Link [ pkgsrc | NetBSD | pkgsrc git mirror | PR fulltext-search | netbsd commit viewer ]


   
        usage: [branch:branch] [user:user] [path[@revision]] keyword [... [-excludekeyword [...]]] (e.g. branch:MAIN pkgtools/pkg)




switch to index mode

recent branches: MAIN (2h)  pkgsrc-2024Q1 (15d)  pkgsrc-2023Q4 (43d)  pkgsrc-2023Q2 (75d)  pkgsrc-2023Q3 (155d) 

2024-05-13 18:59:48 UTC Now

2015-12-31 22:02:35 UTC MAIN commitmail json YAML

www/dojo was removed

(ryoon)

2015-12-31 21:44:03 UTC MAIN commitmail json YAML

Updated cross/arm-none-eabi-gcc5 to 5.3.0

(ryoon)

2015-12-31 21:42:50 UTC MAIN commitmail json YAML

Update gcc5 to 5.3.0 and gcc-libs to 5.3.0nb1

Changelog:
Target Specific Changes
IA-32/x86-64

    GCC now supports the Intel CPU named Skylake with AVX-512 extensions
    through -march=skylake-avx512. The switch enables the following ISA
    extensions: AVX-512F, AVX512VL, AVX-512CD, AVX-512BW, AVX-512DQ.

(ryoon)

2015-12-31 19:48:52 UTC MAIN commitmail json YAML

Updated lang/erlang* to 18.2.1

(fhajny)

2015-12-31 19:47:41 UTC MAIN commitmail json YAML

Update lang/erlang to 18.2.1.

erlang 18.2.1

Due to a bug in the handling of paths on windows none of the following
would work with paths containing a space:

- ct_run
- dialyzer
- erlc
- escript
- typer

This also contains a fix for HiPE enabled emulator for FreeBSD.

erlang 18.2

- ssl: Add configurable upper limit for session cache.
- erts: Add function enif_getenv to read OS environment variables in
  a portable way from NIFs.
- kernel: Add {line_delim, byte()} option to inet:setopts/2 and
  decode_packet/3
- ssh: The 'ecdsa-sha2-nistp256', 'ecdsa-sha2-nistp384' and
  'ecdsa-sha2-nistp521' signature algorithms for ssh are implemented.
  See RFC 5656.
- ssh: The ssh:daemon option dh_gex_groups is extended to read a user
  provided ssh moduli file with generator-modulus pairs. The file is
  in openssh format.
- Thanks to 41 different contributors!

(fhajny)

2015-12-31 18:54:32 UTC MAIN commitmail json YAML

document removal of misc/pkgng

(agc)

2015-12-31 18:51:48 UTC MAIN commitmail json YAML

2015-12-31 18:49:20 UTC MAIN commitmail json YAML

Updated games/openttd to 1.5.3

(leot)

2015-12-31 18:48:55 UTC MAIN commitmail json YAML

Update games/openttd to 1.5.3.

Changes:
1.5.3 (2015-12-01)
------------------------------------------------------------------------
(None)

1.5.3-RC1 (2015-11-01)
------------------------------------------------------------------------
- Fix: When selecting a refit cargo for orders, do not check whether the vehicle
  is in a depot or station, and do not ask whether the vehicle currently allows
  station-refitting. Also hide the refit cost for orders, it is not predictable
  (r27428)
- Fix: Use the NewGRF railtype sorting order in the infrastructure window
  (r27427)
- Fix: Crash when switching to or taking over companies, when an order window of
  a vehicle of the new company was opened. Now close those windows [FS#5842]
  (r27425)
- Fix: Towns did not connect roads to existing roads, unless they had only a
  single roadbit. Otoh, towns also tried to connect to single roadbit tiles
  such as tunnels and depots, even though they were not connectable in the
  direction of interest [FS#6374] (r27424)
- Fix: When towns expanded single-bit roadtiles using a grid-layout, they used
  the layout position of the neighbouring tile (r27423)
- Fix: Aircraft picked the wrong airport entry point, if airports were rotated
  by 180 degree [FS#6341] (r27422)
- Fix: Consider text and icon sizes when drawing the client list [FS#6265]
  (r27421)
- Fix: GrowTownAtRoad sometimes returned false, even when a house was built
  [FS#6362] (r27420)
- Fix: CmdSellRailWagon did not revert all actions properly when no orderlist
  could be allocated [FS#6369] (r27419)
- Fix: Desync due to incorrect storage of segments with different railtype in
  the YAPF cache [FS#6329] [FS#6379] (r27418)
- Fix: When a dedicated server was paused with no clients, the master server
  advertisement interval was slowed, causing deadvertisement of the server
  [FS#6368] (r27400)
- Fix: [Makefile] Game script directory and compat*.nut were never installed
  on *nix (r27399)
- Fix: There are two different availability conditions for fdatasync in the
  manpage. Use them both, since at least on some MinGW versions one is not
  enough (r27389)
- Fix: win32 sound driver failed to report errors (r27383)
- Fix: Clickareas in settings tree were misaligned when the filter warning was
  displayed, if the setting height was defined by the icons instead of the font
  [FS#6358] (r27366)
- Fix: Center settings filter warning also vertically, and also in case of
  multiple lines (r27365)

(leot)

2015-12-31 18:32:05 UTC MAIN commitmail json YAML

Note addition of pkgng-1.6.2

(agc)

2015-12-31 18:31:07 UTC MAIN commitmail json YAML

Add and enable pkgng

(agc)

2015-12-31 13:29:36 UTC MAIN commitmail json YAML

2015-12-31 13:27:42 UTC MAIN commitmail json YAML

Updated sysutils/xentools45 to 4.5.1nb8

(jnemeth)

2015-12-31 13:27:10 UTC MAIN commitmail json YAML

Stop installing xenbackendd.  It is leftover cruft from the xm toolstack.
Running it will interfere with the operation of the xl toolstack, so it
should never be used now that the xm toolstack is gone.

(jnemeth)

2015-12-31 12:22:41 UTC MAIN commitmail json YAML

Updated textproc/p5-Text-Xslate to 3.3.9

(wen)

2015-12-31 12:21:03 UTC MAIN commitmail json YAML

Update to 3.3.9

Upstream changes:
3.3.9 2015-12-18 22:15:00+0900
    - Fix test for Windows
      3.3.8 change breaks Windows

3.3.8 2015-12-18 16:20:00+0900
    - Fix test for DragonflyBSD
    - Update document

(wen)

2015-12-31 12:07:56 UTC MAIN commitmail json YAML

Updated net/nmap to 7.01

(adam)

2015-12-31 12:06:34 UTC MAIN commitmail json YAML

Nmap 7.01 [2015-12-09]

o Switch to using gtk-mac-bundler and jhbuild for building the OS X installer.
  This promises to reduce a lot of the problems we've had with local paths and
  dependencies using the py2app and macports build system. [Daniel Miller]

o The Windows installer is now built with NSIS 2.47 which features LoadLibrary
  security hardening to prevent DLL hijacking and other unsafe use of temporary
  directories. Thanks to Stefan Kanthak for reporting the issue to NSIS and to
  us and the many other projects that use it.

o Updated the OpenSSL shipped with our binary builds (Windows, OS X, and RPM)
  to 1.0.2e.

o [Zenmap] [GH-235] Fix several failures to launch Zenmap on OS X. The new
  build process eliminates these errors:
    IOError: [Errno 2] No such file or directory: '/Applications/Zenmap.app/Contents/Resources/etc/pango/pangorc.in'
    LSOpenURLsWithRole() failed for the application /Applications/Zenmap.app with error -10810.

o [NSE] [GH-254] Update the TLSSessionRequest probe in ssl-enum-ciphers to
  match the one in nmap-service-probes, which was fixed previously to correct a
  length calculation error. [Daniel Miller]

o [NSE] [GH-251] Correct false positives and unexpected behavior in http-*
  scripts which used http.identify_404 to determine when a file was not found
  on the target. The function was following redirects, which could be an
  indication of a soft-404 response. [Tom Sellers]

o [NSE] [GH-241] Fix a false-positive in hnap-info when the target responds
  with 200 OK to any request. [Tom Sellers]

o [NSE] [GH-244] Fix an error response in xmlrpc-methods when run against a
  non-HTTP service. The expected behavior is no output. [Niklaus Schiess]

o [NSE] Fix SSN validation function in http-grep, reported by Bruce Barnett.

(adam)

2015-12-31 09:57:48 UTC MAIN commitmail json YAML

Updated databases/elasticsearch to 2.1.1

(fhajny)

2015-12-31 09:57:31 UTC MAIN commitmail json YAML

Update databases/elastisearch to 2.1.1.

elasticsearch 2.1.1
===================

Enhancements

Aggregations
- [Children agg] fix bug that prevented all child docs from being evaluated
Core
- If we can't get a MAC address for the node, use a dummy one
- Simplify shard inactive logging
- Simplify IndexingMemoryController#checkIdle
- IndexingMemoryController should not track shard index states
Index Templates
- Disallow index template pattern to be the same as an alias name
Mapping
- throw exception if a copy_to is within a multi field
- Register field mappers at the node level.

Bug fixes

Index APIs
- Field stats: Index constraints should remove indices in the response
  if the field to evaluate is empty
Internal
- Throw a meaningful error when loading metadata and an alias and index
  have the same name
Mapping
- Multi field names may not contain dots
Search
- Fix NPE when a segment with an empty cache gets closed.
Translog
- Fail and close translog hard if writing to disk fails
- Prevent writing to closed channel if translog is already closed
- Don't delete temp recovered checkpoint file it was renamed
Tribe Node
- Fix tribe node to load config file for internal client nodes

Regressions

Query DSL
- RangeQueryParser should accept _name in inner field

elasticsearch 2.1.0
===================

Breaking changesedit

CRUD
- Default detect_noop to true
Fielddata
- Remove the experimental indices.fielddata.cache.expire
Index APIs
- Add Force Merge API, deprecate Optimize API
Internal
- Forbid changing thread pool types
Java API
- Deprecates defaultRescoreWindowSize
Nested Docs
- If sorting by nested field then the nested_path should always be
  specified
Search
- Limit the size of the result window to a dynamic property
Stats
- The queue_size value should be shown as an integer.

Deprecations

Java API
- Deprecate the count api in favour of search with size 0
Parent/Child
- Deprecate score_type option in favour of the score_mode option
Query DSL
- Deprecate NotQueryBuilder
Search
- Deprecate _search/exists in favour of regular _search with size 0 and
  terminate_after 1
- Deprecate the scan search type.

New features

Aggregations
- Add percentiles_bucket pipeline aggregation
- Add stats_bucket / extended_stats_bucket pipeline aggs
Analysis
- Lithuanian analysis
Geo
- Adds geo_centroid metric aggregator

Enhancements

Allocation
- Add cluster-wide setting for total shard limit
- Early terminate high disk watermark checks on single data node cluster
- Also use PriorityComparator in shard balancer
- Add support for filtering by publish IP address
CAT API
- Add duration field to /_cat/snapshots
- Add cat API for repositories and snapshots
- Adds disk used by indices to _cat/allocation
Core
- Verify Checksum once it has been fully written to fail as soon as
  possible
Exceptions
- Deduplicate cause if already contained in shard failures
- Give a better exception when running from freebsd jail without
  enforce_statfs=1
- Make root_cause of field conflicts more obvious
- Use a dedicated id to serialize EsExceptions instead of it's class name.
- Validate class before cast.
- Improve error message of ClassCastExceptions
Geo
- Refactor geo_point validate* and normalize* for 2.x
Index APIs
- Limit type name length
Index Templates
- Accumulate validation errors when validating index templates
Internal
- Fix dangling comma in ClusterBlock#toString
- Improve some logging around master election and cluster state
- Add workaround for JDK-8014008
- Cleanup IndexMetaData
- More helpful error message on parameter order
- Cleanup InternalClusterInfoService
- Remove and forbid use of com.google.common.base.Throwables
- Remove cyclic dependencies between IndexService and FieldData/BitSet
  caches
- Remove and forbid use of com.google.common.base.Objects
- Remove and forbid use of com.google.common.collect.ImmutableList
- Remove and forbid use of com.google.common.collect.Lists
- Remove unused code from query_string parser and settings
- Consolidate duplicate logic in RoutingTable all*ShardsGrouped
- Turn DestructiveOperations.java into a Guice module.
- Remove CachedDfSource
- Enable indy (invokedynamic) compile flag for Groovy scripts by
  default
Java API
- Prevents users from building a BulkProcessor with a null client
Logging
- Move logging for the amount of free disk to TRACE
Packaging
- Drop ability to execute on Solaris
- Nuke ES_CLASSPATH appending, JarHell fail on empty classpath elements
- improve seccomp syscall filtering
- Block process execution with seccomp on linux/amd64
- Remove JAVA_HOME detection from the debian init script
Plugin Cloud AWS
- Enable S3SignerType
- Remove cloud.account and cloud.key settings
Plugin Cloud GCE
- cloud-gce plugin should check discovery.type
Plugin Discovery EC2
- Adding US-Gov-West
- Improved building of disco nodes
Plugin Repository S3
- Add aws canned acl
Plugins
- Don't be lenient in PluginService#processModule(Module)
- Adds a validation for plugins script to check if java is set
- Plugins: Removed plugin.types
- Improve java version comparison and explicitly enforce a version format
- Output plugin info only in verbose mode
Query DSL
- Internal: simplify filtered query conversion to lucene query
- Remove unsupported rewrite from multi_match query builder
- Remove unsupported rewrite option from match query builder
- Make FunctionScore work on unmapped field with missing parameter
Scripting
- Add property permissions so groovy scripts can serialize json
Scroll
- Optimize sorted scroll when sorting by _doc.
Search
- fix numerical issue in function score query
- Optimize scrolls for constant-score queries.
- Optimize counts on simple queries.
Search Templates
- Adds template support to _msearch resource
Snapshot/Restore
- Simplify the BlobContainer blob writing interface
- Add readonly option for repositories
Stats
- Add os.allocated_processors stats
- Adds stats counter for failed indexing requests

