cvs commit: CVSROOT avail

2012-07-15 Thread Simon L. Nielsen
simon   2012-07-15 17:03:47 UTC

  FreeBSD ports repository

  Modified files:
.avail 
  Log:
  Re-open ports CVS for the svn2cvs exporter.
  
  Revision  ChangesPath
  1.269 +1 -1  CVSROOT/avail
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"


cvs commit: CVSROOT commit_prep.pl

2012-07-15 Thread Simon L. Nielsen
simon   2012-07-15 18:15:54 UTC

  FreeBSD ports repository

  Modified files:
.commit_prep.pl 
  Log:
  Merge CVSROOT-src/commit_prep.pl v1.67:
  
  Turn off $keyword$ checks.  Leave the $keyword: foo $ collapse code
  active.
  
  Revision  ChangesPath
  1.68  +2 -2  CVSROOT/commit_prep.pl
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"


cvs commit: CVSROOT cfg_local.pm

2012-07-16 Thread Simon L. Nielsen
simon   2012-07-16 20:29:32 UTC

  FreeBSD ports repository

  Modified files:
.cfg_local.pm 
  Log:
  Disable CVS commit mails for ports/.
  
  RIP.
  
  Subversion commit mails can be found in one of the svn-ports-* mailing
  lists.
  
  Submitted by:   beat
  
  Revision  ChangesPath
  1.36  +1 -1  CVSROOT/cfg_local.pm
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"


Re: cvs commit: www/en/cgi Makefile query-pr.cgi querypr-code.cgi

2005-11-07 Thread Simon L. Nielsen
On 2005.11.06 22:29:45 +, Ceri Davies wrote:
> ceri2005-11-06 22:29:45 UTC
> 
>   FreeBSD doc repository
> 
>   Modified files:
> en/cgi   Makefile query-pr.cgi 
>   Added files:
> en/cgi   querypr-code.cgi 
>   Log:
>   Don't show the email address of the Originator by default.
>   There is a link provided whereby users can enter a code to
>   see the email addresses.

Are there any plans to plug the 10+ other places where we still expose
user email addresses?

-- 
Simon L. Nielsen


pgpYxc7uKoXVA.pgp
Description: PGP signature


cvs commit: www/en/security security.sgml

2005-11-08 Thread Simon L. Nielsen
simon   2005-11-08 20:39:23 UTC

  FreeBSD doc repository

  Modified files:
en/security  security.sgml 
  Log:
  - Add support dates for 6.0-RELEASE and RELENG_6.
  - Add an anchor for the supported branches table.
  
  Dates confirmed by: cpervia
  Prodded by: linimon
  
  Revision  ChangesPath
  1.181 +18 -2 www/en/security/security.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/share/sgml includes.misc.xsl

2005-11-09 Thread Simon L. Nielsen
simon   2005-11-09 22:10:01 UTC

  FreeBSD doc repository

  Modified files:
share/sgml   includes.misc.xsl 
  Log:
  Fix html-index-events-items to actually take the 5 next events, and not
  just the first five entries from events.xml which are in the future.
  
  Noticed by: ceri
  
  Revision  ChangesPath
  1.27  +6 -3  www/share/sgml/includes.misc.xsl
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Re: cvs commit: src/sys/kern vfs_subr.c src/sys/fs/devfs devfs_vnops.c

2005-11-10 Thread Simon L. Nielsen
On 2005.11.10 14:04:06 +0100, Gordon Bergling wrote:
> Hi,
> 
> * Thus spake Doug White ([EMAIL PROTECTED]):
> > dwhite  2005-11-09 22:03:50 UTC
> > 
> >   FreeBSD src repository
> > 
> >   Modified files:
> > sys/kern vfs_subr.c 
> > sys/fs/devfs devfs_vnops.c 
> >   Log:
> >   This is a workaround for a complicated issue involving VFS cookies and 
> > devfs.
> >   The PR and patch have the details. The ultimate fix requires architectural
> >   changes and clarifications to the VFS API, but this will prevent the 
> > system
> >   from panicking when someone does "ls /dev" while running in a shell under 
> > the
> >   linuxulator.
> >   
> >   This issue affects HEAD and RELENG_6 only.
> >   
> >   PR: 88249
> >   Submitted by:   "Devon H. O'Dell" <[EMAIL PROTECTED]>
> >   MFC after:  3 days
> >   
> >   Revision  ChangesPath
> >   1.128 +24 -0 src/sys/fs/devfs/devfs_vnops.c
> >   1.652 +4 -0  src/sys/kern/vfs_subr.c
> 
> Could this be MFC'ed to RELENG_6_0, too? I think its also a security
> risk on shell servers, where linux emulation is installed and the server
> runs 6.0-RELEASE.

How is it a security risk?  Because local users can panic the system
or are there more significant risks?

Note: We do not issue Security Advisories for local DoS
vulnerabilities, but it could be MFC'ed as an errata, but it requires
that the change has been in RELENG_6 for a while before that can be
done.

-- 
Simon L. Nielsen


pgpTHgqRs6Kne.pgp
Description: PGP signature


cvs commit: ports/security/vuxml vuln.xml

2005-11-14 Thread Simon L. Nielsen
simon   2005-11-14 08:45:09 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Update latest phpSysInfo entry to reflect that 2.4 was in fact not fixed
  (or rather, had an incorrect "fix").
  
  Reported by:Christopher Kunz (advisory author)
  Security:   http://www.hardened-php.net/advisory_222005.81.html
  
  Revision  ChangesPath
  1.888 +3 -2  ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml vuln.xml

2005-11-14 Thread Simon L. Nielsen
simon   2005-11-14 16:57:26 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Add CVE name to an old sudo entry.
  
  Revision  ChangesPath
  1.889 +3 -1  ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/mail/wmbiff Makefile

2005-11-15 Thread Simon L. Nielsen
simon   2005-11-15 09:58:46 UTC

  FreeBSD ports repository

  Modified files:
mail/wmbiff  Makefile 
  Log:
  Resign as maintainer since I haven't used this program for quite a while
  now.
  
  Revision  ChangesPath
  1.27  +1 -1  ports/mail/wmbiff/Makefile
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/www/p5-ldap-abook Makefile

2005-11-18 Thread Simon L. Nielsen
simon   2005-11-18 11:57:27 UTC

  FreeBSD ports repository

  Modified files:
www/p5-ldap-abookMakefile 
  Log:
  Mark FORBIDDEN due to arbitrary command execution vulnerability in CGI
  script.
  
  Reported by:Roman Mashirov <[EMAIL PROTECTED]>
  
  Revision  ChangesPath
  1.2   +2 -0  ports/www/p5-ldap-abook/Makefile
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/lib/libc/sys intro.2

2005-11-19 Thread Simon L. Nielsen
simon   2005-11-19 11:30:55 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:
lib/libc/sys intro.2 
  Log:
  Do not explicitly state how many bytes an argument list can be in the
  description of E2BIG, since it's now larger on some platforms.
  
  MFC after:  3 days
  
  Revision  ChangesPath
  1.46  +0 -1  src/lib/libc/sys/intro.2
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/lib/libc/sys intro.2

2005-11-22 Thread Simon L. Nielsen
simon   2005-11-22 19:13:09 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_6)
lib/libc/sys intro.2 
  Log:
  MFC 1.46:
  
  Do not explicitly state how many bytes an argument list can be in the
  description of E2BIG, since it's now larger on some platforms.
  
  Revision  ChangesPath
  1.44.2.2  +0 -1  src/lib/libc/sys/intro.2
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: doc/en_US.ISO8859-1/books/handbook/mirrors chapter.sgml

2005-11-26 Thread Simon L. Nielsen
simon   2005-11-26 13:23:27 UTC

  FreeBSD doc repository

  Modified files:
en_US.ISO8859-1/books/handbook/mirrors chapter.sgml 
  Log:
  Add description of RELENG_6_0.
  
