From owner-freebsd-ports-bugs@FreeBSD.ORG Thu Apr 19 08:20:03 2007 Return-Path: X-Original-To: freebsd-ports-bugs@hub.freebsd.org Delivered-To: freebsd-ports-bugs@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 08E1716A406 for ; Thu, 19 Apr 2007 08:20:03 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [69.147.83.40]) by mx1.freebsd.org (Postfix) with ESMTP id CC64613C46A for ; Thu, 19 Apr 2007 08:20:02 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (gnats@localhost [127.0.0.1]) by freefall.freebsd.org (8.13.4/8.13.4) with ESMTP id l3J8K2dY073064 for ; Thu, 19 Apr 2007 08:20:02 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.13.4/8.13.4/Submit) id l3J8K2jj073063; Thu, 19 Apr 2007 08:20:02 GMT (envelope-from gnats) Resent-Date: Thu, 19 Apr 2007 08:20:02 GMT Resent-Message-Id: <200704190820.l3J8K2jj073063@freefall.freebsd.org> Resent-From: FreeBSD-gnats-submit@FreeBSD.org (GNATS Filer) Resent-To: freebsd-ports-bugs@FreeBSD.org Resent-Reply-To: FreeBSD-gnats-submit@FreeBSD.org, "Philip M. Gollucci" Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 7A87F16A400 for ; Thu, 19 Apr 2007 08:14:45 +0000 (UTC) (envelope-from spamd@unitb.vlz.ru) Received: from unitb.vlz.ru (unitb.vlz.ru [83.239.161.33]) by mx1.freebsd.org (Postfix) with ESMTP id C4BDB13C457 for ; Thu, 19 Apr 2007 08:14:44 +0000 (UTC) (envelope-from spamd@unitb.vlz.ru) Received: from unitb.vlz.ru (localhost [127.0.0.1]) by unitb.vlz.ru (Postfix) with ESMTP id 5E46F38342A; Thu, 19 Apr 2007 10:12:15 +0400 (MSD) Received: by unitb.vlz.ru (Postfix, from userid 58) id 3CB1A383412; Thu, 19 Apr 2007 10:12:15 +0400 (MSD) Received: from mx2.freebsd.org (mx2.freebsd.org [69.147.83.53]) by unitb.vlz.ru (Postfix) with SMTP id B0CB438336E for ; Thu, 19 Apr 2007 10:12:01 +0400 (MSD) Received: from hub.freebsd.org (hub.freebsd.org [69.147.83.54]) by mx2.freebsd.org (Postfix) with ESMTP id EAF8817A51; Thu, 19 Apr 2007 05:46:56 +0000 (UTC) (envelope-from owner-freebsd-apache@freebsd.org) Received: from hub.freebsd.org (localhost [127.0.0.1]) by hub.freebsd.org (Postfix) with ESMTP id AEC4516A416; Thu, 19 Apr 2007 05:46:56 +0000 (UTC) (envelope-from owner-freebsd-apache@freebsd.org) Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 50EC816A400; Thu, 19 Apr 2007 05:46:54 +0000 (UTC) (envelope-from pgollucci@piccollo.p6m7g8.net) Received: from piccollo.p6m7g8.net (rrcs-64-183-12-165.west.biz.rr.com [64.183.12.165]) by mx1.freebsd.org (Postfix) with ESMTP id 0C97F13C48A; Thu, 19 Apr 2007 05:46:53 +0000 (UTC) (envelope-from pgollucci@piccollo.p6m7g8.net) Received: from piccollo.p6m7g8.net (localhost [127.0.0.1]) by piccollo.p6m7g8.net (8.13.6/8.13.6) with ESMTP id l3J5K9tA058706 (version=TLSv1/SSLv3 cipher=DHE-DSS-AES256-SHA bits=256 verify=NO); Wed, 18 Apr 2007 22:20:09 -0700 (PDT) (envelope-from pgollucci@piccollo.p6m7g8.net) Received: (from pgollucci@localhost) by piccollo.p6m7g8.net (8.13.6/8.13.6/Submit) id l3J5K4q1058705; Wed, 18 Apr 2007 22:20:04 -0700 (PDT) (envelope-from pgollucci) Message-Id: <200704190520.l3J5K4q1058705@piccollo.p6m7g8.net> Date: Wed, 18 Apr 2007 22:20:04 -0700 (PDT) From: "Philip M. Gollucci" Sender: owner-freebsd-apache@FreeBSD.org To: FreeBSD-gnats-submit@FreeBSD.org X-Send-Pr-Version: 3.113 Cc: apache@FreeBSD.org Subject: ports/111847: UPDATE: www/mod_perl 1.29 -> 1.30 (CVE Security Fix) X-BeenThere: freebsd-ports-bugs@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: "Philip M. Gollucci" List-Id: Ports bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 19 Apr 2007 08:20:03 -0000 >Number: 111847 >Category: ports >Synopsis: UPDATE: www/mod_perl 1.29 -> 1.30 (CVE Security Fix) >Confidential: no >Severity: serious >Priority: high >Responsible: freebsd-ports-bugs >State: open >Quarter: >Keywords: >Date-Required: >Class: maintainer-update >Submitter-Id: current-users >Arrival-Date: Thu Apr 19 08:20:02 GMT 2007 >Closed-Date: >Last-Modified: >Originator: Philip M. Gollucci >Release: FreeBSD 6.2-PRERELEASE i386 >Organization: >Environment: System: FreeBSD piccollo.p6m7g8.net 6.2-PRERELEASE FreeBSD 6.2-PRERELEASE #0: Mon Sep 25 02:11:28 EDT 2006 pgollucci@piccollo.p6m7g8.net:/usr/obj/usr/src/sys/PICCOLLO i386 >Description: Update to 1.30 Changes: http://perl.apache.org/dist/mod_perl-1.0-current/Changes CVE: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1349 >How-To-Repeat: >Fix: Upgrade. I know there still some portlint issues, and ports/74907: [PATCH] www/mod_perl: cleanups was filed previously, but I'd like to see this go first so security upgrades are easier. Also, erwin@ (CC'ed) hinted I should take maintainership of this port on efnet about 3 months ago. So I've finally gotten around to to doing that. Once this goes in, I'll circle back and review the above PR and portlint errors. --- mod_perl.diff begins here --- Index: Makefile =================================================================== RCS file: /home/ncvs/ports/www/mod_perl/Makefile,v retrieving revision 1.33 diff -u -r1.33 Makefile --- Makefile 8 Sep 2006 10:43:15 -0000 1.33 +++ Makefile 19 Apr 2007 05:11:34 -0000 @@ -6,19 +6,18 @@ # PORTNAME= mod_perl -PORTVERSION= 1.29 -PORTREVISION= 2 +PORTVERSION= 1.30 CATEGORIES= www perl5 MASTER_SITES= ${MASTER_SITE_PERL_CPAN} MASTER_SITE_SUBDIR= Apache -MAINTAINER= apache@FreeBSD.org +MAINTAINER= pgollucci@p6m7g8.com COMMENT= Embeds a Perl interpreter in the Apache server BUILD_DEPENDS= ${SITE_PERL}/LWP.pm:${PORTSDIR}/www/p5-libwww RUN_DEPENDS= ${BUILD_DEPENDS} -USE_APACHE= YES +USE_APACHE= yes PERL_CONFIGURE= yes CONFIGURE_ARGS+= USE_APXS=1 EVERYTHING=1 INSTALLSITELIB=${SITE_PERL} \ INSTALLSITEARCH=${SITE_PERL}/${PERL_ARCH} \ Index: distinfo =================================================================== RCS file: /home/ncvs/ports/www/mod_perl/distinfo,v retrieving revision 1.11 diff -u -r1.11 distinfo --- distinfo 24 Jan 2006 03:13:27 -0000 1.11 +++ distinfo 19 Apr 2007 05:11:34 -0000 @@ -1,3 +1,3 @@ -MD5 (mod_perl-1.29.tar.gz) = 1491931790509b9af06fc037d02b0e7a -SHA256 (mod_perl-1.29.tar.gz) = b401efaa105dd5f82d6e61f0efa372d4018db15e0748ca34a52d8daa209dea6b -SIZE (mod_perl-1.29.tar.gz) = 378877 +MD5 (mod_perl-1.30.tar.gz) = bfd6f6cff1ab1cc3dbb58a236701d169 +SHA256 (mod_perl-1.30.tar.gz) = af6e1380a9197750b2d443f02a7a0dba3586c3fc0c8269beaafef09159184a08 +SIZE (mod_perl-1.30.tar.gz) = 389029 Index: files/patch-Makefile.PL =================================================================== RCS file: /home/ncvs/ports/www/mod_perl/files/patch-Makefile.PL,v retrieving revision 1.1 diff -u -r1.1 patch-Makefile.PL --- files/patch-Makefile.PL 18 Aug 2004 19:11:12 -0000 1.1 +++ files/patch-Makefile.PL 19 Apr 2007 05:11:34 -0000 @@ -1,15 +1,14 @@ ---- Makefile.PL.orig Thu Feb 15 12:39:35 2001 -+++ Makefile.PL Thu Feb 15 12:41:28 2001 -@@ -1300,7 +1300,11 @@ +--- Makefile.PL.orig Wed Apr 18 22:00:41 2007 ++++ Makefile.PL Wed Apr 18 22:01:40 2007 +@@ -1380,7 +1380,10 @@ my $string = $self->MM::install; my $add = ""; - if($USE_APXS) { -- $add = "apxs_install"; -+# XXX The FreeBSD port for mod_perl takes care of installing libperl.so -+# itself via the pkg-install script. -+# -+# $add = "apxs_install"; -+ print "Disabling apxs_install target; deferred to pkg-install\n"; + if ($USE_APXS) { +- $add = "apxs_install"; ++ # XXX The FreeBSD port for mod_perl takes care of installing libperl.so ++ # itself via the pkg-install script. ++ # ++ # $add = "apxs_install"; } - elsif ($win32_auto and $win32_args{INSTALL_DLL}) { - $add = 'amp_install'; + elsif ($win32_auto and + ($win32_args{INSTALL_DLL} or $win32_args{INSTALL_LIB})) { --- mod_perl.diff ends here --- _______________________________________________ freebsd-apache@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-apache To unsubscribe, send any mail to "freebsd-apache-unsubscribe@freebsd.org" >Release-Note: >Audit-Trail: >Unformatted: