Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 22 Mar 2017 03:01:06 +0000 (UTC)
From:      Jason Unovitch <junovitch@FreeBSD.org>
To:        ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org
Subject:   svn commit: r436674 - head/security/vuxml
Message-ID:  <201703220301.v2M316ER068287@repo.freebsd.org>

next in thread | raw e-mail | index | archive | help
Author: junovitch
Date: Wed Mar 22 03:01:06 2017
New Revision: 436674
URL: https://svnweb.freebsd.org/changeset/ports/436674

Log:
  Update hostapd on two older entries.
  
  Fixes were not backported prior. Recent update is v2.6 as noted in advisory.
  
  Security:	CVE-2015-5310
  Security:	CVE-2015-5315
  Security:	CVE-2015-5316
  Security:	CVE-2016-4476
  Security:	CVE-2016-4477
  Security:	https://vuxml.FreeBSD.org/freebsd/967b852b-1e28-11e6-8dd3-002590263bf5.html
  Security:	https://vuxml.FreeBSD.org/freebsd/976567f6-05c5-11e6-94fa-002590263bf5.html

Modified:
  head/security/vuxml/vuln.xml

Modified: head/security/vuxml/vuln.xml
==============================================================================
--- head/security/vuxml/vuln.xml	Wed Mar 22 01:46:19 2017	(r436673)
+++ head/security/vuxml/vuln.xml	Wed Mar 22 03:01:06 2017	(r436674)
@@ -16103,12 +16103,16 @@ and CVE-2013-0155.</p>
   </vuln>
 
   <vuln vid="967b852b-1e28-11e6-8dd3-002590263bf5">
-    <topic>wpa_supplicant -- psk configuration parameter update allowing arbitrary data to be written</topic>
+    <topic>hostapd and wpa_supplicant -- psk configuration parameter update allowing arbitrary data to be written</topic>
     <affects>
       <package>
 	<name>wpa_supplicant</name>
 	<range><lt>2.5_2</lt></range>
       </package>
+      <package>
+	<name>hostapd</name>
+	<range><lt>2.6</lt></range>
+      </package>
     </affects>
     <description>
       <body xmlns="http://www.w3.org/1999/xhtml">;
@@ -16128,7 +16132,7 @@ and CVE-2013-0155.</p>
     <dates>
       <discovery>2016-05-02</discovery>
       <entry>2016-05-20</entry>
-      <modified>2016-05-20</modified>
+      <modified>2017-03-22</modified>
     </dates>
   </vuln>
 
@@ -17496,12 +17500,16 @@ and CVE-2013-0155.</p>
   </vuln>
 
   <vuln vid="976567f6-05c5-11e6-94fa-002590263bf5">
-    <topic>wpa_supplicant -- multiple vulnerabilities</topic>
+    <topic>hostapd and wpa_supplicant -- multiple vulnerabilities</topic>
     <affects>
       <package>
 	<name>wpa_supplicant</name>
 	<range><lt>2.5_1</lt></range>
       </package>
+      <package>
+	<name>hostapd</name>
+	<range><lt>2.6</lt></range>
+      </package>
     </affects>
     <description>
       <body xmlns="http://www.w3.org/1999/xhtml">;
@@ -17532,6 +17540,7 @@ and CVE-2013-0155.</p>
     <dates>
       <discovery>2015-11-10</discovery>
       <entry>2016-04-19</entry>
+      <modified>2017-03-22</modified>
     </dates>
   </vuln>
 



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201703220301.v2M316ER068287>