Subject: pkg/20796: updated package: security/nessus
To: None <gnats-bugs@gnats.netbsd.org>
From: None <adrianp@stindustries.net>
List: netbsd-bugs
Date: 03/18/2003 21:41:27
>Number: 20796
>Category: pkg
>Synopsis: updated package: security/nessus
>Confidential: no
>Severity: non-critical
>Priority: low
>Responsible: pkg-manager
>State: open
>Class: change-request
>Submitter-Id: net
>Arrival-Date: Tue Mar 18 21:42:00 PST 2003
>Closed-Date:
>Last-Modified:
>Originator: Adrian Portelli
>Release: NetBSD 1.6 i386
>Organization:
STIndustries
>Environment:
NetBSD krusty.mdc.stindustries.net 1.6 NetBSD 1.6 (KRUSTY) #1: Wed Feb 5 21:45:03 EST 2003 root@krusty.mdc.stindustries.net:/usr/src/sys/arch/i386/compile/KRUSTY i386
>Description:
The version of nessus in pkgsrc is out of date.
The newest version is 2.0.1.
From the nessus web page:
What is new in Nessus 2.0.1, compared to 2.0.0 :
changes by Renaud Deraison (deraison at cvs.nessus.org)
Minor bugfixes (bugs #180, #183, #185, #188, #189, #195, #197, #202, #203, #20 4)
Fixed the "pink" graphical report issue
Added http keep-alive support in the CGI related plugins
Fixed a bug in the function get_kb_list() which would not always work properly
Fixed an issue where in some situations, some HTTP services would not be tested for flaws if they have not been port-scanned first
Added new signatures in find_services.nes
changes by Stephen Friedl (steve at unixwiz.net)
Fixed bugs and warnings in nessus-libraries
What is new in Nessus 2.0, compared to 1.2 :
Huge speed gains :
libnasl has been rewritten from scratch
extended the NASL language
Smarter plugin scheduler, for better parallelism
Enhanced service detection
Greatly reduced memory usage
Support for multiple CVE and BID in the plugins
New port scanner designed to be fast against firewalled hosts
A NetBSD startup script now supplied with the nessus-core package.
It may need a bit more work as I was getting some strange errors when testing it.
If this is committed PR# pkg/18734 can be closed as well.
>How-To-Repeat:
cd pkgsrc/security/nessus && make show-var VARNAME=DISTNAME
>Fix:
## nessus-libraries ###
--- PLIST.orig Fri Dec 20 05:30:14 2002
+++ PLIST Wed Mar 19 12:37:27 2003
@@ -1,4 +1,4 @@
-@comment $NetBSD: PLIST,v 1.5 2002/12/19 18:30:14 frueauf Exp $
+@comment $NetBSD$
bin/nessus-config
include/nessus/getopt.h
include/nessus/harglists.h
@@ -10,18 +10,18 @@
lib/libhosts_gatherer.a
lib/libhosts_gatherer.la
lib/libhosts_gatherer.so
-lib/libhosts_gatherer.so.3
-lib/libhosts_gatherer.so.3.7
+lib/libhosts_gatherer.so.2
+lib/libhosts_gatherer.so.2.1
lib/libnessus.a
lib/libnessus.la
lib/libnessus.so
-lib/libnessus.so.3
-lib/libnessus.so.3.7
+lib/libnessus.so.2
+lib/libnessus.so.2.1
lib/libpcap-nessus.a
lib/libpcap-nessus.la
lib/libpcap-nessus.so
-lib/libpcap-nessus.so.3
-lib/libpcap-nessus.so.3.7
+lib/libpcap-nessus.so.2
+lib/libpcap-nessus.so.2.1
man/man1/nessus-config.1
@dirrm include/nessus/net
@dirrm include/nessus
--- buildlink2.mk.orig Fri Dec 20 05:30:14 2002
+++ buildlink2.mk Wed Mar 19 12:32:46 2003
@@ -5,7 +5,7 @@
NESSUS_LIBRARIES_BUILDLINK2_MK= # defined
BUILDLINK_PACKAGES+= nessus-libraries
-BUILDLINK_DEPENDS.nessus-libraries?= nessus-libraries>=1.2.7
+BUILDLINK_DEPENDS.nessus-libraries?= nessus-libraries>=2.0.1
BUILDLINK_PKGSRCDIR.nessus-libraries?= ../../security/nessus-libraries
EVAL_PREFIX+= BUILDLINK_PREFIX.nessus-libraries=nessus-libraries
--- distinfo.orig Fri Dec 20 05:30:14 2002
+++ distinfo Wed Mar 19 12:32:58 2003
@@ -1,6 +1,6 @@
-$NetBSD: distinfo,v 1.10 2002/12/19 18:30:14 frueauf Exp $
+$NetBSD$
-SHA1 (nessus-libraries-1.2.7.tar.gz) = 99b5f550886d8c6712bacb22a073cb6ba8462bc1
-Size (nessus-libraries-1.2.7.tar.gz) = 397218 bytes
-SHA1 (patch-aa) = bc78c512fb29bc56df28d235195b53079777d7e2
-SHA1 (patch-ac) = b26f7728487ce335296b6a1eb3c3145d8cf5dbc3
+SHA1 (nessus-libraries-2.0.1.tar.gz) = d0410ce8bb508f69f6527e42bb36b31d619723ed