  Brought to you from:EuroBSDCon 2005
  Prodded by: Jacob Atzen
  
  Revision  ChangesPath
  1.393 +9 -0  doc/en_US.ISO8859-1/books/handbook/mirrors/chapter.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml Makefile vuln.xml

2005-11-29 Thread Simon L. Nielsen
simon   2005-11-29 08:41:52 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   Makefile vuln.xml 
  Log:
  Mark flyspar 0.9.8 as fixed wrt. "flyspray -- cross-site scripting
  vulnerabilities" since our port version of 0.9.8 includes update1 which
  fixes the issue.
  
  Reported by:Volodymyr Kostyrko via pav
  
  Revision  ChangesPath
  1.9   +2 -2  ports/security/vuxml/Makefile
  1.896 +4 -2  ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml Makefile

2005-11-29 Thread Simon L. Nielsen
simon   2005-11-29 08:46:13 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   Makefile 
  Log:
  Backup rev 1.9 which should not have been committed since it was just my
  local hack.
  
  Note to self: Do not commit before having at least two cups of coffee.
  
  Pointy hat to:  simon
  
  Revision  ChangesPath
  1.10  +2 -2  ports/security/vuxml/Makefile
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/Mk bsd.port.mk

2012-03-11 Thread Simon L. Nielsen
simon   2012-03-11 21:30:49 UTC

  FreeBSD ports repository

  Modified files:
Mk   bsd.port.mk 
  Log:
  Make bsd.port.mk not parse port audit's auditfile directly to
  check for vulnerabilities, but call portaudit instead.
  
  This fixes a remote command execution vulnerability for users who have
  portaudit installed.
  
  While changing the code anyway, remove the annoying and very verbose
  "Vulnerability check disabled, database not found" warning.
  
  Security:   Remote code execution
  Security:   
http://vuxml.FreeBSD.org/6d329b64-6bbb-11e1-9166-001e4f0fb9b1.html
  Approved by:portmgr
  Feature safe:   yes (or at least approved)
  With hat:   so
  
  Revision  ChangesPath
  1.707 +6 -15 ports/Mk/bsd.port.mk
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"


cvs commit: ports/ports-mgmt/portaudit Makefile pkg-plist ports/ports-mgmt/portaudit/files portaudit-cmd.sh

2012-03-11 Thread Simon L. Nielsen
simon   2012-03-11 21:32:58 UTC

  FreeBSD ports repository

  Modified files:
ports-mgmt/portaudit Makefile pkg-plist 
ports-mgmt/portaudit/files portaudit-cmd.sh 
  Log:
  Portaudit 0.6.0:
  
  Fix remote code execution which can occur with a specially crafted
  audit file.  The attacker would need to get the portaudit(1) to
  download the bad audit database, e.g. by performing a man in the
  middle attack.
  
  Add signature verification of the portaudit database.  The public key
  is for the database generated for portaudit.FreeBSD.org is included
  in the distribution.
  
  Submitted by:   Michael Gmelin 
  Reported by:Michael Gmelin , Joerg Scheinert
  Security:   Remote code execution
  Security:   
http://vuxml.FreeBSD.org/6d329b64-6bbb-11e1-9166-001e4f0fb9b1.html
  Feature safe:   yes
  With hat:   so
  
  Revision  ChangesPath
  1.30  +2 -1  ports/ports-mgmt/portaudit/Makefile
  1.20  +69 -10ports/ports-mgmt/portaudit/files/portaudit-cmd.sh
  1.6   +1 -0  ports/ports-mgmt/portaudit/pkg-plist
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"


cvs commit: ports/security/vuxml vuln.xml

2012-03-11 Thread Simon L. Nielsen
simon   2012-03-11 21:37:43 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  - Document portaudit -- auditfile remote code execution.
  - Update (c) year.
  
  Feature safe:   yes
  
  Revision  ChangesPath
  1.2631+44 -2 ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"



cvs commit: ports/ports-mgmt/portaudit/files portaudit.pubkey

2012-03-11 Thread Simon L. Nielsen
simon   2012-03-11 22:05:39 UTC

  FreeBSD ports repository

  Added files:
ports-mgmt/portaudit/files portaudit.pubkey 
  Log:
  Portaudit 0.6.0:
  
  Fix remote code execution which can occur with a specially crafted
  audit file.  The attacker would need to get the portaudit(1) to
  download the bad audit database, e.g. by performing a man in the
  middle attack.
  
  Add signature verification of the portaudit database.  The public key
  is for the database generated for portaudit.FreeBSD.org is included
  in the distribution.
  
  (This parts add the portaudit public key missed in initial commit.)
  
  Submitted by:   Michael Gmelin 
  Reported by:Michael Gmelin , Joerg Scheinert
  Security:   Remote code execution
  Security:   
http://vuxml.FreeBSD.org/6d329b64-6bbb-11e1-9166-001e4f0fb9b1.html
  Feature safe:   yes
  With hat:   so
  
  Revision  ChangesPath
  1.1   +14 -0 ports/ports-mgmt/portaudit/files/portaudit.pubkey (new)
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"


cvs commit: www/en/releng Makefile

2012-04-29 Thread Simon L. Nielsen
simon   2012-04-29 21:35:32 UTC

  FreeBSD doc repository

  Modified files:
en/relengMakefile 
  Log:
  Unbreak build by removing CVS deleted file from Makefile.
  
  Pointyhat:  eadler
  
  Revision  ChangesPath
  1.4   +2 -2  www/en/releng/Makefile
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"


cvs commit: ports/security/vuxml vuln.xml

2012-05-05 Thread Simon L. Nielsen
simon   2012-05-05 13:53:46 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Unbreak vuln.xml format.
  While here fix a long line.
  
  Pointyhat:  scheidell
  
  Revision  ChangesPath
  1.2685+4 -2  ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscr...@freebsd.org"


cvs commit: ports/security/vuxml vuln.xml

2005-11-30 Thread Simon L. Nielsen
simon   2005-11-30 20:35:51 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Document opera -- command line URL shell command injection.
  
  Revision  ChangesPath
  1.898 +41 -1 ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml vuln.xml

2005-11-30 Thread Simon L. Nielsen
simon   2005-11-30 20:55:37 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Document opera -- multiple vulnerabilities.
  
  Revision  ChangesPath
  1.899 +51 -1 ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Re: cvs commit: www/en send-pr.sgml www/en/cgi Makefile confirm-code.cgi sendpr-code.cgi

2005-12-04 Thread Simon L. Nielsen
On 2005.12.04 16:18:40 +, Ceri Davies wrote:
> ceri2005-12-04 16:18:40 UTC
> 
>   FreeBSD doc repository
> 
>   Modified files:
> en   send-pr.sgml 
> en/cgi   Makefile confirm-code.cgi 
>   Removed files:
> en/cgi   sendpr-code.cgi 
>   Log:
>   Refactor the "confirmation code" stuff into a general purpose script.
>   
>   confirm-code.cgi contains a preconfigured list of databases and their
>   parameters.  When a request comes in, the database in the request's 'db'
>   parameter is checked for validity, and a code is generated, stored in
>   the appropriate database and returned.
>   
>   Use this new script in send-pr.sgml and remove sendpr-code.cgi which is
>   now superceded.
[...]
> | --- www/en/cgi/confirm-code.cgi 2005/11/11 08:58:06 1.5
> | +++ www/en/cgi/confirm-code.cgi 2005/12/04 16:18:40 1.6
[...]
> | @@ -22,52 +25,81 @@ my @availchars = qw(A B C D E F G H J K 
> |  $pnmcat = "/usr/local/bin/pnmcat";
> |  $pnmtopng = "/usr/local/bin/pnmtopng";
> |  $pnmdatadir = "../gifs/";
> | -$dbpath = "/tmp/sendpr-code.db";
> | -$expiretime = 2700;# seconds until code expires
> | +$expiretime = 0;   # Default for the Expires: header
> |  
> |  
> | +# The code databases that we know about.  If a query comes in for
> | +# anything else, we return a zero byte "image" (rather than an image
> | +# with a rude word in, which was tempting).
> | +
> | +%db = (
> | +# The querypr one is not used, but stands as an example.
> | +#  querypr => {
> | +#  path => '/tmp/querypr-code.db',
> | +#  lifespan => 2700,
> | +#  },
> | +   sendpr => {
> | +   path => '/tmp/sendpr-code.db',
> | +   lifespan => 2700,
> | +   },
> | +);

Could we put the database somewhere else, IE. not in a world writeable
directory, so we don't have obvious potential temporary file
vulnerabilities?

