summaryrefslogtreecommitdiff
path: root/security (follow)
Commit message (Collapse)AuthorAgeFilesLines
* */*: Use fusefs.ko instead of old fuse.koFernando Apesteguía2022-03-162-3/+3
| | | | | | | | | In several installation messages. Bumping PORTEREVISION since this is something an end user would like know about. PR: 262246 Reported by: obiwac@gmail.com
* security/vuxml: remove duplicate gpli entriesPhilip Paeps2022-03-161-528/+0
| | | | | | | | | | These entries, introduced in 8d55457d6e333a68173be8f6ec18d1f6bb6644cf, were already added to vuxml in 6fdeda4e86c4109ef9be89a0a21d2a15baae3b5b. This fixes "make validate" PR: 255948 Pointy hat to: nc
* security/vuxml: add OpenSSL CVE-2022-0778Philip Paeps2022-03-161-0/+66
| | | | Also FreeBSD SA-22:03.openssl.
* security/vuxml: add FreeBSD SA-22:02.wifiPhilip Paeps2022-03-161-0/+39
|
* security/boringssl: update to the recent commitSergey A. Osokin2022-03-152-5/+5
|
* security/vuxml: add www/chromium < 99.0.4844.74Rene Ladan2022-03-151-0/+60
| | | | Obtained from: https://chromereleases.googleblog.com/2022/03/stable-channel-update-for-desktop_15.html
* security/vuxml: Document Apache 2.4.52 vulnsBernard Spil2022-03-151-0/+47
|
* lang/rust: Bump revisions after 1.59.0Mikael Urankar2022-03-1512-8/+12
|
* security/tpm2-tss: Update to 3.2.0Tadeusz Struk2022-03-152-5/+6
| | | | | | Changelog: https://github.com/tpm2-software/tpm2-tss/releases/tag/3.2.0 Differential Revision: https://reviews.freebsd.org/D34462
* security/tpm2-abrmd: Update to 2.4.1Tadeusz Struk2022-03-152-4/+4
| | | | | | Changelog: https://github.com/tpm2-software/tpm2-abrmd/releases/tag/2.4.1 Differential Revision: https://reviews.freebsd.org/D34463
* security/fizz: Update 2022.03.07.00 -> 2022.03.14.00Yuri Victorovich2022-03-142-4/+4
|
* security/wpa_supplicant-devel: Update to latest GH commitCy Schubert2022-03-142-5/+5
| | | | Update to the latest w1.fi commit, proxied through my GH account.
* ecurity/krb5-devel: update to the latest MIT/KRB5 github commitCy Schubert2022-03-142-5/+5
|
* security/krb5-119: Update to 1.19.3Cy Schubert2022-03-142-4/+4
|
* security/krb5-118: Update to 1.18.5Cy Schubert2022-03-142-4/+4
|
* */*: Bump PORTREVISION on *-sbcl ports after lang/sbcl upgrade.Kirill Ponomarev2022-03-141-1/+1
|
* security/arirang: Fix build with Ruby 3.xYasuhiro Kimura2022-03-141-0/+1
| | | | PR: 262532
* security/ca_root_nss: Update to 3.76Jochen Neumeister2022-03-133-8/+8
| | | | | | | | Update to 3.76 and fix do-install (1) PR: 228550 (1) Approved by: ports-secteam (with hat) Sponsored by: Netzkommune GmbH
* security/tor: drop FreeBSD < 12 remnants after 620968a43a5fJan Beich2022-03-132-26/+0
| | | | | PR: 262509 Approved by: yuri (maintainer)
* security/crowdsec: update to 1.3.2Fernando Apesteguía2022-03-126-60/+48
| | | | | PR: 262426 Reported by: marco+freebsd@crowdsec.net (maintainer)
* security/libretls: upgrade to 3.5.0Baptiste Daroussin2022-03-123-6/+6
| | | | Bump portrevision of each dependant port because the SONAME changes
* security/snort3: Update version 3.1.24.0=>3.1.25.0Muhammad Moinur Rahman2022-03-122-4/+4
| | | | Relnotes: https://github.com/snort3/snort3/releases/tag/3.1.25.0
* security/py-tuf: Update version 0.11.1=>1.0.0Muhammad Moinur Rahman2022-03-123-30/+10
| | | | | | | - Add LICENSE_FILE_* Relnotes: https://github.com/theupdateframework/python-tuf/releases/tag/v1.0.0
* security/reop: Update version 2.1.0=>2.1.1Muhammad Moinur Rahman2022-03-122-7/+6
| | | | Relnotes: https://humungus.tedunangst.com/r/reop/h
* security/py-securesystemslib: Update 0.22.0Muhammad Moinur Rahman2022-03-122-13/+8
