Server Software Notification
The following updates will be completed 01/31/2007 on all servers:
Linux VPS
- Mailman
- The vinstall for Mailman, the GNU Mailing List Manager, will be updated to install a default mailman list when
it is run. No action needed.
- Sendmail RBL
- The vinstall for the Sendmail RBL (real-time blackhole list) subscription utility will be updated remove the
following list:
relays.ordb.org for the Open Relay Database (ORDB).
For information regarding the cessation of the ORDB, refer to industry news sources as at the following Web address:
http://www.computerworld.com/action/article.do ...
No action needed.
- vlistuser
- The vlistuser command will be updated so that the login of an administrative user is displayed. No action needed.
- Jboss
- The vinstall for jboss, an application server package for Java 2 Platform, Enterprise Edition (J2EE) and
Enterprise Java Beans (EJB), will be removed from the system. Many Java applications consume significant CPU and
memory resources and may not be appropriate for use on a VPS.
For more, refer to Linux VPS customer documentation, including the "Linux VPS 3.0 Technical Overview," at the
following location on the Web:
http://www.viaverio.com/index.cfm?page_id=877
No action needed.
- GNU Tar
- The gtar (GNU Tar) archive utility will be updated to version 1.14-12.rhel4. This version brings the utility to
the most current RHEL version and addresses a path traversal flaw causing a security concern, discussed in
CV3-2006-6097:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6097
More information about version 1.14-12.rhel4 can be found here:
http://rhn.redhat.com/errata/RHSA-2006-0749.html
No action needed.
FreeBSD VPS v3
- Apache
- The Apache Web server will be updated to change the location of the PID file to /var/run/httpd.pid. The startup
scripts will also be updated. The permissions of the htdocs directory will be changed to 775 to allow writing by
the www user. No action needed, however the Web server will be restarted to enact this update.
- Apache PCRE support
- The PCRE support inside the Apache Web server will be updated to link to an external library. No action needed,
however the Web server will be restarted to enact this update.
- Conf::Apache
- The Conf::Apache module will be updated to correctly address the different Apache implementations available for
VPS v3. No action needed.
- Crontab
- The system crontab located at /etc/crontab will be updated to include usr/local/bin in the path. No action needed.
- Package Database
- The package database will be refreshed to update dependencies and reflect recent package upgrades and changes,
affecting the following packages and files:
skel/var/db/pkg/Xaw3d-1.5E_1/
/skel/var/db/pkg/arc-5.21o_1/
/skel/var/db/pkg/arj-3.10.22/
/skel/var/db/pkg/autoconf-2.13.000227_5/
/skel/var/db/pkg/bitstream-vera-1.10_2/
/skel/var/db/pkg/compat4x-i386-5.3_9/
/skel/var/db/pkg/cyrus-sasl-2.1.22/
/skel/var/db/pkg/db41-4.1.25_4/
/skel/var/db/pkg/emacs-21.3_9/
/skel/var/db/pkg/expat-2.0.0_1/
/skel/var/db/pkg/fontconfig-2.3.2_6,1/
/skel/var/db/pkg/freetype2-2.2.1_1/
/skel/var/db/pkg/frontpage-5.0.2.4803/
/skel/var/db/pkg/gettext-0.14.5_2/
/skel/var/db/pkg/ghostscript-gnu-nox11-7.07_15/
/skel/var/db/pkg/gnupg-1.4.5_1/
/skel/var/db/pkg/gsfonts-8.11_2/
/skel/var/db/pkg/ja-groff-1.18.1_10/
/skel/var/db/pkg/ja-less+iso-382.262/
/skel/var/db/pkg/jasper-1.701.0_1/
/skel/var/db/pkg/jbigkit-1.6/
/skel/var/db/pkg/jpeg-6b_4/
/skel/var/db/pkg/lcms-1.15_1,1/
/skel/var/db/pkg/ldconfig_compat-1.0_8/
/skel/var/db/pkg/lha-1.14i_6/
/skel/var/db/pkg/libXft-2.1.7_1/
/skel/var/db/pkg/libdrm-2.0.2/
/skel/var/db/pkg/libesmtp-1.0.4_1,1/
