cvs commit: CVSROOT avail
simon 2012-07-15 17:03:47 UTC FreeBSD ports repository Modified files: .avail Log: Re-open ports CVS for the svn2cvs exporter. Revision ChangesPath 1.269 +1 -1 CVSROOT/avail ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"
cvs commit: CVSROOT commit_prep.pl
simon 2012-07-15 18:15:54 UTC FreeBSD ports repository Modified files: .commit_prep.pl Log: Merge CVSROOT-src/commit_prep.pl v1.67: Turn off $keyword$ checks. Leave the $keyword: foo $ collapse code active. Revision ChangesPath 1.68 +2 -2 CVSROOT/commit_prep.pl ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"
cvs commit: CVSROOT cfg_local.pm
simon 2012-07-16 20:29:32 UTC FreeBSD ports repository Modified files: .cfg_local.pm Log: Disable CVS commit mails for ports/. RIP. Subversion commit mails can be found in one of the svn-ports-* mailing lists. Submitted by: beat Revision ChangesPath 1.36 +1 -1 CVSROOT/cfg_local.pm ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"
Re: cvs commit: www/en/cgi Makefile query-pr.cgi querypr-code.cgi
On 2005.11.06 22:29:45 +, Ceri Davies wrote: > ceri2005-11-06 22:29:45 UTC > > FreeBSD doc repository > > Modified files: > en/cgi Makefile query-pr.cgi > Added files: > en/cgi querypr-code.cgi > Log: > Don't show the email address of the Originator by default. > There is a link provided whereby users can enter a code to > see the email addresses. Are there any plans to plug the 10+ other places where we still expose user email addresses? -- Simon L. Nielsen pgpYxc7uKoXVA.pgp Description: PGP signature
cvs commit: www/en/security security.sgml
simon 2005-11-08 20:39:23 UTC FreeBSD doc repository Modified files: en/security security.sgml Log: - Add support dates for 6.0-RELEASE and RELENG_6. - Add an anchor for the supported branches table. Dates confirmed by: cpervia Prodded by: linimon Revision ChangesPath 1.181 +18 -2 www/en/security/security.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/share/sgml includes.misc.xsl
simon 2005-11-09 22:10:01 UTC FreeBSD doc repository Modified files: share/sgml includes.misc.xsl Log: Fix html-index-events-items to actually take the 5 next events, and not just the first five entries from events.xml which are in the future. Noticed by: ceri Revision ChangesPath 1.27 +6 -3 www/share/sgml/includes.misc.xsl ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: cvs commit: src/sys/kern vfs_subr.c src/sys/fs/devfs devfs_vnops.c
On 2005.11.10 14:04:06 +0100, Gordon Bergling wrote: > Hi, > > * Thus spake Doug White ([EMAIL PROTECTED]): > > dwhite 2005-11-09 22:03:50 UTC > > > > FreeBSD src repository > > > > Modified files: > > sys/kern vfs_subr.c > > sys/fs/devfs devfs_vnops.c > > Log: > > This is a workaround for a complicated issue involving VFS cookies and > > devfs. > > The PR and patch have the details. The ultimate fix requires architectural > > changes and clarifications to the VFS API, but this will prevent the > > system > > from panicking when someone does "ls /dev" while running in a shell under > > the > > linuxulator. > > > > This issue affects HEAD and RELENG_6 only. > > > > PR: 88249 > > Submitted by: "Devon H. O'Dell" <[EMAIL PROTECTED]> > > MFC after: 3 days > > > > Revision ChangesPath > > 1.128 +24 -0 src/sys/fs/devfs/devfs_vnops.c > > 1.652 +4 -0 src/sys/kern/vfs_subr.c > > Could this be MFC'ed to RELENG_6_0, too? I think its also a security > risk on shell servers, where linux emulation is installed and the server > runs 6.0-RELEASE. How is it a security risk? Because local users can panic the system or are there more significant risks? Note: We do not issue Security Advisories for local DoS vulnerabilities, but it could be MFC'ed as an errata, but it requires that the change has been in RELENG_6 for a while before that can be done. -- Simon L. Nielsen pgpTHgqRs6Kne.pgp Description: PGP signature
cvs commit: ports/security/vuxml vuln.xml
simon 2005-11-14 08:45:09 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Update latest phpSysInfo entry to reflect that 2.4 was in fact not fixed (or rather, had an incorrect "fix"). Reported by:Christopher Kunz (advisory author) Security: http://www.hardened-php.net/advisory_222005.81.html Revision ChangesPath 1.888 +3 -2 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml vuln.xml
simon 2005-11-14 16:57:26 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Add CVE name to an old sudo entry. Revision ChangesPath 1.889 +3 -1 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/mail/wmbiff Makefile
simon 2005-11-15 09:58:46 UTC FreeBSD ports repository Modified files: mail/wmbiff Makefile Log: Resign as maintainer since I haven't used this program for quite a while now. Revision ChangesPath 1.27 +1 -1 ports/mail/wmbiff/Makefile ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/www/p5-ldap-abook Makefile
simon 2005-11-18 11:57:27 UTC FreeBSD ports repository Modified files: www/p5-ldap-abookMakefile Log: Mark FORBIDDEN due to arbitrary command execution vulnerability in CGI script. Reported by:Roman Mashirov <[EMAIL PROTECTED]> Revision ChangesPath 1.2 +2 -0 ports/www/p5-ldap-abook/Makefile ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/lib/libc/sys intro.2
simon 2005-11-19 11:30:55 UTC FreeBSD src repository (doc,ports committer) Modified files: lib/libc/sys intro.2 Log: Do not explicitly state how many bytes an argument list can be in the description of E2BIG, since it's now larger on some platforms. MFC after: 3 days Revision ChangesPath 1.46 +0 -1 src/lib/libc/sys/intro.2 ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/lib/libc/sys intro.2
simon 2005-11-22 19:13:09 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_6) lib/libc/sys intro.2 Log: MFC 1.46: Do not explicitly state how many bytes an argument list can be in the description of E2BIG, since it's now larger on some platforms. Revision ChangesPath 1.44.2.2 +0 -1 src/lib/libc/sys/intro.2 ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: doc/en_US.ISO8859-1/books/handbook/mirrors chapter.sgml
simon 2005-11-26 13:23:27 UTC FreeBSD doc repository Modified files: en_US.ISO8859-1/books/handbook/mirrors chapter.sgml Log: Add description of RELENG_6_0. Brought to you from:EuroBSDCon 2005 Prodded by: Jacob Atzen Revision ChangesPath 1.393 +9 -0 doc/en_US.ISO8859-1/books/handbook/mirrors/chapter.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml Makefile vuln.xml