| | | | | | | - Change MASTER_SITES to CHEESESHOP Relnotes: https://github.com/secure-systems-lab/securesystemslib/releases/tag/v0.22.0
* security/tailscale: Update to 1.22.1Ashish SHUKLA2022-03-112-6/+6
| | | | Reported by: portscout
* security/vuxml: document CVE-2021-43518 for games/teeworldsDmitry Marakasov2022-03-101-0/+26
|
* security/vuxml: fix syntax broken in 8d55457Dmitry Marakasov2022-03-101-1/+0
| | | | PR: 255948
* security/boringssl: update to the recent commitSergey A. Osokin2022-03-092-5/+5
|
* security/veracrypt: update to 1.25.9Jose Alonso Cardenas Marquez2022-03-093-7/+7
| | | | ChangeLog at: https://sourceforge.net/p/veracrypt/discussion/general/thread/75e4d57c52/
* security/kpmenu: commit the distinfo fileBaptiste Daroussin2022-03-091-23/+27
| | | | it has been forgotten when updating to 1.4.1
* security/rubygem-ssh_data: new port 1.3.0Matthias Fechner2022-03-094-0/+35
| | | | Required for gitlab-ce 14.8.
* security/vuxml: Document gitlab vulnerabilitiesMatthias Fechner2022-03-091-0/+40
|
* security/clamav-unofficial-sigs: update to 7.2.5Larry Rosenman2022-03-084-99/+48
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Changes: 7.2.5 eXtremeSHOK.com Maintenance Added : os.centos7-cpanel.conf Refactor : bsd support for tar, remove gnu-tar requirement Refactor : remove gnu-sed requirement Refactor : bsd support for stat command 7.2.4 eXtremeSHOK.com Maintenance Disabled winnow_malware.yara , duplicated in EMAIL_Cryptowall.yar and no longer maintained Removed gtar requirement (--wildcards is the default) Incremented the config to version 97 7.2.3 eXtremeSHOK.com Maintenance Whitelist support for yararules (whitelist signature tracking is disabled for yararules) Disable JJencode.yar , due to excessive CPU usage Disable scamnailer , discontinued Update pfsense guide for 2.5 Fix working directory variable "urlhausy" to "urlhaus" Fix missing tracker-tmp.txt Thank you @perplexityjeff 7.2.2 eXtremeSHOK.com Maintenance Use POSIX character classes instead of literals Prevent linuxmalwaredetect yara files being extracted when yara is not supported Replace echo with xshok_pretty_echo_and_log to silence database cleanup cron messages 7.2.1 eXtremeSHOK.com Maintenance Change yararule email/Email_generic_phishing.yar to HIGH New config option: force_host, by default dig is used when dig and host is present. Refactor and correct the assigning of binaries/commands Fix broken yara rule database names: Maldoc_hancitor_dropper and Maldoc_APT19_CVE-2017-1099 Ensure only dig or host is used when either dig or host is enabled Enable remove_disabled_databases by default Fix disabled databases removed when "$remove_disabled_databases" is set to "no" Incremented the config to version 95 7.2 eXtremeSHOK.com maintenance Database rating downgrades are now supported, eg, changing from HIGH to LOW will remove the HIGH and MEDIUM rated databases. Disabled databases are automatically removed Disable databases by setting the rating to "DISABLED" eg. securiteinfo_dbs_rating="DISABLED" will disable all securiteinfo databases Added Malware Expert databases (non-free) Added interServer databases (free) Reworked securiteinfo premium databases (non-free) Added malwarepatrol_db to specify the exact database name (default: malwarepatrol.db) Added detection of tar executable (use gtar on mac and bsd) Config os.macosx.conf renamed to os.macos.conf Fix: set ownership of last-version-check.txt More automated linting and testing (markdown and macOS / osx) via travis-ci Updated macOS installation guide for Big Sur (OSX 11) Incremented the config