Tue Oct 26 18:42:55 2021 UTC ()
mail/mailman: Update to 2.1.35

2.1.35 (19-Oct-2021)
  Security
    - A potential for for a list member to carry out an off-line brute force
      attack to obtain the list admin password has been reported by Andre
      Protas, Richard Cloke and Andy Nuttall of Apple.  This is fixed.
      CVE-2021-42096  (LP:#1947639)
    - A CSRF attack via the user options page could allow takeover of a users
      account.  This is fixed.  CVE-2021-42097  (LP:#1947640)
  Bug Fixes and other patches
    - Fixed an issue where sometimes the wrapper message for DMARC mitigation
      Wrap Message has no Subject:.  (LP: #1915655)
    - Plain text message bodies with Content-Disposition: and no declared
      charset are no longer scrubbed.  (LP: #1917968)
    - CommandRunner now recodes message bodies in the charset of the user's
      or list's language to avoid a possible UnicodeError when including the
      message body in the reply.  (LP: #1921682)
    - Delivery disabled by bounce notices to admins now have 'disabled'
      properly translated.  (LP: #1922843)
    - DMARC policy discovery ignores domains with multiple DMARC records per
      RFC 7849,  (LP: 1931029)


(tm)
diff -r1.94 -r1.95 pkgsrc/mail/mailman/Makefile
diff -r1.30 -r1.31 pkgsrc/mail/mailman/PLIST
diff -r1.30 -r1.31 pkgsrc/mail/mailman/distinfo

cvs diff -r1.94 -r1.95 pkgsrc/mail/mailman/Makefile (expand / switch to unified diff)

--- pkgsrc/mail/mailman/Makefile 2020/12/04 20:45:27 1.94
+++ pkgsrc/mail/mailman/Makefile 2021/10/26 18:42:55 1.95
@@ -1,19 +1,18 @@ @@ -1,19 +1,18 @@
1# $NetBSD: Makefile,v 1.94 2020/12/04 20:45:27 nia Exp $ 1# $NetBSD: Makefile,v 1.95 2021/10/26 18:42:55 tm Exp $
2 2
3DISTNAME= mailman-2.1.34 3DISTNAME= mailman-2.1.35
4PKGREVISION= 1 
5CATEGORIES= mail www 4CATEGORIES= mail www
6MASTER_SITES= https://launchpad.net/mailman/2.1/2.1.34/+download/ 5MASTER_SITES= https://launchpad.net/mailman/2.1/2.1.35/+download/
7EXTRACT_SUFX= .tgz 6EXTRACT_SUFX= .tgz
8 7
9MAINTAINER= pkgsrc-users@NetBSD.org 8MAINTAINER= pkgsrc-users@NetBSD.org
10HOMEPAGE= https://www.list.org/ 9HOMEPAGE= https://www.list.org/
11COMMENT= The GNU Mailing List Manager 10COMMENT= The GNU Mailing List Manager
12LICENSE= gnu-gpl-v2 11LICENSE= gnu-gpl-v2
13 12
14DEPENDS+= ${PYPKGPREFIX}-dns-[0-9]*:../../net/py-dns 13DEPENDS+= ${PYPKGPREFIX}-dns-[0-9]*:../../net/py-dns
15 14
16.include "../../mk/bsd.prefs.mk" 15.include "../../mk/bsd.prefs.mk"
17 16
18PKG_SYSCONFSUBDIR?= httpd 17PKG_SYSCONFSUBDIR?= httpd
19MESSAGE_SUBST+= PKG_SYSCONFDIR=${PKG_SYSCONFDIR} 18MESSAGE_SUBST+= PKG_SYSCONFDIR=${PKG_SYSCONFDIR}

cvs diff -r1.30 -r1.31 pkgsrc/mail/mailman/PLIST (expand / switch to unified diff)

--- pkgsrc/mail/mailman/PLIST 2020/08/26 18:40:35 1.30
+++ pkgsrc/mail/mailman/PLIST 2021/10/26 18:42:55 1.31
@@ -1,14 +1,14 @@ @@ -1,14 +1,14 @@
1@comment $NetBSD: PLIST,v 1.30 2020/08/26 18:40:35 wiz Exp $ 1@comment $NetBSD: PLIST,v 1.31 2021/10/26 18:42:55 tm Exp $
2lib/mailman/Mailman/Archiver/Archiver.py 2lib/mailman/Mailman/Archiver/Archiver.py
3lib/mailman/Mailman/Archiver/Archiver.pyc 3lib/mailman/Mailman/Archiver/Archiver.pyc
4lib/mailman/Mailman/Archiver/HyperArch.py 4lib/mailman/Mailman/Archiver/HyperArch.py
5lib/mailman/Mailman/Archiver/HyperArch.pyc 5lib/mailman/Mailman/Archiver/HyperArch.pyc
6lib/mailman/Mailman/Archiver/HyperDatabase.py 6lib/mailman/Mailman/Archiver/HyperDatabase.py
7lib/mailman/Mailman/Archiver/HyperDatabase.pyc 7lib/mailman/Mailman/Archiver/HyperDatabase.pyc
8lib/mailman/Mailman/Archiver/__init__.py 8lib/mailman/Mailman/Archiver/__init__.py
9lib/mailman/Mailman/Archiver/__init__.pyc 9lib/mailman/Mailman/Archiver/__init__.pyc
10lib/mailman/Mailman/Archiver/pipermail.py 10lib/mailman/Mailman/Archiver/pipermail.py
11lib/mailman/Mailman/Archiver/pipermail.pyc 11lib/mailman/Mailman/Archiver/pipermail.pyc
12lib/mailman/Mailman/Autoresponder.py 12lib/mailman/Mailman/Autoresponder.py
13lib/mailman/Mailman/Autoresponder.pyc 13lib/mailman/Mailman/Autoresponder.pyc
14lib/mailman/Mailman/Bouncer.py 14lib/mailman/Mailman/Bouncer.py
@@ -2222,26 +2222,27 @@ lib/mailman/tests/bounces/simple_28.txt @@ -2222,26 +2222,27 @@ lib/mailman/tests/bounces/simple_28.txt
2222lib/mailman/tests/bounces/simple_29.txt 2222lib/mailman/tests/bounces/simple_29.txt
2223lib/mailman/tests/bounces/simple_30.txt 2223lib/mailman/tests/bounces/simple_30.txt
2224lib/mailman/tests/bounces/simple_31.txt 2224lib/mailman/tests/bounces/simple_31.txt
2225lib/mailman/tests/bounces/simple_32.txt 2225lib/mailman/tests/bounces/simple_32.txt
2226lib/mailman/tests/bounces/simple_33.txt 2226lib/mailman/tests/bounces/simple_33.txt
2227lib/mailman/tests/bounces/simple_34.txt 2227lib/mailman/tests/bounces/simple_34.txt
2228lib/mailman/tests/bounces/simple_35.txt 2228lib/mailman/tests/bounces/simple_35.txt
2229lib/mailman/tests/bounces/simple_36.txt 2229lib/mailman/tests/bounces/simple_36.txt
2230lib/mailman/tests/bounces/simple_37.txt 2230lib/mailman/tests/bounces/simple_37.txt
2231lib/mailman/tests/bounces/simple_38.txt 2231lib/mailman/tests/bounces/simple_38.txt
2232lib/mailman/tests/bounces/simple_39.txt 2232lib/mailman/tests/bounces/simple_39.txt
2233lib/mailman/tests/bounces/simple_40.txt 2233lib/mailman/tests/bounces/simple_40.txt
2234lib/mailman/tests/bounces/simple_41.txt 2234lib/mailman/tests/bounces/simple_41.txt
 2235lib/mailman/tests/bounces/simple_44.txt
2235lib/mailman/tests/bounces/sina_01.txt 2236lib/mailman/tests/bounces/sina_01.txt
2236lib/mailman/tests/bounces/smtp32_01.txt 2237lib/mailman/tests/bounces/smtp32_01.txt
2237lib/mailman/tests/bounces/smtp32_02.txt 2238lib/mailman/tests/bounces/smtp32_02.txt
2238lib/mailman/tests/bounces/smtp32_03.txt 2239lib/mailman/tests/bounces/smtp32_03.txt
2239lib/mailman/tests/bounces/smtp32_04.txt 2240lib/mailman/tests/bounces/smtp32_04.txt
2240lib/mailman/tests/bounces/smtp32_05.txt 2241lib/mailman/tests/bounces/smtp32_05.txt
2241lib/mailman/tests/bounces/smtp32_06.txt 2242lib/mailman/tests/bounces/smtp32_06.txt
2242lib/mailman/tests/bounces/smtp32_07.txt 2243lib/mailman/tests/bounces/smtp32_07.txt
2243lib/mailman/tests/bounces/yahoo_01.txt 2244lib/mailman/tests/bounces/yahoo_01.txt
2244lib/mailman/tests/bounces/yahoo_02.txt 2245lib/mailman/tests/bounces/yahoo_02.txt
2245lib/mailman/tests/bounces/yahoo_03.txt 2246lib/mailman/tests/bounces/yahoo_03.txt
2246lib/mailman/tests/bounces/yahoo_04.txt 2247lib/mailman/tests/bounces/yahoo_04.txt
2247lib/mailman/tests/bounces/yahoo_05.txt 2248lib/mailman/tests/bounces/yahoo_05.txt

cvs diff -r1.30 -r1.31 pkgsrc/mail/mailman/distinfo (expand / switch to unified diff)

--- pkgsrc/mail/mailman/distinfo 2021/10/26 10:54:06 1.30
+++ pkgsrc/mail/mailman/distinfo 2021/10/26 18:42:55 1.31
@@ -1,14 +1,14 @@ @@ -1,14 +1,14 @@
1$NetBSD: distinfo,v 1.30 2021/10/26 10:54:06 nia Exp $ 1$NetBSD: distinfo,v 1.31 2021/10/26 18:42:55 tm Exp $
2 2
3BLAKE2s (mailman-2.1.34.tgz) = 23d0f3cbb0103395654adaa0e38bf64e9e598a237c53584a08d4390bb45b3716 3BLAKE2s (mailman-2.1.35.tgz) = a6a80c5ad82c38e6801fadd2995c140562baa9b716aab78ffd99671ff627023f
4SHA512 (mailman-2.1.34.tgz) = 34b8a2c1c335327ac899e6be71de020f80ec053823c9812c48609e97834f5a4b48939bbd640f8dff541c4189088199cae93818f77056e96c2318f565743a97bf 4SHA512 (mailman-2.1.35.tgz) = 2411a1a8196ec9c298231bfb649c2575b899ce167730b0069c76712a95c488520ca55b56a383b18a3e245774ad76ca1df7dbf3a937c2e2837021128709746ae4
5Size (mailman-2.1.34.tgz) = 9414225 bytes 5Size (mailman-2.1.35.tgz) = 9508348 bytes
6SHA1 (patch-aa) = 9684b1caeb52f31ee6967eae3f9a464de214879e 6SHA1 (patch-aa) = 9684b1caeb52f31ee6967eae3f9a464de214879e
7SHA1 (patch-ab) = 39f6294e53110bd1fd09b1e90ab46820f4d48e3f 7SHA1 (patch-ab) = 39f6294e53110bd1fd09b1e90ab46820f4d48e3f
8SHA1 (patch-ad) = 665884b9dd1789e4abd430c762bdbfd707d48d30 8SHA1 (patch-ad) = 665884b9dd1789e4abd430c762bdbfd707d48d30
9SHA1 (patch-ae) = 6c17de398014217be8f1c7a3b3a6f8d379fc0fb2 9SHA1 (patch-ae) = 6c17de398014217be8f1c7a3b3a6f8d379fc0fb2
10SHA1 (patch-af) = 985a619a055151d998cefd0c1b7280a0d55f889e 10SHA1 (patch-af) = 985a619a055151d998cefd0c1b7280a0d55f889e
11SHA1 (patch-ag) = fac40640db483c2e9db3a79ec0696dc60596e453 11SHA1 (patch-ag) = fac40640db483c2e9db3a79ec0696dc60596e453
12SHA1 (patch-ah) = c7cde35f787c003ace550a98d8d5e166ba2d48dc 12SHA1 (patch-ah) = c7cde35f787c003ace550a98d8d5e166ba2d48dc
13SHA1 (patch-ai) = f3afeba664b0cca27f160fde3b94c7b7f8498e57 13SHA1 (patch-ai) = f3afeba664b0cca27f160fde3b94c7b7f8498e57
14SHA1 (patch-configure) = 0c4f29b7f5e5cb6c1c0f42f12022fcf6e0fa1309 14SHA1 (patch-configure) = 0c4f29b7f5e5cb6c1c0f42f12022fcf6e0fa1309