From owner-svn-ports-all@freebsd.org Wed Jul 15 14:30:15 2020
Return-Path:
Delivered-To: svn-ports-all@mailman.nyi.freebsd.org
Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1])
by mailman.nyi.freebsd.org (Postfix) with ESMTP id D97D4367BD6;
Wed, 15 Jul 2020 14:30:15 +0000 (UTC)
(envelope-from cy.schubert@cschubert.com)
Received: from smtp-out-no.shaw.ca (smtp-out-no.shaw.ca [64.59.134.9])
(using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits))
(Client CN "Client", Issuer "CA" (not verified))
by mx1.freebsd.org (Postfix) with ESMTPS id 4B6KY14yZnz4CZl;
Wed, 15 Jul 2020 14:30:12 +0000 (UTC)
(envelope-from cy.schubert@cschubert.com)
Received: from spqr.komquats.com ([70.67.125.17]) by shaw.ca with ESMTPA
id viQDjXwsk62brviQEjALBr; Wed, 15 Jul 2020 08:30:11 -0600
X-Authority-Analysis: v=2.3 cv=LKf9vKe9 c=1 sm=1 tr=0
a=VFtTW3WuZNDh6VkGe7fA3g==:117 a=VFtTW3WuZNDh6VkGe7fA3g==:17
a=xqWC_Br6kY4A:10 a=kj9zAlcOel0A:10 a=_RQrkK6FrEwA:10 a=YxBL1-UpAAAA:8
a=6I5d2MoRAAAA:8 a=EkcXrb_YAAAA:8 a=GKpeVwjF-emf2A6UFoYA:9 a=CjuIK1q_8ugA:10
a=Ia-lj3WSrqcvXOmTRaiG:22 a=IjZwj45LgO3ly-622nXo:22 a=LK5xJRSDVpKd5WXXoEvA:22
Received: from slippy.cwsent.com (slippy [IPv6:fc00:1:1:1::5b])
by spqr.komquats.com (Postfix) with ESMTPS id 1212911F;
Wed, 15 Jul 2020 07:30:09 -0700 (PDT)
Received: from slippy.cwsent.com (localhost [127.0.0.1])
by slippy.cwsent.com (8.15.2/8.15.2) with ESMTP id 06FEU859004183;
Wed, 15 Jul 2020 07:30:08 -0700 (PDT)
(envelope-from Cy.Schubert@cschubert.com)
Received: from slippy (cy@localhost)
by slippy.cwsent.com (8.15.2/8.15.2/Submit) with ESMTP id 06FEU81b004180;
Wed, 15 Jul 2020 07:30:08 -0700 (PDT)
(envelope-from Cy.Schubert@cschubert.com)
Message-Id: <202007151430.06FEU81b004180@slippy.cwsent.com>
X-Authentication-Warning: slippy.cwsent.com: cy owned process doing -bs
X-Mailer: exmh version 2.9.0 11/07/2018 with nmh-1.7.1
Reply-to: Cy Schubert
From: Cy Schubert
X-os: FreeBSD
X-Sender: cy@cwsent.com
X-URL: http://www.cschubert.com/
To: Mathieu Arnold
cc: Cy Schubert , Cy Schubert ,
ports-committers@freebsd.org, svn-ports-all@freebsd.org,
svn-ports-head@freebsd.org
Subject: Re: svn commit: r541761 - head/security/vuxml
In-reply-to: <20200715141220.25pvv2tzstcdkog5@aching.in.mat.cc>
References: <202007091709.069H9S21099111@repo.freebsd.org>
<20200715092221.x2su5jddagymb4ce@aching.in.mat.cc>
<202007151323.06FDNmMc010319@slippy.cwsent.com>
<20200715141220.25pvv2tzstcdkog5@aching.in.mat.cc>
Comments: In-reply-to Mathieu Arnold
message dated "Wed, 15 Jul 2020 16:12:20 +0200."
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Date: Wed, 15 Jul 2020 07:30:08 -0700
X-CMAE-Envelope: MS4wfCzzD474nbwOGzS2IkERkhI+FL7fIv1QsDM78a9oq7OGtziZLBJh8kTeIQT4VnfPPCR8xr3RwootsZ6f3i+W+ZEw/qQDEB89dN9VoNCZtd0vvpFTPU9i
ZKywrGJf8KSoWkOYElOzxcpbI3pkpCB1Ws/geQ/HL4QKonRGWiAl7tZt5tSZkg0UPnH8syuaJtyCdyMmMOH7X2Nib9apx24T7G85kk7WMPurZfJHX6fxRVON
AFjolpfQRLGJ9Kk7zjiswQHwES6PARHX2BUVEZpmVb+goKeKLwOf6HaO+YfaQ5qjbIu3I8Jtn6VYeY3qzDz/qQ==
X-Rspamd-Queue-Id: 4B6KY14yZnz4CZl
X-Spamd-Bar: /
Authentication-Results: mx1.freebsd.org; dkim=none; dmarc=none;
spf=none (mx1.freebsd.org: domain of cy.schubert@cschubert.com has no SPF
policy when checking 64.59.134.9) smtp.mailfrom=cy.schubert@cschubert.com
X-Spamd-Result: default: False [-0.01 / 15.00];
HAS_REPLYTO(0.00)[Cy.Schubert@cschubert.com];
RCVD_VIA_SMTP_AUTH(0.00)[]; TO_DN_SOME(0.00)[];
MV_CASE(0.50)[]; RWL_MAILSPIKE_GOOD(0.00)[64.59.134.9:from];
HAS_XAW(0.00)[]; RCPT_COUNT_FIVE(0.00)[6];
NEURAL_HAM_SHORT(-0.41)[-0.409];
RECEIVED_SPAMHAUS_PBL(0.00)[70.67.125.17:received];
FROM_EQ_ENVFROM(0.00)[]; R_DKIM_NA(0.00)[];
ASN(0.00)[asn:6327, ipnet:64.59.128.0/20, country:CA];
MIME_TRACE(0.00)[0:+];
RCVD_IN_DNSWL_LOW(-0.10)[64.59.134.9:from]; ARC_NA(0.00)[];
NEURAL_HAM_MEDIUM(-0.67)[-0.671]; RCVD_COUNT_FIVE(0.00)[5];
REPLYTO_EQ_FROM(0.00)[]; FROM_HAS_DN(0.00)[];
NEURAL_HAM_LONG(-0.23)[-0.225]; MIME_GOOD(-0.10)[text/plain];
RCVD_TLS_LAST(0.00)[]; AUTH_NA(1.00)[];
DMARC_NA(0.00)[cschubert.com: no valid DMARC record];
TO_MATCH_ENVRCPT_SOME(0.00)[]; R_SPF_NA(0.00)[no SPF record]
X-BeenThere: svn-ports-all@freebsd.org
X-Mailman-Version: 2.1.33
Precedence: list
List-Id: SVN commit messages for the ports tree
List-Unsubscribe: ,
List-Archive:
List-Post:
List-Help:
List-Subscribe: ,
X-List-Received-Date: Wed, 15 Jul 2020 14:30:16 -0000
In message <20200715141220.25pvv2tzstcdkog5@aching.in.mat.cc>, Mathieu
Arnold w
rites:
>
>
> --5qjn6dnquts4ql7n
> Content-Type: text/plain; charset=us-ascii
> Content-Disposition: inline
> Content-Transfer-Encoding: quoted-printable
>
> On Wed, Jul 15, 2020 at 06:23:48AM -0700, Cy Schubert wrote:
> > In message <20200715092221.x2su5jddagymb4ce@aching.in.mat.cc>, Mathieu=20
> > Arnold w
> > rites:
> > >=20
> > >
> > > --ha75uxcn3b7ueuzq
> > > Content-Type: text/plain; charset=3Dus-ascii
> > > Content-Disposition: inline
> > > Content-Transfer-Encoding: quoted-printable
> > >
> > > On Thu, Jul 09, 2020 at 05:09:28PM +0000, Cy Schubert wrote:
> > > > Modified: head/security/vuxml/vuln.xml
> > > > =3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3=
> D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D
> > > =3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=
> =3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D
> > > =3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=
> =3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D3D=3D
> > > =3D3D=3D3D=3D3D=3D3D
> > > > --- head/security/vuxml/vuln.xml Thu Jul 9 17:00:42 2020
> (r54176
> > > 0)
> > > > +++ head/security/vuxml/vuln.xml Thu Jul 9 17:09:28 2020
> (r54176
> > > 1)
> > > > @@ -997,8 +997,9 @@ Discovered by Tony Yesudas.
> > > >
> > > >
> > > > FreeBSD
> > > > - 12.1_6
> > > > - 11.3_10
> > > > + 12.1_7
> > > > + 11.4_1
> > > > + 11.3_11
> > > >
> > > >
> > > >
> > >
> > > This is a bit strange, `< 12.1_7`, `< 11.4_1` and `< 11.3_11` are
> > > probably equivalent to only `< 12.1_7` are the other two numbers also
> > > are. Are you sure you are not missing bits in there?
> >=20
> > Why would this be strange?
>
> What you wrote is:
>
> FreeBSD <=3D 12.1_7
> FreeBSD <=3D 11.4_1
> FreeBSD <=3D 11.3_11
>
> Which is equivalent to
>
> FreeBSD <=3D 12.1_7
>
> Because 11.4 < 12.1 and 11.3 < 12.1.
>
> But maybe it was the point, I do not know, it just feels strange a
> strange way to express it, and usually, when something is strange,
> something is wrong.
Gotcha. No coffee yet. I'll arrange to fix that before work. Thanks.
--
Cheers,
Cy Schubert
FreeBSD UNIX: Web: https://FreeBSD.org
NTP: Web: https://nwtime.org
The need of the many outweighs the greed of the few.