/skel/var/db/pkg/libfpx-1.2.0.12/
/skel/var/db/pkg/libgmp-4.2.1_1/
/skel/var/db/pkg/libiconv-1.9.2_2/
/skel/var/db/pkg/libltdl-1.5.22/
/skel/var/db/pkg/libslang-1.4.9/
/skel/var/db/pkg/libungif-4.1.4_1/
/skel/var/db/pkg/libunrar-3.6.8,1/
/skel/var/db/pkg/libxml2-2.6.26/
/skel/var/db/pkg/libxslt-1.1.17/
/skel/var/db/pkg/linux-expat-1.95.8/
/skel/var/db/pkg/linux-fontconfig-2.2.3_5/
/skel/var/db/pkg/linux_base-fc-4_9/
/skel/var/db/pkg/localedata-5.4/
/skel/var/db/pkg/m4-1.4.4/
/skel/var/db/pkg/mpeg2codec-1.2_1/
/skel/var/db/pkg/netpbm-10.26.33/
/skel/var/db/pkg/p5-Algorithm-Diff-1.1902/
/skel/var/db/pkg/p5-Archive-Tar-1.30/
/skel/var/db/pkg/p5-Authen-SASL-2.10_1/
/skel/var/db/pkg/p5-Compress-Zlib-1.42/
/skel/var/db/pkg/p5-Date-Manip-5.44/
/skel/var/db/pkg/p5-Digest-1.15/
/skel/var/db/pkg/p5-Digest-HMAC-1.01/
/skel/var/db/pkg/p5-Digest-MD5-2.36/
/skel/var/db/pkg/p5-Digest-SHA1-2.11/
/skel/var/db/pkg/p5-File-MMagic-1.27/
/skel/var/db/pkg/p5-GSSAPI-0.23/
/skel/var/db/pkg/p5-Geography-Countries-1.4/
/skel/var/db/pkg/p5-HTML-Parser-3.55/
/skel/var/db/pkg/p5-HTML-Tagset-3.10/
/skel/var/db/pkg/p5-IO-Socket-INET6-2.51_1/
/skel/var/db/pkg/p5-IO-Socket-SSL-1.01/
/skel/var/db/pkg/p5-IO-String-1.08/
/skel/var/db/pkg/p5-IO-Zlib-1.04_1/
/skel/var/db/pkg/p5-IP-Country-2.21/
/skel/var/db/pkg/p5-MIME-Base64-3.07/
/skel/var/db/pkg/p5-Mail-SPF-Query-1.999.1/
/skel/var/db/pkg/p5-Mail-Tools-1.74/
/skel/var/db/pkg/p5-Math-BigInt-1.77/
/skel/var/db/pkg/p5-Net-1.19,1/
/skel/var/db/pkg/p5-Net-CIDR-Lite-0.20/
/skel/var/db/pkg/p5-Net-DNS-0.59/
/skel/var/db/pkg/p5-Net-IP-1.25/
/skel/var/db/pkg/p5-Net-SSLeay-1.30_1/
/skel/var/db/pkg/p5-Parse-Syslog-1.09/
/skel/var/db/pkg/p5-PathTools-3.23/
/skel/var/db/pkg/p5-Scalar-List-Utils-1.18,1/
/skel/var/db/pkg/p5-Socket6-0.19/
/skel/var/db/pkg/p5-Sys-Hostname-Long-1.4/
/skel/var/db/pkg/p5-Text-Diff-0.35/
/skel/var/db/pkg/p5-URI-1.35/
/skel/var/db/pkg/p5-XML-LibXML-1.61003_1/
/skel/var/db/pkg/p5-XML-LibXML-Common-0.13/
/skel/var/db/pkg/p5-XML-NamespaceSupport-1.09_1/
/skel/var/db/pkg/p5-XML-SAX-0.14/
/skel/var/db/pkg/p5-gettext-1.05_1/
/skel/var/db/pkg/p5-libwww-5.805/
/skel/var/db/pkg/perl-5.8.7/
/skel/var/db/pkg/pico-4.64/
/skel/var/db/pkg/pkg-config-0.21/
/skel/var/db/pkg/pkgdb.db
/skel/var/db/pkg/png-1.2.12_1/
/skel/var/db/pkg/popt-1.7_1/
/skel/var/db/pkg/readline-5.1/
/skel/var/db/pkg/ruby-1.8.5_4,1/
/skel/var/db/pkg/ruby18-bdb-0.5.9_2/
/skel/var/db/pkg/tiff-3.8.2/
/skel/var/db/pkg/unzip-5.52_2/
/skel/var/db/pkg/unzoo-4.4/
/skel/var/db/pkg/xorg-fonts-encodings-6.9.0_1/
/skel/var/db/pkg/xorg-libraries-6.9.0/
/skel/var/db/pkg/xterm-222/
- OpenSSL
- The OpenSSL toolkit for SSL/TLS will be updated to version 0.9.7l. This version addresses denial of service and
buffer overflow security issues CVE-2006-2937, CVE-2006-2940, CVE-2006-3738, and CVE-2006-4343, discussed here:
More information about 0.9.7l can be found here:
No action needed.
- FrontPage
- The support for FrontPage server extensions will be updated to address issues for extensions used with subhosts.
This should alleviate existing problems with subhost extensions. No action needed.
- Lynx
- The Lynx command-line textual Web browser will be update to version 2.8.7d4. This version brings the utility to
the most current FreeBSD version and addresses issues with missing files and mime-support. More information about
version 2.8.7d4 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- SQLite
- The SQLite database engine will be updated to version 3.3.8. This version brings the utility to the most current
FreeBSD version and addresses issues with full text search. More information about version 3.3.8 can be found at
these pages:
No action needed.