simon 2005-11-29 08:41:52 UTC FreeBSD ports repository Modified files: security/vuxml Makefile vuln.xml Log: Mark flyspar 0.9.8 as fixed wrt. "flyspray -- cross-site scripting vulnerabilities" since our port version of 0.9.8 includes update1 which fixes the issue. Reported by:Volodymyr Kostyrko via pav Revision ChangesPath 1.9 +2 -2 ports/security/vuxml/Makefile 1.896 +4 -2 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml Makefile
simon 2005-11-29 08:46:13 UTC FreeBSD ports repository Modified files: security/vuxml Makefile Log: Backup rev 1.9 which should not have been committed since it was just my local hack. Note to self: Do not commit before having at least two cups of coffee. Pointy hat to: simon Revision ChangesPath 1.10 +2 -2 ports/security/vuxml/Makefile ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/Mk bsd.port.mk
simon 2012-03-11 21:30:49 UTC FreeBSD ports repository Modified files: Mk bsd.port.mk Log: Make bsd.port.mk not parse port audit's auditfile directly to check for vulnerabilities, but call portaudit instead. This fixes a remote command execution vulnerability for users who have portaudit installed. While changing the code anyway, remove the annoying and very verbose "Vulnerability check disabled, database not found" warning. Security: Remote code execution Security: http://vuxml.FreeBSD.org/6d329b64-6bbb-11e1-9166-001e4f0fb9b1.html Approved by:portmgr Feature safe: yes (or at least approved) With hat: so Revision ChangesPath 1.707 +6 -15 ports/Mk/bsd.port.mk ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"
cvs commit: ports/ports-mgmt/portaudit Makefile pkg-plist ports/ports-mgmt/portaudit/files portaudit-cmd.sh
simon 2012-03-11 21:32:58 UTC FreeBSD ports repository Modified files: ports-mgmt/portaudit Makefile pkg-plist ports-mgmt/portaudit/files portaudit-cmd.sh Log: Portaudit 0.6.0: Fix remote code execution which can occur with a specially crafted audit file. The attacker would need to get the portaudit(1) to download the bad audit database, e.g. by performing a man in the middle attack. Add signature verification of the portaudit database. The public key is for the database generated for portaudit.FreeBSD.org is included in the distribution. Submitted by: Michael Gmelin Reported by:Michael Gmelin , Joerg Scheinert Security: Remote code execution Security: http://vuxml.FreeBSD.org/6d329b64-6bbb-11e1-9166-001e4f0fb9b1.html Feature safe: yes With hat: so Revision ChangesPath 1.30 +2 -1 ports/ports-mgmt/portaudit/Makefile 1.20 +69 -10ports/ports-mgmt/portaudit/files/portaudit-cmd.sh 1.6 +1 -0 ports/ports-mgmt/portaudit/pkg-plist ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"
cvs commit: ports/security/vuxml vuln.xml
simon 2012-03-11 21:37:43 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: - Document portaudit -- auditfile remote code execution. - Update (c) year. Feature safe: yes Revision ChangesPath 1.2631+44 -2 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"
cvs commit: ports/ports-mgmt/portaudit/files portaudit.pubkey
simon 2012-03-11 22:05:39 UTC FreeBSD ports repository Added files: ports-mgmt/portaudit/files portaudit.pubkey Log: Portaudit 0.6.0: Fix remote code execution which can occur with a specially crafted audit file. The attacker would need to get the portaudit(1) to download the bad audit database, e.g. by performing a man in the middle attack. Add signature verification of the portaudit database. The public key is for the database generated for portaudit.FreeBSD.org is included in the distribution. (This parts add the portaudit public key missed in initial commit.) Submitted by: Michael Gmelin Reported by:Michael Gmelin , Joerg Scheinert Security: Remote code execution Security: http://vuxml.FreeBSD.org/6d329b64-6bbb-11e1-9166-001e4f0fb9b1.html Feature safe: yes With hat: so Revision ChangesPath 1.1 +14 -0 ports/ports-mgmt/portaudit/files/portaudit.pubkey (new) ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"
cvs commit: www/en/releng Makefile
simon 2012-04-29 21:35:32 UTC FreeBSD doc repository Modified files: en/relengMakefile Log: Unbreak build by removing CVS deleted file from Makefile. Pointyhat: eadler Revision ChangesPath 1.4 +2 -2 www/en/releng/Makefile ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"
cvs commit: ports/security/vuxml vuln.xml
simon 2012-05-05 13:53:46 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Unbreak vuln.xml format. While here fix a long line. Pointyhat: scheidell Revision ChangesPath 1.2685+4 -2 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"
cvs commit: ports/security/vuxml vuln.xml
simon 2005-11-30 20:35:51 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Document opera -- command line URL shell command injection. Revision ChangesPath 1.898 +41 -1 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml vuln.xml
simon 2005-11-30 20:55:37 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Document opera -- multiple vulnerabilities. Revision ChangesPath 1.899 +51 -1 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: cvs commit: www/en send-pr.sgml www/en/cgi Makefile confirm-code.cgi sendpr-code.cgi
On 2005.12.04 16:18:40 +, Ceri Davies wrote: > ceri2005-12-04 16:18:40 UTC > > FreeBSD doc repository > > Modified files: > en send-pr.sgml > en/cgi Makefile confirm-code.cgi > Removed files: > en/cgi sendpr-code.cgi > Log: > Refactor the "confirmation code" stuff into a general purpose script. > > confirm-code.cgi contains a preconfigured list of databases and their > parameters. When a request comes in, the database in the request's 'db' > parameter is checked for validity, and a code is generated, stored in > the appropriate database and returned. > > Use this new script in send-pr.sgml and remove sendpr-code.cgi which is > now superceded. [...] > | --- www/en/cgi/confirm-code.cgi 2005/11/11 08:58:06 1.5 > | +++ www/en/cgi/confirm-code.cgi 2005/12/04 16:18:40 1.6 [...] > | @@ -22,52 +25,81 @@ my @availchars = qw(A B C D E F G H J K > | $pnmcat = "/usr/local/bin/pnmcat"; > | $pnmtopng = "/usr/local/bin/pnmtopng"; > | $pnmdatadir = "../gifs/"; > | -$dbpath = "/tmp/sendpr-code.db"; > | -$expiretime = 2700;# seconds until code expires > | +$expiretime = 0; # Default for the Expires: header > | > | > | +# The code databases that we know about. If a query comes in for > | +# anything else, we return a zero byte "image" (rather than an image > | +# with a rude word in, which was tempting). > | + > | +%db = ( > | +# The querypr one is not used, but stands as an example. > | +# querypr => { > | +# path => '/tmp/querypr-code.db', > | +# lifespan => 2700, > | +# }, > | + sendpr => { > | + path => '/tmp/sendpr-code.db', > | + lifespan => 2700, > | + }, > | +); Could we put the database somewhere else, IE. not in a world writeable directory, so we don't have obvious potential temporary file vulnerabilities? While the real problem is very small (since so few people have access to www) I would on principle greatly prefer to have the database somewhere else, e.g. under /usr/local/www/var/confirm-code ? I can create the directory and set apropriate permimssions for this to work. -- Simon L. Nielsen pgprh7Yikipmd.pgp Description: PGP signature
cvs commit: www/en/cgi missing_handler.cgi
simon 2005-12-04 21:15:34 UTC FreeBSD doc repository Modified files: en/cgi missing_handler.cgi Log: Remove trailing whitespace. Revision ChangesPath 1.17 +14 -14www/en/cgi/missing_handler.cgi ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/cgi missing_handler.cgi
simon 2005-12-04 21:45:45 UTC FreeBSD doc repository Modified files: en/cgi missing_handler.cgi Log: - Make output XHTML compliant. - Remove the searchbox, since there is already a searchbox included on the page now, due to the new page design. Revision ChangesPath 1.18 +12 -23www/en/cgi/missing_handler.cgi ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/cgi cgi-style.pl
simon 2005-12-04 21:52:42 UTC FreeBSD doc repository Modified files: en/cgi cgi-style.pl Log: Correct the xmlns attribute http://w3.org/1999/xhtml -> http://www.w3.org/1999/xhtml, which is the namespace used by the XHTML DTD's. This fixes layout/rendering of output from the CGI scripts when using Opera. Revision ChangesPath 1.28 +2 -2 www/en/cgi/cgi-style.pl ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/cgi confirm-code.cgi dosendpr.cgi
simon 2005-12-04 22:25:20 UTC FreeBSD doc repository Modified files: en/cgi confirm-code.cgi dosendpr.cgi Log: Move the sendpr verification "database" to a non world-writeable directory. OK'ed by: ceri Revision ChangesPath 1.8 +3 -3 www/en/cgi/confirm-code.cgi 1.25 +2 -2 www/en/cgi/dosendpr.cgi ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/cgi confirm-code.cgi
simon 2005-12-04 23:20:43 UTC FreeBSD doc repository Modified files: en/cgi confirm-code.cgi Log: Try to find cgi-lib.pl in the current directory since the script cannot find cgi-lib.pl otherwise on www.FreeBSD.org. Revision ChangesPath 1.9 +2 -2 www/en/cgi/confirm-code.cgi ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/internal machines.sgml
simon 2005-12-11 10:46:49 UTC FreeBSD doc repository Modified files: en/internal machines.sgml Log: - spit is now cvsup-master. - ncvsup has replaced ocvsup as public cvsup mirror. Note that ncvsup is currently not working, so cvsup10 points to a different mirror. Revision ChangesPath 1.61 +10 -10www/en/internal/machines.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/security security.sgml
simon 2005-12-11 11:09:13 UTC FreeBSD doc repository Modified files: en/security security.sgml Log: - Use complete link to Handbook. - Markup a list with instead of using . - Use secteam@ instead of security@ as contact address for the FreeBSD Security Team in the hope of minimizing confusion a bit with which address goes where. - Add a link to the contributors article where people can see the current Security Team member list. - Tell people the preferred contact is the FreeBSD Security Team. Note part of this page is still somewhat inconsistent with itself in some parts, but at least this is a step in the right direction. Revision ChangesPath 1.182 +19 -13www/en/security/security.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/isakmpd Makefile distinfo
simon 2005-12-11 18:08:07 UTC FreeBSD ports repository Modified files: security/isakmpd Makefile distinfo Log: Force C locale during build, since the isakmpd build system is not locale safe. This should fix the build for locales like German and Hungarian where the tr(1) misuse "tr '[a-z]' '[A-Z]'" does not work. Add SHA256 checksum when I'm modifying the port anyway. Reported by:Harald Schmalzbauer, Zahemszky Gabor Should have been fixed long ago by: simon Revision ChangesPath 1.25 +1 -1 ports/security/isakmpd/Makefile 1.10 +1 -0 ports/security/isakmpd/distinfo ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/devel Makefile ports/devel/libisc Makefile distinfo pkg-descr pkg-plist ports/devel/libisc/files patch-Makefile
simon 2005-12-13 21:16:18 UTC FreeBSD ports repository Modified files: develMakefile Added files: devel/libisc Makefile distinfo pkg-descr pkg-plist devel/libisc/files patch-Makefile Log: Add libisc port: libisc is C utility library which is used as part of part of ISC's bind. It includes functions for: - assertion handling. - balanced binary (AVL) trees. - bit masks comparison. - event based programs. - heap-based priority queues. - memory handling. - program logging. Reviewed by:erwin Revision ChangesPath 1.2067+1 -0 ports/devel/Makefile 1.1 +39 -0 ports/devel/libisc/Makefile (new) 1.1 +6 -0 ports/devel/libisc/distinfo (new) 1.1 +40 -0 ports/devel/libisc/files/patch-Makefile (new) 1.1 +10 -0 ports/devel/libisc/pkg-descr (new) 1.1 +16 -0 ports/devel/libisc/pkg-plist (new) ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: CVSROOT modules
simon 2005-12-13 21:16:31 UTC FreeBSD ports repository Modified files: .modules Log: libisc --> ports/devel/libisc Revision ChangesPath 1.13850 +1 -0 CVSROOT/modules ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: cvs commit: ports/devel Makefile ports/devel/libisc Makefile distinfo pkg-descr pkg-plist ports/devel/libisc/files patch-Makefile
On 2005.12.13 21:16:18 +, Simon L. Nielsen wrote: > simon 2005-12-13 21:16:18 UTC > > FreeBSD ports repository > > Modified files: > develMakefile > Added files: > devel/libisc Makefile distinfo pkg-descr pkg-plist > devel/libisc/files patch-Makefile > Log: > Add libisc port: Oh, and I should mention that I stole as much as I could from the dns/bind9 port :-) . -- Simon L. Nielsen pgpNYrf7axlkC.pgp Description: PGP signature
