Age | Commit message (Collapse) | Author | Files | Lines |
|
|
|
Update resmgr-0.9.8_SVN57.2 to resmgr-0.9.8_SVN57-2.3.
This update fixes the following security problem:
- resmgrd granted access to all usb devices if access to one one usb
device was granted via "usb:<bus>,<dev>" notation.
- Class specific exclude rules did not match devices that set their
class ID at interface level.
This update also fixes the following non-security bugs:
- a filedescriptor leak
- resmgrd often logged unnecessary ACL error messages
- the init script cleared /var/run/resmgr/classes even if resmgrd
was already running
|
|
|
|
Update openssl from 0.9.7g-2.12 to 0.9.7g-2.15.
2.15:
This update of openssl fixes a off-by-one buffer overflow in function
SSL_get_shared_ciphers(). This vulnerability potentially allows remote code
execution; depending on memory layout of the process. (CVE-2007-5135)
|
|
|
|
Update libpng from 1.2.8-5.2 to 1.2.8-5.6.
5.4:
Applications using libpng can crash if libpng is ask to
process a grayscale image with a malformed (bad CRC) tRNS
chunk. (CVE-2007-2445)
5.6:
Description: Speciall crafted png files could crash applications when attempting
to open such a file (CVE-2007-5269).
|
|
|
|
From cups-libs from 1.1.23-21.6 to 1.1.23-21.16.
21.8:
By keeping a partially negotiated SSL connection open an
attacker could prevent the cups server from accepting other
requests (CVE-2007-0720).
21.10:
The previous cups update (CVE-2007-0720) was incomplete and
could lead to cupsd crashing.
21.12:
A buffer overflow in the xpdf code contained in cups could
be exploited by attackers to potentially execute arbitrary
code (CVE-2007-3387).
21.14:
A missing length check in the IPP implementation of cups
could lead to a buffer overflow. Attackers could exploit
that to potentially execute arbitrary code with root
privileges (CVE-2007-4351).
21.16:
A buffer overflow in the xpdf code contained in cups could be
exploited by attackers to potentially execute arbitrary code
(CVE-2007-4352, CVE-2007-5392, CVE-2007-5393).
|
|
|
|
Bump PKGREVISION to 5.
4.9:
Check for negative number of points in contours. (CVE-2007-2754)
4.7:
fix buffer overflow in handling of bdf fonts. (CVE-2007-1351)
|
|
|
|
New in the v0.14.3 Release - 16 April 2008
* Added support for version 3 of libgda, the database access library
* Added internationalization (I18N) support for HTML export
* Allow dragging of completion bar in Gantt chart
* Allow dragging of task duration in Gantt beyond the window size
* % Complete column added to task and Gantt view
* New Tango icon set contributed by Frédéric Bellaiche
* Show guide lines setting is now persistent thanks to Marie Durand
* Fixed bug: Incorrect week numbers were sometimes shown both in the UI and in exported HTML.
* Fixed bug: Project start time shifts each time a project is read from a database
* Fixed bug: Toggling fixed duration state does not immediately update task appearance in Gantt chart
* Fixed bug 332748: Row height in exported HTML is incorrect in Internet Explorer (patch by Nico de Groot)
* Fixed bug 337382: Sidebar buttons are not accessible for things like screen readers
* Fixed bug 345163: ngettext should be used to get proper translation of plural
* Fixed bug 373008: Crash when importing MS project XML
* Fixed bug 382548: Crash when undoing indent
* Fixed bug 388454: Planner hangs when cancelling HTML export
* Fixed bug 393620: Gantt header width in exported HTML is incorrect
* Fixed bug 397132: Crash on export to database
* Fixed bug 436263: Keep task selection when (un)indenting
* Fixed bug 464359: Make distcheck fails (patch by Gilles Dartiguelongue)
* Fixed bug 486990: Fixed duration tasks have incorrect duration
* Fixed bug 499090: Incorrect task cost calculation in exported HTML for tasks worked on by multiple people.
|
|
expect that which we installed (ie, fix PLIST)
also make sure that our installation destination is under PREFIX
fixes PR 39165
|
|
|
|
into The NetBSD Packages Collection.
