The NetBSD Project

CVS log for pkgsrc/www/squid4/Makefile

[BACK] Up to [cvs.NetBSD.org] / pkgsrc / www / squid4

Request diff between arbitrary revisions


Default branch: MAIN


Revision 1.30 / (download) - annotate - [select for diffs], Wed Nov 8 13:21:24 2023 UTC (5 months, 1 week ago) by wiz
Branch: MAIN
CVS Tags: pkgsrc-2024Q1-base, pkgsrc-2024Q1, pkgsrc-2023Q4-base, pkgsrc-2023Q4, HEAD
Changes since 1.29: +2 -2 lines
Diff to previous 1.29 (colored) to selected 1.7 (colored)

*: recursive bump for icu 74.1

Revision 1.29 / (download) - annotate - [select for diffs], Tue Oct 24 22:11:34 2023 UTC (5 months, 3 weeks ago) by wiz
Branch: MAIN
Changes since 1.28: +2 -2 lines
Diff to previous 1.28 (colored) to selected 1.7 (colored)

*: bump for openssl 3

Revision 1.28 / (download) - annotate - [select for diffs], Wed Apr 19 08:11:51 2023 UTC (12 months ago) by adam
Branch: MAIN
CVS Tags: pkgsrc-2023Q3-base, pkgsrc-2023Q3, pkgsrc-2023Q2-base, pkgsrc-2023Q2
Changes since 1.27: +2 -2 lines
Diff to previous 1.27 (colored) to selected 1.7 (colored)

revbump after textproc/icu update

Revision 1.27 / (download) - annotate - [select for diffs], Wed Oct 26 10:32:06 2022 UTC (17 months, 3 weeks ago) by wiz
Branch: MAIN
CVS Tags: pkgsrc-2023Q1-base, pkgsrc-2023Q1, pkgsrc-2022Q4-base, pkgsrc-2022Q4
Changes since 1.26: +2 -2 lines
Diff to previous 1.26 (colored) to selected 1.7 (colored)

*: bump PKGREVISION for libunistring shlib major bump

Revision 1.26 / (download) - annotate - [select for diffs], Fri Sep 23 15:07:13 2022 UTC (18 months, 3 weeks ago) by taca
Branch: MAIN
CVS Tags: pkgsrc-2022Q3-base, pkgsrc-2022Q3
Changes since 1.25: +6 -2 lines
Diff to previous 1.25 (colored) to selected 1.7 (colored)

www/squid4: add official patches for security fix

Add official patches for security fix to CVE-2022-41317 and CVE-2022-41318.

Bump PKGREVISION.

Revision 1.25 / (download) - annotate - [select for diffs], Tue Jun 28 11:37:49 2022 UTC (21 months, 3 weeks ago) by wiz
Branch: MAIN
Changes since 1.24: +2 -2 lines
Diff to previous 1.24 (colored) to selected 1.7 (colored)

*: recursive bump for perl 5.36

Revision 1.24 / (download) - annotate - [select for diffs], Wed Dec 8 16:07:00 2021 UTC (2 years, 4 months ago) by adam
Branch: MAIN
CVS Tags: pkgsrc-2022Q2-base, pkgsrc-2022Q2, pkgsrc-2022Q1-base, pkgsrc-2022Q1, pkgsrc-2021Q4-base, pkgsrc-2021Q4
Changes since 1.23: +2 -2 lines
Diff to previous 1.23 (colored) to selected 1.7 (colored)

revbump for icu and libffi

Revision 1.23 / (download) - annotate - [select for diffs], Thu Oct 21 07:46:39 2021 UTC (2 years, 5 months ago) by wiz
Branch: MAIN
Changes since 1.22: +2 -1 lines
Diff to previous 1.22 (colored) to selected 1.7 (colored)

*: recursive bump for heimdal 7.7.0

its buildlink3.mk now includes openssl's buildlink3.mk

Revision 1.22 / (download) - annotate - [select for diffs], Sun Oct 10 15:55:47 2021 UTC (2 years, 6 months ago) by taca
Branch: MAIN
Changes since 1.21: +2 -3 lines
Diff to previous 1.21 (colored) to selected 1.7 (colored)

www/squid4: update to 4.17

Changes in squid-4.17 (03 Oct 2021):