Bug fixes

Aggregations
- Pass extended bounds into HistogramAggregator when creating an
  unmapped aggregator
- Added correct generic type parameter on ScriptedMetricBuilder
- Pipeline Aggregations at the root of the agg tree are now validated
- Estimate HyperLogLog bias via k-NN regression
Allocation
- Fix calculation of next delay for delayed shard allocation
- Take ignored unallocated shards into account when making allocation
  decision
- Only allow rebalance operations to run if all shard store data is
  available
- Delayed allocation can miss a reroute
- Check rebalancing constraints when shards are moved from a node they
  can no longer remain on
CAT API
- Properly set indices and indicesOptions on subrequest made by
  /_cat/indices
CRUD
- Index name expressions should not be broken up
Cluster
- Handle shards assigned to nodes that are not in the cluster state
Core
- Use fresh index settings instead of relying on @IndexSettings
- Fork Lucene PatternTokenizer to apply LUCENE-6814 (closes
- Record all bytes of the checksum in VerifyingIndexOutput
- When shard becomes active again, immediately increase its indexing buffer
- Close TokenStream in finally clause
- LoggingRunnable.run should catch and log all errors, not just Exception?
Exceptions
- Fix ensureNodesAreAvailable's error message
Fielddata
- Don't cache top level field data for fields that don't exist
Geo
- Geo: Allow numeric parameters enclosed in quotes for geohash_grid
  aggregation
- Resync Geopoint hashCode/equals method
- Fix GeoPointFieldMapper to index geohash at correct precision.
Index APIs
- Field stats: Fix NPE for index constraint on empty index
- Field stats: Added format option for index constraints
- Restore previous optimize transport action name for bw comp
- Forbid index name . and ..
Index Templates
- Validate settings specified in index templates at template creation time
Internal
- fix mvn verify on jigsaw with 2.1
- fixup issues with 32-bit jvm
- Failure to update the cluster state with the recovered state should
  make sure it will be recovered later
- Gateway: a race condition can prevent the initial cluster state from
  being recovered
- Verify actually written checksum in VerifyingIndexOutput
- An inactive shard is activated by triggered synced flush
Logging
- Don't log multi-megabyte guice exceptions.
- Moving system property setting to before it can be used
Mapping
- Make _type use doc values
- Mapping: Allows upgrade of indexes with only search_analyzer specified
Packaging
- Handle system policy correctly
- Startup script exit status should catch daemonized startup failures
- Don't let ubuntu try to install its crazy jayatana agent.
Parent/Child
- Remove unnecessary usage of extra index searchers
- Plugin Delete By Query
- Fix Delete-by-Query with Shield
- Delete by query to not wrap the inner query into an additional query
  element
Plugins
- Fix plugin list command error message
- Fix HTML response during redirection
REST
- XContentFactory.xContentType: allow for possible UTF-8 BOM for JSON
  XContentType
- RestUtils.decodeQueryString ignores the URI fragment when parsing
  a query string
Search
- Fix the quotes in the explain message for a script score function
  without parameters
Settings
- ByteSizeValue.equals should normalize units
- Snapshot/Restore
- Snapshot restore and index creates should keep index settings and
  cluster blocks in sync
- Fix blob size in writeBlob() method
Stats
- Add extra validation into cluster/stats
- Omit current* stats for OldShardStats
Translog
- Translog recovery can repeatedly fail if we run out of disk
- Pending operations in the translog prevent shard from being marked
  as inactive

Regressions

Internal
- Deduplicate concrete indices after indices resolution

Upgrades

Core
- Upgrade Lucene to 5.3.1
- Upgrade to lucene-5.3.0.
Geo
- Update to spatial4j 0.5 for correct Multi-Geometry
Internal
- Update to Jackson 2.6.2
Plugin Cloud AWS
- Update AWS SDK version to 1.10.19
Plugin Discovery EC2
- Upgrade to aws 1.10.33

(fhajny)

2015-12-31 09:09:55 UTC MAIN commitmail json YAML

Updated databases/redis to 3.0.6

(fhajny)

2015-12-31 09:09:36 UTC MAIN commitmail json YAML

Update databases/redis to 3.0.6.

--[ Redis 3.0.6 ] Release date: 18 Dec 2015

Upgrade urgency: MODERATE. We fixed a crash that happens very rarely, so
                updating does not hurt, but most users are unlikely to
                experience this condition because it requires some odd
                timing. However if you are a Redis Cluster user, upgrading
                is strongly adviced since this release includes very
                important improvements to Redis Cluster.

* [FIX] lua_struct.c/getnum security issue fixed. (Luca Bruno discovered it,
        patched by Sun He and Chris Lamb)
* [FIX] Redis Cluster replica migration fixed. See issue #2924 for details.
        (Salvatore Sanfilippo)
* [FIX] Fix a race condition in processCommand() because of interactions
        with freeMemoryIfNeeded(). Details in issue #2948 and especially
        in the commit message d999f5a. (Race found analytically by
        Oran Agra, patch by Salvatore Sanfilippo)

* [NEW] Backported from the upcoming Redis 3.2:
        MIGRATE now supports an extended multiple-keys pipelined mode, which
        is an order of magnitude faster. Redis Cluster now uses this mode
        in order to perform reshardings and rebalancings. (Salvatore Sanfilippo)
* [NEW] Backported from the upcoming Redis 3.2:
        Redis Cluster has now support for rebalancing via the redis-trib
        rebalance command. Demo here:
        https://asciinema.org/a/0tw2e5740kouda0yhkqrm5790
        Official documentation will be available ASAP. (Salvatore Sanfilippo)
* [NEW] Redis Cluster redis-trib.rb new "info" subcommand.
* [NEW] Redis Cluster tests improved. (Salvatore Sanfilippo)
* [NEW] Log offending memory access address on SIGSEGV/SIGBUS (Salvatore
        Sanfilippo)

(fhajny)

2015-12-31 08:56:13 UTC MAIN commitmail json YAML

Updated graphics/flickrnet to 3.17.0

(ryoon)

2015-12-31 08:55:48 UTC MAIN commitmail json YAML

Update to 3.17.0

* Fix DISTNAME and use github framework

Changelog:
just some small tweaks

(ryoon)

2015-12-31 08:50:01 UTC MAIN commitmail json YAML

Updated www/liferea to 1.10.17

(leot)

2015-12-31 08:49:38 UTC MAIN commitmail json YAML

Updated www/firefox-l10n to 43.0.3

(ryoon)

2015-12-31 08:49:23 UTC MAIN commitmail json YAML

Update www/liferea to 1.10.17.

Changes:
* Fixes Github #194: Add source dialog visually broken
  (reported by k0377)
* Fixes Github #195: Out-dated documentation on enclosure download
  (reported by brian-in-crawford)
* Fixes Github #223: Search folder dialog don't show rules
  (reported by Guido Masella)
* Fixes Github #227: Preference dialog fails to load with latest
  GtkBuilder (patch by Yanko Kaneti)
* Fixes Github #234: Segmentation fault upon attempting to add an OPML
  (reported by GreenLunar)
* Fixes compilation error when there is no libnotify
* Added debugging for #258: Dialog loading issues
  (patch by glitsj16)

(leot)

2015-12-31 08:49:11 UTC MAIN commitmail json YAML

Update to 43.0.3

* Sync with firefox-43.0.3

(ryoon)

2015-12-31 08:46:17 UTC MAIN commitmail json YAML

Updated www/firefox to 43.0.3

(ryoon)

2015-12-31 08:45:42 UTC MAIN commitmail json YAML

Update to 43.0.3

* Fix alsa option build, fix PR pkg/50427

Changelog:
    Fix: Fix network issue when using Nvidia's Network Access Manager (1233237)
    Fix: On some Windows configurations, improve the decoding of some videos on YouTube (1233970)

(ryoon)

2015-12-31 08:09:26 UTC MAIN commitmail json YAML

Updated fonts/umefont-ttf to 0.580

(ryoon)

2015-12-31 08:08:40 UTC MAIN commitmail json YAML

Update to 0.580

Status:
Unadjusted glyphs (characters; 1st pass): Uninode 88a8-8b95
Unadjusted glyphs (Bushu; 1st pass): Koromo, Gonben

(ryoon)

2015-12-31 07:10:20 UTC MAIN commitmail json YAML

2015-12-31 07:08:44 UTC MAIN commitmail json YAML

Update Apache httpd and KDE version

(ryoon)

2015-12-31 07:08:01 UTC MAIN commitmail json YAML

Updated misc/tmux to 2.1

(ryoon)

2015-12-31 07:07:16 UTC MAIN commitmail json YAML

Update to 2.1

Changelog:
CHANGES FROM 2.0 to 2.1 18 October 2015

Incompatible Changes
====================

* Mouse-mode has been rewritten.  There's now no longer options for:
- mouse-resize-pane
- mouse-select-pane
- mouse-select-window
- mode-mouse

  Instead there is just one option:  'mouse' which turns on mouse support
  entirely.
* 'default-terminal' is now a session option.  Furthermore, if this is set
  to 'screen-*' then emulate what screen does.  If italics are wanted, this
  can be set to 'tmux' but this is still new and not necessarily supported
  on all platforms with older ncurses installs.
* The c0-* options for rate-limiting have been removed.  Instead, a backoff
  approach is used.

Normal Changes
==============

* New formats:
- session_activity
- window_linked
- window_activity_format
- session_alerts
- session_last_attached
- client_pid
- pid
* 'copy-selection', 'append-selection', 'start-named-buffer' now understand
  an '-x' flag to prevent it exiting copying mode.
* 'select-pane' now understands '-P' to set window/pane background colours.
* 'renumber-windows' now understands windows which are unlinked.
* 'bind' now understands multiple key tables.  Allows for key-chaining.
* 'select-layout' understands '-o' to undo the last layout change.
* The environment is updated when switching sessions as well as attaching.
* 'select-pane' now understands '-M' for marking a pane.  This marked pane
  can then be used with commands which understand src-pane specifiers
  automatically.
* If a session/window target is prefixed with '=' then only an exact match
  is considered.
* 'move-window' understands '-a'.
* 'update-environment' understands '-E' when attach-session is used on an
  already attached client.
* 'show-environment' understands '-s' to output Bourne-compatible commands.
* New option: 'history-file' to save/restore command prompt history.
* Copy mode is exited if the history is cleared whilst in copy-mode.
* 'copy-mode' learned '-e' to exit copy-mode when scrolling to end.

(ryoon)

2015-12-31 03:46:14 UTC MAIN commitmail json YAML

Updated textproc/p5-XML-XPath to 1.16

(wen)

2015-12-31 03:45:22 UTC MAIN commitmail json YAML

Update to 1.16
Add LICENSE

Upstream changes:
1.16  2015-12-28 MANWAR
      - Fixed issues RT# 87781, RT# 54389 and RT# 73982.

1.15  2015-12-27 MANWAR
      - Added Changes file to the MANIFEST file.
      - Added LICENSE file.
      - Added MANIFEST.SKIP file.
      - Tidied up pod document of the package XML::XPath.

1.14  2015-12-26 MANWAR
      - Added Changes file.
      - Enabled 'warnings' check.
      - Moved packages to lib/ folder.
      - Added key 'resources' to the Makefile.PL script.

(wen)

2015-12-31 03:39:22 UTC MAIN commitmail json YAML

Updated textproc/p5-Text-Sass to 1.0.3

(wen)

2015-12-31 03:38:06 UTC MAIN commitmail json YAML

Update to 1.0.3

Upstream changes:
1.0.1 - support custom functions.
  use Text::Sass Functions => [qw(package package)];

1.0.0 - PR#2 (annulen:multiline_var) from Konstantin Tokarev
(No changelog for 1.0.3 upstream)

(wen)

2015-12-31 03:26:43 UTC MAIN commitmail json YAML

Updated databases/p5-DBD-mysql to 4.033

(wen)

2015-12-31 03:23:31 UTC MAIN commitmail json YAML

Update to 4.033

Upstream changes:
2015-10-26 Patrick Galbraith, Michiel Beijen, DBI/DBD community (4.033)
* Full-release to include 03.

2015-10-25 Patrick Galbraith, Michiel Beijen, DBI/DBD community (4.032_03)
* Use mysql_get_option to read net_buffer_length and mysql_get_parameter
  where available, needed for MySQL 5.7.9. Patch from berntm @ Oracle.
  https://github.com/perl5-dbi/DBD-mysql/pull/42
* Fix mysql_conn_attrs test when run against MySQL 5.1 server.
* Fix for memory leak to $sth->{ParamValues} , RT83051
    https://rt.cpan.org/Public/Bug/Display.html?id=83051
* Fixes for running test suite on MySQL 5.7.
* Fix running test suite with InnoDB disabled, reported by bor.

