From nobody Mon Jan 22 17:53:55 2024 X-Original-To: dev-commits-ports-all@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4TJdBW5K4Mz57tFP; Mon, 22 Jan 2024 17:53:55 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4TJdBW4phnz4n70; Mon, 22 Jan 2024 17:53:55 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1705946035; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=rIfLl39CVTxqn3JdaUsS7RkrcuPZsFKN2WEvxv7crNQ=; b=EdKVlD6FkSx25SCjJnrRxF0rTO2jJhOjZCPhrVv3IkJ+nmInTKKJLokqfOkxBJCB3rBlUE Yc5nFfpSqlmCl0rENNnf9CJ+mxi+Wo9ESIo85aym6pxmpARQLDa2qRbqQ4KKARgvm4MeL1 PuT5Jtn3T6f+BiYKUIyzWsb9pJXYA9pMod/aFPWNAroEgfQxPS8nIRP3FBqfdiEDozC787 NWrma6ZXYp7VIKge3p9Cee56bs9Xf1YfxdqTZuFXni9FiC8UITBuOtFqzpzNxbJi8ruzVP 9PSDyC1Lqa3ZSE1SwpaLU5TvSIJbk0F5ntTd0RidCFqxh5SDCivRGMoQUCbqYw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1705946035; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=rIfLl39CVTxqn3JdaUsS7RkrcuPZsFKN2WEvxv7crNQ=; b=lkBFOE3BJ1o4rZpkfYmGXa8Rjq7u9vQgLclF6/WVD62hgCTC3mO5UUFwr7FvQKXwwJ3AVk 8YwKfIavaw7tGY57sT8z69fMxLndHXOMhq4f17B6kfUEmtkX6gvhzzyj8huPxavk0eCqm0 YJF85TDBUf5VROAaMON/OCh9amStOAU6cdgdJcjwtyuV/1Lm0rVXH6rHPi+QrqIt5rEoL9 HPmUbpaxXcOfyxZ5BaUso27X2PUcs6gvehvmoXYmdm6QL9ugmDT3A8/WaBHhlMudCQzDcU IwiUIh/ZQhW4Cbke0pY2XZdKA+05sM3sYJx+yGodZn+qMdGJvU/g6xxYUPrHFg== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1705946035; a=rsa-sha256; cv=none; b=GehC5amu8yIJdBpoJUyaysNv+DK6VVXY/JQu0y8XSVLtA6HfxAdcdMKWz6KoA6/Wb1k4bp 01cF9Ju+W3j9oFuZBZ6s3ia85cnodxeP+BprPUyt67nkjp6BX6zMU11dK9Qn7q4yi8b1+o nqOEToIxkoF1A1uZI9nZHzfs2u/L2dzrdVcQzeKslaTQHCyRMYztpXe8e+LKli4qxQj6ie CLTvq2RbcjRFnZi+Ozs/rYBeqCMfFYSIeqgEhr11yS+981cqECfd65iuJw08UyfMbCaUx8 oDP14xQA2thb2iRxP15gowM88SBtJcvWkrHysZvcC2abTt3z/E+TPojqMTYyiA== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4TJdBW3rxPz1BGY; Mon, 22 Jan 2024 17:53:55 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.17.1/8.17.1) with ESMTP id 40MHrtXt058254; Mon, 22 Jan 2024 17:53:55 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.17.1/8.17.1/Submit) id 40MHrtRu058251; Mon, 22 Jan 2024 17:53:55 GMT (envelope-from git) Date: Mon, 22 Jan 2024 17:53:55 GMT Message-Id: <202401221753.40MHrtRu058251@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-main@FreeBSD.org From: Craig Leres Subject: git: e81dfaab6a05 - main - security/zeek: Update to 6.0.3 List-Id: Commit messages for all branches of the ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-all List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-dev-commits-ports-all@freebsd.org X-BeenThere: dev-commits-ports-all@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: leres X-Git-Repository: ports X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: e81dfaab6a0511eeb704adfffeb68c6be034bb4c Auto-Submitted: auto-generated The branch main has been updated by leres: URL: https://cgit.FreeBSD.org/ports/commit/?id=e81dfaab6a0511eeb704adfffeb68c6be034bb4c commit e81dfaab6a0511eeb704adfffeb68c6be034bb4c Author: Craig Leres AuthorDate: 