Link [ pkgsrc | NetBSD | pkgsrc git mirror | PR fulltext-search | netbsd commit viewer ]


   
        usage: [branch:branch] [user:user] [path[@revision]] keyword [... [-excludekeyword [...]]] (e.g. branch:MAIN pkgtools/pkg)




switch to index mode

recent branches: MAIN (2h)  pkgsrc-2024Q1 (14d)  pkgsrc-2023Q4 (42d)  pkgsrc-2023Q2 (74d)  pkgsrc-2023Q3 (154d) 

2024-05-12 22:40:19 UTC Now

2013-02-08 16:19:00 UTC pkgsrc-2012Q4 commitmail json YAML

Pullup ticket #4055 - requested by taca
security/openssl: security update

Revisions pulled up:
- security/openssl/Makefile                                    1.172
- security/openssl/distinfo                                    1.91

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Tue Feb  5 15:54:31 UTC 2013

  Modified Files:
  pkgsrc/security/openssl: Makefile distinfo

  Log Message:
  Update openssl to 0.9.8y.

    Changes between 0.9.8x and 0.9.8y [5 Feb 2013]

    *) Make the decoding of SSLv3, TLS and DTLS CBC records constant time=
  .=

        This addresses the flaw in CBC record processing discovered by
        Nadhem Alfardan and Kenny Paterson. Details of this attack can be =
  found
        at: http://www.isg.rhul.ac.uk/tls/

        Thanks go to Nadhem Alfardan and Kenny Paterson of the Information=

        Security Group at Royal Holloway, University of London
        (www.isg.rhul.ac.uk) for discovering this flaw and Adam Langley an=
  d
        Emilia K=E4sper for the initial patch.
        (CVE-2013-0169)
        [Emilia K=E4sper, Adam Langley, Ben Laurie, Andy Polyakov, Steve H=
  enson]

    *) Return an error when checking OCSP signatures when key is NULL.
        This fixes a DoS attack. (CVE-2013-0166)
        [Steve Henson]

    *) Call OCSP Stapling callback after ciphersuite has been chosen, so
        the right response is stapled. Also change SSL_get_certificate()
        so it returns the certificate actually sent.
        See http://rt.openssl.org/Ticket/Display.html?id=3D2836.
        (This is a backport)
        [Rob Stradling <rob.stradling@comodo.com>]

    *) Fix possible deadlock when decoding public keys.
        [Steve Henson]

(tron)

2013-02-08 15:58:02 UTC MAIN commitmail json YAML

2013-02-08 15:45:42 UTC MAIN commitmail json YAML

add patch from upstream to fix SASL buffer overflow vulnerability
(CVE-2013-0249), bump PKGREV

(drochner)

2013-02-08 14:11:21 UTC MAIN commitmail json YAML

Updated security/openssl to 1.0.1dnb2

(jperkin)

2013-02-08 14:11:09 UTC MAIN commitmail json YAML

2013-02-08 14:01:40 UTC MAIN commitmail json YAML

Note update of mail/roundcube package to 0.8.5.

(taca)

2013-02-08 14:01:03 UTC MAIN commitmail json YAML

Update roundcube to 0.8.5.

CHANGELOG Roundcube Webmail
===========================

- Fix #countcontrols issue in IE<=8 when text is very long (#1488890)
- Fix unwanted horizontal scrollbar in message preview header (#1488866)
- Add workaround for IE<=8 bug where Content-Disposition:inline was ignored
  (#1488844)
- Fix XSS vulnerability in vbscript: and data:text links handling (#1488850)
- Fix absolute positioning in HTML messages (#1488819)
- Fix keybord events on messages list in opera browser (#1488823)
- Fix cache (in)validation after setting \Deleted flag
- Fix selection of collapsed thread rows (#1488772)
- Fix wrapping of quoted text with format=flowed (#1488177)

(taca)

2013-02-08 13:22:36 UTC MAIN commitmail json YAML

Note update of www/ruby-rack package to 1.4.5.

(taca)

2013-02-08 13:22:00 UTC MAIN commitmail json YAML

Update ruby-rack to 1.4.5.

* February 7th, Thirty fifth public release 1.4.5
  * Fix CVE-2013-0263, timing attack against Rack::Session::Cookie
  * Fix CVE-2013-0262, symlink path traversal in Rack::File

(taca)

2013-02-08 13:20:57 UTC MAIN commitmail json YAML

Note update of www/ruby-rack12 package to 1.2.8 and www/ruby-rack13
package to 1.3.10.

(taca)

2013-02-08 13:19:57 UTC MAIN commitmail json YAML

Update ruby-rack13 to 1.3.10.

February 7th, Thirty fifth public release 1.1.6, 1.2.8, 1.3.10
  * Fix CVE-2013-0263, timing attack against Rack::Session::Cookie

(taca)

2013-02-08 13:19:13 UTC MAIN commitmail json YAML

Update ruby-rack12 to 1.2.8.

* February 7th, Thirty fifth public release 1.1.6, 1.2.8, 1.3.10
  * Fix CVE-2013-0263, timing attack against Rack::Session::Cookie

(taca)

2013-02-08 12:46:15 UTC MAIN commitmail json YAML

gcc-core-4.0.3.tar.gz is not available from ftp://gcc.gnu.org.
use .bz2 from MASTER_SITE_GNU instead (and some simplify).

(obache)

2013-02-08 12:23:25 UTC MAIN commitmail json YAML

When using destdir, the clean stage isn't privileged.

(wiz)

2013-02-08 05:08:17 UTC MAIN commitmail json YAML

Move parentheses to the end of paragraph to improve readability.

(asau)

2013-02-08 04:59:36 UTC MAIN commitmail json YAML

Split Darwin version information into separate paragraph
for consistency with notes on other operating systems.

Someone should mention which (recent!) MacOS versions are
supported and/or tested.

(asau)

2013-02-08 00:10:48 UTC MAIN commitmail json YAML

Fix build problem probably caused  by OpenSSL update.

(tron)

2013-02-07 20:51:35 UTC MAIN commitmail json YAML

Updated mail/msmtp to 1.4.30

(ryoon)

2013-02-07 20:50:56 UTC MAIN commitmail json YAML

Update to 1.4.30.

Changelog:
Version 1.4.30:
- Fix a bug in msmtp_read_addresses() that was introduced in version 1.4.29 by
  fixing a problem in the wrong way.

(ryoon)

2013-02-07 20:34:30 UTC MAIN commitmail json YAML

Add xulrunner/firefox 18.0.2

(ryoon)

2013-02-07 20:32:42 UTC MAIN commitmail json YAML

Update to 18.0.2.

* Include patch for FreeBSD from Jan Beich (patch-bf).

Changelog:
FIXED
18.0.2: Fix JavaScript related stability issues

(ryoon)

2013-02-07 20:21:27 UTC MAIN commitmail json YAML

Remove workaround for ftp user agent

(morr)

2013-02-07 13:59:10 UTC MAIN commitmail json YAML

FTPUSERAGENT is a environment variable for ftp(1), not a make variable.
No need to pass here.

related to PR 47525.

(obache)

2013-02-07 13:49:22 UTC MAIN commitmail json YAML

+ ruby-gnome2-gtk3 ruby-gnome2-gtksourceview3

(obache)

2013-02-07 13:48:31 UTC MAIN commitmail json YAML

+ ruby-gnome2-gdk3

(obache)

2013-02-07 13:47:54 UTC MAIN commitmail json YAML

+ruby-gnome2-gobject-introspection

(obache)

2013-02-07 13:46:32 UTC MAIN commitmail json YAML

Note update ruby-gnome2 to 1.2.1.

(obache)

2013-02-07 13:41:58 UTC MAIN commitmail json YAML

Update ruby-gnome2 to 1.2.1.
(and add gtk3, gdk3, gtksourceview3 and gobject-introspection binding).
based on PR 47529.

== Ruby-GNOME2 1.2.1: 2013-01-30

GTK+ 3 support on Mac OS X release!

=== Changes

==== Ruby/GLib2

  * Improvements
    * Supported custom sudo prompt on auto native package install.
      [GitHub:126] [Suggested by Yorick Peterse]
    * Started to support JRuby. (It is not completed yet.)
      [GitHub:125] [Reported by vpereira]
    * Accepted unsigned long int size GType.
    * Removed DL support.
    * Don't call deprecated g_type_init() for GLib >= 2.35.1.

==== Ruby/GTK2

  * Fixes
    * Fixed a memory leak related Gtk::TreeIter.
      [GitHub:128] [Patch by Toshiaki Asai]

==== Ruby/GTK3

  * Fixes
    * Fixed a memory leak related Gtk::TreeIter.
      [GitHub:128] [Patch by Toshiaki Asai]
    * Fixed a crash bug caused by symbol conflict with Ruby/GDK3 on
      Mac OS X.
      [GitHub:127] [Reported by Sergio Campama] [Helped by Watson]

==== Ruby/GDK3

  * Improvements
    * [windows] Bundled Greybird theme.
      [Suggested by Regis d'Aubarede]

==== Ruby/GooCanvas

  * Improvements
    * Added Goo::Canvas#get_items_at [GitHub:124] [Patch by David Maciejak]

==== Ruby/WebKitGTK

  * Added

==== Ruby/GtkSourceView3

  * Improvements
    * Supported Windows.

=== Thanks

  * David Maciejak
  * Yorick Peterse
  * vpereira
  * Toshiaki Asai
  * Sergio Campama
  * Watson
  * Regis d'Aubarede

== Ruby-GNOME2 1.2.0: 2013-01-24

GTK+ 3 support release!

=== Changes

==== All

  * Added ruby-gtk3 package. Here is a list:
    * Ruby/GLib2
    * Ruby/ATK
    * Ruby/Pango
    * Ruby/GdkPixbuf2
    * Ruby/GDK3
    * Ruby/GTK3

==== Ruby/GLib2

  * Improvements
    * Supported custom VALUE <-> GBoxed conversion
    * Supported VALUE <-> GBoxed conversion by RVAL2GOBJ
    * Added GLib::Source::REMOVE
    * Added GLib::Source::CONTINUE
    * Added rbgobj_make_boxed_raw()
    * Added GLib::Value for internal use
    * [windows] Updated to the latest GLib: 2.28.8-1 -> 2.34.3
  * Changes
    * Removed deprecated GLib::Win32.get_package_installation_directory
    * Removed deprecated GLib::Win32.get_package_installation_subdirectory
    * Added user_data to RGConvertTable callbacks
    * rbgobj_convert_define() copies passed RGConvertTable
    * Removed deprecated G_DEF_FUNDAMENTAL. Use RG_DEF_CONVERSION instead

==== Ruby/GIO2

  * Improvements
    * Installed headers

==== Ruby/ATK

  * Improvements
    * [windows] Updated to the latest ATK: 1.32.0 -> 2.6.0

==== Ruby/Pango

  * Improvements
    * [windows] Updated to the latest Pango: 1.28.3 -> 1.32.6

==== Ruby/GdkPixbuf2

  * Improvements
    * [windows] Updated to the latest gdk-pixbuf: 2.24.0 -> 2.26.5

==== Ruby/GTK2

  * Improvements
    * Removed needless not copy flag from Allocation
    * [windows] Updated to the latest GTK+ 2: 2.24.8 -> 2.24.14

==== Ruby/GDK3

  * Improvements
    * [windows] Supported: 3.6.4

==== Ruby/GTK3

  * Improvements
    * Removed needless not copy flag from Allocation
    * [windows] Supported: 3.6.4

==== Ruby/GObjectIntrospection

  * Improvements
    * Supported over loaded method
    * Supported over loaded constructor
    * Supported GBoxed object
    * Supported char *
    * Supported GInterface
    * Supported CallableInfo
    * Supported may be null
    * Supported union object
    * Supported not GBoxed struct
    * Supported out parameter
    * Supported C array
    * Added "?" suffix to predicate method name
    * Supported SourceFunc callback
    * Supported GValue
    * Added GObjectIntrospection::Loader.register_boxed_class_converter
    * Supported inout parameter
    * Supported binary data array
  * Changes
    * ArgInfo#[] -> ArgInfo#get_arg

==== Ruby/CairoGObject

  * Added

==== Ruby/Clutter

  * Added

==== Ruby/ClutterGtk

  * Added

== Ruby-GNOME2 1.1.9: 2012-12-29

This is a experimental GObjectIntrospection support release.

=== Changes

==== Ruby/GLib2

  * Improvements
    * Renamed G_DEF_CLASS4 to G_DEF_CLASS_WITH_PARENT.
      G_DEF_CLASS4 is still usable but it is deprecated.

==== Ruby/GObjectIntrospection

  * Added. It is still experimental.

== Ruby-GNOME2 1.1.8: 2012-12-19

This is a bug fix release for Ruby 2.0.0.

=== Changes

==== All

  * Fixes
    * Fixed a bug that *.so isn't installed with Ruby 2.0.0.

== Ruby-GNOME2 1.1.7: 2012-12-10

This is a package for Windows fix release.

=== Changes

==== Ruby/GTK2

  * Fixes
    * Bundled GTK+ 2.24.8-1 instead of GTK+ 2.24.10-1.
      [Reported by Mahoro Shimura]

=== Thanks

  * Mahoro Shimura

== Ruby-GNOME2 1.1.6: 2012-12-02

This is Ruby 2.0.0 support release!

=== Changes

==== All

  * Fixes
    * Fixed install error on Ruby 2.0.0.
      [ruby-gnome2-devel-en] Recent Ruby: 'depend' files must be changed
      [Reported by Carlo E. Prelz]

==== Ruby/GLib2

  * Improvements
    * Improved portability a bit. '$,' is used instead of rb_output_fs.
      [GktHub:#117] [Reported by Marvin G端lker]

==== Ruby/GIO2

  * Fixes
    * Fixed a crash bug on i386. [Reported by TAKATSU Tomonari]

==== Ruby/GTK2

  * Improvements
    * Added Gtk::TreeModel#iter_root. [GitHub:121] [Patch by dmaciejak]
    * Added Gtk::TreeModel#iter_next. [GitHub:121] [Patch by dmaciejak]

==== Ruby/GdkPixbuf2

  * Fixes
    * Fixed build errors with old gdk-pixbuf.

==== Ruby/Poppler

  * Improvements
    * Added missing required Poppler version.
      [Suggested by Grant Schoep]
      [ruby-gnome2-devel-en] poppler, build fails, incorrect
      required_pkg_config_package?

  * Fixes
    * Fixed a wrong package name on Red Hat and Fedora.
      [Reported by Grant Schoep]
      [ruby-gnome2-devel-en] poppler, build fails, incorrect
      required_pkg_config_package?

  * Changes
    * Disabled auto Poppler install for Homebrew. It requires
      --with-glib option but auto install with --with-glib option
      isn't supported yet.

==== Ruby/GooCanvas

  * Improvements
    * Added Goo::Canvas#update. [GitHub:119] [Patch by dmaciejak]
    * Added Goo::Canvas#request_update. [GitHub:119] [Patch by dmaciejak]
    * Added Goo::Canvas#convert_from_pixels. [GitHub:123] [Patch by dmaciejak]
    * Added Goo::Canvas#convert_to_pixels. [GitHub:123] [Patch by dmaciejak]
    * Added Goo::Canvas#get_item_at. [GitHub:123] [Patch by dmaciejak]
    * Added Goo::Canvas#bounds. [GitHub:123] [Patch by dmaciejak]

==== Ruby/GStreamer

  * Improvements
    * Don't pass -h and --help to GStreamer.
      [GitHub:#118] [Reported by dmaciejak]

=== Thanks

  * TAKATSU Tomonari
  * dmaciejak
  * Grant Schoep
  * Carlo E. Prelz
  * Marvin G端lker

(obache)

2013-02-07 11:30:58 UTC MAIN commitmail json YAML

Revert API depends change, not needed.
Ok jperkin.

(wiz)

2013-02-07 10:28:49 UTC MAIN commitmail json YAML

Updated graphics/jhead to 2.97

(wiz)

2013-02-07 10:28:40 UTC MAIN commitmail json YAML

Update to 2.97:

Jul 9 2012:
Make it compile clean with visual studio 10

Jul 28 2012:
Various cleanups from debian folks.

Oct 19 2012:
Add feature to show quality of jpeg, (by Andy Spiegel)

Dec 27 2012:
Fix crash on some corrupt files bug, clarify time adjustment syntax in help

(wiz)

2013-02-07 10:26:05 UTC MAIN commitmail json YAML

Updated audio/libaudiofile to 0.3.5

(wiz)

2013-02-07 10:25:55 UTC MAIN commitmail json YAML

Update to 0.3.5:

Changes for Audio File Library version 0.3.5:

* Implement IMA ADPCM encoding and decoding for AIFF-C, CAF, and WAVE files.
* Implement Microsoft ADPCM encoding for WAVE files.
* Fix calculation of IRCAM frame size.
* Record marker comments in WAVE files.
* Improve validation of compressed audio formats.
* Add support for building without documentation.

(wiz)

2013-02-07 10:22:57 UTC MAIN commitmail json YAML

Reduce minium required OpenSSL version to 1.0.1c (instead of 1.0.1d) which
is what NetBSD 6.0* ships with.

The minimum ABI version was incorrect anyway and a result of an unnecessary
revision bump of the "openssl" package.

(tron)

2013-02-07 10:15:21 UTC MAIN commitmail json YAML

+ abcm2ps-7.4.0, highlight-3.13, ktorrent-4.3.1, libaudiofile-0.3.5,
  miniupnpd-1.8, opera-12.14, tea-34.0.1, webmin-1.620.

(wiz)

2013-02-07 02:24:40 UTC MAIN commitmail json YAML

Updated comms/asterisk18 to 1.8.20.1

(jnemeth)

2013-02-07 02:24:31 UTC MAIN commitmail json YAML

Update to Asterisk 1.8.20.1:  this is a minor bugfix release

----- 1.8.20.1

The Asterisk Development Team has announced the release of Asterisk 1.8.20.1.

The release of Asterisk 1.8.20.1 resolves several issues reported by the
community and would have not been possible without your participation.
Thank you!

The following are the issues resolved in this release:

* --- Fix astcanary startup problem due to wrong pid value from before
      daemon call

* --- Update init.d scripts to handle stderr; readd splash screen for
      remote consoles

* --- Reset RTP timestamp; sequence number on SSRC change

For a full list of changes in this release, please see the ChangeLog:

http://downloads.asterisk.org/pub/telephony/asterisk/ChangeLog-1.8.20.1

Thank you for your continued support of Asterisk!

----- 1.8.20.0

The Asterisk Development Team has announced the release of Asterisk 1.8.20.0.

The release of Asterisk 1.8.20.0 resolves several issues reported by the
community and would have not been possible without your participation.
Thank you!

The following is a sample of the issues resolved in this release:

* --- app_meetme: Fix channels lingering when hung up under certain
      conditions

* --- Fix stuck DTMF when bridge is broken.

* --- Improve Code Readability And Fix Setting natdetected Flag

* --- Fix extension matching with the '-' char.

* --- Fix call files when astspooldir is relative.

For a full list of changes in this release, please see the ChangeLog:

http://downloads.asterisk.org/pub/telephony/asterisk/ChangeLog-1.8.20.0

Thank you for your continued support of Asterisk!

(jnemeth)

2013-02-07 00:47:18 UTC MAIN commitmail json YAML

Oops, forgot to commit this file for updating of contao211 to 2.11.9.

(taca)

2013-02-06 23:24:19 UTC MAIN commitmail json YAML

2013-02-06 21:41:55 UTC MAIN commitmail json YAML

Note security/openssl update to 1.0.1d.

XXX: commit-changes-entry cannot handle multiple TODO matches.

(jperkin)

2013-02-06 21:40:34 UTC MAIN commitmail json YAML

Update OpenSSL to 1.0.1d.  Changes are far too numerous to list, the main one being
that we can now take advantage of AES-NI support in modern processors to significantly
increase performance.

Miscellaneous pkgsrc changes:

- Remove unnecessary warning message on Solaris.
- Fix RPATH for libgost.so.
- MD2 support is optional, enabled by default for compatability.

(jperkin)

2013-02-06 20:32:32 UTC MAIN commitmail json YAML

Updated net/trafshow to 5.2.3nb2

(jperkin)

2013-02-06 20:32:18 UTC MAIN commitmail json YAML

Avoid socket buffering on Solaris, a blank screen is not all that useful.

Bump PKGREVISION.

(jperkin)

2013-02-06 19:45:47 UTC MAIN commitmail json YAML

Updated net/tcpdump to 4.3.0

(jperkin)

2013-02-06 19:45:26 UTC MAIN commitmail json YAML

Update net/tcpdump to 4.3.0.  Changes since 4.1.1:

  Summary for 4.3.0 tcpdump release
        fixes for forces: SPARSE data (per RFC 5810)
        some more test cases added
        updates to documentation on -l, -U and -w flags.
        Fix printing of BGP optional headers.
        Tried to include DLT_PFSYNC support, failed due to headers required.
        added TIPC support.
        Fix LLDP Network Policy bit definitions.
        fixes for IGMPv3's Max Response Time: it is in units of 0.1 second.
        SIGUSR1 can be used rather than SIGINFO for stats
        permit -n flag to affect print-ip for protocol numbers
        ND_OPT_ADVINTERVAL is in milliseconds, not seconds
        Teach PPPoE parser about RFC 4638

  Summary for 4.2.1 tcpdump release
        Only build the Babel printer if IPv6 is enabled.
        Support Babel on port 6696 as well as 6697.
        Include ppi.h in release tarball.
        Include all the test files in the release tarball, and don't
        "include" test files that no longer exist.
        Don't assume we have <rpc/rpc.h> - check for it.
        Support "-T carp" as a way of dissecting IP protocol 112 as CARP
        rather than VRRP.
        Support Hilscher NetAnalyzer link-layer header format.
        Constify some pointers and fix compiler warnings.
        Get rid of never-true test.
        Fix an unintended fall-through in a case statement in the ARP
        printer.
        Fix several cases where sizeof(sizeof(XXX)) was used when just
        sizeof(XXX) was intended.
        Make stricter sanity checks in the ES-IS printer.
        Get rid of some GCCisms that caused builds to fai with compilers
        that don't support them.
        Fix typo in man page.
        Added length checks to Babel printer.

  Summary for 4.2.+
        merged 802.15.4 decoder from Dmitry Eremin-Solenikov <dbaryshkov
          at gmail dot com>
        updates to forces for new port numbers
        Use "-H", not "-h", for the 802.11s option. (-h always help)
        Better ICMPv6 checksum handling.
        add support for the RPKI/Router Protocol, per -ietf-sidr-rpki-rtr-12
        get rid of uuencoded pcap test files, git can do binary.
        sFlow changes for 64-bit counters.
        fixes for PPI packet header handling and printing.
        Add DCB Exchange protocol (DCBX) version 1.01.
        Babel dissector, from Juliusz Chroboczek and Gr辿goire Henry.
        improvements to radiotap for rate values > 127.
        Many improvements to ForCES decode, including fix SCTP TML port
        updated RPL type code to RPL-17 draft
        Improve printout of DHCPv6 options.
        added support and test case for QinQ (802.1q VLAN) packets
        Handle DLT_IEEE802_15_4_NOFCS like DLT_IEEE802_15_4.
        Build fixes for Sparc and other machines with alignment restrictions.
        Merged changes from Debian package.
        PGM: Add ACK decoding and add PGMCC DATA and FEEDBACK options.
        Build fixes for OSX (Snow Leopard and others)
        Add support for IEEE 802.15.4 packets

  Summary for 4.1.2 tcpdump release
        If -U is specified, flush the file after creating it, so it's
          not zero-length
        Fix TCP flags output description, and some typoes, in the man
          page
        Add a -h flag, and only attempt to recognize 802.11s mesh
          headers if it's set
        When printing the link-layer type list, send *all* output to
          stderr
        Include the CFLAGS setting when configure was run in the
          compiler flags

(jperkin)

2013-02-06 19:31:06 UTC MAIN commitmail json YAML

2013-02-06 18:07:19 UTC MAIN commitmail json YAML

Updated net/libpcap to 1.3.0

(jperkin)

2013-02-06 18:07:04 UTC MAIN commitmail json YAML

Update libpcap to 1.3.0.  Main pkgsrc change is support for Solaris 11/illumos.

Summary for 1.3.0 libpcap release
        Handle DLT_PFSYNC in {FreeBSD, other *BSD+Mac OS X, other}.
        Linux: Don't fail if netfilter isn't enabled in the kernel.
        Add new link-layer type for NFC Forum LLCP.
        Put the CANUSB stuff into EXTRA_DIST, so it shows up in the release tarball.
        Add LINKTYPE_NG40/DLT_NG40.
        Add DLT_MPEG_2_TS/LINKTYPE_MPEG_2_TS for MPEG-2 transport streams.
        [PATCH] Fix AIX-3.5 crash with read failure during stress
        AIX fixes.
        Introduce --disable-shared configure option.
        Added initial support for canusb devices.
        Include the pcap(3PCAP) additions as 1.2.1 changes.
        many updates to documentation: pcap.3pcap.in
        Improve 'inbound'/'outbound' capture filters under Linux.
        Note the cleanup of handling of new DLT_/LINKTYPE_ values.
        On Lion, don't build for PPC.
        For mac80211 devices we need to clean up monitor mode on exit.

Summary for 1.2.1 libpcap release
        Update README file.
        Fix typoes in README.linux file.
        Clean up some compiler warnings.
        Fix Linux compile problems and tests for ethtool.h.
        Treat Debian/kFreeBSD and GNU/Hurd as systems with GNU
        toolchains.
        Support 802.1 QinQ as a form of VLAN in filters.
        Treat "carp" as equivalent to "vrrp" in filters.
        Fix code generated for "ip6 protochain".
        Add some new link-layer header types.
        Support capturing NetFilter log messages on Linux.
        Clean up some error messages.
        Turn off monitor mode on exit for mac80211 interfaces on Linux.
        Fix problems turning monitor mode on for non-mac80211 interfaces
        on Linux.
        Properly fail if /sys/class/net or /proc/net/dev exist but can't
        be opened.
        Fail if pcap_activate() is called on an already-activated
        pcap_t, and add a test program for that.
        Fix filtering in pcap-ng files.
        Don't build for PowerPC on Mac OS X Lion.
        Simplify handling of new DLT_/LINKTYPE_ values.
        Expand pcap(3PCAP) man page.

Summary for 1.2 libpcap release
        All of the changes listed below for 1.1.1 and 1.1.2.
        Changes to error handling for pcap_findalldevs().
        Fix the calculation of the frame size in memory-mapped captures.
        Add a link-layer header type for STANAG 5066 D_PDUs.
        Add a link-layer type for a variant of 3GPP TS 27.010.
        Noted real nature of LINKTYPE_ARCNET.
        Add a link-layer type for DVB-CI.
        Fix configure-script discovery of VLAN acceleration support.
        see http://netoptimizer.blogspot.com/2010/09/tcpdump-vs-vlan-tags.html
        Linux, HP-UX, AIX, NetBSD and OpenBSD compilation/conflict fixes.
        Protect against including AIX 5.x's <net/bpf.h> having been included.
        Add DLT_DBUS, for raw D-Bus messages.
        Treat either EPERM or EACCES as "no soup for you".
        Changes to permissions on DLPI systems.
        Add DLT_IEEE802_15_4_NOFCS for 802.15.4 interfaces.

(jperkin)

2013-02-06 17:02:27 UTC MAIN commitmail json YAML

Remove unneccessary firefox line.

(ryoon)

2013-02-06 16:06:01 UTC MAIN commitmail json YAML

Note update ot devel/ruby-railties, devel/ruby-railties31 and
devel/ruby-railties32 packages:

devel/ruby-railties 3.0.20nb1
devel/ruby-railties31 3.1.10nb1
devel/ruby-railties32 3.2.11nb1

(taca)

2013-02-06 16:04:58 UTC MAIN commitmail json YAML

Allow depending to more newer version of ruby-thor package.

Bump PKGREVISION.

(taca)

2013-02-06 16:04:42 UTC MAIN commitmail json YAML

Allow depending to more newer version of ruby-thor package.

Bump PKGREVISION.

(taca)

2013-02-06 16:04:23 UTC MAIN commitmail json YAML

Allow depending to more newer version of ruby-thor package.

Bump PKGREVISION.

(taca)

2013-02-06 15:57:31 UTC MAIN commitmail json YAML

Note update of www/contao211 package to 2.11.9.

(taca)

2013-02-06 15:56:56 UTC MAIN commitmail json YAML

Update contao211 to 2.11.9.
This relase contains fix for CVE-2012-6112(TinyMCE), too.

Version 2.11.9 (2013-02-05)
---------------------------

### Fixed
Support numeric front end dates in the form generator (see #5238).

### Fixed
Support whitespace characters when parsing simple tokens (see #5323).

### Fixed
Allow to run multiple TinyMCE instances with different configurations on the
same page (thanks to Andreas Schempp) (see #4453).

### Fixed
Correctly trigger the "saveNewPassword" hook (see #5247).

### Fixed
Consider the `save_callback` of the password field in `tl_user` when a back end
user is forced to change his password (see #5138).

### Fixed
Do not group standalone lightbox elements on HTML5 pages (see #3742).

### Fixed
Anonymize IP addresses in `Form::processFormData()` (see #5255).

### Fixed
Replaced the 1200 pixel limit when resizing images with the values defined in
the system settings (see #5268).

### Fixed
Make sure there is an array in `Controller::generateMargin()` (see #5217).

### Fixed
More robust input validation in the back end filter menu and no more absolute
paths in error messages printed to the screen (thanks to aulmn) (see #4971).

### Fixed
Unset non-existing fields when restoring versions (see #5219).

(taca)

2013-02-06 15:53:57 UTC MAIN commitmail json YAML

Note update of devel/ruby-rdoc package to 3.12.1.

(taca)

2013-02-06 15:53:15 UTC MAIN commitmail json YAML

Update ruby-rdoc to 3.12.1.

=== 3.12.1 / 2013-02-05

* Bug fixes
  * Fixed an XSS exploit in darkfish.js.  This could lead to cookie disclosure
    to third parties.  See CVE-2013-0256[rdoc-ref:CVE-2013-0256.rdoc] for full
    details including a patch you can apply to generated RDoc documentation.
  * Ensured that rd parser files are generated before checking the manifest.

(taca)

2013-02-06 15:51:41 UTC MAIN commitmail json YAML

Note update of Ruby 1.9.3-p385 related pacakges:

lang/ruby193-base 1.9.3p385
databases/ruby-gdbm 1.9.3p385nb2
devel/ruby-curses 1.9.3p385
devel/ruby-fiddle 1.9.3p385
devel/ruby-readline 1.9.3p385nb2
x11/ruby-tk 1.9.3p385nb1
lang/ruby193 1.9.3p385
devel/ruby-mode 1.9.3p385

(taca)

2013-02-06 15:48:31 UTC MAIN commitmail json YAML

Update ruby193 pacakges to 1.9.3p385.

This release includes a security fix about bundled RDoc.
Full changes are too may to write here, please refer ChangeLog.

(taca)

2013-02-06 15:25:24 UTC MAIN commitmail json YAML

2013-02-06 15:08:40 UTC MAIN commitmail json YAML

+ mysql-5.5.30.

(taca)

2013-02-06 11:09:35 UTC MAIN commitmail json YAML

Fix LDFLAGS parsing bug on SunOS (upstream PR submitted).

(fhajny)

2013-02-06 08:44:06 UTC MAIN commitmail json YAML

Disable man pages by default.