+Size (nessus-libraries-2.0.1.tar.gz) = 412511 bytes
+SHA1 (patch-aa) = fce4d5196841225b5b85a8525dd199bcdf2f835d
+SHA1 (patch-ac) = 97d2c4da4a50c56b8fb4531c535b29a666a3d160
--- patches/patch-aa.orig Fri Dec 20 05:30:14 2002
+++ patches/patch-aa Sat Mar 1 11:43:37 2003
@@ -1,13 +1,13 @@
-$NetBSD: patch-aa,v 1.3 2002/12/19 18:30:14 frueauf Exp $
+$NetBSD$
---- nessus-config.pre.in.orig Sat Dec 14 15:13:20 2002
-+++ nessus-config.pre.in Thu Dec 19 15:24:39 2002
+--- nessus-config.pre.in.orig Tue Feb 25 03:02:39 2003
++++ nessus-config.pre.in Tue Feb 25 03:05:19 2003
@@ -48,7 +48,7 @@
;;
--libs)
-- echo $Xn "-lc -L$LIBDIR -lnessus -lhosts_gatherer @pcap_flag@ $CIPHER $EXTRA $Xc"
-+ echo $Xn "-lc -Wl,-R$LIBDIR -L$LIBDIR -lnessus -lhosts_gatherer @pcap_flag@ $CIPHER $EXTRA $Xc"
+- echo $Xn "-L$DESTDIR$LIBDIR -lnessus -lhosts_gatherer @pcap_flag@ $CIPHER $EXTRA $Xc"
++ echo $Xn "-Wl,-R$LIBDIR -L$DESTDIR$LIBDIR -lnessus -lhosts_gatherer @pcap_flag@ $CIPHER $EXTRA $Xc"
;;
--cflags)
- echo $Xn "$DEFS -I$INCLUDEDIR/nessus $CIPHER_CFLAGS $SSL_CFLAGS $Xc"
+ echo $Xn "$DEFS -I$DESTDIR$INCLUDEDIR/nessus $CIPHER_CFLAGS $SSL_CFLAGS $Xc"
--- patches/patch-ac.orig Fri May 10 23:18:46 2002
+++ patches/patch-ac Sat Mar 1 11:43:37 2003
@@ -1,25 +1,25 @@
-$NetBSD: patch-ac,v 1.3 2002/05/10 13:18:46 frueauf Exp $
+$NetBSD$
---- Makefile.orig Fri Oct 26 07:54:10 2001
-+++ Makefile Fri May 10 13:11:04 2002
+--- Makefile.orig Tue Feb 25 03:06:14 2003
++++ Makefile Tue Feb 25 03:07:52 2003
@@ -51,15 +51,17 @@
cd libhosts_gatherer && ${MAKE} install
-- $(INSTALL) -m 0444 include/includes.h ${includedir}/nessus
+- $(INSTALL) -m 0444 include/includes.h $(DESTDIR)${includedir}/nessus
+ # Use the includes.h from nessus-core:
-+ #$(INSTALL) -m 0444 include/includes.h ${includedir}/nessus
- $(INSTALL) -m 0444 include/libnessus.h ${includedir}/nessus
- $(INSTALL) -m 0444 include/harglists.h ${includedir}/nessus
- $(INSTALL) -m 0444 include/libvers.h ${includedir}/nessus
- $(INSTALL) -m 0444 include/getopt.h ${includedir}/nessus
- test -d ${bindir} || ${INSTALL_DIR} -m 755 ${bindir}
-- test -d ${sbindir} || ${INSTALL_DIR} -m 755 ${sbindir}
-+ #test -d ${sbindir} || ${INSTALL_DIR} -m 755 ${sbindir}
- $(INSTALL) -m 0755 nessus-config ${bindir}/nessus-config
-- $(INSTALL) -m 0755 uninstall-nessus ${sbindir}/uninstall-nessus
++ #$(INSTALL) -m 0444 include/includes.h $(DESTDIR)${includedir}/nessus
+ $(INSTALL) -m 0444 include/libnessus.h $(DESTDIR)${includedir}/nessus
+ $(INSTALL) -m 0444 include/harglists.h $(DESTDIR)${includedir}/nessus
+ $(INSTALL) -m 0444 include/libvers.h $(DESTDIR)${includedir}/nessus
+ $(INSTALL) -m 0444 include/getopt.h $(DESTDIR)${includedir}/nessus
+ test -d $(DESTDIR)${bindir} || ${INSTALL_DIR} -m 755 $(DESTDIR)${bindir}
+- test -d $(DESTDIR)${sbindir} || ${INSTALL_DIR} -m 755 $(DESTDIR)${sbindir}
++ #test -d $(DESTDIR)${sbindir} || ${INSTALL_DIR} -m 755 $(DESTDIR)${sbindir}
+ $(INSTALL) -m 0755 nessus-config $(DESTDIR)${bindir}/nessus-config
+- $(INSTALL) -m 0755 uninstall-nessus $(DESTDIR)${sbindir}/uninstall-nessus
+ # we use pkg_* tools to deinstall nessus
-+ #$(INSTALL) -m 0755 uninstall-nessus ${sbindir}/uninstall-nessus
- test -d ${mandir} || ${INSTALL_DIR} -m 755 ${mandir}
- test -d ${mandir}/man1 || ${INSTALL_DIR} -m 755 ${mandir}/man1
- $(INSTALL) -m 0644 nessus-config.1 ${mandir}/man1
++ #$(INSTALL) -m 0755 uninstall-nessus $(DESTDIR)${sbindir}/uninstall-nessus
+ test -d $(DESTDIR)${mandir} || ${INSTALL_DIR} -m 755 $(DESTDIR)${mandir}
+ test -d $(DESTDIR)${mandir}/man1 || ${INSTALL_DIR} -m 755 $(DESTDIR)${mandir}/man1
+ $(INSTALL) -m 0644 nessus-config.1 $(DESTDIR)${mandir}/man1
## nessus-plugins ##
--- PLIST.orig Mon Dec 30 23:13:33 2002
+++ PLIST Wed Mar 19 14:14:35 2003
@@ -1,7 +1,5 @@
-@comment $NetBSD: PLIST,v 1.7 2002/12/30 12:13:33 frueauf Exp $
+@comment $NetBSD$
bin/nessus-build
-etc/nessus/accounts.txt
-etc/nessus/queso.conf
lib/nessus/plugins/3com_switches.nasl
