Date: Mon, 18 May 2020 05:04:40 +0000 From: bugzilla-noreply@freebsd.org To: ports-bugs@FreeBSD.org Subject: [Bug 246534] devel/libphp-awl update to 0.61, www/davical to 1.1.9.3 Message-ID: <bug-246534-7788@https.bugs.freebsd.org/bugzilla/>
next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D246534 Bug ID: 246534 Summary: devel/libphp-awl update to 0.61, www/davical to 1.1.9.3 Product: Ports & Packages Version: Latest Hardware: Any OS: Any Status: New Severity: Affects Only Me Priority: --- Component: Individual Port(s) Assignee: rigoletto@freebsd.org Reporter: wlam+fbd@blanksquare.net Assignee: rigoletto@freebsd.org Flags: maintainer-feedback?(rigoletto@freebsd.org) The most recent version of AWL (0.61) describes fixes to better thwart sess= ion impersonation: https://gitlab.com/davical-project/awl/-/blob/r0.61/debian/changelog https://www.debian.org/security/2020/dsa-4660 https://cve.mitre.org/cgi-bin/cvename.cgi?name=3DCVE-2020-11728 https://cve.mitre.org/cgi-bin/cvename.cgi?name=3DCVE-2020-11729 The latest corresponding version of Davical (1.1.9.3) calls for AWL 0.61+ as well: https://gitlab.com/davical-project/davical/-/blob/r1.1.9.3/debian/control#L= 23 --=20 You are receiving this mail because: You are the assignee for the bug.=
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-246534-7788>