(wiz)

2013-02-06 08:00:53 UTC MAIN commitmail json YAML

Updated mail/sendmail-cidrexpand to 8.14.6

(jnemeth)

2013-02-06 08:00:46 UTC MAIN commitmail json YAML

- reset PKGREVISION for update to sendmail 8.14.6
- appease pkglint

(jnemeth)

2013-02-06 07:52:32 UTC MAIN commitmail json YAML

Updated mail/sendmail-qtool to 8.14.6

(jnemeth)

2013-02-06 07:52:06 UTC MAIN commitmail json YAML

- reset PKGREVISION for update to sendmail 8.14.6
- appease pkglint

(jnemeth)

2013-02-06 07:47:18 UTC MAIN commitmail json YAML

Updated mail/libmilter to 8.14.6

(jnemeth)

2013-02-06 07:43:05 UTC MAIN commitmail json YAML

Updated mail/sendmail to 8.14.6

(jnemeth)

2013-02-06 07:42:16 UTC MAIN commitmail json YAML

Updated www/libmicrohttpd to 0.9.25

(wiz)

2013-02-06 07:42:05 UTC MAIN commitmail json YAML

Update to 0.9.25:

Fri Feb  1 10:19:44 CET 2013
Handle case where POST data contains "key=" without value
at the end and is not new-line terminated by invoking the
callback with the "key" during MHD_destroy_post_processor (#2733). -CG

Wed Jan 30 13:09:30 CET 2013
Adding more 'const' to allow keeping of reason phrases in ROM.
(see mailinglist). -CG/MV

Tue Jan 29 21:27:56 CET 2013
Make code work with PlibC 0.1.7 (which removed plibc_init_utf8).
Only relevant for W32. Fixes #2734. -CG

Sat Jan 26 21:26:48 CET 2013
Fixing regression introduced Jan 6 (test on data_size instead
of total_size. -CG

Fri Jan 11 23:21:55 CET 2013
Also return MHD_YES from MHD_destroy_post_processor if
we did not get '\r\n' in the upload. -CG

Sun Jan  6 21:10:13 CET 2013
Enable use of "MHD_create_response_from_callback" with
body size of zero. -CG

(wiz)

2013-02-06 07:42:05 UTC MAIN commitmail json YAML

Update to sendmail 8.14.6:  this is a general bug fix release.
- will look at making recently requested changes in a subsequent commit

8.14.6/8.14.6 2012/12/23
Fix a regression introduced in 8.14.5: if a server offers
two AUTH lines, the MTA would not read them after
STARTTLS has been used and hence SMTP AUTH for
the client side would fail.  Problem noted by Lena.
Do not cache hostnames internally in a non case sensitive way
as that may cause addresses to change from lower case
to upper case or vice versa. These header modifications
can cause problems with milters that rely on receiving
headers in the same way as they are being sent out such
as a DKIM signing milter.
If MaxQueueChildren is set then it was possible that new queue
runners could not be started anymore because an
internal counter was subject to a race condition.
If a milter decreases the timeout it waits for a communication
with the MTA, the MTA might experience a write() timeout.
In some situations, the resulting error might have been
ignored.  Problem noted by Werner Wiethege.
Note: decreasing the communication timeout in a milter
should not be done without considering the potential
problems.
smfi_setsymlist() now properly sets the list of macros for
the milter which invoked it, instead of a global
list for all milters.  Problem reported by
David Shrimpton of the University of Queensland.
If Timeout.resolver.retrans is set to a value larger than 20,
then resolver.retry was temporarily set to 0 for
gethostbyaddr() lookups. Now it is set to 1 instead.
Patch from Peter.
If sendmail could not lock the statistics file due to a system
error, and sendmail later sends a DSN for a mail that
triggered such an error, then sendmail tried to access
memory that was freed before (causing a crash on some
systems).  Problem reported by Ryan Stone.
Do not log negative values for size= nor pri= to avoid confusing
log parsers, instead limit the values to LONG_MAX.
Account for an API change in newer versions of Cyrus-SASL.
Patch from Hajimu UMEMOTO from FreeBSD.
Do not try to resolve link-local addresses for IPv4 (just as it
is done for IPv6).  Patch from John Beck of Oracle.
Improve logging of client and server STARTTLS connection failures
that may be due to incompatible cipher lists by including
the reason for the failure in a single log line.  Suggested
by James Carey of Boeing.
Portability:
Add support for Darwin 11.x and 12.x (Mac OS X 10.7 and 10.8).
Add support for SunOS 5.12 (aka Solaris 12). Patch from
John Beck of Oracle.

(jnemeth)

2013-02-05 18:53:35 UTC MAIN commitmail json YAML

pull in the patch for the ASF demuxer security flaw from vlc2, the
code is almost identical
bump PKGREV
thanks to Daniel Horecki for the hint

(drochner)

2013-02-05 18:49:06 UTC MAIN commitmail json YAML

add patch from upstream to fix insuficcient validation of UTF-8 strings
which is considered a security problem
bump PKGREV for the affected header, didn't check yet where this
header is compiled into
(boost-1.53 is out, just added the patch for a possible pullup)

(drochner)

2013-02-05 17:45:41 UTC MAIN commitmail json YAML

stellarium update

(drochner)

2013-02-05 17:45:05 UTC MAIN commitmail json YAML

update to 0.12.0
from the announcement:
This release brings some interesting new features:
- New rendering engine (Now you can see shadows on planets surfaces).
- New key-binding engine (Now all key-bindings can be edited).
- Improvements to scripting engine.
- Improvements to DSO
- Improvements to search tool
- Improved accuracy for archaeo-astronomical events
There have also been a large number of bug fixes and GUI improvements.
We are strongly recommended resetting all Stellarium settings
if you upgrade your previous installation!

(drochner)

2013-02-05 16:04:33 UTC MAIN commitmail json YAML

+ mysql-5.1.68, mysql-5.6.10, samba-4.0.3.

(taca)

2013-02-05 15:59:12 UTC MAIN commitmail json YAML

Note update of mail/postfix package to 2.8.14.

(taca)

2013-02-05 15:58:38 UTC MAIN commitmail json YAML

Update postfix to 2.8.14.

  * The postconf(1) master.cf options parser didn't support "clusters"
    of daemon command-line option letters.

  * The local(8) delivery agent dereferenced a null pointer while
    delivering to null command (for example, "|" in a .forward
    file). Reported by Gilles Chehade.

  * A memory leak fix for tls_misc.c was documented but not included.

(taca)

2013-02-05 15:55:10 UTC MAIN commitmail json YAML

Note update of security/openssl package to 0.9.8y.

(taca)

2013-02-05 15:54:31 UTC MAIN commitmail json YAML

Update openssl to 0.9.8y.

Changes between 0.9.8x and 0.9.8y [5 Feb 2013]

  *) Make the decoding of SSLv3, TLS and DTLS CBC records constant time.

    This addresses the flaw in CBC record processing discovered by
    Nadhem Alfardan and Kenny Paterson. Details of this attack can be found
    at: http://www.isg.rhul.ac.uk/tls/

    Thanks go to Nadhem Alfardan and Kenny Paterson of the Information
    Security Group at Royal Holloway, University of London
    (www.isg.rhul.ac.uk) for discovering this flaw and Adam Langley and
    Emilia Kè¾°sper for the initial patch.
    (CVE-2013-0169)
    [Emilia Kè¾°sper, Adam Langley, Ben Laurie, Andy Polyakov, Steve Henson]

  *) Return an error when checking OCSP signatures when key is NULL.
    This fixes a DoS attack. (CVE-2013-0166)
    [Steve Henson]

  *) Call OCSP Stapling callback after ciphersuite has been chosen, so
    the right response is stapled. Also change SSL_get_certificate()
    so it returns the certificate actually sent.
    See http://rt.openssl.org/Ticket/Display.html?id=2836.
    (This is a backport)
    [Rob Stradling <rob.stradling@comodo.com>]

  *) Fix possible deadlock when decoding public keys.
    [Steve Henson]

(taca)

2013-02-05 14:12:55 UTC MAIN commitmail json YAML

Updated x11/libdrm to 2.4.42

(wiz)

2013-02-05 14:12:47 UTC MAIN commitmail json YAML

Update to 2.4.42:

Alex Deucher (2):
      radeon: add OLAND family
      radeon: add OLAND pci ids

David Herrmann (1):
      man: fix manpage build instructions

Jesse Barnes (1):
      intel: add more VLV PCI IDs

Maarten Lankhorst (3):
      nouveau: use @PACKAGE_VERSION@ in libdrm_nouveau.pc
      libdrm: remove DISTCHECK_CONFIGURE_FLAGS
      configure.ac: bump version to 2.4.42 for release

Michel Dè¾°nzer (1):
      radeon: Fix 1D tiling layout on SI.

Thierry Reding (1):
      man: Fix typo and use $() for make expressions

(wiz)

2013-02-05 11:57:20 UTC MAIN commitmail json YAML

Updated net/mikutter to 0.2.1.1127

(obache)

2013-02-05 11:57:03 UTC MAIN commitmail json YAML

Update mikutter to 0.2.1.1127.
* reduce memory usage with Ruby Gtk2 1.2.1 and later.
* fix image preview from some sites.

(obache)

2013-02-05 11:09:02 UTC MAIN commitmail json YAML

Add revbump of xulrunner/firefox.

(ryoon)

2013-02-05 11:01:20 UTC MAIN commitmail json YAML

Ensure the correct DTrace ABI is used.  Fixes Solaris 32-bit build.

(jperkin)

2013-02-05 08:00:21 UTC MAIN commitmail json YAML

Updated print/kpathsea to 6.1.0nb1

(wiz)

2013-02-05 07:54:52 UTC MAIN commitmail json YAML

Include correct header for putenv to avoid
warning: reference to compatibility putenv(); include <stdlib.h> for correct reference

Addresses PR 47534 by David A. Holland.

(wiz)

2013-02-05 07:46:22 UTC MAIN commitmail json YAML

Mention samba30 and samba33 removals.

(wiz)

2013-02-05 07:45:56 UTC MAIN commitmail json YAML

2013-02-05 07:12:24 UTC MAIN commitmail json YAML

Fixed building on Darwin; pkglint cosmetics

(adam)

2013-02-04 20:37:24 UTC MAIN commitmail json YAML

this mornings updates.

