ca13 FreshPorts -- devel/bugzilla3
FreshPorts -- The Place For Ports If you buy from Amazon USA, please support us by using this link.
Follow us
Blog
Twitter

Port details
bugzilla3 3.6.13 devel on this many watch lists=1 search for ports that depend on this port An older version of this port was marked as vulnerable.
Deprecated DEPRECATED: Note that when Bugzilla 4.4 is released, the Bugzilla 3.6.x series will reach end of life
Bug-tracking system developed by Mozilla Project
Maintained by: bugzilla@FreeBSD.org search for ports maintained by this maintainer
Port Added: 07 Jun 2011 13:31:00
License: MPL


Bugzilla is one example of a class of programs called "Defect Tracking
Systems", or, more commonly, "Bug-Tracking Systems". Defect Tracking
Systems allow individual or groups of developers to keep track of
outstanding bugs in their product effectively.

Bugzilla has matured immensely, and now boasts many advanced features.
These include:

  * integrated, product-based granular security schema
  * inter-bug dependencies and dependency graphing
  * advanced reporting capabilities
  * a robust, stable RDBMS back-end
  * extensive configurability
  * a very well-understood and well-thought-out natural bug resolution
    protocol
  * email, XML, console, and HTTP APIs
  * available integration with automated software configuration
    management systems, including Perforce and CVS (through the
    Bugzilla email interface and checkin/checkout scripts)
  * too many more features to list

WWW: http://www.bugzilla.org/
SVNWeb : Main Web Site : Distfiles Availability : PortsMon

NOTE: FreshPorts displays only required dependencies information. Optional dependencies are not covered.

Required To Build:
  1. lang/perl5.12
Required To Run:
  1. www/p5-CGI.pm
  2. databases/p5-DBI
  3. devel/p5-DateTime-TimeZone
  4. devel/p5-DateTime
  5. mail/p5-Email-MIME
  6. mail/p5-Email-Send
  7. www/p5-Template-Toolkit
  8. devel/p5-TimeDate
  9. net/p5-URI
  10. graphics/p5-GD
  11. graphics/p5-GD-Graph
  12. graphics/p5-GD-TextUtil
  13. www/p5-Template-GD
  14. graphics/p5-Chart
  15. devel/p5-PatchReader
  16. misc/patchutils
  17. www/p5-HTML-Parser
  18. www/p5-HTML-Scrubber
  19. lang/perl5.12

This port is required by:

for Run

To install the port: cd /usr/ports/devel/bugzilla3/ && make install clean
To add the package: pkg_add -r bugzilla3


Configuration Options
===> The following configuration options are available for bugzilla-3.6.13:
     DOCS=on: Build and/or install documentation
     MYSQL=off: MySQL database
     PGSQL=off: PostgreSQL database
     GRAPHVIZ=off: Graphviz support
     GRAPH_REPORTS=on: Graphical Reports
     CHARTING_MODULES=on: Bug charting support
     PATCH_VIEWER=on: Patch Viewer
     MORE_HTML=on: More HTML in Product/Group Descriptions
     INBOUND_EMAIL=off: Inbound Email
     MAIL_QUEUEING=off: Mail Queueing
     MOVE_BUGZ=off: Move Bugs Between Installations
     BMP2PNG=off: BMP Attachments to PNGs
     XMLRPC=off: XML-RPC Interface
     JSONRPC=off: JSON-RPC Interface
     MODPERL=off: mod_perl support
     EXPORT_IMPORT=off: Import/export bugs (via XML)
     CONTRIB=on: Install user-contributed scripts
     LDAP=off: LDAP Authentication
     RADIUS=off: RADIUS Authentication
===> Use 'make config' to modify these settings

