cvs commit: ports MOVED ports/security Makefile ports/security/isolate Makefile distinfo pkg-descr

Wesley Shields wxs at FreeBSD.org
Tue Aug 17 14:36:35 UTC 2010


On Tue, Aug 17, 2010 at 02:24:16PM +0000, Baptiste Daroussin wrote:
> 2010/8/17 Wesley Shields <wxs at freebsd.org>:
> > On Tue, Aug 17, 2010 at 01:04:26PM +0000, Baptiste Daroussin wrote:
> >> bapt ? ? ? ?2010-08-17 13:04:26 UTC
> >>
> >> ? FreeBSD ports repository
> >>
> >> ? Modified files:
> >> ? ? . ? ? ? ? ? ? ? ? ? ?MOVED
> >> ? ? security ? ? ? ? ? ? Makefile
> >> ? Removed files:
> >> ? ? security/isolate ? ? Makefile distinfo pkg-descr
> >> ? Log:
> >> ? Security vulnerability: local root privileges escalation problems
> >
> > Wow, this seems a little excessive to me. Why was this removed? Is
> > upstream not going to fix the problem(s)? Isn't marking it broken and a
> > vuxml entry enough while we give them time to address the problems?
> >
> > -- WXS
> >
> 
> Sorry my log wasn't descriptive enough. Upstream asked me to remove
> the ports, so did the maintainer.
> 
> Also upstream removed the google code page for the project and
> currently doesn't plan a fix.
> 
> I'll try to make better commit log next time.

I was just curious because this seemed like a knee-jerk reaction on
our part. Turns out that it was directed by upstream and maintainer,
which is completely understandable. I was merely trying to make sure we
avoid knee-jerk reactions. Thank you for the clarification.

-- WXS


More information about the cvs-ports mailing list