lib/nessus/plugins/4553.nasl
lib/nessus/plugins/AnyForm.nasl
@@ -24,10 +22,12 @@
lib/nessus/plugins/CSCdw67458.nasl
lib/nessus/plugins/CSCdy03429.nasl
lib/nessus/plugins/ColdFusion.nasl
+lib/nessus/plugins/CuteNews_code_injection.nasl
lib/nessus/plugins/DDI_AirConnect_Default_Password.nasl
lib/nessus/plugins/DDI_Cabletron_Web_View.nasl
lib/nessus/plugins/DDI_Compaq_Mgmt_Proxy.nasl
lib/nessus/plugins/DDI_Directory_Scanner.nasl
+lib/nessus/plugins/DDI_Enhydra_Default.nasl
lib/nessus/plugins/DDI_F5_Default_Support.nasl
lib/nessus/plugins/DDI_FTP_Any_User_Login.nasl
lib/nessus/plugins/DDI_GlobalASA_Retrieval.nasl
@@ -41,15 +41,22 @@
lib/nessus/plugins/DDI_Linksys_Router_Default_Password.nasl
lib/nessus/plugins/DDI_MPEiX_FTP_Accounts.nasl
lib/nessus/plugins/DDI_MRTG_File_Read.nasl
+lib/nessus/plugins/DDI_Netscape_Enterprise_Default_Administrative_Password.nasl
lib/nessus/plugins/DDI_Netware_Management_Portal.nasl
lib/nessus/plugins/DDI_PIX_Firewall_Manager.nasl
lib/nessus/plugins/DDI_Unprotected_PCanywhere.nasl
lib/nessus/plugins/DDI_Unprotected_SiteScope.nasl
lib/nessus/plugins/DDI_WhatsUp_Default.nasl
+lib/nessus/plugins/DDI_motorola_vanguard_no_pass.nasl
+lib/nessus/plugins/DDI_tomcat_default_accounts.nasl
+lib/nessus/plugins/DDI_warftpd_cwd_overflow.nasl
+lib/nessus/plugins/DDI_warftpd_dir_traversal.nasl
+lib/nessus/plugins/DDI_warftpd_user_overflow.nasl
lib/nessus/plugins/DDI_ws_ftp-server-cpwd-bo.nasl
lib/nessus/plugins/ExAir_dos_advsearch.nasl
lib/nessus/plugins/ExAir_dos_query.nasl
lib/nessus/plugins/ExAir_dos_search.nasl
+lib/nessus/plugins/GOsa_code_injection.nasl
lib/nessus/plugins/GuildFTPD097.nasl
lib/nessus/plugins/IIS_frontpage_DOS.nasl
lib/nessus/plugins/Jserv_css.nasl
@@ -64,6 +71,7 @@
lib/nessus/plugins/PGPCert_DoS.nasl
lib/nessus/plugins/PHPAdsNew.nasl
lib/nessus/plugins/PWS_DoS.nasl
+lib/nessus/plugins/PagesPro_dir_trav.nasl
lib/nessus/plugins/RA_ssh_detect.nasl
lib/nessus/plugins/RA_www_detect.nasl
lib/nessus/plugins/SWS_DoS.nasl
@@ -74,7 +82,33 @@
lib/nessus/plugins/Xerver_DoS.nasl
lib/nessus/plugins/a1stats.nasl
lib/nessus/plugins/acc.nasl
-lib/nessus/plugins/accounts.nes
+lib/nessus/plugins/account_4Dgifts.nasl
+lib/nessus/plugins/account_EZsetup.nasl
+lib/nessus/plugins/account_OutOfBox.nasl
+lib/nessus/plugins/account_StoogR.nasl
+lib/nessus/plugins/account_backdoor.nasl
+lib/nessus/plugins/account_date.nasl
+lib/nessus/plugins/account_demos.nasl
+lib/nessus/plugins/account_friday.nasl
+lib/nessus/plugins/account_gamez_lrkr0x.nasl
+lib/nessus/plugins/account_glftpd.nasl
+lib/nessus/plugins/account_guest.nasl
+lib/nessus/plugins/account_guest_guest.nasl
+lib/nessus/plugins/account_hax0r.nasl
+lib/nessus/plugins/account_jack.nasl
+lib/nessus/plugins/account_jill.nasl
+lib/nessus/plugins/account_lp.nasl
+lib/nessus/plugins/account_rewt_satori.nasl
+lib/nessus/plugins/account_root.nasl
+lib/nessus/plugins/account_root_root.nasl
+lib/nessus/plugins/account_root_rootkit1.nasl
+lib/nessus/plugins/account_root_rootkit1bis.nasl
+lib/nessus/plugins/account_root_rootkit2.nasl
+lib/nessus/plugins/account_sync.nasl
+lib/nessus/plugins/account_system_manager.nasl
+lib/nessus/plugins/account_toor.nasl
+lib/nessus/plugins/account_tutor.nasl
+lib/nessus/plugins/account_wank_wank.nasl
lib/nessus/plugins/achievo_code_injection.nasl
lib/nessus/plugins/activestate_perl.nasl
lib/nessus/plugins/admentor_login_flaw.nasl
@@ -103,6 +137,7 @@
lib/nessus/plugins/analogx_dos.nasl
lib/nessus/plugins/analogx_traversal.nasl
lib/nessus/plugins/annex_dos.nasl
+lib/nessus/plugins/anti_nessus.nasl
lib/nessus/plugins/aolserver_default_password.nasl
lib/nessus/plugins/apache_1_3_27.nasl
lib/nessus/plugins/apache_Tomcat_DOS_Device_XSS.nasl
@@ -118,7 +153,9 @@
lib/nessus/plugins/apache_source_asp.nasl
lib/nessus/plugins/apache_ssl_overflow.nasl
lib/nessus/plugins/apache_username.nasl
+lib/nessus/plugins/apache_win32_devname.nasl
