From owner-cvs-all@FreeBSD.ORG Wed Jun 27 22:58:30 2012 Return-Path: Delivered-To: cvs-all@FreeBSD.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 33B55106566C; Wed, 27 Jun 2012 22:58:30 +0000 (UTC) (envelope-from delphij@delphij.net) Received: from anubis.delphij.net (anubis.delphij.net [64.62.153.212]) by mx1.freebsd.org (Postfix) with ESMTP id 136908FC12; Wed, 27 Jun 2012 22:58:30 +0000 (UTC) Received: from delta.delphij.net (drawbridge.ixsystems.com [206.40.55.65]) (using TLSv1 with cipher DHE-RSA-CAMELLIA256-SHA (256/256 bits)) (No client certificate requested) by anubis.delphij.net (Postfix) with ESMTPSA id 906C9C0CC; Wed, 27 Jun 2012 15:58:24 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=delphij.net; s=anubis; t=1340837904; bh=YbNGDiKjRMgIU891VXp+LJP0ELY+fdorLJ35XMskI/A=; h=Date:From:Reply-To:To:CC:Subject:References:In-Reply-To; b=MSg2YD6Z0M6XPNVyBZLwcMmmUl8hL6WDHfAzKvYCtMbJE/tH3CdKGzLB/G/pzT4CB THDtnvuIWFTOrb9iQW4JFNZt1eQGon9ghJ+NnOK4cYVb2puT7bNkOyRf5GZyF5Lgm9 zWdweVh34W9tK/JJmxaVo5oo2hqCCsqkFvMJLwJY= Message-ID: <4FEB9010.50004@delphij.net> Date: Wed, 27 Jun 2012 15:58:24 -0700 From: Xin Li Organization: The FreeBSD Project MIME-Version: 1.0 To: Wesley Shields References: <201206271534.q5RFYiqv033640@repoman.freebsd.org> <20120627193551.GB89288@atarininja.org> In-Reply-To: <20120627193551.GB89288@atarininja.org> X-Enigmail-Version: 1.4.2 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Cc: Ryan Steinmetz , cvs-ports@FreeBSD.org, d@delphij.net, cvs-all@FreeBSD.org, ports-committers@FreeBSD.org Subject: Re: cvs commit: ports/security/vuxml vuln.xml X-BeenThere: cvs-all@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: d@delphij.net List-Id: **OBSOLETE** CVS commit messages for the entire tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 27 Jun 2012 22:58:30 -0000 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 On 06/27/12 12:35, Wesley Shields wrote: > On Wed, Jun 27, 2012 at 03:34:44PM +0000, Ryan Steinmetz wrote: >> zi 2012-06-27 15:34:44 UTC >> >> FreeBSD ports repository >> >> Modified files: security/vuxml vuln.xml Log: - Document >> recent FreeBSD SA's for 2012: SA-12:04.sysret, SA-12:03.bind, >> SA-12:02.crypt, SA-12:01.openssl >> >> Reviewed by: wxs > > Thanks! I had been meaning to do this but keep running out of time > to do it. > > It would be nice if these were prepared by someone(TM) and > committed along with the fixes. Getting these out to portaudit > users is a useful thing to do. I don't want to add on to secteam's > work but I do want to at least bring it up as something we should > formalize for SAs. > > Before anyone asks: yes, if I knew about SAs going out ahead of > time I would make sure I prepare the updates to go in time. It's > just so annoying to do after-the-fact that I kept putting it off. Thanks! I've added this to secteam@'s advisory template so it won't get forgotten. Cheers, - -- Xin LI https://www.delphij.net/ FreeBSD - The Power to Serve! Live free or die -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.19 (FreeBSD) iQEcBAEBCAAGBQJP65AQAAoJEG80Jeu8UPuzX6QIAIt6i8oog3vveq3AX2e89PTB 9UDf4utmumR6hfu3HrbAm31V/ZqIxs6JwE/kBYAV5DYNO7/6oJzpw01wKBpU21yU adG5BRL2CCow1wHmIibhSEaPgFZfG6ecndwRjaR/OwOVNsmdkbSYaup++nF1YEoP BLn+HoGTUWBppsvvEupngF0XfhEfwEpNZLBRhFseaZ7kCWoUkPIRC9qKdeDDDbwh veHXfw6BPz1SOr/t9RU2MVd8f/tyQ4Vz+htEXMTrIXtBHne3ijrO/kYX+mQqlhbn N/j6HOTY98O0O6gHM2tfRhngjvsOOfHC/ugPO4XMBhJ0MIni5MNvXs62TChGy1o= =//jI -----END PGP SIGNATURE-----