(markd)

2013-02-04 20:31:44 UTC MAIN commitmail json YAML

2013-02-04 20:21:09 UTC MAIN commitmail json YAML

Update to 0.7.7  - based on patches from Jaap Boender

0.7.7 (2011-12-07)
- Many nepomuk field name fixes
- More accurate file format check for tar files
- Better checking of bounds in OLE files.
- Increase performance of default file input stream.
- Check for surrogate pairs in UTF-8 strings.
- Improve ID3 analyzer: skip zero padding before mp3 stream to
  handle typical LAME output, implement unsynchronization flag handling
- Properly finish child indexing in all analyzers.
0.7.6 (2011-07-26)
- Fix build with clucene 2.3
- Use the deprecated function av_metadata_get for libffmpeg
- Improved child indexing
- Convert the DateTime field in EXIF data to a time_t value.
- Move DigestEventAnalyzer to a plugin.
0.7.5
- Synchronize the modules. In 0.7.4, the modules were not synchronized.
0.7.4
- Disable building strigidaemon and strigiclient on windows
- Support more feature of Strigi Query in the CLucene backend.
- Fix premature EOF condition in PDF parser.
- Make discovering of invalid characters in checkHeader more compliant
  to RFC822.
- Improvements to movie analysers that use ffmpeg.
- Fix a bug where width and height of certain JPG files are not shown.
- Fixes to libstreams to avoid crashes.
- Improved Nepomuk compliance.
- Faster reading of streams with SkippingFileInputStream and
  MMapFileInputStream.
- Reorganize Strigi into smaller modules.
0.7.2
- Improve cpp analyzer speed and output
- Fix crash due to deep nesting of calls in pdf analyzer
- Fix iconv use on Mac OS X
0.7.1
- Support more fields from ODF documents
- Improved skipping behavior on streams for large files.
- Added album art support.
- Added support for ID3v1 tags.
- Added MP3 stream metadata extraction, UTF-16 support in tags.
- Extended the range of metadata extracted by ID3 analyzer.
- Added a FLAC audio file analyzer.
- Significantly unbreak the PDF analyzer.
- Fix scanning trees where permissions are insufficient to read some parts
- Check for multithreaded version of libxml2
- Require newer CLucene version (0.9.21)
0.7.0
- Change to Nepomuk ontologies
- Set file property for embedded ar streams. This fixes the opening
  of these streams in archivereader.
- Instead of reading each .rdf file at once in memory and then parse
  it, use the libxml2 I/O API to read chunks of the file when requested.
- The attribute value is not '\0' terminated but has a pointer to the
  end of the string. In addition, string comparison was sped up by
  first comparing the string length.
0.6.5
- Fix KDE bug 185551: Strigi now allows paths that start with protocol:/*
  like 'file:///' or 'remote:/'
- Add a new function AnalysisResult::child(). This function allows an
  AnalysisResult instance to access the last child it has had indexed.
  This is needed for cases when a parent knows something about a child
  which the child does not know. In such cases the parent can call
  child()->addValue(...).
- Adjust to the new library naming scheme in iconv-1.12
- Implemented missing addTriplet method
- Rewrite the implementation of ArchiveReader. The new implementation
  is more efficient in listing contents of directories. Now single
  directory entries can be returned without the need for reading the
  entire archive of which the directory is a part.

(markd)

2013-02-04 20:05:21 UTC MAIN commitmail json YAML

Update to 2.8.0 - from Jaap Boender

2.8.0
* Improved NRLModel query prefix expansion.
* Support for plain SQL queries in the Virtuoso backend.
* Introduced new query language flag QueryLanguageSparqlNoInference.
  This language is not supported by any backends. It is supposed to
  be used in clients like Nepomuk to avoid the usage of long user
  types which are harder to read.
* Convert Virtuoso IRI_ID values into simple literal strings. At some
  point if the need arises we might call ID_TO_IRI() to convert them
  into URIs.
* New boolean option "noStatementSignals" in the Virtuoso backend which
  will disable Model::statementsAdded() and friends.
* Improved local unix socket communication in the server/client system:
  A custom socket implementation as a replacment for QLocalSocket makes
  it possible to use one socket across threads.

2.7.6
* Support for the new SPARQL 1.1 DELETE statement which omits the graph
  to delete from for faster removeAllStatement execution.
* Support for the new default graph query result format of Virtuoso >= 6.1.5
* Fixed apidox generation with Doxygen 1.8.0.

2.7.5
* Be less strict when converting a string to a QDateTime:
  - Allow an empty time part, ie. "2011-10-04".
  - Allow the usage of a space instead of "T" to separate date from time.
* Fixed URI parsing in the SparqlModel.
* Fixed an endless loop in the VirtuosoModel destruction which can happen
  in rare error cases.
* Fixed serialization of non-string literal values.
* Support Turtle result encoding in the SPARQL model.

(markd)

2013-02-04 19:54:49 UTC MAIN commitmail json YAML

Update to 1.7.2 - from Jaap Boender

1.7.2                          31-March-2012
---------------------------------------------
- Fix and optimize searching via Nepomuk.

1.7.1                          03-March-2012
---------------------------------------------
- Don't truncate SPARQL queries in virtual collections.
- Optimize change notifications for deleted collection attributes.
- Fix possible data loss during item copy/move operations.

(markd)

2013-02-04 19:41:11 UTC MAIN commitmail json YAML

USE_GAMESGROUP, not SETGIDGAME.

(shattered)

2013-02-04 15:53:16 UTC MAIN commitmail json YAML

Remove "-no-cpp-precomp" from CPP_PRECOMP_FLAGS.
Obsolete since about Darwin-4.4.
Per Jason Bacon in PR 47531.

(wiz)

2013-02-04 12:34:34 UTC MAIN commitmail json YAML

+ libxdg-basedir-1.2.0

(obache)

2013-02-04 09:42:48 UTC MAIN commitmail json YAML

Mention branch in COMMENT.
>From Bug Hunting.

(wiz)

2013-02-04 09:39:45 UTC MAIN commitmail json YAML

+ slock-1.1.
>From Bug Hunting.

(wiz)

2013-02-04 09:35:29 UTC MAIN commitmail json YAML

+ SOGo-2.0.4, aria2-1.16.3, dd_rescue-1.31, eric5-5.3.0, wyrd-1.4.6.

(wiz)

2013-02-03 20:05:26 UTC MAIN commitmail json YAML

Updated print/epdfview to 0.1.8nb11

(jakllsch)

2013-02-03 20:00:28 UTC MAIN commitmail json YAML

Apparently we now need to convert BGRA to RGBA.  Bump pkgrev.
Backported from upstream, obtained via Debian GNU/Linux.

(jakllsch)

2013-02-03 19:48:02 UTC MAIN commitmail json YAML

2013-02-03 19:47:43 UTC MAIN commitmail json YAML

Changes with nginx 1.2.6

    *) Feature: the $request_time and $msec variables can now be used not
      only in the "log_format" directive.

    *) Bugfix: cache manager and cache loader processes might not be able to
      start if more than 512 listen sockets were used.

    *) Bugfix: in the ngx_http_dav_module.

+ Under NetBSD 5.1_STABLE, a large number of included vhosts led to SEGV, this
does not occur with nginx 1.2.6.

(imil)

2013-02-03 17:52:55 UTC MAIN commitmail json YAML

Bump PKGREVISION for previous

(kefren)

2013-02-03 17:48:46 UTC MAIN commitmail json YAML

2013-02-03 16:59:21 UTC MAIN commitmail json YAML

Updated graphics/cairo-gobject to 1.12.12

(wiz)

2013-02-03 16:59:03 UTC MAIN commitmail json YAML

Sync with cairo update to 1.12.12.

(wiz)

2013-02-03 16:58:25 UTC MAIN commitmail json YAML

Updated graphics/cairo to 1.12.12

(wiz)

2013-02-03 16:58:16 UTC MAIN commitmail json YAML

Update to 1.12.12:

Release 1.12.12 (2013-01-31 Chris Wilson <chris@chris-wilson.co.uk>)
===================================================================
The goal of this release is to fix the synchronisation problems that
were exhibited in the SHM transport for cairo-xlib. This cropped up
any place that tried to rapidly push fresh pixel data to the X server
through an ordinary image surface, such as gimp-2.9 and evince.

Bug fixes
---------

  Avoid replacing the entire image when uploading subimages
  https://bugs.freedesktop.org/show_bug.cgi?id=59635

  Force synchronisation for scratch SHM image buffers, so that we do
  not overwrite data as it is being read by X.
  https://bugs.freedesktop.org/show_bug.cgi?id=59635 (also)

  Fix typos in detecting multisampling for the GL (MSAA) backend.

  Fix a memory leak in the GL (MSAA) backend.

  Fix a reference counting bug when mapping a GL surface to an image.

(wiz)

2013-02-03 16:40:30 UTC MAIN commitmail json YAML

Updated misc/py-anki2 to 2.0.7

(wiz)

2013-02-03 16:40:18 UTC MAIN commitmail json YAML

Update to 2.0.7: bugfixes and translation updates.

(wiz)

2013-02-03 16:36:01 UTC MAIN commitmail json YAML

Updated devel/py-cython to 0.18

(wiz)

2013-02-03 16:35:51 UTC MAIN commitmail json YAML

Update to 0.18:

0.18 (2013-01-28)
=================

Features added
--------------

* Named Unicode escapes ("\N{...}") are supported.

* Python functions/classes provide the special attribute "__qualname__"
  as defined by PEP 3155.

* Added a directive ``overflowcheck`` which raises an OverflowException when
  arithmetic with C ints overflow.  This has a modest performance penalty, but
  is much faster than using Python ints.

* Calls to nested Python functions are resolved at compile time.

* Type inference works across nested functions.

* ``py_bytes_string.decode(...)`` is optimised.

* C ``const`` declarations are supported in the language.

Bugs fixed
----------

* Automatic C++ exception mapping didn't work in nogil functions (only in
  "with nogil" blocks).

(wiz)

2013-02-03 16:17:25 UTC MAIN commitmail json YAML

+ aria2-1.16.2, cairo-1.12.12, cairo-gobject-1.12.12, chrony-1.27,
  fotoxx-13.02, jhead-2.97, libmemcached-1.0.16, py-anki2-2.0.7,
  py-cython-0.18, py-pygments-1.6, qt5-libs-5.0.1, racket-5.3.2,
  trac-1.0.1, wine-devel-1.5.23, x264-devel-20130202,
  xf86-video-intel-2.21.0.

(wiz)

2013-02-03 16:09:27 UTC MAIN commitmail json YAML

Note update of misc/rubygems package to 1.8.25.

(taca)

2013-02-03 16:04:04 UTC MAIN commitmail json YAML

Update rubygems to 1.8.25.

=== 1.8.25/ 2013-01-24

* 6 bug fixes:

  * Added 11627 to setup bin_file location to protect against errors.
    Fixes #328 by ConradIrwin
  * Specification#ruby_code didn't handle Requirement with multiple
  * Fix error on creating a Version object with a frozen string.
  * Fix incremental index updates
  * Fix missing load_yaml in YAML-related requirement.rb code.
  * Manually backport encoding-aware YAML gemspec

(taca)

2013-02-03 14:39:13 UTC MAIN commitmail json YAML

Updated devel/mercurial to 2.5

(wiz)

2013-02-03 14:39:05 UTC MAIN commitmail json YAML

Update to 2.5:

This is a regularly-scheduled feature release.

