Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 13 Jul 2015 02:52:12 +0000
From:      bugzilla-noreply@freebsd.org
To:        freebsd-ports-bugs@FreeBSD.org
Subject:   [Bug 201513] [security] graphics/libwmf - multiple vulnerabilities
Message-ID:  <bug-201513-13-auvx5oMkPD@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-201513-13@https.bugs.freebsd.org/bugzilla/>
References:  <bug-201513-13@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=201513

Jason Unovitch <jason.unovitch@gmail.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |jason.unovitch@gmail.com

--- Comment #3 from Jason Unovitch <jason.unovitch@gmail.com> ---
Thanks Sevan for reporting this.
I'm going to start looking at this port this week.  I've researched this and
sourced some patches out of the CentOS git for CVEs as far back as 2007 that
appear to be unfixed.  Not having a maintainer in such a long time as well as
not having an upstream in a decade+ shows.  I plan on taking maintainership and
starting to address these issues over the next few days.

For reference:
https://git.centos.org/tree/rpms!libwmf/80551b12c866fefd9ba6baf1d6effaeaf81bf376/SOURCES

-- 
You are receiving this mail because:
You are the assignee for the bug.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-201513-13-auvx5oMkPD>