notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
All times are UTC
Ukraine
non port: security/krb5-112/Makefile
SVNWeb

Number of commits found: 25

Wed, 27 Jul 2016
[ 01:56 cy search for other commits by this committer ] Original commit   Revision:419156
Modernize krb5-112 and krb5-113 replacing USE_OPENSSL with USES=ssl.
Wed, 30 Mar 2016
[ 07:28 bapt search for other commits by this committer ] Original commit   Revision:412159
Remove uneeded dependency on GNU m4
Thu, 17 Dec 2015
[ 01:36 cy search for other commits by this committer ] Original commit   Revision:403891
Update 1.12.4 --> 1.12.5
Tue, 15 Dec 2015
[ 05:02 cy search for other commits by this committer ] Original commit   Revision:403760
This is the second part of two commits, the first being r403749.

Adopt the same port structure as used by the cfengine family of ports:

security/krb5 is renamed to security/krb5-114.

A brand new security/krb5 now becomes a master port for the family of
security/krb5-* ports. The default installs krb5-1.14. There is no
functional change to the port build nor does the name of the latest krb5
port and package change. Users can continue to install security/krb5
to track the latest major version of security/krb5.

Users wishing to install a specific version branch of krb5 can continue
to install any of the security/krb5-* ports or by setting KRB5_VERSION
in make.conf make.conf or including the branch on the make command line
during build:

	make KRB5_VERSIN=NNN

make -V VERSIONS lists available versions.

security/krb5-appl has been updated to support this change (also fixing
a typo in the krb5-appl/Makefile).

Inspired by:            sysutils/cfengine
Sat, 21 Nov 2015
[ 08:47 cy search for other commits by this committer ] Original commit   Revision:402143
Introduce the new krb5 1.14:

- move (copy) krb5 (krb5 1.13.2) to krb5-113 (new, added)
- update krb5 1.13.2 --> 1.14
- update CONFLICTS in krb5, krb5-112 and krb5-113.
- update krb5-appl to allow optional dependency on krb5-113.
- update security/Makefile with copied krb5-113.
- deprecate and expire krb5-112 (krb5-1.12) on November 20, 2016, as it
  will EOL twelve months after the release of krb5-1.14.
Mon, 19 Oct 2015
[ 07:29 cy search for other commits by this committer ] Original commit   Revision:399634
Bump PORTREVISION.
[ 07:17 cy search for other commits by this committer ] Original commit   Revision:399632
Fix READLINE option.
Add support for libedit (LIBEDIT option).
Both command line editing options now supported by RADIO button.

Fix typo in gssapi: bootstrap.
Mon, 31 Aug 2015
[ 07:18 cy search for other commits by this committer ] Original commit   Revision:395651
Fix build under 11-CURRENT. r378417 introduced a libreadline link
workaround due to libtool not working with 11-CURRENT at the time.
The workaround now causes grief under 11-CURRENT and needs to be
removed.

PR:		202782
Mon, 17 Aug 2015
[ 14:20 mat search for other commits by this committer ] Original commit   Revision:394508 (Only the first 10 of 271 ports in this commit are shown above. View all ports for this commit)
Remove UNIQUENAME and LATEST_LINK.

UNIQUENAME was never unique, it was only used by USE_LDCONFIG and now,
we won't have conflicts there.

Use PKGBASE instead of LATEST_LINK in PKGLATESTFILE, the *only* consumer
is pkg-devel, and it works just fine without LATEST_LINK as pkg-devel
has the correct PKGNAME anyway.

Now that UNIQUENAME is gone, OPTIONSFILE is too. (it's been called
OPTIONS_FILE now.)

Reviewed by:	antoine, bapt
Exp-run by:	antoine
Sponsored by:	Absolight
Differential Revision:	https://reviews.freebsd.org/D3336
Sat, 6 Jun 2015
[ 20:27 cy search for other commits by this committer ] Original commit   Revision:388684
MIT KRB5 ports build unusable binaries due to incorrect linking
when build under poudriere. This commit fixes that.
Tue, 2 Jun 2015
[ 05:09 cy search for other commits by this committer ] Original commit   Revision:388307
Update 1.12.3 --> 1.12.4
Thu, 28 May 2015
[ 17:48 delphij search for other commits by this committer ] Original commit   Revision:387747
Apply vendor patch for CVE-2015-2694 (changeset
b0c571e709c72da799ccc15fb5755f7910170e33) to prevent requires_preauth
bypass.

Approved by:	so
Obtained
from:	https://github.com/krb5/krb5/commit/b0c571e709c72da799ccc15fb5755f7910170e33.diff
Security:	CVE-2015-2694
Security:	0b040e24-f751-11e4-b24d-5453ed2e2b49
MFH:		2015Q2
Mon, 20 Apr 2015
[ 19:06 tijl search for other commits by this committer ] Original commit   Revision:384380 (Only the first 10 of 32 ports in this commit are shown above. View all ports for this commit)
- Display a stage-qa warning when ports use PREFIX/var instead of /var
- Add --localstatedir=/var to _LATE_CONFIGURE_ARGS (like --mandir) but not
  when CONFIGURE_ARGS already sets it.  (GNU configure scripts set it to
  PREFIX/var when PREFIX != /usr.)
- Add --localstatedir="${PREFIX}/var" to CONFIGURE_ARGS in some ports so
  they aren't affected by this change (for now at least).  This commit is
  meant to ensure that new ports don't make the same mistake.