	- WCCP: Validate packets better

Revision 1.21 / (download) - annotate - [select for diffs], Wed Sep 29 19:01:29 2021 UTC (2 years, 6 months ago) by adam
Branch: MAIN
Changes since 1.20: +2 -1 lines
Diff to previous 1.20 (colored) to selected 1.7 (colored)

revbump for boost-libs

Revision 1.20 / (download) - annotate - [select for diffs], Thu Jul 22 22:47:58 2021 UTC (2 years, 8 months ago) by taca
Branch: MAIN
CVS Tags: pkgsrc-2021Q3-base, pkgsrc-2021Q3
Changes since 1.19: +2 -3 lines
Diff to previous 1.19 (colored) to selected 1.7 (colored)

www/squid4: update to 4.16

Changes in squid-4.16 (04 Jul 2021):

	- Regression Fix: --with-valgrind-debug build broken since 4.15
	- Bug 5129 pt1: remove Lock use from HttpRequestMethod
	- Bug 5128: Translation: Fix '% i' typo in es/ERR_FORWARDING_DENIED
	- Bug 4528: ICAP transactions quit on async DNS lookups

Revision 1.15.2.1 / (download) - annotate - [select for diffs], Mon May 31 13:28:45 2021 UTC (2 years, 10 months ago) by bsiegert
Branch: pkgsrc-2021Q1
Changes since 1.15: +2 -2 lines
Diff to previous 1.15 (colored) next main 1.16 (colored) to selected 1.7 (colored)

Pullup ticket #6465 - requested by taca
www/squid4: security fix

Revisions pulled up:
- www/squid4/Makefile                                           1.18
- www/squid4/distinfo                                           1.11

---
   Module Name:	pkgsrc
   Committed By:	taca
   Date:		Mon May 10 14:22:57 UTC 2021

   Modified Files:
   	pkgsrc/www/squid4: Makefile distinfo

   Log Message:
   www/squid4: update to 4.15

   This release fixes these security issues from prior release.

   * SQUID-2020:11 HTTP Request Smuggling
     (CVE-2020-25097)
   * SQUID-2021:1 Denial of Service in URN processing
     (CVE-2021-28651)
   * SQUID-2021:2 Denial of Service in HTTP Response Processing
     (CVE-2021-28662)
   * SQUID-2021:3 Denial of Service issue in Cache Manager
     (CVE-2021-28652)
   * SQUID-2021:4 Multiple issues in HTTP Range header
     (CVE-2021-31806, CVE-2021-31807, CVE-2021-31808)
   * SQUID-2021:5 Denial of Service in HTTP Response Processing
     (CVE pending allocation)

   Changes in squid-4.15 (10 May 2021):

   	- Bug 5112: Excessively loud chunked reply parsing error reporting
   	- Bug 5106: Broken cache manager URL parsing
   	- Bug 5104: Memory leak in RFC 2169 response parsing
   	- Bug 3556: "FD ... is not an open socket" for accept() problems
   	- Profiling: CPU timing implemented for MAC non-x86
   	- Fix HttpHeaderStats definition to include hoErrorDetail
   	- Fix Squid-to-client write_timeout triggers client_lifetime timeout
   	- Limit HeaderLookupTable_t::lookup() to BadHdr and specific IDs
   	- Handle more Range requests
   	- Handle more partial responses
   	- Stop processing a response if the Store entry is gone
   	- ... and some portability fixes
   	- ... and some documentation updates

Revision 1.19 / (download) - annotate - [select for diffs], Mon May 24 19:55:57 2021 UTC (2 years, 10 months ago) by wiz
Branch: MAIN
CVS Tags: pkgsrc-2021Q2-base, pkgsrc-2021Q2
Changes since 1.18: +2 -1 lines
Diff to previous 1.18 (colored) to selected 1.7 (colored)

*: recursive bump for perl 5.34

Revision 1.18 / (download) - annotate - [select for diffs], Mon May 10 14:22:56 2021 UTC (2 years, 11 months ago) by taca
Branch: MAIN
Changes since 1.17: +2 -3 lines
Diff to previous 1.17 (colored) to selected 1.7 (colored)

www/squid4: update to 4.15

This release fixes these security issues from prior release.