While the real problem is very small (since so few people have access
to www) I would on principle greatly prefer to have the database
somewhere else, e.g. under /usr/local/www/var/confirm-code ?

I can create the directory and set apropriate permimssions for this to
work.

-- 
Simon L. Nielsen


pgprh7Yikipmd.pgp
Description: PGP signature


cvs commit: www/en/cgi missing_handler.cgi

2005-12-04 Thread Simon L. Nielsen
simon   2005-12-04 21:15:34 UTC

  FreeBSD doc repository

  Modified files:
en/cgi   missing_handler.cgi 
  Log:
  Remove trailing whitespace.
  
  Revision  ChangesPath
  1.17  +14 -14www/en/cgi/missing_handler.cgi
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/cgi missing_handler.cgi

2005-12-04 Thread Simon L. Nielsen
simon   2005-12-04 21:45:45 UTC

  FreeBSD doc repository

  Modified files:
en/cgi   missing_handler.cgi 
  Log:
  - Make output XHTML compliant.
  - Remove the searchbox, since there is already a searchbox included on
the page now, due to the new page design.
  
  Revision  ChangesPath
  1.18  +12 -23www/en/cgi/missing_handler.cgi
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/cgi cgi-style.pl

2005-12-04 Thread Simon L. Nielsen
simon   2005-12-04 21:52:42 UTC

  FreeBSD doc repository

  Modified files:
en/cgi   cgi-style.pl 
  Log:
  Correct the xmlns attribute http://w3.org/1999/xhtml ->
  http://www.w3.org/1999/xhtml, which is the namespace used by the XHTML
  DTD's.
  
  This fixes layout/rendering of output from the CGI scripts when using
  Opera.
  
  Revision  ChangesPath
  1.28  +2 -2  www/en/cgi/cgi-style.pl
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/cgi confirm-code.cgi dosendpr.cgi

2005-12-04 Thread Simon L. Nielsen
simon   2005-12-04 22:25:20 UTC

  FreeBSD doc repository

  Modified files:
en/cgi   confirm-code.cgi dosendpr.cgi 
  Log:
  Move the sendpr verification "database" to a non world-writeable
  directory.
  
  OK'ed by:   ceri
  
  Revision  ChangesPath
  1.8   +3 -3  www/en/cgi/confirm-code.cgi
  1.25  +2 -2  www/en/cgi/dosendpr.cgi
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/cgi confirm-code.cgi

2005-12-04 Thread Simon L. Nielsen
simon   2005-12-04 23:20:43 UTC

  FreeBSD doc repository

  Modified files:
en/cgi   confirm-code.cgi 
  Log:
  Try to find cgi-lib.pl in the current directory since the script cannot
  find cgi-lib.pl otherwise on www.FreeBSD.org.
  
  Revision  ChangesPath
  1.9   +2 -2  www/en/cgi/confirm-code.cgi
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/internal machines.sgml

2005-12-11 Thread Simon L. Nielsen
simon   2005-12-11 10:46:49 UTC

  FreeBSD doc repository

  Modified files:
en/internal  machines.sgml 
  Log:
  - spit is now cvsup-master.
  - ncvsup has replaced ocvsup as public cvsup mirror.
  
  Note that ncvsup is currently not working, so cvsup10 points to a
  different mirror.
  
  Revision  ChangesPath
  1.61  +10 -10www/en/internal/machines.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/security security.sgml

2005-12-11 Thread Simon L. Nielsen
simon   2005-12-11 11:09:13 UTC

  FreeBSD doc repository

  Modified files:
en/security  security.sgml 
  Log:
  - Use complete link to Handbook.
  - Markup a list with  instead of using .
  - Use secteam@ instead of security@ as contact address for the FreeBSD
Security Team in the hope of minimizing confusion a bit with which
address goes where.
  - Add a link to the contributors article where people can see the current
Security Team member list.
  - Tell people the preferred contact is the FreeBSD Security Team.
  
  Note part of this page is still somewhat inconsistent with itself in
  some parts, but at least this is a step in the right direction.
  
  Revision  ChangesPath
  1.182 +19 -13www/en/security/security.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/isakmpd Makefile distinfo

2005-12-11 Thread Simon L. Nielsen
simon   2005-12-11 18:08:07 UTC

  FreeBSD ports repository

  Modified files:
security/isakmpd Makefile distinfo 
  Log:
  Force C locale during build, since the isakmpd build system is not
  locale safe.
  
  This should fix the build for locales like German and Hungarian where
  the tr(1) misuse "tr '[a-z]' '[A-Z]'" does not work.
  
  Add SHA256 checksum when I'm modifying the port anyway.
  
  Reported by:Harald Schmalzbauer, Zahemszky Gabor
  Should have been fixed long ago by: simon
  
  Revision  ChangesPath
  1.25  +1 -1  ports/security/isakmpd/Makefile
  1.10  +1 -0  ports/security/isakmpd/distinfo
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/devel Makefile ports/devel/libisc Makefile distinfo pkg-descr pkg-plist ports/devel/libisc/files patch-Makefile

2005-12-13 Thread Simon L. Nielsen
simon   2005-12-13 21:16:18 UTC

  FreeBSD ports repository

  Modified files:
develMakefile 
  Added files:
devel/libisc Makefile distinfo pkg-descr pkg-plist 
devel/libisc/files   patch-Makefile 
  Log:
  Add libisc port:
  
  libisc is C utility library which is used as part of part of ISC's bind.
  
  It includes functions for:
  - assertion handling.
  - balanced binary (AVL) trees.
  - bit masks comparison.
  - event based programs.
  - heap-based priority queues.
  - memory handling.
  - program logging.
  
  Reviewed by:erwin
  
  Revision  ChangesPath
  1.2067+1 -0  ports/devel/Makefile
  1.1   +39 -0 ports/devel/libisc/Makefile (new)
  1.1   +6 -0  ports/devel/libisc/distinfo (new)
  1.1   +40 -0 ports/devel/libisc/files/patch-Makefile (new)
  1.1   +10 -0 ports/devel/libisc/pkg-descr (new)
  1.1   +16 -0 ports/devel/libisc/pkg-plist (new)
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: CVSROOT modules

2005-12-13 Thread Simon L. Nielsen
simon   2005-12-13 21:16:31 UTC

  FreeBSD ports repository

  Modified files:
.modules 
  Log:
libisc --> ports/devel/libisc
  
  Revision  ChangesPath
  1.13850   +1 -0  CVSROOT/modules
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Re: cvs commit: ports/devel Makefile ports/devel/libisc Makefile distinfo pkg-descr pkg-plist ports/devel/libisc/files patch-Makefile

2005-12-13 Thread Simon L. Nielsen
On 2005.12.13 21:16:18 +, Simon L. Nielsen wrote:
> simon   2005-12-13 21:16:18 UTC
> 
>   FreeBSD ports repository
> 
>   Modified files:
> develMakefile 
>   Added files:
> devel/libisc Makefile distinfo pkg-descr pkg-plist 
> devel/libisc/files   patch-Makefile 
>   Log:
>   Add libisc port:

Oh, and I should mention that I stole as much as I could from the
dns/bind9 port :-) .

