From owner-freebsd-ports-bugs@FreeBSD.ORG Mon Apr 28 20:30:04 2008 Return-Path: Delivered-To: freebsd-ports-bugs@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 31D781065677 for ; Mon, 28 Apr 2008 20:30:04 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id F09378FC24 for ; Mon, 28 Apr 2008 20:30:03 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (gnats@localhost [127.0.0.1]) by freefall.freebsd.org (8.14.2/8.14.2) with ESMTP id m3SKU3PK005610 for ; Mon, 28 Apr 2008 20:30:03 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.14.2/8.14.1/Submit) id m3SKU3cq005607; Mon, 28 Apr 2008 20:30:03 GMT (envelope-from gnats) Resent-Date: Mon, 28 Apr 2008 20:30:03 GMT Resent-Message-Id: <200804282030.m3SKU3cq005607@freefall.freebsd.org> Resent-From: FreeBSD-gnats-submit@FreeBSD.org (GNATS Filer) Resent-To: freebsd-ports-bugs@FreeBSD.org Resent-Reply-To: FreeBSD-gnats-submit@FreeBSD.org, bf Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 27C251065672 for ; Mon, 28 Apr 2008 20:24:24 +0000 (UTC) (envelope-from nobody@FreeBSD.org) Received: from www.freebsd.org (www.freebsd.org [IPv6:2001:4f8:fff6::21]) by mx1.freebsd.org (Postfix) with ESMTP id 182CB8FC1B for ; Mon, 28 Apr 2008 20:24:24 +0000 (UTC) (envelope-from nobody@FreeBSD.org) Received: from www.freebsd.org (localhost [127.0.0.1]) by www.freebsd.org (8.14.2/8.14.2) with ESMTP id m3SKNlB7087835 for ; Mon, 28 Apr 2008 20:23:47 GMT (envelope-from nobody@www.freebsd.org) Received: (from nobody@localhost) by www.freebsd.org (8.14.2/8.14.1/Submit) id m3SKNlaN087834; Mon, 28 Apr 2008 20:23:47 GMT (envelope-from nobody) Message-Id: <200804282023.m3SKNlaN087834@www.freebsd.org> Date: Mon, 28 Apr 2008 20:23:47 GMT From: bf To: freebsd-gnats-submit@FreeBSD.org X-Send-Pr-Version: www-3.1 Cc: Subject: ports/123178: [PATCH]security/vuxml: gnupg-1.4.9 incorrectly marked as insecure X-BeenThere: freebsd-ports-bugs@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Ports bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 28 Apr 2008 20:30:04 -0000 >Number: 123178 >Category: ports >Synopsis: [PATCH]security/vuxml: gnupg-1.4.9 incorrectly marked as insecure >Confidential: no >Severity: non-critical >Priority: medium >Responsible: freebsd-ports-bugs >State: open >Quarter: >Keywords: >Date-Required: >Class: sw-bug >Submitter-Id: current-users >Arrival-Date: Mon Apr 28 20:30:03 UTC 2008 >Closed-Date: >Last-Modified: >Originator: bf >Release: 7-STABLE i386 >Organization: - >Environment: >Description: gnupg-1.4.9 is thought to be secure, but a problem with revision 1.1611 of vuln.xml breaks the build in the "check-vulnerable" target. The problem is that the entry uses "gnupg1" in the name entry, but this is a MASTERDIR, and is neither the PORTNAME nor the PKGNAME of gnupg-1.4.9, the two identifying variables used in "check-vulnerable" target. Patch vuln.xml so that the proper version ranges of gnupg-* are checked. >How-To-Repeat: >Fix: Patch attached with submission follows: diff -ruN vuxml.orig/vuln.xml vuxml/vuln.xml --- vuxml.orig/vuln.xml 2008-04-28 14:12:51.515508829 -0400 +++ vuxml/vuln.xml 2008-04-28 15:58:16.597772078 -0400 @@ -39,11 +39,8 @@ gnupg - 2.0.9 - - - gnupg1 - 1.4.9 + 1.*1.4.9 + 2.*2.0.9 >Release-Note: >Audit-Trail: >Unformatted: