From owner-freebsd-security Sun Aug 19 7:46:47 2001 Delivered-To: freebsd-security@freebsd.org Received: from freefall.freebsd.org (freefall.freebsd.org [216.136.204.21]) by hub.freebsd.org (Postfix) with ESMTP id 5D37237B410; Sun, 19 Aug 2001 07:46:43 -0700 (PDT) (envelope-from trevor@FreeBSD.org) Received: from localhost (trevor@localhost) by freefall.freebsd.org (8.11.4/8.11.4) with ESMTP id f7JEkh695308; Sun, 19 Aug 2001 07:46:43 -0700 (PDT) (envelope-from trevor@freefall.freebsd.org) Date: Sun, 19 Aug 2001 07:46:42 -0700 (PDT) From: Trevor Johnson To: , Subject: Netscape 6 Message-ID: <20010819074514.M95232-100000@freefall.freebsd.org> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org Date: Sun, 19 Aug 2001 07:43:49 -0700 (PDT) From: Trevor Johnson To: cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org Subject: cvs commit: ports/www/linux-netscape6 Makefile distinfo pkg-descr trevor 2001/08/19 07:43:49 PDT Modified files: www/linux-netscape6 Makefile distinfo pkg-descr Log: Update to 6.1. According to Bennett Samowich on the Bugtraq list, this version "does not allow access to privileged ports" whereas the earlier ones do. I have not tested this claim. If true, the change should lessen harm from the HTML form protocol attack described at http://www.remote.org/jochen/sec/hfpa/ . Mark broken, because the menus no longer display correctly. Mention the AIM port. Don't mention the release notes, since they seem to be unmaintained. Touch up FTP list. Revision Changes Path 1.33 +4 -7 ports/www/linux-netscape6/Makefile 1.6 +8 -8 ports/www/linux-netscape6/distinfo 1.9 +4 -5 ports/www/linux-netscape6/pkg-descr To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message