lib/nessus/plugins/apache_win32_dir_trav.nasl
+lib/nessus/plugins/apache_win32_read_files.nasl
lib/nessus/plugins/appsocket_DoS.nasl
lib/nessus/plugins/arcserve_hidden_share.nasl
lib/nessus/plugins/arkeia.nasl
@@ -164,6 +201,7 @@
lib/nessus/plugins/bind_zxfr_bug.nasl
lib/nessus/plugins/binlogin_overflow_rlogin.nasl
lib/nessus/plugins/binlogin_overflow_telnet.nasl
+lib/nessus/plugins/bitkeeper_remote_shell.nasl
lib/nessus/plugins/bizdb1_search.nasl
lib/nessus/plugins/blackice_dos.nasl
lib/nessus/plugins/bonk.nasl
@@ -190,6 +228,7 @@
lib/nessus/plugins/cfinger_search.nasl
lib/nessus/plugins/cfinger_version.nasl
lib/nessus/plugins/cgibin_browsable.nasl
+lib/nessus/plugins/cgibin_in_kb.nasl
lib/nessus/plugins/cgicso_command_execution.nasl
lib/nessus/plugins/cgicso_cross_site_scripting.nasl
lib/nessus/plugins/cgiforum.nasl
@@ -216,6 +255,7 @@
lib/nessus/plugins/cisco_voip_dos.nasl
lib/nessus/plugins/citrix.nasl
lib/nessus/plugins/citrix_find.nasl
+lib/nessus/plugins/clarkconnectd.nasl
lib/nessus/plugins/cmail_overflow.nasl
lib/nessus/plugins/cobalt_cube_webmail_dir_trav.nasl
lib/nessus/plugins/cobalt_overflow_cgi.nasl
@@ -231,10 +271,12 @@
lib/nessus/plugins/cross_site_scripting.nasl
lib/nessus/plugins/csSearch_cgi.nasl
lib/nessus/plugins/csm_helo.nasl
+lib/nessus/plugins/cups_vulns.nasl
lib/nessus/plugins/cvs_detect.nasl
lib/nessus/plugins/cvs_in_www.nasl
lib/nessus/plugins/cvsweb_shell.nasl
lib/nessus/plugins/cvsweb_version.nasl
+lib/nessus/plugins/cyrus_imap_prelogin_overflow.nasl
lib/nessus/plugins/dansie_cart.nasl
lib/nessus/plugins/daytime.nasl
lib/nessus/plugins/db2_dos.nasl
@@ -245,6 +287,7 @@
lib/nessus/plugins/dcforum.nasl
lib/nessus/plugins/dcshop_information_disclosure.nasl
lib/nessus/plugins/deep_throat.nasl
+lib/nessus/plugins/default_account.inc
lib/nessus/plugins/delegate_overflow.nasl
lib/nessus/plugins/deltaups_detect.nasl
lib/nessus/plugins/dhcp.nasl
@@ -252,6 +295,7 @@
lib/nessus/plugins/directoryphp.nasl
lib/nessus/plugins/directorypro.nasl
lib/nessus/plugins/dmail_overflow.nasl
+lib/nessus/plugins/dns_server.nasl
lib/nessus/plugins/dns_xfer.nasl
lib/nessus/plugins/doc_browsable.nasl
lib/nessus/plugins/doc_package_browseable.nasl
@@ -277,6 +321,7 @@
lib/nessus/plugins/empower_path.nasl
lib/nessus/plugins/eserv.nasl
lib/nessus/plugins/eshop_information_disclosure.nasl
+lib/nessus/plugins/etherleak.nasl
lib/nessus/plugins/eviewer.nasl
lib/nessus/plugins/ewave_servlet_upload.nasl
lib/nessus/plugins/ews.nasl
@@ -290,6 +335,7 @@
lib/nessus/plugins/fcgi_echo.nasl
lib/nessus/plugins/find_ap.nasl
lib/nessus/plugins/find_service.nes
+lib/nessus/plugins/find_service2.nasl
lib/nessus/plugins/finger.nasl
lib/nessus/plugins/finger_0.nasl
lib/nessus/plugins/finger_akfingerd.nasl
@@ -314,7 +360,6 @@
lib/nessus/plugins/ftp_anonymous.nasl
lib/nessus/plugins/ftp_backdoor.nasl
lib/nessus/plugins/ftp_bounce.nasl
-lib/nessus/plugins/ftp_bounce_scan.nes
lib/nessus/plugins/ftp_check_user.nasl
lib/nessus/plugins/ftp_cwd_root.nasl
lib/nessus/plugins/ftp_func.inc
@@ -339,6 +384,7 @@
lib/nessus/plugins/ftpglob.nasl
lib/nessus/plugins/ftpserver_detect_type_nd_version.nasl
lib/nessus/plugins/gallery_injection.nasl
+lib/nessus/plugins/gamespy_detect.nasl
lib/nessus/plugins/gatecrasher.nasl
lib/nessus/plugins/gauntlet_overflow.nasl
lib/nessus/plugins/generic_WEB-INF.nasl
@@ -370,6 +416,8 @@
lib/nessus/plugins/http-rpc-epmap.nasl
lib/nessus/plugins/http_func.inc
lib/nessus/plugins/http_ids_evasion.nasl
+lib/nessus/plugins/http_keepalive.inc
+lib/nessus/plugins/http_login.nasl
lib/nessus/plugins/http_methods.nasl
lib/nessus/plugins/http_trace.nasl
lib/nessus/plugins/http_version.nasl
@@ -449,12 +497,17 @@
lib/nessus/plugins/interchange_detect.nasl
lib/nessus/plugins/interscan_dos.nasl
lib/nessus/plugins/interscan_vw_cgi.nasl
+lib/nessus/plugins/invision_power_board.nasl
lib/nessus/plugins/iplanet_chunked_encoding.nasl
lib/nessus/plugins/iplanet_dir_serv.nasl
+lib/nessus/plugins/iplanet_perf.nasl
