo
  13. +5
    -0
      math/py-triangle/pkg-descr
  14. +3
    -4
      net-im/telegram-desktop/Makefile
  15. +3
    -3
      net-im/telegram-desktop/distinfo
  16. +3
    -3
      net-im/telegram-desktop/files/patch-Telegram_SourceFiles_history_history__inner__widget.cpp
  17. +5
    -5
      net-im/telegram-desktop/files/patch-Telegram_SourceFiles_qt__static__plugins.cpp
  18. +5
    -3
      net-mgmt/subcalc/Makefile
  19. +3
    -2
      net-mgmt/subcalc/distinfo
  20. +17
    -7
      net-mgmt/subcalc/files/patch-Makefile
  21. +1
    -2
      net/reaver/Makefile
  22. +3
    -3
      net/reaver/distinfo
  23. +1
    -1
      security/krb5-appl/Makefile
  24. +2
    -2
      security/krb5-devel/Makefile
  25. +3
    -3
      security/krb5-devel/distinfo
  26. +154
    -3
      security/vuxml/vuln.xml
  27. +3
    -3
      sysutils/cfengine-devel/Makefile
  28. +5
    -5
      sysutils/cfengine-devel/distinfo
  29. +2
    -2
      sysutils/cfengine-masterfiles-devel/Makefile
  30. +3
    -3
      sysutils/cfengine-masterfiles-devel/distinfo
  31. +1
    -1
      sysutils/twmn/files/patch-twmnd_twmnd.pro
  32. +4
    -2
      www/gitea/Makefile
  33. +3
    -3
      www/gitea/distinfo
  34. +20
    -0
      www/gitea/files/patch-Makefile
  35. +1
    -4
      www/mnogosearch/Makefile
  36. +1
    -1
      www/nginx-prometheus-exporter/Makefile
  37. +3
    -3
      www/nginx-prometheus-exporter/distinfo
  38. +1
    -5
      x11-fonts/cyr-rfx/Makefile

+ 1
- 2
databases/mongodb36/Makefile View File

@@ -2,8 +2,7 @@

PORTNAME= mongodb
DISTVERSIONPREFIX= r
DISTVERSION= 3.6.14
PORTREVISION= 1
DISTVERSION= 3.6.17
CATEGORIES= databases net
MASTER_SITES= https://fastdl.mongodb.org/src/ \
http://fastdl.mongodb.org/src/ \

+ 3
- 3
databases/mongodb36/distinfo View File

@@ -1,3 +1,3 @@
TIMESTAMP = 1566830350
SHA256 (mongodb-src-r3.6.14.tar.gz) = 728436ae694693810a9bfb8ec25f3a66c7bb029c69a5dad70199924e3f3e581e
SIZE (mongodb-src-r3.6.14.tar.gz) = 40895581
TIMESTAMP = 1584299903
SHA256 (mongodb-src-r3.6.17.tar.gz) = 25981810f48fdae7ca43dffe0a797c8111a920975287813bf2f2a0e6f64f6b00
SIZE (mongodb-src-r3.6.17.tar.gz) = 40932592

+ 10
- 2
databases/mysql56-server/Makefile View File

@@ -14,8 +14,8 @@ COMMENT?= Multithreaded SQL database (server)
LICENSE= GPLv2

SLAVEDIRS= databases/mysql56-client
USES= bison:build cmake:noninja compiler:c11 compiler:c++11-lib \
cpe groff:run libedit localbase perl5 shebangfix ssl
USES= bison:build cmake:noninja cpe groff:run libedit localbase \
perl5 shebangfix ssl

USE_PERL5= run

@@ -135,6 +135,14 @@ FEDERATED_SUB_LIST_OFF+= FEDER=""

.include <bsd.port.options.mk>

.if defined(PPC_ABI) && ${PPC_ABI} == ELFv2
USES+= compiler:gcc-c++11-lib
USE_CXXSTD= gnu++11
.else
USES+= compiler:c++11-lang
USE_CXXSTD= gnu++98
.endif

.if ${OPSYS} == FreeBSD && ${OSVERSION} >= 1200057
SUB_LIST+= LEGACY_LIMITS="@comment " MODERN_LIMITS=""
.else

+ 1
- 1
devel/jetbrains-clion/Makefile View File

@@ -1,7 +1,7 @@
# $FreeBSD$

PORTNAME= clion
PORTVERSION= 2019.3.4
PORTVERSION= 2019.3.5
CATEGORIES= devel java
MASTER_SITES= https://download-cf.jetbrains.com/cpp/
PKGNAMEPREFIX= jetbrains-

+ 3
- 3
devel/jetbrains-clion/distinfo View File

@@ -1,3 +1,3 @@
TIMESTAMP = 1581669573
SHA256 (jetbrains/CLion-2019.3.4.tar.gz) = adb76d1d5b13b5fae3e3953c953ee16f3342ef36af404fc2873b9dc9d2190d72
SIZE (jetbrains/CLion-2019.3.4.tar.gz) = 508450142
TIMESTAMP = 1584475667
SHA256 (jetbrains/CLion-2019.3.5.tar.gz) = f31efad95a4c43db59c1a069f9f2ebf5e44f8321262e9ba37edc4e8635b8b062
SIZE (jetbrains/CLion-2019.3.5.tar.gz) = 509223445

+ 2
- 2
devel/jetbrains-phpstorm/Makefile View File

@@ -2,7 +2,7 @@
# $FreeBSD$

PORTNAME= phpstorm
PORTVERSION= 2019.3.3
PORTVERSION= 2019.3.4
CATEGORIES= devel java
MASTER_SITES= https://download-cf.jetbrains.com/webide/
PKGNAMEPREFIX= jetbrains-
@@ -29,7 +29,7 @@ SHEBANG_FILES= bin/printenv.py bin/restart.py
NO_ARCH= yes
NO_BUILD= yes

WRKSRC= ${WRKDIR}/PhpStorm-193.6494.47
WRKSRC= ${WRKDIR}/PhpStorm-193.6911.26

SUB_FILES= phpstorm phpstorm.desktop pkg-message


+ 3
- 3
devel/jetbrains-phpstorm/distinfo View File

@@ -1,3 +1,3 @@
TIMESTAMP = 1582693874
SHA256 (jetbrains/PhpStorm-2019.3.3.tar.gz) = 10057e42f44374485e8d3ee64447edc53001ac9c4733ee29d668060a880a4f0d
SIZE (jetbrains/PhpStorm-2019.3.3.tar.gz) = 373532076
TIMESTAMP = 1584631314
SHA256 (jetbrains/PhpStorm-2019.3.4.tar.gz) = b564c25855f96a0d9eab715ae464472365e231bda591b52be988dfbe4d14b1af
SIZE (jetbrains/PhpStorm-2019.3.4.tar.gz) = 373678083

+ 1
- 4
ftp/mirror/Makefile View File

@@ -5,8 +5,7 @@ PORTNAME= mirror
PORTVERSION= 2.9
PORTREVISION= 2
CATEGORIES= ftp
MASTER_SITES= ftp://sunsite.ualberta.ca/pub/Mirror/mirror/ \
http://komquats.com/distfiles/ \
MASTER_SITES= http://cschubert.com/distfiles/ \
LOCAL/cy

PATCH_SITES= ${MASTER_SITES}
@@ -15,8 +14,6 @@ PATCHFILES= ftp.pl_wupatch
MAINTAINER= cy@FreeBSD.org
COMMENT= Mirror packages on remote sites

BROKEN= unfetchable

MAKE_ARGS= PREFIX=${STAGEDIR}${PREFIX}

USES= perl5 shebangfix

+ 1
- 3
java/jad/Makefile View File

@@ -4,14 +4,12 @@
PORTNAME= jad
PORTVERSION= 1.5.8c
CATEGORIES= java devel
MASTER_SITES= http://www.varaneckas.com/sites/default/files/jad/
MASTER_SITES= https://varaneckas.com/jad/
DISTNAME= jad158c.freebsd

MAINTAINER= ale@FreeBSD.org
COMMENT= Java Decompiler

BROKEN= unfetchable

USES= zip
NO_WRKSUBDIR= yes
NO_BUILD= yes

+ 1
- 0
math/Makefile View File

@@ -808,6 +808,7 @@
SUBDIR += py-symcxx
SUBDIR += py-sympy
SUBDIR += py-theano
SUBDIR += py-triangle
SUBDIR += py-ufl
SUBDIR += py-uncertainties
SUBDIR += py-vincenty

+ 24
- 0
math/py-triangle/Makefile View File

@@ -0,0 +1,24 @@
# $FreeBSD$

PORTNAME= triangle
PORTVERSION= 20190115.3
CATEGORIES= math
MASTER_SITES= CHEESESHOP
PKGNAMEPREFIX= ${PYTHON_PKGNAMEPREFIX}

MAINTAINER= db@FreeBSD.org
COMMENT= Python interface to triangle

LICENSE= LGPL3
LICENSE_FILE= ${WRKSRC}/LICENSE

USES= compiler:c++11-lang python

USE_PYTHON= distutils autoplist

BUILD_DEPENDS= triangle>0:math/triangle

post-install:
${STRIP_CMD} ${STAGEDIR}${PYTHON_SITELIBDIR}/triangle/core.so

.include <bsd.port.mk>

+ 3
- 0
math/py-triangle/distinfo View File

@@ -0,0 +1,3 @@
TIMESTAMP = 1584620539
SHA256 (triangle-20190115.3.tar.gz) = 69442062a1705f75b64166b161ade8a32a26b9323e09f5fa43079dbb6bf04bcc
SIZE (triangle-20190115.3.tar.gz) = 1554400

+ 5
- 0
math/py-triangle/pkg-descr View File

@@ -0,0 +1,5 @@
*Triangle* is a python wrapper around Jonathan Richard Shewchuk's two-dimensional
quality mesh generator and delaunay triangulator library.
This implementation utilizes Cython_ to wrap the C API as closely as possible.