* SQUID-2020:11 HTTP Request Smuggling
  (CVE-2020-25097)
* SQUID-2021:1 Denial of Service in URN processing
  (CVE-2021-28651)
* SQUID-2021:2 Denial of Service in HTTP Response Processing
  (CVE-2021-28662)
* SQUID-2021:3 Denial of Service issue in Cache Manager
  (CVE-2021-28652)
* SQUID-2021:4 Multiple issues in HTTP Range header
  (CVE-2021-31806, CVE-2021-31807, CVE-2021-31808)
* SQUID-2021:5 Denial of Service in HTTP Response Processing
  (CVE pending allocation)


Changes in squid-4.15 (10 May 2021):

	- Bug 5112: Excessively loud chunked reply parsing error reporting
	- Bug 5106: Broken cache manager URL parsing
	- Bug 5104: Memory leak in RFC 2169 response parsing
	- Bug 3556: "FD ... is not an open socket" for accept() problems
	- Profiling: CPU timing implemented for MAC non-x86
	- Fix HttpHeaderStats definition to include hoErrorDetail
	- Fix Squid-to-client write_timeout triggers client_lifetime timeout
	- Limit HeaderLookupTable_t::lookup() to BadHdr and specific IDs
	- Handle more Range requests
	- Handle more partial responses
	- Stop processing a response if the Store entry is gone
	- ... and some portability fixes
	- ... and some documentation updates

Revision 1.17 / (download) - annotate - [select for diffs], Sun Apr 25 06:13:05 2021 UTC (2 years, 11 months ago) by wiz
Branch: MAIN
Changes since 1.16: +1 -3 lines
Diff to previous 1.16 (colored) to selected 1.7 (colored)

squid4: remove dead download link

Revision 1.16 / (download) - annotate - [select for diffs], Wed Apr 21 13:25:32 2021 UTC (2 years, 11 months ago) by adam
Branch: MAIN
Changes since 1.15: +2 -1 lines
Diff to previous 1.15 (colored) to selected 1.7 (colored)

revbump for boost-libs

Revision 1.15 / (download) - annotate - [select for diffs], Sat Mar 13 15:24:44 2021 UTC (3 years, 1 month ago) by taca
Branch: MAIN
CVS Tags: pkgsrc-2021Q1-base
Branch point for: pkgsrc-2021Q1
Changes since 1.14: +2 -3 lines
Diff to previous 1.14 (colored) to selected 1.7 (colored)

www/squid4: update to 4.14

Changes in squid-4.14 (02 Feb 2021):

- Regression Fix: support for non-lowercase Transfer-Encoding value
- Regression Fix: cachemgr.cgi wrong 403 response to authenticated menu URIs
- Bug 5076: WCCP Security Info incorrect
- Bug 5073: Compile error: index was not declared in this scope
- Bug 5065: url_rewrite_program documentation update
- Bug 3074 pt2: improved handling of URI paths implicit '/'
- Fix transactions exceeding client_lifetime logged as _ABORTED

Revision 1.13.4.1 / (download) - annotate - [select for diffs], Sun Mar 7 18:30:13 2021 UTC (3 years, 1 month ago) by bsiegert
Branch: pkgsrc-2020Q4
Changes since 1.13: +11 -1 lines
Diff to previous 1.13 (colored) next main 1.14 (colored) to selected 1.7 (colored)

Pullup ticket #6432 - requested by mlelstv
www/squid4: build fix

(via patch)

building squid4 requires 64bit atomics. In pkgsrc-HEAD there is
mk/atomics64.mk with the necessary dependencies and www/squid4 includes
it.

In release 2020Q4 this is missing, so a simple pullup of the package
isn't sufficient unless mk/atomics64.mk is also pulled up.

