summaryrefslogtreecommitdiff
path: root/net/proftpd
AgeCommit message (Collapse)AuthorFilesLines
2011-10-03Changes 1.3.3f:adam5-30/+29
* Fixes segfault if mod_sql_mysql and "SQLAuthenticate groupsetfast" configuration used. * Fixes mod_wrap syslog level (regression from Bug 3317). * Fixes mod_ifsession segfault if regular expression patterns used in a <VirtualHost> section.
2011-07-03Fix REPLACE_PERL. USE_TOOLS+=perl:run, since it installs the perl scriptsdholland1-3/+4
that it's doing REPLACE_PERL on. PKGREVISION -> 1 because of the new dep.
2011-05-20Changes 1.3.3e:adam2-7/+7
* Display messages work properly again. * Fixes plaintext command injection vulnerability in FTPS implementation (i.e. mod_tls). See http://bugs.proftpd.org/show_bug.cgi?id=3624 for details. * Fixes CVE-2011-1137 (badly formed SSH messages cause DoS). See http://bugs.proftpd.org/show_bug.cgi?id=3586 for details. * Performance improvements, especially during server startup/restarts.
2011-04-22recursive bump from gettext-lib shlib bump.obache1-1/+2
2011-03-25Fix building on NetBSD-5 with TLS option; fix for PR#44297adam2-1/+15
2011-01-12Changes 1.3.3d:adam6-28/+28
* Fixed sql_prepare_where() buffer overflow. * Fixed CPU spike when handling .ftpaccess files. * Fixed handling of SFTP uploads when compression is used.
2010-11-07Update proftpd to 1.3.3c.obache8-82/+40
pksrc changes: * Instead of patch&subst to change layout of statedir, pass it to configure instead (and subst for manpages are fixed). * Convert custom mod_wrap library modification to SUBST. * Need to buildlink with security/tcp_wappers for mod_wrap. NEWS: 1.3.3c - Released 29-Oct-2010 -------------------------------- - Bug 3511 - SQLAuthType Backend not properly rejected by mod_sql_sqlite. - Bug 3513 - EPERM error logged unnecessarily for SFTP logins on Linux. - Bug 3517 - mod_quotatab decrements file tally improperly for failed DELE commands. - Bug 3518 - Support SiteMiscEngine directive, for disabling mod_site_misc functionality via proftpd.conf. - Bug 3519 - Inappropriate directory traversal allowed by mod_site_misc. - Bug 3521 - Telnet IAC processing stack overflow. 1.3.3b - Released 09-Sep-2010 -------------------------------- - Bug 3481 - Problem with SFTP directory listings. - Bug 3483 - NULL pointer dereference handling SITE command in mod_quotatab. - Bug 3485 - Disabling IPv6 via -4 or --ipv4 command-line options does not work. - Bug 3487 - Null pointer dereference with EPRT/EPSV/PASV/PORT command during data transfer. - Bug 3482 - ProFTPD corrupts utmpx log files on FreeBSD 9.0/HEAD. - Bug 3491 - Directory pattern not matching as expected. - Bug 3492 - Null pointer dereference during data transfer due to RNFR/RNTO. - Bug 3494 - Null pointer dereference for IPv6-enabled proftpd when no DefaultServer configured. - Bug 3501 - <Anonymous> logins with "AuthAliasOnly on" still handled as anonymous logins. 1.3.3a - Released 01-Jul-2010 -------------------------------- - Bug 3400 - Add Japanese translation. - Bug 3401 - mod_sftp does not compile with pre-0.9.7 OpenSSL. - Bug 3402 - mod_tls does not compile with pre-0.9.7 OpenSSL due to Bug#3349. - Bug 3403 - File upload followed by MLSD leads to wrong file size entries in TransferLog. - Bug 3405 - Multiple SFTPAuthorizedUserKeys stores causes segfault on 64-bit platforms. - Bug 3354 - Renaming a file across mount points to a full disk does not fail as expected. - Bug 3408 - Use <termios.h> instead of <sys/termios.h> where possible. - Bug 3412 - Include files not included after restart due to permissions. - Bug 3409 - Build failure on newer FreeBSD due to utmp/utmpx system changes. - Bug 3417 - Unsafe use of pointer when scanning config for ScoreboardFile. - Bug 3418 - %U sometimes showing up as "(none)" in ExtendedLog. - Bug 3421 - RewriteHome does not work properly for SFTP connections. - Bug 3419 - SSL_shutdown() errors with openssl-0.9.8m. - Bug 3423 - Last line of multiline DisplayLogin file improperly handled. - Bug 3426 - mod_sftp does not log to TransferLog by default. - Bug 3425 - Improperly constructed destination paths for SCP uploads. - Bug 3427 - mod_sftp does not handle recursive SCP uploads properly. - Bug 3432 - ExecBeforeCommand does not interpolate the %F/%f variables properly. - Bug 3434 - TraceLog contains messages even with "Trace DEFAULT:0" configured. - Bug 3435 - Encoding/decoding conversion can cause CPU spike. - Bug 3436 - Support build-time option to disable use of nonblocking open of log files. Use --disable-nonblocking-log-open to get the pre-1.3.3 behavior of opening log files. - Bug 3437 - UseImplicitSSL TLSOption causes PBSZ/PROT commands to fail. - Bug 3439 - Encoding fails if an NLS-enabled proftpd starts in a UTF8 locale. - Bug 3446 - .ftpaccess ignored in some cases. - Bug 3447 - mod_sftp can become confused during large recursive SCP uploads. - Bug 3448 - Ensure that STAT/LSTAT/FSTAT SFTP requests do not use cached/stale data. - Bug 3449 - mod_sftp does not properly handle the O_TRUNC flag in a SFTP OPEN request. - Bug 3450 - mod_sftp does not properly handle the O_APPEND flag in a SFTP OPEN request. - Bug 3451 - WinSCP can't upload files using protocol version 5 with mod_sftp. - Bug 3452 - mod_sftp does not advertise its supported SFTP extensions for protocol version 5. - Bug 3454 - msgfmt(1) options used for generating NLS files are not compatible with Solaris' msgfmt. - Bug 3456 - Problem attempting to recursively download a directory via SCP. - Bug 3458 - mod_sftp incorrectly performs OpenSSL cleanup. - Bug 3459 - mod_radius segfaults during incorrect login due to stale data. - Bug 3460 - REALPATH SFTP request can cause improperly cached directory configuration. - Bug 3462 - ftpasswd script's --delete-user option does not work. - Bug 3463 - ftpasswd script's --delete-group option does not work. - Bug 3465 - SIGSEGV at LIST after CCC. - Bug 3470 - Deferred resolution <Directory> paths not handled properly by mod_sftp. - Bug 3469 - ExtendedLog's %f variable not properly expanded for DELE if path begins with tilde ('~'). - Bug 3467 - mod_ifsession does not merge <Directory> blocks properly. - Bug 3471 - Null values in allow/deny rules causes mod_wrap2 to segfault. - Bug 3472 - mod_sftp publickey authentication fails for large keys. - Bug 3424 - Bad LDAP lookup can cause mod_ldap segfault under some conditions. - Bug 3476 - LIST/NLST of path starting with "-" fails. - Bug 3475 - Add new 'noGetgrouplist' AuthUnixOption to work around buggy libc code. - Bug 3474 - Using SQLite database and SQLLog directive can lead to problems under load.
2010-03-23Fix test ==.wiz2-7/+16
Reported by Robert Elz in PR 43046.
2010-03-21Upgrade proftpd to 1.3.3 (bug fixes, see the NEWS file for a full list).kim6-28/+33
2009-12-21Upgrade proftpd to version 1.3.2c.tonnerre3-8/+11
Changes since version 1.3.2: * Added Taiwan translation. * Added a workaround in mod_tls to deal with the vulnerability found in SSL/TLS protocol during renegotiation (CVE-2009-3555). Good descriptions of this vulnerability can be found here: http://extendedsubset.com/?p=8 http://www.educatedguesswork.org/2009/11/understanding_the_tls_renegoti.html The workaround implemented in mod_tls (Bug#3324) is one of the suggested mitigation approaches: the server now refuses all client-initiated SSL/TLS session renegotiations. * Bug and regression fixes. * Added French, Bulgarian, Korean translations. * Various bug and regression fixes.
