From nobody Fri Jan 17 01:45:44 2025 X-Original-To: dev-commits-ports-branches@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4YZ2cm4Tjcz5kD9d; Fri, 17 Jan 2025 01:45:44 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R11" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4YZ2cm3R58z3Xm9; Fri, 17 Jan 2025 01:45:44 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1737078344; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=4K3BcLbO1LOehAL9lsRIeDTpbV7gkN1k8RM2QDFqPKU=; b=HA71ylzV2DzfHAQ5knNJHcrSKQcPIr4Xq/V5JfLqMGm8kN2E4yrmQ3YUXshjyjf4bYvclO YTpJJ++hNZfHBBSZ5jwaCeCgJK+/ZPzAPQZYJr61MKyirQThmSJS7v9AmguBqVoPy+djH3 o+fFqHSwRck9NvYMBltL521R8yfSD8HWoJmrTY6d8XKLFQGvS6HT+yRNSi2gWTFkfar/r2 QfoGZo+DECJh3nJ0ul12WWXVbReaLo84sBCvdHQ3D7oeCPRrCjOk2Ig/i9Wh8xaKSsysCA zIVc6yy2fFa+TwlSqwYOasRkZFzeYSeJIvVnZ4027MTqhzHM8UKAWgduPx1CNw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1737078344; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=4K3BcLbO1LOehAL9lsRIeDTpbV7gkN1k8RM2QDFqPKU=; b=t4S6HJWQzF01qpCkxREvH14JLVtmdmtCddP6SEc2ePeaPfy6iXYnWLAhNEX5ehg2czlqRS iBZuCB/mq5D70gVRNS3tFsmx/FTa1DgBf5ws2cf9MutjXis8vO1JV0rcbjsAjvWz46phJQ R5RGPvyPKKjieMbHL8J/08VNAK6fCUvOv/JzOygcyFnm0XW6AFAjmqiMi59t0CUwMyLa2m /nbZanjbD99dLnnpOqxlEIPbhScX87AqTJAOaGsIXOZNY5i9AdpVwwkWA3MumuI8kLeopH hIfjPB7E7nUv9z7R7pgapJXL/NgdX9rHrbB5nnTKSBNlVmYxv/rl1Bvg+ivXFA== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1737078344; a=rsa-sha256; cv=none; b=WDKAepZZ3uB0oXVtEQsjDYNbw2u4ajLfmp8r3KTvcHqm+bQPKOwabOSWZrOjj0i7YzcaxS ZB5zLdvezg7k4kdSfDIqxUDmL2OQyG+a5MUmxUfJVvbvOq4y82qEgaMUOq4BdVd5to4EQk AYhXajh0AHDo+r7Y0ms3xWjoc0TcQW9mPXltef2gzcOWmoGQ6SEFk8m81+dfXbxAGnuFc5 UIZDY//CEUMwBMwL6raT+jUtfgGCEHbCvso9xOMFTB0HC6jbdO0RH/GupQSb1llcU2qPN5 ZM0uyGe9ZzE4dYhLgbUPiAoS5yIzgst5HA46MJPMDj5zOvKlRQ48y9qvivUilw== ARC-Authentication-Results: i=1; mx1.freebsd.org; none Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4YZ2cm2Tbzzxfc; Fri, 17 Jan 2025 01:45:44 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.18.1/8.18.1) with ESMTP id 50H1jipQ053544; Fri, 17 Jan 2025 01:45:44 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.18.1/8.18.1/Submit) id 50H1jicq053541; Fri, 17 Jan 2025 01:45:44 GMT (envelope-from git) Date: Fri, 17 Jan 2025 01:45:44 GMT Message-Id: <202501170145.50H1jicq053541@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-branches@FreeBSD.org From: Matthias Andree Subject: git: ea08b2ed7336 - 2025Q1 - security/openvpn: critical update to 2.6.13 List-Id: Commits to the quarterly branches of the FreeBSD ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-branches List-Help: List-Post: List-Subscribe: List-Unsubscribe: X-BeenThere: dev-commits-ports-branches@freebsd.org Sender: owner-dev-commits-ports-branches@FreeBSD.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: mandree X-Git-Repository: ports X-Git-Refname: refs/heads/2025Q1 X-Git-Reftype: branch X-Git-Commit: ea08b2ed7336931b9f25b46299098ab444b35e72 Auto-Submitted: auto-generated The branch 2025Q1 has been updated by mandree: URL: https://cgit.FreeBSD.org/ports/commit/?id=ea08b2ed7336931b9f25b46299098ab444b35e72 commit ea08b2ed7336931b9f25b46299098ab444b35e72 Author: Matthias Andree AuthorDate: 2025-01-17 01:24:59 +0000 Commit: Matthias Andree CommitDate: 2025-01-17 01:41:32 +0000 security/openvpn: critical update to 2.6.13 ChangeLog: https://github.com/OpenVPN/openvpn/blob/v2.6.13/Changes.rst#overview-of-changes-in-2613 Notably: Security fixes improve server-side handling of clients sending usernames or passwords longer than USER_PASS_LEN - this would not result in a crash, buffer overflow or other security issues, but the server would then misparse incoming IV_* variables and produce misleading error messages. Security: 47bc292a-d472-11ef-aaab-7d43732cb6f5 MFH: 2025Q1 (cherry picked from commit 874ce689efb62c57af37c11df691d549a54027dc) --- security/openvpn/Makefile | 2 +- security/openvpn/distinfo | 6 +++--- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/security/openvpn/Makefile b/security/openvpn/Makefile index 14813d532361..e48256c0a03b 100644 --- a/security/openvpn/Makefile +++ b/security/openvpn/Makefile @@ -1,5 +1,5 @@ PORTNAME= openvpn -DISTVERSION= 2.6.12 +DISTVERSION= 2.6.13 PORTREVISION?= 0 CATEGORIES= security net net-vpn MASTER_SITES= https://swupdate.openvpn.org/community/releases/ \ diff --git a/security/openvpn/distinfo b/security/openvpn/distinfo index c56b2132a403..d9ee1ee81458 100644 --- a/security/openvpn/distinfo +++ b/security/openvpn/distinfo @@ -1,3 +1,3 @@ -TIMESTAMP = 1721330148 -SHA256 (openvpn-2.6.12.tar.gz) = 1c610fddeb686e34f1367c347e027e418e07523a10f4d8ce4a2c2af2f61a1929 -SIZE (openvpn-2.6.12.tar.gz) = 1912400 +TIMESTAMP = 1737076293 +SHA256 (openvpn-2.6.13.tar.gz) = 1af10b86922bd7c99827cc0f151dfe9684337b8e5ebdb397539172841ac24a6a +SIZE (openvpn-2.6.13.tar.gz) = 1911719