summaryrefslogtreecommitdiff
path: root/security/audit-packages
AgeCommit message (Collapse)AuthorFilesLines
2006-05-21Support fetching the pkg-vulnerabilities file over httpadrianp4-39/+74
Bump to version 1.43
2006-04-16Remove unused variable, SKIP_AUDIT_PACKAGES.salo1-3/+1
2006-04-15Version 1.42salo4-77/+12
- Remove the "ignore vulnerabilities" stuff which was backed out from pkgsrc infrastructure months ago. We are back at format 1.0.0.
2006-03-02Fix typo.joerg1-2/+2
2005-12-29Use an ${OPSYS}-specific message file for DragonFly, to get the rightagc2-1/+30
local security information. With thanks to Joerg Sonnenberger for the DragonFly help, and Trevor Kendall for the original report.
2005-11-21Update audit-packages to version 1.41agc2-4/+14
Fix PR 31957 - only report that we're using @PKG_SYSCONFDIR@/audit-packages.conf if we're in verbose mode.
2005-11-16regen.wiz1-45/+67
2005-11-16Improve usage. Add -K description.wiz1-4/+5
2005-11-16Various improvements:wiz1-25/+21
Describe -K. Improve -i description. Sort options in SYNOPSIS. Remove superfluous .Pp. Add EXIT STATUS section. Remove trailing whitespace. Bump date for new -i.
2005-11-16Add several new command line options so audit-packages can be used as part oferh3-19/+135
the improved ALLOW_VULNERABILITIES support. This now has the ability to: -p : Only check a single package -i : Provide a list of vulnerabilities to ignore -K : Specify an alternate pkg dbdir. Bump the version to 0.40.
2005-10-31Use OWN_DIRS to make sure the PKGVULNDIR is created as part of the package.erh1-1/+2
2005-10-20Update audit-packages to version 1.39agc5-56/+69
Give the audit-pacakges a "-d" option to download the vulnerabilities file with downloaad-vulnerability-list before scanning the installed packages. Update the documentation accordingly. Get rid of some inconsistent style problems in the audit-packages script.
2005-08-04Fixed the number of backslashes in the version checking code.rillig2-5/+5
2005-08-02Replace references of pkgsrc/mk/bsd.pkg.defaults.mk toreed2-3/+3
pkgsrc/mk/defaults/mk.conf. This is from PR 30741 from anonymous AT example.net.
2005-06-20There is no need to use package revision for this package. Therefore bumptron1-3/+2
version number to 1.37.
2005-06-19- Use ${FIND} as opposed to hardcoding 'find'adrianp2-3/+5
- Bump to nb1 - ok'ed wiz@
2005-06-12replace centered dots with `o', as they are not always displayed correctlydillo1-34/+34
noted by adrianp
2005-06-09Require pkg_info with ranges support, bump version to 1.36.dillo4-44/+67
Reviewed by wiz.
2005-06-09Work around a bug in 1.6.2's mdoc macros (they don't know about .Ex).wiz2-40/+42
Noted by reed@ Replace ".Xx Ns 's" by ".Xx Ap s" while here.
2005-06-07Add a license. Used exact same license as used for source code,reed1-2/+32
but changed the name of the copyright holder. I provided the original man page in PR #21865.
2005-06-07Add a file format version to pkg-vulnerabilities, and check fordillo4-48/+145
its compatiblity. Bump version to 1.35 Done during the freeze to have the support on the branch. Okayed by wiz.
2005-05-21fix quoting. bump version to 1.34.dillo2-10/+11
reviewed by wiz and agc.
2005-05-07Refer doc/pkgsrc.txt instead of Packages.txt.wiz2-3/+3
2005-04-11Remove USE_BUILDLINK3 and NO_BUILDLINK; these are no longer used.tv1-2/+1
2005-02-19Add PKGVULNDIR to BUILD_DEFS.wiz1-1/+3
2005-02-11Update audit-packages to 1.33:agc2-8/+8
In download-vulnerability-list, first set the PKGVULNDIR, then create the directory if it doesn't already exist. Pointed out by Geert Hendrickx on tech-pkg@
2004-10-29avoid use of test -e for consistency with pkgsrc itself. usegrant1-4/+3
consistent shell syntax.