Master Sites:
  1. ftp://ftp.FreeBSD.org/pub/FreeBSD/ports/distfiles/bugzilla/
  2. ftp://ftp.fh-wolfenbuettel.de/pub/www/mozilla/webtools/
  3. ftp://ftp.fh-wolfenbuettel.de/pub/www/mozilla/webtools/archived/
  4. ftp://ftp.informatik.rwth-aachen.de/pub/mirror/ftp.mozilla.org/pub/webtools/
  5. ftp://ftp.informatik.rwth-aachen.de/pub/mirror/ftp.mozilla.org/pub/webtools/archived/
  6. ftp://ftp.mozilla.org/pub/mozilla.org/webtools/
  7. ftp://ftp.mozilla.org/pub/mozilla.org/webtools/archived/
  8. http://ftp.acc.umu.se/pub/mozilla.org/webtools/
  9. http://ftp.acc.umu.se/pub/mozilla.org/webtools/archived/
  10. http://ftp.twaren.net/Unix/Mozilla/webtools/
  11. http://ftp.twaren.net/Unix/Mozilla/webtools/archived/
  12. http://jp-nii01.mozilla.org/pub/mozilla.org/webtools/
  13. http://jp-nii01.mozilla.org/pub/mozilla.org/webtools/archived/
  14. http://jp-nii02.mozilla.org/pub/mozilla.org/webtools/
  15. http://jp-nii02.mozilla.org/pub/mozilla.org/webtools/archived/
  16. http://kyoto-mz-dl.sinet.ad.jp/pub/mozilla.org/webtools/
  17. http://kyoto-mz-dl.sinet.ad.jp/pub/mozilla.org/webtools/archived/
  18. http://mirror.internode.on.net/pub/mozilla/webtools/
  19. http://mirror.internode.on.net/pub/mozilla/webtools/archived/
  20. http://mirror3.mirrors.tds.net/pub/mozilla.org/webtools/
  21. http://mirror3.mirrors.tds.net/pub/mozilla.org/webtools/archived/
  22. http://mozilla.c3sl.ufpr.br/releases/webtools/
  23. http://mozilla.c3sl.ufpr.br/releases/webtools/archived/
  24. http://mozilla.isc.org/pub/mozilla.org/webtools/
  25. http://mozilla.isc.org/pub/mozilla.org/webtools/archived/
  26. http://mozilla.mtk.nao.ac.jp/pub/mozilla.org/webtools/
  27. http://mozilla.mtk.nao.ac.jp/pub/mozilla.org/webtools/archived/
  28. http://releases.mozilla.org/pub/mozilla.org/webtools/
  29. http://releases.mozilla.org/pub/mozilla.org/webtools/archived/
  30. http://ring.nict.go.jp/archives/net/www/mozilla/webtools/
  31. http://ring.nict.go.jp/archives/net/www/mozilla/webtools/archived/
  32. http://www.gtlib.gatech.edu/pub/mozilla.org/webtools/
  33. http://www.gtlib.gatech.edu/pub/mozilla.org/webtools/archived/
  34. https://ftp.mozilla.org/pub/mozilla.org/webtools/
  35. https://ftp.mozilla.org/pub/mozilla.org/webtools/archived/

Number of commits found: 21

Commit History - (may be incomplete: see SVNWeb link above for full details)
DateByDescription
20 Feb 2013 06:16:01
Original commit files touched by this commit  3.6.13
ohauer search for other commits by this committer
- update bugzilla ports to latest version

  Bugzilla 4.0.10 and 3.6.13 are security updates for the 4.0
  branch and the 3.6 branch, respectively. 4.0.10 contains several
  useful bug fixes and 3.6.13 contains only security fixes.

Security:	CVE-2013-0785
		CVE-2013-0786
14 Nov 2012 21:31:11
Original commit files touched by this commit  3.6.12
 This port version is marked as vulnerable.
ohauer search for other commits by this committer
- adjust required PgSQL module for bugzilla42

From Release Notes:
 PostgreSQL 9.2 requires DBD::Pg 2.19.3. (Bug 799721)

 No revision bump, p5-DBD-Pg-2.19.3
 a) not on per default
 b) in the tree since a view months

- add deprecation message to bugzilla3

From the announcement:
 Note that when Bugzilla 4.4 is released, the Bugzilla 3.6.x series
 will reach end of life. If you are using that series, we encourage
 you to upgrade to 4.2.4 now.

http://groups.google.com/group/mozilla.support.bugzilla/browse_thread/thread/d8dcc99be0f89421

Feature safe: yes
14 Nov 2012 19:29:42
Original commit files touched by this commit  3.6.12
 This port version is marked as vulnerable.
ohauer search for other commits by this committer
- bugzilla security updates to version(s)
  3.6.11, 4.0.8, 4.2.4

Summary
=======

The following security issues have been discovered in Bugzilla:

* Confidential product and component names can be disclosed to
  unauthorized users if they are used to control the visibility of
  a custom field.