to version 94 Thank you @dandanio @jkellerer @msapiro @shawniverson Enforce HTTPS validation by default Updated sanesecurity publickey.gpg url to use SSL Ignore yara files that include modules Enabled yararulesproject rules by default os.gentoo.conf: disable updates and upgrade checks Fix: URLhaus log message Fix wrong download URL for MalwarePatrol Fix: fallback to host if dig is not used Disable cron MAILTO BSD read config fix Incremented the config to version 92 Thank you @dandanio @jkellerer @m0urs @Mrothyr @msapiro @orlitzky @RobbieTheK @SlothOfAnarchy
* security/courier-authlib: Update to 0.71.4Guido Falsi2022-03-082-4/+4
| | | | | | | | | | Changes: Fix a theoretical memory corruption during authentication if the process runs out of memory. The server does not do much memory allocation prior to authentication, this is mostly academic. MFH: 2022Q1
* KDE: Update KDE Plasma Desktop to 5.24.3Tobias C. Berner2022-03-083-9/+9
| | | | | | | | | | | | | | | | | | | Tuesday, 8 March 2022. Today KDE releases a bugfix update to KDE Plasma 5, versioned 5.24.3. Plasma 5.24 was released in February 2022 with many feature refinements and new modules to complete the desktop experience. This release adds two weeks' worth of new translations and fixes from KDE's contributors. The bugfixes are typically small but important and include: * Kcms/colors: fix spacing between radio buttons and content. * SDDM theme: stop eliding people’s names so aggressively. * Powerdevil: Improved backlight devices selection. Full Changelog: https://kde.org/announcements/changelogs/plasma/5/5.24.2-5.24.3
* security/nextcloud-twofactor_webauthn: Transfer maintainershipBernard Spil2022-03-081-3/+2
| | | | | * Transfer as per mail conversation * Thanks Henrik for maintain
* security/boringssl: update to the recent commitSergey A. Osokin2022-03-072-5/+5
|
* */*: Take maintainershipMuhammad Moinur Rahman2022-03-077-7/+7
|
* security/openssh-portable: Add comment in openssh.in about host keysBryan Drewery2022-03-072-1/+2
| | | | | | | | Commit ae66cffc19f added some rc vars to allow disabling host keys. The naming caused some confusion. Attempt to address that with a comment since these are not documented anywhere else. PR: 202169
* security/openssh-portable: Again fix procctl(2) usageBryan Drewery2022-03-072-1/+22
| | | | | | | | The 8.9p1 update was supposed to have a fix for incorrect use of procctl(2) but was left out for some reason. A wrong assumption missed keeping it in ae66cffc19f357cbd5. PR: 262352
* security/openssh-portable: Fix fetching gssapi patchBryan Drewery2022-03-072-5/+5
| | | | | - Mirror it - Update to latest Debian location
* security/fizz: Update 2022.02.28.00 -> 2022.03.07.00Yuri Victorovich2022-03-073-7/+13
|
* security/nextcloud-twofactor_webauthn: Update to 0.3.1Bernard Spil2022-03-072-7/+6
|
* */py-*: Take maintainershipPo-Chuan Hsieh2022-03-087-7/+7
|
* all: return koobs' ports to the pool after safekeeping his commit bit.Rene Ladan2022-03-0714-14/+14
|
* security/py-fail2ban: Fix build with setuptools 58.0.0+Po-Chuan Hsieh2022-03-081-0/+26
| | | | With hat: python
* security/rubygem-signet: Update to 0.16.1Po-Chuan Hsieh2022-03-082-5/+5
| | | | | Changes: https://github.com/googleapis/signet/releases https://github.com/googleapis/signet/blob/main/CHANGELOG.md
* security/rubygem-pundit: Update to 2.2.0Po-Chuan Hsieh2022-03-082-4/+4
| | | | Changes: https://github.com/varvet/pundit/blob/main/CHANGELOG.md
* security/py-pyspnego: Update to 0.5.0Po-Chuan Hsieh2022-03-082-5/+5
| | | | Changes: https://github.com/jborean93/pyspnego/releases