lib/nessus/plugins/iplanet_search.nasl
lib/nessus/plugins/iplanet_traversal.nasl
lib/nessus/plugins/ipop2d.nasl
lib/nessus/plugins/ipop2d_readfiles.nasl
+lib/nessus/plugins/ipswitch_IMail_version.nasl
+lib/nessus/plugins/ircd.nasl
+lib/nessus/plugins/ismail_overflow.nasl
lib/nessus/plugins/ithousemail_bof.nasl
lib/nessus/plugins/iws_shtml.nasl
lib/nessus/plugins/jigsaw_msdos_dev_DoS.nasl
@@ -478,6 +531,7 @@
lib/nessus/plugins/ldap_null_bind.nasl
lib/nessus/plugins/libgtop_daemon.nasl
lib/nessus/plugins/libwhisker_settings.nasl
+lib/nessus/plugins/line_overflow.nasl
lib/nessus/plugins/linux_tftp.nes
lib/nessus/plugins/linux_zero_len_fragment.nasl
lib/nessus/plugins/linuxconf_detect.nasl
@@ -522,6 +576,7 @@
lib/nessus/plugins/msadcs_overflow.nasl
lib/nessus/plugins/msdtc_dos.nasl
lib/nessus/plugins/msftp_dos.nasl
+lib/nessus/plugins/msmmask.nasl
lib/nessus/plugins/mspws_dotdotdot.nasl
lib/nessus/plugins/msql_overflow.nasl
lib/nessus/plugins/msrpc-spike27.nasl
@@ -529,7 +584,10 @@
lib/nessus/plugins/mssql_blank_password.nasl
lib/nessus/plugins/mssql_brute_force.nasl
lib/nessus/plugins/mssql_hello_overflow.nasl
+lib/nessus/plugins/mssql_litchfield_overflows.nasl
lib/nessus/plugins/mssql_ping.nasl
+lib/nessus/plugins/mssql_saphire_worm.nasl
+lib/nessus/plugins/mssql_version.nasl
lib/nessus/plugins/mssqlserver_detect.nasl
lib/nessus/plugins/mssqlserver_dos.nasl
lib/nessus/plugins/mstream_agent.nasl
@@ -580,11 +638,13 @@
lib/nessus/plugins/nimda.nasl
lib/nessus/plugins/nis_server.nasl
lib/nessus/plugins/nisd_overflow.nasl
+lib/nessus/plugins/nmap_osfingerprint.nes
lib/nessus/plugins/nmap_tcp_connect.nes
lib/nessus/plugins/nmap_wrapper.nes
lib/nessus/plugins/nntp_info.nasl
lib/nessus/plugins/nntpserver_detect.nasl
lib/nessus/plugins/no404.nasl
+lib/nessus/plugins/nortel_annex_default_pass.nasl
lib/nessus/plugins/nortel_cgiproc_dos.nasl
lib/nessus/plugins/nortel_passport_default_pass.nasl
lib/nessus/plugins/nortel_pwdless1.nasl
@@ -601,6 +661,7 @@
lib/nessus/plugins/ntp_open.nasl
lib/nessus/plugins/ntp_overflow.nasl
lib/nessus/plugins/nullhttpd_content_length.nasl
+lib/nessus/plugins/nx_web_content_file_include.nasl
lib/nessus/plugins/oas_overflow.nasl
lib/nessus/plugins/objectserver.nes
lib/nessus/plugins/officescan_disclosure.nasl
@@ -615,6 +676,7 @@
lib/nessus/plugins/openssh_uselogin.nasl
lib/nessus/plugins/openssh_uselogin_environment.nasl
lib/nessus/plugins/openssl_overflow_generic_test.nasl
+lib/nessus/plugins/openssl_password_interception.nasl
lib/nessus/plugins/oracle9iAS_slashdot_DoS.nasl
lib/nessus/plugins/oracle9iAS_too_long_url.nasl
lib/nessus/plugins/oracle9i_XSQLServlet_XSQLConfig.nasl
@@ -623,9 +685,14 @@
lib/nessus/plugins/oracle9i_globals_dot_jsa.nasl
lib/nessus/plugins/oracle9i_java_process_manager.nasl
lib/nessus/plugins/oracle9i_jsp_source.nasl
+lib/nessus/plugins/oracle9i_jspdefaulterror.nasl
lib/nessus/plugins/oracle9i_mod_plsql_overflow.nasl
lib/nessus/plugins/oracle9i_mod_plsql_traversal.nasl
lib/nessus/plugins/oracle9i_modplsql_css.nasl
+lib/nessus/plugins/oracle9i_owautil.nasl
+lib/nessus/plugins/oracle9i_soapconfig.nasl
+lib/nessus/plugins/oracle9i_soapdocs.nasl
+lib/nessus/plugins/oracle9i_soaprouter.nasl
lib/nessus/plugins/oracle_dos.nasl
lib/nessus/plugins/oracle_one_hour_install.nasl
lib/nessus/plugins/oracle_tnslsnr_security.nasl
@@ -665,6 +732,7 @@
lib/nessus/plugins/phpMyExplorer.nasl
lib/nessus/plugins/phpPgAdmin_file_reading.nasl
lib/nessus/plugins/php_4_2_x_malformed_POST.nasl
+lib/nessus/plugins/php_4_3_0.nasl
lib/nessus/plugins/php_apache_win32_default.nasl
lib/nessus/plugins/php_file_upload.nasl
lib/nessus/plugins/php_imap_overflow.nasl
@@ -672,11 +740,13 @@
lib/nessus/plugins/php_nuke_admin_cp.nasl
lib/nessus/plugins/php_nuke_bb_smilies_passwd.nasl
lib/nessus/plugins/php_nuke_galleryaddon.nasl
+lib/nessus/plugins/php_nuke_installed.nasl
lib/nessus/plugins/php_nuke_opendir.nasl
lib/nessus/plugins/php_nuke_sql_debug.nasl
lib/nessus/plugins/php_overflow.nasl
lib/nessus/plugins/php_safe_mode.nasl
lib/nessus/plugins/php_split_mime.nasl
+lib/nessus/plugins/phpinfo.nasl
lib/nessus/plugins/phpix.nasl
lib/nessus/plugins/phprocketaddin_traversal.nasl
lib/nessus/plugins/pi3web_dos.nasl
@@ -684,7 +754,9 @@
lib/nessus/plugins/pimp.nasl
lib/nessus/plugins/ping_asp.nasl
lib/nessus/plugins/ping_host.nasl
+lib/nessus/plugins/pingpong.inc
lib/nessus/plugins/piranha.nasl
+lib/nessus/plugins/platinum_ftp.nasl
lib/nessus/plugins/plusmail.nasl
lib/nessus/plugins/pmcrash.nasl
lib/nessus/plugins/pnserver.nasl
@@ -716,8 +788,8 @@
lib/nessus/plugins/qpopper_euidl.nasl
lib/nessus/plugins/qpopper_list.nasl
lib/nessus/plugins/quake3_dos.nasl
-lib/nessus/plugins/queso.nes
lib/nessus/plugins/quickstore.nasl
+lib/nessus/plugins/quicktime_admin.nasl
lib/nessus/plugins/quote.nasl
lib/nessus/plugins/radmin_detect.nasl
lib/nessus/plugins/ramcrash.nasl
@@ -804,6 +876,7 @@
lib/nessus/plugins/sambar_sendmail.nasl
lib/nessus/plugins/sambar_sysadmin.nasl
lib/nessus/plugins/savant_cgi_download.nasl
+lib/nessus/plugins/savant_cgitest.nasl
lib/nessus/plugins/savant_content_length_DoS.nasl
lib/nessus/plugins/savant_percent_dos.nasl
lib/nessus/plugins/sawmill.nasl
@@ -817,6 +890,7 @@
lib/nessus/plugins/sendmail_debug.nasl
lib/nessus/plugins/sendmail_debug_leak.nasl
lib/nessus/plugins/sendmail_decode.nasl
+lib/nessus/plugins/sendmail_dns_map_txt_overflow.nasl
lib/nessus/plugins/sendmail_expn.nasl
lib/nessus/plugins/sendmail_ident.nasl
lib/nessus/plugins/sendmail_local_overflow.nasl
@@ -920,7 +994,11 @@
lib/nessus/plugins/smb_nt_ms02-054.nasl
lib/nessus/plugins/smb_nt_ms02-055.nasl
lib/nessus/plugins/smb_nt_ms02-063.nasl
+lib/nessus/plugins/smb_nt_ms02-070.nasl
lib/nessus/plugins/smb_nt_ms02-071.nasl
+lib/nessus/plugins/smb_nt_ms02-072.nasl
+lib/nessus/plugins/smb_nt_ms03-001.nasl
+lib/nessus/plugins/smb_nt_ms03-005.nasl
lib/nessus/plugins/smb_null_params_dos.nasl
lib/nessus/plugins/smb_reg_autologon.nasl
lib/nessus/plugins/smb_reg_hklm.nasl
@@ -963,6 +1041,7 @@
lib/nessus/plugins/smtp_program.nasl
lib/nessus/plugins/smtp_relay.nasl
lib/nessus/plugins/smtp_settings.nasl
+lib/nessus/plugins/smtp_too_long_line.nasl
lib/nessus/plugins/smtpserver_detect.nasl
lib/nessus/plugins/snapstream_dir_trav.nasl
lib/nessus/plugins/snmpXdmid.nasl
@@ -996,6 +1075,7 @@
lib/nessus/plugins/ssh_detect.nasl
lib/nessus/plugins/ssh_insertion.nasl
lib/nessus/plugins/ssh_kerberos.nasl
+lib/nessus/plugins/ssh_multivulns_16122002.nasl
lib/nessus/plugins/ssh_overflow.nasl
lib/nessus/plugins/ssh_proto_version.nasl
lib/nessus/plugins/ssh_setsid.nasl
@@ -1006,6 +1086,7 @@
lib/nessus/plugins/story.nasl
lib/nessus/plugins/stream.nasl
lib/nessus/plugins/stronghold.nasl
+lib/nessus/plugins/stronghold_swish.nasl
lib/nessus/plugins/subseven.nasl
lib/nessus/plugins/sun_cobalt_adaptive_firewall_detect.nasl
lib/nessus/plugins/sunkill.nasl
@@ -1015,6 +1096,7 @@
lib/nessus/plugins/swat_guessable_usernames.nasl
lib/nessus/plugins/swc_overflow.nasl
lib/nessus/plugins/sygate_remote_control.nasl
+lib/nessus/plugins/synscan.nes
lib/nessus/plugins/systat.nasl
lib/nessus/plugins/tcp_chorusing.nasl
lib/nessus/plugins/teardrop.nasl
@@ -1037,12 +1119,14 @@
lib/nessus/plugins/tomcat_path_disclosure.nasl
lib/nessus/plugins/tomcat_snoop.nasl
lib/nessus/plugins/tomcat_source_exposure.nasl
+lib/nessus/plugins/tomcat_status.nasl
lib/nessus/plugins/torturecgis.nasl
lib/nessus/plugins/traceroute.nasl
lib/nessus/plugins/translate_f.nasl
lib/nessus/plugins/trinity.nasl
lib/nessus/plugins/trinoo.nasl
lib/nessus/plugins/tripwire_webpage.nasl
+lib/nessus/plugins/trojan_horses.nasl
lib/nessus/plugins/ttawebtop.nasl
lib/nessus/plugins/ttyprompt.nasl
lib/nessus/plugins/typsoft_ftp_DoS.nasl
@@ -1051,9 +1135,12 @@
lib/nessus/plugins/ultraseek_detect.nasl
lib/nessus/plugins/ultraseek_dos.nasl
lib/nessus/plugins/unicast_dos.nasl
+lib/nessus/plugins/unknown_services.nasl