- PathTools
- The PathTools file specifications module will be updated to version 3.24. This version brings the utility to the
most current FreeBSD version. More information about version 3.24 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- GNU Bison
- The GNU bison parser tool will be updated to version 2.3. This version brings the utility to the most current FreeBSD
version. More information about version 2.3 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- IO::Socket::SSL
- The IO::Socket::SSL class will be updated to version 1.02. This version brings the class to the most current
FreeBSD version. More information about version 1.02 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- PHP5 Vinstall
- The PHP5 vinstall will be updated to utilize CDialog to display installation options better. Update affects the
vinstall only. No action needed.
- PHP5 Extensions
- The SimpleXML and SOAP extensions have been added to the available extensions for the PHP5 vinstall. To add these
extensions to your installation of PHP5, connect to your server through SSH and execute the following command from
the prompt:
# vinstall php5
and then select the appropriate extensions to include from the list.
- MIME::Lite
- The MIME::Lite module will be updated to version 3.01_05. This version brings the module to the most recent
version. More information about version 3.01_05 can be found here:
http://search.cpan.org/~yves/MIME-Lite-3.01_05/changes.pod
No action needed.
- Stunnel
- The Stunnel encryption program will be updated to correctly reference certificates. No action needed.
- mod_perl
- The mod_perl Apache Perl interpreter will be updated to version 2.0.3. This version brings the utility to the
most current mod_perl2 version and addresses issues with errors, binding, testing, and several other issues. More
information about version 2.0.3 can be found here:
http://perl.apache.org/dist/mod_perl-2.0-current/Changes
No action needed to receive the update to mod_perl. A new vinstall will be introduced for mod_perl also. This
vinstall will add the mod_perl LoadModule information to the httpd.conf file and restart apache. To use this
vinstall, connect to your server through SSH and execute the following command from the prompt:
# vinstall mod_perl
- poppwd
- The poppwd Eudora password changing protocol utility will be updated to version 2.0. This brings the utility to
the most current FreeBSD version. More information about version 2.0 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Scalar-List-Utils
- The Scalar-List-Utils package will be updated to version 1.19,1. This version updates the package to the most
current FreeBSD version. More information about version 1.19,1 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Xterm
- The xterm terminal emulator will be updated to version 223. This version addresses issues with macros, configure
scripts, FreeType, indexing, and several other issues. More information about version 223 can be found here:
http://dickey.his.com/xterm/xterm.log.html#xterm_223
No action needed.
- GNU Tar
- The gtar (GNU Tar) archive utility will be updated to version 1.16.1. This version brings the utility to the
most current FreeBSD version and addresses race conditions, adds new options, and addresses several other issues.
More information about version 1.16.1 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Majordomo
- The vinstall for the Majordomo email list utility will be updated to remove temporary majordomo files when it is
completed. The vunistall will be updated to completely remove majordomo user information when it is complete. This
update affects the vinstall and vuninstalls only. No action needed.
- Webmin
- The vinstall for the Webmin Web-based interface for system administration for UNIX will be updated to show clear
warning messages indicating which program to run again if Webmin is not configured correctly. The vuninstall will be
updated to remove entries in the /etc/rc.conf file. This update affects the vinstall and vuninstall only. No action
needed.
- Tiff
- Tiff (Tag Image File Format), software for the widely used image format, will be upgraded to version 3.8.2_1.
This version brings the utility to the most current FreeBSD version and addresses issues with lcompat. More information
about version 3.8.2_1 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Libungif
- Libungif, a software library used to read and write graphical image files, will be upgraded to version 4.1.4_2.
This version brings the utility to the most current FreeBSD version and addresses segfault issues. More information
about version 4.1.4_2 can be found here:
No action needed.
- Unzoo
- The unzoo archive extractor will be upgraded to version 4.4_2. This version brings the utility to the most
current FreeBSD version and addresses variable initialization issues. More information about version 4.4_2 can be
found here:
http://www.freshports.org/commit.php ...
No action needed.
- Portupgrade
- The Portupgrade FreeBSD ports/packages administration and management tool suite will be updated to version
2.2.2,2. This version brings the utility to the most current FreeBSD version and addresses issues with database
file locking, pkgdb, and several other issues. More information about version 2.2.2,2 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- M4
- The GNU m4 macro library will be updated to version 1.4.8_1. This version brings the utility to the most current
FreeBSD version. More information about version 1.4.8_1 can be found here:
No action needed.
- CPX
- The vinstall for the CPX server management Web interface will be updated to correct issues with permissions for
genericstable files. To take advantage of this update, connect to your server through SSH and execute the following
command from the prompt:
# vinstall cpx
- CDialog
- The CDialog script-interpreter version 1.0.20060221,1 will be added to the system. More information about
CDialog can be found at these pages:
More information about version 1.0.20060221,1 can be found here:
http://invisible-island.net/dialog/CHANGES
No action needed.
