pkgsrc-Changes-HG archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]
[pkgsrc/pkgsrc-2005Q3]: pkgsrc/www Pullup ticket 842 - requested by Manuel Bo...
details: https://anonhg.NetBSD.org/pkgsrc/rev/31cfd13ae7db
branches: pkgsrc-2005Q3
changeset: 499608:31cfd13ae7db
user: salo <salo%pkgsrc.org@localhost>
date: Wed Oct 19 22:04:48 2005 +0000
description:
Pullup ticket 842 - requested by Manuel Bouyer
security update for apache
Revisions pulled up:
- pkgsrc/www/apache/Makefile 1.173
- pkgsrc/www/apache/distinfo 1.47
- pkgsrc/www/apache/PLIST 1.14
- pkgsrc/www/ap-ssl/Makefile 1.92
- pkgsrc/www/ap-ssl/distinfo 1.30
Module Name: pkgsrc
Committed By: bouyer
Date: Wed Oct 19 20:30:21 UTC 2005
Modified Files:
pkgsrc/www/apache: Makefile distinfo
Log Message:
Update to 1.3.34. This is a security fix release, fix pkg/31868 by
Zafer Aydogan. Changes from 1.3.33:
*) hsregex: fix potential core dumping on 64 bit machines, such as
AMD64. bug 31858. [Glenn Strauss < gs-apache-dev gluelogic.com>]
*) SECURITY: core: If a request contains both Transfer-Encoding and
Content-Length headers, remove the Content-Length, mitigating some
HTTP Request Splitting/Spoofing attacks. This has no impact on
mod_proxy_http, yet affects any module which supports chunked
encoding yet fails to prefer T-E: chunked over the Content-Length
purported value. [Paul Querna, Joe Orton]
*) Added TraceEnable [on|off|extended] per-server directive to alter
the behavior of the TRACE method. This addresses a flaw in proxy
conformance to RFC 2616 - previously the proxy server would accept
a TRACE request body although the RFC prohibited it. The default
remains 'TraceEnable on'.
[William Rowe]
*) mod_digest: Fix another nonce string calculation issue.
[Eric Covener]
---
Module Name: pkgsrc
Committed By: bouyer
Date: Wed Oct 19 20:33:44 UTC 2005
Modified Files:
pkgsrc/www/ap-ssl: Makefile distinfo
Log Message:
Update to mod_ssl 2.8.25. The only change is support for apache 1.3.34.
---
Module Name: pkgsrc
Committed By: bouyer
Date: Wed Oct 19 21:42:59 UTC 2005
Modified Files:
pkgsrc/www/apache: PLIST
Log Message:
Add missing entry for a new file. Pointed out by Lubomir Sedlacik.
Close enouth to the package update to not bump pkgrevision.
diffstat:
www/ap-ssl/Makefile | 6 +++---
www/ap-ssl/distinfo | 8 ++++----
www/apache/Makefile | 9 ++++-----
www/apache/PLIST | 3 ++-
www/apache/distinfo | 14 +++++++-------
5 files changed, 20 insertions(+), 20 deletions(-)
diffs (99 lines):
diff -r 5d2762d3cabe -r 31cfd13ae7db www/ap-ssl/Makefile
--- a/www/ap-ssl/Makefile Wed Oct 19 12:14:29 2005 +0000
+++ b/www/ap-ssl/Makefile Wed Oct 19 22:04:48 2005 +0000
@@ -1,7 +1,7 @@
-# $NetBSD: Makefile,v 1.91 2005/09/16 13:53:56 salo Exp $
+# $NetBSD: Makefile,v 1.91.2.1 2005/10/19 22:04:48 salo Exp $
-DISTNAME= mod_ssl-2.8.24-1.3.33
-PKGNAME= ap-ssl-2.8.24
+DISTNAME= mod_ssl-2.8.25-1.3.34
+PKGNAME= ap-ssl-2.8.25
CATEGORIES= www security
MASTER_SITES= http://www.modssl.org/source/ \
ftp://ftp.pca.dfn.de/pub/tools/net/mod_ssl/source/ \
diff -r 5d2762d3cabe -r 31cfd13ae7db www/ap-ssl/distinfo
--- a/www/ap-ssl/distinfo Wed Oct 19 12:14:29 2005 +0000
+++ b/www/ap-ssl/distinfo Wed Oct 19 22:04:48 2005 +0000
@@ -1,7 +1,7 @@
-$NetBSD: distinfo,v 1.29 2005/09/16 13:53:56 salo Exp $
+$NetBSD: distinfo,v 1.29.2.1 2005/10/19 22:04:48 salo Exp $
-SHA1 (mod_ssl-2.8.24-1.3.33.tar.gz) = cb2e77efa0c7df3368b3be0d6bbdf13fa92090f1
-RMD160 (mod_ssl-2.8.24-1.3.33.tar.gz) = 1651dcd85abd37d6955f241c730e101df482d545
-Size (mod_ssl-2.8.24-1.3.33.tar.gz) = 820292 bytes
+SHA1 (mod_ssl-2.8.25-1.3.34.tar.gz) = 150f726539d74c0d2af02e482be78bbcdb811395
+RMD160 (mod_ssl-2.8.25-1.3.34.tar.gz) = 90a3913d30c7f4d194907463125c90101005837a
