Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 3 Feb 2017 06:26:49 -0200
From:      Renato Botelho <garga@FreeBSD.org>
To:        Gleb Smirnoff <glebius@FreeBSD.org>
Cc:        src-committers@freebsd.org, svn-src-all@freebsd.org, svn-src-head@freebsd.org
Subject:   Re: svn commit: r313048 - in head: contrib/tcpdump contrib/tcpdump/lbl contrib/tcpdump/missing usr.sbin/tcpdump/tcpdump
Message-ID:  <CF5A979C-5EC7-4433-BE99-9E9609EFE97F@FreeBSD.org>
In-Reply-To: <201702012026.v11KQgS3069932@repo.freebsd.org>
References:  <201702012026.v11KQgS3069932@repo.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
> On 1 Feb 2017, at 18:26, Gleb Smirnoff <glebius@FreeBSD.org> wrote:
> 
> Author: glebius
> Date: Wed Feb  1 20:26:42 2017
> New Revision: 313048
> URL: https://svnweb.freebsd.org/changeset/base/313048
> 
> Log:
>  Update tcpdump to 4.9.0.
> 
>  It fixes many buffer overflow in different protocol parsers, but none of
>  them are critical, even in absense of Capsicum.
> 
>  Security:	CVE-2016-7922, CVE-2016-7923, CVE-2016-7924, CVE-2016-7925
>  Security:	CVE-2016-7926, CVE-2016-7927, CVE-2016-7928, CVE-2016-7929
>  Security:	CVE-2016-7930, CVE-2016-7931, CVE-2016-7932, CVE-2016-7933
>  Security:	CVE-2016-7934, CVE-2016-7935, CVE-2016-7936, CVE-2016-7937
>  Security:	CVE-2016-7938, CVE-2016-7939, CVE-2016-7940, CVE-2016-7973
>  Security:	CVE-2016-7974, CVE-2016-7975, CVE-2016-7983, CVE-2016-7984
>  Security:	CVE-2016-7985, CVE-2016-7986, CVE-2016-7992, CVE-2016-7993
>  Security:	CVE-2016-8574, CVE-2016-8575, CVE-2017-5202, CVE-2017-5203
>  Security:	CVE-2017-5204, CVE-2017-5205, CVE-2017-5341, CVE-2017-5342
>  Security:	CVE-2017-5482, CVE-2017-5483, CVE-2017-5484, CVE-2017-5485
>  Security:	CVE-2017-5486

Hi Gleb,

Do you plan to MFC it to stable/11 and stable/10?

--
Renato Botelho




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CF5A979C-5EC7-4433-BE99-9E9609EFE97F>