(wen)

2015-12-31 02:59:33 UTC MAIN commitmail json YAML

Note addition of security/boringssl

(agc)

2015-12-31 02:58:39 UTC MAIN commitmail json YAML

Add and enable boringssl

(agc)

2015-12-30 17:43:00 UTC MAIN commitmail json YAML

Added www/libsass|sassc version 3.3.2

(adam)

2015-12-30 17:42:06 UTC MAIN commitmail json YAML

Added www/libsass|sassc version 3.3.2

(adam)

2015-12-30 17:40:49 UTC MAIN commitmail json YAML

SassC is a wrapper around libsass used to generate a useful command-line
application that can be installed and packaged for several operating systems.

(adam)

2015-12-30 17:40:30 UTC MAIN commitmail json YAML

LibSass is a C/C++ port of the Sass CSS precompiler. The original version was
written in Ruby, but this version is meant for efficiency and portability.

This library strives to be light, simple, and easy to build and integrate with
a variety of platforms and languages.

(adam)

2015-12-30 17:01:05 UTC pkgsrc-2015Q4 commitmail json YAML

2015-12-30 16:55:18 UTC pkgsrc-2015Q4 commitmail json YAML

Pullup ticket #4882 - requested by sevan
multimedia/ffmpeg2: security fix

Revisions pulled up:
- multimedia/ffmpeg2/Makefile.common                            1.41
- multimedia/ffmpeg2/distinfo                                  1.43
- multimedia/ffmpeg2/patches/patch-libavcodec_libvpxenc.c      deleted

---
  Module Name:    pkgsrc
  Committed By:  wiz
  Date:          Sun Dec 27 21:45:56 UTC 2015

  Modified Files:
          pkgsrc/multimedia/ffmpeg2: Makefile.common distinfo
  Removed Files:
          pkgsrc/multimedia/ffmpeg2/patches: patch-libavcodec_libvpxenc.c

  Log Message:
  Update ffmpeg2 to 2.8.4.

  version 2.8.4
  - rawdec: only exempt BIT0 with need_copy from buffer sanity check
  - mlvdec: check that index_entries exist
  - avcodec/mpeg4videodec: also for empty partitioned slices
  - avcodec/h264_refs: Fix long_idx check
  - avcodec/h264_mc_template: prefetch list1 only if it is used in the MB
  - avcodec/h264_slice: Simplify ref2frm indexing
  - avfilter/vf_mpdecimate: Add missing emms_c()
  - sonic: make sure num_taps * channels is not larger than frame_size
  - opus_silk: fix typo causing overflow in silk_stabilize_lsf
  - ffm: reject invalid codec_id and codec_type
  - golomb: always check for invalid UE golomb codes in get_ue_golomb
  - sbr_qmf_analysis: sanitize input for 32-bit imdct
  - sbrdsp_fixed: assert that input values are in the valid range
  - aacsbr: ensure strictly monotone time borders
  - aacenc: update max_sfb when num_swb changes
  - aaccoder: prevent crash of anmr coder
  - ffmdec: reject zero-sized chunks
  - swscale/x86/rgb2rgb_template: Fallback to mmx in interleaveBytes() if the alignment is insufficient for SSE*
  - swscale/x86/rgb2rgb_template: Do not crash on misaligend stride
  - avformat/mxfenc: Do not crash if there is no packet in the first stream
  - lavf/tee: fix side data double free.
  - avformat/hlsenc: Check the return code of avformat_write_header()
  - avformat/mov: Enable parser for mp3s by old HandBrake
  - avformat/mxfenc: Fix integer overflow in length computation
  - avformat/utils: estimate_timings_from_pts - increase retry counter, fixes invalid duration for ts files with hevc codec
  - avformat/matroskaenc: Check codecdelay before use
  - avutil/mathematics: Fix division by 0
  - mjpegdec: consider chroma subsampling in size check
  - libvpxenc: remove some unused ctrl id mappings
  - avcodec/vp3: ensure header is parsed successfully before tables
  - avcodec/jpeg2000dec: Check bpno in decode_cblk()
  - avcodec/pgssubdec: Fix left shift of 255 by 24 places cannot be represented in type int
  - swscale/utils: Fix for runtime error: left shift of negative value -1
  - avcodec/hevc: Fix integer overflow of entry_point_offset
  - avcodec/dirac_parser: Check that there is a previous PU before accessing it
  - avcodec/dirac_parser: Add basic validity checks for next_pu_offset and prev_pu_offset
  - avcodec/dirac_parser: Fix potential overflows in pointer checks
  - avcodec/wmaprodec: Check bits per sample to be within the range not causing integer overflows
  - avcodec/wmaprodec: Fix overflow of cutoff
  - avformat/smacker: fix integer overflow with pts_inc
  - avcodec/vp3: Fix "runtime error: left shift of negative value"
  - avformat/riffdec: Initialize bitrate
  - mpegencts: Fix overflow in cbr mode period calculations
  - avutil/timecode: Fix fps check
  - avutil/mathematics: return INT64_MIN (=AV_NOPTS_VALUE) from av_rescale_rnd() for overflows
  - avcodec/apedec: Check length in long_filter_high_3800()
  - avcodec/vp3: always set pix_fmt in theora_decode_header()
  - avcodec/mpeg4videodec: Check available data before reading custom matrix
  - avutil/mathematics: Do not treat INT64_MIN as positive in av_rescale_rnd
  - avutil/integer: Fix av_mod_i() with negative dividend
  - avformat/dump: Fix integer overflow in av_dump_format()
  - avcodec/h264_refs: Check that long references match before use
  - avcodec/utils: Clear dimensions in ff_get_buffer() on failure
  - avcodec/utils: Use 64bit for aspect ratio calculation in avcodec_string()
  - avcodec/hevc: Check max ctb addresses for WPP
  - avcodec/vp3: Clear context on reinitialization failure
  - avcodec/hevc: allocate entries unconditionally
  - avcodec/hevc_cabac: Fix multiple integer overflows
  - avcodec/jpeg2000dwt: Check ndeclevels before calling dwt_encode*()
  - avcodec/jpeg2000dwt: Check ndeclevels before calling dwt_decode*()
  - avcodec/hevc: Check entry_point_offsets
  - lavf/rtpenc_jpeg: Less strict check for standard Huffman tables.
  - avcodec/ffv1dec: Clear quant_table_count if its invalid
  - avcodec/ffv1dec: Print an error if the quant table count is invalid
  - doc/filters/drawtext: fix centering example

(bsiegert)

2015-12-30 16:23:52 UTC MAIN commitmail json YAML

2015-12-30 16:16:13 UTC MAIN commitmail json YAML

Add a package for include-what-you-use-0.5. From DESCR:

"Include what you use" means this: for every symbol (type, function
variable, or macro) that you use in foo.cc, either foo.cc or foo.h
should #include a .h file that exports the declaration of that symbol.
The include-what-you-use tool is a program that can be built with the
clang libraries in order to analyze #includes of source files to find
include-what-you-use violations, and suggest fixes for them.

The main goal of include-what-you-use is to remove superfluous #includes.
It does this both by figuring out what #includes are not actually needed for
this file (for both .cc and .h files), and replacing #includes with
forward-declares when possible.

(bsiegert)

2015-12-30 15:54:56 UTC MAIN commitmail json YAML

Re-add a buildlink3.mk for a future include-what-you-use package.

(bsiegert)

2015-12-30 15:49:10 UTC MAIN commitmail json YAML

Add 22 and 23 to RUBY_VERSION_SUPPORTED; allow build on ruby22 and ruby23.

(taca)

2015-12-30 15:44:26 UTC MAIN commitmail json YAML

- ruby-2.3.0.

(taca)

2015-12-30 15:43:33 UTC MAIN commitmail json YAML

Note update of devel/ruby-mode package to 2.3.0.

(taca)

2015-12-30 15:42:33 UTC MAIN commitmail json YAML

Update ruby-mode to 2.3.0.

* fix regexp syntax
* Improve `ruby-mode-set-encoding.

(taca)

2015-12-30 15:11:40 UTC MAIN commitmail json YAML

2015-12-30 15:10:52 UTC MAIN commitmail json YAML

Note addition of Ruby 2.3.0 package.

lang/ruby23-base
lang/ruby23

(taca)

2015-12-30 15:08:31 UTC MAIN commitmail json YAML

Updated net/mitmproxy to 0.15

(leot)

2015-12-30 15:08:24 UTC MAIN commitmail json YAML

Add and enable ruby23.

(taca)

2015-12-30 15:08:08 UTC MAIN commitmail json YAML

Update net/mitmproxy to 0.15.

Changes:
4 December 2015: mitmproxy 0.15
    * Support for loading and converting older dumpfile formats (0.13 and up)
    * Content views for inline script (@chrisczub)
    * Better handling of empty header values (Benjamin Lee/@bltb)
    * Fix a gnarly memory leak in mitmdump
    * A number of bugfixes and small improvements

(leot)

2015-12-30 15:06:39 UTC MAIN commitmail json YAML

Add ruby23 2.3.0 package, meta package for Ruby 2.3.0.

(taca)

2015-12-30 15:05:57 UTC MAIN commitmail json YAML

Updated net/py-netlib to 0.15.1

(leot)

2015-12-30 15:05:37 UTC MAIN commitmail json YAML

Add and enable ruby23-base.

(taca)

2015-12-30 15:05:35 UTC MAIN commitmail json YAML

Update net/py-netlib to 0.15.1.

Changes:
0.15.1
------
o Update backports.ssl_match_hostname dependency

0.15.0
------
o Allow empty HTTP header value
o Initial Python 3.4 porting efforts

(leot)

2015-12-30 15:04:39 UTC MAIN commitmail json YAML

Add support for ruby23.

(taca)

2015-12-30 15:04:31 UTC MAIN commitmail json YAML

Updated x11/py-pyperclip to 1.5.25

(leot)

2015-12-30 15:03:49 UTC MAIN commitmail json YAML

Add support for ruby23.

(taca)

2015-12-30 15:03:45 UTC MAIN commitmail json YAML

Update x11/py-pyperclip to 1.5.25.

Changes:
v1.5.25, 2015/12/13 -- Fix #53, PEP8 changes, STRING_FUNCTION rename
v1.5.24, 2015/11/14 -- Fix for Import ctypes.wintypes on Linux issue.
v1.5.23, 2015/11/14 -- <no change, mistaken version bump>
v1.5.22, 2015/11/08 -- Fix segfault for PyQt4 copy/paste functions
v1.5.21, 2015/11/04 -- Import fixes.
v1.5.20, 2015/10/30 -- Big refactoring and testing additions from mhils. Thanks!
v1.5.19, 2015/10/29 -- Updating setup.py to pull version info from __init__.py
v1.5.18, 2015/10/29 -- Added _noCopy/_noPaste functions to raise
                      NotImplementedError exceptions when called, instead of
      raising exceptions when Pyperclip is imported.
v1.5.17, 2015/10/28 -- Refactoring to add determineFunctionSet() and
                      setFunctions() functions.
v1.5.16, 2015/10/28 -- Fix issue 31, Klipper adds newline to the end of the
                      pasted text.
v1.5.15, 2015/10/12 -- Removing _pyperclip.py file which accidentally got
                      included in the PyPI package.
v1.5.14, 2015/10/09 -- Fixed major Windows problems.
v1.5.13, 2015/09/23 -- Added other python versions to to the setup.py file.
v1.5.12, 2015/09/18 -- Added _pasteKlipper() & _copyKlipper(). Thanks contrixed!

(leot)

2015-12-30 15:03:13 UTC MAIN commitmail json YAML

Add support for ruby23.

(taca)

2015-12-30 15:02:31 UTC MAIN commitmail json YAML

Updated security/py-backports.ssl_match_hostname to 3.5.0.1

(leot)

2015-12-30 15:02:13 UTC MAIN commitmail json YAML

Add suport for ruby23.

(taca)

2015-12-30 15:02:06 UTC MAIN commitmail json YAML

Update security/py-backports.ssl_match_hostname to 3.5.0.1.

pkgsrc changes:
* Switch to distutils.mk in order to avoid installation error in the install
  phase (``error: option --single-version-externally-managed not recognized''
  ref. to setup.py). No functional changes intended.
* Use MASTER_SITE_PYPI instead of hard-coding the entire pypi.python.org URL.

Changes:
* It was updated in python-3.5 to handle IPAddresses in ServerAltName fields
  (something that backports.ssl_match_hostname will do if you also install the
  ipaddress library from pypi).

(leot)

2015-12-30 15:00:57 UTC MAIN commitmail json YAML

Add support for ruby23.

(taca)

2015-12-30 15:00:51 UTC MAIN commitmail json YAML

Updated security/py-asn1 to 0.1.9

(leot)

2015-12-30 15:00:27 UTC MAIN commitmail json YAML

Update security/py-asn1 to 0.1.9.

Changes:
Revision 0.1.9, released 28-09-2015
-----------------------------------
- Wheel distribution format now supported.
- Extensions added to text files, CVS attic flushed.
- Fix to make uninitilaized pyasn1 objects failing properly on hash().
- Fix to ObjectIdentifier initialization from unicode string.
- Fix to CER/DER Boolean decoder - fail on non single-octet payload.

(leot)

2015-12-30 14:59:42 UTC MAIN commitmail json YAML

Add ruby23-base package, core part of Ruby 2.3.0 pacakge.