- Readline
- The GNU Readline library will be updated to version 5.2. This version brings the utility to the most current
FreeBSD version. More information about version 5.2 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Mime-support
- The mime-support MIME types package will be updated to version 3.39.1. This version adds more MIME types support.
More information about version 3.39.1 can be found here:
http://packages.debian.org/changelogs/pool/main/m/mime-support/current/changelog
No action needed.
- Rsync
- Rsync, an open source utility that provides fast incremental file transfer, will be updated to version 2.6.9. This
version brings the utility to the most current FreeBSD version and addresses issues with ACLs and flags patches. More
information about version 2.6.9 can be found here:
No action needed.
- popt
- The popt command line option parsing library will be updated to version 1.7_2. This version brings the utility to
the most current FreeBSD version and addresses issues with xgettext and configure variables. More information about
version 1.7_2 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Ruby
- The Ruby object-oriented scripting language will be updated to version 1.8.5_5,1. This version addresses a
security vulnerability discussed in JVN#84798830:
http://jvn.jp/jp/JVN%2384798830/index.html
More information about version 1.8.5_5,1 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Sendmail
- The vinstall for the Sendmail m4 macros will be updated to more correctly reflect the current system. Update
affects vinstall only. No action needed.
- Curl
- The cURL file transfer utility will be updated to version 7.16.0. This version addresses issues with build errors,
proxy connects, cleanup function calls, and several other issues. More information about version 7.16.0 can be found
here:
http://curl.haxx.se/changes.html
No action needed.
- ClamAV
- ClamAV, a GPL virus scanner, will be updated to version 0.88.7_1. This version brings the utility to the most
current stable release and improves scanning of mail and tar files. More information about version 0.88.7_1 can be
found here:
http://sourceforge.net/project/shownotes.php ...
No action needed.
- GPG
- GPG (GNU Privacy Guard or GnuPG) will be updated to version 1.4.6_2. This version addresses issues with build
errors and cURL. More information about version 1.4.5_2 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Netpbm
- The Netpbm graphics software package will be updated to version 10.26.36. This version addresses issues with
makesum. More information about version 10.26.36 can be found here:
http://www.freshports.org/commit.php ...
No Action needed.
- Vim-lite
- The vim-lite editor will be updated to version 7.0.178. This version updates the editor and addresses minor
issues. More information about version 7.0.178 of the full vim package can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Autoreply
- Email autoreply (or autoresponder), an email tool used to distribute information about your organization
autoresponder, will be updated to use the full path name in perl system calls. No action needed.
- Restart_apache
- The proprietary restart_apache utility will be updated to correct a syntax error code. No action needed.
- Sendmailcert
- The vinstall for sendmailcert, the proprietary Sendmail certificate utility, will include updated, more
accurate text. No action needed.
- Savelogs
- The vinstall for the proprietary savelogs file rotation utility will be updated to correctly reflect paths for
Apache2, since it is the default Web server. Update affects the vinstall only. No action needed.
- Sendmail RBL
- The vinstall for the Sendmail RBL (real-time blackhole list) subscription utility will be updated remove the
following list:
relays.ordb.org for the Open Relay Database (ORDB).
For information regarding the cessation of the ORDB, refer to industry news sources as at the following Web address:
http://www.computerworld.com/action/article.do ...
No action needed.
- SpamAssassin
- The vinstall for the Spamassassin mail filter will be updated to install version 3.1.7_3. This version brings
the utility to the most current FreeBSD version and introduces support for DomainKeys and DKIM, as well as addressing
issues with GPG. More information about version 3.1.7_3 can be found at these pages:
No action needed.
FreeBSD VPS v2:
- OpenSSH
- The portable OpenSSH connectivity tool will be updated to version 4.5.p1,1. This version addresses brings the tool
to the most current FreeBSD version and addresses issues with CHROOT and other patches. More information about
version 4.5.p1,1 can be found here:
No action needed.
- Sendmailcert
- The vinstall for sendmailcert, the sendmail certificate utility, will include updated, more accurate text. No
action needed.
- Sendmail RBL
- The vinstall for the Sendmail RBL (real-time blackhole list) subscription utility will be updated remove the
following list:
relays.ordb.org for the Open Relay Database (ORDB).
For information regarding the cessation of the ORDB, refer to industry news sources as at the following Web address:
http://www.computerworld.com/action/article.do ...
No action needed.
- SpamAssassin
- The vinstall for the Spamassassin mail filter will be updated to install version 3.1.7_3. This version brings the
utility to the most current FreeBSD version and introduces support for DomainKeys and DKIM, as well as addressing
issues with GPG. More information about version 3.1.7_3 can be found at these pages:
To update existing SpamAssassin installations and keep the current program configuration, connect to your server
through SSH and execute the following command from the prompt:
# vinstall spamassassin
Answer "yes" (the default) when prompted with the question "Would you like to overwrite/upgrade your existing
installation? [yes]:" Answer "no" (the default) when asked "Would you like to setup Spam Assassin 3.1.7_3 to process
*all* email received by this server now? [no]:" Finally, answer "no" (the default) when asked "Would you like to setup
Spam Assassin 3.1.7_3 to process email for a particular user now? [no]:"
- Majordomo
- The vinstall for the Majordomo email list utility will be updated to remove temporary majordomo files when it
is completed. The vunistall will be updated to completely remove majordomo user information when it is complete.
