From nobody Sat Mar 16 13:38:55 2024 X-Original-To: dev-commits-doc-all@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4TxhzM39ZQz5Dr6M for ; Sat, 16 Mar 2024 13:38:55 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4TxhzM2fT7z42FC; Sat, 16 Mar 2024 13:38:55 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1710596335; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=rySCryZF2hilaNL7Omi3Uehl9C0Obp+OHmRbfVS8J14=; b=XR9zx3UuQI3F2xU1IKoqa2YF9s8omIHc2WA19LeTv4Ca/jl9W0eb27xA9EWZyRlRIMOj5B jRtZmkz+0NYCsAqADDt9tBe4YDDhHNAYsqvJMeFX+zv3Onuy/tQn7Q4jzwkUkPeTVnBDVy nFFCB09ZRcJPrNY8lb1doU3ptL+0wFj2+n/xQqpCfpk7f6XVORmml0ILzz2A/tJSQ9hOHC 4x9hYT9ePA8TJ77h1UQJYHBacK4PG1h65jukiMjC+NoguK3ZtJ8H5FCdZJIWrAT8lqLcoR j+Gqr+q6M9BvIhWZApgWOKjBetFyVLjaivdkeFCGquImgiHRCG2ufND00It2ww== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1710596335; a=rsa-sha256; cv=none; b=wpuVwxBIUTI64UpSPecPBttt852uu2C98KGltbXnhKy3BTb9uus95TvAQ+0F71qxg2KBxv dwUerCvFVz7CaINZQ1RyfzJldPMuVD3mMWXRcvI4XuNNWeJkZyXxjNukMEOZrLrB1tk7my P0VUISmtCwrkxQYNXEEW0Mq3cWBRnVpOrQ/FbRZ8wbGfUEBEhQd6eqS7el5Rskvvgi+Fw5 WIR3hVuNhpgqlqx/ryEF2hxBqcZ/oZhyQuDYN5d5cn21Vs7zVhaN/KYIywPqZBOndiYULL Y0wxDH4NxC2b8OvMCbcKck95tOsf4fRGUwTaS5l65oYQnaRKYuScq/v/7rK12Q== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1710596335; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=rySCryZF2hilaNL7Omi3Uehl9C0Obp+OHmRbfVS8J14=; b=si6ljhSTsrKIoWFjAHeSUV++VzfwfFdEaaH7Dmh4adv+tLuPZY014s1MGlv+HYtFrPBe81 jOUZBq7Fj3YUCkkZTxfC/IYl0tu+V8YH0kmnnpLzSQ7rrP3T6JOyO5Elve5zLuFzdUS208 qgcF8Kpgxw4kFWhcW08gvp8kZXAj2+Od4QLmSa2uN5gLDAFFd/CAQuJYfBMIg1NKFf+KVH FP2fUpwEQUunQxcJ/eukamhCapQ5Oy7/JX//wcyR9X+55O8De42wctZGK4HM536L7Ps4qe 3me6dLzO/3TX6SpaMGCRTi+cSDxzo2j2hV43lqpoFW268FL9v9oo7dzg48zBgQ== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4TxhzM27gszxJx; Sat, 16 Mar 2024 13:38:55 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.17.1/8.17.1) with ESMTP id 42GDctvk094578; Sat, 16 Mar 2024 13:38:55 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.17.1/8.17.1/Submit) id 42GDctqO094575; Sat, 16 Mar 2024 13:38:55 GMT (envelope-from git) Date: Sat, 16 Mar 2024 13:38:55 GMT Message-Id: <202403161338.42GDctqO094575@gitrepo.freebsd.org> To: doc-committers@FreeBSD.org, dev-commits-doc-all@FreeBSD.org From: Joseph Mingrone Subject: git: 1e665dbe14 - main - Porter's Handbook/Security: Update VuXML content List-Id: Commit messages for all branches of the doc repository List-Archive: https://lists.freebsd.org/archives/dev-commits-doc-all List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-dev-commits-doc-all@freebsd.org X-BeenThere: dev-commits-doc-all@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: jrm X-Git-Repository: doc X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: 1e665dbe1445e032d333b518788f7ec3d4389bd4 Auto-Submitted: auto-generated The branch main has been updated by jrm: URL: https://cgit.FreeBSD.org/doc/commit/?id=1e665dbe1445e032d333b518788f7ec3d4389bd4 commit 1e665dbe1445e032d333b518788f7ec3d4389bd4 Author: Joseph Mingrone AuthorDate: 2024-03-16 13:26:10 +0000 Commit: Joseph Mingrone CommitDate: 2024-03-16 13:38:24 +0000 Porter's Handbook/Security: Update VuXML content - Use a valid MITRE CVE instead of outdated CAN - Remove obsolete MITRE CVE ids, security focus bug id, US Cert id, and US Cert Security alerts - Update URLs for US Cert vulnerability note and Technical Cyber Security Alert PR: 277068 Reviewed by: jrm Sponsored by: https://reviews.freebsd.org/D43992 --- .../en/books/porters-handbook/security/_index.adoc | 16 +++------------- 1 file changed, 3 insertions(+), 13 deletions(-) diff --git a/documentation/content/en/books/porters-handbook/security/_index.adoc b/documentation/content/en/books/porters-handbook/security/_index.adoc index 7843b770d7..3c3c77b0b0 100644 --- a/documentation/content/en/books/porters-handbook/security/_index.adoc +++ b/documentation/content/en/books/porters-handbook/security/_index.adoc @@ -168,12 +168,8 @@ Now consider a realistic VuXML entry: <.> SA-10:75.foo <.> ports/987654 <.> - CAN-2010-0201 <.> - CAN-2010-0466 - 96298 <.> - CA-2010-99 <.> + CVE-2023-48795 <.> 740169 <.> - SA10-99A <.> SA10-99A <.> http://marc.theaimsgroup.com/?l=bugtraq&m=203886607825605 <.> http://j.r.hacker.com/advisories/1 <.> @@ -213,15 +209,9 @@ The above example specifies that affected are versions `1.6` and up to but not i <.> This is a https://cve.mitre.org/[MITRE CVE] identifier. -<.> This is a https://www.securityfocus.com/bid/[SecurityFocus Bug ID]. +<.> This is a https://www.kb.cert.org/vuls/[US-CERT] vulnerability note. -<.> This is a https://www.cert.org/[US-CERT] security advisory. - -<.> This is a https://www.cert.org/[US-CERT] vulnerability note. - -<.> This is a https://www.cert.org/[US-CERT] Cyber Security Alert. - -<.> This is a https://www.cert.org/[US-CERT] Technical Cyber Security Alert. +<.> This is a https://www.cisa.gov/news-events/cybersecurity-advisories[US-CERT] Technical Cyber Security Alert. <.> This is a URL to an archived posting in a mailing list. The attribute `msgid` is optional and may specify the message ID of the posting.