| Commit message (Collapse) | Author | Age | Files | Lines |
|
|
|
|
|
|
|
|
|
| |
version. So disable it's version check. (https://bugzilla.mozilla.org/show_bug.cgi?id=257933)
- fix web server's uid/gid
- fix plist that not listed
PR: ports/76946
Submitted by: "Choe, Cheng-Dae" <whitekid (at) gmail.com>
|
|
|
|
|
| |
PR: ports/76531
Submitted by: "Choe, Cheng-Dae" <whitekid@gmail.com>
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Class: Unauthorized Bug Change
Versions: 2.9 through 2.18rc2 and 2.19
Description: It is possible to send a carefully crafted HTTP POST
message to process_bug.cgi which will remove keywords from
a bug even if you don't have permissions to edit all bug
fields (the "editbugs" permission). Such changes are
reported in "bug changed" email notifications, so they are
easily detected and reversed if someone abuses it.
Reference: https://bugzilla.mozilla.org/show_bug.cgi?id=252638
- Correct SQL command in pkg-message
PR: ports/71161, ports/73166
Submitted by: Dmitry A Grigorovich <odip@bionet.nsc.ru>
|
|
|
|
|
|
|
| |
- Update to 2.16.6
PR: ports/69105
Submitted by: TAKATSU Tomonari <tota@rtfm.jp>
|
|
|
|
|
| |
Note that it is still vulnerable to
<http://www.freebsd.org/ports/portaudit/672975cb-d526-11d8-b479-02e0185c0b53.html>
|
| |
|
|
|
|
|
|
|
| |
- new slave port japanese/bugzilla
PR: 68318, 68319
Submitted by: TAKATSU Tomonari <tota@rtfm.jp>
|
|
|
|
|
|
|
| |
japanese/bugzilla. Should have no effect otherwise.
PR: ports/62545
Submitted by: TAKATSU Tomonari <tota@rtfm.jp>
|
|
|
|
|
| |
PR: 62372
Submitted by: Tom McLaughlin
|
| |
|
|
|
|
|
|
|
|
| |
The bugzilla developer released a security advisory.
see: http://www.bugzilla.org/security/2.16.3/
PR: 58905
Submitted by: Kang Liu
|
| |
|
|
|
|
|
| |
PR: 58166
Submitted by: Cheng-Lung Sung <clsung@dragon2.net>
|
|
|
|
|
|
|
|
|
|
|
|
| |
libmysqlclient.so.10 from the mysql323-client port. However, bugzilla
will work fine with just about any version of MySQL.
Could just insert USE_MYSQL, but the bugzilla port only really needs
access to the perl DBD::Mysql modules and can depend on MySQL
implicitly through that port..
PR: 57607
Submitted by: Matthew Seaman <m.seaman@infracaninophile.co.uk>
|
|
|
|
|
|
|
| |
(ECHO_CMD for deskutils/notebook)
PR: ports/56767-56770,56772-56774,56776-56784
Submitted by: KATO Tsuguru <tkato@prontomail.com>
|
|
|
|
|
|
|
|
|
|
|
| |
5.005_03 use databases/p5-DBI-137 as newer versions do not
support the old perl.
Note that for some port, I merely removed the explicit
dependency as they already have implicit dependencies
via other ports.
Approved by: portmgr (marcus)
|
|
|
|
|
|
|
|
|
|
| |
Use ${DOCSDIR} [2]
s/share\/doc\/.../%%DOCSDIR%%/ for pkg-plist [2]
PR: 53911
Submitted by: Oliver Eikemeier <eikemeier@fillmore-labs.com> [1]
osa [2]
Approved by: fjoe (mentor) (implicit)
|
|
|
|
|
|
|
|
| |
installation to ${PREFIX}/www/data.default. "data.default" was an artifact
of a long obsolete version of the Apache port. Put installation directory
under control of a variable $BUGZILLADIR instead. Carry through to
pkg-plist via a pragma.
- Bump $PORTREVISION.
|
| |
|
|
|
|
|
|
| |
See http://www.bugzilla.org/security/2.16.2/.
PR: 52096
|
|
|
|
| |
Submitted by: Alexey Neyman <alexey.neyman (at) auriga.ru>
|
|
|
|
| |
PR: 47883
|
| |
|
| |
|
|
|
|
|
| |
PR: ports/43883
Submitted by: Jason Li <delphij@frontfree.net>
|
|
|
|
|
|
|
|
|
|
| |
Fixes broken in 2.14.2 ability to sort bug lists on more then one field
and possible security hole with contrib/bug_email.pl and
contrib/bugzilla_email_append.pl scripts.
This is bugfix release and latest release from 2.14 branch. This update
provided for 2.14 users who would like to stay with 2.14. All new users
should wait until port is updated to 2.16.
|
| |
|
|
|
|
|
| |
PR: 39749
Submitted by: Paul Marquis <pmarquis@pobox.com>
|
| |
|
| |
|
|
|
|
|
| |
PR: ports/39041
Submitted by: Paul Marquis <pmarquis@pobox.com>
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
recomended!
From Security Advisory for Bugzilla:
: *** SECURITY ISSUES RESOLVED ***
:
: - Multiple instances of user-account hijacking capability were fixed (Bugs
: 54901, 108385, 185516)
:
: - Two occurrences of allowing data protected by Bugzilla's groupset
: restrictions to be visible to users outside of those groups were fixes
: (Bugs 102141, 108821)
:
: - One instance of an untrusted variable being echoed back to a user via
: HTML was fixed (Bug 98146)
:
: - Multiple instances of untrusted variables being passed to SQL queries
: were fixed (Bugs 108812, 108822, 109679, 109690)
|
|
|
|
|
|
|
|
| |
plain patches for each case.
Also fix some whitespace.
Suggested by: nectar, lioux
|
|
|
|
| |
Noticed by: Jamie Flournoy <jamie@white-mountain.org>
|
|
|
|
|
| |
PR: ports/32426
Submitted by: Paul Marquis <pmarquis@pobox.com>
|
|
|
|
|
|
|
|
|
| |
* learn default distribution about some default FreeBSD settings
* add new option to setup XML modules used to export/import bugs to share
them between different Bugzilla instances
* use ${INSTALL_SCRIPT} rather than ${INSTALL}. Inspired by petef's letter.
This also caused me to think "when such complex system as FreeBSD ports
should do such simple things like prepearing of cap of coffee?"
|
|
|
|
|
|
|
| |
* use ${INSTALL} directly instead of ${INSTALL_DATA} to preserve
exec permissions for scripts
* add post-install target to display pkg-message
* rewrite pkg-message to give minimal quick setup instructions
|
|
|
|
| |
Requested by: "Dan Langille" <dan@langille.org>
|
|
|