From owner-svn-ports-head@FreeBSD.ORG Wed Aug 22 08:32:52 2012 Return-Path: Delivered-To: svn-ports-head@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 39BE4106566C; Wed, 22 Aug 2012 08:32:52 +0000 (UTC) (envelope-from rea@codelabs.ru) Received: from 0.mx.codelabs.ru (0.mx.codelabs.ru [144.206.6.71]) by mx1.freebsd.org (Postfix) with ESMTP id C0EE98FC08; Wed, 22 Aug 2012 08:32:51 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=codelabs.ru; s=two; h=Sender:In-Reply-To:Content-Type:MIME-Version:References:Message-ID:Subject:Cc:To:From:Date; bh=A7C1+tW8XKLdNiH7irxgx/+EctssQy0CLI5qLLongYs=; b=J2vNt6h1meP8XFX5g3wbVE+26xnvAbZNgceA0IFQjaMG01K5w1xC4bNSQzkdPi7XgLqJCZh8MdMzmQ8eOLsVTX+cc4xmFZT1hBGOLaYxzxhPsI6p6TNCvTCG95t7bHISrq/TsiauJcm6S8z4TXIDOYXYCqU5OuP9Efz3lmpL7I+Y7ZckBkhq41Kfa7eiptHQotQ+7vem8wcRYQhR3cYF+557rIblHOawJjLFN/N92LF7Il1EsKDBJB7HYUdsMgnbaXFLljzN/q+VRp+E1nFT4GE/IoUc/kxOpBP6n6QB9XA9U5611zSly8cXDLqeRR51CplhTYyzO9Z1pPLpCe+0sg==; Received: from void.codelabs.ru (void.codelabs.ru [144.206.6.66]) by 0.mx.codelabs.ru with esmtpsa (TLSv1:DHE-RSA-AES256-SHA:256) id 1T46Mr-000N9B-Rz; Wed, 22 Aug 2012 12:32:49 +0400 Date: Wed, 22 Aug 2012 12:32:46 +0400 From: Eygene Ryabinkin To: Doug Barton , pav@FreeBSD.org Message-ID: References: <201208212056.q7LKuiwn004348@svn.freebsd.org> <20120822042824.GE59200@gprs-internet-client-10.234.sonicduo.com> <50348557.9000100@FreeBSD.org> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="eAbsdosE1cNLO4uF" Content-Disposition: inline In-Reply-To: <50348557.9000100@FreeBSD.org> Sender: rea@codelabs.ru Cc: svn-ports-head@freebsd.org, ports-security@freebsd.org, svn-ports-all@freebsd.org, Eitan Adler , ports-committers@freebsd.org Subject: Re: svn commit: r302900 - head/security/vuxml X-BeenThere: svn-ports-head@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: SVN commit messages for the ports tree for head List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 22 Aug 2012 08:32:52 -0000 --eAbsdosE1cNLO4uF Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Wed, Aug 22, 2012 at 12:08:07AM -0700, Doug Barton wrote: > On 8/21/2012 9:28 PM, Eygene Ryabinkin wrote: > > I intend to update rssh to 2.3.3, apply the patch and possibly > > bring the support for rsync from Debian. Once my conversion > > of the Git repository for ports from using CVS to Subversion > > will end ;)) >=20 > What is your timeline on implementing that plan? 2 days. > Completely aside from my conviction that ALL ports in the vuxml > should be marked FORBIDDEN until they are fixed, Eitan has a point > here. This is a serious compromise, and I would not want users to > install the port in its current form. Well, that's a good point. I'll coin in another VuXML entry (about the vulns fixed in 2.3.3, http://www.pizzashack.org/rssh/security.shtml) and add FORBIDDEN. Pav, do you still use rssh and want to maintain it? --=20 Eygene Ryabinkin ,,,^..^,,, [ Life's unfair - but root password helps! | codelabs.ru ] [ 82FE 06BC D497 C0DE 49EC 4FF0 16AF 9EAE 8152 ECFB | freebsd.org ] --eAbsdosE1cNLO4uF Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.19 (FreeBSD) iF4EABEIAAYFAlA0mS4ACgkQFq+eroFS7PvtCgD/QVzcBbECqZNB0zov59zANJ/g yoeksTvhQ//3KiGVUP8A/2bKq5LGfkURqH9Oay9OkcTQodBcVygHs527kljuOGTd =Ersw -----END PGP SIGNATURE----- --eAbsdosE1cNLO4uF--