-- 
Simon L. Nielsen


pgpNYrf7axlkC.pgp
Description: PGP signature


cvs commit: CVSROOT modules

2005-12-14 Thread Simon L. Nielsen
simon   2005-12-14 20:33:21 UTC

  FreeBSD ports repository

  Modified files:
.modules 
  Log:
  Rename module name for devel/libisc -> ports_libisc to avoid conflict
  with libisc module name from src/.
  
  Reported by:tdb
  
  Revision  ChangesPath
  1.13855   +1 -1  CVSROOT/modules
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/databases/mantis Makefile

2005-12-14 Thread Simon L. Nielsen
simon   2005-12-14 22:10:27 UTC

  FreeBSD ports repository

  Modified files:
databases/mantis Makefile 
  Log:
  Mark FORBIDDEN due to remote file inclusion vulnerability (IE.
  effectively execute arbitrary PHP code).
  
  Security:   
http://vuxml.FreeBSD.org/82a41084-6ce7-11da-b90c-000e0c2e438a.html
  Requested by:   remko
  With hat:   secteam
  
  Revision  ChangesPath
  1.6   +2 -0  ports/databases/mantis/Makefile
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Re: cvs commit: doc/share/pgpkeys pgpkeys.ent doc/en_US.ISO8859-1/books/handbook/pgpkeys chapter.sgml

2005-12-17 Thread Simon L. Nielsen
On 2005.12.17 20:24:10 +, Joel Dahl wrote:
> joel2005-12-17 20:24:10 UTC
> 
>   FreeBSD doc repository
> 
>   Modified files:
> share/pgpkeyspgpkeys.ent 
> en_US.ISO8859-1/books/handbook/pgpkeys chapter.sgml 
>   Log:
>   Remove a bunch of old pgp keys that belongs to Ex-developers.
>   
>   Note that I haven't removed the actual keys yet, just the entries in the
>   handbook and the key entities.

While I think it's a good idea to clean stuff up, you broke all the
translated handbooks:

E.g. when building the Dutch Handbook now.

/usr/local/bin/jade:/FreeBSD/clean/doc/nl_NL.ISO8859-1/books/handbook/pgpkeys/chapter.sgml:342:7:E:
 general entity "pgpkey.patrick" not defined and no default entity
/usr/local/bin/jade:/FreeBSD/clean/doc/nl_NL.ISO8859-1/books/handbook/pgpkeys/chapter.sgml:343:11:E:
 end tag for "SECT2" which is not finished
/usr/local/bin/jade:/FreeBSD/clean/doc/nl_NL.ISO8859-1/books/handbook/pgpkeys/chapter.sgml:512:7:E:
 general entity "pgpkey.alex" not defined and no default entity

So, you should probably backout the changes to pgpkeys.ent and wait
untill the translators catch up before removing them from pgpkeys.ent.

-- 
Simon L. Nielsen


pgp1UuE2bZ8SX.pgp
Description: PGP signature


cvs commit: src/share/man/man9 VFS_LOCK_GIANT.9

2005-12-18 Thread Simon L. Nielsen
simon   2005-12-18 08:07:30 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:
share/man/man9   VFS_LOCK_GIANT.9 
  Log:
  VFS_LOCK_GIANT and VFS_UNLOCK_GIANT are actually defined in sys/mount.h,
  so also include sys/mount.h in SYNOPSIS.
  
  PR: docs/90541
  Submitted by:   Wojciech A. Koszek dunstan^freebsd.czest.pl
  MFC after:  1 week
  
  Revision  ChangesPath
  1.3   +1 -0  src/share/man/man9/VFS_LOCK_GIANT.9
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/releng index.sgml

2005-12-19 Thread Simon L. Nielsen
simon   2005-12-20 07:57:06 UTC

  FreeBSD doc repository

  Modified files:
en/relengindex.sgml 
  Log:
  RELENG_6_0 has been handed over to security-officer from re.
  
  Revision  ChangesPath
  1.163 +2 -2  www/en/releng/index.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml vuln.xml

2005-12-23 Thread Simon L. Nielsen
simon   2005-12-23 12:10:22 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Bump modification date for entries touched by last commit.
  
  Revision  ChangesPath
  1.916 +3 -2  ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml vuln.xml

2005-12-25 Thread Simon L. Nielsen
simon   2005-12-25 22:23:52 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Add missing "" tag from rev. 1.917, which caused the file to
  be invalid XML and in turn caused the portaudit database to be only
  partially built.
  
  Bump modification date of all entries which had modification date on
  the 23'rd to make sure VuXML consumers catch the updates.
  
  Portaudit problem reported by:  Peter Vohmann
  Pointy hat to:  lev
  
  Revision  ChangesPath
  1.918 +6 -5  ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/release/doc/share/misc dev.archlist.txt

2005-12-28 Thread Simon L. Nielsen
simon   2005-12-28 08:35:30 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:
release/doc/share/misc dev.archlist.txt 
  Log:
  ti(4) also works on sparc64 now.
  
  Revision  ChangesPath
  1.74  +1 -1  src/release/doc/share/misc/dev.archlist.txt
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: CVSROOT modules

2005-12-31 Thread Simon L. Nielsen
simon   2005-12-31 13:23:12 UTC

  FreeBSD ports repository

  Modified files:
.modules 
  Log:
  Rename module name for misc/tinderbox -> ports_tinderbox to avoid
  conflict with tinderbox module name from src/.
  
  Revision  ChangesPath
  1.14035   +1 -1  CVSROOT/modules
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: doc/en_US.ISO8859-1/books/handbook/kernelconfig chapter.sgml

2006-01-02 Thread Simon L. Nielsen
simon   2006-01-02 23:11:27 UTC

  FreeBSD doc repository

  Modified files:
en_US.ISO8859-1/books/handbook/kernelconfig chapter.sgml 
  Log:
  Remove note specific to using buildkernel on FreeBSD 4.2 and older.
  FreeBSD 4.2 was released over 4 years ago and people should not be
  running that.
  
  PR: docs/91241
  Submitted by:   Siebrand Mazeland <[EMAIL PROTECTED]>
  
  Revision  ChangesPath
  1.161 +0 -7  
doc/en_US.ISO8859-1/books/handbook/kernelconfig/chapter.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: doc/en_US.ISO8859-1/books/handbook/cutting-edge chapter.sgml

2006-01-02 Thread Simon L. Nielsen
simon   2006-01-02 23:29:53 UTC

  FreeBSD doc repository

  Modified files:
en_US.ISO8859-1/books/handbook/cutting-edge chapter.sgml 
  Log:
  Point to the "official" FreeBSD snapshot page now that re@ generates
  periodic snapshots, and since snapshots.jp.FreeBSD.org is not generating
  snapshots for all branches at the moment.
  
  PR: docs/91193
  Submitted by:   Daniel Gerzo <[EMAIL PROTECTED]>
  Idea improved by:   pav
  
  Revision  ChangesPath
  1.221 +5 -5  
doc/en_US.ISO8859-1/books/handbook/cutting-edge/chapter.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Re: cvs commit: doc/en_US.ISO8859-1/books/handbook/mirrors chapter.sgml

2006-01-06 Thread Simon L. Nielsen
On 2006.01.06 14:08:46 +, Ceri Davies wrote:
> On Fri, Jan 06, 2006 at 02:30:50PM +0100, Marc Fonvieille wrote:
> > On Fri, Jan 06, 2006 at 01:16:21PM +, Vitaly Bogdanov wrote:
> > > bvs 2006-01-06 13:16:21 UTC
> > > 
> > >   FreeBSD doc repository
> > > 
> > >   Modified files:
> > > en_US.ISO8859-1/books/handbook/mirrors chapter.sgml 
> > >   Log:
> > >   Don't use tag  for net/cvsup-without-gui. This tag is changed 
> > > to reference to pkg-descr file of the port during the building. 
> > > net/cvsup-without-gui doesn't have pkg-descr file
> > >
> > 
> > A better (quick) solution would have been to just remove the package
> > attribute and keep the filename tags.  A net/cvsup/pkg-descr.nogui file
> > exists, I'm not sure if it's still the case but  > role="packages"> tags are used for other ports/pkg without
> > pkg-descr elswhere in our docs.  I don't think the right solution is on
> > our SGML side (i.e., removing role attributes), the pkg-descr should
> > exists and/or be correctly pointed on during the doc build or the "CGI
> > access."
> 
> I agree.  DocBook markup is just that; it is either correct to mark up a
> string representing a package as a package, or it is not.  Whether that
> package has a page on some website isn't really relevant.
> 
> The CGI script could be fixed to redirect these pages; perhaps someone
> with portfu could suggest a patch to the ports infrastructure to create
> a file containing all such master/slave combinations that the script
> could work with?  I'm thinking something like "make master-slave-list".

