summaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAgeFilesLines
* Remove vulnerable ebuild for CVE-2011-1174 & CVE-2011-1175 now that a secure ↵Tony Vroon2011-03-231-6/+4
| | | | | | ebuild has been stabled. (Portage version: 2.1.9.44/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* Remove vulnerable ebuild for CVE-2011-1174 & CVE-2011-1175 now that a secure ↵Tony Vroon2011-03-232-225/+5
| | | | | | ebuild has been stabled. (Portage version: 2.1.9.44/cvs/Linux x86_64)
* x86 stable per bug 359767Thomas Kahle2011-03-231-6/+6
| | | | (Portage version: 2.1.9.44/cvs/Linux i686, signed Manifest commit with key 0xF87C90D6)
* x86 stable per bug 359767Thomas Kahle2011-03-232-3/+6
| | | | (Portage version: 2.1.9.44/cvs/Linux i686)
* Stable on amd64 wrt bug #359767Christoph Mende2011-03-231-6/+6
| | | | (Portage version: 2.2.0_alpha28/cvs/Linux x86_64, signed Manifest commit with key 84F20B43)
* Stable on amd64 wrt bug #359767Christoph Mende2011-03-232-3/+6
| | | | (Portage version: 2.2.0_alpha28/cvs/Linux x86_64)
* Secure ebuild for the 1.6.2 branch; robustness fixes for the manager ↵Tony Vroon2011-03-231-6/+6
| | | | | | interface. As per advisory AST-2011-003, a denial of service is possible through resource exhaustion in previous versions. As per advisory AST-2011-004, it is possible to cause a NULL pointer dereference by rapidly opening & closing TCP/TLS connections. Removed all but the last stable ebuild. For security bug #359767 filed by Pawel Hajdan, Jr. (Portage version: 2.1.9.44/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* Secure ebuild for the 1.6.2 branch; robustness fixes for the manager ↵Tony Vroon2011-03-232-2/+13
| | | | | | interface. As per advisory AST-2011-003, a denial of service is possible through resource exhaustion in previous versions. As per advisory AST-2011-004, it is possible to cause a NULL pointer dereference by rapidly opening & closing TCP/TLS connections. Removed all but the last stable ebuild. For security bug #359767 filed by Pawel Hajdan, Jr. (Portage version: 2.1.9.44/cvs/Linux x86_64)
* Secure ebuild for the 1.8 branch; robustness fixes for the manager ↵Tony Vroon2011-03-231-9/+6
| | | | | | interface. As per advisory AST-2011-003, a denial of service is possible through resource exhaustion in previous versions. As per advisory AST-2011-004, it is possible to cause a NULL pointer dereference by rapidly opening & closing TCP/TLS connections. Removed insecure ebuilds. (Portage version: 2.1.9.44/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* Secure ebuild for the 1.8 branch; robustness fixes for the manager ↵Tony Vroon2011-03-233-433/+12
| | | | | | interface. As per advisory AST-2011-003, a denial of service is possible through resource exhaustion in previous versions. As per advisory AST-2011-004, it is possible to cause a NULL pointer dereference by rapidly opening & closing TCP/TLS connections. Removed insecure ebuilds. (Portage version: 2.1.9.44/cvs/Linux x86_64)
* New release on the 1.6.2 branch. This is a bugfix release, the official ↵Tony Vroon2011-02-281-4/+6
| | | | | | changelog is at http://www.asterisk.org/node/51583 for your enjoyment. (Portage version: 2.1.9.41/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* New release on the 1.6.2 branch. This is a bugfix release, the official ↵Tony Vroon2011-02-282-1/+231
| | | | | | changelog is at http://www.asterisk.org/node/51583 for your enjoyment. (Portage version: 2.1.9.41/cvs/Linux x86_64)
* New release on the 1.8 branch. This is a bugfix release, the official ↵Tony Vroon2011-02-281-4/+7
| | | | | | changelog is at http://www.asterisk.org/node/51584 for your enjoyment. (Portage version: 2.1.9.41/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* New release on the 1.8 branch. This is a bugfix release, the official ↵Tony Vroon2011-02-282-1/+438
| | | | | | changelog is at http://www.asterisk.org/node/51584 for your enjoyment. (Portage version: 2.1.9.41/cvs/Linux x86_64)
* Remove insecure ebuilds now that security stabilisation has been completed. ↵Tony Vroon2011-02-271-26/+5
| | | | | | Arch teams have signed off on their loss of keywording for this package. (Portage version: 2.1.9.41/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* Remove insecure ebuilds now that security stabilisation has been completed. ↵Tony Vroon2011-02-2718-2456/+16
| | | | | | Arch teams have signed off on their loss of keywording for this package. (Portage version: 2.1.9.41/cvs/Linux x86_64)
* Mark stable on AMD64 for security bug #352059. Arch testing by Agostino ↵Tony Vroon2011-02-271-5/+5
| | | | | | "ago" Sarubbo. (Portage version: 2.1.9.41/cvs/Linux x86_64, RepoMan options: --force, signed Manifest commit with key 0xB5058F9A)
* Mark stable on AMD64 for security bug #352059. Arch testing by Agostino ↵Tony Vroon2011-02-272-3/+7
| | | | | | "ago" Sarubbo. (Portage version: 2.1.9.41/cvs/Linux x86_64, RepoMan options: --force)
* Transfer stable X86 keyword from -r1 to -r2; removing defective keepsrc ↵Tony Vroon2011-02-261-6/+6
| | | | | | USE-flag from ebuild & metadata.xml now. Removal of 1.2 & 1.4 is immanent. (Portage version: 2.1.9.41/cvs/Linux x86_64, RepoMan options: --force, signed Manifest commit with key 0xB5058F9A)
* Transfer stable X86 keyword from -r1 to -r2; removing defective keepsrc ↵Tony Vroon2011-02-263-21/+10
| | | | | | USE-flag from ebuild & metadata.xml now. Removal of 1.2 & 1.4 is immanent. (Portage version: 2.1.9.41/cvs/Linux x86_64, RepoMan options: --force)
* x86 stable per bug 352059Thomas Kahle2011-02-261-5/+5
| | | | (Portage version: 2.1.9.40/cvs/Linux i686, RepoMan options: --force, signed Manifest commit with key 0xF87C90D6)
* x86 stable per bug 352059Thomas Kahle2011-02-262-3/+6
| | | | (Portage version: 2.1.9.40/cvs/Linux i686, RepoMan options: --force)
* Drop problematic misdn dependencies from the 1.6.2 branch to aid in security ↵Tony Vroon2011-02-241-5/+5
| | | | | | stabilisation. Both the 1.2 and the 1.4 branch are slated for removal and will be masked soon. (Portage version: 2.1.9.40/cvs/Linux x86_64, RepoMan options: --force, signed Manifest commit with key 0xB5058F9A)
* Drop problematic misdn dependencies from the 1.6.2 branch to aid in security ↵Tony Vroon2011-02-242-7/+11
| | | | | | stabilisation. Both the 1.2 and the 1.4 branch are slated for removal and will be masked soon. (Portage version: 2.1.9.40/cvs/Linux x86_64, RepoMan options: --force)
* Trim down 1.6.2 branch by culling vulnerable ebuild for AST-2011-002.Tony Vroon2011-02-221-6/+6
| | | | (Portage version: 2.1.9.40/cvs/Linux x86_64, RepoMan options: --force, signed Manifest commit with key 0xB5058F9A)
* Trim down 1.6.2 branch by culling vulnerable ebuild for AST-2011-002.Tony Vroon2011-02-222-2/+8
| | | | (Portage version: 2.1.9.40/cvs/Linux x86_64, RepoMan options: --force)
* Trim down 1.8 branch by culling vulnerable ebuilds for AST-2011-002. Adding ↵Tony Vroon2011-02-221-8/+6
| | | | | | 1.8.2.4 which fixes overflows in both stack & heap based arrays that can be exploited through specially crafted UDPTL packets, particularly for T.38 pass-through & termination. (Portage version: 2.1.9.40/cvs/Linux x86_64, RepoMan options: --force, signed Manifest commit with key 0xB5058F9A)
* Trim down 1.8 branch by culling vulnerable ebuilds for AST-2011-002. Adding ↵Tony Vroon2011-02-223-433/+11
| | | | | | 1.8.2.4 which fixes overflows in both stack & heap based arrays that can be exploited through specially crafted UDPTL packets, particularly for T.38 pass-through & termination. (Portage version: 2.1.9.40/cvs/Linux x86_64, RepoMan options: --force)
* An ABI breakage occured in fax session reservation, which is fixed in this ↵Tony Vroon2011-02-031-1/+13
| | | | | | release. This is not a security update but rather a bugfix. (Portage version: 2.1.9.35/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* An ABI breakage occured in fax session reservation, which is fixed in this ↵Tony Vroon2011-02-032-1/+438
| | | | | | release. This is not a security update but rather a bugfix. (Portage version: 2.1.9.35/cvs/Linux x86_64)
* Upstream reports that a merging accident kept the fix out of the 1.8.2.1 ↵Tony Vroon2011-01-221-3/+3
| | | | | | tarball. 1.8.2.2 does include the security fix. Removed insecure ebuild. (Portage version: 2.1.9.34/cvs/Linux x86_64, unsigned Manifest commit)
* Upstream reports that a merging accident kept the fix out of the 1.8.2.1 ↵Tony Vroon2011-01-222-2/+9
| | | | | | tarball. 1.8.2.2 does include the security fix. Removed insecure ebuild. (Portage version: 2.1.9.34/cvs/Linux x86_64)
* Remove dodoc call for PDFs in tex, these do not longer exist as pointed out ↵Tony Vroon2011-01-191-2/+2
| | | | | | by Agostino "ago" Sarubbo in bug #352136. Remove USE="keepsrc" as it is defective. The 1.6.2 & 1.8 branch ebuilds no longer have it either. Closes bug #352137 by Agostino "ago" Sarubbo. Remove misdn dependency as the dependencies refuse to build for several arch testers. Revision bump, kill off old ebuild. (Portage version: 2.1.9.33/cvs/Linux x86_64, unsigned Manifest commit)
* Remove dodoc call for PDFs in tex, these do not longer exist as pointed out ↵Tony Vroon2011-01-192-27/+15
| | | | | | by Agostino "ago" Sarubbo in bug #352136. Remove USE="keepsrc" as it is defective. The 1.6.2 & 1.8 branch ebuilds no longer have it either. Closes bug #352137 by Agostino "ago" Sarubbo. Remove misdn dependency as the dependencies refuse to build for several arch testers. Revision bump, kill off old ebuild. (Portage version: 2.1.9.33/cvs/Linux x86_64)
* whitespaceMichael Sterrett2011-01-191-1/+1
| | | | (Portage version: 2.1.9.25/cvs/Linux i686, unsigned Manifest commit)
* whitespaceMichael Sterrett2011-01-191-2/+2
| | | | (Portage version: 2.1.9.25/cvs/Linux i686)
* net-misc/asterisk move enew{user,group} to the appropriate function wrt bug ↵Dane Smith2011-01-191-16/+6
| | | | | | 352139. (Portage version: 2.2.0_alpha4/cvs/Linux i686, unsigned Manifest commit)
* net-misc/asterisk move enew{user,group} to the appropriate function wrt bug ↵Dane Smith2011-01-196-34/+29
| | | | | | 352139. (Portage version: 2.2.0_alpha4/cvs/Linux i686)
* Trim down 1.4 branch by culling vulnerable ebuild for security bug #352059. ↵Tony Vroon2011-01-191-11/+7
| | | | | | Adding 1.4.39.1 which fixes a stack buffer overflow in SIP URI encoding. Patchset repackaged but otherwise unchanged. (Portage version: 2.1.9.31/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* Trim down 1.4 branch by culling vulnerable ebuild for security bug #352059. ↵Tony Vroon2011-01-197-126/+21
| | | | | | Adding 1.4.39.1 which fixes a stack buffer overflow in SIP URI encoding. Patchset repackaged but otherwise unchanged. (Portage version: 2.1.9.31/cvs/Linux x86_64)
* Trim down 1.6.2 branch by culling vulnerable ebuild for security bug ↵Tony Vroon2011-01-191-6/+6
| | | | | | #352059. Adding 1.6.2.16.1 which fixes a stack buffer overflow in SIP URI encoding. Patchset unchanged. (Portage version: 2.1.9.31/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* Trim down 1.6.2 branch by culling vulnerable ebuild for security bug ↵Tony Vroon2011-01-192-3/+11
| | | | | | #352059. Adding 1.6.2.16.1 which fixes a stack buffer overflow in SIP URI encoding. Patchset unchanged. (Portage version: 2.1.9.31/cvs/Linux x86_64)
* Trim down 1.8 branch by culling vulnerable ebuilds for security bug #352059. ↵Tony Vroon2011-01-191-10/+6
| | | | | | Adding 1.8.2.1 which fixes a stack buffer overflow in SIP URI encoding. Patchset unchanged. (Portage version: 2.1.9.31/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* Trim down 1.8 branch by culling vulnerable ebuilds for security bug #352059. ↵Tony Vroon2011-01-194-872/+11
| | | | | | Adding 1.8.2.1 which fixes a stack buffer overflow in SIP URI encoding. Patchset unchanged. (Portage version: 2.1.9.31/cvs/Linux x86_64)
* Version bump. The previously mentioned fix for blind transfers is now upstream.Tony Vroon2011-01-181-4/+6
| | | | (Portage version: 2.1.9.31/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* Version bump. The previously mentioned fix for blind transfers is now upstream.Tony Vroon2011-01-182-1/+440
| | | | (Portage version: 2.1.9.31/cvs/Linux x86_64)
* One day I'll learn to spell. Promise.Tony Vroon2011-01-131-4/+4
| | | | (Portage version: 2.1.9.31/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* One day I'll learn to spell. Promise.Tony Vroon2011-01-131-2/+2
| | | | (Portage version: 2.1.9.31/cvs/Linux x86_64)
* Scavenge fix from upstream bug #18185 to avoid blind transfer failures. If ↵Tony Vroon2011-01-131-4/+6
| | | | | | you are also a Cisco 7960 "SIP" phone victim, this is for you. New attempt at a serialisation fix for mkdir/install race that cause a build failure on some systems. (Portage version: 2.1.9.31/cvs/Linux x86_64, signed Manifest commit with key 0xB5058F9A)
* Scavenge fix from upstream bug #18185 to avoid blind transfer failures. If ↵Tony Vroon2011-01-132-1/+442
| | | | | | you are also a Cisco 7960 "SIP" phone victim, this is for you. New attempt at a serialisation fix for mkdir/install race that cause a build failure on some systems. (Portage version: 2.1.9.31/cvs/Linux x86_64)