Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 27 Nov 2005 17:57:19 +0000 (UTC)
From:      Hiroki Sato <hrs@FreeBSD.org>
To:        ports-committers@FreeBSD.org, cvs-ports@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   cvs commit: ports/print/ghostscript-afpl Makefile.inc ports/print/ghostscript-afpl/files patch-lib:ps2epsi.CAN-2004-0967 patch-lib:pv.sh.CAN-2004-0967 ports/print/ghostscript-gnu Makefile.inc ports/print/ghostscript-gnu/files patch-lib:pj-gs.sh.CAN-2004-0967 patch-lib:ps2epsi.CAN-2004-0967 patch-lib:pv.sh.CAN-2004-0967 patch-lib:sysvlp.sh.CAN-2004-0967 ...
Message-ID:  <200511271757.jARHvJS4001465@repoman.freebsd.org>

next in thread | raw e-mail | index | archive | help
hrs         2005-11-27 17:57:19 UTC

  FreeBSD ports repository

  Modified files:
    print/ghostscript-afpl Makefile.inc 
    print/ghostscript-gnu Makefile.inc 
    security/vuxml       vuln.xml 
  Added files:
    print/ghostscript-afpl/files patch-lib:ps2epsi.CAN-2004-0967 
                                 patch-lib:pv.sh.CAN-2004-0967 
    print/ghostscript-gnu/files patch-lib:pj-gs.sh.CAN-2004-0967 
                                patch-lib:ps2epsi.CAN-2004-0967 
                                patch-lib:pv.sh.CAN-2004-0967 
                                patch-lib:sysvlp.sh.CAN-2004-0967 
  Log:
  Security fix: several shell scripts included in the Ghostscript package
  allow local users to overwrite files via a symlink attack on temporary
  files.
  
  Security: CAN-2004-0967
  
  Revision  Changes    Path
  1.20      +2 -2      ports/print/ghostscript-afpl/Makefile.inc
  1.1       +12 -0     ports/print/ghostscript-afpl/files/patch-lib:ps2epsi.CAN-2004-0967 (new)
  1.1       +16 -0     ports/print/ghostscript-afpl/files/patch-lib:pv.sh.CAN-2004-0967 (new)
  1.8       +2 -2      ports/print/ghostscript-gnu/Makefile.inc
  1.1       +40 -0     ports/print/ghostscript-gnu/files/patch-lib:pj-gs.sh.CAN-2004-0967 (new)
  1.1       +12 -0     ports/print/ghostscript-gnu/files/patch-lib:ps2epsi.CAN-2004-0967 (new)
  1.1       +16 -0     ports/print/ghostscript-gnu/files/patch-lib:pv.sh.CAN-2004-0967 (new)
  1.1       +29 -0     ports/print/ghostscript-gnu/files/patch-lib:sysvlp.sh.CAN-2004-0967 (new)
  1.894     +41 -1     ports/security/vuxml/vuln.xml



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200511271757.jARHvJS4001465>