From nobody Fri Jan 28 00:11:14 2022 X-Original-To: dev-commits-ports-branches@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id EE19B1974430; Fri, 28 Jan 2022 00:11:16 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4JlHtW3MpCz51cG; Fri, 28 Jan 2022 00:11:15 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1643328676; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=aS8ApB6KOxH0lNH3sPQjJGVejAlocH8vMYhJPIS0joo=; b=NP7QTlAEC8ilTKtkZhmmCo5Aw7W2639r1MtK5A1J35iQZbEsRpWkOl7yx98/ZrqpZQcO65 +jXOtjczaJPio+eKNvGxqo2bMFeJjBWKPLidECe2PywKYTjojWSgbWfxzxDo/R2Uzu14Bu /1LHMybjqP/CYii1vs9MQuRNtedd+qdQ4yfT2WdaY/O9R5Fy2wqFqXugkYZup7+YQrwxma igcRSlqlvyUu6lyhksrqi5WHA8xoLVtHoq6TV4YjMC/inzNDsJkocNKQl6AU/HjKm/tLlQ LKOfzZ7IVfAcRMdXN76+VVAdBHMRrXtUtq0gPn4w8eeDUnS14rN3KDdqaIWCmw== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id C96E0203C5; Fri, 28 Jan 2022 00:11:14 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.16.1/8.16.1) with ESMTP id 20S0BENq027584; Fri, 28 Jan 2022 00:11:14 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.16.1/8.16.1/Submit) id 20S0BEO4027583; Fri, 28 Jan 2022 00:11:14 GMT (envelope-from git) Date: Fri, 28 Jan 2022 00:11:14 GMT Message-Id: <202201280011.20S0BEO4027583@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-branches@FreeBSD.org From: Matthias Andree Subject: git: ee0785dbfdef - 2022Q1 - graphics/openexr: security update to 3.1.4 List-Id: Commits to the quarterly branches of the FreeBSD ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-branches List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-dev-commits-ports-branches@freebsd.org X-BeenThere: dev-commits-ports-branches@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: mandree X-Git-Repository: ports X-Git-Refname: refs/heads/2022Q1 X-Git-Reftype: branch X-Git-Commit: ee0785dbfdefdf50c7b39b4fd0e2dde1584ce0b4 Auto-Submitted: auto-generated ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1643328676; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=aS8ApB6KOxH0lNH3sPQjJGVejAlocH8vMYhJPIS0joo=; b=qBrQUCi2rgB0nSZRTv3l5nuEoHDrBzKKR++Wqsi9Kt2IkGyvMsL94mmh1fBLm73ibf915g N5pZGRHpj2UJ11dcUzqcm7C3HZEFfNPMvFiAbAqsVh1F0KC6PymKhkJ5KdqauDadLVW9RR /XpKwRNLF7mPMIobYhe6otwAz3G2RdcxEvpgE60BsXZHte5uQssCbdkvk1fMyTJbObZEe0 2gbwA5n7CArV+/9LDTMGrdhCwKZFyFnQ5paoSC7cvazYIqdNQkwngl/Kp9JOKqhNbdq9EY qFzc0Z/GEIpk1IqUK9MQFikktEpz6rWQISAjMn6K59Cgd6533hxfXIzMOSFWBQ== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1643328676; a=rsa-sha256; cv=none; b=jzl61m0ddYqJBzdt59x+ZxvpaKNQpszuGiPEAeNIxuGqfr9qNeIvcPzqTKkC7pBPkxS9Mv BWhBvbFNpBP8Y6h4WrHQUOUPSf12GjY96Fb7AoC4+ito9Q3DhzAc/1QPEj88GCnE4NhSPq IdiU01xWTERm1onpurIQZzOS4i3PqgkmbZHSXM4q3BBYVFqCJcdarfcoHvYXcRwtYMkRU3 Smmci4e6NYb1PAibtyDo1XMB1qu1LMybErIipnPG0h5GOLDZ5lPeSAj3MKiDfjroJvNU7a CqBaZRABtql0wqNYNGd/AcI1S/6mCQzKYuHbMZ8w+xZ5LjrYUzkoDd24BhFUmQ== ARC-Authentication-Results: i=1; mx1.freebsd.org; none X-ThisMailContainsUnwantedMimeParts: N The branch 2022Q1 has been updated by mandree: URL: https://cgit.FreeBSD.org/ports/commit/?id=ee0785dbfdefdf50c7b39b4fd0e2dde1584ce0b4 commit ee0785dbfdefdf50c7b39b4fd0e2dde1584ce0b4 Author: Matthias Andree AuthorDate: 2022-01-27 01:50:43 +0000 Commit: Matthias Andree CommitDate: 2022-01-27 23:53:15 +0000 graphics/openexr: security update to 3.1.4 * Several bug fixes to properly reject invalid input upon read * Miscellaneous documentation improvements This addresses one public security vulnerability: * CVE-2021-45942 Heap-buffer-overflow in Imf_3_1::LineCompositeTask::execute Changelog: https://github.com/AcademySoftwareFoundation/openexr/blob/v3.1.4/CHANGES.md#version-314-january-26-2022 Security: CVE-2021-45942 MFH: 2022Q1 (cherry picked from commit c67fbf11b4bd1c8b3cbbf2abc99deadf4cec2892) --- graphics/openexr/Makefile | 6 +++--- graphics/openexr/distinfo | 6 +++--- 2 files changed, 6 insertions(+), 6 deletions(-) diff --git a/graphics/openexr/Makefile b/graphics/openexr/Makefile index 32aa958d08eb..049ba5410364 100644 --- a/graphics/openexr/Makefile +++ b/graphics/openexr/Makefile @@ -1,7 +1,7 @@ # Created by: nork@FreeBSD.org PORTNAME= openexr -PORTVERSION= 3.1.3 +PORTVERSION= 3.1.4 CATEGORIES= graphics devel MAINTAINER= mandree@FreeBSD.org @@ -27,8 +27,8 @@ PATCH_STRIP= -p0 _MAJORVER= 3_1 _VER= 30 -_MINVER= 3 -_PLVER= 0 +_MINVER= 4 +_PLVER= 1 PLIST_SUB+= MAJORVER=${_MAJORVER} \ VER=${_VER} \ diff --git a/graphics/openexr/distinfo b/graphics/openexr/distinfo index 68b2094878f1..f15ce8f369e8 100644 --- a/graphics/openexr/distinfo +++ b/graphics/openexr/distinfo @@ -1,3 +1,3 @@ -TIMESTAMP = 1635764727 -SHA256 (AcademySoftwareFoundation-openexr-3.1.3-v3.1.3_GH0.tar.gz) = 6f70a624d1321319d8269a911c4032f24950cde52e76f46e9ecbebfcb762f28c -SIZE (AcademySoftwareFoundation-openexr-3.1.3-v3.1.3_GH0.tar.gz) = 20322346 +TIMESTAMP = 1643245066 +SHA256 (AcademySoftwareFoundation-openexr-3.1.4-v3.1.4_GH0.tar.gz) = cb019c3c69ada47fe340f7fa6c8b863ca0515804dc60bdb25c942c1da886930b +SIZE (AcademySoftwareFoundation-openexr-3.1.4-v3.1.4_GH0.tar.gz) = 20323658