- games/acm: the configure script in this port is very old; instead of
  patching it more, just replace GNU_CONFIGURE with HAS_CONFIGURE.
- irc/charybdis: it already used /var but adding --localstatedir=/var
  changed the behaviour of the configure script; adjust the port to this.

PR:		199506
Exp-run by:	antoine
Approved by:	portmgr (antoine)
Mon, 23 Mar 2015
[ 19:04 cy search for other commits by this committer ] Original commit   Revision:382023
Fix build with libressl.

PR:		198749, 198750
Thu, 5 Mar 2015
[ 18:48 cy search for other commits by this committer ] Original commit   Revision:380545
Advertise CPE data for Kerberos.

PR:		197465, 197466, 197467
Sat, 21 Feb 2015
[ 16:14 cy search for other commits by this committer ] Original commit   Revision:379532
Kerberos Version 5, Release 1.12.3 is released. This fixes multiple
vulnerabilities, some previously committed by point patches and others
newly fixed in this release.

* Fix multiple vulnerabilities in the LDAP KDC back end.
  [CVE-2014-5354] [CVE-2014-5353]

* Fix multiple kadmind vulnerabilities, some of which are based in the
  gssrpc library. [CVE-2014-5352 CVE-2014-5352 CVE-2014-9421
  CVE-2014-9422 CVE-2014-9423]

Security:	VuXML: 63527d0d-b9de-11e4-8a48-206a8a720317
Security:	CVE-2014-5354, CVE-2014-5353
Security:	CVE-2014-5352, CVE-2014-5352, CVE-2014-9421
Security:	CVE-2014-9422, CVE-2014-9423
Fri, 20 Feb 2015
[ 20:59 cy search for other commits by this committer ] Original commit   Revision:379469
Fix broken rpath.

Submitted by:	hrs
Fri, 13 Feb 2015
[ 20:25 cy search for other commits by this committer ] Original commit   Revision:378944
Backported patches for CVE-2014-5353 and CVE-2014-5354 received from MIT
for krb5-111 and krb5-112.

Obtained from:	Greg Hudson <ghudson@mit.edu>
Security:	CVE-2014-5353, CVE-2014-5354
[ 01:48 cy search for other commits by this committer ] Original commit   Revision:378909
Forbid krb5-111 and krb5-112.

Security:	CVE-2014-5353, CVE-2014-5354
Security:	VUXML: 3a888a1e-b321-11e4-83b2-206a8a720317
Thu, 5 Feb 2015
[ 03:39 cy search for other commits by this committer ] Original commit   Revision:378441
Correct various packaging issues:

 - Libraries are not installed stripped;
 - pkgconfig files should be installed to libdata;
 - Use of deprecated @dirrm[try]

PR:		PR/197338
Submitted by:	delphij
Wed, 4 Feb 2015
[ 20:47 cy search for other commits by this committer ] Original commit   Revision:378417
Address: krb5 -- Vulnerabilities in kadmind, libgssrpc,
gss_process_context_token VU#540092

CVE-2014-5352: gss_process_context_token() incorrectly frees context

CVE-2014-9421: kadmind doubly frees partial deserialization results

CVE-2014-9422: kadmind incorrectly validates server principal name

CVE-2014-9423: libgssrpc server applications leak uninitialized bytes

Security:	VUXML: 24ce5597-acab-11e4-a847-206a8a720317
Security:	MIT KRB5: VU#540092
Security:	CVE-2014-5352, CVE-2014-9421, CVE-2014-9422, CVE-2014-9423
Sun, 14 Dec 2014
[ 11:44 antoine search for other commits by this committer ] Original commit   Revision:374698
- Remove support for EXTRACT_PRESERVE_OWNERSHIP
- Update a few comments related to extract

Differential Revision:	https://reviews.freebsd.org/D1189
With hat:	portmgr
Sat, 18 Oct 2014
[ 17:05 cy search for other commits by this committer ] Original commit   Revision:371142
Fix LATEST_LINK.
[ 10:06 antoine search for other commits by this committer ] Original commit   Revision:371108
Unbreak
Thu, 16 Oct 2014
[ 19:44 cy search for other commits by this committer ] Original commit   Revision:371019 (Only the first 10 of 12 ports in this commit are shown above. View all ports for this commit)
MIT Kerberos released 1.13; 1.12 becomes a maintenance release,
1.11 remains a maintenance release.

- Update security/krb5 1.12.2 --> 1.13
- Copy the old security/krb5 1.12.2 to security/krb5-112
  (now a maintenance release supported by MIT)
- Move the old krb5-maint (1.11.5: old maintenance release) to
  security/krb5-111 (the old maintenance release still supported by MIT)

Number of commits found: 25