2004-10-07* Make PKGSRC_TOPDIR a private variable by renaming it to _PKGSRC_TOPDIR,jlam1-2/+2
as it's only used internally by bsd.prefs.mk. * Make _PKGSRCDIR a public variable by renaming it to PKGSRCDIR. Also, generate its value from ${_PKGSRC_TOPDIR} so it's less fragile than the old method of stripping off the last two components of ${.CURDIR}. PKGSRCDIR may now be used after bsd.prefs.mk is defined. * Change all references to _PKGSRCDIR to PKGSRCDIR.
2004-06-06Update audit-packages to 1.32, with fixes for the problems mentionedagc4-21/+27
in PR 25654 from Hauke Fath. Take any non-standard values from audit-packages.conf file in audit-packages as well as download-vulnerability-list. Fix the pre-formatted documentation so that filenames to be substituted are not formatted with the bold or underline "overstrikes" on ttys, so that the correct sed substitutions take place at package install time.
2004-05-17Add explanation of -v switch to man page. (Okay'd by agc@.)reed3-7/+13
audit-packages version is now 1.31.
2004-04-14Make it a separate warning if downloading the filewiz2-3/+10
failed completely. Welcome to 1.30.
2004-04-11Rethink the nroff dilemma:jschauma1-13/+5
only regen on SunOS or AIX - the pre-generated pages _are_ mandoc type pages, so we can use them on more platforms than just Irix.
2004-04-09Do this the right way: regen audit-packages.0 and then substitute asjschauma2-16/+15
regular
2004-04-09Add a pre-formatted catman page which is only used (copied into place)jschauma2-1/+108
under IRIX. Other OS regen the catman page. This addresses PR pkg/23452. Since just depending on textproc/groff would pull in a large number of packages (such as perl, ghostscript, tiff etc.), and since this is a very important package that should NOT depend on all this gunk, Jeremy C. Reed suggested this solution. Ok agc.
2004-02-09Update security/audit-packages to 1.29. Changes from version 1.28 includejlam2-3/+4
supporting using the FreeBSD "fetch" command to get the vulnerabilities list. Patch provided in PR 24371 by Michal Pasternak.
2004-01-20Move WRKSRC definition away from the first paragraph in a Makefile.agc1-2/+2
2004-01-19This package never invokes the toolchain so it doesn't need buildlink[23].jlam1-2/+2
Define NO_BUILDLINK to signify this to bsd.pkg.mk.
2004-01-05bl3ifyjlam1-2/+7
2004-01-01Update audit-packages to 1.28.agc3-8/+20
By popular demand, add a -v switch to audit-packages(8) which enables the check for a package vulnerabilities file being unchanged for over 7 days. To enable the check, -v must be specified on the command line: % audit-packages % audit-packages -v *** WARNING - /usr/distfiles/pkg-vulnerabilities more than a week old, continuing... %
2003-12-12AIX doesn't have mandoc, just like SunOS.erh1-2/+2
2003-12-12Whitespace fix, cosmetic onlyagc1-2/+2
2003-12-11Update audit-packages to version 1.27.agc2-4/+4
Difference from previous version (1.26): + if the vulnerability list is older than a week, just display a warning message - don't consider this a fatal error.
2003-12-03Bump date for previous. Fix typo.wiz1-3/+3
2003-12-03Updated audit-packages to 1.26martti3-7/+28
Added support for audit-packages.conf. This file can be used to define environment variables (e.g. FETCH_ARGS).
2003-10-18Update audit-packages to 1.25.agc3-21/+120
+ get rid of unnecessary awk invocation in audit-packages, use shell construction instead, pointed out by enami tsugutomo. Cuts system and user execution times for audit-packages in half. + add (4-clause) licences to audit-packages and download-vulnerability-list + check integrity of pkg-vulnerabilities file in audit-packages by using the same construct as in download-vulnerability-list + CSE in error checking in audit-packages + properly terminate a case expression in download-vulnerability-list
2003-10-17Update audit-packages to 1.24:agc2-4/+4
Simplify quoting syntax in the awk command, so that gawk-3.1.3 (as found in NetBSD-current) doesn't have a problem with a malformed escape sequence. With thanks to Johnny Lam for testing with an older version of gawk.
2003-09-16missed a pkg-vulnerabilities filenamegrant1-2/+2
2003-09-16netbsd.org -> NetBSD.org.grant1-2/+2
2003-09-16correct name of pkg-vulnerabilities file; netbsd.org -> NetBSD.org;grant1-7/+7
add missing word; bump date.
2003-09-16ftp.netbsd.org -> ftp.NetBSD.orggrant1-1/+1