Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 10 Dec 2020 18:41:24 +0900 (JST)
From:      Yasuhiro KIMURA <yasu@utahime.org>
To:        philip@FreeBSD.org
Cc:        ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org
Subject:   Re: svn commit: r557415 - head/security/vuxml
Message-ID:  <20201210.184124.1878529902245224941.yasu@utahime.org>
In-Reply-To: <202012100602.0BA62MXX057987@repo.freebsd.org>
References:  <202012100602.0BA62MXX057987@repo.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Hello Philip,

From: Philip Paeps <philip@FreeBSD.org>
Subject: svn commit: r557415 - head/security/vuxml
Date: Thu, 10 Dec 2020 06:02:22 +0000 (UTC)

> Author: philip
> Date: Thu Dec 10 06:02:22 2020
> New Revision: 557415
> URL: https://svnweb.freebsd.org/changeset/ports/557415
> 
> Log:
>   security/vuxml: add FreeBSD SA to OpenSSL entry
>   
>   Reference FreeBSD-SA-20:33.openssl and note the fixed patch releases in
>   the recent OpenSSL entry.
> 
> Modified:
>   head/security/vuxml/vuln.xml
> 
> Modified: head/security/vuxml/vuln.xml
> ==============================================================================
> --- head/security/vuxml/vuln.xml	Thu Dec 10 05:52:39 2020	(r557414)
> +++ head/security/vuxml/vuln.xml	Thu Dec 10 06:02:22 2020	(r557415)
> @@ -95,6 +95,11 @@ Notes:
>  	<name>openssl</name>
>  	<range><ge>1.0.2,1</ge><lt>1.1.1i,1</lt></range>
>        </package>
> +      <package>
> +	<name>FreeBSD</name>
> +	<range><ge>12.2</ge><lt>12.2_2</lt></range>
> +	<range><ge>12.1</ge><lt>12.1_12</lt></range>
> +      </package>
>      </affects>

Accoding to the security advisory of FreeBSD-SA-20:33.openssl, this
vulnerability affects all supported FreeBSD versions. So should
11.4-RELEASE also be added to range?

---
Yasuhiro KIMURA



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20201210.184124.1878529902245224941.yasu>