>From release announce:

Ruby 2.3.0 Released

Posted by naruse on 25 Dec 2015

We are pleased to announce the release of Ruby 2.3.0.

This is the first stable release of Ruby 2.3 series. It introduces many new
features for example:

A Frozen String Literal Pragma is introduced. With Ruby 2.1, "str".freeze has
been optimized to reduce object allocation. Ruby 2.3 introduces a new magic
comment and command line option to freeze all string literals in the source
files. Additionally for debugging, you can get where the object is created on
"can't modify frozen String" error by --debug=frozen-string-literal command
line option.

A safe navigation operator (so-called lonely operator) &., which already
exists in C#, Groovy, and Swift, is introduced to ease nil handling as
obj&.foo. Array#dig and Hash#dig are also added. Note that this behaves as
try! of Active Support, which specially handle only nil.

The did_you_mean gem is bundled. The did_you_mean gem shows the candidates on
the NameError and NoMethodError to ease debugging.

RubyVM::InstructionSequence#to_binary and .load_from_binary are introduced as
experimental feature. With these features, we can make a ISeq (bytecode)
pre-compilation system.

It also includes many performance improvements for example, reconsider method
entry data structure, introducing new table data structure, optimize
Proc#call, machine code level tuning for object allocation and method calling
code, smarter instance variable data structure, Socket and I/O allow to use
���exception:��� keywords for high-performance non-blocking I/O and so on. Check
���Implementation improvements��� section in NEWS file.

For a complete list of new features and compatibility notes, please see NEWS
and ChangeLog.

(taca)

2015-12-30 14:59:24 UTC MAIN commitmail json YAML

Updated net/py-hpack to 2.0.1

(leot)

2015-12-30 14:59:02 UTC MAIN commitmail json YAML

Update net/py-hpack to 2.0.1.

Changes:
2.0.1 (2015-11-09)
------------------
Fixed a bug where the Python HPACK implementation would only emit header table
size changes for the total change between one header block and another, rather
than for the entire sequence of changes.

2.0.0 (2015-10-12)
------------------
Remove unused HPACKEncodingError.
Add the shortcut ability to import the public API (Encoder, Decoder, HPACKError,
HPACKDecodingError) directly, rather than from hpack.hpack.

(leot)

2015-12-30 14:57:27 UTC MAIN commitmail json YAML

Updated devel/py-pyparsing to 2.0.6

(leot)

2015-12-30 14:57:02 UTC MAIN commitmail json YAML

Update devel/py-pyparsing to 2.0.6.

pkgsrc changes:
- convert to egg.mk (no functional changes intended)
- use MASTER_SITE_PYPI
- update HOMEPAGE (sf.net project page seems not available ATM while the
  distfiles are fetchable from sf.net)
- minor cosmetic fixes

Changes:
Version 2.0.6 -
---------------------------
- Fixed a bug in Each when multiple Optional elements are present.
  Thanks for reporting this, whereswalden on SO.
- Fixed another bug in Each, when Optional elements have results names
  or parse actions, reported by Max Rothman - thank you, Max!
- Added optional parseAll argument to runTests, whether tests should
  require the entire input string to be parsed or not (similar to
  parseAll argument to parseString). Plus a little neaten-up of the
  output on Python 2 (no stray ()'s).
- Modified exception messages from MatchFirst and Or expressions. These
  were formerly misleading as they would only give the first or longest
  exception mismatch error message. Now the error message includes all
  the alternatives that were possible matches. Originally proposed by
  a pyparsing user, but I've lost the email thread - finally figured out
  a fairly clean way to do this.
- Fixed a bug in Or, when a parse action on an alternative raises an
  exception, other potentially matching alternatives were not always tried.
  Reported by TheVeryOmni on the pyparsing wiki, thanks!
- Fixed a bug to dump() introduced in 2.0.4, where list values were shown
  in duplicate.

Version 2.0.5 -
---------------------------
- (&$(@#&$(@!!!!  Some "print" statements snuck into pyparsing v2.0.4,
  breaking Python 3 compatibility! Fixed. Reported by jenshn, thanks!

Version 2.0.4 -
---------------------------
- Added ParserElement.addCondition, to simplify adding parse actions
  that act primarily as filters. If the given condition evaluates False,
  pyparsing will raise a ParseException. The condition should be a method
  with the same method signature as a parse action, but should return a
  boolean. Suggested by Victor Porton, nice idea Victor, thanks!
- Slight mod to srange to accept unicode literals for the input string,
  such as "[а-яА-Я]" instead of "[\u0430-\u044f\u0410-\u042f]". Thanks
  to Alexandr Suchkov for the patch!
- Enhanced implementation of replaceWith.
- Fixed enhanced ParseResults.dump() method when the results consists
  only of an unnamed array of sub-structure results. Reported by Robin
  Siebler, thanks for your patience and persistence, Robin!
- Fixed bug in fourFn.py example code, where pi and e were defined using
  CaselessLiteral instead of CaselessKeyword. This was not a problem until
  adding a new function 'exp', and the leading 'e' of 'exp' was accidentally
  parsed as the mathematical constant 'e'. Nice catch, Tom Grydeland - thanks!
- Adopt new-fangled Python features, like decorators and ternary expressions,
  per suggestions from Williamzjc - thanks William! (Oh yeah, I'm not
  supporting Python 2.3 with this code any more...) Plus, some additional
  code fixes/cleanup - thanks again!
- Added ParserElement.runTests, a little test bench for quickly running
  an expression against a list of sample input strings. Basically, I got
  tired of writing the same test code over and over, and finally added it
  as a test point method on ParserElement.
- Added withClass helper method, a simplified version of withAttribute for
  the common but annoying case when defining a filter on a div's class -
  made difficult because 'class' is a Python reserved word.

Version 2.0.3 -
---------------------------
- Fixed escaping behavior in QuotedString. Formerly, only quotation
  marks (or characters designated as quotation marks in the QuotedString
  constructor) would be escaped. Now all escaped characters will be
  escaped, and the escaping backslashes will be removed.
- Fixed regression in ParseResults.pop() - pop() was pretty much
  broken after I added *improvements* in 2.0.2. Reported by Iain
  Shelvington, thanks Iain!
- Fixed bug in And class when initializing using a generator.
- Enhanced ParseResults.dump() method to list out nested ParseResults that
  are unnamed arrays of sub-structures.
- Fixed UnboundLocalError under Python 3.4 in oneOf method, reported
  on Sourceforge by aldanor, thanks!
- Fixed bug in ParseResults __init__ method, when returning non-ParseResults
  types from parse actions that implement __eq__. Raised during discussion
  on the pyparsing wiki with cyrfer.

(leot)

2015-12-30 14:54:58 UTC MAIN commitmail json YAML

Updated devel/py-configargparse to 0.10.0

(leot)

2015-12-30 14:54:34 UTC MAIN commitmail json YAML

Update devel/py-configargparse to 0.10.0.

pkgsrc changes:
o Get rid of VERSION variable and other PKGNAME hard-coding and use
  make(1) ``:tl'' modifier instead (no functional change intended)
o Use MASTER_SITE_PYPI instead of the full pypi URL.

Changes:
0.10.0
------
o Various misc bug fixes and improvements

(leot)

2015-12-30 14:49:42 UTC MAIN commitmail json YAML

new package devel/golint.

(bsiegert)

2015-12-30 14:49:38 UTC MAIN commitmail json YAML

Add support for Ruby 2.3.

(taca)

2015-12-30 14:40:05 UTC MAIN commitmail json YAML

Note update of net/rabbiter package to 2.0.1nb1.

(taca)

2015-12-30 14:39:12 UTC MAIN commitmail json YAML

rabbiter dose not need to depend on ruby-gnome2-gio since another depending
package rabbit already depends on it.

Bump PKGREVISION.

(taca)

2015-12-30 14:34:42 UTC MAIN commitmail json YAML

Curretly, Roundcube dose not support PHP 7.

(taca)

2015-12-30 14:30:42 UTC MAIN commitmail json YAML

Add pkg_alternatives support which should be added with previous commit.

(taca)

2015-12-30 14:24:18 UTC MAIN commitmail json YAML

Added sysutils/py-watchdog version 0.8.3

(leot)

2015-12-30 14:23:23 UTC MAIN commitmail json YAML

2015-12-30 14:22:34 UTC MAIN commitmail json YAML

Import py-watchdog-0.8.3 as sysutils/py-watchdog.
Packaged in pkgsrc-wip by Kamel Ibn Aziz Derouiche.

Python API and shell utilities to monitor file system events

(leot)

2015-12-30 14:18:36 UTC MAIN commitmail json YAML

Added sysutils/py-pathtools version 0.1.2

(leot)

2015-12-30 14:17:58 UTC MAIN commitmail json YAML

2015-12-30 14:17:07 UTC MAIN commitmail json YAML

Import py-pathtools-0.1.2 as sysutils/py-pathtools.
Packaged in pkgsrc-wip by Kamel Ibn Aziz Derouiche.

Python API library for common path and pattern functionality.

(leot)

2015-12-30 14:12:03 UTC MAIN commitmail json YAML

2015-12-30 14:07:58 UTC MAIN commitmail json YAML

Add buildlink file for go-tools, to allow other packages to depend on it.

(bsiegert)

2015-12-30 12:51:44 UTC MAIN commitmail json YAML

2015-12-30 12:47:57 UTC MAIN commitmail json YAML

Update dpkg to 1.16.17. This fixes several security issues.

dpkg (1.16.17) wheezy-security; urgency=high

  [ Guillem Jover ]
  * Fix an off-by-one write access in dpkg-deb when parsing the .deb magic.
    Reported by Jacek Wielemborek <d33tah@gmail.com>. Closes: #798324
  * Fix an off-by-one write access in dpkg-deb when parsing the old format
    .deb control member size. Thanks to Hanno Böck <hanno@hboeck.de>.
    Fixes CVE-2015-0860.
  * Fix an off-by-one read access in dpkg-deb when parsing ar member names.
    Thanks to Hanno Böck <hanno@hboeck.de>.

  [ Updated programs translations ]
  * Catalan (Jordi Mallach).

  [ Updated man page translations ]
  * Fix incorrect translation in German (Helge Kreutzmann)

-- Guillem Jover <guillem@debian.org>  Wed, 25 Nov 2015 22:34:58 +0100

dpkg (1.16.16) wheezy-security; urgency=high

  [ Guillem Jover ]
  * Do not leak long tar names on bogus or truncated archives.
  * Do not leak the filepackages iterator when a directory is used by other
    packages.
  * Do not leak color string on «dselect --color».
  * Fix memory leaks when parsing alternatives.
  * Fix memory leaks in buffer_copy() on error conditions.
  * Fix possible out of bounds buffer read access in the error output on
    bogus ar member sizes.
  * Fix file triggers/Unincorp descriptor leak on subprocesses. Regression
    introduced with the initial triggers implementation in dpkg 1.14.17.
    Closes: #751021
  * Fix a descriptor leak on dselect subprocesses when --debug is used.
  * Do not run qsort() over the scandir() list in libcompat if it is NULL.
  * Fix off-by-one stack buffer overrun in start-stop-daemon on GNU/Linux and
    GNU/kFreeBSD if the executable pathname is longer than _POSIX_PATH_MAX.
    Although this should not have security implications as the buffer is
    surrounded by two arrays (so those catch accesses even if the stack
    grows up or down), and we are compiling with -fstack-protector anyway.
  * Add a workaround to start-stop-daemon for bogus OpenVZ Linux kernels that
    prepend, instead of appending, the " (deleted)" marker in /proc/PID/exe.
    Closes: #731530
  * Fix off-by-one error in libdpkg command argv size calculation.
    Based on a patch by Bálint Réczey <balint@balintreczey.hu>. Closes: #760690
  * Escape package and architecture names on control file parsing warning,
    as those get injected into a variable that is used as a format string,
    and they come from the package fields, which are under user control.
    Regression introduced in dpkg 1.16.0. Fixes CVE-2014-8625. Closes: #768485
    Reported by Joshua Rogers <megamansec@gmail.com>.
  * Do not match partial field names in control files. Closes: #769119
    Regression introduced in dpkg 1.10.
  * Fix out-of-bounds buffer read accesses when parsing field and trigger
    names or checking package ownership of conffiles and directories.
    Reported by Joshua Rogers <megamansec@gmail.com>.
  * Add powerpcel support to cputable. Thanks to Jae Junh <jaejunh@embian.com>.
  * Fix OpenPGP Armor Header Line parsing in Dpkg::Control::Hash. We should
    only accept [\r\t ] as trailing whitespace, although RFC4880 does not
    clarify what whitespace really maps to, we should really match the GnuPG
    implementation anyway, as that's what we use to verify the signatures.
    Reported by Jann Horn <jann@thejh.net>. Fixes CVE-2015-0840.

  [ Raphaël Hertzog ]
  * Drop myself from Uploaders.

  [ Updated scripts translations ]
  * Fix typos in German (Helge Kreutzmann)
  * Swedish (Peter Krefting).

  [ Updated man page translations ]
  * Fix typos in German (Helge Kreutzmann)
  * Swedish (Peter Krefting).

-- Guillem Jover <guillem@debian.org>  Thu, 09 Apr 2015 08:45:47 +0200

dpkg (1.16.15) wheezy-security; urgency=high

  [ Guillem Jover ]
  * Test suite:
    - Add test cases for Dpkg::Source::Patch CVE-2014-0471 and CVE-2014-3127.
    - Add test case for patch disabling hunks; not security sensitive.
  * Correctly parse patch headers in Dpkg::Source::Patch, to avoid directory
    traversal attempts from hostile source packages when unpacking them.
    Reported by Javier Serrano Polo <javier@jasp.net> as an unspecified
    directory traversal; meanwhile also independently found by me both
    #749183 and what was supposed to be #746498, which was later on published
    and ended up being just a subset of the other non-reported issue.
    Fixes CVE-2014-3864 and CVE-2014-3865. Closes: #746498, #749183

  [ Updated programs translations ]
  * Merge translated strings from master.

  [ Updated scripts translations ]
  * German (Helge Kreutzmann).

  [ Updated man page translations ]
  * Merge translated strings from master.
  * Unfuzzy or update trivial translations (Guillem Jover).

-- Guillem Jover <guillem@debian.org>  Thu, 05 Jun 2014 22:24:36 +0200

dpkg (1.16.14) wheezy-security; urgency=high

  [ Guillem Jover ]
  * Do not allow patch files with C-style encoded filenames. Closes: #746306
    Fixes CVE-2014-3127 and unconditionally fixes CVE-2014-0471.
    Reported by Javier Serrano Polo <javier@jasp.net>.

  [ Updated scripts translations ]
  * German (Helge Kreutzmann).

  [ Updated man page translations ]
  * German (Helge Kreutzmann).

-- Guillem Jover <guillem@debian.org>  Wed, 30 Apr 2014 08:14:16 +0200

dpkg (1.16.13) wheezy-security; urgency=high

  [ Guillem Jover ]
  * Do not NULL-terminate the list in the compat scandir(), as this might
    cause a segfault in case the function returns 0 entries.
  * Do not generate perl warnings on undef versions in
    Dpkg::Deps::deps_compare(). See: #737731
  * Do not overwrite triplet mappings with latter matches in Dpkg::Arch.
    Required for the new mipsn32(el) and mips64(el) architecture entries.
  * Add support for mipsn32(el) and mips64(el) to arch tables.
    Thanks to YunQiang Su <wzssyqa@gmail.com>. Closes: #685096, #707323
  * Add ppc64el support to cputable. Closes: #718945
    Thanks to Jeff Bailey <jeffbailey@google.com>.
  * Add OpenRISC or1k support to cputable.
    Thanks to Christian Svensson <christian@cmd.nu>. Closes: #736717
  * Clarify that dpkg --set-selections needs an up-to-date available db,
    by documenting it on the dpkg(1) man page, and warning whenever dpkg
    finds unknown packages while setting the selections. Closes: #703092
  * Improve documentation on how to update the available database before
    setting package selections. Suggested by Klaus Ita <koki.eml@gmail.com>.
  * Recognize «start-stop-daemon -C» as documented. Closes: #719746
    Reported by Brian S. Julin <bri@abrij.org>.
  * Correctly parse C-style diff filenames in Dpkg::Source::Patch, to avoid
    directory traversal attempts from hostile source packages when unpacking
    them. Reported by Jakub Wilk <jwilk@debian.org>. Fixes CVE-2014-0471.

  [ Updated scripts translations ]
  * Fix a typo in the German scripts translation.

  [ Updated man page translations ]
  * Fix and unify translation in German man pages.

-- Guillem Jover <guillem@debian.org>  Fri, 25 Apr 2014 04:38:33 +0200

dpkg (1.16.12) stable; urgency=low

  * Fix value caching in Dpkg::Arch by not shadowing the variables.
    Closes: #724949

-- Guillem Jover <guillem@debian.org>  Mon, 30 Sep 2013 16:52:37 +0200

dpkg (1.16.11) stable; urgency=low

  [ Raphaël Hertzog ]
  * Fix usage of non-existent _() function in multiple places of the Perl
    code. Thanks to Lincoln Myers <lincoln@netapp.com> for the patch.
    Closes: #708607

  [ Guillem Jover ]
  * Fix chmod() arguments order in Dpkg::Source::Quilt. Closes: #710265
    Thanks to Pablo Oliveira <pablo@sifflez.org>.
  * Only ignore older packages if the existing version is informative. This
    allows any program using libdpkg to parse the available file to see again
    packages with versions lesser than 0-0 (like 0~0-0). Closes: #676664
  * Fix use after free in dpkg_arch_load_list() on libdpkg.
    Reported by Pedro Ribeiro <pedrib@gmail.com>.

  [ Updated programs translations ]
  * Vietnamese (Trần Ngọc Quân). Closes: #715334

  [ Added man page translations ]
  * Italian (Beatrice Torracca). Closes: #711647

  [ Updated man page translations ]
  * Japanese (TAKAHASHI Motonobu). Closes: #704240

-- Guillem Jover <guillem@debian.org>  Mon, 23 Sep 2013 16:51:18 +0200

(bsiegert)

2015-12-30 11:12:27 UTC MAIN commitmail json YAML

Fix ALTERNATIVES file.

(wiz)

2015-12-30 11:07:18 UTC MAIN commitmail json YAML

Updated misc/p5-Business-ISBN to 2.010

(wiz)

2015-12-30 11:07:08 UTC MAIN commitmail json YAML

Update p5-Business-ISBN to 2.010:

2.010 2015-12-15T07:35:57Z
* Sync latest dependencies in build and module files
* Promote to a developer release

2.09_02 - Mon Aug 31 02:24:10 2015
* Have a simple fallback for parsing XML if Mojo::DOM isn't there

2.09_01 2015-08-31T05:59:56Z
* Fix for new xISBN responses that have whitespace inside the
opening tag.
* Use Mojo::DOM to parse XML and Mojo::UserAgent to fetch xISBN.
* You can still use LWP::UserAgent to fetch data.

(wiz)

2015-12-30 10:15:40 UTC MAIN commitmail json YAML

Updated x11/gtk2 to 2.24.29

(prlw1)

2015-12-30 10:15:07 UTC MAIN commitmail json YAML

Update gtk2 to 2.24.29

Overview of Changes from GTK+ 2.24.28 to 2.24.29
================================================

* OS X:
- Partial aspect ratio support

* Bug fixes:
345345 PrintOperation::paginate is not emitted for class handler
745127 Changing order of file in "Places" crashes the application
749507 gtk-2.0.m4 fails to detect a prefixed pkg-config
752638 notebook tab dragging doesn't work on Quartz (patches...
753644 Switching from Multipress input method to None immedi...
753691 make install -j2 fails when building for MinGW
753992 im-quartz discard_preedit segmentation fault
754046 annotate gtk_color_button_get_color

* Translation updates:
Occitan

(prlw1)

2015-12-30 04:37:27 UTC MAIN commitmail json YAML

Correct sed(1) usage for NetBSD-6.x in the install stage

NetBSD-7.99.25
$ /usr/bin/sed -n '/.*<em:id>\(.*\)<\/em:id>.*/{s//\1/p;q}' install.rdf
{847b3a00-7ab1-11d4-8f02-006008948af5}
$ /usr/bin/sed -n '/.*<em:id>\(.*\)<\/em:id>.*/{s//\1/p;q;}' install.rdf
{847b3a00-7ab1-11d4-8f02-006008948af5}

NetBSD-6.1_STABLE
$ /usr/bin/sed -n '/.*<em:id>\(.*\)<\/em:id>.*/{s//\1/p;q}' install.rdf
sed: 1: "/.*<em:id>\(.*\)<\/em:i ...": extra characters at the end of q command
$ /usr/bin/sed -n '/.*<em:id>\(.*\)<\/em:id>.*/{s//\1/p;q;}' install.rdf
{847b3a00-7ab1-11d4-8f02-006008948af5}

Closes PR pkg/50264 by Hauke Fath
Solution suggested by David Holland

(kamil)

2015-12-30 04:23:00 UTC MAIN commitmail json YAML

2015-12-30 04:19:36 UTC MAIN commitmail json YAML

2015-12-30 04:18:14 UTC MAIN commitmail json YAML

2015-12-30 04:16:57 UTC MAIN commitmail json YAML

2015-12-30 04:13:07 UTC MAIN commitmail json YAML

2015-12-30 04:05:29 UTC MAIN commitmail json YAML

Add new license: cecill-2.0

This license is catalogued as a free software license by FSF compatible
with GPL.

There is a warning on 'attacking the program with a patent'.

https://www.gnu.org/licenses/license-list.html#CeCILL

Discussed with pkgsrc-pmc@.

(kamil)

2015-12-30 03:01:45 UTC MAIN commitmail json YAML

2015-12-30 02:59:07 UTC MAIN commitmail json YAML

Don't use PREFIX/share/doc/html, which is deprecated. PKGREVISION -> 1.

(dholland)

2015-12-30 01:34:33 UTC MAIN commitmail json YAML

Do not list cdrtools alpha releases for now, until we find a need for them.

(wiz)

2015-12-30 01:33:31 UTC MAIN commitmail json YAML

+ pari-2.7.5 [wip].

(wiz)

2015-12-30 00:20:52 UTC MAIN commitmail json YAML

Updated converters/libvisio to 0.1.4

(wiz)

2015-12-30 00:20:43 UTC MAIN commitmail json YAML

Update libvisio to 0.1.4:

libvisio 0.1.4

- Implement overriding of colour of lines and of text from layer
  properties (tdf#50309, tdf#68392) and the visibility and/or
  printability of a layer.
- Fix incorrect handling of stencil text (tdf#90154).
- Basic initial implementation of hatch fill (tdf#44552, tdf#76835).
- Implement support of bullets/lists (tdf#92349)
- Implement support of default tab-stops and custom tab-sets in
  paragraph properties.
- Fix for reading of names of pages if present.
- Fix build with boost 1.59.
- Instead of line-break, spit out a new paragraph when a paragraph break
  is found

(wiz)

2015-12-30 00:18:40 UTC MAIN commitmail json YAML

Updated converters/libcdr to 0.1.2

(wiz)

2015-12-30 00:18:31 UTC MAIN commitmail json YAML

Update libcdr to 0.1.2:

libcdr 0.1.2

* Fix various crashes and hangs when reading broken files found with the
  help of american-fuzzy-lop.
* Fix build with boost 1.59. (rhbz#1258127)
* Fix various problems detected by Coverity.
* Do not drop empty text lines. (tdf#67873)
* Make --help output of all command line tools more help2man-friendly.
* Several other small improvements.

(wiz)

2015-12-30 00:12:13 UTC MAIN commitmail json YAML

Updated devel/py-decorator to 4.0.6

(wiz)

2015-12-30 00:12:04 UTC MAIN commitmail json YAML

Update py-decorator to 4.0.6:

4.0.6 Removed a file x.py accidentally entered in the tarball (2015/12/11)
4.0.5 Documented a quirk signaled by David Goldstein when writing decorators
      for functions with keyword arguments. Avoided copying the globals,
      as signaled by Benjamin Peterson (2015/12/09)
4.0.4 Included a patch from Zev Benjamin: now decorated functions play well
    with cProfile (2015/09/25)
4.0.3 Added a warning about the memoize example, as requested by Robert
    Buchholz (2015/09/25)

(wiz)

2015-12-30 00:08:43 UTC MAIN commitmail json YAML

Updated misc/calibre to 2.47.0

(wiz)

2015-12-30 00:08:33 UTC MAIN commitmail json YAML

Update calibre to 2.47.0:

2.47

New Features
* A new tool to easily export and import all calibre data -- books,
settings and plugins
* Get Books: Add plugins for Amazon Australia and Amazon India.
Also restore the Amazon EU plugins.

Bug Fixes
* PDF Input: Fix conversion of PDF documents that contain ASCII
control codes in their outlines not working.
* Edit book: Fix image compression utilities opening a new console
per invocation on windows
* Image compression: If the compression tools return a zero byte
image ignore it and use the original image
* Fix a regression that caused book titles in the Book Details
panel to become clickable

2.46

New Features

    PDF Input: Add support for PDF outlines (bookmarks), if present, they are used as the metadata Table of Contents.
    Book polishing: Add tool to losslessly compress images in the book in order to reduce its filesize, without affecting image quality
    Edit Book: Add a new tool to compress images in the book losslessly, accessed from the Tools menu
    Kobo driver: add support for new Kobo firmware
    Bulk metadata edit dialog: Allow entering fractional numbers into the series number start with control.
    Speed up moving libraries by using hardlinks instead of file copies when moving to a location on the same filesystem
    Get Books: Disable the Amazon EU stores, at Amazon's request

Bug Fixes

    Fix moving libraries via calibre leaving behind a copy of the metadata_db_prefs_backup.json file in the original library folder
    MOBI Input: Warn about corrupted trailing data entries, instead of aborting. Getting some, even partially corrupted text is better than no text.
    Book details: Fix single value custom text column not clickable.
    Saving to disk: Fix custom date column being rendered in GMT instead of the local time zone when used in a save to disk template.

(wiz)

2015-12-30 00:01:22 UTC MAIN commitmail json YAML

Updated devel/py-enum34 to 1.1.2

(wiz)

2015-12-30 00:01:13 UTC MAIN commitmail json YAML

Update py-enum34 to 1.1.2, changes unknown.

(wiz)

2015-12-29 23:58:41 UTC MAIN commitmail json YAML

Updated net/samba4 to 4.3.3

(wiz)

2015-12-29 23:58:32 UTC MAIN commitmail json YAML

Update samba4 to 4.3.3.

