From owner-freebsd-ports@FreeBSD.ORG Mon Jan 24 18:49:54 2005 Return-Path: Delivered-To: freebsd-ports@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 76C4116A4CE for ; Mon, 24 Jan 2005 18:49:54 +0000 (GMT) Received: from gw.celabo.org (gw.celabo.org [208.42.49.153]) by mx1.FreeBSD.org (Postfix) with ESMTP id 36E0943D55 for ; Mon, 24 Jan 2005 18:49:54 +0000 (GMT) (envelope-from nectar@celabo.org) Received: from lum.celabo.org (lum.celabo.org [10.0.1.107]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client CN "lum.celabo.org", Issuer "celabo.org CA" (verified OK)) by gw.celabo.org (Postfix) with ESMTP id 938E53E2C23; Mon, 24 Jan 2005 12:49:53 -0600 (CST) Received: by lum.celabo.org (Postfix, from userid 1001) id C270259428A; Mon, 24 Jan 2005 12:49:52 -0600 (CST) Date: Mon, 24 Jan 2005 12:49:52 -0600 From: "Jacques A. Vidrine" To: tota@rtfm.jp, ports@FreeBSD.org Message-ID: <20050124184952.GA4909@lum.celabo.org> Mail-Followup-To: "Jacques A. Vidrine" , tota@rtfm.jp, ports@FreeBSD.org Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline X-Url: http://www.celabo.org/ User-Agent: Mutt/1.5.6i Subject: ports/devel/bugzilla, ports/japanese/bugzilla X-BeenThere: freebsd-ports@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Porting software to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 24 Jan 2005 18:49:54 -0000 Hello bugzilla and ja-bugzilla maintainers, As recently documented in the FreeBSD VuXML document [1] there is a security vulnerability in bugzilla and ja-bugzilla. This has been fixed in the upstream version, 2.16.8. A patch is available at [2]. Please update the port as soon as possible. If you submit the update as a PR and it does not get committed within a day, please feel free to let me know, and I will try to get the update committed faster. Thanks in advance. [1] http://vuxml.FreeBSD.org/97c3a452-6e36-11d9-8324-000a95bc6fae.html [2] https://bugzilla.mozilla.org/show_bug.cgi?id=272620 -- Jacques A Vidrine / NTT/Verio nectar@celabo.org / jvidrine@verio.net / nectar@FreeBSD.org