Revision 1.14 / (download) - annotate - [select for diffs], Mon Jan 25 11:34:51 2021 UTC (3 years, 2 months ago) by nia
Branch: MAIN
Changes since 1.13: +2 -1 lines
Diff to previous 1.13 (colored) to selected 1.7 (colored)

squid4: needs atomic64

Revision 1.13 / (download) - annotate - [select for diffs], Mon Aug 31 18:13:16 2020 UTC (3 years, 7 months ago) by wiz
Branch: MAIN
CVS Tags: pkgsrc-2020Q4-base, pkgsrc-2020Q3-base, pkgsrc-2020Q3
Branch point for: pkgsrc-2020Q4
Changes since 1.12: +2 -1 lines
Diff to previous 1.12 (colored) to selected 1.7 (colored)

*: bump PKGREVISION for perl-5.32.

Revision 1.12 / (download) - annotate - [select for diffs], Sun Aug 23 09:51:35 2020 UTC (3 years, 7 months ago) by taca
Branch: MAIN
Changes since 1.11: +2 -3 lines
Diff to previous 1.11 (colored) to selected 1.7 (colored)

www/squid4: update to 4.13

Update squid4 to 4.13 (Squid 4.13).

Here is release announce:

The Squid HTTP Proxy team is very pleased to announce the availability
of the Squid-4.13 release!


This release is a security release resolving several issues found in
the prior Squid releases.


The major changes to be aware of:

 * SQUID-2020:8 HTTP(S) Request Splitting
   (CVE-2020-15811)

This problem is serious because it allows any client, including
browser scripts, to bypass local security and poison the browser
cache and any downstream caches with content from an arbitrary
source.

See the advisory for patches:
 <https://github.com/squid-cache/squid/security/advisories/GHSA-c7p8-xqhm-49wv>


 * SQUID-2020:9 Denial of Service processing Cache Digest Response
   (CVE pending allocation)

This problem allows a trusted peer to deliver to perform Denial
of Service by consuming all available CPU cycles on the machine
running Squid when handling a crafted Cache Digest response
message.

This attack is limited to Squid using cache_peer with cache
digests feature.

See the advisory for patches:
 <https://github.com/squid-cache/squid/security/advisories/GHSA-vvj7-xjgq-g2jg>


 * SQUID-2020:10 HTTP(S) Request Smuggling
   (CVE-2020-15810)

This problem is serious because it allows any client, including
browser scripts, to bypass local security and poison the proxy
cache and any downstream caches with content from an arbitrary
source.


See the advisory for patches:
 <https://github.com/squid-cache/squid/security/advisories/GHSA-3365-q9qx-f98m>


 * Bug 5051: Some collapsed revalidation responses never expire

This bug appears as a 4xx or 5xx status response becoming the only
response delivered by Squid to a URL when Collapsed Forwarding
feature is used.

It primarily affects Squid which are caching the 4xx/5xx status
object since Bug 5030 fix in Squid-4.11. But may have been
occurring for short times on any proxy with Collapsed Forwarding.



 * SSL-Bump: Support parsing GREASEd (and future) TLS handshakes

Chrome Browser intentionally sends random garbage values in the
TLS handshake to force TLS implementations to cope with future TLS
extensions cleanly. The changes in Squid-4.12 to disable TLS/1.3
caused our parser to be extra strict and reject this TLS garbage.

This release adds explicit support for Chrome, or any other TLS
agent performing these "GREASE" behaviours.


 * Honor on_unsupported_protocol for intercepted https_port

This behaviour was one of the intended use-cases for unsupported
protocol handling, but somehow was not enabled earlier.

Squid should now be able to perform the on_unsupported_protocol
selected action for any traffic handled by SSL-Bump.


  All users of Squid are urged to upgrade as soon as possible.


See the ChangeLog for the full list of changes in this and earlier
releases.

