From nobody Tue Aug 16 16:13:20 2022 X-Original-To: dev-commits-ports-main@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4M6bmJ5sgpz4YlGZ; Tue, 16 Aug 2022 16:13:20 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4M6bmJ5NQgz3bMv; Tue, 16 Aug 2022 16:13:20 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1660666400; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=A8mkiEaSeZezMuFfAnuAFG55GsojE7QhWg3p+xMiIII=; b=XP4X9BoccImJQgrC3/deR6Wj9KjEZ8mEatl7+YRz8W4of7PR00Lfnnr6RhjbeTSxxmUSnM 94icnCf5Ry0qHTBPKmRcY6Q1y+xjagpk1Gs6wDXVVL13g1LqRmn6mnoWPh8j0UoTTrz19l B+PnwTFocpPigzja70tYegZ0faMeLY/uO41oOQuIklFeA9FErYq+E2FuSuM5fDgPJL7tyh 8IKK9220/LmKMjh+Y9fVDj8rWPbJDnS0nyiySScxyvqrh5Q/6sMp0Bg5Z+toyqlwaHL2/s Z0EP15T87ZtVx2KsZAldMDJWQTh0KQAe5bKUqJglh5/CJC71VUsMKlSJQ4dYZA== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4M6bmJ4RVCzFw8; Tue, 16 Aug 2022 16:13:20 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.16.1/8.16.1) with ESMTP id 27GGDKpu046479; Tue, 16 Aug 2022 16:13:20 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.16.1/8.16.1/Submit) id 27GGDKNt046478; Tue, 16 Aug 2022 16:13:20 GMT (envelope-from git) Date: Tue, 16 Aug 2022 16:13:20 GMT Message-Id: <202208161613.27GGDKNt046478@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-main@FreeBSD.org From: Rodrigo Osorio Subject: git: d7990faa348a - main - net/rsync: Update to 3.2.5 List-Id: Commits to the main branch of the FreeBSD ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-main List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-dev-commits-ports-main@freebsd.org X-BeenThere: dev-commits-ports-main@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: rodrigo X-Git-Repository: ports X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: d7990faa348a894f6d8c4563abcaadc2cebaafc7 Auto-Submitted: auto-generated ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1660666400; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=A8mkiEaSeZezMuFfAnuAFG55GsojE7QhWg3p+xMiIII=; b=nhb+Jq1g7+PSrqmMSGrRNgpQ+DdiULxMtIGWNjbFGWUVCWWKvw2Xk2ZnEgptsobSGn8omz TCmvVX8oDJwh94M2BPM8g4s+BEZjh79aY30HOVsRyXhsy/RQipUZFpSZQlWuoshziLpR5F MXhwoN7VUchZQ/ZLorQkL8fyMiIPFLgABj9NUPWkuOyRC7kxhG3ftijUX5y4gZ1A8LPcBD mp3b2Hfco0RYWXwOi1qZ9gWJwGbOXpWGsifyFWRYr1/Uj5EtW7asUl9CraFe8Hmgff6atr h0FFZIofQbLGMXUmV+3f+DdsOX1y29MX4a8YYLKPEH/fEbOj4USu8cbuifJxvQ== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1660666400; a=rsa-sha256; cv=none; b=NrVFLJqZpt+Ig1JbylLDPHznjzBtbfaq6Ne5GHYc82PBROMc+pwqzoP0E87iPeIeyvOWXm a1+2uwUYMTpF3NolUd7wl4+IZx6mj+vuAlAiLj/rSkCFD5GUGznhj6+Ht5kzwiux3HJN2j jNTndPZqm7V+Ei80fam2gx/x7x0pi9iHzEZmIK8KHGPAgOjVr/46tjyXC/M89/HbR6ybbG