                  =============================
                  Release Notes for Samba 4.3.3
                        December 16, 2015
                  =============================

This is a security release in order to address the following CVEs:

o  CVE-2015-3223 (Denial of service in Samba Active Directory
  server)
o  CVE-2015-5252 (Insufficient symlink verification in smbd)
o  CVE-2015-5299 (Missing access control check in shadow copy
  code)
o  CVE-2015-5296 (Samba client requesting encryption vulnerable
  to downgrade attack)
o  CVE-2015-8467 (Denial of service attack against Windows
  Active Directory server)
o  CVE-2015-5330 (Remote memory read in Samba LDAP server)

Please note that if building against a system libldb, the required
version has been bumped to ldb-1.1.24.  This is needed to ensure
we build against a system ldb library that contains the fixes
for CVE-2015-5330 and CVE-2015-3223.

=======
Details
=======

o  CVE-2015-3223:
  All versions of Samba from 4.0.0 to 4.3.2 inclusive (resp. all
  ldb versions up to 1.1.23 inclusive) are vulnerable to
  a denial of service attack in the samba daemon LDAP server.

  A malicious client can send packets that cause the LDAP server in the
  samba daemon process to become unresponsive, preventing the server
  from servicing any other requests.

  This flaw is not exploitable beyond causing the code to loop expending
  CPU resources.

o  CVE-2015-5252:
  All versions of Samba from 3.0.0 to 4.3.2 inclusive are vulnerable to
  a bug in symlink verification, which under certain circumstances could
  allow client access to files outside the exported share path.

  If a Samba share is configured with a path that shares a common path
  prefix with another directory on the file system, the smbd daemon may
  allow the client to follow a symlink pointing to a file or directory
  in that other directory, even if the share parameter "wide links" is
  set to "no" (the default).

o  CVE-2015-5299:
  All versions of Samba from 3.2.0 to 4.3.2 inclusive are vulnerable to
  a missing access control check in the vfs_shadow_copy2 module. When
  looking for the shadow copy directory under the share path the current
  accessing user should have DIRECTORY_LIST access rights in order to
  view the current snapshots.

  This was not being checked in the affected versions of Samba.

o  CVE-2015-5296:
  Versions of Samba from 3.2.0 to 4.3.2 inclusive do not ensure that
  signing is negotiated when creating an encrypted client connection to
  a server.

  Without this a man-in-the-middle attack could downgrade the connection
  and connect using the supplied credentials as an unsigned, unencrypted
  connection.

o  CVE-2015-8467:
  Samba, operating as an AD DC, is sometimes operated in a domain with a
  mix of Samba and Windows Active Directory Domain Controllers.

  All versions of Samba from 4.0.0 to 4.3.2 inclusive, when deployed as
  an AD DC in the same domain with Windows DCs, could be used to
  override the protection against the MS15-096 / CVE-2015-2535 security
  issue in Windows.

  Prior to MS16-096 it was possible to bypass the quota of machine
  accounts a non-administrative user could create.  Pure Samba domains
  are not impacted, as Samba does not implement the
  SeMachineAccountPrivilege functionality to allow non-administrator
  users to create new computer objects.

o  CVE-2015-5330:
  All versions of Samba from 4.0.0 to 4.3.2 inclusive (resp. all
  ldb versions up to 1.1.23 inclusive) are vulnerable to
  a remote memory read attack in the samba daemon LDAP server.

  A malicious client can send packets that cause the LDAP server in the
  samba daemon process to return heap memory beyond the length of the
  requested value.

  This memory may contain data that the client should not be allowed to
  see, allowing compromise of the server.

  The memory may either be returned to the client in an error string, or
  stored in the database by a suitabily privileged user.  If untrusted
  users can create objects in your database, please confirm that all DN
  and name attributes are reasonable.

Changes since 4.3.2:
--------------------

o  Andrew Bartlett <abartlet@samba.org>
  * BUG 11552: CVE-2015-8467: samdb: Match MS15-096 behaviour for
    userAccountControl.

o  Jeremy Allison <jra@samba.org>
  * BUG 11325: CVE-2015-3223: Fix LDAP \00 search expression attack DoS.
  * BUG 11395: CVE-2015-5252: Fix insufficient symlink verification (file
    access outside the share).
  * BUG 11529: CVE-2015-5299: s3-shadow-copy2: Fix missing access check on
    snapdir.

o  Douglas Bagnall <douglas.bagnall@catalyst.net.nz>
  * BUG 11599: CVE-2015-5330: Fix remote read memory exploit in LDB.

o  Stefan Metzmacher <metze@samba.org>
  * BUG 11536: CVE-2015-5296: Add man in the middle protection when forcing
    smb encryption on the client side.

(wiz)

2015-12-29 23:50:14 UTC MAIN commitmail json YAML

Patches are supposed to have trailing whitespace on otherwise blank lines.
(because the first character of each line is a control field)

(dholland)

2015-12-29 23:43:27 UTC MAIN commitmail json YAML

Updated textproc/miller to 3.2.2

(wiz)

2015-12-29 23:43:18 UTC MAIN commitmail json YAML

Update miller to 3.2.2:

Many changes; speed ups, autoconf support, ....

(wiz)

2015-12-29 23:35:09 UTC MAIN commitmail json YAML

Updated www/libmicrohttpd to 0.9.48

(wiz)

2015-12-29 23:35:00 UTC MAIN commitmail json YAML

Update libmicrohttpd to 0.9.48:

Fri Dec 18 15:54:50 CET 2015
Releasing libmicrohttpd 0.9.48. -CG

Tue Dec  15 18:35:55 CET 2015
Improved compatibility with VS2010 and other older
compilers. -EG

Tue Dec  8 21:48:44 CET 2015
Default backlog size for listen socket was changed from
32 to SOMAXCONN, added new option MHD_OPTION_LISTEN_BACKLOG_SIZE
to override default backlog size.
If not all connections can be handled by MHD_select() than
at least some of connections will be processed instead of
failing without any processing.
Fixed redefenition of FD_SETSIZE on W32 so select() will
work with 2000 connections instead of 64.
Better handled redefenition of FD_SETSIZE on all
platforms. -EG

Sat Dec  5 17:30:45 CET 2015
Close sockets more aggressively in multi-threaded
mode (possibly relevant for idle servers). -CG

(wiz)

2015-12-29 23:34:57 UTC MAIN commitmail json YAML

2015-12-29 23:31:10 UTC MAIN commitmail json YAML

Updated print/cups-filters to 1.5.0

(wiz)

2015-12-29 23:31:00 UTC MAIN commitmail json YAML

Update cups-filters to 1.5.0:

CHANGES IN V1.5.0

- cups-browsed: Allow use of an alternative configuration file
  via the "-c" command line option.
- cups-browsed: Allow supplying configuration settings via the
          command line using the "-o" command line option.
- cups-browsed: Command line help via the "-h" or "--help"
          command line option.

(wiz)

2015-12-29 23:26:25 UTC MAIN commitmail json YAML

Updated fonts/Hack-ttf to 2.018

(wiz)

2015-12-29 23:26:15 UTC MAIN commitmail json YAML

Update Hack-ttf to 2.018:

Version 2.018 (release build)

ttf, otf, webfont builds

Patch for missing glyphs in regular set:

    added U+016C (upper case U breve), regular set - Issue #21
    added U+016D (lower case u breve), regular set - Issue #21

Version 2.017 (release build)

ttf, otf, webfont builds

Changes vs. release v2.015:

    increased vertical position of the tilde (U+007E) to improve alignment with other glyphs - Issue #23
    increased width of the vertical stroke on the dollar symbol (U+0024) - Issue #92
    modified Cyrillic upper case C (U+0421) to differentiate from Latin C - Issues #22 & #29
    modified Cyrillic lower case c (U+0441) to differentiate from Latin c - Issues #22 & #29
    modified upper case theta (U+0398) to differentiate from lower case theta - Issue #36
    added U+0132 (IJ) glyph - Issue #52
    added U+0133 (ij) glyph - Issue #52
    added U+013F (upper case L dot) glyph - Issue #52
    added U+0140 (lower case l dot) glyph - Issue #52
    added U+0162 (upper case T cedilla) glyph - Issue #52
    added U+0163 (lower case t cedilla) glyph - Issue #52
    added U+0138 (kgreenlandic) glyph - Issue #52
    added U+266A (musical note) glyph - Issue #52
    added U+0149 (lower case n apostrophe) - Issue #52
    added U+1EF9 (lower case y tilde) glyph - Issue #102
    added U+1EF8 (upper case Y tilde) glyph - Issue #102
    added U+1EBD (lower case e tilde) glyph - Issue #102
    added U+1EBC (upper case E tilde) glyph - Issue #102
    added U+2116 (numero) glyph - Issues #22 & #114
    added U+01A4 (p hook) glyph - Issue #105
    added U+0108 (upper case C circumflex) - Issue #21
    added U+0109 (lower case c circumflex) - Issue #21
    added U+011C (upper case G circumflex) - Issue #21
    added U+011D (lower case g circumflex) - Issue #21
    added U+0124 (upper case H circumflex) - Issue #21
    added U+0125 (lower case h circumflex) - Issue #21
    added U+0134 (upper case J circumflex) - Issue #21
    added U+0135 (lower case j circumflex) - Issue #21
    added U+015C (upper case S circumflex) - Issue #21
    added U+015D (lower case s circumflex) - Issue #21
    added U+016C (upper case U breve) - Issue #21
    added U+016D (lower case u breve) - Issue #21
    added U+20B7 (spesmilo) - Issue #21
    fixed missing null glyph (U+0000) in regular, italic, bolditalic sets
    removed duplicate CR glyph (U+000D) in all sets - Issue #149
    updated ttfautohint to version 1.4.1 for TrueType (.ttf) build instruction sets

Version 2.016 (testing build)

    increased vertical position of the tilde (U+007E) to improve alignment with other glyphs - Issue #23
    increased width of the vertical stroke on the dollar symbol (U+0024) - Issue #92
    modified Cyrillic upper case C (U+0421) to differentiate from Latin C - Issues #22 & #29
    modified Cyrillic lower case c (U+0441) to differentiate from Latin c - Issues #22 & #29
    modified upper case theta (U+0398) to differentiate from lower case theta - Issue #36
    added U+1EF9 (lower case y tilde) glyph - Issue #102
    added U+1EF8 (upper case Y tilde) glyph - Issue #102
    added U+1EBD (lower case e tilde) glyph - Issue #102
    added U+1EBC (upper case E tilde) glyph - Issue #102
    added U+2116 (numero) glyph - Issues #22 & #114
    added U+01A4 (p hook) glyph - Issue #105
    added U+0108 (upper case C circumflex) - Issue #21
    added U+0109 (lower case c circumflex) - Issue #21
    added U+011C (upper case G circumflex) - Issue #21
    added U+011D (lower case g circumflex) - Issue #21
    added U+0124 (upper case H circumflex) - Issue #21
    added U+0125 (lower case h circumflex) - Issue #21
    added U+0134 (upper case J circumflex) - Issue #21
    added U+0135 (lower case j circumflex) - Issue #21
    added U+015C (upper case S circumflex) - Issue #21
    added U+015D (lower case s circumflex) - Issue #21
    added U+016C (upper case U breve) - Issue #21
    added U+016D (lower case u breve) - Issue #21
    added U+20B7 (spesmilo) - Issue #21
    updated ttfautohint to version 1.4 for TrueType (.ttf) build instruction sets

(wiz)

2015-12-29 23:23:11 UTC MAIN commitmail json YAML

p5-Math-Pari updated.

(wiz)

2015-12-29 23:22:40 UTC MAIN commitmail json YAML

2015-12-29 23:21:21 UTC MAIN commitmail json YAML

Updated nih/p5-Math-Pari to 2.010808

(wiz)

2015-12-29 23:21:11 UTC MAIN commitmail json YAML

Update p5-Math-Pari to 2.010808:

2.01080606a
  cygwin's tar generated 0-permissions for the distribution (no auto-workaround...).
  Document workarounds for isprime() with version 2.1.7 (in the BUGS section).

2.01080607
  Correct the documention about fraction of witnesses from >=0.25 to >=0.75.
  Define HAS_STAT and HAS_OPENDIR basing on $Config{i_sysstat} and $Config{i_dirent}.
  Correct spelling errors in POD and comments in Pari.pm (thanks to dsteinbrunner!).
  On AIX, do merge_822 separately in subdirectories (exceeds command line length otherwise).
  On >=2.3.0, reset had-newline-on-output to 1 at startup.  (Saves one spurious NL)
  New patch: diff_2.3.5_stderr_clobber
  New test: 01_no_extra_newlines.t
  Allow download not only via FTP, but also through HTTP.
  In presence of PERL5_CPAN_IS_RUNNING, assume that NO ANSWER on prompt is agreement.
(It looks like cygwin and MSWin32 automated-testing environment do not have
AUTOMATED_TESTING and PERL_MM_USE_DEFAULT set...)
  Do not auto-download on 64-bit builds of MSWin32.

