From nobody Thu Apr 18 21:53:28 2024 X-Original-To: dev-commits-ports-all@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4VLBNm5lN6z5Hf2t; Thu, 18 Apr 2024 21:53:28 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4VLBNm5Fxfz4YRf; Thu, 18 Apr 2024 21:53:28 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1713477208; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=2gRJ43owpx8vo0PSOGrd7ifdkSn4DcZXsXzFq2wFz4c=; b=R9npsn6Jih7wuxAJpMzc74+QSpdg0cagKU4OZsH5LNH/U+akJaJeup+sheKFeRTnibjeZR j729YYYhyKOYgiF5uRdLd0xreLGP5Gql6+t7MQFXHI4BwnZmbekdRkAMvoQcMd9I5nAgEu RjyDNd2u54lOpg9ZJVy9nzJQwE+TasXcWJUVawAmqW8Bho3jekJTqCILTWEX6XMLBd47yB CSPQhPBBT1cHK2VLbHbNkF6tbERkKvi2f+Jv9QVQjAw7Pe0P7aHCfpS77Tmf+S9dFkrK+E wooR0ipidQs7NRLHz40V4RBHER+WkNW6pvE2klxE9NUzeC7BMmz9egyx2OKRZA== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1713477208; a=rsa-sha256; cv=none; b=iiXCfS2qRVEBtCg0w6KbRupe3+n7eqPcY7zKvd3qgLw5nnVPHIfoES5FnuhsvLraEJ3xeq AfkpTXXTy87UpCIdYv6/Ku726nUHr2z2kA9FbFk+9sfDhkHZTTWa0Tndzq6iUBReaGVjW0 r6nPo5V8Te0uD3T+C/zz+b67EjT4+M5zv9IGSlbPmDshZJYZIgE/rOmLJENQCtUOYZCCcZ GsuqOOuijF1NsZUwzkfM1+Jktn5kkKTtwYE2WFf/r4NgsHIIjFFGfflyZQRgiDow5XFZV1 SGcRd4S130SU2UqdDAUc3JRKbCtHeERZjkT0Mt91yBnRNuiljmV0jzsz7Hy9zg== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1713477208; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=2gRJ43owpx8vo0PSOGrd7ifdkSn4DcZXsXzFq2wFz4c=; b=KiCB6N6Bgh1qmxPBuoIRizs/2bz50ulgFibBfU9ZhAvapUVbn2AsMMoIFcpTDtPEWP8ZyS TN3dADRADUUCwaT5sm2jYdV7hLv92UUqWdI7g+nBR5tc9IlPkYoh+L+J6vToRjeW2VU0Vb 1EdhmdGOtYO9ORlNnVVCnTniw45cFNGKEpSQeS1LoCe1CpQ/nfrWUiXsvyjLPOQPPQ3pH6 /4UYOj/tbPhYY3isPnRclBXzP/Aw2uyJ7r82RjISZg8Vyj/CnwKCamHCvfs3N+tjjIUXT2 V2OvYkmiufZqLgHfkHVVip0EDaGmh8ZzOkgYEvd9DKgKYkC2KkoPV7Isn97jCA== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4VLBNm4s21zRkQ; Thu, 18 Apr 2024 21:53:28 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.17.1/8.17.1) with ESMTP id 43ILrSek091735; Thu, 18 Apr 2024 21:53:28 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.17.1/8.17.1/Submit) id 43ILrS5p091732; Thu, 18 Apr 2024 21:53:28 GMT (envelope-from git) Date: Thu, 18 Apr 2024 21:53:28 GMT Message-Id: <202404182153.43ILrS5p091732@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-branches@FreeBSD.org From: Vladimir Druzenko Subject: git: 21b1b6ff90c3 - 2024Q2 - net/freerdp: update to 2.11.6 with 6 CVEs fixed List-Id: Commit messages for all branches of the ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-all List-Help: List-Post: List-Subscribe: List-Unsubscribe: X-BeenThere: dev-commits-ports-all@freebsd.org Sender: owner-dev-commits-ports-all@FreeBSD.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: vvd X-Git-Repository: ports X-Git-Refname: refs/heads/2024Q2 X-Git-Reftype: branch X-Git-Commit: 21b1b6ff90c3c17cf455fffbe875a9baf040597e Auto-Submitted: auto-generated The branch 2024Q2 has been updated by vvd: URL: https://cgit.FreeBSD.org/ports/commit/?id=21b1b6ff90c3c17cf455fffbe875a9baf040597e commit 21b1b6ff90c3c17cf455fffbe875a9baf040597e Author: Vladimir Druzenko AuthorDate: 2024-04-18 21:47:21 +0000 Commit: Vladimir Druzenko CommitDate: 2024-04-18 21:53:13 +0000 net/freerdp: update to 2.11.6 with 6 CVEs fixed Changelog: https://github.com/FreeRDP/FreeRDP/releases/tag/2.11.6 CVE: CVE-2024-32041 [Low[ OutOfBound Read in zgfx_decompress_segment CVE-2024-32039 [Moderate] Integer overflow & OutOfBound Write in clear_decompress_residual_data CVE-2024-32040 [Low] integer underflow in nsc_rle_decode CVE-2024-32458 [Low] OutOfBound Read in planar_skip_plane_rle CVE-2024-32459 [Low] OutOfBound Read in ncrush_decompress CVE-2024-32460 [Low] OutOfBound Read in interleaved_decompress Approved by: arrowd (mentor, implicit) MFH: 2024Q2 (cherry picked from commit 78ae5b8b3407d78026445efdc53ab6a8c37b6622) --- net/freerdp/Makefile | 2 +- net/freerdp/distinfo | 6 +++--- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/net/freerdp/Makefile b/net/freerdp/Makefile index c0a9a5c14ff9..070149abce18 100644 --- a/net/freerdp/Makefile +++ b/net/freerdp/Makefile @@ -1,5 +1,5 @@ PORTNAME= freerdp -DISTVERSION= 2.11.5 +DISTVERSION= 2.11.6 CATEGORIES= net comms MASTER_SITES= https://pub.freerdp.com/releases/ \ https://github.com/FreeRDP/FreeRDP/releases/download/${DISTVERSION}/ diff --git a/net/freerdp/distinfo b/net/freerdp/distinfo index f60cc0dd37d6..5682ecdfa2f6 100644 --- a/net/freerdp/distinfo +++ b/net/freerdp/distinfo @@ -1,6 +1,6 @@ -TIMESTAMP = 1705743624 -SHA256 (freerdp-2.11.5.tar.gz) = 70785ad9934d75aed1734f8918a05aff95788e58e53081e84651106b24303dc2 -SIZE (freerdp-2.11.5.tar.gz) = 7330372 +TIMESTAMP = 1713475333 +SHA256 (freerdp-2.11.6.tar.gz) = ad5a0c7761b18af914041ed50902d6c9fd553e65eeba8a1bea41c4149980b84c +SIZE (freerdp-2.11.6.tar.gz) = 7337387 SHA256 (61983cd6dcb86097d91b7ef405abc1266444a368.patch) = be68ff4ab63c15592ff576af34d4592340b70e7b6d7b5ef3cfe5ba97b5fdccf2 SIZE (61983cd6dcb86097d91b7ef405abc1266444a368.patch) = 2826 SHA256 (78cdb555c57c33b7f331cb280ac2f615cb87fa74.patch) = d49ea1c5a0fdb644b32fd61479dfca6770c0bb6446bbe9d274e5ae4f62f0a00b