From owner-cvs-ports@FreeBSD.ORG Thu May 10 04:32:26 2012 Return-Path: Delivered-To: cvs-ports@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id BC3C91065673 for ; Thu, 10 May 2012 04:32:26 +0000 (UTC) (envelope-from lists@eitanadler.com) Received: from mail-we0-f182.google.com (mail-we0-f182.google.com [74.125.82.182]) by mx1.freebsd.org (Postfix) with ESMTP id 3D8F28FC15 for ; Thu, 10 May 2012 04:32:26 +0000 (UTC) Received: by werg1 with SMTP id g1so836919wer.13 for ; Wed, 09 May 2012 21:32:25 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=eitanadler.com; s=0xdeadbeef; h=mime-version:sender:in-reply-to:references:from:date :x-google-sender-auth:message-id:subject:to:cc:content-type; bh=l+R9IuK3iZpqqM2Y4I029IAC70vwHAEXbr2Qhe9PWAc=; b=aGAusQlhWD/4nWvH6k5V7TcrWwjJR05ZqVmqoTSs3fu28oiZs584x8JyX9DzpxmM3s oMwvQxOn90ZRllHy97sm61gungb0/IppQo22Vj2c9tq0Yu7CLJtXD40gLkTMk4Lf83e1 vO4HO/I2S4MYv7V7BZIvhKYAH1uS0IlKlAkk0= X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=mime-version:sender:in-reply-to:references:from:date :x-google-sender-auth:message-id:subject:to:cc:content-type :x-gm-message-state; bh=l+R9IuK3iZpqqM2Y4I029IAC70vwHAEXbr2Qhe9PWAc=; b=JAhyOYGap+Vs/9dqopxTxFjLGnQM25AS21DjAmzjCAhIrgymJ1AJeaqWz+Y2EA1PYB HzvHRd+QN5yIdDySgc2yRx3gYxokENIrt6W96e0/IjZIWThsmdlDNSpPJR994BbXMDIR aJ0VrXuBNOQP0YXEZ8Wz41rIfKogcO7Z+QI32PcQaTSch3PIWkoo/A6F0GfC1xMZOHA0 /K+wi0XfruSt7fK22URv3f2wqZmPoyyL0+x16wmgPazWUe6+lhEiqtD5AWNH0x1t9FCS pOWrCx/RqqBR39HGAD0BEaBglKA7fGqBaDkTq8w4W/11m1oEPWYZq8CzHpPgaxz1lCAW IrOg== Received: by 10.216.136.131 with SMTP id w3mr1539010wei.15.1336624345242; Wed, 09 May 2012 21:32:25 -0700 (PDT) MIME-Version: 1.0 Sender: lists@eitanadler.com Received: by 10.223.120.6 with HTTP; Wed, 9 May 2012 21:31:55 -0700 (PDT) In-Reply-To: <2519A7A5-93F0-4A92-9A7E-5E2F81D4D4CF@mouf.net> References: <201205090543.q495hW3J002691@repoman.freebsd.org> <2519A7A5-93F0-4A92-9A7E-5E2F81D4D4CF@mouf.net> From: Eitan Adler Date: Thu, 10 May 2012 00:31:55 -0400 X-Google-Sender-Auth: MAKelkK2IPv-_Rn7o87-_Q1cEYk Message-ID: To: Steve Wills Content-Type: text/plain; charset=UTF-8 X-Gm-Message-State: ALoCoQlTpwPnaOFCzB0piobAvoc7mBMmmK7ZPTDhEjc+Amp5aWLosffEDGufD6Ds6lqeTdBA/GV8 Cc: cvs-ports@freebsd.org, cvs-all@freebsd.org, Alex Dupre , ports-committers@freebsd.org Subject: Re: cvs commit: ports/lang/php5 Makefile distinfo X-BeenThere: cvs-ports@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: CVS commit messages for the ports tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 10 May 2012 04:32:26 -0000 On 10 May 2012 00:26, Steve Wills wrote: > On May 10, 2012, at 12:20 AM, Eitan Adler wrote: > >> On 10 May 2012 00:10, Steve Wills wrote: >>> Hi, >>> >>> Thanks for making this happen so quickly! Just wondering, should the vuxml entry be updated or perhaps a new one added? >> >> CVE-2012-1823 seems to be documented already with the correct version numbers. >> This commit is missing a Security: tag but other that I don't see >> anything wrong. > > The current VuXML entry says php5 < 5.3.12. Is there really no need to upgrade to 5.3.13 or am I missing something? I'm an idiot - the fix in 5.3.12 was only a partial fix. When originally committed it should have had not . The existing VuXML should be updated and the body text should explain the specifics. I won't have time to do that tonight :( -- Eitan Adler Source & Ports committer X11, Bugbusting teams