cvs commit: CVSROOT modules
simon 2005-12-14 20:33:21 UTC FreeBSD ports repository Modified files: .modules Log: Rename module name for devel/libisc -> ports_libisc to avoid conflict with libisc module name from src/. Reported by:tdb Revision ChangesPath 1.13855 +1 -1 CVSROOT/modules ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/databases/mantis Makefile
simon 2005-12-14 22:10:27 UTC FreeBSD ports repository Modified files: databases/mantis Makefile Log: Mark FORBIDDEN due to remote file inclusion vulnerability (IE. effectively execute arbitrary PHP code). Security: http://vuxml.FreeBSD.org/82a41084-6ce7-11da-b90c-000e0c2e438a.html Requested by: remko With hat: secteam Revision ChangesPath 1.6 +2 -0 ports/databases/mantis/Makefile ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: cvs commit: doc/share/pgpkeys pgpkeys.ent doc/en_US.ISO8859-1/books/handbook/pgpkeys chapter.sgml
On 2005.12.17 20:24:10 +, Joel Dahl wrote: > joel2005-12-17 20:24:10 UTC > > FreeBSD doc repository > > Modified files: > share/pgpkeyspgpkeys.ent > en_US.ISO8859-1/books/handbook/pgpkeys chapter.sgml > Log: > Remove a bunch of old pgp keys that belongs to Ex-developers. > > Note that I haven't removed the actual keys yet, just the entries in the > handbook and the key entities. While I think it's a good idea to clean stuff up, you broke all the translated handbooks: E.g. when building the Dutch Handbook now. /usr/local/bin/jade:/FreeBSD/clean/doc/nl_NL.ISO8859-1/books/handbook/pgpkeys/chapter.sgml:342:7:E: general entity "pgpkey.patrick" not defined and no default entity /usr/local/bin/jade:/FreeBSD/clean/doc/nl_NL.ISO8859-1/books/handbook/pgpkeys/chapter.sgml:343:11:E: end tag for "SECT2" which is not finished /usr/local/bin/jade:/FreeBSD/clean/doc/nl_NL.ISO8859-1/books/handbook/pgpkeys/chapter.sgml:512:7:E: general entity "pgpkey.alex" not defined and no default entity So, you should probably backout the changes to pgpkeys.ent and wait untill the translators catch up before removing them from pgpkeys.ent. -- Simon L. Nielsen pgp1UuE2bZ8SX.pgp Description: PGP signature
cvs commit: src/share/man/man9 VFS_LOCK_GIANT.9
simon 2005-12-18 08:07:30 UTC FreeBSD src repository (doc,ports committer) Modified files: share/man/man9 VFS_LOCK_GIANT.9 Log: VFS_LOCK_GIANT and VFS_UNLOCK_GIANT are actually defined in sys/mount.h, so also include sys/mount.h in SYNOPSIS. PR: docs/90541 Submitted by: Wojciech A. Koszek dunstan^freebsd.czest.pl MFC after: 1 week Revision ChangesPath 1.3 +1 -0 src/share/man/man9/VFS_LOCK_GIANT.9 ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/releng index.sgml
simon 2005-12-20 07:57:06 UTC FreeBSD doc repository Modified files: en/relengindex.sgml Log: RELENG_6_0 has been handed over to security-officer from re. Revision ChangesPath 1.163 +2 -2 www/en/releng/index.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml vuln.xml
simon 2005-12-23 12:10:22 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Bump modification date for entries touched by last commit. Revision ChangesPath 1.916 +3 -2 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml vuln.xml
simon 2005-12-25 22:23:52 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Add missing "" tag from rev. 1.917, which caused the file to be invalid XML and in turn caused the portaudit database to be only partially built. Bump modification date of all entries which had modification date on the 23'rd to make sure VuXML consumers catch the updates. Portaudit problem reported by: Peter Vohmann Pointy hat to: lev Revision ChangesPath 1.918 +6 -5 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/release/doc/share/misc dev.archlist.txt
simon 2005-12-28 08:35:30 UTC FreeBSD src repository (doc,ports committer) Modified files: release/doc/share/misc dev.archlist.txt Log: ti(4) also works on sparc64 now. Revision ChangesPath 1.74 +1 -1 src/release/doc/share/misc/dev.archlist.txt ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: CVSROOT modules
simon 2005-12-31 13:23:12 UTC FreeBSD ports repository Modified files: .modules Log: Rename module name for misc/tinderbox -> ports_tinderbox to avoid conflict with tinderbox module name from src/. Revision ChangesPath 1.14035 +1 -1 CVSROOT/modules ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: doc/en_US.ISO8859-1/books/handbook/kernelconfig chapter.sgml
simon 2006-01-02 23:11:27 UTC FreeBSD doc repository Modified files: en_US.ISO8859-1/books/handbook/kernelconfig chapter.sgml Log: Remove note specific to using buildkernel on FreeBSD 4.2 and older. FreeBSD 4.2 was released over 4 years ago and people should not be running that. PR: docs/91241 Submitted by: Siebrand Mazeland <[EMAIL PROTECTED]> Revision ChangesPath 1.161 +0 -7 doc/en_US.ISO8859-1/books/handbook/kernelconfig/chapter.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: doc/en_US.ISO8859-1/books/handbook/cutting-edge chapter.sgml
simon 2006-01-02 23:29:53 UTC FreeBSD doc repository Modified files: en_US.ISO8859-1/books/handbook/cutting-edge chapter.sgml Log: Point to the "official" FreeBSD snapshot page now that re@ generates periodic snapshots, and since snapshots.jp.FreeBSD.org is not generating snapshots for all branches at the moment. PR: docs/91193 Submitted by: Daniel Gerzo <[EMAIL PROTECTED]> Idea improved by: pav Revision ChangesPath 1.221 +5 -5 doc/en_US.ISO8859-1/books/handbook/cutting-edge/chapter.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: cvs commit: doc/en_US.ISO8859-1/books/handbook/mirrors chapter.sgml