This update affects the vinstall and vuninstalls only. No action needed.
- Webmin
- The vinstall for the Webmin Web-based interface for system administration for UNIX will be updated to show clear
warning messages indicating which program to run again if Webmin is not configured correctly. The vinstall will also
be updated to install Webmin with configuration to use a secure URL by default (https://). The vuninstall will be
updated to remove entries in the /etc/rc.conf file. This update affects the vinstall and vuninstall only. No
action needed.
- Portupgrade
- The index.db file used by the Portupgrade FreeBSD ports/packages administration and management tool suite will
be updated to address package corruption issues and to reflect current packages and dependencies. No action needed.
- CPX
- The vinstall for the CPX server management Web interface will be updated to correct issues with permissions for
genericstable files. To take advantage of this update, connect to your server through SSH and execute the following
command from the prompt:
# vinstall cpx
- Mpfr
- Mpfr, a library for multiple-precision floating-point computations, will be updated to version 2.2.1. This version
brings the utility to the most current FreeBSD version and addresses issues with the manual, internal declarations,
and several other issues. More information about version 2.2.1 can be found here:
http://www.mpfr.org/mpfr-2.2.1/
No action needed.
- Ruby-bdb1
- The Ruby-bdb1 Berkeley DB interface will be updated to version 0.2.3. This version brings the utility to the most
current FreeBSD version. More information about version 0.2.3 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Rsync
- Rsync, an open source utility that provides fast incremental file transfer, will be updated to version 2.6.9. This
version brings the utility to the most current FreeBSD version and addresses issues with ACLs and flags patches. More
information about version 2.6.9 can be found here:
No action needed.
- popt
- The popt command line option parsing library will be updated to version 1.7_2. This version brings the utility to
the most current FreeBSD version and addresses issues with xgettext and configure variables. More information about
version 1.7_2 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Portupgrade
- The Portupgrade FreeBSD ports/packages administration and management tool suite will be updated to version 2.2.2,2.
This version brings the utility to the most current FreeBSD version and addresses issues with database file locking,
pkgdb, and several other issues. More information about version 2.2.2,2 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Libungif
- Libungif, a software library used to read and write graphical image files, will be upgraded to version 4.1.4_2.
This version brings the utility to the most current FreeBSD version and addresses segfault issues. More information
about version 4.1.4_2 can be found here:
http://www.freshports.org/commit.php ...
http://www.freshports.org/commit.php ...
No action needed.
- Tiff
- Tiff (Tag Image File Format), software for the widely used image format, will be upgraded to version 3.8.2_1. This
version brings the utility to the most current FreeBSD version and addresses issues with lcompat. More information
about version 3.8.2_1 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- File::Temp
- The File::Temp Perl module will be updated to version 0.17_1. This version brings the utility to the most current
FreeBSD version. More information about version 0.17_1 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- libarchive
- The libarchive archiving utility will be updated to version 1.3.1,1. This version brings the utility to the most
current FreeBSD version. More information about version 1.3.1,1 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Unzoo
- The unzoo archive extractor will be upgraded to version 4.4_2. This version brings the utility to the most current
FreeBSD version and addresses variable initialization issues. More information about version 4.4_2 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- CDialog
- The CDialog script-interpreter version 1.0.20060221,1 will be added to the system. More information about CDialog
can be found at these pages:
http://invisible-island.net/dialog/
http://www.freshports.org/devel/cdialog
More information about version 1.0.20060221,1 can be found here:
http://invisible-island.net/dialog/CHANGES
No action needed.
- Vadduser
- The vadduser command-line utility will be updated to detect whether the CPX server management Web interface has
been installed in the account and, if so, enables the --cpx option automatically to ensure the new user will be
compatible with CPX. Update affects vadduser only. No action needed.
- Ispell
- The ispell interactive spell-checking program will be updated to version 3.2.06_16. This version brings the
utility to the most current FreeBSD version. More information about version 3.2.06_16 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Mime-support
- The mime-support MIME types package will be updated to version 3.39.1. This version adds more MIME types support.
More information about version 3.39.1 can be found here:
http://packages.debian.org/changelogs/pool/main/m/mime-support/current/changelog
No action needed.
- Ruby
- The Ruby object-oriented scripting language will be updated to version 1.8.5_5,1. This version addresses a security
vulnerability discussed in JVN#84798830:
http://jvn.jp/jp/JVN%2384798830/index.html
More information about version 1.8.5_5,1 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- M4
- The GNU m4 macro library will be updated to version 1.4.8_1. This version brings the utility to the most current
FreeBSD version. More information about version 1.4.8_1 can be found here:
No action needed.
