Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 10 Dec 2020 17:51:20 +0800
From:      "Philip Paeps" <philip@freebsd.org>
To:        "Yasuhiro KIMURA" <yasu@utahime.org>
Cc:        ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org
Subject:   Re: svn commit: r557415 - head/security/vuxml
Message-ID:  <21CAC509-31D2-4B9A-AFAB-93F9202598C3@freebsd.org>
In-Reply-To: <20201210.184124.1878529902245224941.yasu@utahime.org>
References:  <202012100602.0BA62MXX057987@repo.freebsd.org> <20201210.184124.1878529902245224941.yasu@utahime.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On 2020-12-10 17:41:24 (+0800), Yasuhiro KIMURA wrote:
> From: Philip Paeps <philip@FreeBSD.org>
> Subject: svn commit: r557415 - head/security/vuxml
> Date: Thu, 10 Dec 2020 06:02:22 +0000 (UTC)
>
>> Author: philip
>> Date: Thu Dec 10 06:02:22 2020
>> New Revision: 557415
>> URL: https://svnweb.freebsd.org/changeset/ports/557415
>>
>> Log:
>>   security/vuxml: add FreeBSD SA to OpenSSL entry
>>
>>   Reference FreeBSD-SA-20:33.openssl and note the fixed patch =

>> releases in
>>   the recent OpenSSL entry.
>>
>> Modified:
>>   head/security/vuxml/vuln.xml
>>
>> Modified: head/security/vuxml/vuln.xml
>> =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D
>> --- head/security/vuxml/vuln.xml	Thu Dec 10 05:52:39 2020	(r557414)
>> +++ head/security/vuxml/vuln.xml	Thu Dec 10 06:02:22 2020	(r557415)
>> @@ -95,6 +95,11 @@ Notes:
>>  	<name>openssl</name>
>>  	<range><ge>1.0.2,1</ge><lt>1.1.1i,1</lt></range>
>>        </package>
>> +      <package>
>> +	<name>FreeBSD</name>
>> +	<range><ge>12.2</ge><lt>12.2_2</lt></range>
>> +	<range><ge>12.1</ge><lt>12.1_12</lt></range>
>> +      </package>
>>      </affects>
>
> Accoding to the security advisory of FreeBSD-SA-20:33.openssl, this
> vulnerability affects all supported FreeBSD versions. So should
> 11.4-RELEASE also be added to range?

Good point.  I can do that.

Thanks.

Philip

-- =

Philip Paeps
Senior Reality Engineer
Alternative Enterprises



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?21CAC509-31D2-4B9A-AFAB-93F9202598C3>