Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 24 Jan 2014 19:45:40 +0100
From:      Remko Lodder <remko@FreeBSD.org>
To:        Warren Block <wblock@wonkity.com>
Cc:        svn-ports-head@freebsd.org, svn-ports-all@freebsd.org, Warren Block <wblock@FreeBSD.org>, Matthias Andree <mandree@FreeBSD.org>, ports-committers@freebsd.org
Subject:   Re: svn commit: r340819 - head/security/vuxml
Message-ID:  <9A578734-9E5A-45C5-B250-41A4CE6B78BC@FreeBSD.org>
In-Reply-To: <alpine.BSF.2.00.1401240859200.87046@wonkity.com>
References:  <201401231003.s0NA3XaT070054@svn.freebsd.org> <52E17557.3040208@FreeBSD.org> <0231531E-F8BA-4053-B2DC-C1CD081309DB@FreeBSD.org> <52E19A89.1080700@FreeBSD.org> <3AB46F29-CD84-4E4B-949B-CB99CFDC572D@FreeBSD.org> <AC59A9D6-9BD4-482F-8F8A-1B47C7AB1835@FreeBSD.org> <alpine.BSF.2.00.1401240859200.87046@wonkity.com>

next in thread | previous in thread | raw e-mail | index | archive | help

--Apple-Mail=_002A286F-87A5-4125-B496-53D4569607C8
Content-Transfer-Encoding: quoted-printable
Content-Type: text/plain;
	charset=windows-1252


On 24 Jan 2014, at 17:03, Warren Block <wblock@wonkity.com> wrote:

> On Fri, 24 Jan 2014, Remko Lodder wrote:
>=20
>> It seems that igor can do some of the checking already;
>>=20
>> [remko@speeltuin /virtual/workspace/subversion/ports/security/vuxml]$ =
igor vuln.xml  | more
>> vuln.xml:55:wrap long line:    <topic>HTMLDOC -- buffer overflow =
issues when reading AFM files[ ]and parsing page sizes</topic>
> ...
>> Not yet perfect[tm] but it was not intended from start for vuxml, but =
we might lure wblock into perhaps have a look at that?
>=20
> A quick version that adds the missing tags is available here:
> http://www.wonkity.com/~wblock/tmp/vux/igor
>=20
> If there are special tests needed just for vuln.xml, a -V option could =
be added.
>=20
> For ANSI color (my preferred mode)
> % igor -R /usr/ports/security/vuxml/vuln.xml | less -RS

Ah this looks promising already! I got more =93complaints=94 today from =
koobs that the current way to add a new entry is too
difficult. I understand the problem(s) and igor is a promising way to =
verify some things already before something else
is created to do this better (before verification is actually taking =
place)

Thanks a lot for quickly jumping into this!

Cheers
Remko

> _______________________________________________
> svn-ports-all@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/svn-ports-all
> To unsubscribe, send any mail to =
"svn-ports-all-unsubscribe@freebsd.org"

--=20

/"\   Best regards,                      | remko@FreeBSD.org
\ /   Remko Lodder                       | remko@EFnet
 X    http://www.evilcoder.org/          |
/ \   ASCII Ribbon Campaign              | Against HTML Mail and News


--Apple-Mail=_002A286F-87A5-4125-B496-53D4569607C8
Content-Transfer-Encoding: 7bit
Content-Disposition: attachment;
	filename=signature.asc
Content-Type: application/pgp-signature;
	name=signature.asc
Content-Description: Message signed with OpenPGP using GPGMail

-----BEGIN PGP SIGNATURE-----
Comment: GPGTools - http://gpgtools.org

iQIcBAEBAgAGBQJS4rTVAAoJEKjD27JZ84ywSFEP/R02Qz21jQWzTpyMryR8XNrU
relEJVuvyg7x9RuZs4jZcrx99Fxf+MltlKYbdAiD9oT/lx8YdqA3Xmppnu39Dhkm
r6xM/YZZY25x2wpkxsAt0V2rVav/7pY5K1KM0Avkj2EeK/6Up/72mqniHFkpfS6j
blT7VO1LzXkLbRGsFc1TYRlVXSe75tes0M8z/hk+FvLuYcWusEYep/KGC3HjIgZL
odP/WrZaN4nXuQcOHwRuEO87toH39BlB8IPcHyC/u/TFDx5vEQTeYsq0Vdj54YJ4
NbG8G8m21cn4OdmnHTiJSJOXljIV1qOQ2LmC4tR1hrFfz70y0JHSlZOiiOBPjBpN
rLrAvoy/7j52jjCTZR5zgBJH0xmhZqsWINxODOiqRqFlf4Kdnzo4AcY9PLB9l9FP
AofuiGmIIC3QPrp/3Hjkiml/QCE7tgEUfJhX/g0IQKvOdajCLmBDemZimf0OaFGx
jsIMfcoBwLjtjoY7D846Omrk9QWP0qnSmOO6wsBUI6ts2hp7s8NphieXA3Jc/R8i
nKQXFeLVPIUJqx7c3xOjoYB1aRVyq4HLT7FVSyMmYsY16ZGdNtDj1PJzl7RvPGvb
Ci13y+XFwqbbc2IMh0Uf5j/exzTNapDidTJL9lH0xhJmDZ7yNVxM6AmKqkE2Lkqa
W09KdFDYyyLij5oL55/s
=qg3K
-----END PGP SIGNATURE-----

--Apple-Mail=_002A286F-87A5-4125-B496-53D4569607C8--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?9A578734-9E5A-45C5-B250-41A4CE6B78BC>