From owner-freebsd-ports@FreeBSD.ORG Fri Oct 13 18:21:46 2006 Return-Path: X-Original-To: freebsd-ports@freebsd.org Delivered-To: freebsd-ports@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 0D29816A415 for ; Fri, 13 Oct 2006 18:21:46 +0000 (UTC) (envelope-from swhetzel@gmail.com) Received: from ug-out-1314.google.com (ug-out-1314.google.com [66.249.92.170]) by mx1.FreeBSD.org (Postfix) with ESMTP id 570A343DDD for ; Fri, 13 Oct 2006 18:21:01 +0000 (GMT) (envelope-from swhetzel@gmail.com) Received: by ug-out-1314.google.com with SMTP id m2so461781uge for ; Fri, 13 Oct 2006 11:20:57 -0700 (PDT) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=eIsA/Rvo+jVej+bFOvk32pw+yHxYJlviet+0OiS+INtvjAgT5LfPggAQhY3JU5SA+bwYbr+H3wsON5EuiPs1hieMVZghBrqx8GxRdyk2RWf2ns5qCQ11itK/fiHeZ8PJwayzyE8GPilOj8Tr/BdfLPqENZbT9RIlJ5LDk8Kax4w= Received: by 10.66.224.3 with SMTP id w3mr4699020ugg; Fri, 13 Oct 2006 11:20:56 -0700 (PDT) Received: by 10.67.86.8 with HTTP; Fri, 13 Oct 2006 11:20:56 -0700 (PDT) Message-ID: <790a9fff0610131120u7b1b375cmfebeb4bc939ab3e0@mail.gmail.com> Date: Fri, 13 Oct 2006 13:20:56 -0500 From: "Scot Hetzel" To: "Bill Blue" In-Reply-To: MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Content-Disposition: inline References: Cc: "freebsd-ports@freebsd.org" Subject: Re: php5-5.1.6 & 5.1.6_1 X-BeenThere: freebsd-ports@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Porting software to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 13 Oct 2006 18:21:46 -0000 On 10/13/06, Bill Blue wrote: > Hi - > > I'm running 6.2 PRERELEASE #2 with my ports tree current to this morning (around 9am GMT-8). i386 with a Pentium 4 3.2Ghz > > It took some massaging, but I was finally able to get all the ports re-compiled except one, that in the subject line. > > php5-5.1.6 refuses to build because of Known Vulnerabilities: php -- _ecalloc integer overflow vulnerability, > > php5-5.1.6_1 refuses to build also because of Known Vulnerabilities: php -- open_basedir race condition vulnerabilities. > > Any suggestions? > You can install the port by defining DISABLE_VULNERABILITIES when building/installing the port. But you must understand that the installed port will have a security vulnerability. Scot -- DISCLAIMER: No electrons were mamed while sending this message. Only slightly bruised.