From owner-cvs-ports@FreeBSD.ORG Thu Aug 12 21:47:45 2004 Return-Path: Delivered-To: cvs-ports@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 6341616A4CE; Thu, 12 Aug 2004 21:47:45 +0000 (GMT) Received: from randomservers.com (randomservers.com [69.55.237.158]) by mx1.FreeBSD.org (Postfix) with ESMTP id 4150643D48; Thu, 12 Aug 2004 21:47:45 +0000 (GMT) (envelope-from joseph@randomnetworks.com) Received: from [10.6.1.1] (204-102-9-17.water-programs.com [204.102.9.17] (may be forged)) (authenticated bits=0) by randomservers.com (8.12.10/8.12.6) with ESMTP id i7CLlhER031679 (version=TLSv1/SSLv3 cipher=RC4-SHA bits=128 verify=NO); Thu, 12 Aug 2004 14:47:43 -0700 (PDT) (envelope-from joseph@randomnetworks.com) X-Authentication-Warning: randomservers.com: Host 204-102-9-17.water-programs.com [204.102.9.17] (may be forged) claimed to be [10.6.1.1] In-Reply-To: <200408121907.i7CJ7Wc6038128@repoman.freebsd.org> References: <200408121907.i7CJ7Wc6038128@repoman.freebsd.org> Mime-Version: 1.0 (Apple Message framework v619) Content-Type: text/plain; charset=US-ASCII; format=flowed Message-Id: <3D4FE3C6-ECA9-11D8-BE7C-000A95AD0296@randomnetworks.com> Content-Transfer-Encoding: 7bit From: Joseph Scott Date: Thu, 12 Aug 2004 14:47:42 -0700 To: Jacques Vidrine X-Mailer: Apple Mail (2.619) X-Virus-Scanned: by amavisd-milter (http://amavis.org/) X-Spam-Status: No, hits=0.0 required=7.0 tests=none autolearn=no version=2.64 X-Spam-Checker-Version: SpamAssassin 2.64 (2004-01-11) on randomservers.com cc: cvs-ports@freebsd.org cc: trevor@freebsd.org cc: cvs-all@freebsd.org cc: ports-committers@freebsd.org Subject: Re: cvs commit: ports/print/acroread5 Makefile X-BeenThere: cvs-ports@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: CVS commit messages for the ports tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 12 Aug 2004 21:47:45 -0000 On Aug 12, 2004, at 12:07 PM, Jacques Vidrine wrote: > nectar 2004-08-12 19:07:32 UTC > > FreeBSD ports repository > > Modified files: > print/acroread5 Makefile > Log: > Mark forbidden due to arbitrary command execution. > http://vuxml.freebsd.org/78348ea2-ec91-11d8-b913-000c41e2cdad.html > PR ports/68294 has a patch to upgrade this to 5.0.9, which reportedly fixes this issue. It's been in the PR database since 24 Jun 2004. -- Joseph Scott