Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 3 May 2012 12:37:57 -0400
From:      Eitan Adler <eadler@freebsd.org>
To:        Hiroki Sato <hrs@freebsd.org>
Cc:        ports-security@freebsd.org, cvs-ports@freebsd.org, ports-committers@freebsd.org, cvs-all@freebsd.org, tota@freebsd.org
Subject:   Re: cvs commit: ports/japanese Makefile ports/japanese/font-ricty Makefile distinfo pkg-descr pkg-plist ports/japanese/font-ricty/files 20-unhint-ricty.conf 20-unhint-rictydiscord.conf 62-fonts-ricty.conf 62-fonts-rictydiscord.conf pkg-install.in
Message-ID:  <CAF6rxgm_xUiEXpBJK4JnL%2BFeTvJnxM7011-aE1mB%2BzuX3%2BSRNg@mail.gmail.com>
In-Reply-To: <20120503.194850.619112453467893578.hrs@allbsd.org>
References:  <201205020257.q422vjf9029468@repoman.freebsd.org> <20120503.194850.619112453467893578.hrs@allbsd.org>

index | next in thread | previous in thread | raw e-mail

On 3 May 2012 06:48, Hiroki Sato <hrs@freebsd.org> wrote:
>  Please do not create do-fetch target in this way because it bypasses
>  the distinfo checksum.  Also, this port should have NO_PACKAGE
>  because redistribution of the generated font files is not allowed by
>  the license.

Yes, this is a security risk and should be fixed as fast as possible.


-- 
Eitan Adler
Source & Ports committer
X11, Bugbusting teams


home | help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CAF6rxgm_xUiEXpBJK4JnL%2BFeTvJnxM7011-aE1mB%2BzuX3%2BSRNg>