1.1. Core features
    branchmap: improved performances
    bundle: add revset expression to show bundle contents (issue3487)
    dirstate: implement unix statfiles in C
    hgweb: add (Atom) subscribe links to the repository index
    hgweb: add "URL breadcrumbs"
    hgweb: add branches RSS and Atom feeds
    hgweb: secret changeset are excluded from html view (3614 )
    serve: use chunked encoding in hgweb responses
    pathencode: implement both basic and hashed encoding in C
    subrepo: append subrepo path to subrepo error messages
    validate: check for spurious incoming filelog entries
    hgweb: allow hgweb's archive to recurse into subrepos

1.2. Changeset Evolution

Major progress toward ChangesetEvolution were done.

    hidden changesets are now properly ignored by all commands
    a global --hidden flag is added to give access to hidden changesets
    rewriting a changeset but not its descendants is now allowed; this leaves unstable changeset behind
    we now detect *divergent* changesets. The third and last kind of obsolescence related troubles. divergent() revset is added
    a troubled() revset have been added
    branchmap for of *visible* and *served* changeset are now cached on disk. This is a major performance improvements
    performance improvements of most evolution related algorithm

1.3. Extension features

    color: add template label function
    convert: add config option to use the local time zone
    convert: add support for converting git submodule (issue3528)
    hgk: use Ttk instead of plain Tk
    inotify: don't fall over just because of a dangling symlink
    largefiles: fix revert removing a largefile from a merge
    largefiles: fix update from a merge with removed files
    largefiles: make log match largefiles in the non-standin location too
    largefiles: make update with backup files in .hglf slightly less broken
    largefiles: rename 'admin' to more descriptive 'lfstoredir
    rebase: performance improvements
    rebase: rebase set with multiple roots are now handled by the --rev option
    record: use patch.diffopts to account for user diffopts
    share: always set default path to work with subrepos (issue3518)
    zsh_completion: add completion of branch names

1.4. Fixes

    commands: 'hg bookmark NAME' should work even with ui.strict=True
    copies: do not track backward copies, only renames (issue3739)
    destroyed: keep the filecache in sync with __dict__ (issue3335, issue3693, issue3743)
    grep: don't search past the end of the searched string
    hgweb: properly returns 404 for unknown revision (instead of 500)
    histedit: proper phase conservation (issue3724)
    histedit: prevents obsolescence cycle (issue3681)
    hook: disable demandimport before importing hooks
    mq: don't fail when removing a patch without patch file from series file
    mq: fix qpop of working directory parent patch when not at qtip
    zeroconf: use port from server instead of picking port from config (issue3746)
    update: update to current bookmark if it moved out from under us (issue3682)
    bookmarks: show active bookmark even if not at working dir
    largefiles: let wirestore._stat return stats as expected by remotestore verify
    largefiles: adapt verify to batched remote statlfile (issue3780)
    largefiles: don't allow corruption to propagate after detection
    largefiles: don't verify largefile hashes on servers when processing statlfile
    largefiles: allow use of urls with #revision
    largefiles: fix commit when using relative paths from subdirectory
    largefiles: fix cat when using relative paths from subdirectory
    histedit: prevent parent guessed via --outgoing from being a revset (issue3770)
    rebase: delete divergent bookmarks on destination (issue3685)
    hgwebdir: use web.prefix when creating url breadcrumbs (issue3790)
    subrepo: allow skipping courtesy phase sync (issue3781)
    merge: .hgsubstate is special as merge destination, not as merge source
    merge: improved handling of symlinks

(wiz)

2013-02-03 14:36:45 UTC MAIN commitmail json YAML

Distfile changed in place (tweaked wording in docs and RPM spec
file). Set DIST_SUBDIR.

(schmonz)

2013-02-03 14:02:32 UTC MAIN commitmail json YAML

Whoops, rerun "make mps" after adding patch comments.

(schmonz)

2013-02-03 13:56:17 UTC MAIN commitmail json YAML

2013-02-03 13:00:40 UTC MAIN commitmail json YAML

Use COMPILER_RPATH_FLAG instead of -Wl,-rpath.

(ryoon)

2013-02-03 12:59:29 UTC MAIN commitmail json YAML

2013-02-03 12:37:40 UTC MAIN commitmail json YAML

Update HOMEPAGE and remove commented-out sf MASTER_SITE.
>From Bug Hunting.

(wiz)

2013-02-03 11:24:57 UTC MAIN commitmail json YAML

Updated devel/autoconf-archive to 2013.02.02

(wiz)

2013-02-03 11:24:49 UTC MAIN commitmail json YAML

Update to 2013.02.02:

* Noteworthy changes in release 2013.02.02 (2013-02-02) [stable]

  Support for AIX has been improved in AX_PTHREAD. Further details are
  available at <http://savannah.gnu.org/patch/index.php?7911>.

  AX_BOOST_FILESYSTEM has been improved to work more reliable on non-GNU
  systems. See <http://savannah.gnu.org/patch/?7921> for further details.

  The new macro AX_LIB_EV has been added, which checks for libev in a
  pkg-config-like manner. The purpose of the macro is to unifty behaviour
  between distros that come with libev.pc and systems (e.g. upstream) that
  don't. Further details are at <http://savannah.gnu.org/patch/?7938>.

  The portability of AX_PYTHON has been improved. Also, the macro now
  recognizes more recent versions of the Python interpreter, too. See
  <http://savannah.gnu.org/patch/?7897> for further details.

  Support for cross-compilation in AX_PROG_CC_FOR_BUILD has been improved.
  See <http://savannah.gnu.org/patch/index.php?7890> for further details.

  The new macro AX_PROG_CXX_FOR_BUILD has been added. Further details are
  available at <http://savannah.gnu.org/patch/?7891>.

  Mac OS X support in AX_OPENMP has been improved. Further details are
  available at <http://savannah.gnu.org/patch/?7893>.

(wiz)

2013-02-03 07:45:19 UTC MAIN commitmail json YAML

Fix typo in PKG_OPTIONS name.

(ryoon)

2013-02-03 05:13:26 UTC MAIN commitmail json YAML

2013-02-02 19:31:05 UTC MAIN commitmail json YAML

Updated www/ikiwiki to 3.20121212nb3

(schmonz)

2013-02-02 19:30:43 UTC MAIN commitmail json YAML

Apply another bugfix to the CVS backend from my git repo:

* `91b477c0`: Fix diffurl links (cvsweb expects unescaped '/').

Bump PKGREVISION.

(schmonz)

2013-02-02 18:10:41 UTC MAIN commitmail json YAML

2013-02-02 17:29:04 UTC MAIN commitmail json YAML

Another missed jpeg bump.

(dholland)

2013-02-02 16:59:35 UTC MAIN commitmail json YAML

2013-02-02 15:54:11 UTC MAIN commitmail json YAML

This should have been bumped along with other jpeg users, but got missed,
so do it now.
(I don't know if anything else got missed, I just happened to trip on
this one)

(dholland)

2013-02-02 14:01:32 UTC MAIN commitmail json YAML

Updated misc/ja-less to 382.262.03

(ryoon)

2013-02-02 13:59:58 UTC MAIN commitmail json YAML

Update to 382.262.03 using less-382-iso262.ext03.patch.gz
from http://bogytech.blogspot.jp/2011/07/kterm-jless-screen.html .

This update is based on isaki@'s work.

* Set PATCH_SITES as my non-NetBSD web space.

Changelog:
* Add UTF-8 support (Japanese part only)
* Change japanese83 behavior
* Change G1 default
* Add ISO-8859-10,11,13,14,15 support
* Ignore case in JLESSCHARSET and LANG variables
* Fix bugs in search
* Add .xz support (not enabled on pkgsrc)
* Some packport from less-443

(ryoon)

2013-02-02 12:00:20 UTC MAIN commitmail json YAML

2013-02-02 11:34:13 UTC MAIN commitmail json YAML

patches/patch-distbb__chroot.in is not needed anymore

(cheusov)

2013-02-02 11:19:48 UTC MAIN commitmail json YAML

Update to 0.46.0
  stage_upload_pkgs:
    - delete outdated packages after uploading
    - extra files are removed from remote repo
    - no verbose flag for rsync

  Serious fixes in stage_init
    - PKG_UPDATE_SRC_SUMMARY_CMD: -m is passed to pkg_src_summary by default

  Fix in signals handling

  Fix in "make-depends" (unknown function is_true)

  Fix: distbb -a option works correctly if pkg_summary.txt doesn't exist

  upload_pkgs_all_files:
    - directories and links are also output in addition to files

  distbb checks arguments passed to -x|-X for correctness.

  Configuraton variable SUDO was renamed to to DISTBB_SUDO.
  This fixed build failure of ruby193-base

  Configuraton variable OS was renamed to OPSYS

  Stderr of pkg_summary2deps is now a part of the final report

(cheusov)

2013-02-02 10:41:01 UTC pkgsrc-2012Q4 commitmail json YAML

Pullup tickets #4052 and #4054.

(tron)

2013-02-02 10:40:02 UTC pkgsrc-2012Q4 commitmail json YAML

Pullup ticket #4052 - requested by taca
databases/ruby-activerecord3: security update
devel/ruby-activemodel: security update
devel/ruby-activesupport3: security update
devel/ruby-railties: security update
mail/ruby-actionmailer3: security update
www/ruby-actionpack3: security update
www/ruby-activeresource3: security update
www/ruby-rails3: security update

Revisions pulled up:
- databases/ruby-activerecord3/distinfo                        1.18
- devel/ruby-activemodel/distinfo                              1.18
- devel/ruby-activesupport3/PLIST                              1.2
- devel/ruby-activesupport3/distinfo                            1.19
- devel/ruby-railties/distinfo                                  1.18
- lang/ruby/rails.mk                                            1.38
- mail/ruby-actionmailer3/distinfo                              1.20
- www/ruby-actionpack3/distinfo                                1.19
- www/ruby-activeresource3/distinfo                            1.18
- www/ruby-rails3/distinfo                                      1.19

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Tue Jan 29 15:36:12 UTC 2013

  Modified Files:
  pkgsrc/lang/ruby: rails.mk

  Log Message:
  Start update of Ruby on Rails 3.0.20.

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Tue Jan 29 15:37:52 UTC 2013

  Modified Files:
  pkgsrc/devel/ruby-activesupport3: PLIST distinfo

  Log Message:
  Update ruby-activesupport3 to 3.0.20.

  Fix CVE-2013-0333.

  There is a vulnerability in the JSON  code for Ruby on Rails which
  allows attackers to bypass authentication systems, inject arbitrary
  SQL, inject and execute arbitrary code, or perform a DoS attack on a
  Rails application.

  ## Rails 3.0.20 (unreleased)

  * Fix XML serialization of methods that return nil to not be
    considered as YAML (GH #8853 and GH #492)

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Tue Jan 29 15:38:40 UTC 2013

  Modified Files:
  pkgsrc/devel/ruby-activemodel: distinfo

  Log Message:
  Update ruby-activemodel to 3.0.20.

  Fix CVE-2013-0333.

  There is a vulnerability in the JSON  code for Ruby on Rails which
  allows attackers to bypass authentication systems, inject arbitrary
  SQL, inject and execute arbitrary code, or perform a DoS attack on a
  Rails application.