* When calling the 'User.get' WebService method with a 'groups'
  argument, it is possible to check if the given group names exist
  or not.
(Only the first 15 lines of the commit message are shown above View all of this commit message)
01 Sep 2012 20:16:06
Original commit files touched by this commit  3.6.11
 This port version is marked as vulnerable.
ohauer search for other commits by this committer
- update bugzilla bugzilla3 and bugzilla42
- use new bugzilla@ address (members skv@, tota@, ohauer@)
- patch russian/japanese/german bugzilla and bugzilla templates
  so the reflect the security updates in the original templates
- patch german/bugzilla42 templates
- adopt new Makefile header

	vuxml: 6ad18fe5-f469-11e1-920d-20cf30e32f6d
	CVE: CVE-2012-3981
	https://bugzilla.mozilla.org/show_bug.cgi?id=785470
	https://bugzilla.mozilla.org/show_bug.cgi?id=785522
	https://bugzilla.mozilla.org/show_bug.cgi?id=785511
18 Aug 2012 14:29:11
Original commit files touched by this commit  3.6.10
 This port version is marked as vulnerable.
ohauer search for other commits by this committer
- remove www/apache20 and devel/apr0
- s/USE_APACHE= 20+/USE_APACHE= 22+/
- unify s/YES/yes/
- cleanup APACHE_VERSION <= 22 usage
- add entry to MOVED

with hat apache@
28 Jul 2012 16:25:12
Original commit files touched by this commit  3.6.10
 This port version is marked as vulnerable.
ohauer search for other commits by this committer
- pkgng: cosmetic fix against lstat messages
27 Jul 2012 21:34:05
Original commit files touched by this commit  3.6.10
 This port version is marked as vulnerable.
ohauer search for other commits by this committer
- security update bugzilla
  new Versions: 3.6.10, 4.0.7, 4.2.2

  4.2.2

  This release fixes two security issues. See the Security Advisory for details.

  In addition, the following important fixes/changes have been made in this
release:

  o A regression introduced in Bugzilla 4.0 caused some login names to be
ignored
    when entered in the CC list of bugs. (Bug 756314)
  o Some queries could trigger an invalid SQL query if strings entered by the
user
    contained leading or trailing whitespaces. (Bug 760075)
  o The auto-completion form for keywords no longer automatically selects the
    first keyword in the list when the field is empty. (Bug 764517)
(Only the first 15 lines of the commit message are shown above View all of this commit message)
24 Jul 2012 20:41:56
Original commit files touched by this commit  3.6.9
 This port version is marked as vulnerable.
ohauer search for other commits by this committer
- convert to options NG

Approved by:	skv@ (implicit)
24 Jul 2012 19:24:22
Original commit files touched by this commit  3.6.9
 This port version is marked as vulnerable.
ohauer search for other commits by this committer
- fix broken mod_perl include

apache version detect was not enabled,
the time SITE_PERL was removed from *_DEPENDS
03 Jul 2012 17:38:41
Original commit files touched by this commit  3.6.9
 This port version is marked as vulnerable.
az search for other commits by this committer
graphics/ImageMagick can change package name via PKGNAMESUFFIX.
We should not rely on this.

Reported by:    Jarrod Sayers <jarrod at downtools.com.au>
Pointy hat:     az@
01 Jul 2012 14:43:24
Original commit files touched by this commit  3.6.9
 This port version is marked as vulnerable.
crees search for other commits by this committer
Update devel/p5-chart --> devel/p5-Chart to fix INDEX build

Pointyhat:      sunpoet
29 Jun 2012 10:15:24
Original commit files touched by this commit  3.6.9
 This port version is marked as vulnerable.
az search for other commits by this committer
- Remove SITE_PERL from *_DEPENDS

Approved by: portmgr@ (bapt@)
21 Apr 2012 17:37:42
Original commit files touched by this commit  3.6.9
 This port version is marked as vulnerable.
ohauer search for other commits by this committer
- security update to bugzilla 3.0.9 and 4.0.6
- update russian/bugzilla3-ru template
- patch german templates so revision match and no warning is displayed
- add vuxml entry

Approved by:    skv (implicit)
Security:       https://bugzilla.mozilla.org/show_bug.cgi?id=728639
                https://bugzilla.mozilla.org/show_bug.cgi?id=745397
                CVE-2012-0465
                CVE-2012-0466
06 Feb 2012 12:08:25
Original commit files touched by this commit  3.6.8
 This port version is marked as vulnerable.
skv search for other commits by this committer
Update to 3.6.8

Changes:       
http://www.bugzilla.org/releases/3.6.8/release-notes.html#v36_point
Security:      
http://www.vuxml.org/freebsd/309542b5-50b9-11e1-b0d8-00151735203a.html
05 Jan 2012 17:25:06
Original commit files touched by this commit  3.6.7
 This port version is marked as vulnerable.
ohauer search for other commits by this committer
- update to version 3.6.7
- CVE-2011-3657
- CVE-2011-3667

Summary
=======

The following security issues have been discovered in Bugzilla:

* When viewing tabular or graphical reports as well as new charts,
  an XSS vulnerability is possible in debug mode.

