Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 4 Mar 2019 11:43:01 +0100
From:      Tobias Kortkamp <tobik@freebsd.org>
To:        Jochen Neumeister <joneum@freebsd.org>
Cc:        ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org
Subject:   Re: svn commit: r494571 - head/www/mybb
Message-ID:  <20190304104300.GA61251@urd.tobik.me>
In-Reply-To: <201903041002.x24A2c3F085833@repo.freebsd.org>
References:  <201903041002.x24A2c3F085833@repo.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help

--FCuugMFkClbJLl1L
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Mon, Mar 04, 2019 at 10:02:38AM +0000, Jochen Neumeister wrote:
> Author: joneum
> Date: Mon Mar  4 10:02:38 2019
> New Revision: 494571
> URL: https://svnweb.freebsd.org/changeset/ports/494571
>=20
> Log:
>   in r494382, et to update GH_TAGNAME. This fixes it
>  =20
>   MFH:		2019Q1
>   Security:	395ed9d5-3cca-11e9-9ba0-4c72b94353b5
>   Sponsored by:	Netzkommune GmbH
>=20
> Modified:
>   head/www/mybb/Makefile
>   head/www/mybb/distinfo
>   head/www/mybb/pkg-plist
>=20
> Modified: head/www/mybb/Makefile
> =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D
> --- head/www/mybb/Makefile	Mon Mar  4 09:45:56 2019	(r494570)
> +++ head/www/mybb/Makefile	Mon Mar  4 10:02:38 2019	(r494571)
> @@ -11,7 +11,7 @@ COMMENT=3D	PHP-based bulletin board / discussion forum s
>  LICENSE=3D	GPLv3
> =20
>  USE_GITHUB=3D	yes
> -GH_TAGNAME=3D	${PORTNAME}_1819
> +GH_TAGNAME=3D	${PORTNAME}_1820

Do you plan to update vuxml too?  Our mybb-1.8.20 is mybb-1.8.19
in reality which is still vulnerable, but is not marked as such by
pkg audit.

$ pkg audit mybb-1.8.19
mybb-1.8.19 is vulnerable:
mybb -- vulnerabilities
WWW: https://vuxml.FreeBSD.org/freebsd/395ed9d5-3cca-11e9-9ba0-4c72b94353b5=
=2Ehtml

1 problem(s) in the installed packages found.

$ pkg audit mybb-1.8.20=20
0 problem(s) in the installed packages found.


--FCuugMFkClbJLl1L
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=MGVP
-----END PGP SIGNATURE-----

--FCuugMFkClbJLl1L--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20190304104300.GA61251>