Date: Thu, 09 Mar 2017 17:07:20 +0000 From: bugzilla-noreply@freebsd.org To: freebsd-ports-bugs@FreeBSD.org Subject: [Bug 217665] [security/kpcli] math/p5-Math-Random-ISA should be added to run dependency Message-ID: <bug-217665-13@https.bugs.freebsd.org/bugzilla/>
next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D217665 Bug ID: 217665 Summary: [security/kpcli] math/p5-Math-Random-ISA should be added to run dependency Product: Ports & Packages Version: Latest Hardware: Any OS: Any Status: New Severity: Affects Many People Priority: --- Component: Individual Port(s) Assignee: freebsd-ports-bugs@FreeBSD.org Reporter: ehaupt@FreeBSD.org CC: alexander.4mail@gmail.com Flags: maintainer-feedback?(alexander.4mail@gmail.com) CC: alexander.4mail@gmail.com Created attachment 180674 --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=3D180674&action= =3Dedit Add Math::Random::ISAAC as a dependency "perldoc kpcli" states: You can optionally install "Math::Random::ISAAC" in order to use a more secure rand() function. Without it installed you'll see: kpcli:/> vers VERSIONS kpcli: 3.1 Perl: v5.24.1 File::KeePass: 2.03 Term::ShellUI: 0.92 Term::ReadKey: 2.37 Term::ReadLine: 1.14 Capture::Tiny: 0.28 Clipboard: 0.13 Sub::Install: 0.928 Term::ReadLine::Gnu: 1.35 Math::Random::ISAAC: not installed (optional) With Math::Random::ISAAC installed: kpcli:/> vers VERSIONS kpcli: 3.1 Perl: v5.24.1 File::KeePass: 2.03 Term::ShellUI: 0.92 Term::ReadKey: 2.37 Term::ReadLine: 1.14 Capture::Tiny: 0.28 Clipboard: 0.13 Math::Random::ISAAC: 1.004 Sub::Install: 0.928 Term::ReadLine::Gnu: 1.35 In the sense of making sensible default decisions for our users this should= be added as a default run dependency. Alternatively it could be made an option but this should be on by default (providing secure default values). My preference would be to make it non-optional. --=20 You are receiving this mail because: You are the assignee for the bug.=
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-217665-13>