- DB41
- DB 41, a Berkeley database library, will be upgraded to version 4.1.25_4. This version brings the library to the
most current FreeBSD version and addresses issues with MASTER_SITES and vendor patches. More information about
version 4.1.25_4 can be found here:
No action needed.
- Readline
- The GNU Readline library will be updated to version 5.2. This version brings the utility to the most current
FreeBSD version. More information about version 5.2 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Sendmail
- The vinstall for the Sendmail m4 macros will be updated to more correctly reflect the current system. Update
affects vinstall only. No action needed.
- Curl
- The cURL file transfer utility will be updated to version 7.16.0. This version addresses issues with build errors,
proxy connects, cleanup function calls, and several other issues. More information about version 7.16.0 can be found
here:
http://curl.haxx.se/changes.html
No action needed.
- Vim-lite
- The vim-lite editor will be updated to version 7.0.178. This version updates the editor and addresses minor
issues. More information about version 7.0.178 of the full vim package can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Netpbm
- The Netpbm graphics software package will be updated to version 10.26.36. This version addresses issues with
makesum. More information about version 10.26.36 can be found here:
http://www.freshports.org/commit.php ...
No Action needed.
- GPG
- GPG (GNU Privacy Guard or GnuPG) will be updated to version 1.4.6_2. This version addresses issues with build
errors and cURL. More information about version 1.4.5_2 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Xterm
- The xterm terminal emulator will be updated to version 223. This version addresses issues with macros, configure
scripts, FreeType, indexing, and several other issues. More information about version 223 can be found here:
http://dickey.his.com/xterm/xterm.log.html#xterm_223
No action needed.
- ClamAV
- ClamAV, a GPL virus scanner, will be updated to version 0.88.7_1. This version brings the utility to the most
current stable release and improves scanning of mail and tar files. More information about version 0.88.7_1 can be
found here:
http://sourceforge.net/project/shownotes.php?release_id=470383
No action needed.
- VPS::Passwd and VPS::Privs
- The VPS::Passwd and VPS::Privs modules will be updated to better address large password files. This also
optimizes the proprietary vrmuser command to work better with large password files. No action needed.
- Autoreply
- Email autoreply (or autoresponder), an email tool used to distribute information about your organization
autoresponder, will be updated to use the full path name in perl system calls. No action needed.
- Restart_apache
- The proprietary restart_apache utility will be updated to correct a syntax error code. No action needed.
- Zend Optimizer and Accrisoft Freedom
- The installer for Accrisoft Freedom will be updated to install Zend Optimizer version 2.6.0. This update affects
new installations only. No action needed.
FreeBSD VPS v1
- OpenSSH
- The portable OpenSSH connectivity tool will be updated to version 4.5.p1. This version provides fixes to
Solaris SMF/process contract support. For more information about this concern, refer to the following Web site:
http://bugzilla.mindrot.org/show_bug.cgi?id=1255
For more information about OpenSSH version 4.5.p1, refer to the following Web site:
http://www.openssh.com/txt/release-4.5
No action needed.
Solaris VPS v1
- OpenSSH
- The portable OpenSSH connectivity tool will be updated to version 4.5.p1. This version provides fixes to
Solaris SMF/process contract support. For more information about this concern, refer to the following Web site:
http://bugzilla.mindrot.org/show_bug.cgi?id=1255
For more information about OpenSSH version 4.5.p1, refer to the following Web site:
http://www.openssh.com/txt/release-4.5
No action needed.
Signature
- OpenSSH
- The portable OpenSSH connectivity tool will be updated to version 4.5.p1. This version provides fixes to Solaris
SMF/process contract support. For more information about this concern, refer to the following Web site:
http://bugzilla.mindrot.org/show_bug.cgi?id=1255
For more information about OpenSSH version 4.5.p1, refer to the following Web site:
http://www.openssh.com/txt/release-4.5
No action needed.
- Control Panel
- The Control Panel will be updated to address issues with the following:
- Distribution list creation
- Printable Webmail view
- Confirmation messages
- Saving Webmail drafts
- Special characters in Webmail options
- E-mail encoding
- Web privileges for subusers
- Password protected areas
- Editing files
- Special characters in address book entries
- User list navigation
- Bandwidth history
- Case sensitivity for sorting
- OpenSSL
- The OpenSSL toolkit for SSL/TLS will be updated to version 0.9.7l. This version addresses denial of service and
buffer overflow security issues CVE-2006-2937, CVE-2006-2940, CVE-2006-3738, and CVE-2006-4343, discussed here:
More information about 0.9.7l can be found here:
No action needed.
- ProFTPD
- The ProFTPD GPL-licensed FTP server will be updated to version 1.3.0a. This version addresses a buffer overflow
security issue discussed here:
More information about version 1.3.0a can be found here:
http://www.proftpd.org/
http://www.proftpd.org/docs/RELEASE_NOTES-1.3.0
No action needed.
