The NetBSD Project

CVS log for pkgsrc/security/dirb/distinfo

[BACK] Up to [cvs.NetBSD.org] / pkgsrc / security / dirb

Request diff between arbitrary revisions


Default branch: MAIN


Revision 1.7 / (download) - annotate - [select for diffs], Wed Aug 30 18:21:56 2023 UTC (7 months, 2 weeks ago) by hubertf
Branch: MAIN
CVS Tags: pkgsrc-2024Q1-base, pkgsrc-2024Q1, pkgsrc-2023Q4-base, pkgsrc-2023Q4, pkgsrc-2023Q3-base, pkgsrc-2023Q3, HEAD
Changes since 1.6: +4 -5 lines
Diff to previous 1.6 (unified)

dirb: Update to 2.20 [hubertf 2023-08-29]

Upstream Changes:

2.2.0 (23/04/2013)
-----

- FEATURE: added function compare_str() that returns the position of the first different character.
- BUG: fixed the use of finetunning for pages of type 30x in launch_attack()
- FEATURE: improved location_clean() function
- FEATURE: added wordlist hpsmh (hp system management homepage)
- BUG: fixed incorrect use of url_base in launch_attack()
- FEATURE: now in case of fixable error it goes to next directory instead of exiting
- BUG: corrected erroneous use of get_necs() in resume.c
- FEATURE: added wordlist axis and ror (ruby on rails), extended oas and tomcat


2.1.0 (25/05/2011)
-----

- FEATURE: tested URLs information adjusted to terminal width
- BUG: changed printf() that displayed and cleared URL in launch_attack() to avoid undue line breaks
- FEATURE: changed output format (all in 1 line)
- FEATURE: added wordlists: wps (websphere portal server), sap (sap j2ee), domino (update)


2.0.4 (06/04/2009)
-----

- BUG: -R option fails, fix by Hubert Seiwert
- FEATURE: don't force the / final if there are parameters in the url
- BUG: detection of recurring 401, 403 and 500 codes failed


2.0.3 (27/01/2009)
-----

- BUG: 301/302 detection with -f failed sometimes with recursion.
- FEATURE: the -N option now instead of setting the NEC, makes us ignore responses with that code.


2.0.2 (21/10/2008)
-----

- BUG: dump() function could be invoked before all the variables to be saved were defined.


2.0.1 (30/08/2007)
-----

- FEAUTRE: updated wordlist cgis.txt
- BUG: CURLOPT_MUTE option removed after deprecated in libcurl
- FEATURE: wordlist common.txt extended


2.0.0 (11/04/2007)
-----

- FEATURE: location_cmp() checks that what is passed to it is a valid url.
- BUG: fixed a bug that led to detect some 302 messages as directories.


1.99.0 (05/07/2006)
------

- FEATURE: directory listing detection in tomcat
- BUG: fixed off-by-one in uri_decode()
- FEATURE: Added Sharepoint wordlist
- BUG: Fixed a lot of bugs produced by the changes.
- FEATURE: NEC by directory.
- FEATURE: NEC by extension.


1.10.0 (25/04/2006)
------

- FEATURE: Added speedcontrol patch (option -z) of Sha0.


Package Changes:
- Install wordlists to make dirb even more useful.

Revision 1.6 / (download) - annotate - [select for diffs], Tue Oct 26 11:17:03 2021 UTC (2 years, 5 months ago) by nia
Branch: MAIN
CVS Tags: pkgsrc-2023Q2-base, pkgsrc-2023Q2, pkgsrc-2023Q1-base, pkgsrc-2023Q1, pkgsrc-2022Q4-base, pkgsrc-2022Q4, pkgsrc-2022Q3-base, pkgsrc-2022Q3, pkgsrc-2022Q2-base, pkgsrc-2022Q2, pkgsrc-2022Q1-base, pkgsrc-2022Q1, pkgsrc-2021Q4-base, pkgsrc-2021Q4
Changes since 1.5: +2 -2 lines
Diff to previous 1.5 (unified)

security: Replace RMD160 checksums with BLAKE2s checksums

All checksums have been double-checked against existing RMD160 and
SHA512 hashes

Unfetchable distfiles (fetched conditionally?):
./security/cyrus-sasl/distinfo cyrus-sasl-dedad73e5e7a75d01a5f3d5a6702ab8ccd2ff40d.patch.v2

Revision 1.5 / (download) - annotate - [select for diffs], Thu Oct 7 14:53:46 2021 UTC (2 years, 6 months ago) by nia
Branch: MAIN
Changes since 1.4: +1 -2 lines
Diff to previous 1.4 (unified)

security: Remove SHA1 hashes for distfiles

Revision 1.4 / (download) - annotate - [select for diffs], Wed Nov 4 01:17:44 2015 UTC (8 years, 5 months ago) by agc
Branch: MAIN
CVS Tags: pkgsrc-2021Q3-base, pkgsrc-2021Q3, pkgsrc-2021Q2-base, pkgsrc-2021Q2, pkgsrc-2021Q1-base, pkgsrc-2021Q1, pkgsrc-2020Q4-base, pkgsrc-2020Q4, pkgsrc-2020Q3-base, pkgsrc-2020Q3, pkgsrc-2020Q2-base, pkgsrc-2020Q2, pkgsrc-2020Q1-base, pkgsrc-2020Q1, pkgsrc-2019Q4-base, pkgsrc-2019Q4, pkgsrc-2019Q3-base, pkgsrc-2019Q3, pkgsrc-2019Q2-base, pkgsrc-2019Q2, pkgsrc-2019Q1-base, pkgsrc-2019Q1, pkgsrc-2018Q4-base, pkgsrc-2018Q4, pkgsrc-2018Q3-base, pkgsrc-2018Q3, pkgsrc-2018Q2-base, pkgsrc-2018Q2, pkgsrc-2018Q1-base, pkgsrc-2018Q1, pkgsrc-2017Q4-base, pkgsrc-2017Q4, pkgsrc-2017Q3-base, pkgsrc-2017Q3, pkgsrc-2017Q2-base, pkgsrc-2017Q2, pkgsrc-2017Q1-base, pkgsrc-2017Q1, pkgsrc-2016Q4-base, pkgsrc-2016Q4, pkgsrc-2016Q3-base, pkgsrc-2016Q3, pkgsrc-2016Q2-base, pkgsrc-2016Q2, pkgsrc-2016Q1-base, pkgsrc-2016Q1, pkgsrc-2015Q4-base, pkgsrc-2015Q4
Changes since 1.3: +2 -1 lines
Diff to previous 1.3 (unified)

Add SHA512 digests for distfiles for security category

Problems found locating distfiles:
	Package f-prot-antivirus6-fs-bin: missing distfile fp-NetBSD.x86.32-fs-6.2.3.tar.gz
	Package f-prot-antivirus6-ws-bin: missing distfile fp-NetBSD.x86.32-ws-6.2.3.tar.gz
	Package libidea: missing distfile libidea-0.8.2b.tar.gz
	Package openssh: missing distfile openssh-7.1p1-hpn-20150822.diff.bz2
	Package uvscan: missing distfile vlp4510e.tar.Z

Otherwise, existing SHA1 digests verified and found to be the same on
the machine holding the existing distfiles (morden).  All existing
SHA1 digests retained for now as an audit trail.

Revision 1.3 / (download) - annotate - [select for diffs], Sun Nov 19 08:15:17 2006 UTC (17 years, 5 months ago) by wiz
Branch: MAIN
CVS Tags: pkgsrc-2015Q3-base, pkgsrc-2015Q3, pkgsrc-2015Q2-base, pkgsrc-2015Q2, pkgsrc-2015Q1-base, pkgsrc-2015Q1, pkgsrc-2014Q4-base, pkgsrc-2014Q4, pkgsrc-2014Q3-base, pkgsrc-2014Q3, pkgsrc-2014Q2-base, pkgsrc-2014Q2, pkgsrc-2014Q1-base, pkgsrc-2014Q1, pkgsrc-2013Q4-base, pkgsrc-2013Q4, pkgsrc-2013Q3-base, pkgsrc-2013Q3, pkgsrc-2013Q2-base, pkgsrc-2013Q2, pkgsrc-2013Q1-base, pkgsrc-2013Q1, pkgsrc-2012Q4-base, pkgsrc-2012Q4, pkgsrc-2012Q3-base, pkgsrc-2012Q3, pkgsrc-2012Q2-base, pkgsrc-2012Q2, pkgsrc-2012Q1-base, pkgsrc-2012Q1, pkgsrc-2011Q4-base, pkgsrc-2011Q4, pkgsrc-2011Q3-base, pkgsrc-2011Q3, pkgsrc-2011Q2-base, pkgsrc-2011Q2, pkgsrc-2011Q1-base, pkgsrc-2011Q1, pkgsrc-2010Q4-base, pkgsrc-2010Q4, pkgsrc-2010Q3-base, pkgsrc-2010Q3, pkgsrc-2010Q2-base, pkgsrc-2010Q2, pkgsrc-2010Q1-base, pkgsrc-2010Q1, pkgsrc-2009Q4-base, pkgsrc-2009Q4, pkgsrc-2009Q3-base, pkgsrc-2009Q3, pkgsrc-2009Q2-base, pkgsrc-2009Q2, pkgsrc-2009Q1-base, pkgsrc-2009Q1, pkgsrc-2008Q4-base, pkgsrc-2008Q4, pkgsrc-2008Q3-base, pkgsrc-2008Q3, pkgsrc-2008Q2-base, pkgsrc-2008Q2, pkgsrc-2008Q1-base, pkgsrc-2008Q1, pkgsrc-2007Q4-base, pkgsrc-2007Q4, pkgsrc-2007Q3-base, pkgsrc-2007Q3, pkgsrc-2007Q2-base, pkgsrc-2007Q2, pkgsrc-2007Q1-base, pkgsrc-2007Q1, pkgsrc-2006Q4-base, pkgsrc-2006Q4, cwrapper, cube-native-xorg-base, cube-native-xorg
Changes since 1.2: +2 -1 lines
Diff to previous 1.2 (unified)

Make build with curl-7.16.0.

Revision 1.2 / (download) - annotate - [select for diffs], Mon Jan 23 07:51:47 2006 UTC (18 years, 2 months ago) by recht
Branch: MAIN
CVS Tags: pkgsrc-2006Q3-base, pkgsrc-2006Q3, pkgsrc-2006Q2-base, pkgsrc-2006Q2, pkgsrc-2006Q1-base, pkgsrc-2006Q1
Changes since 1.1: +3 -3 lines
Diff to previous 1.1 (unified)

update to 1.9
Patch submitted in PR 32598 by pancake <at> phreaker <dot> net

In other words:
- Add more checks and fixups on the engine.
- More keywords in wordlists database.
- Add new mode called 'silent mode'
- more charsets availables for gendict
- add some more examples
- add fine tuning for words in NEC=200

Revision 1.1.1.1 / (download) - annotate - [select for diffs] (vendor branch), Fri Oct 14 00:44:03 2005 UTC (18 years, 6 months ago) by minskim
Branch: TNF
CVS Tags: pkgsrc-base, pkgsrc-2005Q4-base, pkgsrc-2005Q4
Changes since 1.1: +0 -0 lines
Diff to previous 1.1 (unified)

Import dirb from pkgsrc-wip.  Packaged by pancake.

DIRB is a Web Content Scanner.  It looks for existing (and/or hidden)
Web Objects.  It basically works by launching a dictionary based
attack against a web server and analizing the response.

DIRB comes with a set of preconfigured attack wordlists for easy usage
but you can use your custom wordlists.  Also DIRB sometimes can be
used as a classic CGI scanner, but remember is a content scanner not a
vulnerability scanner.

DIRB main purpose is to help in professional web application auditing.
Specially in security related testing.  It covers some holes not
covered by classic web vulnerability scanners.  DIRB looks for
specific web objects that other generic CGI scanners can't look for.
It doesn't search vulnerabilities nor does it look for web contents
that can be vulnerables.

Revision 1.1 / (download) - annotate - [select for diffs], Fri Oct 14 00:44:03 2005 UTC (18 years, 6 months ago) by minskim
Branch: MAIN

Initial revision

This form allows you to request diff's between any two revisions of a file. You may select a symbolic revision name using the selection box or you may type in a numeric name using the type-in text box.




CVSweb <webmaster@jp.NetBSD.org>