WWW: https://rufat.be/triangle

+ 3
- 4
net-im/telegram-desktop/Makefile View File

@@ -1,8 +1,10 @@
# $FreeBSD$

PORTNAME= telegram-desktop
DISTVERSION= 1.9.14
DISTVERSION= 1.9.21
CATEGORIES= net-im
MASTER_SITES= https://github.com/${GH_ACCOUNT}/${GH_PROJECT}/releases/download/v${DISTVERSION}/
DISTNAME= tdesktop-${DISTVERSION}-full

MAINTAINER= henry.hu.sh@gmail.com
COMMENT= Telegram Desktop messaging app
@@ -32,9 +34,6 @@ LIB_DEPENDS= libavformat.so:multimedia/ffmpeg \
USES= cmake compiler:c++17-lang desktop-file-utils \
gnome pkgconfig python:3.7,build qt:5 ssl xorg

MASTER_SITES= https://github.com/${GH_ACCOUNT}/${GH_PROJECT}/releases/download/v${DISTVERSION}/
DISTNAME= tdesktop-${DISTVERSION}-full

GH_ACCOUNT= telegramdesktop
GH_PROJECT= tdesktop
USE_GNOME= glib20

+ 3
- 3
net-im/telegram-desktop/distinfo View File

@@ -1,3 +1,3 @@
TIMESTAMP = 1583109660
SHA256 (tdesktop-1.9.14-full.tar.gz) = 864d1d5e810e30368e60d4ea389c644387abbc803b3b5426268efa5016d15a4b
SIZE (tdesktop-1.9.14-full.tar.gz) = 25324084
TIMESTAMP = 1584582797
SHA256 (tdesktop-1.9.21-full.tar.gz) = e1f9b58c1475a5044bc4d7a7ed5f89777e717ea5e6126707105e2c2d3032ffac
SIZE (tdesktop-1.9.21-full.tar.gz) = 25848026

+ 3
- 3
net-im/telegram-desktop/files/patch-Telegram_SourceFiles_history_history__inner__widget.cpp View File

@@ -1,6 +1,6 @@
--- Telegram/SourceFiles/history/history_inner_widget.cpp.orig 2020-02-18 08:28:06 UTC
--- Telegram/SourceFiles/history/history_inner_widget.cpp.orig 2020-03-16 18:49:16 UTC
+++ Telegram/SourceFiles/history/history_inner_widget.cpp
@@ -1403,7 +1403,7 @@ void HistoryInner::mouseActionFinish(
@@ -1420,7 +1420,7 @@ void HistoryInner::mouseActionFinish(
_widget->noSelectingScroll();
_widget->updateTopBarSelection();
@@ -9,7 +9,7 @@
if (!_selected.empty() && _selected.cbegin()->second != FullSelection) {
const auto [item, selection] = *_selected.cbegin();
if (const auto view = item->mainView()) {
@@ -1412,7 +1412,7 @@ void HistoryInner::mouseActionFinish(
@@ -1429,7 +1429,7 @@ void HistoryInner::mouseActionFinish(
QClipboard::Selection);
}
}

+ 5
- 5
net-im/telegram-desktop/files/patch-Telegram_SourceFiles_qt__static__plugins.cpp View File

@@ -1,4 +1,4 @@
--- Telegram/SourceFiles/qt_static_plugins.cpp.orig 2020-02-18 08:28:06 UTC
--- Telegram/SourceFiles/qt_static_plugins.cpp.orig 2020-03-16 18:49:16 UTC
+++ Telegram/SourceFiles/qt_static_plugins.cpp
@@ -19,7 +19,7 @@ Q_IMPORT_PLUGIN(QWindowsIntegrationPlugin)
#elif defined Q_OS_MAC // Q_OS_WIN
@@ -6,10 +6,10 @@
Q_IMPORT_PLUGIN(QGenericEnginePlugin)
-#elif defined Q_OS_LINUX // Q_OS_WIN | Q_OS_MAC
+#elif defined Q_OS_LINUX || defined Q_OS_FREEBSD // Q_OS_WIN | Q_OS_MAC
Q_IMPORT_PLUGIN(QXcbIntegrationPlugin)
Q_IMPORT_PLUGIN(QGenericEnginePlugin)
Q_IMPORT_PLUGIN(QComposePlatformInputContextPlugin)
@@ -33,4 +33,4 @@ Q_IMPORT_PLUGIN(QHimePlatformInputContextPlugin)
Q_IMPORT_PLUGIN(ShmServerBufferPlugin)
Q_IMPORT_PLUGIN(DmaBufServerBufferPlugin)
Q_IMPORT_PLUGIN(DrmEglServerBufferPlugin)
@@ -45,4 +45,4 @@ Q_IMPORT_PLUGIN(QHimePlatformInputContextPlugin)
Q_IMPORT_PLUGIN(NimfInputContextPlugin)
Q_IMPORT_PLUGIN(QXdgDesktopPortalThemePlugin)
#endif // !TDESKTOP_DISABLE_DBUS_INTEGRATION

+ 5
- 3
net-mgmt/subcalc/Makefile View File

@@ -2,14 +2,16 @@
# $FreeBSD$

PORTNAME= subcalc
PORTVERSION= 1.1
DISTVERSIONPREFIX= v
DISTVERSION= 1.3
CATEGORIES= net-mgmt
MASTER_SITES= http://www.seccuris.com/documents/downloads/

MAINTAINER= csjp@FreeBSD.org
COMMENT= Advanced IP/IPv6 subnet calculation and discovery

BROKEN= unfetchable
USE_GITHUB= yes
GH_ACCOUNT= csjayp
GH_PROJECT= subcalc

PLIST_FILES= bin/subcalc man/man1/subcalc.1.gz


+ 3
- 2
net-mgmt/subcalc/distinfo View File

@@ -1,2 +1,3 @@
SHA256 (subcalc-1.1.tar.gz) = 19abf3974f3f145083afd6c3860be370b79e0a122982effcb20236e197acdadf
SIZE (subcalc-1.1.tar.gz) = 7675
TIMESTAMP = 1584559341
SHA256 (csjayp-subcalc-v1.3_GH0.tar.gz) = 2e66e2bf9386bdb2042ec5c873f22c991776b4238d5deff542b3700ad24e97af
SIZE (csjayp-subcalc-v1.3_GH0.tar.gz) = 8198

+ 17
- 7
net-mgmt/subcalc/files/patch-Makefile View File

@@ -1,13 +1,23 @@
--- Makefile.orig 2014-06-20 23:09:15.019376097 +0800
+++ Makefile 2014-06-20 23:09:26.777375032 +0800
@@ -15,8 +15,8 @@ subcalc: $(OBJS)
$(CC) -o $@ $(OBJS) $(LIBS)
--- Makefile.orig 2018-06-30 14:11:02.000000000 -0700
+++ Makefile 2020-03-18 08:43:27.327184000 -0700
@@ -13,14 +13,14 @@
$(CC) -o $@ $(OBJS) $(LIBS) $(CFLAGS)
install:
- [ -d $(PREFIX)/bin ] || mkdir -p $(PREFIX)/bin
- cp subcalc $(PREFIX)/bin
- cp subcalc.1.gz $(PREFIX)/man/man1/
- [ -d $(PREFIX)/share/man/man1/ ] || mkdir -p $(PREFIX)/share/man/man1/
- cp subcalc.1 $(PREFIX)/share/man/man1/
+ [ -d $(DESTDIR)$(PREFIX)/bin ] || mkdir -p $(DESTDIR)$(PREFIX)/bin
+ cp subcalc $(DESTDIR)$(PREFIX)/bin
+ cp subcalc.1.gz $(DESTDIR)$(PREFIX)/man/man1/
+ [ -d $(DESTDIR)$(PREFIX)/man/man1/ ] || mkdir -p $(DESTDIR)$(PREFIX)/man/man1/
+ cp subcalc.1 $(DESTDIR)$(PREFIX)/man/man1/
deinstall:
rm -f $(PREFIX)/man/man1/subcalc.1.gz
- rm -f $(PREFIX)/share/man/man1/subcalc.1.gz
- rm -f $(PREFIX)/bin/subcalc
+ rm -f $(DESTDIR)$(PREFIX)/man/man1/subcalc.1.gz
+ rm -f $(DESTDIR)$(PREFIX)/bin/subcalc
clean:
rm -f subcalc

+ 1
- 2
net/reaver/Makefile View File

@@ -2,8 +2,7 @@

PORTNAME= reaver
DISTVERSIONPREFIX= v
DISTVERSION= 1.6.5
PORTREVISION= 2
DISTVERSION= 1.6.6
CATEGORIES= net

MAINTAINER= freebsd@sysctl.cz

+ 3
- 3
net/reaver/distinfo View File

@@ -1,3 +1,3 @@
TIMESTAMP = 1526108027
SHA256 (t6x-reaver-wps-fork-t6x-v1.6.5_GH0.tar.gz) = e6761d2d4ef9cb2b45fe0a60d6b94048ce4442e4ac209904fe89506ff1e94c44
SIZE (t6x-reaver-wps-fork-t6x-v1.6.5_GH0.tar.gz) = 479441
TIMESTAMP = 1584555433
SHA256 (t6x-reaver-wps-fork-t6x-v1.6.6_GH0.tar.gz) = 73189782b208d12b8dddc4f29d32e1f72b1f3609e573c9ea9510deebec394583
SIZE (t6x-reaver-wps-fork-t6x-v1.6.6_GH0.tar.gz) = 485854

+ 1
- 1
security/krb5-appl/Makefile View File

@@ -25,7 +25,7 @@ GNU_CONFIGURE= yes
USE_PERL5= build
USE_LDCONFIG= yes
USE_CSTD= gnu89
CONFIGURE_ARGS?= --enable-shared --with-krb5=${KRB5_HOME}
CONFIGURE_ARGS?= --with-krb5=${KRB5_HOME}
CONFIGURE_ENV= INSTALL="${INSTALL}" YACC=/usr/bin/yacc
MAKE_ARGS= INSTALL="${INSTALL}"
PATCH_DIST_STRIP= -p1

+ 2
- 2
security/krb5-devel/Makefile View File

@@ -7,8 +7,8 @@ CATEGORIES= security
.if !defined(MASTERDIR)
PKGNAMESUFFIX= -devel
.endif
HASH= bf9b2134c
MIT_COMMIT_DATE= 2020.02.07
HASH= a39cabf22
MIT_COMMIT_DATE= 2020.03.18

PATCH_SITES= http://web.mit.edu/kerberos/advisories/
PATCH_DIST_STRIP= -p2

+ 3
- 3
security/krb5-devel/distinfo View File

@@ -1,3 +1,3 @@
TIMESTAMP = 1581102827
SHA256 (krb5-krb5-1.18.2020.02.07-bf9b2134c_GH0.tar.gz) = 09270aaf5fd580ecda2ad114356ef27ccdc96bdfd6e43008bf11f539ed87ef26
SIZE (krb5-krb5-1.18.2020.02.07-bf9b2134c_GH0.tar.gz) = 5161026
TIMESTAMP = 1584592740
SHA256 (krb5-krb5-1.18.2020.03.18-a39cabf22_GH0.tar.gz) = 0f5a81090c6cf73a94a48fed612579365203f278da36fdc4fe4c2333a6d15466
SIZE (krb5-krb5-1.18.2020.03.18-a39cabf22_GH0.tar.gz) = 5156552

+ 154
- 3
security/vuxml/vuln.xml View File

@@ -58,6 +58,158 @@ Notes:
* Do not forget port variants (linux-f10-libxml2, libxml2, etc.)
-->
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
<vuln vid="6b90acba-6a0a-11ea-92ab-00163e433440">
<topic>FreeBSD -- Kernel memory disclosure with nested jails</topic>
<affects>
<package>
<name>FreeBSD-kernel</name>
<range><ge>12.1</ge><lt>12.1_3</lt></range>
<range><ge>11.3</ge><lt>11.3_7</lt></range>
</package>
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<h1>Problem Description:</h1>
<p>A missing NUL-termination check for the jail_set(2) configration
option "osrelease" may return more bytes when reading the jail
configuration back with jail_get(2) than were originally set.</p>
<h1>Impact:</h1>
<p>For jails with a non-default setting of children.max &gt; 0 ("nested
jails") a superuser inside a jail can create a jail and may be able to
read and take advantage of exposed kernel memory.</p>
</body>
</description>
<references>
<cvename>CVE-2020-7453</cvename>
<freebsdsa>SA-20:08.jail</freebsdsa>
</references>
<dates>
<discovery>2020-03-19</discovery>
<entry>2020-03-19</entry>
</dates>
</vuln>

<vuln vid="0cc7e547-6a0a-11ea-92ab-00163e433440">
<topic>FreeBSD -- Incorrect user-controlled pointer use in epair</topic>
<affects>
<package>
<name>FreeBSD-kernel</name>
<range><ge>12.1</ge><lt>12.1_3</lt></range>
<range><ge>11.3</ge><lt>11.3_7</lt></range>
</package>
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<h1>Problem Description:</h1>
<p>Incorrect use of a potentially user-controlled pointer in the kernel
allowed vnet jailed users to panic the system and potentially execute
aribitrary code in the kernel.</p>
<h1>Impact:</h1>
<p>Users with root level access (or the PRIV_NET_IFCREATE privilege)
can panic the system, or potentially escape the jail or execute
arbitrary code with kernel priviliges.</p>
</body>
</description>
<references>
<cvename>CVE-2020-7452</cvename>
<freebsdsa>SA-20:07.epair</freebsdsa>
</references>
<dates>
<discovery>2020-03-19</discovery>
<entry>2020-03-19</entry>
</dates>
</vuln>

<vuln vid="b2b83761-6a09-11ea-92ab-00163e433440">
<topic>FreeBSD -- Insufficient ixl(4) ioctl(2) privilege checking</topic>
<affects>
<package>
<name>FreeBSD-kernel</name>
<range><ge>12.1</ge><lt>12.1_3</lt></range>
</package>
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<h1>Problem Description:</h1>
<p>The driver-specific ioctl(2) command handlers in ixl(4) failed to
check whether the caller has sufficient privileges to perform the
corresponding operation.</p>
<h1>Impact:</h1>
<p>The ixl(4) handler permits unprivileged users to trigger updates to
the device's non-volatile memory (NVM).</p>
</body>
</description>
<references>
<cvename>CVE-2019-15877</cvename>
<freebsdsa>SA-20:06.if_ixl_ioctl</freebsdsa>
</references>
<dates>
<discovery>2020-03-19</discovery>
<entry>2020-03-19</entry>
</dates>
</vuln>

<vuln vid="3c10ccdf-6a09-11ea-92ab-00163e433440">
<topic>FreeBSD -- Insufficient oce(4) ioctl(2) privilege checking</topic>
<affects>
<package>
<name>FreeBSD-kernel</name>
<range><ge>12.1</ge><lt>12.1_3</lt></range>
<range><ge>11.3</ge><lt>11.3_7</lt></range>
</package>
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<h1>Problem Description:</h1>
<p>The driver-specific ioctl(2) command handlers in oce(4) failed to
check whether the caller has sufficient privileges to perform the
corresponding operation.</p>
<h1>Impact:</h1>
<p>The oce(4) handler permits unprivileged users to send passthrough
commands to device firmware.</p>
</body>
</description>
<references>
<cvename>CVE-2019-15876</cvename>
<freebsdsa>SA-20:05.if_oce_ioctl</freebsdsa>
</references>
<dates>
<discovery>2020-03-19</discovery>
<entry>2020-03-19</entry>
</dates>
</vuln>

<vuln vid="0e06013e-6a06-11ea-92ab-00163e433440">
<topic>FreeBSD -- TCP IPv6 SYN cache kernel information disclosure</topic>
<affects>
<package>
<name>FreeBSD-kernel</name>
<range><ge>12.1</ge><lt>12.1_3</lt></range>
<range><ge>11.3</ge><lt>11.3_7</lt></range>
</package>
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<h1>Problem Description:</h1>
<p>When a TCP server transmits or retransmits a TCP SYN-ACK segment
over IPv6, the Traffic Class field is not initialized. This also
applies to challenge ACK segments, which are sent in response to
received RST segments during the TCP connection setup phase.</p>
<h1>Impact:</h1>
<p>For each TCP SYN-ACK (or challenge TCP-ACK) segment sent over IPv6,
one byte of kernel memory is transmitted over the network.</p>
</body>
</description>
<references>
<cvename>CVE-2020-7451</cvename>
<freebsdsa>SA-20:04.tcp</freebsdsa>
</references>
<dates>
<discovery>2020-03-19</discovery>
<entry>2020-03-19</entry>
</dates>
</vuln>

<vuln vid="3d19c776-68e7-11ea-91db-0050562a4d7b">
<topic>www/py-bleach -- multiple vulnerabilities</topic>
<affects>
@@ -489,7 +641,6 @@ compromised.</p>
<package>
<name>FreeBSD</name>
<range><ge>11.3</ge><lt>11.3_7</lt></range>
<range><ge>12.0</ge><lt>12.0_14</lt></range>
<range><ge>12.1</ge><lt>12.1_3</lt></range>
</package>
<package>
@@ -503,7 +654,7 @@ compromised.</p>
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<p>nwtine.org reports:</p>
<p>nwtime.org reports:</p>
<blockquote cite="https://support.ntp.org/bin/view/Main/SecurityNotice">
<p>Three ntp vulnerabilities, Depending on configuration, may have
little impact up to termination of the ntpd process.</p>
@@ -531,7 +682,7 @@ compromised.</p>
</body>
</description>
<references>
<url>INSERT BLOCKQUOTE URL HERE</url>
<freebsdsa>SA-20:09.ntp</freebsdsa>
</references>
<dates>
<discovery>2019-05-30</discovery>

+ 3
- 3
sysutils/cfengine-devel/Makefile View File

@@ -5,9 +5,9 @@ PORTNAME= cfengine
PORTVERSION= 3.${CFENGINE_COMMIT_DATE}
CATEGORIES= sysutils
PKGNAMESUFFIX= -devel
CFENGINE_HASH= 70416c555
LIBNTECH_HASH= ee0dc6b
CFENGINE_COMMIT_DATE= 2020.02.25
CFENGINE_HASH= 703e4de56
LIBNTECH_HASH= f6b1319
CFENGINE_COMMIT_DATE= 2020.03.18

