<feed xmlns='http://www.w3.org/2005/Atom'>
<title>pkgsrc/sysutils/dbus, branch pkgsrc-2014Q2</title>
<subtitle>[no description]</subtitle>
<id>https://git.osdyson.ru/mirror/pkgsrc/atom?h=pkgsrc-2014Q2</id>
<link rel='self' href='https://git.osdyson.ru/mirror/pkgsrc/atom?h=pkgsrc-2014Q2'/>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/'/>
<updated>2014-07-07T09:23:34Z</updated>
<entry>
<title>Pullup ticket #4442 - requested by wiz</title>
<updated>2014-07-07T09:23:34Z</updated>
<author>
<name>tron</name>
<email>tron@pkgsrc.org</email>
</author>
<published>2014-07-07T09:23:34Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=6e98a7d43bd3f07e7a1f8bb97a15ad5abe704ba7'/>
<id>urn:sha1:6e98a7d43bd3f07e7a1f8bb97a15ad5abe704ba7</id>
<content type='text'>
sysutils/dbus: security update

Revisions pulled up:
- sysutils/dbus/Makefile                                        1.72
- sysutils/dbus/distinfo                                        1.57

---
   Module Name:	pkgsrc
   Committed By:	wiz
   Date:		Sun Jul  6 14:54:32 UTC 2014

   Modified Files:
   	pkgsrc/sysutils/dbus: Makefile distinfo

   Log Message:
   Update to 1.8.6:

   D-Bus 1.8.6 (2014-06-02)
   ==

   Security fixes:

   • On Linux ≥ 2.6.37-rc4, if sendmsg() fails with ETOOMANYREFS, silently drop
     the message. This prevents an attack in which a malicious client can
     make dbus-daemon disconnect a system service, which is a local
     denial of service.
     (fd.o #80163, CVE-2014-3532; Alban Crequy)

   • Track remaining Unix file descriptors correctly when more than one
     message in quick succession contains fds. This prevents another attack
     in which a malicious client can make dbus-daemon disconnect a system
     service.
     (fd.o #79694, fd.o #80469, CVE-2014-3533; Alejandro Martínez Suárez,
     Simon McVittie, Alban Crequy)

   Other fixes:

   • When dbus-launch --exit-with-session starts a dbus-daemon but then cannot
     attach to a session, kill the dbus-daemon as intended
     (fd.o #74698, Роман Донченко)</content>
</entry>
<entry>
<title>Bump PKGREVISION for O_CLOEXEC patch change and libexecinfo detection.</title>
<updated>2014-06-14T21:59:20Z</updated>
<author>
<name>wiz</name>
<email>wiz@pkgsrc.org</email>
</author>
<published>2014-06-14T21:59:20Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=3291c550fd1acd0f585bd6930b323946f947ea23'/>
<id>urn:sha1:3291c550fd1acd0f585bd6930b323946f947ea23</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Also look for backtrace() in libexecinfo.</title>
<updated>2014-06-14T21:57:34Z</updated>
<author>
<name>wiz</name>
<email>wiz@pkgsrc.org</email>
</author>
<published>2014-06-14T21:57:34Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=15a0998711c0a260adaf02399d26770f21a4eaa5'/>
<id>urn:sha1:15a0998711c0a260adaf02399d26770f21a4eaa5</id>
<content type='text'>
Accepted upstream as part of
https://bugs.freedesktop.org/show_bug.cgi?id=69702</content>
</entry>
<entry>
<title>Switch O_CLOEXEC patch to the version that was committed upstream.</title>
<updated>2014-06-14T21:52:56Z</updated>
<author>
<name>wiz</name>
<email>wiz@pkgsrc.org</email>
</author>
<published>2014-06-14T21:52:56Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=3705175eebed4cbbe59e3fbf2fe90cf5d42a3619'/>
<id>urn:sha1:3705175eebed4cbbe59e3fbf2fe90cf5d42a3619</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Add upstream bug report URL (patch already applied for 1.9.x series)</title>
<updated>2014-06-14T21:48:34Z</updated>
<author>
<name>wiz</name>
<email>wiz@pkgsrc.org</email>
</author>
<published>2014-06-14T21:48:34Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=d71f4343c8f02ede57de69597b837b7e24c334ba'/>
<id>urn:sha1:d71f4343c8f02ede57de69597b837b7e24c334ba</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Fix build failure on Linux (PLIST issue)</title>
<updated>2014-06-14T21:11:34Z</updated>
<author>
<name>cheusov</name>
<email>cheusov@pkgsrc.org</email>
</author>
<published>2014-06-14T21:11:34Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=7e4c53ebc1b30ad9aa4b435f9d4dccd241ac8665'/>
<id>urn:sha1:7e4c53ebc1b30ad9aa4b435f9d4dccd241ac8665</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Update to 1.8.4:</title>
<updated>2014-06-10T19:10:04Z</updated>
<author>
<name>wiz</name>
<email>wiz@pkgsrc.org</email>
</author>
<published>2014-06-10T19:10:04Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=a16efd59233adcc5335119495cde4eb6b930deb1'/>
<id>urn:sha1:a16efd59233adcc5335119495cde4eb6b930deb1</id>
<content type='text'>
D-Bus 1.8.4 (2014-06-10)
==

