Age | Commit message (Collapse) | Author | Files | Lines |
|
* [security] An OpenVPN client connecting to a malicious or compromised
server could potentially receive "setenv" configuration directives
from the server which could cause arbitrary code execution on the
client via a LD_PRELOAD attack. A successful attack appears to
require that (a) the client has agreed to allow the server to push
configuration directives to it by including "pull" or the macro
"client" in its configuration file, (b) the client configuration
file uses a scripting directive such as "up" or "down", (c) the
client succesfully authenticates the server, (d) the server is
malicious or has been compromised and is under the control of the
attacker, and (e) the attacker has at least some level of pre-existing
control over files on the client (this might be accomplished by
having the server respond to a client web request with a specially
crafted file). The fix is to disallow "setenv" to be pushed to
clients from the server. For those who need this capability, OpenVPN
2.1 supports a new "setenv-safe" directive which is free of this
vulnerability.
* When deleting routes under Linux, use the route metric as a
differentiator to ensure that the route teardown process only deletes
the identical route which was originally added via the "route"
directive (Roy Marples).
* Fix the t_cltsrv.sh file in FreeBSD 4 jails (Matthias Andree, Dirk
Meyer, Vasil Dimov).
* Extended tun device configure code to support ethernet bridging on
NetBSD (Emmanuel Kasper).
|
|
|
|
|
|
0.71:
The build-time check for the resolver library was improved. Binding
to a specific interface was fixed. Incorrect display of multiple
routes was fixed. Several minor bugs were fixed.
v0.70 Antinio submitted a cumulative patch containing some
nice improvements. He also submitted an automake patch
that causes mtr to no longer compile on my system. I
refuse to have mtr "in the dark" that I can't test-compile
the dist.
Add option for gtk support, and remove mtr-gtk package.
|
|
include bug-fixes and partial support for telnet proxies.
This package update was contributed by ISIHARA Takanori in PR pkg/33144.
|
|
|
|
|
|
|
|
* Fix CAN-2006-1059 -- samba<3.0.22 exposes the clear text of the
server's machine account credentials in the winbind log files when
the log level is set to 5 or higher.
* Append "-pkgsrc" to the Samba version string so as to distinguish
the official version from the pkgsrc version, which has the
modifications for "state directory" and "passwd expand gecos".
* Modify package so that we automatically determine the name of the
nsswitch modules that are installed by samba with the winbind
option. We extract this information by invoking the config.status
script to get the value that the configure script determined.
o Access checks when deleting printer driver meta-data.
o Several non-default combinations schannel and SPNEGO support.
o Password changes with NT4 and Win2k pre-SP4 clients.
o High load issues on IRIX caused by a bug when interfacing
with kernel oplocks.
o Server crashes in smbd.
o Compile issues on 64-bit platforms.
o Crash bugs on big-endian systems.
o Packaging fixes for RHEL/Fedora, Solaris, & Debian.
o Over 30 bugzilla reports closed.
|
|
PKGINFODIR.
|
|
|
|
|
|
|
|
includes <libintl.h>, then we must ensure that the resulting object
is linked against -lintl. This ensures that the correct *printf()
functions are used across all platforms.
|
|
|
|
with Cyrus IMAPd. Can be used to install, remove, mark active etc
sieve scripts.
|
|
Features
+ Publish services over mDNS (Sebastien Estienne, Mark McLoughlin)
Fixes
+ Fix keyboard brokeness with some X server configurations (Alexandre Oliva)
+ Fix crash with unicode mapped keysyms (Gary Coady)
Translators
+ Rostislav Raykov (bg)
+ Iñaki Larrañaga Murgoitio (eu)
+ Alessio Frusciante (it)
+ Erdal Ronahi (ku)
|
|
2.13.90 ("Trabajo, trabajo!")
* Use version 2 of the GPL (Fer)
* New and updated translations
2.13.0 ("Mañana, mañana!")
* Fixes
- Update treeview headers when switching between
products/applications (Matthias Clasen)
- Fix LSB distro detection (Fernando)
- Set GnomeFileEntry in save mode when saving the report
(Fernando)
- HIG fixes (Christian Perch)
- Center the main window (Christian Neumair)
* New and updated translations:
- Alexander Shopov (bg)
- Hendrik Richter (de)
- Adam Weinberger (en_CA)
- Francisco Javier F. Serrador (es)
- Ivar Smolin (et)
- Priit Laes (et)
- Ilkka Tuohela (fi)
- Christophe Merlet (fr)
- Ignacio Casal Quinteiro (gl)
- Ankit Patel (gu)
- Gabor Kelemen (hu)
- Alessio Frusciante (it)
- Kjartan Maraas (nb)
- Tino Meinen (nl)
- Slobodan D. Sredojevic (sr, sr@Latn)
- Theppitak Karoonboonyanan (th)
- Clytie Siddall (vi)
- Woodman Tuen (zh_HK)
- Abel Cheung (zh_TW)
|
|
* (The large version number bump is because there was an
internal 2.2.90 release for SUSE 10.1 alphas, which was
supposed to be intermediate between 2.2.7 and 2.4.0. But
2.4.0 didn't end up happening, and I don't want to regress
the version number at this point.)
* SoupSession, SoupServer, SoupConnection, SoupSocket, and
SoupAddress now have an "async-context" property that allows
you to use the async API in a non-default GMainContext.
[Based on patches from Armin Bauer and Jürg Billeter.]
* SoupSession, SoupConnection, and SoupSocket now have a
"timeout" property to stop synchronous sockets from hanging
forever if the remote end is unresponsive (from Varadhan).
* Fixed some bugs in soup_date_iso8601_parse(). [324671, from
Emmanuele Bassi]
* More Windows build fixes from Tor.
|
|
gnome-vfs 2.14.0
* Fix circular dependency on gnome-mount
* Fix some details in gnome_vfs_xfer callbacks
* Avoid crash with symlinks that has ':' in them
* Update hal volume manager policies
* Fix leaks
* Better smb authentication code
* Fix permission reading bug introduced in 2.13.92
gnome-vfs 2.13.92
* Build fixes
* Fix memory leaks
* Some optimizations
* New readdir option GNOME_VFS_FILE_INFO_NAME_ONLY that only returns
filenames (not stat info).
* use pmount in /media if not using gnome-mount or hal-mount
* Fixes for encrypted drives/volumes in hal backend
* Mime detection fix for multiple magic matches of same prio
* HAL volume operation fixes
* More robust gnome_vfs_make_uri_from_input_internal
* Fix Avahi resolving of non-local hostnames
gnome-vfs 2.13.91
* Eject fixes for volume manager
* Windows 2000 portability fixes
* Revert overwrite error dialog change that caused problems
* ssh fixes for newer BSD and OSX releases
gnome-vfs 2.13.4
* Add support for gnome-mount
* Re-add thread prioritizing
* Add gnome_vfs_get_mime_type_for_name_and_data () and
gnome_vfs_get_mime_type_for_name ()
* Deprecate gnome_vfs_mime_type_from_name ()
* Skip attempts to overwrite a file onto itself in
gnome_vfs_xfer and friends.
* Retrun GNOME_VFS_ERROR_INTERRUPTED when aborting transfers
* inotify: Fix various crashers and bugs
* ftp-method: Basic support for proxies
* http-method: Fix SSL support
* http-mehtod: Fix bugs introduced during the neon upgrade
* Various hal related volume fixes
* Hide some more private functions
* Some documentation updates
* Translation updates
gnome-vfs 2.13.3
* load modules with BIND_LOCAL
* inotify fix
gnome-vfs 2.13.2
* Support Avahi 0.6
* Support passwords in mount
* Inotify support
* Update neon import to 0.25
* Leak fixes
* Win32 fixes
* Add GNOME_VFS_FILE_INFO_FIELDS_IDS to see if uid/gid are valid
* Update to lates xdgmime
* Use the glib GThreadPool code instead of our own threadpool
gnome-vfs 2.13.1
* Support for recent samba
* Fix bug when resolving nested symlinks
* Sync to upstream xdg-mime code
* Various fixes to gnomevfs-* apps
* New functions gnome_vfs_exists, gnome_vfs_get_slow_mime
* Better ls parsing for ftp
* Return GNOME_VFS_ERROR_CANCELLED when authentication is cancelled
* Add avahi support
* Fix problem when mounting cd multiple times
* Hide private symbols
* Better docs
* Fix metadata removal issue with deletion in Nautilus
|
|
ORBit2-2.14.0
* bug fixes
+ Fix build on Cygwin (Tor)
+ Fix giop test compilation/crash (Tor)
ORBit2-2.13.3
* bug fixes
+ Fix crash on null adaptor (Michael)
+ Fix compiler warnings (Kjartan, Jens Granseuer)
+ Improve configure stage on Win32 (Tor)
ORBit2-2.13.2
* bug fixes
+ realloc should update length/tracking information
(Martin Blom)
+ Fix memory management and crashew when shutting down
the ORB. (Anders Carlsson)
+ Build/correctness fixes (Tor, Jules)
ORBit2-2.13.1
* features
+ More work on porting to Win32 (Tor)
+ Implement forward binding (Fernando Herrera)
+ Implement new ORB_init option ORBNetID (Jules Colding)
* bug fixes
+ Build fix (James Henstridge)
+ Memory management fixes (Anders Carlsson)
+ Reset connection for forwarded objects (Anders)
+ Don't use -export-dynamic (Mark)
+ if we have failed on the unix socket, have IPv4 or
IPv6 connections enabled and are on localhost, then
don't connect on the corresponding port from the profiles
(Arvind Samtur)
+ Fix a bunch of compiler warnings and make some code static
(Kjartan)
+ Add threading libs to ORBIT_NAME (Michael)
+ Check for netdb.h (Sandie Vanderme)
+ Check for sys/sockio.h (James Andrewartha)
* Other
+ Improve docs for users of ORBit2 (Jules Colding)
|
|
exists on the disk -- we can just check whether a variable defined by
find-files.mk is "__nonexistent__" or not.
|
|
Changes:
- don't install hping suid root by default, add "hping-suid" option.
- add bunch on patches from Pavel Kankovsky <peak at argo.troja.mff.cuni.cz>
namely: add --flood and --tcp-mss options (self-explanatory), some checksum
and interface binding fixes and warning fixes
2.0.0rc3:
=======
FIX: Fix for interface guessing with aliases on BSD
Thanks <michel.gravey(@)orange.fr> and <cognet(@)freebsd.org>
FIX: fixed cksum.c. Bad outgoing packet checksum with some packet.
Thanks to Brett Eldridge <beldridg@pobox.com>.
ADD: scan mode (--scan)
ADD: A rc4-based PRNG to use with --rand-source and --rand-dest
FIX: Fix -I option for BSD/Apple
ADD: Add support for BSDI and MacOSX (thanks
Dennis Opacki <dopacki@adotout.com> and Jan-Hinrich Fessel
<Jan-Hinrich.Fessel@T-Mobile.de>)
ADD: A few useful ICMP options
ADD: Add support for :
WLAN (Fabian Melzow <biop0b@web.de>)
ATM (Debian bug #193436, thanks to Domenico Andreoli)
Token Ring (jim.r.halfpenny@britishairways.com)
ADD: MacOSX patches (Hans-Joachim Knobloch <knobloch@secorvo.de>)
FIX: --rand-source patches from Quentin Garnier <hping@quatriemek.com>
. ensure randomness
. do not stop on errors when using a E or D class address (BSD only?)
|
|
* Make the tray icon transparent also if numbers are not shown
|
|
|
|
|
|
From Carl Brewer in PR 33159.
Bump PKGREVISION.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Detect poll correctly on DragonFly.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
a private type doesn't work.
|