- libedit
- The libedit command-line editing utility version 2.6.9_2 will be added to the system. This version is the most
current FreeBSD version. More information about version 2.6.9_2 can be found here:
http://www.freshports.org/devel/libedit/
No action needed.
- qmail
- The qmail mail server will be updated to address issues with high UID numbers. No action needed.
- mod_speling
- The mod_speling Apache module will be added to the Web server. This module attempts to correct misspellings of URLs
that users might have entered, by ignoring capitalization and by allowing up to one misspelling. More information about
mod_speling can be found here:
http://httpd.apache.org/docs/1.3/mod/mod_speling.html
No action needed.
- SSL Certificate
- The AAA Certificate Services intermediate SSL certificate will be added to the system. No action needed.
- DNS Blacklisting
- The DNS Blacklisting will be updated to not use the ORDB blacklist, as it is no longer functioning. No action needed.
- Python
- The Python programming language versions will be updated. Python 2.1x, 2.2x, and 2.3x will be updated to the following
versions and the following versions of Python 2.4x and 2.5x will be added to the system:
- Python 2.1.3_8
- Python 2.2.3_9
- Python 2.3.5_1
- Python 2.4.3_3
- Python 2.5_1
Python 2.4x will become the default Python version for the system. No action needed.
- Zoo
- The zoo archive utility will be updated to version 2.10.1_2. This version addresses a buffer overflow security
issue, discussed here:
http://cve.mitre.org/cgi-bin/cvename.cgi ...
More information about version 2.10.1_2 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- Lynx
- The Lynx command-line textual Web browser will be update to version 2.8.5_2. This version brings the utility to the
most current FreeBSD version and addresses issues XHTML. More information about version 2.8.5_2 can be found at these
pages:
No action needed.
- Pine
- The Pine command-line email and news reader will be updated to version 4.64. This version addresses many issues,
including a buffer overflow security vulnerability discussed here:
http://labs.idefense.com/intelligence/vulnerabilities/display.php
More information about version 4.64 can be found here:
http://www.freshports.org/mail/pine4/
No action needed.
- Pico
- The Pico command-line text editor will be updated to version 4.64. This version addresses many issues, including a
buffer overflow security vulnerability discussed here:
http://labs.idefense.com/intelligence/vulnerabilities/display.php ...
More information about version 4.64 can be found here:
http://www.freshports.org/editors/pico/
No action needed.
- Readline
- The GNU Readline library will be updated to version 5.1. This version brings the library to the most current FreeBSD
version and addresses issues with sparc64 and USE_REINPLACE. More information about version 5.1 can be found here:
http://www.freshports.org/devel/readline
No action needed.
- ARC
- The ARC archive and file compression utility will be updated to version 5.21o_1. This version brings the utility
to the most current FreeBSD version and addresses issues with DESTDIR, NOPORTDOCS, PORTREVISION, and other elements.
More information about version 5.21o_1 can be found at these pages:
No action needed.
- UNARJ
- The UNARJ extract-only archive utility will be updated to version 2.65_2. This version brings the utility to the
most current FreeBSD version and addresses issues with DESTDIR, NOPORTDOCS, PORTREVISION, and other elements. More
information about version 2.65_2 can be found at these pages:
No action needed.
- UnZip
- The Info-ZIP UnZip archive extraction utility will be updated to version 5.52_2. This version brings the utility
to the most current FreeBSD version and addresses issues with DESTDIR, plist, and TOCTOU. More information about
version 5.52_2 can be found here:
http://www.freshports.org/archivers/unzip/
No action needed.
- PNG
- The libpng reference library will be updated to version 1.2.12_1. This version addresses issues with pngconf.h.
More information about PNG 1.2.12x can be found here:
http://www.libpng.org/pub/png/libpng.html
No action needed.
- JPEG
- The Independent JPEG Group JPEG library will be updated to version 6b_4. This version brings the utility to the
most current FreeBSD version and addresses issues with libtool. More information about version 6b_4 can be found here:
http://www.freshports.org/commit.php? ...
No action needed.
- LCMS
- The LCMS (Little Color Management System or LittleCms) color management engine will be updated to version 1.15_1,1.
This version brings the utility to the most current FreeBSD version and adds features to support future supplementary
utilities. More information about version 1.15_1,1 can be found here:
http://www.freshports.org/commit.php? ...
No action needed.
- RC subroutines
- The rc_subr (RC startup and shutdown) system utility will be updated to version 1.31_1. This version brings the
utility to the most current FreeBSD version and addresses issues with USE_REINPLACE. More information about version
1.31_1 can be found here:
http://www.freshports.org/sysutils/rc_subr/
No action needed.
- ldconfig_compat
- The ldconfig_compat compatibility script will be updated to version 1.0_8. This version includes a more recent
version of the ldconfig script. More information about the changes in version 1.0_8 can be found here:
http://www.freebsd.org/cgi/getmsg.cgi ...