ZPSTvkFexC9q0UBRvb23HLYqS0RUrGRW5NJ6UsRnq7H3Muuv9j306Gr8vHDtz619fnZk0p 2AC/BnM522W/FwRlwJrVClyhpNzMUN5Z8Uj1JXVwnFxqmPBDurvgGzE7VOdD9w== ARC-Authentication-Results: i=1; mx1.freebsd.org; none X-ThisMailContainsUnwantedMimeParts: N The branch main has been updated by rodrigo: URL: https://cgit.FreeBSD.org/ports/commit/?id=d7990faa348a894f6d8c4563abcaadc2cebaafc7 commit d7990faa348a894f6d8c4563abcaadc2cebaafc7 Author: Rodrigo Osorio AuthorDate: 2022-08-16 15:45:13 +0000 Commit: Rodrigo Osorio CommitDate: 2022-08-16 15:59:14 +0000 net/rsync: Update to 3.2.5 Major changes: * CVE-2022-29154 Added some file-list safety checking * CVE-2022-37434 Fix in the bundled zlib (buffer overflow issue) * Fix the handling of filenames specified with backslash-quoted wildcards whith the remote-arg-escaping * Fix configure check for signed char that causes bogus checksums * rsync is compiled with an xxhash 0.8 library * New --trust-sender option to bypass the extra file-list safety checking Full changelog: https://github.com/WayneD/rsync/blob/master/NEWS.md PR: 265633 Reported by: rob2g2 Relnotes: yes Security: CVE-2022-29154 Security: CVE-2022-37434 --- net/rsync/Makefile | 3 +-- net/rsync/distinfo | 14 +++++++++----- 2 files changed, 10 insertions(+), 7 deletions(-) diff --git a/net/rsync/Makefile b/net/rsync/Makefile index c16fb1ddc650..2adde5833cc8 100644 --- a/net/rsync/Makefile +++ b/net/rsync/Makefile @@ -1,6 +1,5 @@ PORTNAME= rsync -DISTVERSION= 3.2.4 -PORTREVISION= 2 +DISTVERSION= 3.2.5 CATEGORIES= net MASTER_SITES= https://www.mirrorservice.org/sites/rsync.samba.org/src/ \ http://rsync.mirror.garr.it/src/ \ diff --git a/net/rsync/distinfo b/net/rsync/distinfo index febadd2a8a24..8044044d080f 100644 --- a/net/rsync/distinfo +++ b/net/rsync/distinfo @@ -1,5 +1,9 @@ -TIMESTAMP = 1650365056 -SHA256 (rsync-3.2.4.tar.gz) = 6f761838d08052b0b6579cf7f6737d93e47f01f4da04c5d24d3447b7f2a5fad1 -SIZE (rsync-3.2.4.tar.gz) = 1114853 -SHA256 (rsync-patches-3.2.4.tar.gz) = 70a597590af6c61cf3d05d663429ff9f60ffe24e44f9c73a4cdc69ebdc1322a4 -SIZE (rsync-patches-3.2.4.tar.gz) = 133580 +TIMESTAMP = 1660557599 +SHA256 (rsync-3.2.5.tar.gz) = 2ac4d21635cdf791867bc377c35ca6dda7f50d919a58be45057fd51600c69aba +SIZE (rsync-3.2.5.tar.gz) = 1129957 +SHA256 (rsync-patches-3.2.5.tar.gz) = e7b1fdf1fc0fca68fd254246c2dc04f6ac90241e665dcf9dfc21dccd8270b6bb +SIZE (rsync-patches-3.2.5.tar.gz) = 141521 +SHA256 (rsync-patches-3.2.5.tar.gz) = e7b1fdf1fc0fca68fd254246c2dc04f6ac90241e665dcf9dfc21dccd8270b6bb +SIZE (rsync-patches-3.2.5.tar.gz) = 141521 +SHA256 (rsync-patches-3.2.5.tar.gz) = e7b1fdf1fc0fca68fd254246c2dc04f6ac90241e665dcf9dfc21dccd8270b6bb +SIZE (rsync-patches-3.2.5.tar.gz) = 141521