2024-01-22 17:53:28 +0000 Commit: Craig Leres CommitDate: 2024-01-22 17:53:28 +0000 security/zeek: Update to 6.0.3 https://github.com/zeek/zeek/releases/tag/v6.0.3 This release fixes the following potential DoS vulnerability: - A specially-crafted series of packets containing nested MIME entities can cause Zeek to spend large amounts of time parsing the entities. This release fixes the following bugs: - CMake correctly passes along third-party package information when building plugins. - Fix a problem with the HTTP analyzer where a signature regex ending in '$' used to match against 'http-request-body' or 'http-reply-bdoy' will never succeed. - The DNS analyzer now understands the Ed25519 and Ed448 signature algorithms. - The SMB::State$recent_files field was not correctly expiring entries, leading to unbounded state growth. - The &create_expire attribute is now kept valid after clearing a table. Reported by: Tim Wojtulewicz Security: fedf7e71-61bd-49ec-aaf0-6da14bdbb319 --- security/zeek/Makefile | 3 +-- security/zeek/distinfo | 6 +++--- security/zeek/pkg-plist | 2 ++ 3 files changed, 6 insertions(+), 5 deletions(-) diff --git a/security/zeek/Makefile b/security/zeek/Makefile index 79b7ba0eed14..b2c0bc260b52 100644 --- a/security/zeek/Makefile +++ b/security/zeek/Makefile @@ -1,6 +1,5 @@ PORTNAME= zeek -DISTVERSION= 6.0.2 -PORTREVISION= 1 +DISTVERSION= 6.0.3 CATEGORIES= security MASTER_SITES= https://download.zeek.org/ DISTFILES= ${DISTNAME}${EXTRACT_SUFX} diff --git a/security/zeek/distinfo b/security/zeek/distinfo index 2f9b2eae87e8..677c0645e529 100644 --- a/security/zeek/distinfo +++ b/security/zeek/distinfo @@ -1,3 +1,3 @@ -TIMESTAMP = 1698437165 -SHA256 (zeek-6.0.2.tar.gz) = 2421989adcee6a29f48a8f7272f719edbe954d66c2e86e3a52e79cae177f887c -SIZE (zeek-6.0.2.tar.gz) = 60175209 +TIMESTAMP = 1705944333 +SHA256 (zeek-6.0.3.tar.gz) = 227edf0e1e6b54dc9893cfd1ecd8621291cc85d1d06808874394aad555f8a8a4 +SIZE (zeek-6.0.3.tar.gz) = 60225127 diff --git a/security/zeek/pkg-plist b/security/zeek/pkg-plist index d7c06b5f6092..c009aca9bf16 100644 --- a/security/zeek/pkg-plist +++ b/security/zeek/pkg-plist @@ -739,6 +739,7 @@ include/zeek/analyzer/protocol/login/Telnet.h include/zeek/analyzer/protocol/login/events.bif.h include/zeek/analyzer/protocol/login/functions.bif.h include/zeek/analyzer/protocol/mime/MIME.h +include/zeek/analyzer/protocol/mime/consts.bif.h include/zeek/analyzer/protocol/mime/events.bif.h include/zeek/analyzer/protocol/modbus/Modbus.h include/zeek/analyzer/protocol/modbus/events.bif.h @@ -1379,6 +1380,7 @@ share/man/man8/zeek.8.gz %%DATADIR%%/base/bif/plugins/Zeek_KRB.types.bif.zeek %%DATADIR%%/base/bif/plugins/Zeek_Login.events.bif.zeek %%DATADIR%%/base/bif/plugins/Zeek_Login.functions.bif.zeek +%%DATADIR%%/base/bif/plugins/Zeek_MIME.consts.bif.zeek %%DATADIR%%/base/bif/plugins/Zeek_MIME.events.bif.zeek %%DATADIR%%/base/bif/plugins/Zeek_MQTT.events.bif.zeek %%DATADIR%%/base/bif/plugins/Zeek_MQTT.types.bif.zeek