* The User.offer_account_by_email WebService method lets you create
  a new user account even if the active authentication method forbids
  users to create an account.

* A CSRF vulnerability in post_bug.cgi and in attachment.cgi could
  lead to the creation of unwanted bug reports and attachments.

All affected installations are encouraged to upgrade as soon as possible.

Full Release Notes:
http://www.bugzilla.org/security/3.4.12/

Approved by:    skv@ (explicit)
17 Oct 2011 04:35:02
Original commit files touched by this commit  3.6.6
 This port version is marked as vulnerable.
dougb search for other commits by this committer
Remove references to mysql 323 and 40, most commonly of the form:

IGNORE_WITH_MYSQL=     323 40
13 Aug 2011 18:25:04
Original commit files touched by this commit  3.6.6
 This port version is marked as vulnerable.
skv search for other commits by this committer
Update to 3.6.6

Changes:        http://www.bugzilla.org/releases/3.6.6/release-notes.html
Security:      
http://www.vuxml.org/freebsd/dc8741b9-c5d5-11e0-8a8e-00151735203a.html
18 Jul 2011 21:56:02
Original commit files touched by this commit  3.6.5
 This port version is marked as vulnerable.
ohauer search for other commits by this committer
- create missing (empty) directory (bugzilla) so checksetup does not fail
- use DIST_SUBDIR for bugzilla and all translations
- sort pkg-plist (genplist)

OK from bugzilla maintainers per PM.

PR:             ports/158766
Submitted by:   ohauer
11 Jun 2011 04:27:50
Original commit files touched by this commit  3.6.5
 This port version is marked as vulnerable.
tota search for other commits by this committer
- Update to 3.6.5
- Cleanup CONFLICTS/PORTSCOUT among Makefiles and Makefile.common
07 Jun 2011 16:00:26
Original commit files touched by this commit  3.6.5
 This port version is marked as vulnerable.
skv search for other commits by this committer
- Remove obsolete devel/bugzilla2
- Tune devel/bugzilla* : add PORTSCOUT, LATEST_LINK, CONFLICTS, LICENSE
07 Jun 2011 13:30:01
Original commit files touched by this commit  3.6.5
  Sanity Test Failure This port version is marked as vulnerable.
skv search for other commits by this committer
- Copy devel/bugzilla to devel/bugzilla3; russian/bugzilla-ru to
russian/bugzilla3-ru
- Update devel/bugzilla, russian/bugzilla-ru to 4.0.1
- Update devel/bugzilla3, russian/bugzilla3-ru to 3.6.5

Changes:        http://www.bugzilla.org/releases/4.0.1/release-notes.html
                http://www.bugzilla.org/releases/3.6.5/release-notes.html

Number of commits found: 21

2834
Login
User Login
Create account

Servers and bandwidth provided by
New York Internet, SuperNews, and RootBSD

Search
Enter Keywords:
 
more...

Latest Vulnerabilities
plibMay 19
plibMay 19
linux-f10-flashplugin10May 16
linux-f10-flashplugin11May 16
nginx*May 16
nginx-devel*May 16
firefoxMay 15
firefox-develMay 15
firefox-esrMay 15
firefox10May 15
firefox15May 15
firefox3May 15
firefox3-develMay 15
firefox35May 15
firefox36May 15

5 vulnerabilities affecting 20 ports have been reported in the past 14 days

* - modified, not new

All vulnerabilities


Ports
Home
Categories
Deleted ports
Sanity Test Failures
Newsfeeds


Statistics
Graphs
NEW Graphs (Javascript)
Traffic

Calculated hourly:
Port count 24523
Broken 217
Deprecated 473
Ignore 637
Forbidden 3
Restricted 292
No CDROM 109
Vulnerable 27
Expired 132
Set to expire 511
Interactive 33
new 24 hours 7
new 48 hours10
new 7 days29
new fortnight78
new month210

This site
What is FreshPorts?
About the Authors
FAQ
How big is it?
The latest upgrade!
Privacy
Forums
Blog
Contact
8e7

Servers and bandwidth provided by
New York Internet, SuperNews, and RootBSD
Valid HTML, CSS, and RSS.
Copyright © 2000-2013 DVL Software Limited. All rights reserved.
0