Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 25 Mar 2022 14:57:38 +0000
From:      bugzilla-noreply@freebsd.org
To:        ports-bugs@FreeBSD.org
Subject:   [Bug 262414] graphics/p5-Image-ExifTool-devel: Update to 12.40
Message-ID:  <bug-262414-7788-LWoPvkIvxb@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-262414-7788@https.bugs.freebsd.org/bugzilla/>
References:  <bug-262414-7788@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D262414

Rafael Grether <devnull@apt322.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |devnull@apt322.org

--- Comment #1 from Rafael Grether <devnull@apt322.org> ---
@Reporter, I think you need to set the patch flag to ? for the maintainer to
approve.
There is a security issue involved: CVE-2022-23935, leading to command
injection.

So, we'll need security/vuxml entries for these along with additional
information from upstream on their nature, including CVE and other upstream
(issue, pr, commit) reference links where available.

If you could take care of the addition of security/vuxml entries that would=
 be
great.

@Maintainer, there is a security issue involved.
I am the graphics/p5-Image-ExifTool maintainer. If you want, I can take over
this port too, if you want this, please let me know.

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-262414-7788-LWoPvkIvxb>