From owner-freebsd-ports-bugs@FreeBSD.ORG Thu Sep 11 08:40:18 2003 Return-Path: Delivered-To: freebsd-ports-bugs@hub.freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 3D81116A4C0 for ; Thu, 11 Sep 2003 08:40:18 -0700 (PDT) Received: from freefall.freebsd.org (freefall.freebsd.org [216.136.204.21]) by mx1.FreeBSD.org (Postfix) with ESMTP id 948BD43F75 for ; Thu, 11 Sep 2003 08:40:15 -0700 (PDT) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (gnats@localhost [127.0.0.1]) by freefall.freebsd.org (8.12.9/8.12.9) with ESMTP id h8BFeFUp006318 for ; Thu, 11 Sep 2003 08:40:15 -0700 (PDT) (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.12.9/8.12.9/Submit) id h8BFeFVw006317; Thu, 11 Sep 2003 08:40:15 -0700 (PDT) Resent-Date: Thu, 11 Sep 2003 08:40:15 -0700 (PDT) Resent-Message-Id: <200309111540.h8BFeFVw006317@freefall.freebsd.org> Resent-From: FreeBSD-gnats-submit@FreeBSD.org (GNATS Filer) Resent-To: freebsd-ports-bugs@FreeBSD.org Resent-Reply-To: FreeBSD-gnats-submit@FreeBSD.org, Kevin Golding Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 6AEED16A4BF for ; Thu, 11 Sep 2003 08:36:25 -0700 (PDT) Received: from kpq.caomhin.org (hive.beehost.net [64.49.223.162]) by mx1.FreeBSD.org (Postfix) with ESMTP id 4143344005 for ; Thu, 11 Sep 2003 08:36:23 -0700 (PDT) (envelope-from kgolding@hive.beehost.net) Received: (qmail 889 invoked by uid 89); 11 Sep 2003 15:36:22 -0000 Received: from unknown (HELO hive.beehost.net) (127.0.0.1) by localhost with AES256-SHA encrypted SMTP; 11 Sep 2003 15:36:22 -0000 Received: (from kgolding@localhost) by hive.beehost.net (8.12.7/8.12.7/Submit) id h8BFaK4t000887; Thu, 11 Sep 2003 15:36:20 GMT Message-Id: <200309111536.h8BFaK4t000887@hive.beehost.net> Date: Thu, 11 Sep 2003 15:36:20 GMT From: Kevin Golding To: FreeBSD-gnats-submit@FreeBSD.org X-Send-Pr-Version: 3.113 cc: liukang@bjpu.edu.cn Subject: ports/56705: Security fix for www/phpbb X-BeenThere: freebsd-ports-bugs@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: Kevin Golding List-Id: Ports bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 11 Sep 2003 15:40:18 -0000 >Number: 56705 >Category: ports >Synopsis: Security fix for www/phpbb >Confidential: no >Severity: serious >Priority: low >Responsible: freebsd-ports-bugs >State: open >Quarter: >Keywords: >Date-Required: >Class: update >Submitter-Id: current-users >Arrival-Date: Thu Sep 11 08:40:14 PDT 2003 >Closed-Date: >Last-Modified: >Originator: Kevin Golding >Release: FreeBSD 4.8-RELEASE-p1 i386 >Organization: >Environment: System: FreeBSD hive.caomhin.org 4.8-RELEASE-p1 FreeBSD 4.8-RELEASE-p1 #1: Tue Aug 5 07:52:48 GMT 2003 kgolding@hive.caomhin.org:/usr/obj/usr/src/sys/HIVE i386 >Description: A vulnerability was discovered in www/phpbb that the project maintainers regard as serious. They updated the code but didn't roll a new tarball. The ports will complain about checksum mismatch so users should hopefully investigate further, but obviously it would be nice to have the correct checksum at some point. >How-To-Repeat: cd /usr/ports/www/phpbb && make checksum >Fix: --- phpbb-security begins here --- --- distinfo.orig Sun Aug 24 11:37:24 2003 +++ distinfo Thu Sep 11 15:18:57 2003 @@ -1 +1 @@ -MD5 (phpBB-2.0.6.tar.bz2) = 28f20c82fce9ad6329b937c967eb1c72 +MD5 (phpBB-2.0.6.tar.bz2) = ee73baaac8f2f72c2a1d879ea811bd07 --- phpbb-security ends here --- >Release-Note: >Audit-Trail: >Unformatted: