Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 04 Sep 2019 00:19:54 +0000
From:      bugzilla-noreply@freebsd.org
To:        ports-bugs@FreeBSD.org
Subject:   [Bug 240324] security/vuxml: CVE-2019-10197 should exclude before 4.9.0
Message-ID:  <bug-240324-7788@https.bugs.freebsd.org/bugzilla/>

next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D240324

            Bug ID: 240324
           Summary: security/vuxml: CVE-2019-10197 should exclude before
                    4.9.0
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
               URL: https://www.samba.org/samba/security/CVE-2019-10197.ht
                    ml
                OS: Any
            Status: New
          Severity: Affects Some People
          Priority: ---
         Component: Individual Port(s)
          Assignee: ports-secteam@FreeBSD.org
          Reporter: dereks@lifeofadishwasher.com
             Flags: maintainer-feedback?(ports-secteam@FreeBSD.org)
          Assignee: ports-secteam@FreeBSD.org

According to the mailing list post found here
https://www.samba.org/samba/security/CVE-2019-10197.html CVE-2019-10197 add=
ed
by 511050 for vid "145a3e17-cea2-11e9-81e2-005056a311d1" should be:

  ...
  <range><ge>4.9.0</ge><lt>4.10.8</lt></range>
  ...

This current range includes 4.8.0 (net/samba48) that is still supported but=
 not
part of CVE-2019-10197.

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-240324-7788>