Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 16 Jan 2017 22:14:22 -0500
From:      Jason Unovitch <junovitch@FreeBSD.org>
To:        Thierry Thomas <thierry@FreeBSD.org>
Cc:        adamw@FreeBSD.org, ports-secteam@freebsd.org, svn-ports-head@freebsd.org, svn-ports-all@freebsd.org, ports-committers@freebsd.org
Subject:   Re: svn commit: r431689 - head/www/tt-rss
Message-ID:  <20170117031422.GD19388@Silverstone>
In-Reply-To: <F97DB919-3AF3-4823-9511-565F259C79B5@adamw.org>
References:  <201701161855.v0GItwYn000700@repo.freebsd.org> <20170116190730.GH2202@graf.pompo.net> <F97DB919-3AF3-4823-9511-565F259C79B5@adamw.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On Mon, Jan 16, 2017 at 12:58:38PM -0700, Adam Weinberger wrote:
> > On 16 Jan, 2017, at 12:07, Thierry Thomas <thierry@FreeBSD.org> wrote:
> > 
> > Le lun. 16 janv. 17 à 19:55:58 +0100, Thierry Thomas <thierry@FreeBSD.org>
> > écrivait :
> >> Author: thierry
> >> Date: Mon Jan 16 18:55:58 2017
> >> New Revision: 431689
> >> URL: https://svnweb.freebsd.org/changeset/ports/431689
> >> 
> >> Log:
> >>  Fix another phpmailer vulnerability.
> >> 
> >>  MFC after:	1 day
> >>  Security:	CVE-2016-10033
> > 
> > The message on the mailing list is about CVE-2016-10033, but actually it
> > should be:
> > 
> > Security:	CVE-2017-5223
> > (fixed in phpmailer 5.2.22)
> 
> The "MFH" key triggers an automatic review by ports-secteam. So,
> 
> MFH:	2017Q1
> 
> "MFC after" does not trigger this.
> 
> Cc'ing ports-secteam on this message to make sure it's on their radar.
> 
> # Adam

Thanks Adam.

Thierry,
Consider this approved for MFH with `Tools/scripts/mfh 2017Q1 431689'.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20170117031422.GD19388>