+lib/nessus/plugins/unreal_game_engine.nasl
lib/nessus/plugins/upload_cgi.nasl
lib/nessus/plugins/uploader_exe.nasl
lib/nessus/plugins/upnp_xp.nasl
+lib/nessus/plugins/usermin_session_id.nasl
lib/nessus/plugins/ustorekeeper.nasl
lib/nessus/plugins/uw_imap_overflow.nasl
lib/nessus/plugins/uw_imap_overflow_two.nasl
@@ -1088,6 +1175,7 @@
lib/nessus/plugins/weblogic_dotdotdos.nasl
lib/nessus/plugins/weblogic_percent.nasl
lib/nessus/plugins/webmin.nasl
+lib/nessus/plugins/webmin_session_id.nasl
lib/nessus/plugins/webmirror.nasl
lib/nessus/plugins/webplus.nasl
lib/nessus/plugins/webplus_version.nasl
@@ -1099,6 +1187,7 @@
lib/nessus/plugins/website_pro.nasl
lib/nessus/plugins/websitepro_overflow.nasl
lib/nessus/plugins/webspeed.nasl
+lib/nessus/plugins/websphere_cache_DoS.nasl
lib/nessus/plugins/websphere_too_long_header.nasl
lib/nessus/plugins/websphere_xss.nasl
lib/nessus/plugins/webspirs_cgi.nasl
@@ -1107,6 +1196,7 @@
lib/nessus/plugins/wftp_dos.nasl
lib/nessus/plugins/whisker_wrapper.nes
lib/nessus/plugins/whois_raw.nasl
+lib/nessus/plugins/wihphoto_file_read.nasl
lib/nessus/plugins/win_trinoo.nasl
lib/nessus/plugins/windmail.nasl
lib/nessus/plugins/windows_terminal_services.nasl
@@ -1122,18 +1212,21 @@
lib/nessus/plugins/worldclient_server_detection.nasl
lib/nessus/plugins/worldspan_gw_DoS.nasl
lib/nessus/plugins/wrap.nasl
+lib/nessus/plugins/writesrv.nasl
lib/nessus/plugins/ws4e_too_long_url.nasl
lib/nessus/plugins/wsftp_overflows.nasl
lib/nessus/plugins/wu_ftpd_overflow.nasl
lib/nessus/plugins/wu_ftpd_site_exec.nasl
lib/nessus/plugins/wu_ftpd_site_newer.nasl
lib/nessus/plugins/www_infinite_request_DoS.nasl
+lib/nessus/plugins/www_server_name.nasl
lib/nessus/plugins/www_too_long_auth.nasl
lib/nessus/plugins/www_too_long_cookie.nasl
lib/nessus/plugins/www_too_long_header.nasl
lib/nessus/plugins/www_too_long_header10.nasl
lib/nessus/plugins/www_too_long_header11.nasl
lib/nessus/plugins/www_too_long_method.nasl
+lib/nessus/plugins/www_too_long_options.nasl
lib/nessus/plugins/www_too_long_post.nasl
lib/nessus/plugins/www_too_long_url.nasl
lib/nessus/plugins/www_too_long_useragent.nasl
@@ -1144,6 +1237,7 @@
lib/nessus/plugins/xfs_overflow.nasl
lib/nessus/plugins/xitami_overflow.nasl
lib/nessus/plugins/xmail_overflow.nasl
+lib/nessus/plugins/xst_http_trace.nasl
lib/nessus/plugins/xtel_detect.nasl
lib/nessus/plugins/xtelw_detect.nasl
lib/nessus/plugins/xtramail_control.nasl
@@ -1158,6 +1252,7 @@
lib/nessus/plugins/zope.nasl
lib/nessus/plugins/zope_dos.nasl
lib/nessus/plugins/zope_img_updating.nasl
+lib/nessus/plugins/zope_path_disclosure.nasl
lib/nessus/plugins/zope_zclass.nasl
lib/nessus/plugins/zyxel_pwd.nasl
lib/nessus/plugins_factory/Makefile
@@ -1166,5 +1261,9 @@
man/man1/nessus-build.1
man/man8/nessus-update-plugins.8
sbin/nessus-update-plugins
+var/nessus/nmap-os-fingerprints
+@dirrm var/nessus
+@dirrm var
@dirrm lib/nessus/plugins_factory
@dirrm lib/nessus/plugins
+@dirrm lib/nessus
--- distinfo.orig Fri Dec 20 05:30:15 2002
+++ distinfo Wed Mar 19 14:12:01 2003
@@ -1,4 +1,4 @@
-$NetBSD: distinfo,v 1.8 2002/12/19 18:30:15 frueauf Exp $
+$NetBSD$
-SHA1 (nessus-plugins-1.2.7.tar.gz) = caf9565452c54f7bdcb4c3dc7d0704469092aec8
-Size (nessus-plugins-1.2.7.tar.gz) = 920670 bytes
+SHA1 (nessus-plugins-2.0.1.tar.gz) = 75738044a3466aac52a0f262856fbbe6ef799d96
+Size (nessus-plugins-2.0.1.tar.gz) = 1116887 bytes
## libnasl ##
--- PLIST.orig Fri Dec 20 05:30:12 2002
+++ PLIST Wed Mar 19 14:05:12 2003
@@ -1,11 +1,13 @@
-@comment $NetBSD: PLIST,v 1.5 2002/12/19 18:30:12 frueauf Exp $
+@comment $NetBSD$
bin/nasl
bin/nasl-config
include/nessus/nasl.h
lib/libnasl.a
lib/libnasl.la
lib/libnasl.so
-lib/libnasl.so.3
-lib/libnasl.so.3.7
+lib/libnasl.so.2
+lib/libnasl.so.2.1
man/man1/nasl-config.1
man/man1/nasl.1
+@exec ${MKDIR} %D/include/nessus
+@unexec ${RMDIR} %D/include/nessus 2>/dev/null || ${TRUE}
--- buildlink2.mk.orig Fri Dec 20 05:30:13 2002
