cvs commit: ports/security/vuxml vuln.xml

Adam McDougall mcdouga9 at egr.msu.edu
Thu Nov 4 17:29:53 UTC 2010


On 11/03/10 21:54, Sunpoet Po-Chuan Hsieh wrote:
> On Wed, Nov 03, 2010 at 05:46:08PM -0400, Adam McDougall wrote:
>> On 12/10/09 10:27, Wesley Shields wrote:
>>> wxs         2009-12-10 15:27:42 UTC
>>>
>>>    FreeBSD ports repository
>>>
>>>    Modified files:
>>>      security/vuxml       vuln.xml
>>>    Log:
>>>    - Document dovecot insecure directory permissions
>>>
>>>    Revision  Changes    Path
>>>    1.2080    +31 -1     ports/security/vuxml/vuln.xml
>>> _______________________________________________
>>> cvs-ports at freebsd.org mailing list
>>> http://lists.freebsd.org/mailman/listinfo/cvs-ports
>>> To unsubscribe, send any mail to "cvs-ports-unsubscribe at freebsd.org"
>>>
>>
>> Is it possible to change this entry so it reflects that the
>> vulnerability does not affect versions lower than 1.2?  I know 1.1
>> is no longer in ports but I must still run it on my site for now and
>> portaudit is falsely claiming that my 1.1 is vulnerable.  Thanks.
>>
>> http://www.dovecot.org/list/dovecot-news/2009-November/000143.html
>> _______________________________________________
>> cvs-ports at freebsd.org mailing list
>> http://lists.freebsd.org/mailman/listinfo/cvs-ports
>> To unsubscribe, send any mail to "cvs-ports-unsubscribe at freebsd.org"
>
> Hi Adam,
>
>    I've committed this fix. It should be OK now. Thanks.
>
> Regards,

Thank you much!  I just noticed an email from nagios reporting "OK 
security : 0 vulnerable".  Hooray!


More information about the cvs-ports mailing list