No action needed.
- Mhash
- The mhash library for hash algorithms will be updated to version 0.9.7.1. This version addresses several issues
including issues with Perl dependencies and PORTDOCS. More information about version 0.9.7.1 can be found here:
http://www.freebsd.org/cgi/getmsg.cgi
No action needed.
- Libmcrypt
- The libmcrypt cryptographic library will be updated to version 2.5.7_2. This version brings the utility to the most
current FreeBSD version and addresses issues with libtool and the port itself. More information about the changes in
version 2.5.7_2 can be found here:
No action needed.
- Db3
- DB3 (Version 3 of the Berkley DB library) will be updated to version 3.3.11_3,1. This version brings the utility to
the most current FreeBSD version and addresses multiple issues. More information about the changes in version 3.3.11_3,1
can be found here:
http://www.freshports.org/databases/db3/
No action needed.
- TIFF
- The TIFF (Tag Image File Format) package will be updated to version 3.8.2. The version updates the package
version. More information about the changes in version 3.8.2 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- JasPer
- The JasPer implementation of the JPEG-2000 standard specification will be updated to version 1.701.0_1. This
version brings the utility to the most current FreeBSD version and addresses issues with libtool and the port itself.
More information about the changes in version 1.701.0_1 can be found at these pages:
No action needed.
- Ruby
- The Ruby object-oriented scripting language will be updated to version 1.8.5_3,1 and support for the Oniguruma
regular expression library will be added. This version brings the language to the most current FreeBSD version and
addresses a DoS security vulnerability and pthread issue. The vulnerability is discussed here:
http://cve.mitre.org/cgi-bin/cvename.cgi ...
More information about version 1.8.5_4,1 can be found at these pages:
No action needed.
- GNU dbm
- The GNU dbm library of database functions will be updated to version 1.8.3_3. This version brings the utility to the
most current FreeBSD version and addresses issues with file ownership. More information about version 1.8.3_3 can be
found here:
http://www.freshports.org/commit.php ...
No action needed.
- DB41
- DB 41, a Berkeley database library, will be upgraded to Version 4.1.25_3. This version addresses issues with cache
allocation, environment recovery, and the port itself. More information about version 4.1.25_3 can be found here:
No action needed.
- Portupgrade
- Portupgrade, a FreeBSD ports/packages administration and management tool suite, will be updated to version
2.1.3.3_1,2. This version addresses issues with descriptions and URLs. More information about version 2.1.3.3_1,2
can be found here:
http://www.freebsd.org/cgi/getmsg.cgi ...
No action needed.
- Ruby-bdb
- The Ruby-bdb Sleepycat Berkeley DB interface will be updated to version 0.5.9_2. This version updates the utility
to the current version. More information about version 0.5.9_2 and past versions can be found here:
http://www.freshports.org/databases/ruby-bdb/
No action needed.
- GD (Japanese)
- The GD (Japanese) dynamic image code library will be updated to version 2.0.33_4,1. This version brings the library
to the most current FreeBSD version and addresses issues with perl-GD. More information about the changes in version
2.0.33_4,1 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- FreeType 2
- The FreeType 2 portable TrueType font engine will be updated to version 2.2.1_1. This version brings the utility
to the most current FreeBSD version. More information about version 2.2.1_1 can be found at these pages:
No action needed.
- UnRAR
- The unRAR archive utility, part of RAR: Roshal ARchive data compression software, will be updated to version
3.60,4. This version brings the utility to the most current FreeBSD version. More information about version 3.60.4
can be found at these pages:
No action needed.
- gmake
- The gmake (GNU Make) executable utility will be updated to version 3.81_1. This version addresses problems with
the rw locale. More information about version 3.81_1 can be found here:
http://www.freebsd.org/cgi/getmsg.cgi ...
No action needed.
- Libunrar
- Libunrar, part of RAR: Roshal ARchive data compression software, will be updated to version 3.6.8,1. This version
brings the utility to the most current FreeBSD version. It also addresses issues with versioning and USE_LDCONFIG.
More information about version 3.6.8,1 can be found here:
http://www.freebsd.org/cgi/getmsg.cgi ...
No action needed.
- Netpbm
- The Netpbm graphics software package will be updated to version 10.26.33. This version brings the utility to the
most current FreeBSD version. More information about version 10.26.33 can be found here:
http://www.freshports.org/commit.php ...
No action needed.
- t1lib
- The t1lib library for Adobe Type 1 fonts will be updated to version 5.1.0_1,1. This version brings the library to
the most current FreeBSD version and addresses issues with USE_REINPLACE, libtool, and the port itself. More information
about version 5.1.0_1,1 can be found here:
No action needed.
Note: This
notification could include technical inaccuracies or typographical errors. Changes can be made to the information herein;
these changes will be distributed in new notifications. AlpineWeb might make improvements and/or changes in the product(s)
and/or the program(s) described in this publication at any time.

|