Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 19 May 2022 09:38:55 +0200
From:      Kurt Jaeger <pi@freebsd.org>
To:        Andrea Venturoli <ml@netfence.it>
Cc:        yasu@freebsd.org, ports@freebsd.org
Subject:   Re: ClamAV security update
Message-ID:  <YoX0D2XsbyXq0uk9@fc.opsec.eu>
In-Reply-To: <9fafaa47-0695-389f-11a9-940ab26364fc@netfence.it>
References:  <9fafaa47-0695-389f-11a9-940ab26364fc@netfence.it>

next in thread | previous in thread | raw e-mail | index | archive | help
Hi!

> I see Clamav 0.105.0, 0.104.3 and 0.103.6 were released on May 5th, the
> latter two closing "several CVE fixes".
> 
> However, the port was not updated and not even portaudit entries were added.
> 
> Was this overlooked?

There's a PR waiting:

https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=263944

> Are the FreeBSD ports somehow not affected?

They are affected, but folks are busy with other things 8-(

-- 
pi@FreeBSD.org         +49 171 3101372                  Now what ?



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?YoX0D2XsbyXq0uk9>