From owner-cvs-all@FreeBSD.ORG Thu Apr 28 14:30:31 2005 Return-Path: Delivered-To: cvs-all@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 025DC16A4CE; Thu, 28 Apr 2005 14:30:31 +0000 (GMT) Received: from misty.eyesbeyond.com (glewis.dsl.xmission.com [166.70.56.15]) by mx1.FreeBSD.org (Postfix) with ESMTP id 85D8C43D31; Thu, 28 Apr 2005 14:30:25 +0000 (GMT) (envelope-from glewis@eyesbeyond.com) Received: from misty.eyesbeyond.com (localhost.eyesbeyond.com [127.0.0.1]) by misty.eyesbeyond.com (8.13.3/8.13.3) with ESMTP id j3SEULFZ068882; Thu, 28 Apr 2005 08:30:21 -0600 (MDT) (envelope-from glewis@eyesbeyond.com) Received: (from glewis@localhost) by misty.eyesbeyond.com (8.13.3/8.13.3/Submit) id j3SEUL1G068881; Thu, 28 Apr 2005 08:30:21 -0600 (MDT) (envelope-from glewis@eyesbeyond.com) X-Authentication-Warning: misty.eyesbeyond.com: glewis set sender to glewis@eyesbeyond.com using -f Date: Thu, 28 Apr 2005 08:30:21 -0600 From: Greg Lewis To: Remko Lodder Message-ID: <20050428143021.GA68812@misty.eyesbeyond.com> References: <200504272031.j3RKVXdX057038@repoman.freebsd.org> <42709069.5010703@FreeBSD.org> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <42709069.5010703@FreeBSD.org> User-Agent: Mutt/1.4.2.1i cc: cvs-ports@freebsd.org cc: cvs-all@freebsd.org cc: ports-committers@freebsd.org Subject: Re: cvs commit: ports/java/jdk13/files patch-j2sdk1.3.1-jar-Main.java patch-j2sdk1.3.1-resources-jar.properties X-BeenThere: cvs-all@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: CVS commit messages for the entire tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 28 Apr 2005 14:30:31 -0000 Hi Remko, On Thu, Apr 28, 2005 at 09:27:37AM +0200, Remko Lodder wrote: > Thanks for fixing the vulnerability. Could you please add it the > next time to your commit? The portmgr team gave as a guideline: > > Security: CAN- > Security: http://vuxml.FreeBSD.org/ > etc. No worries, will do so with the jdk14 and jdk15 fixes once they are approved. > Oh and perhaps you can mention in your commit that this did not > solve the browser plugin vulnerability. I explicitly mentioned what it did fix, I would think that would make it clear by omission what it didn't fix. -- Greg Lewis Email : glewis@eyesbeyond.com Eyes Beyond Web : http://www.eyesbeyond.com Information Technology FreeBSD : glewis@FreeBSD.org