From owner-svn-ports-head@FreeBSD.ORG Sat Sep 1 20:16:07 2012 Return-Path: Delivered-To: svn-ports-head@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 7F429106564A; Sat, 1 Sep 2012 20:16:07 +0000 (UTC) (envelope-from ohauer@FreeBSD.org) Received: from svn.freebsd.org (svn.freebsd.org [IPv6:2001:4f8:fff6::2c]) by mx1.freebsd.org (Postfix) with ESMTP id 67F138FC15; Sat, 1 Sep 2012 20:16:07 +0000 (UTC) Received: from svn.freebsd.org (localhost [127.0.0.1]) by svn.freebsd.org (8.14.4/8.14.4) with ESMTP id q81KG7Q1072917; Sat, 1 Sep 2012 20:16:07 GMT (envelope-from ohauer@svn.freebsd.org) Received: (from ohauer@localhost) by svn.freebsd.org (8.14.4/8.14.4/Submit) id q81KG62Y072900; Sat, 1 Sep 2012 20:16:06 GMT (envelope-from ohauer@svn.freebsd.org) Message-Id: <201209012016.q81KG62Y072900@svn.freebsd.org> From: Olli Hauer Date: Sat, 1 Sep 2012 20:16:06 +0000 (UTC) To: ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org X-SVN-Group: ports-head MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Cc: Subject: svn commit: r303519 - in head: devel/bugzilla devel/bugzilla3 devel/bugzilla42 german/bugzilla german/bugzilla3 german/bugzilla42 german/bugzilla42/files japanese/bugzilla japanese/bugzilla3 japane... X-BeenThere: svn-ports-head@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: SVN commit messages for the ports tree for head List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 01 Sep 2012 20:16:07 -0000 Author: ohauer Date: Sat Sep 1 20:16:06 2012 New Revision: 303519 URL: http://svn.freebsd.org/changeset/ports/303519 Log: - update bugzilla bugzilla3 and bugzilla42 - use new bugzilla@ address (members skv@, tota@, ohauer@) - patch russian/japanese/german bugzilla and bugzilla templates so the reflect the security updates in the original templates - patch german/bugzilla42 templates - adopt new Makefile header vuxml: 6ad18fe5-f469-11e1-920d-20cf30e32f6d CVE: CVE-2012-3981 https://bugzilla.mozilla.org/show_bug.cgi?id=785470 https://bugzilla.mozilla.org/show_bug.cgi?id=785522 https://bugzilla.mozilla.org/show_bug.cgi?id=785511 Added: head/german/bugzilla42/files/ head/german/bugzilla42/files/patch-402-403 (contents, props changed) Modified: head/devel/bugzilla/Makefile head/devel/bugzilla/distinfo head/devel/bugzilla3/Makefile head/devel/bugzilla3/distinfo head/devel/bugzilla42/Makefile head/german/bugzilla/Makefile head/german/bugzilla3/Makefile head/german/bugzilla42/Makefile head/japanese/bugzilla/Makefile head/japanese/bugzilla3/Makefile head/japanese/bugzilla42/Makefile head/russian/bugzilla/Makefile head/russian/bugzilla3/Makefile head/russian/bugzilla42/Makefile head/security/vuxml/vuln.xml Modified: head/devel/bugzilla/Makefile ============================================================================== --- head/devel/bugzilla/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/devel/bugzilla/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,17 +1,12 @@ -# New ports collection makefile for: bugzilla -# Date created: 28 September 2001 -# Whom: Alexey Zelkin -# # $FreeBSD$ -# PORTNAME= bugzilla -PORTVERSION= 4.0.7 +PORTVERSION= 4.0.8 CATEGORIES= devel MASTER_SITES= ${MASTER_SITE_MOZILLA} MASTER_SITE_SUBDIR= webtools