Security fix:

• Alban Crequy at Collabora Ltd. discovered and fixed a denial-of-service
  flaw in dbus-daemon, part of the reference implementation of D-Bus.
  Additionally, in highly unusual environments the same flaw could lead to
  a side channel between processes that should not be able to communicate.
  (CVE-2014-3477, fd.o #78979)</content>
</entry>
<entry>
<title>Update to 1.8.2:</title>
<updated>2014-05-04T16:44:08Z</updated>
<author>
<name>wiz</name>
<email>wiz@pkgsrc.org</email>
</author>
<published>2014-05-04T16:44:08Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=f357a729552c28146d7ba2ffc074f4f1826b5659'/>
<id>urn:sha1:f357a729552c28146d7ba2ffc074f4f1826b5659</id>
<content type='text'>
D-Bus 1.8.2 (2014-04-30)
==

The “nobody wants red” release.

Enhancements:

• in the CMake build system, add some hints for Linux users cross-compiling
  Windows D-Bus binaries to be able to run tests under Wine
  (fd.o #41252, Ralf Habacker)

• add Documentation key to dbus.service (fd.o #77447, Cameron Norman)

Fixes:

• in "dbus-uuidgen --ensure", try to copy systemd's /etc/machine-id
  to /var/lib/dbus/machine-id instead of generating an entirely new ID
  (fd.o #77941, Simon McVittie)

• if dbus-launch receives an X error very quickly, do not kill
  unrelated processes (fd.o #74698, Роман Донченко)

• on Windows, allow up to 8K connections to the dbus-daemon, instead of the
  previous 64 (fd.o #71297; Cristian Onet, Ralf Habacker)

• cope with \r\n newlines in regression tests, since on Windows,
  dbus-daemon.exe uses text mode (fd.o #75863, Руслан Ижбулатов)</content>
</entry>
<entry>
<title>Fixes for platforms that KQUEUE is supported but missing O_CLOEXEC.</title>
<updated>2014-04-29T10:18:54Z</updated>
<author>
<name>obache</name>
<email>obache@pkgsrc.org</email>
</author>
<published>2014-04-29T10:18:54Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=80842cf9f926b30f1dce46dd6606e8818bb7ce6e'/>
<id>urn:sha1:80842cf9f926b30f1dce46dd6606e8818bb7ce6e</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Fix poll() wrapper: all negative timeouts are acceptable as infinity on Linux,</title>
<updated>2014-04-24T09:40:08Z</updated>
<author>
<name>wiz</name>
<email>wiz@pkgsrc.org</email>
</author>
<published>2014-04-24T09:40:08Z</published>
<link rel='alternate' type='text/html' href='https://git.osdyson.ru/mirror/pkgsrc/commit/?id=2341be4dd9d61a18aee33715a55396129c154827'/>
<id>urn:sha1:2341be4dd9d61a18aee33715a55396129c154827</id>
<content type='text'>
but on *BSD, only -1 means infinite.</content>
</entry>
</feed>