+++ buildlink2.mk Wed Mar 19 12:31:26 2003
@@ -5,7 +5,7 @@
LIBNASL_BUILDLINK2_MK= # defined
BUILDLINK_PACKAGES+= libnasl
-BUILDLINK_DEPENDS.libnasl?= libnasl>=1.2.7
+BUILDLINK_DEPENDS.libnasl?= libnasl>=2.0.1
BUILDLINK_PKGSRCDIR.libnasl?= ../../security/libnasl
EVAL_PREFIX+= BUILDLINK_PREFIX.libnasl=libnasl
--- distinfo.orig Fri Dec 20 05:30:13 2002
+++ distinfo Wed Mar 19 12:43:45 2003
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.8 2002/12/19 18:30:13 frueauf Exp $
+$NetBSD$
-SHA1 (libnasl-1.2.7.tar.gz) = 2f94e368708bd2ed8e3362c567278f7ae5848fad
-Size (libnasl-1.2.7.tar.gz) = 278796 bytes
-SHA1 (patch-aa) = d01ee7b9c99d3775b3474164217384fbd432a1cd
+SHA1 (libnasl-2.0.1.tar.gz) = 1ade99a0ef61cb60a8e52aa7f50ea8b9a41876b7
+Size (libnasl-2.0.1.tar.gz) = 323560 bytes
+SHA1 (patch-aa) = ca0b98499c92701ffbda5deaadfe718c056a17a4
--- patches/patch-aa.orig Fri Dec 20 05:30:13 2002
+++ patches/patch-aa Sat Mar 1 11:43:08 2003
@@ -1,13 +1,13 @@
-$NetBSD: patch-aa,v 1.2 2002/12/19 18:30:13 frueauf Exp $
+$NetBSD$
---- nasl-config.in.orig Sat Dec 14 15:13:44 2002
-+++ nasl-config.in Thu Dec 19 15:31:09 2002
+--- nasl-config.in.orig Tue Feb 25 03:39:46 2003
++++ nasl-config.in Tue Feb 25 03:40:18 2003
@@ -40,7 +40,7 @@
exit 0
;;
--libs)
-- echo $Xn "-L$LIBDIR -lnasl $Xc"
-+ echo $Xn "-Wl,-R$LIBDIR -L$LIBDIR -lnasl $Xc"
+- echo $Xn "-L$DESTDIR$LIBDIR -lnasl $Xc"
++ echo $Xn "-Wl,-R$LIBDIR -L$DESTDIR$LIBDIR -lnasl $Xc"
;;
--cflags)
- echo $Xn "-I$INCLUDEDIR/nessus $Xc"
+ echo $Xn "-I$DESTDIR$INCLUDEDIR/nessus $Xc"
## nessus ##
--- Makefile.common.orig Fri Dec 20 05:30:13 2002
+++ Makefile.common Wed Mar 19 12:30:26 2003
@@ -7,7 +7,7 @@
# * libnasl
#
-VERS= 1.2.7
+VERS= 2.0.1
CATEGORIES= security x11 net
MASTER_SITES?= ftp://ftp.nessus.org/pub/nessus/nessus-${VERS}/src/ \
## nessus-core ##
--- Makefile.orig Fri Oct 25 22:04:07 2002
+++ Makefile Sat Mar 1 11:43:25 2003
@@ -9,11 +9,14 @@
WRKSRC= ${WRKDIR}/nessus-core
USE_BUILDLINK2= yes
+USE_PKGINSTALL= yes
USE_X11= yes
GNU_CONFIGURE= yes
CONFIGURE_ARGS+=--enable-gtk \
--with-x \
--localstatedir=/var
+
+RCD_SCRIPTS= nessusd
.include "../../security/libnasl/buildlink2.mk"
.include "../../security/nessus-libraries/buildlink2.mk"
--- PLIST.orig Fri Dec 20 05:30:14 2002
+++ PLIST Sat Mar 1 11:43:25 2003
@@ -2,6 +2,7 @@
bin/nessus
bin/nessus-mkcert-client
bin/nessus-mkrand
+etc/rc.d/nessusd
include/nessus/config.h
include/nessus/includes.h
include/nessus/nessus-devel.h
--- buildlink2.mk.orig Fri Dec 20 05:30:14 2002
+++ buildlink2.mk Wed Mar 19 12:42:01 2003
@@ -5,7 +5,7 @@
NESSUS_CORE_BUILDLINK2_MK= # defined
BUILDLINK_PACKAGES+= nessus-core
-BUILDLINK_DEPENDS.nessus-core?= nessus-core>=1.2.7
+BUILDLINK_DEPENDS.nessus-core?= nessus-core>=2.0.1
BUILDLINK_PKGSRCDIR.nessus-core?= ../../security/nessus-core
EVAL_PREFIX+= BUILDLINK_PREFIX.nessus-core=nessus-core
--- distinfo.orig Fri Dec 20 05:30:14 2002
+++ distinfo Wed Mar 19 15:20:31 2003
@@ -1,5 +1,4 @@
-$NetBSD: distinfo,v 1.8 2002/12/19 18:30:14 frueauf Exp $
+$NetBSD$
-SHA1 (nessus-core-1.2.7.tar.gz) = f193bfb9635caa83dbea81db9200941733314a76
-Size (nessus-core-1.2.7.tar.gz) = 713738 bytes
-SHA1 (patch-aa) = 5f652c2c2828dc7de9c6060b4ae1fc237e723cda
+SHA1 (nessus-core-2.0.1.tar.gz) = 035503f9401aa6d0d8c78760f03e1dad45ee8614
+Size (nessus-core-2.0.1.tar.gz) = 645136 bytes
--- files/nessusd.sh.orig Sat Mar 1 11:43:25 2003
+++ files/nessusd.sh Sat Mar 1 11:43:25 2003
@@ -0,0 +1,26 @@
+#!/bin/sh
+#
+
+# PROVIDE: nessusd
+# REQUIRE: DAEMON
+
+# To start nessusd at startup, copy this script to /etc/rc.d and set
+# nessusd=YES in /etc/rc.conf.
+
+. /etc/rc.subr
+
+name="nessusd"
+rcvar=$name
+command="@PREFIX@/sbin/${name}"
+setup_cmd="nessusd_setup"
+extra_commands="status setup"
+command_args="-D"
+
+nessusd_setup()
+{
+ echo "Dump of nessusd setup."
+ @PREFIX@/sbin/nessusd -d
+}
+
+load_rc_config $name
+run_rc_command "$1"
>Release-Note:
>Audit-Trail:
>Unformatted: