aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorCraig Leres <leres@FreeBSD.org>2020-04-14 20:55:15 +0000
committerCraig Leres <leres@FreeBSD.org>2020-04-14 20:55:15 +0000
commit67751ff7205136761272ccc885da67186a0564c4 (patch)
treefbe8a3d6cd11b8be71739c544ed9b381e1363e43
parentb6d8f95ba31422e2576751b300cfb52149f7685f (diff)
downloadports-67751ff7205136761272ccc885da67186a0564c4.tar.gz
ports-67751ff7205136761272ccc885da67186a0564c4.zip
security/zeek: Update to 3.0.4 and address a remote crash vulnerability:
https://github.com/zeek/zeek/blob/e059d4ec2e689b3c8942f4aa08b272f24ed3f612/NEWS - Fix stack overflow in POP3 analyzer. An attacker can crash Zeek remotely via crafted packet sequence. Other fixes: - Fix use-after-free in Zeek lambda functions with uninitialized locals - Fix buffer overflow due to tables/records created at parse-time not rebuilt on record redef - Fix SMB NegotiateContextList parsing - Fix binpac flowbuffer frame length parsing doing too much bounds checking - Fix parsing ERSPAN III optional sub-header - Fix bug in intel indicator normalization - Fix connection duration thresholding - Fix X509Common.h header include for external plugins - Fix incorrect targeting of node-specific Broker/Cluster messages MFH: 2020Q2
Notes
Notes: svn path=/head/; revision=531729
-rw-r--r--security/zeek/Makefile3
-rw-r--r--security/zeek/distinfo6
2 files changed, 4 insertions, 5 deletions
diff --git a/security/zeek/Makefile b/security/zeek/Makefile
index c160bc1c8976..1953a5db403c 100644
--- a/security/zeek/Makefile
+++ b/security/zeek/Makefile
@@ -2,8 +2,7 @@
# $FreeBSD$
PORTNAME= zeek
-PORTVERSION= 3.0.3
-PORTREVISION= 1
+PORTVERSION= 3.0.4
CATEGORIES= security
MASTER_SITES= https://old.zeek.org/downloads/
DISTFILES= ${DISTNAME}${EXTRACT_SUFX}
diff --git a/security/zeek/distinfo b/security/zeek/distinfo
index 3131ffb4086a..f368877f2589 100644
--- a/security/zeek/distinfo
+++ b/security/zeek/distinfo
@@ -1,5 +1,5 @@
-TIMESTAMP = 1584248063
-SHA256 (zeek-3.0.3.tar.gz) = 42a178cc9d28e4f20373e415727845a2c52bacdab535d6f810fe2d3cd02e9c76
-SIZE (zeek-3.0.3.tar.gz) = 29270043
+TIMESTAMP = 1586896367
+SHA256 (zeek-3.0.4.tar.gz) = 73d609dde02936a8711f0bdede7e1143ad27693253a2ee0ca3d18560ca752207
+SIZE (zeek-3.0.4.tar.gz) = 29329199
SHA256 (bro-bro-netmap-f3620df_GH0.tar.gz) = e51f420781c9a01b0494f93d82f94a1b045725c1cff406c33887974a9940c655
SIZE (bro-bro-netmap-f3620df_GH0.tar.gz) = 24661