On 2006.01.06 14:08:46 +, Ceri Davies wrote: > On Fri, Jan 06, 2006 at 02:30:50PM +0100, Marc Fonvieille wrote: > > On Fri, Jan 06, 2006 at 01:16:21PM +, Vitaly Bogdanov wrote: > > > bvs 2006-01-06 13:16:21 UTC > > > > > > FreeBSD doc repository > > > > > > Modified files: > > > en_US.ISO8859-1/books/handbook/mirrors chapter.sgml > > > Log: > > > Don't use tag for net/cvsup-without-gui. This tag is changed > > > to reference to pkg-descr file of the port during the building. > > > net/cvsup-without-gui doesn't have pkg-descr file > > > > > > > A better (quick) solution would have been to just remove the package > > attribute and keep the filename tags. A net/cvsup/pkg-descr.nogui file > > exists, I'm not sure if it's still the case but > role="packages"> tags are used for other ports/pkg without > > pkg-descr elswhere in our docs. I don't think the right solution is on > > our SGML side (i.e., removing role attributes), the pkg-descr should > > exists and/or be correctly pointed on during the doc build or the "CGI > > access." > > I agree. DocBook markup is just that; it is either correct to mark up a > string representing a package as a package, or it is not. Whether that > package has a page on some website isn't really relevant. > > The CGI script could be fixed to redirect these pages; perhaps someone > with portfu could suggest a patch to the ports infrastructure to create > a file containing all such master/slave combinations that the script > could work with? I'm thinking something like "make master-slave-list". I looked at this about a year ago (AFAIR), and I seem to recall that the url.cgi (or was it pds.cgi) already does some magic e.g. to handle deleted ports, so it's probably not very hard to handle this, since you have the MASTERDIR variable in the port, but I'm pretty sure it's not a quick fix (not that anyone has implied that). An interesting little task for someone who wants to know perl and make magic better :-). -- Simon L. Nielsen pgp8lqmgibAsh.pgp Description: PGP signature
cvs commit: ports/security/vuxml vuln.xml
simon 2006-01-07 14:56:01 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Document two bogofilter vulnerabilities. Submitted by: Matthias Andree <[EMAIL PROTECTED]> Revision ChangesPath 1.924 +70 -1 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml vuln.xml
simon 2006-01-09 20:49:54 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Mark latest bnc version as fixed wrt. to "fd_set -- bitmap index overflow in multiple applications". Reported by:Christian Elmerot Revision ChangesPath 1.925 +7 -3 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml vuln.xml
simon 2006-01-09 21:47:30 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Document milter-bogom -- headerless message crash. Reported by:Victor Balada Diaz <[EMAIL PROTECTED]> Revision ChangesPath 1.926 +30 -1 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/share/sgml includes.misc.xsl
simon 2006-01-11 21:13:34 UTC FreeBSD doc repository Modified files: share/sgml includes.misc.xsl Log: Display 4 Security Advisories and only 2 Errata Notices, instead of 3 SA and 3 EN. This is done since we today have 4 new SA's and the second and third EN's are almost a year old. Should we at some point get multiple new Errata Notices in a short timespan, this decision should be revisited. Go for it: brueffer Revision ChangesPath 1.29 +3 -3 www/share/sgml/includes.misc.xsl ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: cvs commit: www/en/releases index.sgml
On 2006.01.14 18:25:23 +, Remko Lodder wrote: > remko 2006-01-14 18:25:23 UTC > > FreeBSD doc repository > > Modified files: > en/releases index.sgml > Log: > Links on http://www.freebsd.org/releases/ currently point to 2004 and 2005. > Update to point to 2005 and 2006. Wouldn't it be better to use some kind of entity share/. so this specific place doesn't have to be updated each year? -- Simon L. Nielsen pgppHMVfKBiGp.pgp Description: PGP signature
cvs commit: ports/security/vuxml vuln.xml
simon 2006-01-14 23:36:11 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: - Update description and references for "clamav -- possible heap overflow in the UPX code" now that more information is available. - Remove some EOL whitespace. Revision ChangesPath 1.928 +17 -5 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/opensc Makefile
simon 2006-01-15 20:51:06 UTC FreeBSD ports repository Modified files: security/opensc Makefile Log: - Fix MASTER_SITE (distfile has moved). - Grab this port since I recently started using opensc, and I'm currently working on upgrading the port to the latest version. Revision ChangesPath 1.18 +2 -2 ports/security/opensc/Makefile ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml
simon 2006-01-17 13:00:31 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_6) release/doc/en_US.ISO8859-1/errata article.sgml Log: - Add FreeBSD-SA-06:0[1234]. - Bump copyright year. Revision ChangesPath 1.73.2.10 +49 -1 src/release/doc/en_US.ISO8859-1/errata/article.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml
simon 2006-01-17 13:01:46 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_5) release/doc/en_US.ISO8859-1/errata article.sgml Log: - Add FreeBSD-SA-06:0[123]. - Bump copyright year. Revision ChangesPath 1.69.2.30 +22 -0 src/release/doc/en_US.ISO8859-1/errata/article.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/releases/5.4R errata.html
simon 2006-01-17 13:03:58 UTC FreeBSD doc repository Modified files: en/releases/5.4R errata.html Log: Regenerate from 1.69.2.30. Revision ChangesPath 1.10 +38 -5 www/en/releases/5.4R/errata.html ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/releases/6.0R errata.html
simon 2006-01-17 13:05:05 UTC FreeBSD doc repository Modified files: en/releases/6.0R errata.html Log: Regenerate from 1.73.2.10. Revision ChangesPath 1.10 +71 -6 www/en/releases/6.0R/errata.html ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/usr.bin/tar bsdtar.1
simon 2006-01-17 19:37:07 UTC FreeBSD src repository (doc,ports committer) Modified files: usr.bin/tar bsdtar.1 Log: Use the .Fx macro. MFC after: 3 days Revision ChangesPath 1.31 +7 -2 src/usr.bin/tar/bsdtar.1 ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml
simon 2006-01-18 09:20:22 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_6) release/doc/en_US.ISO8859-1/errata article.sgml Log: Add FreeBSD-SA-06:05.80211. Revision ChangesPath 1.73.2.11 +7 -0 src/release/doc/en_US.ISO8859-1/errata/article.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/releases/6.0R errata.html
simon 2006-01-18 09:23:02 UTC FreeBSD doc repository Modified files: en/releases/6.0R errata.html Log: Regen from 1.73.2.11. Revision ChangesPath 1.11 +11 -1 www/en/releases/6.0R/errata.html ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/devel/pcsc-lite Makefile pkg-plist
simon 2006-01-18 15:59:25 UTC FreeBSD ports repository Modified files: devel/pcsc-lite Makefile pkg-plist Log: - Remove PREFIX/libdata/pkgconfig, if empty, on deinstall. - Bump PORTREVISION for pkg-plist change. Additional ports clue: erwin Approved by:arved (maintainer) Revision ChangesPath 1.24 +1 -1 ports/devel/pcsc-lite/Makefile 1.13 +1 -0 ports/devel/pcsc-lite/pkg-plist ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: cvs commit: ports/devel/pcsc-lite Makefile pkg-plist
