From owner-freebsd-ports@FreeBSD.ORG Thu Sep 4 15:38:32 2008 Return-Path: Delivered-To: freebsd-ports@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 0D0721065675 for ; Thu, 4 Sep 2008 15:38:32 +0000 (UTC) (envelope-from 000.fbsd@quip.cz) Received: from elsa.codelab.cz (elsa.codelab.cz [91.103.162.4]) by mx1.freebsd.org (Postfix) with ESMTP id BD0698FC12 for ; Thu, 4 Sep 2008 15:38:31 +0000 (UTC) (envelope-from 000.fbsd@quip.cz) Received: from localhost (localhost.codelab.cz [127.0.0.1]) by elsa.codelab.cz (Postfix) with ESMTP id 5C8C919E02A; Thu, 4 Sep 2008 17:38:27 +0200 (CEST) Received: from [192.168.1.2] (r5bb235.net.upc.cz [86.49.61.235]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by elsa.codelab.cz (Postfix) with ESMTPSA id 20A8B19E027; Thu, 4 Sep 2008 17:38:19 +0200 (CEST) Message-ID: <48C0010C.4010006@quip.cz> Date: Thu, 04 Sep 2008 17:38:52 +0200 From: Miroslav Lachman <000.fbsd@quip.cz> User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.0; en-US; rv:1.7.12) Gecko/20050915 X-Accept-Language: cz, cs, en, en-us MIME-Version: 1.0 To: =?ISO-8859-1?Q?Morgan_Wesstr=F6m?= References: <48BFDA10.60701@pp.dyndns.biz> In-Reply-To: <48BFDA10.60701@pp.dyndns.biz> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 8bit Cc: freebsd-ports@freebsd.org Subject: Re: Stop in /usr/ports/sysutils/php5-posix. X-BeenThere: freebsd-ports@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Porting software to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 04 Sep 2008 15:38:32 -0000 Morgan Wesström wrote: > Portaudit has complained for a few days about vulnerabilities in > sysutils/php5-posix but there seems to be no update yet. When I now try > to recompile all my ports with portmaster it stops with an error when it > reaches this port. > > ===> php5-posix-5.2.6_1 has known vulnerabilities: > => php -- input validation error in posix_access function. > Reference: > > > => Please update your ports tree and try again. > *** Error code 1 > > > How do I continue? Is there anyway I can force portmaster to skip this > port and continue where it left off or do I have to deinstall it and > recompile everything all over again? You can recompile / install vulnerable applications by giving portmaster option: -m "DISABLE_VULNERABILITIES=yes". !!You are using it at your own risk!! If you don't need php5-posix, it is better to deinstall it and uncheck from php5-extensions (with `make config` in /usr/ports/lang/php5-extensions) Miroslav Lachman