Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 15 Sep 2015 13:30:06 +0000
From:      bugzilla-noreply@freebsd.org
To:        freebsd-ports-bugs@FreeBSD.org
Subject:   [Bug 198813] devel/psptoolchain-binutils: Multiple security vulnerabilities
Message-ID:  <bug-198813-13-uzoWS7cPKg@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-198813-13@https.bugs.freebsd.org/bugzilla/>
References:  <bug-198813-13@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=198813

--- Comment #2 from Tassilo Philipp <tphilipp@potion-studios.com> ---
Not yet, I've unfortunately not had any time to look into this, yet. Too much
going on, currently, sorry...

Also, not sure if the importance needs to be set to "affects many people", as I
doubt that. This port of binutils is only used for the psptoolchain, there are
no other dependencies on it. I don't think a lot of people are actually using
this.

But, bigger question: Given that this port is actually port of an existing
patchset against gnu binutils 2.22, adding PSP support, it's a bit of an
undertaking to switch to a newer binutils version, b/c the source-patchset
didn't, yet. Not sure how to handle this best - fork from the sources and
maintain an own, newer version of binutils, or actually just add patches to fix
those vulnerabilities?

Input welcome.

-- 
You are receiving this mail because:
You are the assignee for the bug.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-198813-13-uzoWS7cPKg>