Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 22 Jun 2015 19:33:04 +0000
From:      bugzilla-noreply@freebsd.org
To:        freebsd-ports-bugs@FreeBSD.org
Subject:   [Bug 201001] sysutils/logstash: Update to 1.5.1
Message-ID:  <bug-201001-13-7kxYTXOGJK@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-201001-13@https.bugs.freebsd.org/bugzilla/>
References:  <bug-201001-13@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=201001

--- Comment #4 from Jason Unovitch <jason.unovitch@gmail.com> ---
(In reply to Jason Unovitch from comment #3)

For submitter, in bug 200759 open for CVE-2015-4152 against logstash there was
only that one issue reported.  However the release notes for the next bugfix
release documents 3 security issues fixed:
https://www.elastic.co/blog/logstash-1-4-3-released

I'm tentatively thinking all three would be fixed in 1.5.1 however the 1.5.1
release notes aren't explicit on it.  I haven't done the research yet but any
insight before I do dig into it would appreciated.  Hopefully we should be able
to document it all correctly and up front on what issues were fixed once we
have the reference on what was fixed.

-- 
You are receiving this mail because:
You are the assignee for the bug.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-201001-13-7kxYTXOGJK>