Revision
10213 -
Directory Listing
-
[select for diffs]
Modified
Fri Nov 12 00:10:49 2010 UTC
(13 years, 6 months ago)
by
laffer1
Diff to
previous 10176
update to 1.5.22. The dist site isn't working right so we're falling back now to the midnightbsd ftp server. I don't like that, but with the sql injection troubles it's better to update joomla than not.
Revision
10172 -
Directory Listing
-
[select for diffs]
Modified
Sat Nov 6 16:14:55 2010 UTC
(13 years, 6 months ago)
by
laffer1
Diff to
previous 10166
Remove the old mozilla port. it's been broken for a long time and it's insecure anyway.
Modify the seamonkey port to "own the Makefile.common" until we get it switched over to bsd.gecko.mk
Revision
10021 -
Directory Listing
-
[select for diffs]
Modified
Sat Oct 9 15:19:32 2010 UTC
(13 years, 7 months ago)
by
laffer1
Diff to
previous 10013
Update to 1.9.3.
XSS by unescaped content emitted by theme.add_msg (CVE-2010-2487). Affected: likely all up to 1.9.2
fix XSS in template parameter
fix another potential XSS issue
fix more potential XSS issues
The portion of the above that patches MoinMoin/action/RenamePage.py has two problems
It doesn't apply directly to the 1.9.2 base because of other changes.
Use this diff made against 1.9.2 for applying to 1.9.2 installation: http://paste.pocoo.org/show/221927/ -- EugeneSyromyatnikov 2010-06-04 15:27:17
It contains an extraneous merge artifact ">>>>>>> other".
This issue (excuse me for my fault) fixed in http://hg.moinmo.in/moin/1.9/rev/60fde500cbc2 -- EugeneSyromyatnikov 2010-06-04 15:27:17
There is another problem with the above patch. The patch to MoinMoin/action/login.py does not import wikiutil and at least the 1.9.2 base does not have that import. -- MarkSapiro 2010-06-06 02:36:20
f8871116c6b3 -- EugeneSyromyatnikov 2010-06-06 05:38:08
fix XSS in Despam action (CVE-2010-0828) - thanks to Jamie Strandboge (Ubuntu) for fixing
To avoid the issue, please be careful when using Despam action (it is only available for superuser) - please check the page names of the pages to despam first. If they look strange (like containing javascript or html), then don't use Despam to clean them up. If you don't need Despam, you could of course also use actions_excluded to completely disable it.
Fixes security issues of moin 1.9.1:
1.9.2 fixes CVE-2010-0669.
1.9.2 fixes CVE-2010-0668 (and also CVE-2010-0717 which is just another sub-issue of the same issue)
Revision
8222 -
Directory Listing
-
[select for diffs]
Modified
Sat Jul 18 01:59:36 2009 UTC
(14 years, 10 months ago)
by
laffer1
Diff to
previous 8219
still broken.. but now it's broken on the latest version :)
Seriously, I think this needs to be fixed in the libthr and not the app itself. Need more debugging to be certain.
Revision
8202 -
Directory Listing
-
[select for diffs]
Modified
Wed Jul 1 01:20:02 2009 UTC
(14 years, 10 months ago)
by
laffer1
Diff to
previous 8185
Don't get too excited. It compiles with all the new "good" features off and it dies with a spinlock error. Still, it's a good start on porting.
Revision
8132 -
Directory Listing
-
[select for diffs]
Modified
Sat Jun 27 21:49:21 2009 UTC
(14 years, 10 months ago)
by
laffer1
Diff to
previous 8131
This is a very old version of neon. Use the 2.6 or 2.8 versions instead. No ports appear to depend on this according to magus. It could be an optional depends somewhere. If found, please try to get the port to use a newer version or remove it.
Revision
8094 -
Directory Listing
-
[select for diffs]
Modified
Sat Jun 13 05:49:43 2009 UTC
(14 years, 11 months ago)
by
laffer1
Diff to
previous 8093
v0.1.7:
+ Save the activation status of extensions
+ Catch and ignore mouse buttons meant for horizontal scrolling
+ Improve panel detaching and how panels handle it
+ Add a Feed Panel extension
+ Add a Fixed-width Font Family preference
+ Support spell checking
+ Implement (optional) Speed dial feature
+ Support nicer error pages with WebKitGTK+ 1.1.6
+ Implement middle click to open menu items in tabs
+ Implement -s, --snapshot command line switch
+ Use libnotify (runtime dependency) for finished transfers
+ Add a Go button to the address entry
+ Always append tabs opened via middle/ double click on the tab bar
+ Implement Open new pages in: New window preference
+ Implement inline find with direct '.' and '/' hotkeys
+ Add basic support for @-moz-document in user styles
Revision
7941 -
Directory Listing
-
[select for diffs]
Modified
Sat May 23 16:46:51 2009 UTC
(14 years, 11 months ago)
by
laffer1
Diff to
previous 7929
if video is on we must pull in gnomevfs for full support. Also, we got a compile error on magus because of mssing libsoup. Also fix typo
Revision
7740 -
Directory Listing
-
[select for diffs]
Modified
Sat Apr 18 05:11:07 2009 UTC
(15 years, 1 month ago)
by
laffer1
Diff to
previous 7603
This does not work yet and it is marked BROKEN. I want to put this out there for others to help in the porting effort.
Revision
6874 -
Directory Listing
-
[select for diffs]
Modified
Wed Nov 19 20:08:01 2008 UTC
(15 years, 5 months ago)
by
ctriv
Diff to
previous 6873
Cleanup a number of things. Don't run pkg-install. Add pkg-config depend
to try and fix things on the cluster. Other nits.
Revision
6524 -
Directory Listing
-
[select for diffs]
Modified
Wed Oct 8 21:12:24 2008 UTC
(15 years, 7 months ago)
by
laffer1
Diff to
previous 6523
Some parts of the code expect the OSREL version only.. i.e. 0.2 while others want the uname -r style like 0.2-CURRENT. Make both symlinks
Revision
6523 -
Directory Listing
-
[select for diffs]
Modified
Wed Oct 8 19:49:56 2008 UTC
(15 years, 7 months ago)
by
laffer1
Diff to
previous 6513
This will need a magus run, but in theory this should make browser work regardless of OS version (uname -r output used)
Revision
6371 -
Directory Listing
-
[select for diffs]
Modified
Tue Sep 30 19:04:34 2008 UTC
(15 years, 7 months ago)
by
laffer1
Diff to
previous 6370
update to 1.4.20. This was released today. It includes the previously applied security patches and some other fixes
Revision
6316 -
Directory Listing
-
[select for diffs]
Modified
Thu Sep 25 00:31:20 2008 UTC
(15 years, 7 months ago)
by
laffer1
Diff to
previous 6313
Update to 1.2.5. The problem I experienced earlier was local to the system. It's working perfectly on my desktop. This is the only browser in the ports tree that includes flash support (integrated). It's a quick install for many people who want to watch youtube.
Revision
6252 -
Directory Listing
-
[select for diffs]
Modified
Sat Sep 20 15:18:27 2008 UTC
(15 years, 7 months ago)
by
laffer1
Diff to
previous 6227
CVE-2008-2939
Cross-site scripting (XSS) vulnerability in proxy_ftp.c in the mod_proxy_ftp module in Apache 2.0.63 and earlier, and mod_proxy_ftp.c in the mod_proxy_ftp module in Apache 2.2.9 and earlier 2.2 versions, allows remote attackers to inject arbitrary web script or HTML via a wildcard in the last directory component in the pathname in an FTP URI.
Revision
6227 -
Directory Listing
-
[select for diffs]
Modified
Thu Sep 18 14:33:28 2008 UTC
(15 years, 7 months ago)
by
laffer1
Diff to
previous 6207
Update to 5.5.27. Fixes two XSS vulnerabilities, RequestDispatcher information disclosure, and a unicode directory traversal vulnerabilitiy
Revision
5730 -
Directory Listing
-
[select for diffs]
Modified
Thu Jul 3 04:51:31 2008 UTC
(15 years, 10 months ago)
by
laffer1
Diff to
previous 5729
instead of fetching patches manually, just grab the latest tar.bz2 file.
Switch to OPTIONS for some items including SSL, IPV6, and COLORS.
The actual patch level is the same, even though the version changed.
Revision
5725 -
Directory Listing
-
[select for diffs]
Modified
Wed Jul 2 00:51:29 2008 UTC
(15 years, 10 months ago)
by
laffer1
Diff to
previous 5659
Update to March 2008 version.
CGI header processing fixes
simple Range: header processing.
man page fixes
cleanup from NetBSD.
Revision
5571 -
Directory Listing
-
[select for diffs]
Modified
Wed Jun 18 18:09:45 2008 UTC
(15 years, 10 months ago)
by
laffer1
Diff to
previous 5570
This port was creating a plist automagically. However, it was not creating the symlinks properly outside the fake environment. THat's why flash broke when a user make clean this port.
Now the plist is created to pickup the symlinks in the fake dir. I'm not certain this will work without nspluginwrapper, but most people will want that anyway. If that's the case, we should probably just require it.
Revision
5530 -
Directory Listing
-
[select for diffs]
Modified
Sat Jun 14 21:18:31 2008 UTC
(15 years, 11 months ago)
by
laffer1
Diff to
previous 5491
Don't mark it broken, just warn the user about the security issue.
I'm about half way through making a new linux port for this.
Revision
5413 -
Directory Listing
-
[select for diffs]
Modified
Thu Jun 12 21:30:45 2008 UTC
(15 years, 11 months ago)
by
laffer1
Diff to
previous 5412
This should be considered a work in progress.
Opera 9.50 for i386 only! They don't seem to have a static version now. The directory layout on the ftp servers changed a lot. This port isn't yet customized for plugin paths, etc.
Revision
4839 -
Directory Listing
-
[select for diffs]
Modified
Wed Apr 30 20:21:07 2008 UTC
(16 years ago)
by
laffer1
Diff to
previous 4780
Update to 5.5.26.
The distinfo file was wrong in the previous version. It did not include the compat library. Might as well update to the latest while we're here.
Revision
4665 -
Directory Listing
-
[select for diffs]
Modified
Thu Apr 10 17:23:51 2008 UTC
(16 years, 1 month ago)
by
laffer1
Diff to
previous 4664
The linux-opera port was setting the path to the fakedir for the opera jar file used with java runtimes.
This corrects the issue found on magus.
Revision
4656 -
Directory Listing
-
[select for diffs]
Modified
Wed Apr 9 21:17:27 2008 UTC
(16 years, 1 month ago)
by
laffer1
Diff to
previous 4643
Update to 1.4.19. This fixes several security issues.
However, securina announced a new hole when OpenSSL is compiled in that has not been patched yet.
Revision
4497 -
Directory Listing
-
[select for diffs]
Modified
Fri Mar 28 03:09:18 2008 UTC
(16 years, 1 month ago)
by
laffer1
Diff to
previous 4455
There's something still iffy about this port. I think we need to look at python some more
Anyway this gets us to 2.20.3 and adds midnightbsd related bookmarks.
Revision
3956 -
Directory Listing
-
[select for diffs]
Modified
Tue Feb 12 15:29:32 2008 UTC
(16 years, 3 months ago)
by
laffer1
Diff to
previous 3955
Update to Opera 9.25. There is one oustanding issue with this port. The opera.desktop file is installed locally instead of in the fakedir meaning packages would not install it. A rework of the install.sh script with the distribution is needed.
Revision
3788 -
Directory Listing
-
[select for diffs]
Modified
Fri Dec 7 20:29:17 2007 UTC
(16 years, 5 months ago)
by
ctriv
Diff to
previous 3727
remove packlists from the plist of perl ports. We don't need packlists, we
don't want packlists, and they contain the fake destdir.
Revision
3689 -
Directory Listing
-
[select for diffs]
Modified
Tue Nov 20 19:12:36 2007 UTC
(16 years, 5 months ago)
by
laffer1
Diff to
previous 3515
add pmwiki. Talking to smultron, I realized I should check to see if this would be a quick port. We need a wiki and moinmoin is a bitch to port.
Revision
3177 -
Directory Listing
-
[select for diffs]
Modified
Sat Oct 20 15:15:59 2007 UTC
(16 years, 6 months ago)
by
laffer1
Diff to
previous 3170
Fix binary path as we live in /usr/local/bin/linux-opera (script) and /usr/local/share/linux-opera/bin/opera (binary)
This has hard coded paths which sucks
Revision
3158 -
Directory Listing
-
[select for diffs]
Modified
Sat Oct 20 00:14:08 2007 UTC
(16 years, 6 months ago)
by
laffer1
Diff to
previous 3157
Removing linux-seamonkey-devel port. We don't have enough users to warrent this port. Most people are interested in firefox or some other user agent anyway.
Revision
2710 -
Directory Listing
-
[select for diffs]
Modified
Wed Sep 26 18:49:18 2007 UTC
(16 years, 7 months ago)
by
ctriv
Diff to
previous 2701
Update to 2.2.6.
This port has only been lightly tested. make sure to test it in a safe
envirement before deploying for production use.
Revision
2353 -
Directory Listing
-
[select for diffs]
Modified
Sun Aug 19 20:22:42 2007 UTC
(16 years, 8 months ago)
by
laffer1
Diff to
previous 2352
Fix pkg-plist. We still install some of the freebsd configuration files so include them so they are removed on deinstall
Adjust paths since Adobe products moved to localbase.
This needs an overhaul at some point. The flash port paths in the example conf might not be correct. The port is not working properly so it's hard to say right now.
Revision
2345 -
Directory Listing
-
[select for diffs]
Modified
Sun Aug 19 02:30:31 2007 UTC
(16 years, 9 months ago)
by
laffer1
Diff to
previous 2308
Some fake fixes. real player is in /usr/local
The libmap.conf might not be right just yet. Anyone using this should verify library versions.
Revision
2281 -
Directory Listing
-
[select for diffs]
Modified
Tue Aug 14 02:40:13 2007 UTC
(16 years, 9 months ago)
by
laffer1
Diff to
previous 2274
Apache now reports MidnightBSD as it's OS in HTTP headers, etc.
FreeBSD icons are no longer used on the Powered By logo. (in fact none are used)
The port no longer has to fetch local distfiles from freebsd.org.
$MidnightBSD$
This has also been tested with the recent bsd.apache.mk change.
Revision
2040 -
Directory Listing
-
[select for diffs]
Modified
Sun Jul 22 09:34:40 2007 UTC
(16 years, 9 months ago)
by
laffer1
Diff to
previous 2032
Update to 1.1.12. This needs a lot of work yet. You can build the browser on amd64, but mail and news as well as several other options do not work yet.
Revision
1795 -
Directory Listing
-
[select for diffs]
Modified
Wed May 9 19:48:59 2007 UTC
(17 years ago)
by
laffer1
Diff to
previous 1775
Add Mozilla seamonkey! This gives us a newer, secure version of the mozilla suite. For some reason this is easier than firefox.
Revision
1758 -
Directory Listing
-
[select for diffs]
Modified
Tue May 8 00:11:32 2007 UTC
(17 years ago)
by
ctriv
Diff to
previous 1743
Updated to use the native fake system. Before the port would do its own
custom fake dir, then install into the standard fake dir, and then build a
package. The port now uses the standard fake dir to make it's plist,
cutting down on complexity and build time.
Revision
1743 -
Directory Listing
-
[select for diffs]
Modified
Mon May 7 18:18:05 2007 UTC
(17 years ago)
by
ctriv
Diff to
previous 1741
This post-install target is no longer needed with fake.
update-desktop-database is in the plist, and the pkg-install script is run
by pkg_add.
Revision
1737 -
Directory Listing
-
[select for diffs]
Modified
Mon May 7 07:21:08 2007 UTC
(17 years ago)
by
laffer1
Diff to
previous 1724
Let's get dangerous!
This file works miracles. The primary problem with the mozilla port is the JavaScript Engine. This change makes the JS engine work on amd64 provided the makefile is hacked for amd64 instead of i386.
make fake isn't 100% yet and make package still fails but if you manually run ./mozilla as root in the wrksrc/fake or possible the fake root (there actually is a fake directory created by the port unrelated to our fake) it actually works! I was able to load mozilla.org with it.
Note all i had enabled for the build was DEBUG and the browser. Enabling other things (like ldap) causes it to fail still.
Revision
1721 -
Directory Listing
-
[select for diffs]
Modified
Mon May 7 03:21:11 2007 UTC
(17 years ago)
by
laffer1
Diff to
previous 1607
This isn't exactly the best fix, but it does make the shell scripts to start linux-seamonkey work. It should also fix linux-thunderbird, etc.
Revision
1605 -
Directory Listing
-
[select for diffs]
Modified
Mon Apr 30 01:10:38 2007 UTC
(17 years ago)
by
laffer1
Diff to
previous 1597
Remove FreeBSD reference from pkg-message.
Comment out the gnome icons in the plist since we don't have the paths anyway. Gnome hier is probably not setup. This modification allowed make package to suceed on amd64.
Revision
1460 -
Directory Listing
-
[select for diffs]
Modified
Wed Apr 18 04:59:11 2007 UTC
(17 years, 1 month ago)
by
ctriv
Diff to
previous 1446
Fixes for fake. Opera has some significant heuristics for icon
installation, which break down for fake. We just install the icons we want
by hand, heuristic is a fancy word for "doesn't work."
Revision
1316 -
Directory Listing
-
[select for diffs]
Modified
Wed Apr 4 15:50:43 2007 UTC
(17 years, 1 month ago)
by
laffer1
Diff to
previous 1313
Opera will now install on x64. Removed static qt Opera option as it conflicts with our propolice patch. Instead of doing a hack, it just makes more sense to
use qt. This should also install some of the files into /usr/local instead of /usr/X11R6...
Revision
1219 -
Directory Listing
-
[select for diffs]
Modified
Thu Mar 22 00:16:39 2007 UTC
(17 years, 1 month ago)
by
laffer1
Diff to
previous 1197
Firefox 2.0.0.3
I want to revisit, cleanup this port later but the security issues in recent firefox versions have encouraged me to get this in now.
Revision
621 -
Directory Listing
-
[select for diffs]
Modified
Wed Dec 20 20:13:25 2006 UTC
(17 years, 4 months ago)
by
laffer1
Diff to
previous 565
Update Firefox for linux port to 2.0.0.1 to fix several security issues including a cross site scripting bug, rss feed reader leaks, and some other issues.