The Perl 5 module Test::Base provides a way to trivially write a
test framework base class. Test::Base concentrates on offering
reusable data driven patterns, it provides some clean ways to
express input and expected output data.
|
|
|
|
Collection.
The Perl 5 module Test::Base provides a way to trivially write a
test framework base class. Test::Base concentrates on offering
reusable data driven patterns, it provides some clean ways to
express input and expected output data.
|
|
textproc/p5-Template-Declare into The NetBSD Packages Collection.
The Perl 5 module Template::Declare is a pure-perl declarative
HTML/XUL/RDF/XML templating system.
|
|
|
|
Packages Collection.
The Perl 5 module Template::Declare is a pure-perl declarative
HTML/XUL/RDF/XML templating system.
|
|
|
|
0.02001 as databases/p5-DBIx-Class-InflateColumn-IP into The NetBSD
Packages Collection.
The Perl 5 module DBIx::Class::InflateColumn::IP is a DBIx::Class
component to declare columns as IP addresses and treat them as
NetAddr::IP objects.
|
|
|
|
in the NetBSD Packages Collection.
The Perl 5 module DBIx::Class::InflateColumn::IP is a DBIx::Class
component to declare columns as IP addresses and treat them as
NetAddr::IP objects.
|
|
|
|
The latest release in the stable 1.1 series has been released, consisting of a number of internal fixes for increased reliability and performance.
This is a HIGHLY RECOMMENDED release.
Fixes include problems with Anope support, m_ident sometimes not correctly resolving ident, OpenSSL connections terminating when they shouldn't, corruption on /map output, silent SVSHOLD (no more annoying notices), and U:Lines may now deoper users without resorting to /kill (so defender's secureoper functionality will work properly).
|
|
|
|
|
|
Security problem on Linux kernel 2.6 again.
|
|
|
|
fix:
2008-09-01 -- 0.7.2
* Fixed: Bad cleanup logic in functions
- uriAddBaseUri(..)
- uriRemoveBaseUri(..)
Previously you needed to call uriFreeUriMembers on return code
URI_ERROR_MALLOC and only then. So that's why these functions now
take cleanup off your shoulders. An extra call to uriFreeUriMembers
from your side is still needed in case of success.
* Soname: 1:7:0
|
|
|
|
|
|
|
|
Packaged by Jaap Boender and provided by PR 39113.
This Objective Caml library provides easy access to compressed files in ZIP
and GZIP format, as well as to Java JAR files. It provides functions
for reading from and writing to compressed files in these formats.
|
|
|
|
|
|
Pachaged by Jaap Boender and privided by PR 39112.
The Lwt (Light-Weight Threading) library is a cooperative threading library for
OCaml.
|
|
Requested by Leonardo Taccari in PR 39443.
|
|
|
|
|
|
mico is a rather robust CORBA ORB implementation and toolkit.
|
|
|
|
|
|
Pkgsrc changes:
* Update MASTER_SITES (Thanks for Zafer Aydogan) and HOMEPAGE.
* Honer PKGMANDIR
* add DESTDIR support
NEWS in 1.0.1
* `disc' point shape.
* Makefile improvement.
|
|
|
|
Pkgsrc changes:
* Update MASTERE_SITES (Thanks for Zafer Aydogan) and HOMEPAGE.
* add DESTDIR support
NEWS in 1.0.3
* Improvement of `frame' and `box' commands.
NEWS in 1.0.2
* `disc' point shape.
* Makefile improvement.
|
|
|
|
Noticed by Zafer Aydogan via private mail.
It contains version number in file name. no need to use DIST_SUBDIR anymore.
|
|
|