summaryrefslogtreecommitdiff
AgeCommit message (Collapse)AuthorFilesLines
2005-11-03Security update to version 2.0.5.salo3-9/+8
Changes: 2.0.5: ====== - Fixed bug in Linux get_default_gateway function introduced in 2.0.4, which would cause redirect-gateway on Linux clients to fail. - Restored easy-rsa/2.0 tree (backported from 2.1 beta series) which accidentally disappeared in 2.0.2 -> 2.0.4 transition. 2.0.4: ====== - Security fix -- Affects non-Windows OpenVPN clients of version 2.0 or higher which connect to a malicious or compromised server. A format string vulnerability in the foreign_option function in options.c could potentially allow a malicious or compromised server to execute arbitrary code on the client. Only non-Windows clients are affected. The vulnerability only exists if (a) the client's TLS negotiation with the server succeeds, (b) the server is malicious or has been compromised such that it is configured to push a maliciously crafted options string to the client, and (c) the client indicates its willingness to accept pushed options from the server by having "pull" or "client" in its configuration file (Credit: Vade79). CVE-2005-3393 - Security fix -- Potential DoS vulnerability on the server in TCP mode. If the TCP server accept() call returns an error status, the resulting exception handler may attempt to indirect through a NULL pointer, causing a segfault. Affects all OpenVPN 2.0 versions. CVE-2005-3409 - Fix attempt of assertion at multi.c:1586 (note that this precise line number will vary across different versions of OpenVPN). - Added ".PHONY: plugin" to Makefile.am to work around "make dist" issue. - Fixed double fork issue that occurs when --management-hold is used. - Moved TUN/TAP read/write log messages from --verb 8 to 6. - Warn when multiple clients having the same common name or username usurp each other when --duplicate-cn is not used. - Modified Windows and Linux versions of get_default_gateway to return the route with the smallest metric if multiple 0.0.0.0/0.0.0.0 entries are present. 2.0.3: ====== - openvpn_plugin_abort_v1 function wasn't being properly registered on Windows. - Fixed a bug where --mode server --proto tcp-server --cipher none operation could cause tunnel packet truncation.
2005-11-03Using MASTER_SITE_XCONTRIB instead of hard-coded URLs.rillig1-2/+2
2005-11-03Using MASTER_SITE_XEMACS instead of hard-coded URLs. Removed those URLsrillig1-6/+2
that don't exist anymore. Added the others to MASTER_SITE_XEMACS in bsd.sites.mk.
2005-11-03Using MASTER_SITE_APACHE instead of hard-coded URL.rillig2-4/+4
2005-11-03Removed empty line from PLIST.rillig1-2/+1
2005-11-03Using MASTER_SITE_GNUSTEP instead of hard-coded URL.rillig1-2/+2
2005-11-03Using MASTER_SITE_SOURCEFORGE instead of hard-coded URL.rillig1-2/+2
2005-11-03Removed empty line from PLIST.rillig2-5/+2
2005-11-03Using MASTER_SITE_DEBIAN instead of hard-coded URL.rillig1-2/+2
2005-11-03Removed empty line from PLIST.rillig5-10/+5
2005-11-03Using MASTER_SITE_DEBIAN instead of hard-coded URL.rillig2-4/+4
2005-11-03Using MASTER_SITE_GNUSTEP.rillig1-2/+2
2005-11-03Imported two MASTER_SITE_XEMACS from www/w3.rillig1-2/+4
2005-11-03Fixed it again after checking if it really exists.rillig1-2/+2
2005-11-03Fixed unknown MASTER_SITE_APACHE_HTTPD.rillig1-2/+2
2005-11-03Fixed the HOMEPAGE.rillig1-2/+2
2005-11-03Updated pkglint to 4.33.rillig2-3/+4
Changes since 4.32.2: - Added checks for CATEGORIES. - Modernized checks for DEPENDS and BUILD_DEPENDS. - Simplified PLIST directive checks.
2005-11-03Added "linux" to the list of allowed categories.rillig1-2/+2
2005-11-03Added a variable R_HOMEPAGE_BASE that is needed as a replacement for allrillig1-1/+3
those packages that currently use ${MASTER_SITE_R_CRAN:=foo} as their HOMEPAGE. As the HOMEPAGE is a single URL, not a list of URLs, the MASTER_SITE variables cannot be used for this.
2005-11-03Note update of intel-iscsi package to 20040115nb1agc1-1/+2
2005-11-03Update package to nb1:agc4-8/+28
recognise the REPORT_LUNS SCSI command in the iSCSI target, and just return the maximum number of LUNs that the target can handle.