On 2006.01.18 17:12:30 +0100, Pav Lucistnik wrote: > Simon L. Nielsen pí?e v st 18. 01. 2006 v 15:59 +: > > simon 2006-01-18 15:59:25 UTC > > > > FreeBSD ports repository > > > > Modified files: > > devel/pcsc-lite Makefile pkg-plist > > Log: > > - Remove PREFIX/libdata/pkgconfig, if empty, on deinstall. > > - Bump PORTREVISION for pkg-plist change. > > Isn't this part of mtree since last summer? Bah, looks like you are correct. The tinderbox I noticed this in was a running 5.4 and it was added to mtree after 5.4. The reason that I didn't double check the mtree was that http://www.freebsd.org/doc/en_US.ISO8859-1/books/porters-handbook/using-gnome.html says the port should remove the libdata/pkgconfig directory. So, I supose the note about nuking libdata/pkgconfig should just be removed from the Porters Handbook? -- Simon L. Nielsen pgpTeOQdIbQQq.pgp Description: PGP signature
cvs commit: ports/devel/pcsc-lite Makefile pkg-plist
simon 2006-01-18 22:17:59 UTC FreeBSD ports repository Modified files: devel/pcsc-lite Makefile pkg-plist Log: - Backout last commit since PREFIX/libdata/pkgconfig is in the mtree files on FreeBSD 6.0 and newer. - Bump PORTREVISION for pkg-plist change. Clue(bat): pav Revision ChangesPath 1.25 +1 -1 ports/devel/pcsc-lite/Makefile 1.14 +0 -1 ports/devel/pcsc-lite/pkg-plist ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml
simon 2006-01-25 10:35:55 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_6) release/doc/en_US.ISO8859-1/errata article.sgml Log: Add FreeBSD-SA-06:0[67]. Revision ChangesPath 1.73.2.12 +14 -0 src/release/doc/en_US.ISO8859-1/errata/article.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/releases/6.0R errata.html
simon 2006-01-25 10:36:43 UTC FreeBSD doc repository Modified files: en/releases/6.0R errata.html Log: Sync with 1.73.2.12. Revision ChangesPath 1.12 +21 -1 www/en/releases/6.0R/errata.html ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml
simon 2006-01-25 10:39:02 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_5) release/doc/en_US.ISO8859-1/errata article.sgml Log: Add FreeBSD-SA-06:07. Revision ChangesPath 1.69.2.31 +7 -0 src/release/doc/en_US.ISO8859-1/errata/article.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/releases/5.4R errata.html
simon 2006-01-25 10:39:41 UTC FreeBSD doc repository Modified files: en/releases/5.4R errata.html Log: Regen from 1.69.2.31. Revision ChangesPath 1.11 +12 -1 www/en/releases/5.4R/errata.html ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/usr.bin/tar bsdtar.1
simon 2006-01-25 20:55:44 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_6) usr.bin/tar bsdtar.1 Log: MFC rev 1.31: Use the .Fx macro. Revision ChangesPath 1.29.2.1 +7 -2 src/usr.bin/tar/bsdtar.1 ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/usr.bin/tar bsdtar.1
simon 2006-01-25 20:56:17 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_5) usr.bin/tar bsdtar.1 Log: MFC rev 1.31: Use the .Fx macro. Revision ChangesPath 1.20.2.3 +7 -2 src/usr.bin/tar/bsdtar.1 ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: doc/en_US.ISO8859-1/books/handbook/audit chapter.sgml
simon 2006-02-05 16:08:25 UTC FreeBSD doc repository Modified files: en_US.ISO8859-1/books/handbook/audit chapter.sgml Log: Don't use trademark entity when referring to "Sun" the company. It should only be used when using "Sun" as part of a product name. Revision ChangesPath 1.11 +1 -1 doc/en_US.ISO8859-1/books/handbook/audit/chapter.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/opensc Makefile
simon 2006-02-07 11:40:12 UTC FreeBSD ports repository Modified files: security/opensc Makefile Log: Case MASTER_SITES redirect as reported by the Distfiles survey. Revision ChangesPath 1.19 +1 -1 ports/security/opensc/Makefile ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml vuln.xml
simon 2006-02-07 20:09:16 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Document kpopup -- local root exploit and local denial of service. PR: ports/92359 Submitted by: Ion-Mihai "IOnut" Tetcu <[EMAIL PROTECTED]> Revision ChangesPath 1.933 +42 -1 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml vuln.xml
simon 2006-02-07 20:43:51 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Mark ivtools 1.2.3 as fixed for jpeg vulnerabilities. Note that this version is not yet in ports, but marking the new version fixed now make porting a bit simpler. Revision ChangesPath 1.934 +26 -11ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: cvs commit: src/etc snmpd.config
On 2006.02.08 12:40:09 +, Ceri Davies wrote: > On Wed, Feb 08, 2006 at 03:34:56PM +0300, Gleb Smirnoff wrote: > > On Wed, Feb 08, 2006 at 12:06:30PM +, Ceri Davies wrote: > > C> On Wed, Feb 08, 2006 at 11:55:03AM +, Gleb Smirnoff wrote: > > C> > glebius 2006-02-08 11:55:03 UTC > > C> > > > C> > FreeBSD src repository > > C> > > > C> > Modified files: > > C> > etc snmpd.config > > C> > Log: > > C> > The bar.com is an existing domain. Instead of trying to listen on > > C> > 64.15.205.248 address, change host to "foobar". This won't be > > C> > resolvable in most cases, so administrator will need to change it. > > C> > > C> You still have bar.com in the contact field. > > C> > > C> This is what example.com is for. > > > > If you know correct usage of example.com, please correct this file. Thanks. > > Can do. For the listening case, can we use 0.0.0.0 or anything similar? There are an explict IP range for examples (AFAIR we use it in rc.firewall), perhaps that could be used? -- Simon L. Nielsen pgp5lQlXYsZkH.pgp Description: PGP signature
cvs commit: ports/shells/rssh Makefile
simon 2006-02-16 15:10:24 UTC FreeBSD ports repository Modified files: shells/rssh Makefile Log: Mark FORBIDDEN due to local privilege escalation. Security: http://vuxml.FreeBSD.org/e34d0c2e-9efb-11da-b410-000e0c2e438a.html Security: http://www.pizzashack.org/rssh/security.shtml Prodded by: remko Revision ChangesPath 1.7 +2 -0 ports/shells/rssh/Makefile ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml vuln.xml
simon 2006-02-17 09:53:59 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Document gnupg -- false positive signature verification. Revision ChangesPath 1.951 +40 -1 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml vuln.xml
simon 2006-02-18 14:22:42 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Document postgresql81-server -- SET ROLE privilege escalation. Revision ChangesPath 1.952 +31 -1 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: cvs commit: www/share/sgml includes.navdevelopers.sgml
On 2006.02.21 17:16:22 -0800, Murray Stokely wrote: > On Tue, Feb 21, 2006 at 03:56:31PM -0500, John Baldwin wrote: > > On Tuesday 21 February 2006 14:29, Joel Dahl wrote: > > > joel2006-02-21 19:29:29 UTC > > > > > > FreeBSD doc repository > > > > > > Modified files: > > > share/sgml includes.navdevelopers.sgml > > > Log: > > > Ok, it's almost impossible to find the FreeBSD internal pages, so add a > > > link to the bottom of the navigation table. > > > > I always thought the lack of a link was on purpose to be honest. Not > > there's > > anything sUp3r secret under internal/. > > Agreed. It shouldn't be almost impossible but completely impossible. > /internal pages have never been linked from the external pages on > purpose. It is for internal communications just as the developers@ It has been linked from the public pages for the last 7 years: http://cvsweb.freebsd.org/www/en/search/index-site.sgml.diff?r1=1.16&r2=1.17 -- Simon L. Nielsen pgpJNbYlUyqdB.pgp Description: PGP signature
cvs commit: src/sys/nfsserver nfs_srvsock.c
simon 2006-03-01 14:17:32 UTC FreeBSD src repository (doc,ports committer) Modified files: sys/nfsservernfs_srvsock.c Log: Correct a remote kernel panic when processing zero-length RPC records via TCP. [06:10] Security: FreeBSD-SA-06:10.nfs Approved by:cperciva Revision ChangesPath 1.97 +1 -1 src/sys/nfsserver/nfs_srvsock.c ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/sys/nfsserver nfs_srvsock.c
simon 2006-03-01 14:18:11 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_6) sys/nfsservernfs_srvsock.c Log: Correct a remote kernel panic when processing zero-length RPC records via TCP. [06:10] Security: FreeBSD-SA-06:10.nfs Approved by:re (scottl) Revision ChangesPath 1.94.2.1 +1 -1 src/sys/nfsserver/nfs_srvsock.c ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src UPDATING src/sys/conf newvers.sh src/sys/nfsserver nfs_srvsock.c
simon 2006-03-01 14:18:46 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_6_0) .UPDATING sys/conf newvers.sh sys/nfsservernfs_srvsock.c Log: Correct a remote kernel panic when processing zero-length RPC records via TCP. [06:10] Security: FreeBSD-SA-06:10.nfs Approved by:so (cperciva) RevisionChangesPath 1.416.2.3.2.10 +4 -0 src/UPDATING 1.69.2.8.2.6+1 -1 src/sys/conf/newvers.sh 1.94.4.1+1 -1 src/sys/nfsserver/nfs_srvsock.c ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/crypto/openssh auth-pam.c ssh_config ssh_config.5 sshd_config sshd_config.5 version.h src/sys/nfsserver nfs_srvsock.c
simon 2006-03-01 14:19:48 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_5) crypto/openssh auth-pam.c ssh_config ssh_config.5 sshd_config sshd_config.5 version.h sys/nfsservernfs_srvsock.c Log: Correct a remote DoS in OpenSSH when using PAM and privilege separation. [06:09] Submitted by: des Correct a remote kernel panic when processing zero-length RPC records via TCP. [06:10] Security: FreeBSD-SA-06:09.openssh Security: FreeBSD-SA-06:10.nfs Approved by:re (scottl) Revision ChangesPath 1.14.2.1 +10 -3 src/crypto/openssh/auth-pam.c 1.25.2.1 +2 -2 src/crypto/openssh/ssh_config 1.15.2.1 +2 -2 src/crypto/openssh/ssh_config.5 1.40.2.1 +2 -2 src/crypto/openssh/sshd_config 1.21.2.1 +2 -2 src/crypto/openssh/sshd_config.5 1.27.2.1 +2 -2 src/crypto/openssh/version.h 1.92.2.2 +1 -1 src/sys/nfsserver/nfs_srvsock.c ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src UPDATING src/crypto/openssh auth-pam.c ssh_config ssh_config.5 sshd_config sshd_config.5 version.h src/sys/conf newvers.sh src/sys/nfsserver nfs_srvsock.c
simon 2006-03-01 14:21:01 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_5_4) .UPDATING crypto/openssh auth-pam.c ssh_config ssh_config.5 sshd_config sshd_config.5 version.h sys/conf newvers.sh sys/nfsservernfs_srvsock.c Log: Correct a remote DoS in OpenSSH when using PAM and privilege separation. [06:09] Submitted by: des Correct a remote kernel panic when processing zero-length RPC records via TCP. [06:10] Security: FreeBSD-SA-06:09.openssh Security: FreeBSD-SA-06:10.nfs Approved by:so (cperciva) Revision ChangesPath 1.342.2.24.2.21 +7 -0 src/UPDATING 1.14.6.1 +10 -3 src/crypto/openssh/auth-pam.c 1.25.6.1 +2 -2 src/crypto/openssh/ssh_config 1.15.6.1 +2 -2 src/crypto/openssh/ssh_config.5 1.40.6.1 +2 -2 src/crypto/openssh/sshd_config 1.21.6.1 +2 -2 src/crypto/openssh/sshd_config.5 1.27.6.1 +2 -2 src/crypto/openssh/version.h 1.62.2.18.2.17 +1 -1 src/sys/conf/newvers.sh 1.92.2.1.2.1 +1 -1 src/sys/nfsserver/nfs_srvsock.c ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/sys/nfs nfs_socket.c
simon 2006-03-01 14:21:56 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_4) sys/nfs nfs_socket.c Log: Correct a remote kernel panic when processing zero-length RPC records via TCP. Security: FreeBSD-SA-06:10.nfs Approved by:cperciva Revision ChangesPath 1.60.2.7 +1 -1 src/sys/nfs/nfs_socket.c ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src UPDATING src/sys/conf newvers.sh src/sys/nfs nfs_socket.c
simon 2006-03-01 14:22:30 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_4_11) .UPDATING sys/conf newvers.sh sys/nfs nfs_socket.c Log: Correct a remote kernel panic when processing zero-length RPC records via TCP. Security: FreeBSD-SA-06:10.nfs Approved by:so (cperciva) RevisionChangesPath 1.73.2.91.2.16 +4 -0 src/UPDATING 1.44.2.39.2.19 +1 -1 src/sys/conf/newvers.sh 1.60.2.6.6.1+1 -1 src/sys/nfs/nfs_socket.c ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src UPDATING src/sys/conf newvers.sh src/sys/nfs nfs_socket.c
simon 2006-03-01 14:23:07 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_4_10) .UPDATING sys/conf newvers.sh sys/nfs nfs_socket.c Log: Correct a remote kernel panic when processing zero-length RPC records via TCP. Security: FreeBSD-SA-06:10.nfs Approved by:so (cperciva) RevisionChangesPath 1.73.2.90.2.22 +4 -0 src/UPDATING 1.44.2.34.2.23 +1 -1 src/sys/conf/newvers.sh 1.60.2.6.4.1+1 -1 src/sys/nfs/nfs_socket.c ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src UPDATING src/crypto/openssh auth-pam.c ssh_config ssh_config.5 sshd_config sshd_config.5 version.h src/sys/conf newvers.sh src/sys/nfsserver nfs_srvsock.c
simon 2006-03-01 14:24:52 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_5_3) .UPDATING crypto/openssh auth-pam.c ssh_config ssh_config.5 sshd_config sshd_config.5 version.h sys/conf newvers.sh sys/nfsservernfs_srvsock.c Log: Correct a remote DoS in OpenSSH when using PAM and privilege separation. [06:09] Submitted by: des Correct a remote kernel panic when processing zero-length RPC records via TCP. [06:10] Security: FreeBSD-SA-06:09.openssh Security: FreeBSD-SA-06:10.nfs Approved by:so (cperciva) Revision ChangesPath 1.342.2.13.2.30 +7 -0 src/UPDATING 1.14.4.1 +10 -3 src/crypto/openssh/auth-pam.c 1.25.4.1 +2 -2 src/crypto/openssh/ssh_config 1.15.4.1 +2 -2 src/crypto/openssh/ssh_config.5 1.40.4.1 +2 -2 src/crypto/openssh/sshd_config 1.21.4.1 +2 -2 src/crypto/openssh/sshd_config.5 1.27.4.1 +2 -2 src/crypto/openssh/version.h 1.62.2.15.2.32 +1 -1 src/sys/conf/newvers.sh 1.92.4.1 +1 -1 src/sys/nfsserver/nfs_srvsock.c ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/share/sgml advisories.xml
simon 2006-03-01 15:08:39 UTC FreeBSD doc repository Modified files: share/sgml advisories.xml Log: Add FreeBSD-SA-06:09.openssh and FreeBSD-SA-06:10.nfs. Revision ChangesPath 1.193 +17 -1 www/share/sgml/advisories.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml
simon 2006-03-01 15:36:41 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_6) release/doc/en_US.ISO8859-1/errata article.sgml Log: Add FreeBSD-SA-06:10.nfs. Approved by:re (scottl) Revision ChangesPath 1.73.2.14 +7 -0 src/release/doc/en_US.ISO8859-1/errata/article.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml
simon 2006-03-01 15:37:47 UTC FreeBSD src repository (doc,ports committer) Modified files:(Branch: RELENG_5) release/doc/en_US.ISO8859-1/errata article.sgml Log: Add FreeBSD-SA-06:09.openssh and FreeBSD-SA-06:10.nfs. Approved by:re (scottl) Revision ChangesPath 1.69.2.33 +14 -0 src/release/doc/en_US.ISO8859-1/errata/article.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/internal machines.sgml
simon 2006-03-05 20:52:47 UTC FreeBSD doc repository Modified files: en/internal machines.sgml Log: - Remove ref5, it has been down a while due to failed hardware and no replacment is currently in sight. - Note that panther is currently down. Revision ChangesPath 1.65 +3 -16 www/en/internal/machines.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/www/auth_ldap Makefile
simon 2006-03-08 09:47:47 UTC FreeBSD ports repository Modified files: www/auth_ldapMakefile Log: - Mark FORBIDDEN due to multiple format strings vulnerabilities. - Set EXPIRATION_DATE to one month from now since the port is unmaintained. Reported by:Christos Siaterlis csiat AT noc dotty ntua dotty gr Security: http://www.digitalarmaments.com/2006090173928420.html Security: http://secunia.com/advisories/18382/ Approved by:portmgr (implicit) Approved by:security-officer (simon) Revision ChangesPath 1.17 +4 -0 ports/www/auth_ldap/Makefile ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: src/sys/nfsserver nfs_srvsock.c
simon 2006-03-08 20:21:15 UTC FreeBSD src repository Modified files: sys/nfsservernfs_srvsock.c Log: When parsing an RPC request in nfsrv_dorec(), KASSERT that there actually is an mbuf to process. This catches the missing mbuf before it would otherwise causes a NULL pointer dereference, which could be triggered by a 0 length RPC record before the check for such records was added in rev 1.97. Approved by:cperciva (mentor) Revision ChangesPath 1.98 +1 -0 src/sys/nfsserver/nfs_srvsock.c ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/projects projects.sgml
simon 2006-03-11 14:52:39 UTC FreeBSD doc repository Modified files: en/projects projects.sgml Log: Fix link to The FreeBSD Token-Ring Project. Reported by:Detlef Graef detlef dotty graef aT yahoo dotty de Revision ChangesPath 1.188 +2 -2 www/en/projects/projects.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: www/en/internal machines.sgml
simon 2006-03-12 07:53:01 UTC FreeBSD doc repository Modified files: en/internal machines.sgml Log: hub is now running 6-STABLE. Revision ChangesPath 1.66 +2 -2 www/en/internal/machines.sgml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/security/vuxml vuln.xml
simon 2006-03-15 07:10:35 UTC FreeBSD ports repository Modified files: security/vuxml vuln.xml Log: Document linux-flashplugin -- arbitrary code execution vulnerability. Revision ChangesPath 1.971 +40 -1 ports/security/vuxml/vuln.xml ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
cvs commit: ports/www/linux-flashplugin Makefile ports/www/linux-flashplugin6 Makefile ports/www/linux-flashplugin7 Makefile
simon 2006-03-15 09:23:56 UTC FreeBSD ports repository Modified files: www/linux-flashplugin Makefile www/linux-flashplugin6 Makefile www/linux-flashplugin7 Makefile Log: Mark FORBIDDEN due to arbitrary code execution vulnerability. Security: http://vuxml.FreeBSD.org/83421018-b3ef-11da-a32d-000c6ec775d9.html With hat: secteam Revision ChangesPath 1.23 +2 -0 ports/www/linux-flashplugin/Makefile 1.9 +2 -0 ports/www/linux-flashplugin6/Makefile 1.13 +2 -0 ports/www/linux-flashplugin7/Makefile ___ cvs-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/cvs-all To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: cvs commit: src/usr.sbin/jail jail.8
On 2006.03.16 14:31:35 +, Jesus R. Camou wrote: > jcamou 2006-03-16 14:31:35 UTC > > FreeBSD src repository (doc committer) > > Modified files: > usr.sbin/jailjail.8 > Log: > Do `mount_devfs' when starting a jail. That is a very bad idea without further explaining the risks, since it will allow root in the jail more or less full access to the entire system since several non-safe device node are exported like disk and memory devices. To mount a devfs safely inside devfs rules must be set up. Could you please add a big warning, or even better, the commads to setup devfs rules for a jail /dev, like is done by the jail rc.d script? See also http://cvsweb.freebsd.org/src/usr.sbin/jail/jail.8#rev1.44 -- Simon L. Nielsen pgp7LyOmrRrW5.pgp Description: PGP signature