2.010807
  Too long version name was a misprint.
  Pay attention to PERL_EXTUTILS_AUTOINSTALL when interpreting empty answers to prompt (probably an overkill).
    (disable this abomination by PERL_MATHPARI_TRUST_MANUAL)
    (to see why this may be needed: http://www.cpantesters.org/cpan/report/a5d65ec6-6bf3-1014-87a8-67ba45601f20)
  Report bytes in the answer for prompt.
  Separate into separate subroutines inspecting versions available for download from the actual download.
  Change the logic of fallback Net::FTP --> LWP: before, if Net::FTP fails in retrieving the directory listing;
    now: if this happens, or if it fails to retrieve the file (how can it happen?! see http://www.cpantesters.org/cpan/report/e7f9d5a7-6bfa-1014-9d0f-1948c9c86cae)
  __wrap_PARI_macro: new function (not exported)
  parse_as_gp: new function (exported by default)
  More verbose error message for "Cannot load a Pari macro".

2.010808
  A night of sleep fixed problems of parse_of_gp with the operator \ and empty lines.
    (test suite updated)
  Actually, mingw was not ready for HAVE_OPENDIR.
  Store which patches were applied in $dir/.perl.patches.
  Report which patches were not applied.
  Export patches_for() from BuildPari.
  pari_tgz build option was broken (by LWP-after-NFTP support code � which, apparently, did not help with timeouts).
  Ignore 0-size "downloaded" files.

(wiz)

2015-12-29 23:18:50 UTC MAIN commitmail json YAML

2015-12-29 23:09:35 UTC MAIN commitmail json YAML

Add a patch for CVS-2014-2980: Tools/gdomap.c in gdomap in GNUstep Base 1.24.6
and earlier, when run in daemon mode, does not properly handle the file
descriptor for the logger, which allows remote attackers to cause a denial of
service (abort) via an invalid request.

Bump pkgrevision.

(bsiegert)

2015-12-29 23:05:19 UTC MAIN commitmail json YAML

Updated x11/libdrm to 2.4.66

(wiz)

2015-12-29 23:05:09 UTC MAIN commitmail json YAML

Update libdrm to 2.4.66:

libdrm 2.4.66 release, mainly for new nouveau API.

lots of other changes in here as well though.

Ben Skeggs (14):
      nouveau: import and install a selection of nvif headers from the kernel
      nouveau: move more abi16-specific logic into abi16.c
      nouveau: move object functions up, to avoid future foward decls
      nouveau: make it possible to init object in pre-allocated memory
      nouveau: add interface to call an object's methods
      nouveau: add interfaces to query information about supported classes
      nouveau: introduce object to represent the kernel client
      nouveau: stack legacy nouveau_device on top of nouveau_drm
      nouveau: make use of nouveau_drm::fd instead of nouveau_device::fd
      nouveau: remove nouveau_object_find()
      nouveau: add new interface to create a nouveau_device
      nouveau: add support for newer kernel interfaces
      nouveau: clean up nouveau.h, noting deprecated members/functions
      Bump version for release

Ben Widawsky (2):
      intel: Add SKL GT4 PCI IDs
      intel: Cleanup SKL PCI ID definitions.

Chih-Wei Huang (1):
      intel: add the missing <strings.h> include

Dave Airlie (1):
      drm: add virtgpu_drm.h

Emil Velikov (17):
      automake: set --enable-valgrind during make distcheck
      xf86drmMode: smoke-test the atomic API
      tests/drmdevice: add new 'test'
      xf86drm: flex platform specifics into drmParsePciBusInfo
      xf86drm: move platform details to drmParsePciDeviceInfo()
      xf86drm: move the final linux specific bits out of drmGetDevices
      xf86drm: rename drmSameDevice to drmCompareBusInfo
      util_math: add MAX3 macro
      xf86drm: rework drmGetDevices()
      xf86drm: move ifdef __linux__ guards where needed
      xf86drm: warn on missing drmGetMinorNameForFD implementation
      xf86drm: split out drmProcessPciDevice and drmFoldDuplicatedDevices
      xf86drm: add drm{Get,Free}Device
      tests/drmdevice: add drm{Get,Free}Device() example
      Fix SunOS/NetBSD atomic macro
      xf86drm: remove makedev() hack/workaround
      configure.ac: test for the same atomic function as the one we use

Felix Janda (1):
      xf86drm: include <limits.h> for PATH_MAX

Jammy Zhou (1):
      amdgpu: fix overflow for timeout calculation

Jonathan Gray (1):
      configure.ac: rework compiler builtin atomic tests

Kristian Høgsberg Kristensen (3):
      intel: Update i915_drm.h
      Add tests/drmdevice to .gitignore
      intel: Add drm_intel_bo_set_softpin_offset to intel-symbol-check

Matt Roper (3):
      xf86drm: Fix error handling for drmGetDevices()
      xf86drm: Fix error handling for drmGetDevice()
      xf86drm: Handle unrecognized subsystems safely in drmGetDevice[s]()

Michał Winiarski (2):
      intel: Add support for softpin
      intel: Restore formatting of offsets in debug statements

Michel Dänzer (2):
      Fix void pointer arithmetic in drmProcessPciDevice
      radeon: Handle surface offsets exceeding 32 bits correctly

Michel Thierry (2):
      intel: 48b ppgtt support (EXEC_OBJECT_SUPPORTS_48B_ADDRESS flag)
      intel: add drm_intel_bo_use_48b_address_range to symbol-check test

Rob Clark (3):
      freedreno: don't reuse exported buffers
      freedreno: drop exported dmabuf fd tracking
      freedreno: debug msg cleanup

Stefan Agner (1):
      tests: remove missleading comments

Thierry Reding (10):
      tests: Split helpers into library
      tests: Move name tables to libutil
      proptest: Add Android support
      tests: Add libkms-test library
      tests: kms: Implement CRTC stealing test
      tests: kms: Implement universal planes test
      tests: Add helper to open a device/module
      modetest: Use util_open()
      proptest: Use util_open()
      vbltest: Use util_open()

Tobias Jakobi (18):
      exynos/fimg2d: fix empty buffer handling in g2d_flush()
      exynos/fimg2d: simplify base address submission in g2d_scale_and_blend()
      exynos/fimg2d: add g2d_check_space()
      exynos/fimg2d: add g2d_validate_xyz() functions
      exynos/fimg2d: remove default case from g2d_get_blend_op()
      exynos/fimg2d: remove superfluous initialization of g2d_point_val
      exynos/fimg2d: make g2d_add_cmd() less heavy
      exynos/fimg2d: add message prefix
      exynos/fimg2d: remove g2d_context from public header
      exynos: Introduce exynos_handle_event()
      tests/exynos: add fimg2d performance analysis
      exynos/fimg2d: add g2d_config_event
      tests/exynos: add fimg2d event test
      tests/exynos: use XRGB8888 for framebuffer
      exynos: fimg2d: add g2d_set_direction
      exynos/fimg2d: add g2d_move
      tests/exynos: add test for g2d_move
      exynos: bump version number

Tom St Denis (4):
      amdgpu: Unlock mutex if base_required is invalid
      amdgpu:  Fix use-after-free bug in vamgr_deinit
      amdgpu: Cleanly handle ENOMEM on result in amdgpu_bo_list_create()
      amdgpu:  Make amdgpu_cs_calculate_timeout() return something sensible on error

Tvrtko Ursulin (1):
      libdrm: Use userspace compatible type in fourcc_mod_code macro

(wiz)

2015-12-29 22:09:32 UTC MAIN commitmail json YAML

Forgot to bump revision, prodded by wiz@.

(bsiegert)

2015-12-29 22:07:20 UTC MAIN commitmail json YAML

Add a missing REPLACE_BASH. Patch from Kamel Derouiche in PR pkg/50598.

(bsiegert)

2015-12-29 22:01:07 UTC MAIN commitmail json YAML

Updated devel/fossil to 1.34

(nros)

2015-12-29 21:56:29 UTC MAIN commitmail json YAML

Convert sift to buildlink3.

(wiz)

2015-12-29 21:56:01 UTC MAIN commitmail json YAML

Add buildlink3.mk file for go-crypto.

(wiz)

2015-12-29 21:51:09 UTC MAIN commitmail json YAML

Go buildlink changes

(bsiegert)

2015-12-29 21:49:21 UTC MAIN commitmail json YAML

Add buildlink file here, too

(bsiegert)

2015-12-29 21:47:48 UTC MAIN commitmail json YAML

Real buildlink support for Go, hacked with wiz@.

Go packages now define a set of files to buildlink in their buildlink3.mk.
go-packages.mk no longer looks in ${PREFIX}/gopkg during the build. This
should also fix the spurious issues with rebuilds of .a files during bulk
builds of Go packages.

(bsiegert)

2015-12-29 21:42:09 UTC pkgsrc-2015Q4 commitmail json YAML

2015-12-29 21:40:40 UTC pkgsrc-2015Q4 commitmail json YAML

Pullup ticket #4880 - requested by wiz
multimedia/adobe-flash-plugin11: security fix

Revisions pulled up:
- multimedia/adobe-flash-plugin11/Makefile                      1.56
- multimedia/adobe-flash-plugin11/distinfo                      1.53

---
  Module Name: pkgsrc
  Committed By: tsutsui
  Date: Tue Dec 29 05:10:55 UTC 2015

  Modified Files:
  pkgsrc/multimedia/adobe-flash-plugin11: Makefile distinfo

  Log Message:
  Update adobe-flash-plugin11 to 11.2.202.559.

  Upstream announcement:

    https://helpx.adobe.com/security/products/flash-player/apsb16-01.html

  Adobe Security Bulletin

  Security updates available for Adobe Flash Player

  Release date: December 28, 2015

  Vulnerability identifier: APSB16-01

  CVE number: CVE-2015-8459, CVE-2015-8460, CVE-2015-8634, CVE-2015-8635,
    CVE-2015-8636, CVE-2015-8638, CVE-2015-8639, CVE-2015-8640, CVE-2015-8641,
    CVE-2015-8642, CVE-2015-8643, CVE-2015-8644, CVE-2015-8645, CVE-2015-8646,
    CVE-2015-8647, CVE-2015-8648, CVE-2015-8649, CVE-2015-8650, CVE-2015-8651

  Platform: All Platforms

(bsiegert)

2015-12-29 21:36:49 UTC MAIN commitmail json YAML

2015-12-29 21:21:30 UTC MAIN commitmail json YAML

Updated pkgtools/createbuildlink to 3.17

(wiz)

2015-12-29 20:53:06 UTC MAIN commitmail json YAML

Updated lang/nodejs to 5.3.0

(fhajny)

2015-12-29 20:52:54 UTC MAIN commitmail json YAML

Update lang/nodejs to 5.3.0.

- buffer: Buffer.prototype.includes() has been added to keep parity
  with TypedArrays.
- domains: Fix handling of uncaught exceptions.
- https: Added support for disabling session caching.
- repl: Allow third party modules to be imported using require().
  This corrects a regression from 5.2.0.
- deps: Upgrade libuv to 1.8.0.

(fhajny)

2015-12-29 20:47:00 UTC MAIN commitmail json YAML

Updated textproc/libodfgen to 0.1.5

(wiz)

2015-12-29 20:34:10 UTC MAIN commitmail json YAML

Updated lang/nodejs4 to 4.2.4

(fhajny)

2015-12-29 19:40:14 UTC MAIN commitmail json YAML

Updated archivers/p7zip to 15.09

(adam)

2015-12-29 19:39:35 UTC MAIN commitmail json YAML

2015-12-29 19:39:21 UTC MAIN commitmail json YAML

What's new after p7zip 9.38.1 :

  - 7-Zip now can extract ext2 and multivolume VMDK images.
  - 7-Zip now can extract ext3 and ext4 (Linux file system) images.
  - support of cygwin 64 bits
  - support of cygwin 64 bits with asm
  - cygwin : fix in GetRamSize()
  - cross building added :
makefile.linux_cross_aarch64
makefile.linux_cross_arm
makefile.linux_cross_ppc
makefile.linux_cross_ppc64
makefile.linux_cross_ppc64le
makefile.linux_cross_s390x  (7za and 7zr pass tests, 7z does not pass tests)

  - 7-Zip now can extract GPT images and single file QCOW2, VMDK, VDI images.
  - 7-Zip now can extract solid WIM archives with LZMS compression.
  - 7-Zip now can extract RAR5 archives.
  - 7-Zip now doesn't sort files by type while adding to solid 7z archive.
      new -mqs switch to sort files by type while adding to solid 7z archive.
  - 7-Zip now can create 7z, xz and zip archives with 1536 MB dictionary for LZMA/LZMA2.
  - 7-Zip now can extract .zipx (WinZip) archives that use xz compression.

(adam)

2015-12-29 19:35:39 UTC MAIN commitmail json YAML

2015-12-29 19:14:35 UTC MAIN commitmail json YAML

Document --binary-macpkg.

XXX: there should be a man page for the bootstrap script, or something.
XXX: AFAICT there is no one place its arguments are documented...

(dholland)

2015-12-29 18:17:04 UTC MAIN commitmail json YAML

2015-12-29 17:56:34 UTC MAIN commitmail json YAML

2015-12-29 17:55:01 UTC MAIN commitmail json YAML

Rework (and simplify) docs installation to avoid share/doc/html.
Mostly silences pkglint.

Bump PKGREVISION again (to 6).

(dholland)

2015-12-29 17:27:25 UTC MAIN commitmail json YAML

Add dependency on dconf so settings can be saved - issue reported by Jan Danielsson and fix from wiz@

(abs)

2015-12-29 15:31:13 UTC MAIN commitmail json YAML

Update fossil to version 1.34.

Remove readline dependency fossil now uses the linenoise library
(embedded src).
Install manpage, license and linenoise license.

Changelog:
* Make the fossil clean command undoable for files less than 10MiB.
* Update internal Unicode character tables, used in regular expression
  handling, from version 7.0 to 8.0.
* Add the new amend command which is used to modify tags of a "check-in".
* Fix bug in import command, handling version 3 of the svndump format for
  subversion.
* Add the all cache command.
* TH1 enhancements:
    Add minimal [lsearch] command. Only exact case-sensitive matching is
    supported.
    Add the [glob_match], [markdown], [dir], and [encode64] commands.
    Add the [tclIsSafe] and [tclMakeSafe] commands to the Tcl integration
    subsystem.
    Add 'double', 'integer', and 'list' classes to the [string is] command.
* Add the --undo option to the diff command.
* Build-in Antirez's "linenoise" command-line editing library
  for use with the fossil sql command on Unix platforms.
* Add stash cat as an alias for the stash show command.
* Automatically pull before fossil merge when auto-sync is enabled.
* Fix --hard option to fossil mv and fossil rm to enable them to work properly
  with certain relative paths.
* Change the mimetype for ".n" and ".man" files to text/plain.
* Display improvements in the fossil bisect chart command.
* Updated the built-in SQLite to version 3.9.1 and activated JSON1 and
  FTS5 support (both currently unused within Fossil).

(nros)

2015-12-29 15:12:20 UTC MAIN commitmail json YAML

Fix CVE-2015-6749 in vorbis-tools: Buffer overflow in the aiff_open function in
oggenc/audio.c in vorbis-tools 1.4.0 and earlier allows remote attackers to
cause a denial of service (crash) via a crafted AIFF file.

Bump pkgrevision.

(bsiegert)

2015-12-29 14:40:20 UTC MAIN commitmail json YAML

Update pcre2 to 10.20. Fix CVE-2015-8381.

Version 10.20 30-June-2015
--------------------------

1. Callouts with string arguments have been added.

2. Assertion code generator in JIT has been optimized.

3. The invalid pattern (?(?C) has a missing assertion condition at the end. The
pcre2_compile() function read past the end of the input before diagnosing an
error. This bug was discovered by the LLVM fuzzer.

4. Implemented pcre2_callout_enumerate().

5. Fix JIT compilation of conditional blocks whose assertion is converted to
(*FAIL). E.g: /(?(?!))/.

6. The pattern /(?(?!)^)/ caused references to random memory. This bug was
discovered by the LLVM fuzzer.

7. The assertion (?!) is optimized to (*FAIL). This was not handled correctly
when this assertion was used as a condition, for example (?(?!)a|b). In
pcre2_match() it worked by luck; in pcre2_dfa_match() it gave an incorrect
error about an unsupported item.

8. For some types of pattern, for example /Z*(|d*){216}/, the auto-
possessification code could take exponential time to complete. A recursion
depth limit of 1000 has been imposed to limit the resources used by this
optimization. This infelicity was discovered by the LLVM fuzzer.

9. A pattern such as /(*UTF)[\S\V\H]/, which contains a negated special class
such as \S in non-UCP mode, explicit wide characters (> 255) can be ignored
because \S ensures they are all in the class. The code for doing this was
interacting badly with the code for computing the amount of space needed to
compile the pattern, leading to a buffer overflow. This bug was discovered by
the LLVM fuzzer.

10. A pattern such as /((?2)+)((?1))/ which has mutual recursion nested inside
other kinds of group caused stack overflow at compile time. This bug was
discovered by the LLVM fuzzer.

11. A pattern such as /(?1)(?#?'){8}(a)/ which had a parenthesized comment
between a subroutine call and its quantifier was incorrectly compiled, leading
to buffer overflow or other errors. This bug was discovered by the LLVM fuzzer.

12. The illegal pattern /(?(?<E>.*!.*)?)/ was not being diagnosed as missing an
assertion after (?(. The code was failing to check the character after (?(?<
for the ! or = that would indicate a lookbehind assertion. This bug was
discovered by the LLVM fuzzer.

13. A pattern such as /X((?2)()*+){2}+/ which has a possessive quantifier with
a fixed maximum following a group that contains a subroutine reference was
incorrectly compiled and could trigger buffer overflow. This bug was discovered
by the LLVM fuzzer.

14. Negative relative recursive references such as (?-7) to non-existent
subpatterns were not being diagnosed and could lead to unpredictable behaviour.
This bug was discovered by the LLVM fuzzer.

15. The bug fixed in 14 was due to an integer variable that was unsigned when
it should have been signed. Some other "int" variables, having been checked,
have either been changed to uint32_t or commented as "must be signed".

16. A mutual recursion within a lookbehind assertion such as (?<=((?2))((?1)))
caused a stack overflow instead of the diagnosis of a non-fixed length
lookbehind assertion. This bug was discovered by the LLVM fuzzer.

17. The use of \K in a positive lookbehind assertion in a non-anchored pattern
(e.g. /(?<=\Ka)/) could make pcre2grep loop.

18. There was a similar problem to 17 in pcre2test for global matches, though
the code there did catch the loop.

19. If a greedy quantified \X was preceded by \C in UTF mode (e.g. \C\X*),
and a subsequent item in the pattern caused a non-match, backtracking over the
repeated \X did not stop, but carried on past the start of the subject, causing
reference to random memory and/or a segfault. There were also some other cases
where backtracking after \C could crash. This set of bugs was discovered by the
LLVM fuzzer.

20. The function for finding the minimum length of a matching string could take
a very long time if mutual recursion was present many times in a pattern, for
example, /((?2){73}(?2))((?1))/. A better mutual recursion detection method has
been implemented. This infelicity was discovered by the LLVM fuzzer.

21. Implemented PCRE2_NEVER_BACKSLASH_C.

22. The feature for string replication in pcre2test could read from freed
memory if the replication required a buffer to be extended, and it was not
working properly in 16-bit and 32-bit modes. This issue was discovered by a
fuzzer: see http://lcamtuf.coredump.cx/afl/.

23. Added the PCRE2_ALT_CIRCUMFLEX option.

24. Adjust the treatment of \8 and \9 to be the same as the current Perl
behaviour.

25. Static linking against the PCRE2 library using the pkg-config module was
failing on missing pthread symbols.

26. If a group that contained a recursive back reference also contained a
forward reference subroutine call followed by a non-forward-reference
subroutine call, for example /.((?2)(?R)\1)()/, pcre2_compile() failed to
compile correct code, leading to undefined behaviour or an internally detected
error. This bug was discovered by the LLVM fuzzer.

27. Quantification of certain items (e.g. atomic back references) could cause
incorrect code to be compiled when recursive forward references were involved.
For example, in this pattern: /(?1)()((((((\1++))\x85)+)|))/. This bug was
discovered by the LLVM fuzzer.

28. A repeated conditional group whose condition was a reference by name caused
a buffer overflow if there was more than one group with the given name. This
bug was discovered by the LLVM fuzzer.

29. A recursive back reference by name within a group that had the same name as
another group caused a buffer overflow. For example: /(?J)(?'d'(?'d'\g{d}))/.
This bug was discovered by the LLVM fuzzer.

30. A forward reference by name to a group whose number is the same as the
current group, for example in this pattern: /(?|(\k'Pm')|(?'Pm'))/, caused a
buffer overflow at compile time. This bug was discovered by the LLVM fuzzer.

31. Fix -fsanitize=undefined warnings for left shifts of 1 by 31 (it treats 1
as an int; fixed by writing it as 1u).

32. Fix pcre2grep compile when -std=c99 is used with gcc, though it still gives
a warning for "fileno" unless -std=gnu99 us used.

33. A lookbehind assertion within a set of mutually recursive subpatterns could
provoke a buffer overflow. This bug was discovered by the LLVM fuzzer.

34. Give an error for an empty subpattern name such as (?'').

35. Make pcre2test give an error if a pattern that follows #forbud_utf contains
\P, \p, or \X.

36. The way named subpatterns are handled has been refactored. There is now a
pre-pass over the regex which does nothing other than identify named
subpatterns and count the total captures. This means that information about
named patterns is known before the rest of the compile. In particular, it means
that forward references can be checked as they are encountered. Previously, the
code for handling forward references was contorted and led to several errors in
computing the memory requirements for some patterns, leading to buffer
overflows.

37. There was no check for integer overflow in subroutine calls such as (?123).

38. The table entry for \l in EBCDIC environments was incorrect, leading to its
being treated as a literal 'l' instead of causing an error.

39. If a non-capturing group containing a conditional group that could match
an empty string was repeated, it was not identified as matching an empty string
itself. For example: /^(?:(?(1)x|)+)+$()/.

40. In an EBCDIC environment, pcretest was mishandling the escape sequences
\a and \e in test subject lines.

41. In an EBCDIC environment, \a in a pattern was converted to the ASCII
instead of the EBCDIC value.

42. The handling of \c in an EBCDIC environment has been revised so that it is
now compatible with the specification in Perl's perlebcdic page.

43. Single character repetition in JIT has been improved. 20-30% speedup
was achieved on certain patterns.

44. The EBCDIC character 0x41 is a non-breaking space, equivalent to 0xa0 in
ASCII/Unicode. This has now been added to the list of characters that are
recognized as white space in EBCDIC.

45. When PCRE2 was compiled without Unicode support, the use of \p and \P gave
an error (correctly) when used outside a class, but did not give an error
within a class.

46. \h within a class was incorrectly compiled in EBCDIC environments.

47. JIT should return with error when the compiled pattern requires
more stack space than the maximum.

48. Fixed a memory leak in pcre2grep when a locale is set.

(bsiegert)

2015-12-29 13:41:58 UTC MAIN commitmail json YAML

2015-12-29 12:44:42 UTC MAIN commitmail json YAML

scamper and lsof updates.

(bsiegert)

2015-12-29 12:42:58 UTC MAIN commitmail json YAML

Update lsof to 4.88. From David H. Gutteridge in PR pkg/50487.

Reduced to 50 the number of open file descriptors lsof
attempts to close while trying to protect itself from a
file descriptor exec() attack.  This limits the overhead
lsof incurs on systems that have large file descriptor
limits, yet provides sufficient open descriptors for the
library functions lsof calls.

Updated for changes in FreeBSD 10 with advice from Eygene
Ryabinkin <rea@freebsd.org>.  Taught Configure to recognize
FreeBSD 8.4.

Herein am noting that lsof for Solaris 10 or 11 is no longer
supported.  I no longer have test systems.  Some support is
still available from Casper Dik <Casper.Dik@oracle.com> and a
Solaris 11 patch he provided is included in this revision.

Initialized local variables in the Linux process_id() function.
Jia He <jiakernel@gmail.com> reported the problem.

Added support for FreeBSD 11.

Updated FreeBSD ZFS Configure stanza to supply a dummy
opt_kdtrace.h when needed.

Added tmpfs file system support for FreeBSD.

Since a test system is no longer available, dropped the
claim of FreeBSD 4.9 support.

Added the +|-E options for Linux.  -E displays endpoint info;
+E displays endpoint info and endpopint files.  Masatake YAMATO
<yamato@redhat.com> requested this support and suggested code
to implement it.

Fixed a Linux bug handling processes whose command includes a
non-printing character, particularly a NEWLINE character, and
clarified printing of single '\\' characters in command and
file names.  Stephane Chazelas <stephane.chazelas@gmail.com>
reported the problem.

Added support for Linux RDMA and CRYPTO protocal names and UNIX
socket type with code from Masatake YAMATO <yamato@redhat.com>.

Fixed field output to insure that the field descriptor field is
always selected, since it identifies the file set.  The bug was
reported by Gary Plewa <gary.m.plewa-1@lowes.com>.

(bsiegert)

2015-12-29 12:13:30 UTC MAIN commitmail json YAML

Since DISTINFO_FILE is defined in lang/ruby/Makefile.common, no need to
define it here.

(taca)

2015-12-29 06:42:54 UTC MAIN commitmail json YAML

Drop libXp; bump PKGREVISION.

(dholland)

2015-12-29 06:30:24 UTC MAIN commitmail json YAML

2015-12-29 06:28:48 UTC MAIN commitmail json YAML

2015-12-29 06:27:56 UTC MAIN commitmail json YAML

2015-12-29 06:25:34 UTC MAIN commitmail json YAML

2015-12-29 06:23:55 UTC MAIN commitmail json YAML

2015-12-29 06:23:20 UTC MAIN commitmail json YAML

2015-12-29 06:22:54 UTC MAIN commitmail json YAML

2015-12-29 06:22:22 UTC MAIN commitmail json YAML

2015-12-29 06:20:30 UTC MAIN commitmail json YAML

Sort and remove duplicates.

(dholland)

2015-12-29 06:18:00 UTC MAIN commitmail json YAML

2015-12-29 06:17:08 UTC MAIN commitmail json YAML

2015-12-29 06:16:22 UTC MAIN commitmail json YAML

2015-12-29 06:15:29 UTC MAIN commitmail json YAML

2015-12-29 06:14:58 UTC MAIN commitmail json YAML

2015-12-29 06:14:06 UTC MAIN commitmail json YAML

2015-12-29 06:13:27 UTC MAIN commitmail json YAML

2015-12-29 06:12:53 UTC MAIN commitmail json YAML

2015-12-29 06:07:40 UTC MAIN commitmail json YAML

2015-12-29 06:06:30 UTC MAIN commitmail json YAML

2015-12-29 06:02:25 UTC MAIN commitmail json YAML

2015-12-29 06:00:28 UTC MAIN commitmail json YAML