2005-11-03Added comments for global variables. Renamed $loglines to $lines, as therillig1-35/+29
checking routines don't use physical lines anymore, so there's no need to distinguish them. Removed deprecated "@" line checks from the PLIST checker. These lines are all reported as "Unknown PLIST directive" now.
2005-11-03Note update of mantis to 1.0.0rc3adrianp1-1/+2
2005-11-03Update to 1.0.0rc3 (from 1.0.0rc2)adrianp2-7/+6
From the Changelog: - 0006273: [security] File Inclusion Vulnerability (vboctor) - 0006275: [security] SQL injection (vboctor) - 0006234: [filters] Filter sometimes returns no results (thraxisp) - 0006295: [filters] Old filters and view_state problems. (thraxisp) - 0006288: [filters] Patch against CVS HEAD for Saved filter problem with view_state (thraxisp) - 0006296: [filters] Filter sql includes unnecessary links to custom_field_string_table for date custom fields (thraxisp) - 0006297: [filters] sorting on custom field, bring MySQL to deadlock loop (thraxisp)
2005-11-03Note update of Gorm to 1.0.0rh1-1/+2
2005-11-03Update Gorm to 1.0.0.rh3-9/+31
Noteworthy changes in version `1.0.0' ========================================= * All inspectors are now modeled in .gorm files. * Added autosizing to form attributes inspector. * Utilize and maintain parent/child data structure more pervasively * Reorganized code in palettes for cleaner implementation. * Removed code to check for user bundles, since bugs in Camaelon which prompted those changes were fixed long ago. * Added documentation to GormCore
2005-11-03Drop support of ruby16 base packages.taca1-18/+7
2005-11-03Remove specifying RUBY_VERSION_SUPPORTED.taca2-4/+2
2005-11-03Remove supporting ruby16-base package.taca1-5/+1
2005-11-03Remove specifying RUBY_VERSION_SUPPORTED.taca1-2/+1
2005-11-03Remove supporting ruby16-base package.taca4-29/+4
2005-11-03Remove specifying RUBY_VERSION_SUPPORTED.taca4-8/+4
2005-11-03No needs to create RUBY_SITELIBDIR here.taca1-2/+1
2005-11-03Remove specifying RUBY_VERSION_SUPPORTED.taca1-8/+1
2005-11-03Remove supporting ruby16-base package.taca1-9/+2
2005-11-03Remove specifying RUBY_VERSION_SUPPORTED.taca2-4/+2
2005-11-03Note removed these packages:taca1-1/+26
lang/ruby16 devel/ruby-installpkg devel/ruby-optparse devel/ruby-strscan devel/ruby-testunit devel/ruby-textbuf devel/ruby-unit math/ruby-bigfloat net/ruby-drb textproc/ruby-erb textproc/ruby-rdoc textproc/ruby-rexml textproc/ruby-syck www/ruby-webrick converters/ruby16-iconv devel/ruby16-racc www/ruby16-borges devel/ruby16-curses devel/ruby16-zlib security/ruby16-digest security/ruby16-openssl x11/ruby16-tcltk x11/ruby16-tk lang/ruby16-base net/ruby-xmlrpc4r
2005-11-03Fix typo.wiz1-2/+2
2005-11-03Remove overlooked file.wiz1-6/+0
2005-11-03-ruby-installpkg.wiz1-2/+1
2005-11-03Delete removed ruby related pacakge's entries.taca9-33/+9
2005-11-03Remove ruby-xmlrpc4r pacakge since it is part of ruby18-base pacakge.taca5-126/+0
2005-11-03Remove ruby16-base package. It's time to say good-bye.taca17-1331/+0
2005-11-03+ iozone-3.254, jpilot-0.99.8, stunnel-4.14.wiz1-2/+4
2005-11-03Remove packages which is part of Ruby 1.6.8.taca25-381/+0
2005-11-03Add and enable gtklevel9.wiz1-1/+2
2005-11-03Add and enable libwcalc.wiz1-1/+2
2005-11-03Remove the rest of packages which supported by ruby16-base (Ruby 1.6.8)taca12-247/+0
packages only.
2005-11-03Remove packages which supported by ruby16-base (Ruby 1.6.8) pacakge onlytaca56-1928/+0
and now bundled in ruby18-base pacakges.
2005-11-03Remove ruby-installpkg package.taca4-34/+0
This package was needed to install ruby-borges package when it was imported. Now no package needs to this simple script.