webtools/archived -MAINTAINER= skv@FreeBSD.org +MAINTAINER= bugzilla@FreeBSD.org COMMENT= Bug-tracking system developed by Mozilla Project LICENSE= MPL Modified: head/devel/bugzilla/distinfo ============================================================================== --- head/devel/bugzilla/distinfo Sat Sep 1 20:05:55 2012 (r303518) +++ head/devel/bugzilla/distinfo Sat Sep 1 20:16:06 2012 (r303519) @@ -1,2 +1,2 @@ -SHA256 (bugzilla/bugzilla-4.0.7.tar.gz) = edf3de89b8e6f16bdeaab4ef6b92902f6ed621bf2fcbc64430169ecf1004cfaf -SIZE (bugzilla/bugzilla-4.0.7.tar.gz) = 2801595 +SHA256 (bugzilla/bugzilla-4.0.8.tar.gz) = 0d44ab29863ffe6ef7637f078c31e52805f1b2ff0ff4f5c39a0d7daebe326b0c +SIZE (bugzilla/bugzilla-4.0.8.tar.gz) = 2801982 Modified: head/devel/bugzilla3/Makefile ============================================================================== --- head/devel/bugzilla3/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/devel/bugzilla3/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,17 +1,12 @@ -# New ports collection makefile for: bugzilla -# Date created: 28 September 2001 -# Whom: Alexey Zelkin -# # $FreeBSD$ -# PORTNAME= bugzilla -PORTVERSION= 3.6.10 +PORTVERSION= 3.6.11 CATEGORIES= devel MASTER_SITES= ${MASTER_SITE_MOZILLA} MASTER_SITE_SUBDIR= webtools webtools/archived -MAINTAINER= skv@FreeBSD.org +MAINTAINER= bugzilla@FreeBSD.org COMMENT= Bug-tracking system developed by Mozilla Project LICENSE= MPL Modified: head/devel/bugzilla3/distinfo ============================================================================== --- head/devel/bugzilla3/distinfo Sat Sep 1 20:05:55 2012 (r303518) +++ head/devel/bugzilla3/distinfo Sat Sep 1 20:16:06 2012 (r303519) @@ -1,2 +1,2 @@ -SHA256 (bugzilla/bugzilla-3.6.10.tar.gz) = 97ba98a18dd71541bed94a2c58225a9ca621bf28a384d1dc9bdaeb792642b305 -SIZE (bugzilla/bugzilla-3.6.10.tar.gz) = 2508723 +SHA256 (bugzilla/bugzilla-3.6.11.tar.gz) = 01b99ec5b1e6efc9d0a0352ebe2ea6e8b8c7471a3f4dd80c3b99b5be575c4585 +SIZE (bugzilla/bugzilla-3.6.11.tar.gz) = 2509551 Modified: head/devel/bugzilla42/Makefile ============================================================================== --- head/devel/bugzilla42/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/devel/bugzilla42/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,17 +1,12 @@ -# New ports collection makefile for: bugzilla -# Date created: 28 September 2001 -# Whom: Alexey Zelkin -# # $FreeBSD$ -# PORTNAME= bugzilla -PORTVERSION= 4.2.2 +PORTVERSION= 4.2.3 CATEGORIES= devel MASTER_SITES= ${MASTER_SITE_MOZILLA} MASTER_SITE_SUBDIR= webtools webtools/archived -MAINTAINER= ohauer@FreeBSD.org +MAINTAINER= bugzilla@FreeBSD.org COMMENT= Bug-tracking system developed by Mozilla Project LICENSE= MPL Modified: head/german/bugzilla/Makefile ============================================================================== --- head/german/bugzilla/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/german/bugzilla/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,18 +1,14 @@ -# New ports collection makefile for: de-bugzilla -# Date created: 2011-06-11 -# Whom: Olli Hauer -# # $FreeBSD$ -# PORTNAME= bugzilla PORTVERSION= 4.0.7 +PORTREVISION= 1 CATEGORIES= german MASTER_SITES= SF MASTER_SITE_SUBDIR=bugzilla-de/${PORTVERSION:R}/${PORTVERSION} DISTNAME= germzilla-${PORTVERSION}-1.utf-8 -MAINTAINER= ohauer@FreeBSD.org +MAINTAINER= bugzilla@FreeBSD.org COMMENT= German localization for Bugzilla RUN_DEPENDS= bugzilla>=${PORTVERSION}:${PORTSDIR}/devel/bugzilla @@ -25,6 +21,14 @@ NO_WRKSUBDIR= yes LANGDIR= ${WWWDIR}/template/de +post-patch: + ${REINPLACE_CMD} -i '' -e '/abbrev/d' \ + ${WRKDIR}/de/default/filterexceptions.pl + ${REINPLACE_CMD} -i '' -e 's/column.title -%/column.title FILTER html -%/' \ + ${WRKDIR}/de/default/list/table.html.tmpl + ${REINPLACE_CMD} -i '' -e 's/4.0.7/4.0.8/' \ + ${WRKDIR}/de/default/global/gzversion.html.tmpl + do-install: @-${MKDIR} ${LANGDIR} @(cd ${WRKSRC}/de && ${COPYTREE_SHARE} . ${LANGDIR}) Modified: head/german/bugzilla3/Makefile ============================================================================== --- head/german/bugzilla3/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/german/bugzilla3/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,18 +1,14 @@ -# New ports collection makefile for: de-bugzilla -# Date created: 2011-06-11 -# Whom: Olli Hauer -# # $FreeBSD$ -# PORTNAME= bugzilla PORTVERSION= 3.6.10 +PORTREVISION= 1 CATEGORIES= german MASTER_SITES= SF MASTER_SITE_SUBDIR=bugzilla-de/${PORTVERSION:R}/${PORTVERSION} DISTNAME= germzilla-${PORTVERSION}-1.utf-8 -MAINTAINER= ohauer@FreeBSD.org +MAINTAINER= bugzilla@FreeBSD.org COMMENT= German localization for Bugzilla RUN_DEPENDS= bugzilla>=${PORTVERSION}:${PORTSDIR}/devel/bugzilla3 @@ -25,6 +21,14 @@ NO_WRKSUBDIR= yes LANGDIR= ${WWWDIR}/template/de +post-patch: + ${REINPLACE_CMD} -i '' -e '/abbrev/d' \ + ${WRKDIR}/de/default/filterexceptions.pl + ${REINPLACE_CMD} -i '' -e 's/column.title -%/column.title FILTER html -%/' \ + ${WRKDIR}/de/default/list/table.html.tmpl + ${REINPLACE_CMD} -i '' -e 's/3.6.10/3.6.11/' \ + ${WRKDIR}/de/default/global/gzversion.html.tmpl + do-install: @-${MKDIR} ${LANGDIR} @(cd ${WRKSRC}/de && ${COPYTREE_SHARE} . ${LANGDIR}) Modified: head/german/bugzilla42/Makefile ============================================================================== --- head/german/bugzilla42/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/german/bugzilla42/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,18 +1,14 @@ -# New ports collection makefile for: de-bugzilla -# Date created: 2011-06-11 -# Whom: Olli Hauer -# # $FreeBSD$ -# PORTNAME= bugzilla PORTVERSION= 4.2.2 +PORTREVISION= 1 CATEGORIES= german MASTER_SITES= SF MASTER_SITE_SUBDIR=bugzilla-de/${PORTVERSION:R}/${PORTVERSION} DISTNAME= germzilla-${PORTVERSION}-1.utf-8 -MAINTAINER= ohauer@FreeBSD.org +MAINTAINER= bugzilla@FreeBSD.org COMMENT= German localization for Bugzilla RUN_DEPENDS= bugzilla>=${PORTVERSION}:${PORTSDIR}/devel/bugzilla42 @@ -25,6 +21,11 @@ NO_WRKSUBDIR= yes LANGDIR= ${WWWDIR}/template/de +post-patch: + @${REINPLACE_CMD} -i '' -e 's/4.2.2/4.2.3/' \ + ${WRKDIR}/de/default/global/gzversion.html.tmpl + @${FIND} ${WRKDIR} -type f -name \*.orig -delete + do-install: @-${MKDIR} ${LANGDIR} @(cd ${WRKSRC}/de && ${COPYTREE_SHARE} . ${LANGDIR}) Added: head/german/bugzilla42/files/patch-402-403 ============================================================================== --- /dev/null 00:00:00 1970 (empty, because file is newly added) +++ head/german/bugzilla42/files/patch-402-403 Sat Sep 1 20:16:06 2012 (r303519) @@ -0,0 +1,103 @@ +--- ./de/default/account/auth/login-small.html.tmpl.orig 2012-09-01 20:37:40.000000000 +0200 ++++ ./de/default/account/auth/login-small.html.tmpl 2012-09-01 20:40:14.000000000 +0200 +@@ -38,8 +38,8 @@ + [% IF cgi.request_method == "GET" AND cgi.query_string %] + [% connector = "&" %] + [% END %] +- [% script_name = login_target _ connector _ "GoAheadAndLogIn=1" %] +- Anmelden + + [% Hook.process('additional_methods') %] +@@ -116,7 +116,7 @@ + +
  • + | +- Passwort vergessen +
    +@@ -125,6 +125,7 @@ + + ++ + [x] +
    +
  • +--- ./de/default/account/auth/login.html.tmpl.orig 2012-09-01 20:41:03.000000000 +0200 ++++ ./de/default/account/auth/login.html.tmpl 2012-09-01 20:41:54.000000000 +0200 +@@ -122,6 +122,7 @@ + [%+ terms.Bugzilla %] sendet dann an die Adresse ein sogenanntes Token + zur Änderung Ihres Passworts.
    + ++ + + + [% END %] +--- ./de/default/filterexceptions.pl.orig 2012-09-01 20:42:25.000000000 +0200 ++++ ./de/default/filterexceptions.pl 2012-09-01 20:42:47.000000000 +0200 +@@ -156,7 +156,6 @@ + 'list/table.html.tmpl' => [ + 'tableheader', + 'bug.bug_id', +- 'abbrev.$id.title || field_descs.$id || column.title', + ], + + 'list/list.csv.tmpl' => [ +--- ./de/default/global/user-error.html.tmpl.orig 2012-09-01 20:54:02.000000000 +0200 ++++ ./de/default/global/user-error.html.tmpl 2012-09-01 20:59:47.000000000 +0200 +@@ -1287,10 +1287,10 @@ + [% docslinks = {'query.html' => "Nach $terms.bugs suchen", + 'query.html#list' => "${terms.Bug}listen"} %] + [% IF sharer_id && sharer_id != user.id %] +- Die Suche mit dem Namen „[% queryname FILTER html %]“ ist nicht für Sie ++ Die Suche mit dem Namen „[% name FILTER html %]“ ist nicht für Sie + sichtbar gemacht worden. + [% ELSE %] +- Es existiert keine Suche mit dem Namen „[% queryname FILTER html %]“. ++ Es existiert keine Suche mit dem Namen „[% name FILTER html %]“. + [% END %] + + [% ELSIF error == "missing_resolution" %] +--- ./de/default/list/table.html.tmpl.orig 2012-09-01 21:00:43.000000000 +0200 ++++ ./de/default/list/table.html.tmpl 2012-09-01 21:01:34.000000000 +0200 +@@ -135,7 +135,7 @@ + [% PROCESS new_order %] + [%-#%]&query_based_on= + [% defaultsavename OR searchname FILTER uri %]"> +- [%- abbrev.$id.title || field_descs.$id || column.title -%] ++ [%- abbrev.$id.title || field_descs.$id || column.title FILTER html -%] + [% PROCESS order_arrow ~%] + + +--- ./de/default/search/search-advanced.html.tmpl.orig 2012-09-01 21:02:18.000000000 +0200 ++++ ./de/default/search/search-advanced.html.tmpl 2012-09-01 21:05:22.000000000 +0200 +@@ -33,7 +33,13 @@ + + + [% js_data = BLOCK %] +-var queryform = "queryform" ++var queryform = "queryform"; ++function remove_token() { ++ if (queryform.token) { ++ var asDefault = document.getElementById('remasdefault'); ++ queryform.token.disabled = !asDefault.checked; ++ } ++} + [% END %] + + [% PROCESS global/header.html.tmpl +@@ -65,7 +71,8 @@ +

