[odc] Daily ports changes for 2006-05-05

ODC auto at squish.net
Sat May 6 08:09:14 BST 2006


OpenBSD ports changes summary for 2006-05-05
============================================

audio/mt-daapd                          devel/p5-Module-CoreList
devel/p5-Want                           mail/exim
mail/mozilla-thunderbird                mail/msmtp
net                                     net/nepenthes
net/p5-Nmap-Parser                      security/nessus
security/swatch                         www/mozilla-firefox

== audio ============================================================= 01/06 ==

  http://www.openbsd.org/cgi-bin/cvsweb/ports/audio

mt-daapd

  ~ Makefile                              ~ distinfo
  ~ patches/patch-configure               

  > update to mt-daapd-0.2.4
  > from maintainer Arnaud Bergeron <abergeron at gmail.com> (sturm@)

== devel ============================================================= 02/06 ==

  http://www.openbsd.org/cgi-bin/cvsweb/ports/devel

p5-Module-CoreList

  ~ Makefile                              ~ distinfo

  > update to 2.04 from maintainer Jasper Lievisse (msf@)

p5-Want

  ~ Makefile                              ~ distinfo

  > update to 0.10 from maintainer Jasper Lievisse (msf@)

== mail ============================================================== 03/06 ==

  http://www.openbsd.org/cgi-bin/cvsweb/ports/mail

exim

  ~ Makefile                              ~ distinfo
  ~ patches/patch-scripts_exim_install    ~ pkg/DESCR
  ~ pkg/PLIST                             

  > update to exim 4.62
  > from maintainer Andreas Voegele <andreas at altroot.de> (sturm@)

mozilla-thunderbird

  - patches/patch-toolkit_components_history_src_nsGlobalHistory_cpp
  - patches/patch-xpfe_components_history_src_nsGlobalHistory_cpp
  ~ Makefile                              ~ distinfo

  TAGGED OPENBSD_3_9
  > MFC:
  > update to 1.5.0.2
  > fixes multiple critical vulnerabilities (sturm@)

msmtp

  ~ Makefile                              ~ distinfo

  > update to msmtp 1.4.5
  > from Simon Kuhnle <simonkuhnle at web.de>
  > maintainer timeout (sturm@)

== net =============================================================== 04/06 ==

  http://www.openbsd.org/cgi-bin/cvsweb/ports/net

net

  ~ Makefile                              

  > +p5-Nmap-Parser (msf@)

nepenthes

  ~ Makefile                              
  + patch-modules_vuln-bagle_BagleDialogue_cpp
  + patch-modules_vuln-mydoom_MydoomDialogue_cpp

  > roll in two distribution patches which fix erroneous memory handling
  > from maintainer rui reis (jolan@)

p5-Nmap-Parser

  + distinfo                              + Makefile
  + pkg/DESCR                             + pkg/PLIST

  > New import:
  >	initial import of Nmap::Parser 1.05

== security ========================================================== 05/06 ==

  http://www.openbsd.org/cgi-bin/cvsweb/ports/security

nessus

  ~ libnasl/Makefile                      
  + libnasl/patches/patch-nasl_nasl_text_utils_c

  TAGGED OPENBSD_3_8
  > MFC:
  > A buffer overflow vulnerability has been discovered in the
  > implementation of split() function in NASL, leading to consume a large
  > amount of CPU and memory resources before crashing. A solution is to
  > check for zero-length sep parameters.
  > CVE-2006-2093;
  > from ubuntu linux; (sturm@)

  ~ libnasl/Makefile                      
  + libnasl/patches/patch-nasl_nasl_text_utils_c

  TAGGED OPENBSD_3_9
  > MFC:
  > A buffer overflow vulnerability has been discovered in the
  > implementation of split() function in NASL, leading to consume a large
  > amount of CPU and memory resources before crashing. A solution is to
  > check for zero-length sep parameters.
  > CVE-2006-2093;
  > from ubuntu linux; (sturm@)

swatch

  ~ Makefile                              ~ distinfo
  ~ patches/patch-swatch                  ~ pkg/DESCR
  ~ pkg/PLIST                             

  > - update to 3.1.1 .
  > - DESCR tweak.
  > - COMMENT tweak by Michael Knudsen.
  > - add PKG_ARCH (spotted by alek).
  > ok alek@ (aanriot@)

== www =============================================================== 06/06 ==

  http://www.openbsd.org/cgi-bin/cvsweb/ports/www

mozilla-firefox

  ~ Makefile                              ~ distinfo
  ~ patches/patch-configure_in            
  ~ patches/patch-modules_libpref_src_init_all_js
  ~ patches/patch-nsprpub_config_rules_mk
  ~ patches/patch-nsprpub_configure_in    
  ~ patches/patch-xpcom_glue_standalone_Makefile_in

  > Update to 1.5.0.3. Security fixes inside...
  > More info:
  > CVE-2006-1993
  > http://secunia.com/advisories/19802/
  > tested by many
  > "go ahead" jolan@ (bernd@)

===============================================================================



More information about the odc mailing list