Please refer to the release notes at
http://www.squid-cache.org/Versions/v4/RELEASENOTES.html
when you are ready to make the switch to Squid-4

Revision 1.11 / (download) - annotate - [select for diffs], Thu Jul 9 20:57:11 2020 UTC (3 years, 9 months ago) by otis
Branch: MAIN
Changes since 1.10: +3 -1 lines
Diff to previous 1.10 (colored) to selected 1.7 (colored)

squid4: Fix build and SSL handshake on Chromium-based browsers

Changes:
- Fix an error where strings.h was not properly included
- Add SMF support on apropriate platforms
- Backport https://github.com/squid-cache/squid/pull/663:
  SslBump: Support parsing GREASEd (and future) TLS handshakes

Revision 1.10 / (download) - annotate - [select for diffs], Fri Jun 19 13:44:28 2020 UTC (3 years, 10 months ago) by taca
Branch: MAIN
CVS Tags: pkgsrc-2020Q2-base, pkgsrc-2020Q2
Changes since 1.9: +2 -3 lines
Diff to previous 1.9 (colored) to selected 1.7 (colored)

www/squid4: update to 4.12

Update squid4 to 4.12 (Squid 4.12).  This release includes fix for
CVE-2020-14058:   <http://www.squid-cache.org/Advisories/SQUID-2020_6.txt>.


Changes to squid-4.12 (05 Jun 2020):

	- Regression Fix: Revert to slow search for new SMP shm pages
	- Bug 5045: ext_edirectory_userip_acl is missing include files
	- Bug 5041: Missing Debug::Extra breaks build on hosts with systemd
	- Bug 5030: Negative responses are never cached
	- HTTP: validate Content-Length value prefix
	- HTTP: add flexible RFC 3986 URI encoder
	- SslBump: disable OpenSSL TLSv1.3 support for older TLS traffic
	- Tests: Support passing a custom config.cache to test builds
	- Fix IPFilter IPv6 detection, especially on NetBSD
	- Fix stall if transaction overwrites a recently active cache entry
	- ... and some compile fixes

Revision 1.9 / (download) - annotate - [select for diffs], Fri May 22 10:56:47 2020 UTC (3 years, 10 months ago) by adam
Branch: MAIN
Changes since 1.8: +2 -2 lines
Diff to previous 1.8 (colored) to selected 1.7 (colored)

revbump after updating security/nettle

Revision 1.5.2.1 / (download) - annotate - [select for diffs], Thu Apr 30 08:35:50 2020 UTC (3 years, 11 months ago) by bsiegert
Branch: pkgsrc-2020Q1
Changes since 1.5: +2 -3 lines
Diff to previous 1.5 (colored) next main 1.6 (colored) to selected 1.7 (colored)

Pullup ticket #6179 - requested by taca
www/squid4: security fix

Revisions pulled up:
- www/squid4/Makefile                                           1.6-1.7
- www/squid4/distinfo                                           1.4-1.6
- www/squid4/patches/patch-acinclude_os-deps.m4                 1.1-1.2
- www/squid4/patches/patch-configure                            1.3-1.5
- www/squid4/patches/patch-src_ip_Intercept.cc                  1.1

---
   Module Name:	pkgsrc
   Committed By:	sborrill
   Date:		Thu Apr  9 09:45:20 UTC 2020

   Modified Files:
   	pkgsrc/www/squid4: Makefile distinfo
   	pkgsrc/www/squid4/patches: patch-configure
   Added Files:
   	pkgsrc/www/squid4/patches: patch-acinclude_os-deps.m4
   	    patch-src_ip_Intercept.cc

   Log Message:
   Fix IPFilter transparent proxy support by:
   - including correct headers in configure tests
   - using correct autoconf value output by configure

   Bump PKGREVISION

---
   Module Name:	pkgsrc
   Committed By:	sborrill
   Date:		Thu Apr  9 16:27:15 UTC 2020

   Modified Files:
   	pkgsrc/www/squid4: distinfo
   	pkgsrc/www/squid4/patches: patch-acinclude_os-deps.m4 patch-configure

   Log Message:
   Generate correct #defines for the IPFilter IPv6 detection with no trailing
   underscores

