From nobody Fri Jun 3 07:46:10 2022 X-Original-To: ports-bugs@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id D19741B5EE2D for ; Fri, 3 Jun 2022 07:46:10 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4LDw1G4ZCxz4pq5 for ; Fri, 3 Jun 2022 07:46:10 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 7D0DF24D41 for ; Fri, 3 Jun 2022 07:46:10 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 2537kAWh086252 for ; Fri, 3 Jun 2022 07:46:10 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from www@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 2537kAOV086251 for ports-bugs@FreeBSD.org; Fri, 3 Jun 2022 07:46:10 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: www set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: ports-bugs@FreeBSD.org Subject: [Bug 264426] www/mitmproxy: Update to 8.0.0 (<=7.0.4 vulnerable to CVE-2022-24766) Date: Fri, 03 Jun 2022 07:46:10 +0000 X-Bugzilla-Reason: AssignedTo CC X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Ports & Packages X-Bugzilla-Component: Individual Port(s) X-Bugzilla-Version: Latest X-Bugzilla-Keywords: needs-patch, needs-qa, security X-Bugzilla-Severity: Affects Many People X-Bugzilla-Who: koobs@FreeBSD.org X-Bugzilla-Status: Open X-Bugzilla-Resolution: X-Bugzilla-Priority: Normal X-Bugzilla-Assigned-To: ports-bugs@FreeBSD.org X-Bugzilla-Flags: maintainer-feedback? merge-quarterly? X-Bugzilla-Changed-Fields: flagtypes.name cc short_desc bug_file_loc bug_status keywords priority bug_severity Message-ID: In-Reply-To: References: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Ports bug reports List-Archive: https://lists.freebsd.org/archives/freebsd-ports-bugs List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-ports-bugs@freebsd.org X-BeenThere: freebsd-ports-bugs@freebsd.org MIME-Version: 1.0 ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1654242370; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=kRJLYYNqU+BVE9jc90m2pqXkoZ1Gehg5AcRBchayk9g=; b=TQvRGjIUATxmc/e5seqFrVjOyWTW+2hPI5xafHozvOoRpagN1aUkWTzyJ+ejMDr4Cjvu5G AXdMXpjP/sJ1dKFU7euIITfTS/y7zI2R2toAhphZEYV8QrZ1Q05b7lKJjTgbevGIVV0Cpd d3jaKC3k8vVHnuFyIHlctQlNc5rGafZVzv/zIUD4IkYqlBdXWo1aR515KlBxuMw8erQJTH spGxOr0ru0bOOJcVpw8Ijq670OvmRQiEEPWd9JtSbNSJT3wTTrXKKu+vIQHjvHLfNfS9f0 yMoJ52ld6v48rALNCS/zevWAf3lAAPxQP2unOuhkKu548hLS2JtLgc4otxiong== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1654242370; a=rsa-sha256; cv=none; b=CitqfGt/dmKlSCvwcIJag5lqNxqK92lDuQyCM5CZT9SIVTR/fTSE6NYw1fg6joT5mXAO6V tRBP6QKOfwenmSv2GODnevUzhqgly838DmA8NUcETCFJOAbrXtfUgGwXEPfkx+2z2za5oN pCZVCozu9VdH3uMR3LMQfr0rfi8J0goCSTwbFSveHuMSyctpzx9T8/DW126oZ9y7p4MbpX DSctvJ33sxMUpz+1jXyzWTT3r2IvMRGfuw1hAJUsChpdHRPxDLy7waJVs1GSb267r3aWsT laTd60/cWGmBQRBpjGnn9kYsxnap0pzG2E+AA/WMJm2AJwMvWwQhDPpQ8QV6GA== ARC-Authentication-Results: i=1; mx1.freebsd.org; none X-ThisMailContainsUnwantedMimeParts: N https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D264426 Kubilay Kocak changed: What |Removed |Added ---------------------------------------------------------------------------- Flags| |merge-quarterly? CC| |ports-bugs@FreeBSD.org, | |ports-secteam@FreeBSD.org Summary|www/mitmproxy <=3D7.0.4 |www/mitmproxy: Update to |vulnerable CVE-2022-24766 |8.0.0 (<=3D7.0.4 vulnerable | |to CVE-2022-24766) URL| |https://github.com/mitmprox | |y/mitmproxy/security/adviso | |ries/GHSA-gcx2-gvj7-pxv3 Status|New |Open Keywords| |needs-patch, needs-qa, | |security Priority|--- |Normal Severity|Affects Some People |Affects Many People --- Comment #1 from Kubilay Kocak --- Thank you for your report. Pending port and vuxml entry updates --=20 You are receiving this mail because: You are the assignee for the bug. You are on the CC list for the bug.=