2009-06-14Convert @exec/@unexec to @pkgdir or drop it.joerg1-2/+2
2009-06-14Remove @dirrm entries from PLISTsjoerg1-5/+1
2009-05-19Use standard location for LICENSE line (in MAINTAINER/HOMEPAGE/COMMENTwiz1-2/+2
block). Uncomment some commented out LICENSE lines while here.
2009-02-09Fix (de)installation of a binary version of this package.tron2-3/+5
Bump the package revision because the package list changed.
2009-02-08Upgrade proftpd to 1.3.2kim3-8/+9
2009-01-11- rc.d script: replace interpreter, add 'reload' commandshattered3-5/+10
- install 'ftpasswd' script from contrib OK by kim@.
2008-12-28Grrr, cannot patch next to RCS id strings, so use sed instead.kim3-19/+8
2008-12-28Fix the "pam" option to leave out PAM when it is not wanted.kim6-9/+67
Add an "inet6" option for enabling IPv6 support. Add a "ban" option for enabling mod_ban. Make the "wrap" option compile all binaries successfully. Fix generating language catalog with older versions of msgfmt.
2008-11-21Updated net/proftpd to 1.3.2rc3martti6-217/+18
* Bug fixes
2008-10-04Need msgfmt to build. Fixes PR 39692.obache1-2/+2
2008-10-03Updated net/proftpd to 1.3.2rc2martti8-37/+250
Fix for http://bugs.proftpd.org/show_bug.cgi?id=3115
2008-06-12Add DESTDIR support.joerg1-5/+7
2007-11-12Remove ftp.middle-earth.it from MASTER_SITES, doesn't resolve.wiz1-3/+2
From Zafer Aydogan in PR 37324.
2007-10-30Based on some feedback, comment out the newly added LICENSE=xxx for now.martti1-2/+2
I'll re-activate this later when the global license stuff is activated.
2007-10-30Added LICENSE=gnu-gpl-v2martti1-1/+2
2007-10-12Updated net/proftpd to 1.3.1martti2-6/+6
Changes since 1.3.1rc3 ---------------------- - Bug 2944 - mod_sql_mysql fails to compile due to missing quotation. - Bug 2946 - Anonymous logins fail if the mod_facl module is enabled. - Bug 2947 - SIGBUS on Mac OS X when dynamically loading shared libs. - Bug 2950 - Hostname with multiple IP addresses might cause "ai_family not supported" error if IPv6 support enabled. - Bug 2955 - Undeclared identifier MAP_FAILED for mod_delay on AIX. - Bug 2958 - mod_wrap2 does not handle multiple rules in access files. - Bug 2963 - Use of -A option for LIST/NLST commands not cleared for subsequent commands. - Bug 2964 - Building RPM fails because of *snprintf trying to be redefined. This is actually caused by a particular combination of compiler flags (-O2 and -Wp,-D_FORTIFY_SOURCE=2), which are used by the `rpmbuild' command in some Linux releases. - Bug 2974 - Install error if multiple modules, using their own build script, are built as shared modules. - Bug 2981 - Command-line long options --ipv4 and --ipv6 do not work. - Bug 2795 - Improvements to RPM .spec file to build more of the modules, plus better optional packaging organization.
2007-07-06Updated net/proftpd to 1.3.1rc3martti8-458/+19
Hello, ProFTPD community. The ProFTPD Project team is pleased to announce that the third release candidate for ProFTPD 1.3.1 is now available for public consumption. The 1.3.1rc3 release includes a number of minor bugfixes, including segfaults when handling the NLST command, dealing assigning IPv6 addresses for the EPSV command, and better handling of Display files in chrooted sessions. Please read the included NEWS and ChangeLog files for the full details.
