HomeFreeBSD

MFH: r461952

Description

MFH: r461952

net/quagga: update 1.2.2 -> 1.2.3

  • doc/security: Security announcements for 4 issues
  • doc/security: Add a doc/security folder and template for announcements
  • doc: Add commit message template, suitable for commit.template
  • bgpd: remove stream_pnt use for notify data
  • lib/privs: Remove of CAP_NET_BROADCAST forgot to decrement array count
  • bgpd/security: debug print of received NOTIFY data can over-read msg array
  • bgpd/security: fix infinite loop on certain invalid OPEN messages
  • bgpd/security: Fix double free of unknown attribute
  • bgpd/security: invalid attr length sends NOTIFY with data overrun
  • zebra/redistribute: Implicit withdraw needs to be explicit if update isn't sent
  • doc: 'match aspath' should be 'match as-path'
  • bgpd: fix SIGBUS
  • bgpd: Fix mistake in NHT of connected IPv6 next-hops preventing route advertisements
  • Updated the protocol supported list
  • lib/command: make config file robust more robust and kinder to system
  • doc: Bring documentation on Zserv header up to date.
  • bgpd: distance comment
  • doc: Fix small but important logical mistake in community-list example
  • doc: document that changing bgp distance needs a hard clear of routes
  • bgpd: malformed attribute handling: don't pass on, and add missing notify
  • lib/filter: change add/delete callback hooks to robustly delete
  • Revert "lib: Fix Free Pointer dereference in lib/filter.c"
  • infra/buildbot: allow bots to be picked out by installed compiler.
  • infra/buildbot: Add bots, add JSON "env" config variable, poll all git branches
  • lib: ptr macro arg may need brackets in some cases
  • distro/systemd: add man page ref and set config file permissions
  • doc: Fix manpage number for ospfclient.
  • vtysh: Fix spelling errors in strings flagged by lintian.
  • doc: Tweak grammar in zebra manpage to keep lintian happy.
  • vtysh: print error if PAM auth does not succeed
  • lib/thread: get rid of the shallow-copy thread_fetch add a sane thread_main
  • buildbot/master: use a helper generator for make cmd string list
  • buildbot/master: fix the common steps
  • buildbot/master: Add OBSD bot, and support for environment variable config
  • build: AC_EGREPP_CPP actions wrong way around, worked by accident mostly.
  • build: Work around illumos still shipping

Security: CVE-2018-5378, https://gogs.quagga.net/Quagga/quagga/src/master/doc/security/Quagga-2018-0543.txt

		CVE-2018-5379, https://gogs.quagga.net/Quagga/quagga/src/master/doc/security/Quagga-2018-1114.txt
		CVE-2018-5380, https://gogs.quagga.net/Quagga/quagga/src/master/doc/security/Quagga-2018-1550.txt
		CVE-2018-5381, https://gogs.quagga.net/Quagga/quagga/src/master/doc/security/Quagga-2018-1975.txt

Approved by: portmgr (swills)

Details

Provenance
piAuthored on
Parents
rP461982: new port sysutils/getssl: Local LetsEncrypt client
Branches
Unknown
Tags
Unknown