+Size (mod_ssl-2.8.25-1.3.34.tar.gz) = 820352 bytes
SHA1 (patch-aa) = f2db042ff2e15ebfc9387b254467be78747cf947
SHA1 (patch-ab) = 936bc956761559c51263cf7645d135abe40069cd
diff -r 5d2762d3cabe -r 31cfd13ae7db www/apache/Makefile
--- a/www/apache/Makefile Wed Oct 19 12:14:29 2005 +0000
+++ b/www/apache/Makefile Wed Oct 19 22:04:48 2005 +0000
@@ -1,11 +1,10 @@
-# $NetBSD: Makefile,v 1.171 2005/09/16 13:53:56 salo Exp $
+# $NetBSD: Makefile,v 1.171.2.1 2005/10/19 22:04:48 salo Exp $
#
# This pkg does not compile in mod_ssl, only the `mod_ssl EAPI' (a set of
# code hooks that allow mod_ssl to be compiled separately later, if desired).
-DISTNAME= apache_1.3.33
+DISTNAME= apache_1.3.34
PKGNAME= ${DISTNAME:S/_/-/}
-PKGREVISION= 7
CATEGORIES= www
MASTER_SITES= ${MASTER_SITE_APACHE:=httpd/} \
${MASTER_SITE_APACHE:=httpd/old/}
@@ -18,8 +17,8 @@
NETBSD_LOGO= sitedrivenby.gif
SITES_${NETBSD_LOGO}= http://www.NetBSD.org/images/logos/
-MODSSL_VERSION= 2.8.24
-MODSSL_DISTNAME= mod_ssl-${MODSSL_VERSION}-1.3.33
+MODSSL_VERSION= 2.8.25
+MODSSL_DISTNAME= mod_ssl-${MODSSL_VERSION}-1.3.34
MODSSL_DIST= ${MODSSL_DISTNAME}.tar.gz
MODSSL_SRC= ${WRKDIR}/${MODSSL_DISTNAME}
SITES_${MODSSL_DIST}= http://www.modssl.org/source/ \
diff -r 5d2762d3cabe -r 31cfd13ae7db www/apache/PLIST
--- a/www/apache/PLIST Wed Oct 19 12:14:29 2005 +0000
+++ b/www/apache/PLIST Wed Oct 19 22:04:48 2005 +0000
@@ -1,4 +1,4 @@
-@comment $NetBSD: PLIST,v 1.13 2005/05/02 20:34:06 reed Exp $
+@comment $NetBSD: PLIST,v 1.13.4.1 2005/10/19 22:04:48 salo Exp $
bin/checkgid
bin/dbmmanage
bin/htdigest
@@ -160,6 +160,7 @@
share/httpd/htdocs/manual/index.html.html
share/httpd/htdocs/manual/index.html.ja.jis
share/httpd/htdocs/manual/install-tpf.html
+share/httpd/htdocs/manual/install-ztpf.html
share/httpd/htdocs/manual/install.html.en
share/httpd/htdocs/manual/install.html.es
share/httpd/htdocs/manual/install.html.fr
diff -r 5d2762d3cabe -r 31cfd13ae7db www/apache/distinfo
--- a/www/apache/distinfo Wed Oct 19 12:14:29 2005 +0000
+++ b/www/apache/distinfo Wed Oct 19 22:04:48 2005 +0000
@@ -1,14 +1,14 @@
-$NetBSD: distinfo,v 1.46 2005/09/16 13:53:57 salo Exp $
+$NetBSD: distinfo,v 1.46.2.1 2005/10/19 22:04:48 salo Exp $
-SHA1 (apache_1.3.33.tar.gz) = 4cd49534d1abd04c81ab215f2457122d85855b0d
-RMD160 (apache_1.3.33.tar.gz) = 80e9ea2c7c75f49454acfd83cead5506c5ffddea
-Size (apache_1.3.33.tar.gz) = 2468567 bytes
+SHA1 (apache_1.3.34.tar.gz) = df082b73f1220555dc416c0c5afa746e30a9e0de
+RMD160 (apache_1.3.34.tar.gz) = e39dfc57b7f9164aa76641de3fa74f0314c9ec9e
+Size (apache_1.3.34.tar.gz) = 2468056 bytes
SHA1 (sitedrivenby.gif) = 7671e9a8ec2cad3961b268befd33c0920e07c658
RMD160 (sitedrivenby.gif) = 2e350e6531a800da8796207509c12fb590d0affa
Size (sitedrivenby.gif) = 8519 bytes
-SHA1 (mod_ssl-2.8.24-1.3.33.tar.gz) = cb2e77efa0c7df3368b3be0d6bbdf13fa92090f1
-RMD160 (mod_ssl-2.8.24-1.3.33.tar.gz) = 1651dcd85abd37d6955f241c730e101df482d545
-Size (mod_ssl-2.8.24-1.3.33.tar.gz) = 820292 bytes
+SHA1 (mod_ssl-2.8.25-1.3.34.tar.gz) = 150f726539d74c0d2af02e482be78bbcdb811395
+RMD160 (mod_ssl-2.8.25-1.3.34.tar.gz) = 90a3913d30c7f4d194907463125c90101005837a
+Size (mod_ssl-2.8.25-1.3.34.tar.gz) = 820352 bytes
SHA1 (patch-aa) = ae280b14dc0102ecfbe3675ca0b5d2b74ee790ca
SHA1 (patch-ab) = 084d52bb2afbacf18b9d0793293d8ae333c67802
SHA1 (patch-ac) = b961c90a58a94f48daff417af146df98d5ec428c
Home |
Main Index |
Thread Index |
Old Index