2007-06-26Fix for a CVE-2007-2165 security issue grabbed from upstream #2922.lkundrak5-3/+441
2007-01-24Fixed PLIST when using quota and mysql options.martti4-22/+35
2007-01-13Updated net/proftpd to 1.3.1rc2martti6-167/+26
+ Fixed mod_sql's handling of WHERE clauses + Fixed segfaults ocurring after SIGHUP when shared modules are used + Fixed copying of symlinks in skeleton directory for CreateHome
2006-12-14Updated net/proftpd to 1.3.1rc1martti6-68/+233
The 1.3.1rc1 release includes major new features and numerous bugfixes, including: + Support for UTF8 and translated response messages (NLS support) + New configuration directives: DisplayChdir DisplayFileTransfer UseIPv6 UseUTF8 + Deprecated configuration directives: DisplayFirstChdir The DisplayFirstChdir directive is deprecated; sites should use the new DisplayChdir directive (which allows for files to be displayed on every directory change, rather than just the first time for a directory change). HiddenStor The HiddenStor directive is deprecated; simply use HiddenStores instead. SQLHomedirOnDemand The SQLHomedirOnDemand directive will be removed in future releases; use the CreateHome directive instead. + New modules: mod_ban, a module handling dynamic client "black lists" See doc/contrib/mod_ban.html + Enhanced modules: The mod_tls module can now make use of cryptographic accelerator cards with the new TLSCryptoDevice directive. It can also use a program for obtaining certificate passphrases via the new TLSPassPhraseProvider directive. + Documentation
2006-11-23Updated patch-ac via Debian to fix PR #35092adrianp3-28/+30
2006-11-18Add patch-ac for CVE-2006-5815adrianp3-3/+51
Patch from ProFTPD CVS: http://proftp.cvs.sourceforge.net/proftp/proftpd/src/main.c?r1=1.292&r2=1.293&view=patch&sortby=date
2006-05-31The databases/openldap package has been split in -client and -server componentghen1-2/+2
packages. Convert LDAP-based applications to depend on openldap-client, and bump PKGREVISION for those that depend on it by default.
2006-05-01Honor ROOT_USER and ROOT_GROUP.minskim1-1/+3
2006-04-17Updated net/proftpd to 1.3.0martti3-12/+12
This is the official release (which should be identical to rc5)
2006-03-20Updated net/proftpd to 1.3.0rc5martti2-6/+6
The 1.3.0rc5 release includes a number of minor bugfixes, including a workaround for getting proper timestamps in chrooted process logs if glibc-2.3 is present, and a fix for daemon processes hanging when shutting down on Mac OS X.
2006-03-02Updated net/proftpd to 1.3.0rc4martti4-66/+15
The 1.3.0rc4 release includes a number of minor bugfixes, including fixed run-time detection of Unix domain sockets, portability tweaks for Mac OSX 10.4, and logging fixes for NetBSD and Solaris.
2006-02-17Fixed warnings found by pkglint -Wall.martti1-11/+11
2006-02-13Fix settings for quota. From Ondej Tma in a private mail.martti1-2/+14
2006-02-05Recursive revision bump / recommended bump for gettext ABI change.joerg1-2/+2
2006-01-08Bump PKGREVISION due to mysql.buildlink3.mk changes (default mysqlxtraeme1-2/+2
pkg has been changed to 5.x). Reminded by wiz... thanks.
2005-12-29Remove USE_PKGINSTALL from pkgsrc now that mk/install/pkginstall.mkjlam1-2/+1
automatically detects whether we want the pkginstall machinery to be used by the package Makefile.
2005-12-05Ran "pkglint --autofix", which corrected some of the quoting issues inrillig1-3/+3
CONFIGURE_ARGS.
2005-11-25s/readme/proftpd-readme/martti1-2/+2
2005-11-25Another fix from Geert Hendrickxmartti1-3/+5
2005-11-25Activate the options. Patch from Geert Hendrickx.martti1-27/+27
2005-11-04Use the official utmpx patch. No functional change.martti2-6/+6
2005-11-03Updated proftpd to 1.3.0rc3martti7-80/+34
A lot of changes and bug fixes, including fix for the following security problem: http://security.lss.hr/index.php?page=details&ID=LSS-2004-10-02
2005-11-03Removed the trailing slash behind the last MASTER_SITE.rillig1-2/+2