From owner-freebsd-ports@FreeBSD.ORG Sun Sep 28 12:14:28 2008 Return-Path: Delivered-To: freebsd-ports@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 6CE44106568E; Sun, 28 Sep 2008 12:14:28 +0000 (UTC) (envelope-from rea-fbsd@codelabs.ru) Received: from 0.mx.codelabs.ru (0.mx.codelabs.ru [144.206.177.45]) by mx1.freebsd.org (Postfix) with ESMTP id 12C9C8FC16; Sun, 28 Sep 2008 12:14:28 +0000 (UTC) (envelope-from rea-fbsd@codelabs.ru) DomainKey-Signature: a=rsa-sha1; q=dns; c=simple; s=one; d=codelabs.ru; h=Received:Date:From:To:Cc:Subject:Message-ID:References:MIME-Version:Content-Type:Content-Disposition:In-Reply-To:Sender; b=MGxi9CvwiT0A+EZLkAgSwg81QrfZA7qgQaRmjT4aQNgIZEbPP3XWqrzLPXnJ1afUxRK0slpY+ATJ/igcFBfPdlZHC9i5+vmPsv2q5XzfE9QZj/n9VuifL5yLTKTHvQLNwDCmztWLR3BPntufPxnyYSJ+wSBhUa6onmYrFAhE9gk=; Received: from amnesiac.at.no.dns (ppp91-78-250-120.pppoe.mtu-net.ru [91.78.250.120]) by 0.mx.codelabs.ru with esmtpsa (TLSv1:AES256-SHA:256) id 1KjvAQ-000GDn-Qo; Sun, 28 Sep 2008 16:14:26 +0400 Date: Sun, 28 Sep 2008 16:14:24 +0400 From: Eygene Ryabinkin To: Miroslav Lachman <000.fbsd@quip.cz> Message-ID: <4bESZpNwE3z/DdlE2fwK/BXzQSo@2MQ0uKCiT7mdMUuLeUzs8Nv3ToQ> References: <48DE5CC0.9000708@localhost.inse.ru> <48DF6735.4030906@quip.cz> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="24zk1gE8NUlDmwG9" Content-Disposition: inline In-Reply-To: <48DF6735.4030906@quip.cz> Sender: rea-fbsd@codelabs.ru Cc: freebsd-hackers@freebsd.org, Roman Kurakin , bug-followup@freebsd.org, freebsd-ports@freebsd.org Subject: Re: ports/126853: ports-mgmt/portaudit: speed up audit of installed packages X-BeenThere: freebsd-ports@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Porting software to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 28 Sep 2008 12:14:28 -0000 --24zk1gE8NUlDmwG9 Content-Type: text/plain; charset=koi8-r Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Miroslav, good day. Sun, Sep 28, 2008 at 01:15:01PM +0200, Miroslav Lachman wrote: > Is there any possibility to cooperate portaudit / pkg_audit with=20 > pkg_version to show vulnerable package with information if newer (not=20 > vulnerable) package (or port) version is available for upgrade to? >=20 > If I read nightly security e-mail with for example 4 vulnerable=20 > packages, then I need to log in to server and manualy try, if newer=20 > (fixed) packages are available. It seems not so hard to check output of= =20 > `pkg_version -vIL =3D` and compare both versions (installed and available= )=20 > with portaudit in some shellscript, I didn't start to write it yet ;). I think it won't be very hard: I'll try to see how to extend portaudit with such functionality -- it would be very handy, in my opinion. Hadn't you have a chance to test my patch? Thanks! --=20 Eygene _ ___ _.--. # \`.|\..----...-'` `-._.-'_.-'` # Remember that it is hard / ' ` , __.--' # to read the on-line manual =20 )/' _/ \ `-_, / # while single-stepping the kernel. `-'" `"\_ ,_.-;_.-\_ ', fsc/as # _.-'_./ {_.' ; / # -- FreeBSD Developers handbook=20 {_.-``-' {_/ # --24zk1gE8NUlDmwG9 Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.9 (FreeBSD) iEYEARECAAYFAkjfdR8ACgkQthUKNsbL7Yh9pwCgn6ZCc+sKUfLOeGOAhKmAGZdr ZbkAn2OVuz4Q/VpOhRyWBuIb2kMMp30K =VoRh -----END PGP SIGNATURE----- --24zk1gE8NUlDmwG9--