---
   Module Name:	pkgsrc
   Committed By:	mef
   Date:		Thu Apr 23 13:52:24 UTC 2020

   Modified Files:
   	pkgsrc/www/squid4: Makefile distinfo
   	pkgsrc/www/squid4/patches: patch-configure

   Log Message:
   (www/squid4) Updated to 4.10 (and clear pkglint one point in patch)

   Changes to squid-4.11 (18 Apr 2020):

           - Bug 5036: capital 'L's in logs when daemon queue overflows
           - Bug 5022: Reconfigure kills Coordinator in SMP+ufs configurations
           - Bug 5016: systemd thinks Squid is ready before Squid listens
           - kerberos_ldap_group: fix encryption type for cross realm check
           - HTTP: Ignore malformed Host header in intercept and reverse proxy mode
           - Fix Digest authentication nonce handling
           - Supply ALE to request_header_add/reply_header_add
           - ... and some documentation updates
           - ... and some compile fixes

Revision 1.8 / (download) - annotate - [select for diffs], Mon Apr 27 04:00:10 2020 UTC (3 years, 11 months ago) by rillig
Branch: MAIN
Changes since 1.7: +4 -2 lines
Diff to previous 1.7 (colored)

www/squid4: fix build for strict SUBST and configure checks

Revision 1.7 / (download) - annotate - [selected], Thu Apr 23 13:52:24 2020 UTC (3 years, 11 months ago) by mef
Branch: MAIN
Changes since 1.6: +2 -3 lines
Diff to previous 1.6 (colored)

(www/squid4) Updated to 4.10 (and clear pkglint one point in patch)

Changes to squid-4.11 (18 Apr 2020):

        - Bug 5036: capital 'L's in logs when daemon queue overflows
        - Bug 5022: Reconfigure kills Coordinator in SMP+ufs configurations
        - Bug 5016: systemd thinks Squid is ready before Squid listens
        - kerberos_ldap_group: fix encryption type for cross realm check
        - HTTP: Ignore malformed Host header in intercept and reverse proxy mode
        - Fix Digest authentication nonce handling
        - Supply ALE to request_header_add/reply_header_add
        - ... and some documentation updates
        - ... and some compile fixes

Revision 1.6 / (download) - annotate - [select for diffs], Thu Apr 9 09:45:19 2020 UTC (4 years ago) by sborrill
Branch: MAIN
Changes since 1.5: +2 -2 lines
Diff to previous 1.5 (colored) to selected 1.7 (colored)

Fix IPFilter transparent proxy support by:
- including correct headers in configure tests
- using correct autoconf value output by configure

Bump PKGREVISION

Revision 1.5 / (download) - annotate - [select for diffs], Sun Mar 8 16:51:39 2020 UTC (4 years, 1 month ago) by wiz
Branch: MAIN
CVS Tags: pkgsrc-2020Q1-base
Branch point for: pkgsrc-2020Q1
Changes since 1.4: +2 -1 lines
Diff to previous 1.4 (colored) to selected 1.7 (colored)

*: recursive bump for libffi

Revision 1.4 / (download) - annotate - [select for diffs], Tue Feb 4 03:03:48 2020 UTC (4 years, 2 months ago) by taca
Branch: MAIN
Changes since 1.3: +2 -4 lines
Diff to previous 1.3 (colored) to selected 1.7 (colored)

www/squid4: update to 4.10

pkgsrc changes: clean up PKG_OPTIONS and enable several backends default.

Quote from release announce:

This release is a security release resolving several issues found in
the prior Squid releases.

The major changes to be aware of:

 * SQUID-2020:1 Improper Input Validation issues in HTTP Request
   processing
   (CVE-2020-8449, CVE-2020-8450)

This issue allows attackers to perform denial of service on the
proxy and all clients using it.

This issue potentially allows attackers to bypass security access
controls in systems between client and proxy.

This issue potentially allows remote code execution under the
proxy low-privilege level. While restricted, it does have access
to a wide range of information about the network structure and
other clients using the proxy.

This issue is limited to Squid acting as a reverse-proxy. Some
effects also require allow_direct permissions.

See the advisory for updated patches:
 <http://www.squid-cache.org/Advisories/SQUID-2020_1.txt>

Please note that NTLM is a deprecated authentication mechanism.
All users of this tool are advised to plan migration to
Negotiate/Kerberos authentication.

 * SQUID-2020:2 Information Disclosure issue in FTP Gateway.
   (CVE-2019-12528)

Certain FTP server responses can result in Squid revealing
random amounts of memory content from heap.

When Squid mempools feature is enabled the leak is limited to
lines in FTP directory listings, possibly from other clients.

When mempools is disabled the information may be anything from
the heap area including information from other processes on the
machine.

See the advisory for more details:
 <http://www.squid-cache.org/Advisories/SQUID-2020_2.txt>

 * SQUID-2020:3 Buffer Overflow issue in ext_lm_group_acl helper.
   (CVE-2020-8517)

This problem is limited to installations using the ext_lm_group_acl
binary (previously shipped as mswin_check_lm_group).

Due to incorrect input validation the NTLM authentication
credentials parser in ext_lm_group_acl may write to memory
outside the credentials buffer.

On systems with memory access protections this can result in
the the helper process being terminated unexpectedly. Resulting
in Squid process also terminating and a denial of service for
all clients using the proxy.

See the advisory for more details:
 <http://www.squid-cache.org/Advisories/SQUID-2020_3.txt>

 * Bug 5008: SIGBUS in PagePool::level() with custom rock slot size

This shows up as SMP Squids crashing on arm64 with a SIGBUS error. The
issues was incorrect memory alignment with certain cache sizes. This
Squid release now forces alignment of the critical rock page details.

 * Bug 4735: Truncated chunked responses cached as whole

This bug shows up as clients getting the cached truncated response
objects until the cache object expires or is force removed.

In absence of partial-object caching this Squid release treats
incomplete responses as non-cacheable and prevents the chunked encoding
terminator chunk being delivered to the active client(s).

 * Fix server_cert_fingerprint on cert validator-reported errors

This bug shows up as a server_cert_fingerprint ACL mismatch when
sslproxy_cert_error directive was applied to validation errors reported
by the certificate validator, because the ACL could not find the server
certificate.

  All users of Squid are urged to upgrade as soon as possible.

Revision 1.3 / (download) - annotate - [select for diffs], Thu Jan 23 14:49:09 2020 UTC (4 years, 2 months ago) by jperkin
Branch: MAIN
Changes since 1.2: +3 -1 lines
Diff to previous 1.2 (colored) to selected 1.7 (colored)

squid4: Remove -Werror, violates at least -Wwrite-strings.

Revision 1.2 / (download) - annotate - [select for diffs], Sat Jan 18 21:51:12 2020 UTC (4 years, 3 months ago) by jperkin
Branch: MAIN
Changes since 1.1: +2 -1 lines
Diff to previous 1.1 (colored) to selected 1.7 (colored)

*: Recursive revision bump for openssl 1.1.1.

Revision 1.1 / (download) - annotate - [select for diffs], Sat Jan 4 10:57:18 2020 UTC (4 years, 3 months ago) by taca
Branch: MAIN
Diff to selected 1.7 (colored)

www/squid4: Add squid4 package version 4.9

Add squid4 package version 4.9 based on wip/squid4 package.

Squid is a fully-featured HTTP/1.0 proxy with partial HTTP/1.1 support
The 4 series brings many new features and upgrades to the basic
networking protocols. A short list of the major new features is:

Squid 4 represents a new feature release above 3.5.

The most important of these new features are:

* Configurable helper queue size
* Helper concurrency channels changes
* SSL support removal
* Helper Binary Changes
* Secure ICAP
* Improved SMP support
* Improved process management
* Initial GnuTLS support
* ESI Custom Parser removal

This form allows you to request diff's between any two revisions of a file. You may select a symbolic revision name using the selection box or you may type in a numeric name using the type-in text box.




CVSweb <webmaster@jp.NetBSD.org>