I looked at this about a year ago (AFAIR), and I seem to recall that
the url.cgi (or was it pds.cgi) already does some magic e.g. to handle
deleted ports, so it's probably not very hard to handle this, since
you have the MASTERDIR variable in the port, but I'm pretty sure it's
not a quick fix (not that anyone has implied that).

An interesting little task for someone who wants to know perl and make
magic better :-).

-- 
Simon L. Nielsen


pgp8lqmgibAsh.pgp
Description: PGP signature


cvs commit: ports/security/vuxml vuln.xml

2006-01-07 Thread Simon L. Nielsen
simon   2006-01-07 14:56:01 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Document two bogofilter vulnerabilities.
  
  Submitted by:   Matthias Andree <[EMAIL PROTECTED]>
  
  Revision  ChangesPath
  1.924 +70 -1 ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml vuln.xml

2006-01-09 Thread Simon L. Nielsen
simon   2006-01-09 20:49:54 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Mark latest bnc version as fixed wrt. to "fd_set -- bitmap index
  overflow in multiple applications".
  
  Reported by:Christian Elmerot 
  
  Revision  ChangesPath
  1.925 +7 -3  ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml vuln.xml

2006-01-09 Thread Simon L. Nielsen
simon   2006-01-09 21:47:30 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Document milter-bogom -- headerless message crash.
  
  Reported by:Victor Balada Diaz <[EMAIL PROTECTED]>
  
  Revision  ChangesPath
  1.926 +30 -1 ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/share/sgml includes.misc.xsl

2006-01-11 Thread Simon L. Nielsen
simon   2006-01-11 21:13:34 UTC

  FreeBSD doc repository

  Modified files:
share/sgml   includes.misc.xsl 
  Log:
  Display 4 Security Advisories and only 2 Errata Notices, instead of 3 SA
  and 3 EN.  This is done since we today have 4 new SA's and the second
  and third EN's are almost a year old.
  
  Should we at some point get multiple new Errata Notices in a short
  timespan, this decision should be revisited.
  
  Go for it:  brueffer
  
  Revision  ChangesPath
  1.29  +3 -3  www/share/sgml/includes.misc.xsl
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Re: cvs commit: www/en/releases index.sgml

2006-01-14 Thread Simon L. Nielsen
On 2006.01.14 18:25:23 +, Remko Lodder wrote:
> remko   2006-01-14 18:25:23 UTC
> 
>   FreeBSD doc repository
> 
>   Modified files:
> en/releases  index.sgml 
>   Log:
>   Links on http://www.freebsd.org/releases/ currently point to 2004 and 2005.
>   Update to point to 2005 and 2006.

Wouldn't it be better to use some kind of entity share/. so this
specific place doesn't have to be updated each year?

-- 
Simon L. Nielsen


pgppHMVfKBiGp.pgp
Description: PGP signature


cvs commit: ports/security/vuxml vuln.xml

2006-01-14 Thread Simon L. Nielsen
simon   2006-01-14 23:36:11 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  - Update description and references for "clamav -- possible heap
overflow in the UPX code" now that more information is available.
  - Remove some EOL whitespace.
  
  Revision  ChangesPath
  1.928 +17 -5 ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/opensc Makefile

2006-01-15 Thread Simon L. Nielsen
simon   2006-01-15 20:51:06 UTC

  FreeBSD ports repository

  Modified files:
security/opensc  Makefile 
  Log:
  - Fix MASTER_SITE (distfile has moved).
  - Grab this port since I recently started using opensc, and I'm
currently working on upgrading the port to the latest version.
  
  Revision  ChangesPath
  1.18  +2 -2  ports/security/opensc/Makefile
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml

2006-01-17 Thread Simon L. Nielsen
simon   2006-01-17 13:00:31 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_6)
release/doc/en_US.ISO8859-1/errata article.sgml 
  Log:
  - Add FreeBSD-SA-06:0[1234].
  - Bump copyright year.
  
  Revision   ChangesPath
  1.73.2.10  +49 -1 src/release/doc/en_US.ISO8859-1/errata/article.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml

2006-01-17 Thread Simon L. Nielsen
simon   2006-01-17 13:01:46 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_5)
release/doc/en_US.ISO8859-1/errata article.sgml 
  Log:
  - Add FreeBSD-SA-06:0[123].
  - Bump copyright year.
  
  Revision   ChangesPath
  1.69.2.30  +22 -0 src/release/doc/en_US.ISO8859-1/errata/article.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/releases/5.4R errata.html

2006-01-17 Thread Simon L. Nielsen
simon   2006-01-17 13:03:58 UTC

  FreeBSD doc repository

  Modified files:
en/releases/5.4R errata.html 
  Log:
  Regenerate from 1.69.2.30.
  
  Revision  ChangesPath
  1.10  +38 -5 www/en/releases/5.4R/errata.html
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/releases/6.0R errata.html

2006-01-17 Thread Simon L. Nielsen
simon   2006-01-17 13:05:05 UTC

  FreeBSD doc repository

  Modified files:
en/releases/6.0R errata.html 
  Log:
  Regenerate from 1.73.2.10.
  
  Revision  ChangesPath
  1.10  +71 -6 www/en/releases/6.0R/errata.html
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/usr.bin/tar bsdtar.1

2006-01-17 Thread Simon L. Nielsen
simon   2006-01-17 19:37:07 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:
usr.bin/tar  bsdtar.1 
  Log:
  Use the .Fx macro.
  
  MFC after:  3 days
  
  Revision  ChangesPath
  1.31  +7 -2  src/usr.bin/tar/bsdtar.1
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml

2006-01-18 Thread Simon L. Nielsen
simon   2006-01-18 09:20:22 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_6)
release/doc/en_US.ISO8859-1/errata article.sgml 
  Log:
  Add FreeBSD-SA-06:05.80211.
  
  Revision   ChangesPath
  1.73.2.11  +7 -0  src/release/doc/en_US.ISO8859-1/errata/article.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/releases/6.0R errata.html

2006-01-18 Thread Simon L. Nielsen
simon   2006-01-18 09:23:02 UTC

  FreeBSD doc repository

  Modified files:
en/releases/6.0R errata.html 
  Log:
  Regen from 1.73.2.11.
  
  Revision  ChangesPath
  1.11  +11 -1 www/en/releases/6.0R/errata.html
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/devel/pcsc-lite Makefile pkg-plist

2006-01-18 Thread Simon L. Nielsen
simon   2006-01-18 15:59:25 UTC

  FreeBSD ports repository

  Modified files:
devel/pcsc-lite  Makefile pkg-plist 
  Log:
  - Remove PREFIX/libdata/pkgconfig, if empty, on deinstall.
  - Bump PORTREVISION for pkg-plist change.
  
  Additional ports clue:  erwin
  Approved by:arved (maintainer)
  
  Revision  ChangesPath
  1.24  +1 -1  ports/devel/pcsc-lite/Makefile
  1.13  +1 -0  ports/devel/pcsc-lite/pkg-plist
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Re: cvs commit: ports/devel/pcsc-lite Makefile pkg-plist

2006-01-18 Thread Simon L. Nielsen
On 2006.01.18 17:12:30 +0100, Pav Lucistnik wrote:
> Simon L. Nielsen pí?e v st 18. 01. 2006 v 15:59 +:
> > simon   2006-01-18 15:59:25 UTC
> > 
> >   FreeBSD ports repository
> > 
> >   Modified files:
> > devel/pcsc-lite  Makefile pkg-plist 
> >   Log:
> >   - Remove PREFIX/libdata/pkgconfig, if empty, on deinstall.
> >   - Bump PORTREVISION for pkg-plist change.
> 
> Isn't this part of mtree since last summer?

Bah, looks like you are correct.  The tinderbox I noticed this in was
a running 5.4 and it was added to mtree after 5.4.

The reason that I didn't double check the mtree was that
http://www.freebsd.org/doc/en_US.ISO8859-1/books/porters-handbook/using-gnome.html
says the port should remove the libdata/pkgconfig directory.

So, I supose the note about nuking libdata/pkgconfig should just be
removed from the Porters Handbook?

-- 
Simon L. Nielsen


pgpTeOQdIbQQq.pgp
Description: PGP signature


cvs commit: ports/devel/pcsc-lite Makefile pkg-plist

2006-01-18 Thread Simon L. Nielsen
simon   2006-01-18 22:17:59 UTC

  FreeBSD ports repository

  Modified files:
devel/pcsc-lite  Makefile pkg-plist 
  Log:
  - Backout last commit since PREFIX/libdata/pkgconfig is in the mtree
files on FreeBSD 6.0 and newer.
  - Bump PORTREVISION for pkg-plist change.
  
  Clue(bat):  pav
  
  Revision  ChangesPath
  1.25  +1 -1  ports/devel/pcsc-lite/Makefile
  1.14  +0 -1  ports/devel/pcsc-lite/pkg-plist
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml

2006-01-25 Thread Simon L. Nielsen
simon   2006-01-25 10:35:55 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_6)
release/doc/en_US.ISO8859-1/errata article.sgml 
  Log:
  Add FreeBSD-SA-06:0[67].
  
  Revision   ChangesPath
  1.73.2.12  +14 -0 src/release/doc/en_US.ISO8859-1/errata/article.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/releases/6.0R errata.html

2006-01-25 Thread Simon L. Nielsen
simon   2006-01-25 10:36:43 UTC

  FreeBSD doc repository

  Modified files:
en/releases/6.0R errata.html 
  Log:
  Sync with 1.73.2.12.
  
  Revision  ChangesPath
  1.12  +21 -1 www/en/releases/6.0R/errata.html
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml

2006-01-25 Thread Simon L. Nielsen
simon   2006-01-25 10:39:02 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_5)
release/doc/en_US.ISO8859-1/errata article.sgml 
  Log:
  Add FreeBSD-SA-06:07.
  
  Revision   ChangesPath
  1.69.2.31  +7 -0  src/release/doc/en_US.ISO8859-1/errata/article.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/releases/5.4R errata.html

2006-01-25 Thread Simon L. Nielsen
simon   2006-01-25 10:39:41 UTC

  FreeBSD doc repository

  Modified files:
en/releases/5.4R errata.html 
  Log:
  Regen from 1.69.2.31.
  
  Revision  ChangesPath
  1.11  +12 -1 www/en/releases/5.4R/errata.html
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/usr.bin/tar bsdtar.1

2006-01-25 Thread Simon L. Nielsen
simon   2006-01-25 20:55:44 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_6)
usr.bin/tar  bsdtar.1 
  Log:
  MFC rev 1.31:
  
  Use the .Fx macro.
  
  Revision  ChangesPath
  1.29.2.1  +7 -2  src/usr.bin/tar/bsdtar.1
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/usr.bin/tar bsdtar.1

2006-01-25 Thread Simon L. Nielsen
simon   2006-01-25 20:56:17 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_5)
usr.bin/tar  bsdtar.1 
  Log:
  MFC rev 1.31:
  
  Use the .Fx macro.
  
  Revision  ChangesPath
  1.20.2.3  +7 -2  src/usr.bin/tar/bsdtar.1
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: doc/en_US.ISO8859-1/books/handbook/audit chapter.sgml

2006-02-05 Thread Simon L. Nielsen
simon   2006-02-05 16:08:25 UTC

  FreeBSD doc repository

  Modified files:
en_US.ISO8859-1/books/handbook/audit chapter.sgml 
  Log:
  Don't use trademark entity when referring to "Sun" the company.  It
  should only be used when using "Sun" as part of a product name.
  
  Revision  ChangesPath
  1.11  +1 -1  doc/en_US.ISO8859-1/books/handbook/audit/chapter.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/opensc Makefile

2006-02-07 Thread Simon L. Nielsen
simon   2006-02-07 11:40:12 UTC

  FreeBSD ports repository

  Modified files:
security/opensc  Makefile 
  Log:
  Case MASTER_SITES redirect as reported by the Distfiles survey.
  
  Revision  ChangesPath
  1.19  +1 -1  ports/security/opensc/Makefile
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml vuln.xml

2006-02-07 Thread Simon L. Nielsen
simon   2006-02-07 20:09:16 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Document kpopup -- local root exploit and local denial of service.
  
  PR: ports/92359
  Submitted by:   Ion-Mihai "IOnut" Tetcu <[EMAIL PROTECTED]>
  
  Revision  ChangesPath
  1.933 +42 -1 ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml vuln.xml

2006-02-07 Thread Simon L. Nielsen
simon   2006-02-07 20:43:51 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Mark ivtools 1.2.3 as fixed for jpeg vulnerabilities.  Note that this
  version is not yet in ports, but marking the new version fixed now
  make porting a bit simpler.
  
  Revision  ChangesPath
  1.934 +26 -11ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Re: cvs commit: src/etc snmpd.config

2006-02-08 Thread Simon L. Nielsen
On 2006.02.08 12:40:09 +, Ceri Davies wrote:
> On Wed, Feb 08, 2006 at 03:34:56PM +0300, Gleb Smirnoff wrote:
> > On Wed, Feb 08, 2006 at 12:06:30PM +, Ceri Davies wrote:
> > C> On Wed, Feb 08, 2006 at 11:55:03AM +, Gleb Smirnoff wrote:
> > C> > glebius 2006-02-08 11:55:03 UTC
> > C> > 
> > C> >   FreeBSD src repository
> > C> > 
> > C> >   Modified files:
> > C> > etc  snmpd.config 
> > C> >   Log:
> > C> >   The bar.com is an existing domain. Instead of trying to listen on
> > C> >   64.15.205.248 address, change host to "foobar". This won't be
> > C> >   resolvable in most cases, so administrator will need to change it.
> > C> 
> > C> You still have bar.com in the contact field.
> > C> 
> > C> This is what example.com is for.
> > 
> > If you know correct usage of example.com, please correct this file. Thanks.
> 
> Can do.  For the listening case, can we use 0.0.0.0 or anything similar?

There are an explict IP range for examples (AFAIR we use it in
rc.firewall), perhaps that could be used?

-- 
Simon L. Nielsen


pgp5lQlXYsZkH.pgp
Description: PGP signature


cvs commit: ports/shells/rssh Makefile

2006-02-16 Thread Simon L. Nielsen
simon   2006-02-16 15:10:24 UTC

  FreeBSD ports repository

  Modified files:
shells/rssh  Makefile 
  Log:
  Mark FORBIDDEN due to local privilege escalation.
  
  Security:   
http://vuxml.FreeBSD.org/e34d0c2e-9efb-11da-b410-000e0c2e438a.html
  Security:   http://www.pizzashack.org/rssh/security.shtml
  Prodded by: remko
  
  Revision  ChangesPath
  1.7   +2 -0  ports/shells/rssh/Makefile
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml vuln.xml

2006-02-17 Thread Simon L. Nielsen
simon   2006-02-17 09:53:59 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Document gnupg -- false positive signature verification.
  
  Revision  ChangesPath
  1.951 +40 -1 ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml vuln.xml

2006-02-18 Thread Simon L. Nielsen
simon   2006-02-18 14:22:42 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Document postgresql81-server -- SET ROLE privilege escalation.
  
  Revision  ChangesPath
  1.952 +31 -1 ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Re: cvs commit: www/share/sgml includes.navdevelopers.sgml

2006-02-21 Thread Simon L. Nielsen
On 2006.02.21 17:16:22 -0800, Murray Stokely wrote:
> On Tue, Feb 21, 2006 at 03:56:31PM -0500, John Baldwin wrote:
> > On Tuesday 21 February 2006 14:29, Joel Dahl wrote:
> > > joel2006-02-21 19:29:29 UTC
> > >
> > >   FreeBSD doc repository
> > >
> > >   Modified files:
> > > share/sgml   includes.navdevelopers.sgml
> > >   Log:
> > >   Ok, it's almost impossible to find the FreeBSD internal pages, so add a
> > > link to the bottom of the navigation table.
> > 
> > I always thought the lack of a link was on purpose to be honest.  Not 
> > there's 
> > anything sUp3r secret under internal/.
> 
> Agreed.  It shouldn't be almost impossible but completely impossible.
> /internal pages have never been linked from the external pages on
> purpose.   It is for internal communications just as the developers@

It has been linked from the public pages for the last 7 years:

http://cvsweb.freebsd.org/www/en/search/index-site.sgml.diff?r1=1.16&r2=1.17

-- 
Simon L. Nielsen


pgpJNbYlUyqdB.pgp
Description: PGP signature


cvs commit: src/sys/nfsserver nfs_srvsock.c

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 14:17:32 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:
sys/nfsservernfs_srvsock.c 
  Log:
  Correct a remote kernel panic when processing zero-length RPC records
  via TCP. [06:10]
  
  Security:   FreeBSD-SA-06:10.nfs
  Approved by:cperciva
  
  Revision  ChangesPath
  1.97  +1 -1  src/sys/nfsserver/nfs_srvsock.c
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/sys/nfsserver nfs_srvsock.c

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 14:18:11 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_6)
sys/nfsservernfs_srvsock.c 
  Log:
  Correct a remote kernel panic when processing zero-length RPC records
  via TCP. [06:10]
  
  Security:   FreeBSD-SA-06:10.nfs
  Approved by:re (scottl)
  
  Revision  ChangesPath
  1.94.2.1  +1 -1  src/sys/nfsserver/nfs_srvsock.c
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src UPDATING src/sys/conf newvers.sh src/sys/nfsserver nfs_srvsock.c

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 14:18:46 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_6_0)
.UPDATING 
sys/conf newvers.sh 
sys/nfsservernfs_srvsock.c 
  Log:
  Correct a remote kernel panic when processing zero-length RPC records
  via TCP. [06:10]
  
  Security:   FreeBSD-SA-06:10.nfs
  Approved by:so (cperciva)
  
  RevisionChangesPath
  1.416.2.3.2.10  +4 -0  src/UPDATING
  1.69.2.8.2.6+1 -1  src/sys/conf/newvers.sh
  1.94.4.1+1 -1  src/sys/nfsserver/nfs_srvsock.c
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/crypto/openssh auth-pam.c ssh_config ssh_config.5 sshd_config sshd_config.5 version.h src/sys/nfsserver nfs_srvsock.c

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 14:19:48 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_5)
crypto/openssh   auth-pam.c ssh_config ssh_config.5 
 sshd_config sshd_config.5 version.h 
sys/nfsservernfs_srvsock.c 
  Log:
  Correct a remote DoS in OpenSSH when using PAM and privilege
  separation. [06:09]
  
  Submitted by:   des
  
  Correct a remote kernel panic when processing zero-length RPC records
  via TCP. [06:10]
  
  Security:   FreeBSD-SA-06:09.openssh
  Security:   FreeBSD-SA-06:10.nfs
  Approved by:re (scottl)
  
  Revision  ChangesPath
  1.14.2.1  +10 -3 src/crypto/openssh/auth-pam.c
  1.25.2.1  +2 -2  src/crypto/openssh/ssh_config
  1.15.2.1  +2 -2  src/crypto/openssh/ssh_config.5
  1.40.2.1  +2 -2  src/crypto/openssh/sshd_config
  1.21.2.1  +2 -2  src/crypto/openssh/sshd_config.5
  1.27.2.1  +2 -2  src/crypto/openssh/version.h
  1.92.2.2  +1 -1  src/sys/nfsserver/nfs_srvsock.c
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src UPDATING src/crypto/openssh auth-pam.c ssh_config ssh_config.5 sshd_config sshd_config.5 version.h src/sys/conf newvers.sh src/sys/nfsserver nfs_srvsock.c

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 14:21:01 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_5_4)
.UPDATING 
crypto/openssh   auth-pam.c ssh_config ssh_config.5 
 sshd_config sshd_config.5 version.h 
sys/conf newvers.sh 
sys/nfsservernfs_srvsock.c 
  Log:
  Correct a remote DoS in OpenSSH when using PAM and privilege
  separation. [06:09]
  
  Submitted by:   des
  
  Correct a remote kernel panic when processing zero-length RPC records
  via TCP. [06:10]
  
  Security:   FreeBSD-SA-06:09.openssh
  Security:   FreeBSD-SA-06:10.nfs
  Approved by:so (cperciva)
  
  Revision ChangesPath
  1.342.2.24.2.21  +7 -0  src/UPDATING
  1.14.6.1 +10 -3 src/crypto/openssh/auth-pam.c
  1.25.6.1 +2 -2  src/crypto/openssh/ssh_config
  1.15.6.1 +2 -2  src/crypto/openssh/ssh_config.5
  1.40.6.1 +2 -2  src/crypto/openssh/sshd_config
  1.21.6.1 +2 -2  src/crypto/openssh/sshd_config.5
  1.27.6.1 +2 -2  src/crypto/openssh/version.h
  1.62.2.18.2.17   +1 -1  src/sys/conf/newvers.sh
  1.92.2.1.2.1 +1 -1  src/sys/nfsserver/nfs_srvsock.c
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/sys/nfs nfs_socket.c

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 14:21:56 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_4)
sys/nfs  nfs_socket.c 
  Log:
  Correct a remote kernel panic when processing zero-length RPC records
  via TCP.
  
  Security:   FreeBSD-SA-06:10.nfs
  Approved by:cperciva
  
  Revision  ChangesPath
  1.60.2.7  +1 -1  src/sys/nfs/nfs_socket.c
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src UPDATING src/sys/conf newvers.sh src/sys/nfs nfs_socket.c

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 14:22:30 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_4_11)
.UPDATING 
sys/conf newvers.sh 
sys/nfs  nfs_socket.c 
  Log:
  Correct a remote kernel panic when processing zero-length RPC records
  via TCP.
  
  Security:   FreeBSD-SA-06:10.nfs
  Approved by:so (cperciva)
  
  RevisionChangesPath
  1.73.2.91.2.16  +4 -0  src/UPDATING
  1.44.2.39.2.19  +1 -1  src/sys/conf/newvers.sh
  1.60.2.6.6.1+1 -1  src/sys/nfs/nfs_socket.c
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src UPDATING src/sys/conf newvers.sh src/sys/nfs nfs_socket.c

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 14:23:07 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_4_10)
.UPDATING 
sys/conf newvers.sh 
sys/nfs  nfs_socket.c 
  Log:
  Correct a remote kernel panic when processing zero-length RPC records
  via TCP.
  
  Security:   FreeBSD-SA-06:10.nfs
  Approved by:so (cperciva)
  
  RevisionChangesPath
  1.73.2.90.2.22  +4 -0  src/UPDATING
  1.44.2.34.2.23  +1 -1  src/sys/conf/newvers.sh
  1.60.2.6.4.1+1 -1  src/sys/nfs/nfs_socket.c
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src UPDATING src/crypto/openssh auth-pam.c ssh_config ssh_config.5 sshd_config sshd_config.5 version.h src/sys/conf newvers.sh src/sys/nfsserver nfs_srvsock.c

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 14:24:52 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_5_3)
.UPDATING 
crypto/openssh   auth-pam.c ssh_config ssh_config.5 
 sshd_config sshd_config.5 version.h 
sys/conf newvers.sh 
sys/nfsservernfs_srvsock.c 
  Log:
  Correct a remote DoS in OpenSSH when using PAM and privilege
  separation. [06:09]
  
  Submitted by:   des
  
  Correct a remote kernel panic when processing zero-length RPC records
  via TCP. [06:10]
  
  Security:   FreeBSD-SA-06:09.openssh
  Security:   FreeBSD-SA-06:10.nfs
  Approved by:so (cperciva)
  
  Revision ChangesPath
  1.342.2.13.2.30  +7 -0  src/UPDATING
  1.14.4.1 +10 -3 src/crypto/openssh/auth-pam.c
  1.25.4.1 +2 -2  src/crypto/openssh/ssh_config
  1.15.4.1 +2 -2  src/crypto/openssh/ssh_config.5
  1.40.4.1 +2 -2  src/crypto/openssh/sshd_config
  1.21.4.1 +2 -2  src/crypto/openssh/sshd_config.5
  1.27.4.1 +2 -2  src/crypto/openssh/version.h
  1.62.2.15.2.32   +1 -1  src/sys/conf/newvers.sh
  1.92.4.1 +1 -1  src/sys/nfsserver/nfs_srvsock.c
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/share/sgml advisories.xml

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 15:08:39 UTC

  FreeBSD doc repository

  Modified files:
share/sgml   advisories.xml 
  Log:
  Add FreeBSD-SA-06:09.openssh and FreeBSD-SA-06:10.nfs.
  
  Revision  ChangesPath
  1.193 +17 -1 www/share/sgml/advisories.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 15:36:41 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_6)
release/doc/en_US.ISO8859-1/errata article.sgml 
  Log:
  Add FreeBSD-SA-06:10.nfs.
  
  Approved by:re (scottl)
  
  Revision   ChangesPath
  1.73.2.14  +7 -0  src/release/doc/en_US.ISO8859-1/errata/article.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/release/doc/en_US.ISO8859-1/errata article.sgml

2006-03-01 Thread Simon L. Nielsen
simon   2006-03-01 15:37:47 UTC

  FreeBSD src repository (doc,ports committer)

  Modified files:(Branch: RELENG_5)
release/doc/en_US.ISO8859-1/errata article.sgml 
  Log:
  Add FreeBSD-SA-06:09.openssh and FreeBSD-SA-06:10.nfs.
  
  Approved by:re (scottl)
  
  Revision   ChangesPath
  1.69.2.33  +14 -0 src/release/doc/en_US.ISO8859-1/errata/article.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/internal machines.sgml

2006-03-05 Thread Simon L. Nielsen
simon   2006-03-05 20:52:47 UTC

  FreeBSD doc repository

  Modified files:
en/internal  machines.sgml 
  Log:
  - Remove ref5, it has been down a while due to failed hardware and no
replacment is currently in sight.
  - Note that panther is currently down.
  
  Revision  ChangesPath
  1.65  +3 -16 www/en/internal/machines.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/www/auth_ldap Makefile

2006-03-08 Thread Simon L. Nielsen
simon   2006-03-08 09:47:47 UTC

  FreeBSD ports repository

  Modified files:
www/auth_ldapMakefile 
  Log:
  - Mark FORBIDDEN due to multiple format strings vulnerabilities.
  - Set EXPIRATION_DATE to one month from now since the port is
unmaintained.
  
  Reported by:Christos Siaterlis csiat AT noc dotty ntua dotty gr
  Security:   http://www.digitalarmaments.com/2006090173928420.html
  Security:   http://secunia.com/advisories/18382/
  Approved by:portmgr (implicit)
  Approved by:security-officer (simon)
  
  Revision  ChangesPath
  1.17  +4 -0  ports/www/auth_ldap/Makefile
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: src/sys/nfsserver nfs_srvsock.c

2006-03-08 Thread Simon L. Nielsen
simon   2006-03-08 20:21:15 UTC

  FreeBSD src repository

  Modified files:
sys/nfsservernfs_srvsock.c 
  Log:
  When parsing an RPC request in nfsrv_dorec(), KASSERT that there
  actually is an mbuf to process.  This catches the missing mbuf before it
  would otherwise causes a NULL pointer dereference, which could be
  triggered by a 0 length RPC record before the check for such records was
  added in rev 1.97.
  
  Approved by:cperciva (mentor)
  
  Revision  ChangesPath
  1.98  +1 -0  src/sys/nfsserver/nfs_srvsock.c
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/projects projects.sgml

2006-03-11 Thread Simon L. Nielsen
simon   2006-03-11 14:52:39 UTC

  FreeBSD doc repository

  Modified files:
en/projects  projects.sgml 
  Log:
  Fix link to The FreeBSD Token-Ring Project.
  
  Reported by:Detlef Graef detlef dotty graef aT yahoo dotty de
  
  Revision  ChangesPath
  1.188 +2 -2  www/en/projects/projects.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: www/en/internal machines.sgml

2006-03-12 Thread Simon L. Nielsen
simon   2006-03-12 07:53:01 UTC

  FreeBSD doc repository

  Modified files:
en/internal  machines.sgml 
  Log:
  hub is now running 6-STABLE.
  
  Revision  ChangesPath
  1.66  +2 -2  www/en/internal/machines.sgml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/security/vuxml vuln.xml

2006-03-14 Thread Simon L. Nielsen
simon   2006-03-15 07:10:35 UTC

  FreeBSD ports repository

  Modified files:
security/vuxml   vuln.xml 
  Log:
  Document linux-flashplugin -- arbitrary code execution vulnerability.
  
  Revision  ChangesPath
  1.971 +40 -1 ports/security/vuxml/vuln.xml
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


cvs commit: ports/www/linux-flashplugin Makefile ports/www/linux-flashplugin6 Makefile ports/www/linux-flashplugin7 Makefile

2006-03-15 Thread Simon L. Nielsen
simon   2006-03-15 09:23:56 UTC

  FreeBSD ports repository

  Modified files:
www/linux-flashplugin Makefile 
www/linux-flashplugin6 Makefile 
www/linux-flashplugin7 Makefile 
  Log:
  Mark FORBIDDEN due to arbitrary code execution vulnerability.
  
  Security:   
http://vuxml.FreeBSD.org/83421018-b3ef-11da-a32d-000c6ec775d9.html
  With hat:   secteam
  
  Revision  ChangesPath
  1.23  +2 -0  ports/www/linux-flashplugin/Makefile
  1.9   +2 -0  ports/www/linux-flashplugin6/Makefile
  1.13  +2 -0  ports/www/linux-flashplugin7/Makefile
___
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Re: cvs commit: src/usr.sbin/jail jail.8

2006-03-16 Thread Simon L. Nielsen
On 2006.03.16 14:31:35 +, Jesus R. Camou wrote:
> jcamou  2006-03-16 14:31:35 UTC
> 
>   FreeBSD src repository (doc committer)
> 
>   Modified files:
> usr.sbin/jailjail.8 
>   Log:
>   Do `mount_devfs' when starting a jail.

That is a very bad idea without further explaining the risks, since it
will allow root in the jail more or less full access to the entire
system since several non-safe device node are exported like disk and
memory devices.  To mount a devfs safely inside devfs rules must be
set up.

Could you please add a big warning, or even better, the commads to
setup devfs rules for a jail /dev, like is done by the jail rc.d
script?

See also http://cvsweb.freebsd.org/src/usr.sbin/jail/jail.8#rev1.44

-- 
Simon L. Nielsen


pgp7LyOmrRrW5.pgp
Description: PGP signature


  1   2   3   4   5   6   7   8   9   >