    Fahren Sie mit dem Mauszeiger über eine Feldbezeichnung, + um sich Hilfetexte zum Feld anzeigen zu lassen.

    + +-
    ++ + + [% PROCESS search/form.html.tmpl %] + Modified: head/japanese/bugzilla/Makefile ============================================================================== --- head/japanese/bugzilla/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/japanese/bugzilla/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,19 +1,15 @@ -# New ports collection makefile for: ja-bugzilla -# Date created: 2004-01-19 -# Whom: TAKATSU Tomonari -# # $FreeBSD$ -# PORTNAME= bugzilla PORTVERSION= 4.0.7 +PORTREVISION= 1 CATEGORIES= japanese MASTER_SITES= http://bug-ja.org/releases/4.0/ \ LOCAL MASTER_SITE_SUBDIR= tota/bugzilla-ja DISTNAME= Bugzilla-ja-${PORTVERSION}-template-rel01 -MAINTAINER= tota@FreeBSD.org +MAINTAINER= bugzilla@FreeBSD.org COMMENT= Japanese localization for Bugzilla RUN_DEPENDS= bugzilla>=${PORTVERSION}:${PORTSDIR}/devel/bugzilla @@ -26,6 +22,12 @@ USE_BZIP2= yes LANGDIR= ${WWWDIR}/template/ja +post-patch: + ${REINPLACE_CMD} -i '' -e '/abbrev/d' \ + ${WRKDIR}/default/filterexceptions.pl + ${REINPLACE_CMD} -i '' -e 's/column.title -%/column.title FILTER html -%/' \ + ${WRKDIR}/default/list/table.html.tmpl + do-install: @-${MKDIR} ${LANGDIR}/default @cd ${WRKDIR}/default; ${COPYTREE_SHARE} . ${LANGDIR}/default Modified: head/japanese/bugzilla3/Makefile ============================================================================== --- head/japanese/bugzilla3/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/japanese/bugzilla3/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,19 +1,15 @@ -# New ports collection makefile for: ja-bugzilla -# Date created: 2004-01-19 -# Whom: TAKATSU Tomonari -# # $FreeBSD$ -# PORTNAME= bugzilla PORTVERSION= 3.6.10 +PORTREVISION= 1 CATEGORIES= japanese MASTER_SITES= http://bug-ja.org/releases/3.6/ \ LOCAL MASTER_SITE_SUBDIR= tota/bugzilla-ja DISTNAME= Bugzilla-ja-${PORTVERSION}-template-rel01 -MAINTAINER= tota@FreeBSD.org +MAINTAINER= bugzilla@FreeBSD.org COMMENT= Japanese localization for Bugzilla RUN_DEPENDS= bugzilla>=${PORTVERSION}:${PORTSDIR}/devel/bugzilla3 @@ -28,6 +24,12 @@ USE_BZIP2= yes LANGDIR= ${WWWDIR}/template/ja +post-patch: + ${REINPLACE_CMD} -i '' -e '/abbrev/d' \ + ${WRKDIR}/default/filterexceptions.pl + ${REINPLACE_CMD} -i '' -e 's/column.title -%/column.title FILTER html -%/' \ + ${WRKDIR}/default/list/table.html.tmpl + do-install: @-${MKDIR} ${LANGDIR}/default @cd ${WRKDIR}/default; ${COPYTREE_SHARE} . ${LANGDIR}/default Modified: head/japanese/bugzilla42/Makefile ============================================================================== --- head/japanese/bugzilla42/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/japanese/bugzilla42/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,9 +1,4 @@ -# New ports collection makefile for: ja-bugzilla -# Date created: 2004-01-19 -# Whom: TAKATSU Tomonari -# # $FreeBSD$ -# PORTNAME= bugzilla PORTVERSION= 4.2.2 Modified: head/russian/bugzilla/Makefile ============================================================================== --- head/russian/bugzilla/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/russian/bugzilla/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,18 +1,14 @@ -# New ports collection makefile for: bugzilla-ru -# Date created: 28 Jul 2008 -# Whom: Sergey Skvortsov -# # $FreeBSD$ -# PORTNAME= bugzilla PORTVERSION= 4.0.7 +PORTREVISION= 1 CATEGORIES= russian MASTER_SITES= SF MASTER_SITE_SUBDIR=bugzilla-ru/bugzilla-${PORTVERSION:R}-ru/${PORTVERSION} DISTNAME= bugzilla-${PORTVERSION}-ru-20120809 -MAINTAINER= skv@FreeBSD.org +MAINTAINER= bugzilla@FreeBSD.org COMMENT= Russian localization for Bugzilla RUN_DEPENDS= bugzilla>=${PORTVERSION}:${PORTSDIR}/devel/bugzilla @@ -21,6 +17,12 @@ WRKSRC= ${WRKDIR}/${PORTNAME}-${PORTVER .include "${.CURDIR}/../../devel/bugzilla/Makefile.common" +post-patch: + ${REINPLACE_CMD} -i '' -e '/abbrev/d' \ + ${WRKSRC}/template/ru-RU/default/filterexceptions.pl + ${REINPLACE_CMD} -i '' -e 's/column.title -%/column.title FILTER html -%/' \ + ${WRKSRC}/template/ru-RU/default/list/table.html.tmpl + do-install: ${MKDIR} ${WWWDIR} (cd ${WRKSRC}/ && ${PAX} -r -w * ${WWWDIR}) Modified: head/russian/bugzilla3/Makefile ============================================================================== --- head/russian/bugzilla3/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/russian/bugzilla3/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,18 +1,14 @@ -# New ports collection makefile for: bugzilla-ru -# Date created: 28 Jul 2008 -# Whom: Sergey Skvortsov -# # $FreeBSD$ -# PORTNAME= bugzilla PORTVERSION= 3.6.10 +PORTREVISION= 1 CATEGORIES= russian MASTER_SITES= SF MASTER_SITE_SUBDIR=bugzilla-ru/bugzilla-${PORTVERSION:R}-ru/${PORTVERSION} DISTNAME= bugzilla-${PORTVERSION}-ru-20120809 -MAINTAINER= skv@FreeBSD.org +MAINTAINER= bugzilla@FreeBSD.org COMMENT= Russian localization for Bugzilla RUN_DEPENDS= bugzilla>=${PORTVERSION}:${PORTSDIR}/devel/bugzilla3 @@ -23,6 +19,12 @@ WRKSRC= ${WRKDIR}/${PORTNAME}-${PORTVER LATEST_LINK= ${PKGNAMEPREFIX}bugzilla3 +post-patch: + ${REINPLACE_CMD} -i '' -e '/abbrev/d' \ + ${WRKSRC}/template/ru-RU/default/filterexceptions.pl + ${REINPLACE_CMD} -i '' -e 's/column.title -%/column.title FILTER html -%/' \ + ${WRKSRC}/template/ru-RU/default/list/table.html.tmpl + do-install: ${MKDIR} ${WWWDIR} (cd ${WRKSRC}/ && ${PAX} -r -w * ${WWWDIR}) Modified: head/russian/bugzilla42/Makefile ============================================================================== --- head/russian/bugzilla42/Makefile Sat Sep 1 20:05:55 2012 (r303518) +++ head/russian/bugzilla42/Makefile Sat Sep 1 20:16:06 2012 (r303519) @@ -1,9 +1,4 @@ -# New ports collection makefile for: bugzilla-ru -# Date created: 28 Jul 2008 -# Whom: Sergey Skvortsov -# # $FreeBSD$ -# PORTNAME= bugzilla PORTVERSION= 4.2.2 Modified: head/security/vuxml/vuln.xml ============================================================================== --- head/security/vuxml/vuln.xml Sat Sep 1 20:05:55 2012 (r303518) +++ head/security/vuxml/vuln.xml Sat Sep 1 20:16:06 2012 (r303519) @@ -51,6 +51,56 @@ Note: Please add new entries to the beg --> + + bugzilla -- multiple vulnerabilities + + + bugzilla + 3.6.03.6.11 + 4.0.04.0.8 + 4.2.04.2.3 + + + + +

    A Bugzilla Security Advisory reports:

    +
    +

    The following security issues have been discovered in + Bugzilla:

    +

    LDAP Injection

    +

    When the user logs in using LDAP, the username is not + escaped when building the uid=$username filter which is + used to query the LDAP directory. This could potentially + lead to LDAP injection.

    +

    Directory Browsing

    +

    Extensions are not protected against directory browsing + and users can access the source code of the templates + which may contain sensitive data. + Directory browsing is blocked in Bugzilla 4.3.3 only, + because it requires a configuration change in the Apache + httpd.conf file to allow local .htaccess files to use + Options -Indexes. To not break existing installations, + this fix has not been backported to stable branches. + The access to templates is blocked for all supported + branches except the old 3.6 branch, because this branch + doesn't have .htaccess in the bzr repository and cannot + be fixed easily for existing installations without + potentially conflicting with custom changes.

    +
    + +
    + + CVE-2012-3981 + https://bugzilla.mozilla.org/show_bug.cgi?id=785470 + https://bugzilla.mozilla.org/show_bug.cgi?id=785522 + https://bugzilla.mozilla.org/show_bug.cgi?id=785511 + + + 2012-08-30 + 2012-09-01 + +
    + GNU gatekeeper -- denial of service