From owner-svn-ports-all@freebsd.org Thu May 7 17:17:18 2020 Return-Path: Delivered-To: svn-ports-all@mailman.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.nyi.freebsd.org (Postfix) with ESMTP id 43EE02DEE5F; Thu, 7 May 2020 17:17:18 +0000 (UTC) (envelope-from leres@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 49J0Wf15l3z4RVc; Thu, 7 May 2020 17:17:18 +0000 (UTC) (envelope-from leres@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 1CAAF1C7F2; Thu, 7 May 2020 17:17:18 +0000 (UTC) (envelope-from leres@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id 047HHHP6045827; Thu, 7 May 2020 17:17:17 GMT (envelope-from leres@FreeBSD.org) Received: (from leres@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id 047HHHIY045825; Thu, 7 May 2020 17:17:17 GMT (envelope-from leres@FreeBSD.org) Message-Id: <202005071717.047HHHIY045825@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: leres set sender to leres@FreeBSD.org using -f From: Craig Leres Date: Thu, 7 May 2020 17:17:17 +0000 (UTC) To: ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-branches@freebsd.org Subject: svn commit: r534277 - branches/2020Q2/security/zeek X-SVN-Group: ports-branches X-SVN-Commit-Author: leres X-SVN-Commit-Paths: branches/2020Q2/security/zeek X-SVN-Commit-Revision: 534277 X-SVN-Commit-Repository: ports MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-BeenThere: svn-ports-all@freebsd.org X-Mailman-Version: 2.1.30 Precedence: list List-Id: SVN commit messages for the ports tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 07 May 2020 17:17:18 -0000 Author: leres Date: Thu May 7 17:17:17 2020 New Revision: 534277 URL: https://svnweb.freebsd.org/changeset/ports/534277 Log: MFH: r534211 security/zeek: Update to 3.0.6 and address multiple vulnerabilites: https://raw.githubusercontent.com/zeek/zeek/v3.0.6/NEWS - Fix buffer over-read in Ident analyzer - Fix SSL scripting error leading to uninitialized field access and memory leak - Fix POP3 analyzer global buffer over-read - Fix potential stack overflows due to use of Variable-Length-Arrays Other changes since 3.0.5 include: - Fix unusable `subscriber.poll()` method in Broker Python bindings - Fix uninitialized field access in `ssl/log-hostcerts-only.zeek` - Fix missing default function for Kerberos constant-lookup-tables - Fix cloning of `TypeType` values - Remove misleading error message on empty bloomfilter lookup - Fix `misc/stats.zeek` skipping log entry on termination Approved by: ports-secteam (joneum) Modified: branches/2020Q2/security/zeek/Makefile branches/2020Q2/security/zeek/distinfo Directory Properties: branches/2020Q2/ (props changed) Modified: branches/2020Q2/security/zeek/Makefile ============================================================================== --- branches/2020Q2/security/zeek/Makefile Thu May 7 17:11:41 2020 (r534276) +++ branches/2020Q2/security/zeek/Makefile Thu May 7 17:17:17 2020 (r534277) @@ -2,7 +2,7 @@ # $FreeBSD$ PORTNAME= zeek -PORTVERSION= 3.0.4 +PORTVERSION= 3.0.6 CATEGORIES= security MASTER_SITES= https://old.zeek.org/downloads/ DISTFILES= ${DISTNAME}${EXTRACT_SUFX} Modified: branches/2020Q2/security/zeek/distinfo ============================================================================== --- branches/2020Q2/security/zeek/distinfo Thu May 7 17:11:41 2020 (r534276) +++ branches/2020Q2/security/zeek/distinfo Thu May 7 17:17:17 2020 (r534277) @@ -1,5 +1,5 @@ -TIMESTAMP = 1586896367 -SHA256 (zeek-3.0.4.tar.gz) = 73d609dde02936a8711f0bdede7e1143ad27693253a2ee0ca3d18560ca752207 -SIZE (zeek-3.0.4.tar.gz) = 29329199 +TIMESTAMP = 1588807625 +SHA256 (zeek-3.0.6.tar.gz) = 57cd56c21a1c55dbe3e65f704835496fd8ba6f7b1e3166dac9d8b5579cb78ad1 +SIZE (zeek-3.0.6.tar.gz) = 29331321 SHA256 (bro-bro-netmap-f3620df_GH0.tar.gz) = e51f420781c9a01b0494f93d82f94a1b045725c1cff406c33887974a9940c655 SIZE (bro-bro-netmap-f3620df_GH0.tar.gz) = 24661