  ## Rails 3.0.20 (unreleased)

  * Fix XML serialization of methods that return nil to not be
    considered as YAML (GH #8853 and GH #492)

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Tue Jan 29 15:39:33 UTC 2013

  Modified Files:
  pkgsrc/www/ruby-activeresource3: distinfo

  Log Message:
  Update ruby-activeresource3 to 3.0.20.

  No change except version.

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Tue Jan 29 15:40:43 UTC 2013

  Modified Files:
  pkgsrc/databases/ruby-activerecord3: distinfo

  Log Message:
  Update ruby-activerecord3 to 3.0.20.

  No change except version.

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Tue Jan 29 15:41:17 UTC 2013

  Modified Files:
  pkgsrc/www/ruby-actionpack3: distinfo

  Log Message:
  Update ruby-actionpack3 to 3.0.20.

  No change except version.

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Tue Jan 29 15:41:49 UTC 2013

  Modified Files:
  pkgsrc/mail/ruby-actionmailer3: distinfo

  Log Message:
  Update ruby-actionmailer3 to 3.0.20.

  No change except version.

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Tue Jan 29 15:42:27 UTC 2013

  Modified Files:
  pkgsrc/devel/ruby-railties: distinfo

  Log Message:
  Update ruby-railties to 3.0.20.

  No change except version.

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Tue Jan 29 15:42:58 UTC 2013

  Modified Files:
  pkgsrc/www/ruby-rails3: distinfo

  Log Message:
  Update ruby-rails3 to 3.0.20.

  No change except version.

(tron)

2013-02-02 10:12:23 UTC pkgsrc-2012Q4 commitmail json YAML

Pullup ticket #4054 - requested by taca
net/samba: security update

Revisions pulled up:
- net/samba/Makefile                                            1.228 via patch
- net/samba/distinfo                                            1.88

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Wed Jan 30 11:42:55 UTC 2013

  Modified Files:
  pkgsrc/net/samba: Makefile distinfo

  Log Message:
  Update samba to 3.6.12.

                      ==============================
                      Release Notes for Samba 3.6.12
                            January 30, 2013
                      ==============================

  This is a security release in order to address
  CVE-2013-0213 (Clickjacking issue in SWAT) and
  CVE-2013-0214 (Potential XSRF in SWAT).

  o  CVE-2013-0213:
      All current released versions of Samba are vulnerable to clickjacking in the
      Samba Web Administration Tool (SWAT). When the SWAT pages are integrated into
      a malicious web page via a frame or iframe and then overlaid by other content,
      an attacker could trick an administrator to potentially change Samba settings.

      In order to be vulnerable, SWAT must have been installed and enabled
      either as a standalone server launched from inetd or xinetd, or as a
      CGI plugin to Apache. If SWAT has not been installed or enabled (which
      is the default install state for Samba) this advisory can be ignored.

  o  CVE-2013-0214:
      All current released versions of Samba are vulnerable to a cross-site
      request forgery in the Samba Web Administration Tool (SWAT). By guessing a
      user's password and then tricking a user who is authenticated with SWAT into
      clicking a manipulated URL on a different web page, it is possible to manipulate
      SWAT.

      In order to be vulnerable, the attacker needs to know the victim's password.
      Additionally SWAT must have been installed and enabled either as a standalone
      server launched from inetd or xinetd, or as a CGI plugin to Apache. If SWAT has
      not been installed or enabled (which is the default install state for Samba)
      this advisory can be ignored.

  Changes since 3.6.11:
  --------------------

  o  Kai Blin <kai@samba.org>
      * BUG 9576: CVE-2013-0213: Fix clickjacking issue in SWAT.
      * BUG 9577: CVE-2013-0214: Fix potential XSRF in SWAT.

(tron)

2013-02-02 08:52:59 UTC pkgsrc-2012Q4 commitmail json YAML

2013-02-02 08:50:50 UTC pkgsrc-2012Q4 commitmail json YAML

Pullup ticket #4053 - requested by taca
net/samba35: security update

Revisions pulled up:
- net/samba35/Makefile                                          1.26
- net/samba35/distinfo                                          1.15

---
  Module Name: pkgsrc
  Committed By: taca
  Date: Wed Jan 30 11:41:44 UTC 2013

  Modified Files:
  pkgsrc/net/samba35: Makefile distinfo

  Log Message:
  Update samba35 to 3.5.21.

                      ==============================
                      Release Notes for Samba 3.5.21
  January 30, 2013
                      ==============================

  This is a security release in order to address
  CVE-2013-0213 (Clickjacking issue in SWAT) and
  CVE-2013-0214 (Potential XSRF in SWAT).

  o  CVE-2013-0213:
      All current released versions of Samba are vulnerable to clickjacking in the
      Samba Web Administration Tool (SWAT). When the SWAT pages are integrated into
      a malicious web page via a frame or iframe and then overlaid by other content,
      an attacker could trick an administrator to potentially change Samba settings.

      In order to be vulnerable, SWAT must have been installed and enabled
      either as a standalone server launched from inetd or xinetd, or as a
      CGI plugin to Apache. If SWAT has not been installed or enabled (which
      is the default install state for Samba) this advisory can be ignored.

  o  CVE-2013-0214:
      All current released versions of Samba are vulnerable to a cross-site
      request forgery in the Samba Web Administration Tool (SWAT). By guessing a
      user's password and then tricking a user who is authenticated with SWAT into
      clicking a manipulated URL on a different web page, it is possible to manipulate
      SWAT.

      In order to be vulnerable, the attacker needs to know the victim's password.
      Additionally SWAT must have been installed and enabled either as a standalone
      server launched from inetd or xinetd, or as a CGI plugin to Apache. If SWAT has
      not been installed or enabled (which is the default install state for Samba)
      this advisory can be ignored.

  Changes since 3.5.20:
  ---------------------

  o  Kai Blin <kai@samba.org>
      * BUG 9576: CVE-2013-0213: Fix clickjacking issue in SWAT.
      * BUG 9577: CVE-2013-0214: Fix potential XSRF in SWAT.

(tron)

2013-02-02 08:12:50 UTC MAIN commitmail json YAML

+ sudo-1.8.6p6.

(taca)

2013-02-02 08:12:28 UTC MAIN commitmail json YAML

Note update of lang/ruby193-base package to 1.9.3p374nb1.

(taca)

2013-02-02 08:11:54 UTC MAIN commitmail json YAML

Add a two fixes from ruby-2.0.0/rubygems 1.8.25.

* Allow multiple conditions for requirement of gem's specification since
  some newer gem already use this feature.

(taca)

2013-02-02 08:11:14 UTC pkgsrc-2012Q4 commitmail json YAML

Pullup tickets #4049, #4050 and #4051.

(tron)

2013-02-02 08:07:01 UTC pkgsrc-2012Q4 commitmail json YAML

Pullup ticket #4051 - requested by obache
www/opera: security update

Revisions pulled up:
- www/opera/Makefile                                            1.102
- www/opera/PLIST                                              1.10
- www/opera/distinfo                                            1.44

---
  Module Name: pkgsrc
  Committed By: obache
  Date: Fri Feb  1 11:50:43 UTC 2013

  Modified Files:
  pkgsrc/www/opera: Makefile PLIST distinfo

  Log Message:
  Update opera to 12.13.

  Opera 12.13 is a recommended upgrade offering security and stability
  enhancements.

  Fixes and Stability Enhancements since Opera 12.12
  General and User Interface
      * Fixed an issue where Opera gets internal communication errors on Facebook
      * Fixed an issue where no webpages load on startup, if Opera is disconnected
        from the Internet
      * Fixed an issue where images will not load after back navigation, when a site
        uses the HTML5 history API (deviantart.com)
        Linux and Windows
          * A new stand-alone update-checker, as part of a planned upgrade of the
  auto-update system
        Windows
          * Improved protection against hijacking of the default search, including
  a one-time reset
  Security
      * Fixed an issue where DOM events manipulation might be used to execute
        arbitrary code, as reported by Arthur Gerkis; see our advisory:
          http://www.opera.com/support/kb/view/1042/
      * Fixed an issue where use of SVG clipPaths could allow execution of arbitrary
        code, as reported by anonymous via the iSIGHT Partners GVP Program; see our
        advisory:
          http://www.opera.com/support/kb/view/1043/
      * Fixed a low severity security issue; details will be disclosed at a later
        date
      * Fixed an issue where CORS requests could omit the preflight request, as
        reported by webpentest; see our advisory:
          http://www.opera.com/support/kb/view/1045/

(tron)

2013-02-02 08:04:24 UTC pkgsrc-2012Q4 commitmail json YAML

Pullup ticket #4050 - requested by obache
emulators/suse121_qt4: security update

Revisions pulled up:
- emulators/suse121_qt4/Makefile                                1.3
- emulators/suse121_qt4/distinfo                                1.3

---
  Module Name: pkgsrc
  Committed By: obache
  Date: Fri Feb  1 11:12:30 UTC 2013

  Modified Files:
  pkgsrc/emulators/suse121_qt4: Makefile distinfo

  Log Message:
  Update libqt4 RPMs to 4.7.4-19.17.1 for CVE-2012-6093.

  Bump PKGREVISION.

(tron)

2013-02-02 08:00:41 UTC pkgsrc-2012Q4 commitmail json YAML

Pullup ticket #4049 - requested by ryoon
pkgsrc/x11/py-gtk2: build fix

Revisions pulled up:
- x11/py-gtk2/buildlink3.mk                                    1.42

---
  Module Name: pkgsrc
  Committed By: ryoon
  Date: Thu Jan 31 18:30:50 UTC 2013

  Modified Files:
  pkgsrc/x11/py-gtk2: buildlink3.mk

  Log Message:
  * py-numpy should be buildlinke-ed on g95 support platforms only like Makefile.

(tron)

2013-02-02 07:56:58 UTC pkgsrc-2012Q4 commitmail json YAML

2013-02-02 07:53:09 UTC pkgsrc-2012Q4 commitmail json YAML

Pullup ticket #4048 - requested by drochner
multimedia/vlc2: security patch

Revisions pulled up:
- multimedia/vlc2/Makefile                                      1.23 via patch
- multimedia/vlc2/distinfo                                      1.14
- multimedia/vlc2/patches/patch-SA1302                          1.1

---
  Module Name:    pkgsrc
  Committed By:  drochner
  Date:          Wed Jan 30 15:52:19 UTC 2013

  Modified Files:
          pkgsrc/multimedia/vlc2: Makefile distinfo
  Added Files:
          pkgsrc/multimedia/vlc2/patches: patch-SA1302

  Log Message:
  add patch from upstream to fix Buffer Overflow in ASF Demuxer
  bump PKGREV

(tron)

2013-02-02 01:18:04 UTC MAIN commitmail json YAML

Bump libssh dependency.  Fixes bulk builds.

(jperkin)

2013-02-02 01:05:00 UTC MAIN commitmail json YAML

Fix previous, it didn't work as intended. Just having /usr/lib${LIBABISUFFIX}
there should be sufficient, and it works.

