Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 27 Sep 2017 21:16:36 +0000 (UTC)
From:      Matthias Andree <mandree@FreeBSD.org>
To:        ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org
Subject:   svn commit: r450790 - head/security/vuxml
Message-ID:  <201709272116.v8RLGa1D059640@repo.freebsd.org>

next in thread | raw e-mail | index | archive | help
Author: mandree
Date: Wed Sep 27 21:16:36 2017
New Revision: 450790
URL: https://svnweb.freebsd.org/changeset/ports/450790

Log:
  Extend OpenVPN security issue to slave ports.
  
  Security:	CVE-2017-12166
  Security:	3dd6ccf4-a3c6-11e7-a52e-0800279f2ff8

Modified:
  head/security/vuxml/vuln.xml

Modified: head/security/vuxml/vuln.xml
==============================================================================
--- head/security/vuxml/vuln.xml	Wed Sep 27 21:15:49 2017	(r450789)
+++ head/security/vuxml/vuln.xml	Wed Sep 27 21:16:36 2017	(r450790)
@@ -62,6 +62,14 @@ Notes:
     <topic>OpenVPN -- out-of-bounds write in legacy key-method 1</topic>
     <affects>
       <package>
+	<name>openvpn-polarssl</name>
+	<range><lt>2.3.18</lt></range>
+      </package>
+      <package>
+	<name>openvpn-mbedtls</name>
+	<range><ge>2.4.0</ge><lt>2.4.4</lt></range>
+      </package>
+      <package>
 	<name>openvpn</name>
 	<range><ge>2.4.0</ge><lt>2.4.4</lt></range>
 	<range><lt>2.3.18</lt></range>



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201709272116.v8RLGa1D059640>