MAINTAINER= cy@FreeBSD.org
# gjb@FreeBSD.org is also committer for this port

+ 5
- 5
sysutils/cfengine-devel/distinfo View File

@@ -1,5 +1,5 @@
TIMESTAMP = 1582777953
SHA256 (cfengine-core-3.2020.02.25-70416c555_GH0.tar.gz) = a13ca71227582c71caba7d7bbe4565c770994b31ba70367b72eb0bed6c414d74
SIZE (cfengine-core-3.2020.02.25-70416c555_GH0.tar.gz) = 2205763
SHA256 (cfengine-libntech-ee0dc6b_GH0.tar.gz) = 5acc2e3800ff3defede5489afe174b9101b039ef3d6cc1776ba5240e7697452d
SIZE (cfengine-libntech-ee0dc6b_GH0.tar.gz) = 360751
TIMESTAMP = 1584592023
SHA256 (cfengine-core-3.2020.03.18-703e4de56_GH0.tar.gz) = 4504cdbb82292d09440c69a3080f9eb0b311bb4593bd16b137785a53cef7c3af
SIZE (cfengine-core-3.2020.03.18-703e4de56_GH0.tar.gz) = 2206532
SHA256 (cfengine-libntech-f6b1319_GH0.tar.gz) = 56469ce9b95b0d539c8fad80301b84f96ff8a044f88db50a7be68f42edbf33be
SIZE (cfengine-libntech-f6b1319_GH0.tar.gz) = 361582

+ 2
- 2
sysutils/cfengine-masterfiles-devel/Makefile View File

@@ -5,8 +5,8 @@ PORTNAME= cfengine-masterfiles
PORTVERSION= 3.${CFENGINE_COMMIT_DATE}
CATEGORIES= sysutils
PKGNAMESUFFIX= -devel
HASH= 17490033
CFENGINE_COMMIT_DATE= 2020.02.25
HASH= 89a5bc49
CFENGINE_COMMIT_DATE= 2020.03.13

MAINTAINER= cy@FreeBSD.org
# gjb@FreeBSD.org is also committer for this port

+ 3
- 3
sysutils/cfengine-masterfiles-devel/distinfo View File

@@ -1,3 +1,3 @@
TIMESTAMP = 1582778009
SHA256 (cfengine-masterfiles-3.2020.02.25-17490033_GH0.tar.gz) = f50adba13b11f6eadb92e5092746f4f6796d4594611e8310268465e4d80168f7
SIZE (cfengine-masterfiles-3.2020.02.25-17490033_GH0.tar.gz) = 429169
TIMESTAMP = 1584592274
SHA256 (cfengine-masterfiles-3.2020.03.13-89a5bc49_GH0.tar.gz) = b10cc09bafb378f4ec03ec6f887f78873b1614029d610c0612bb0637c59808ef
SIZE (cfengine-masterfiles-3.2020.03.13-89a5bc49_GH0.tar.gz) = 429454

+ 1
- 1
sysutils/twmn/files/patch-twmnd_twmnd.pro View File

@@ -6,7 +6,7 @@
DESTDIR = ../bin/
-QMAKE_CXXFLAGS += -Wall -Werror -pedantic -Wno-long-long
+QMAKE_CXXFLAGS_WARN_ON -= -W
+QMAKE_CXXFLAGS += -Wall -Werror -pedantic -Wno-long-long -Wno-error=deprecated-copy
+QMAKE_CXXFLAGS += -Wall -Werror -pedantic -Wno-long-long -Wno-error=deprecated
target.path+=/usr/local/bin
INSTALLS += target

+ 4
- 2
www/gitea/Makefile View File

@@ -2,7 +2,7 @@

PORTNAME= gitea
DISTVERSIONPREFIX= v
DISTVERSION= 1.11.2
DISTVERSION= 1.11.3
CATEGORIES= www
MASTER_SITES= https://github.com/go-gitea/gitea/releases/download/${DISTVERSIONPREFIX}${DISTVERSION}/
DISTNAME= gitea-src-${DISTVERSION}
@@ -49,11 +49,13 @@ DAEMONARGS= -f

SUB_LIST+= DAEMONARGS="${DAEMONARGS}"

SSP_UNSAFE= true
# use sane defaults for path, overriden with actual PREFIX in start script
EXTRA_LDFLAGS= -X code.gitea.io/gitea/modules/setting.CustomPath=${PREFIX}/etc/gitea
EXTRA_LDFLAGS+= -X code.gitea.io/gitea/modules/setting.AppWorkPath=${PREFIX}/share/gitea
# Default LDFLAGS are incompatible with build
MAKE_ARGS= GOPATH=${WRKDIR} TAGS="${GO_TAGS}" LDFLAGS="${EXTRA_LDFLAGS}"
MAKE_ENV= LDFLAGS="${LDFLAGS} ${EXTRA_LDFLAGS}"
MAKE_ARGS= GOPATH=${WRKDIR} TAGS="${GO_TAGS}"
ALL_TARGET= backend
MAKE_JOBS_UNSAFE= yes


+ 3
- 3
www/gitea/distinfo View File

@@ -1,3 +1,3 @@
TIMESTAMP = 1583582463
SHA256 (gitea-src-1.11.2.tar.gz) = 777ad27929809811e17e2d0a539d2a47163e382473cefa680debcb0777aa2cba
SIZE (gitea-src-1.11.2.tar.gz) = 69381797
TIMESTAMP = 1584565552
SHA256 (gitea-src-1.11.3.tar.gz) = 5d0b31295788cc81d9f0033d00e509b6798ffeef0b603c4e1360e1762f3b11ec
SIZE (gitea-src-1.11.3.tar.gz) = 69382786

+ 20
- 0
www/gitea/files/patch-Makefile View File

@@ -0,0 +1,20 @@
--- Makefile.orig 2020-03-06 17:18:36.000000000 +0000
+++ Makefile 2020-03-18 20:56:00.588102000 +0000
@@ -123,7 +123,7 @@
.PHONY: go-check
go-check:
- $(eval GO_VERSION := $(shell printf "%03d%03d%03d" $(shell go version | grep -Eo '[0-9]+\.?[0-9]+?\.?[0-9]?[[:space:]]' | tr '.' ' ');))
+ $(eval GO_VERSION := $(shell printf "%03d%03d%03d" $(shell go version | grep -Eo 'go[0-9\.]+' | tr -d go | tr '.' ' ');))
@if [ "$(GO_VERSION)" -lt "001011000" ]; then \
echo "Gitea requires Go 1.11.0 or greater to build. You can get it at https://golang.org/dl/"; \
exit 1; \
@@ -138,7 +138,7 @@
.PHONY: node-check
node-check:
- $(eval NODE_VERSION := $(shell printf "%03d%03d%03d" $(shell node -v | grep -Eo '[0-9]+\.?[0-9]+?\.?[0-9]?' | tr '.' ' ');))
+ $(eval NODE_VERSION := $(shell printf "%03d%03d%03d" $(shell node -v | grep -Eo '[0-9]+\.?[0-9]+\.?[0-9]+' | tr '.' ' ');))
$(eval NPM_MISSING := $(shell hash npm > /dev/null 2>&1 || echo 1))
@if [ "$(NODE_VERSION)" -lt "010000000" -o "$(NPM_MISSING)" = "1" ]; then \
echo "Gitea requires Node.js 10.0.0 or greater and npm to build. You can get it at https://nodejs.org/en/download/"; \

+ 1
- 4
www/mnogosearch/Makefile View File

@@ -4,14 +4,11 @@
PORTNAME= mnogosearch
PORTVERSION= 3.4.1
CATEGORIES= www databases
MASTER_SITES= http://www.mnogosearch.org/Download/ \
http://www.bayofrum.net/dist/${PORTNAME}/
MASTER_SITES= http://www.mnogosearch.org/Download/

MAINTAINER= crees@FreeBSD.org
COMMENT= Full featured SQL-based hypertext search engine

BROKEN= unfetchable

LICENSE= GPLv2
LICENSE_FILE= ${WRKSRC}/COPYING


+ 1
- 1
www/nginx-prometheus-exporter/Makefile View File

@@ -2,7 +2,7 @@
# $FreeBSD$

PORTNAME= nginx-prometheus-exporter
PORTVERSION= 0.4.2
PORTVERSION= 0.6.0
DISTVERSIONPREFIX=v
CATEGORIES= www


+ 3
- 3
www/nginx-prometheus-exporter/distinfo View File

@@ -1,3 +1,3 @@
TIMESTAMP = 1570615527
SHA256 (nginxinc-nginx-prometheus-exporter-v0.4.2_GH0.tar.gz) = d8931629a2aac26600f0b7c9a366e6fe2373c30d40e9a7572ad8ecc2aff92777
SIZE (nginxinc-nginx-prometheus-exporter-v0.4.2_GH0.tar.gz) = 962939
TIMESTAMP = 1584630203
SHA256 (nginxinc-nginx-prometheus-exporter-v0.6.0_GH0.tar.gz) = 0f8dd458602863fb5907fd3eca87dc9677943231ad07ff534566577a6f53e767
SIZE (nginxinc-nginx-prometheus-exporter-v0.6.0_GH0.tar.gz) = 1177441

+ 1
- 5
x11-fonts/cyr-rfx/Makefile View File

@@ -5,16 +5,12 @@ PORTNAME= cyr-rfx-${CYR_RFX_ENCODING}
PORTVERSION= 1.1
PORTREVISION= 5
CATEGORIES= x11-fonts ukrainian russian
MASTER_SITES= ftp://ftp.ptc.spbu.ru/mirror/ftp.inp.nsk.su/%SUBDIR%/ \
ftp://ftp.inp.nsk.su/%SUBDIR%/
MASTER_SITE_SUBDIR= pub/BINP/X11/fonts/cyr-rfx/srctgz
MASTER_SITES= http://www.inp.nsk.su/~bolkhov/files/fonts/cyr-rfx/srctgz/
EXTRACT_SUFX= .bdfs.tgz

MAINTAINER= mi@aldan.algebra.com
COMMENT= Cyrillic X11 bitmap fonts from CYR-RFX project

BROKEN= unfetchable

BUILD_DEPENDS= bdftopcf:x11-fonts/bdftopcf \
mkfontscale>=0:x11-fonts/mkfontscale


Loading…
Cancel
Save