(hans)

2013-02-02 00:41:51 UTC MAIN commitmail json YAML

Work around the xdg-desktop-menu being completely useless wrt. pkgsrc.
Fix absolute paths in desktop file.
Bump PKGREVISION.
C.F. pkg/47523

(bad)

2013-02-01 23:09:54 UTC MAIN commitmail json YAML

Document .tar.bz2 requirement, requested by wiz.

(hans)

2013-02-01 22:25:26 UTC MAIN commitmail json YAML

2013-02-01 22:21:16 UTC MAIN commitmail json YAML

2013-02-01 21:55:55 UTC MAIN commitmail json YAML

Make pkg_info show the upstream version, for comparison to advisories etc.

(is)

2013-02-01 21:50:45 UTC MAIN commitmail json YAML

2013-02-01 16:47:51 UTC MAIN commitmail json YAML

Commit missing file, and fix the version gate. Thanks to Noud de Brouwer
for beta-testing the package.

(is)

2013-02-01 14:40:29 UTC MAIN commitmail json YAML

Spell XTHREAD_CPPFLAGS correctly.  This is confirmed required on Solaris, so
remove the XXX comments.

(jperkin)

2013-02-01 13:55:17 UTC MAIN commitmail json YAML

Depend on newer libssh. As these packages need libssh >= 0.4 anyway (per
own build docs), this actually makes remmina offer ssh and sftp, and makes
the NX plugin build. Thus bumping revision.

XXX TODO:
XXX - RDP still isn't offered in the menu.
XXX - upstream package is 1.0

Thanks to Noud Brouwer for the original libssh-0.5.4 package from
pkgsrc-wip, which was used as security/libssh with some corrections.

(is)

2013-02-01 13:33:49 UTC MAIN commitmail json YAML

Update libssh to (upstream) 0.5.4 == (our) 0.54.

(We need to keep the old numbering syntax to make versions compare
correctly.)

There are only two consumers in pkgsrc; one of them (remmina and
remmina-plugins) actually needed library version 0.4 or later, and
didn't build the ssh/sftp/nx plugins without. Hydra is also supposed
to build with 0.4.x and later.)

Upstream changelogs:

0.5.4:
CVE-2013-0176 - NULL dereference leads to denial of service
Fixed several NULL pointer dereferences in SSHv1.
Fixed a free crash bug in options parsing.

and for completeness 0.5.3:

This is an important SECURITY and maintenance release in
order to address CVE-2012-4559, CVE-2012-4560, CVE-2012-4561
and CVE-2012-4562.

CVE-2012-4559 - Fix multiple double free() flaws
CVE-2012-4560 - Fix multiple buffer overflow flaws
CVE-2012-4561 - Fix multiple invalid free() flaws
CVE-2012-4562 - Fix multiple improper overflow checks

(...)

(is)

2013-02-01 13:31:57 UTC MAIN commitmail json YAML

2013-02-01 13:13:23 UTC MAIN commitmail json YAML

Fix the first master site.

(jperkin)

2013-02-01 12:43:44 UTC MAIN commitmail json YAML

Treat /usr/lib${LIBABISUFFIX} like /usr/lib to avoid picking up the
wrong libraries from that dir.

(hans)

2013-02-01 12:36:06 UTC MAIN commitmail json YAML

Prefer openssl from pkgsrc on SunOS by default.

(hans)

2013-02-01 12:34:15 UTC MAIN commitmail json YAML

Use LIBABISUFFIX when creating the .pc files to make builtin openssl
work on 64bit SunOS and possibly others.

(hans)

2013-02-01 12:25:17 UTC MAIN commitmail json YAML

Set LIBABISUFFIX on SunOS x86_64. Should probably also be done for
sparcv9, but I can't test that.

(hans)

2013-02-01 11:51:00 UTC MAIN commitmail json YAML

2013-02-01 11:50:43 UTC MAIN commitmail json YAML

Update opera to 12.13.

Opera 12.13 is a recommended upgrade offering security and stability
enhancements.

Fixes and Stability Enhancements since Opera 12.12
General and User Interface
  * Fixed an issue where Opera gets internal communication errors on Facebook
  * Fixed an issue where no webpages load on startup, if Opera is disconnected
    from the Internet
  * Fixed an issue where images will not load after back navigation, when a site
    uses the HTML5 history API (deviantart.com)
    Linux and Windows
      * A new stand-alone update-checker, as part of a planned upgrade of the
auto-update system
    Windows
      * Improved protection against hijacking of the default search, including
a one-time reset
Security
  * Fixed an issue where DOM events manipulation might be used to execute
    arbitrary code, as reported by Arthur Gerkis; see our advisory:
      http://www.opera.com/support/kb/view/1042/
  * Fixed an issue where use of SVG clipPaths could allow execution of arbitrary
    code, as reported by anonymous via the iSIGHT Partners GVP Program; see our
    advisory:
      http://www.opera.com/support/kb/view/1043/
  * Fixed a low severity security issue; details will be disclosed at a later
    date
  * Fixed an issue where CORS requests could omit the preflight request, as
    reported by webpentest; see our advisory:
      http://www.opera.com/support/kb/view/1045/

(obache)

2013-02-01 11:26:22 UTC MAIN commitmail json YAML

Use .tar.bz2 distfile so that no extra dependency on archivers/xz is
needed when building lang/gcc* with option gcc-inplace-math.

(hans)

2013-02-01 11:12:45 UTC MAIN commitmail json YAML

Updated emulators/suse121_qt4 to 12.1nb2

(obache)

2013-02-01 11:12:30 UTC MAIN commitmail json YAML

Update libqt4 RPMs to 4.7.4-19.17.1 for CVE-2012-6093.

Bump PKGREVISION.

(obache)

2013-02-01 08:02:39 UTC MAIN commitmail json YAML

Depend on boehm-gc-7.2. From tsugutomo.enami in PR 47519.

(wiz)

2013-02-01 05:37:06 UTC MAIN commitmail json YAML

Updated geography/p5-Geo-Distance to 0.20

(wen)

2013-02-01 05:36:14 UTC MAIN commitmail json YAML

Update to 0.20

Upstream changes:
0.20      2012-10-19
- Fix a test that was comparing floating point numbers and falling over on
  some platforms.

(wen)

2013-02-01 05:31:43 UTC MAIN commitmail json YAML

Updated devel/p5-Mouse to 1.04

(wen)

2013-02-01 05:30:35 UTC MAIN commitmail json YAML

Update to 1.04

Upstream changes:
1.04 2013-01-11 01:46:18
    [FEATURES]
    - Implement $attr->default($instance) for compatibility with Moose

1.03 2013-01-11 01:10:38
    [FEATURES]
    - Add maybe_type() from Moose::Util::TypeConstraints (schwern)

(wen)

2013-02-01 05:20:48 UTC MAIN commitmail json YAML

Updated devel/p5-App-cpanminus to 1.5021

(wen)

2013-02-01 05:19:49 UTC MAIN commitmail json YAML

Update to 1.5021

Upstream changes:
1.5021 Thu Jan 31 00:42:28 PST 2013
  [Improvements]
      - Added new --verify option that enables verifying CHECKSUM and SIGNATURE for distributions
        from CPAN/PAUSE

1.5020 Tue Jan 29 10:29:08 PST 2013
  [Bug Fixes]
      - Fixed a bug in --cascade-search that was checking a wrong version from 02packages file (Bryce Baril)
      - Added a workaround for older version of File::Temp bug (kentnl)

(wen)

2013-02-01 05:13:17 UTC MAIN commitmail json YAML

Updated www/p5-Plack to 1.0016

(wen)

2013-02-01 05:12:08 UTC MAIN commitmail json YAML

Update to 1.0016

Upstream changes:
1.0016 Thu Jan 31 13:21:14 PST 2013
    [SECURITY]
        - Fixed directory traversal bug in Plack::App::File on win32 environments

    [INCOMPATIBLE CHANGES]
        - Updated Plack::Builder OO interface to be more natural. Still keeps backward
          compatible to the old ->mount() and ->to_app() interface.

    [NEW FEATURES]
        - Static middleware 'path' callback now takes $env as a 2nd argument (avar)
        - Static middleware takes 'content_type' callback to determine custom MIME (pstadt)

    [IMPROVEMENTS]
        - Fixed regexp warning for blead (doy)
        - Documentation update for AccessLog::Timed to suggest Runtime (ether)
        - Ignore vim swap files on restarter (nihen)
        - Major doucmentation overhaul on Apache2 startup files (rkitover, avar)

(wen)

2013-02-01 05:07:08 UTC MAIN commitmail json YAML

Updated devel/p5-Tree-DAG_Node to 1.10

(wen)

2013-02-01 05:05:54 UTC MAIN commitmail json YAML

Update to 1.10

Upstream changes:
1.10  Fri Feb  1 08:53:00 2012
- Change t/pod.t to look for Test::Pod 1.45, but comment out Test::Pod in Build.PL and Makefile.PL.
This means Test::Pod is not used at all if it is not installed. As per RT#83077.

(wen)

2013-02-01 04:58:31 UTC MAIN commitmail json YAML

Updated time/p5-Time-Interval to 1.232

(wen)

2013-02-01 04:57:13 UTC MAIN commitmail json YAML

Update to 1.232
Add LICENSE

Upstream changes:
1.232 Thu Jan 31 21:41:40 CST 2013
those damn ._* files os x kindly inserted into the distribution
I have removed them. sorry everyone.

1.231         Wed Jan 30 07:58:21 CST 2013
forgot to add LICENSE to manifest.
incremented version for CPAN upload

1.23 Tue Jan 29 10:13:54 CST 2013
updated LICENSE.
this perl module is released under the same license
as perl itself

(wen)

2013-02-01 03:44:22 UTC MAIN commitmail json YAML

Fix NetBSD build with gcc <= 4.5 on arm (missing builtin atomics).

(jmcneill)

2013-02-01 01:34:13 UTC MAIN commitmail json YAML

added x11/lxsession (from wip)

(reed)

2013-02-01 01:31:37 UTC MAIN commitmail json YAML

move from pkgsrc wip
(change from wip package: install README)

LXSession is the default session manager of LXDE. It is used to
start and setup the desktop environment.  It can optionally restart
crashed programs.  It includes a built-in lightweight Xsettings
daemon which can configure gtk+ themes, keyboard, and mouse.  It
also provides a logout program.

(reed)

2013-01-31 23:34:21 UTC MAIN commitmail json YAML

Revert previous, jperkin says it's wrong.

(hans)

2013-01-31 23:12:53 UTC MAIN commitmail json YAML

Always set _USE_GCC_SHLIB on SunOS, just like the older versions of gcc do.

(hans)

2013-01-31 23:08:55 UTC MAIN commitmail json YAML

2013-01-31 23:01:56 UTC MAIN commitmail json YAML

lang/gcc-aux: Fix DragonFly iostream bug

(marino)