From nobody Sat Mar 16 15:20:24 2024 X-Original-To: dev-commits-doc-all@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4TxlDS75hFz5F1bk for ; Sat, 16 Mar 2024 15:20:24 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4TxlDS6SWHz4JXG; Sat, 16 Mar 2024 15:20:24 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1710602424; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=vM6OXNrvn8iHtq7SxoqYFV+i1IHUmenXiPahcZclSxg=; b=q9/ShyFDjFIbvVZEv9o27L+KNYOue58t8TFN17b6EU1rE6k0LXcMa54B3Nybwc12f+MxjA G9as8Wcdnp9OATMtuXJXXURg29iKFpc6FAj7lLJJWnlj2B8L4Q0bAbCrfd8Ou/lUt9P5at lx9Q2NN9ObN8a5KNLp0kmQhgQlcwwWfn8bKXROklziDgWgXc0aDzM5VRtwJIwVqkORbgx+ l9gAk3zsH7HYPoU32dEQrREXQhiMOA5roC4wzSAsh4NK4jTOYUQJOhOMkyhUJg5SGeQ1YK QKl0LnmX0rOAuYb28DWzJKgLDXnSPzeUy44UHhSwV7O9lAc0NmJ6QrDt9C6CRw== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1710602424; a=rsa-sha256; cv=none; b=QII+C8vlO4JbQ64MUQR4ONUmFG1CeRls7ALtcbvkJmiezzbq9fA73D7GA/f3y+ntkrjIe+ GPfLzQb7G8UVt50zSTy+EzF8CXrVLUiAW3Te7pKCO25iSmjDZlg99ZInkSq4fzyTr667dH Abi4Xc3BtaUcn9OeQZ0Au0rmF2acffNBfwvnmPhKImi3RxzBQ6VLL4YV9ojhewJxFrg88+ npBrww5ljE/omovWMQ5TDnOHO8NJOBXt5ixOQOrhykvuWixpJH9nsvukEdfdTZ1H6M9K+e hYLh0qjsgsyQgESTbWF08DCsaBWZQ42KrhFRxsxmR7w0Vr4562lZ5GLlfuYEdQ== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1710602424; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=vM6OXNrvn8iHtq7SxoqYFV+i1IHUmenXiPahcZclSxg=; b=OEIFb0xV30ddzswii0eqgwLwS/2TVZoRd4Q6hdhzYCphGqIrKLLZjl61hJchr12Y06uA/s 7lGbqMFrgZABwHSECClLgAKXovpiUXh6ycrnZV4adAmkpnokp9IH62sBP8Hhuft9nkx5hP cMcAwPruyhE5itp+ekmFzF2+u7klXEenHwvI/pd+Y0hMUJOlai2C95OL2yPz90F3YdZhQT pO+B1P0uw2ENe6AxGXq4UFSazU9TcESVjf/JNWn/hgpVriu5SJEwPzGIJTE9cjF69PwRTF IDFjk2l/94YyU/MFR4hXFeP1UrDCtdGAqzmSMk/Sx/fC8/Wovz14WQsv0RpWlA== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4TxlDS5ffrz10Z0; Sat, 16 Mar 2024 15:20:24 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.17.1/8.17.1) with ESMTP id 42GFKO9w072352; Sat, 16 Mar 2024 15:20:24 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.17.1/8.17.1/Submit) id 42GFKONP072349; Sat, 16 Mar 2024 15:20:24 GMT (envelope-from git) Date: Sat, 16 Mar 2024 15:20:24 GMT Message-Id: <202403161520.42GFKONP072349@gitrepo.freebsd.org> To: doc-committers@FreeBSD.org, dev-commits-doc-all@FreeBSD.org From: Joseph Mingrone Subject: git: 21d7bdfba4 - main - Porter's Handbook/Security: Update VuXML content List-Id: Commit messages for all branches of the doc repository List-Archive: https://lists.freebsd.org/archives/dev-commits-doc-all List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-dev-commits-doc-all@freebsd.org X-BeenThere: dev-commits-doc-all@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: jrm X-Git-Repository: doc X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: 21d7bdfba4497c62b000a8434c30c1a9d56dc780 Auto-Submitted: auto-generated The branch main has been updated by jrm: URL: https://cgit.FreeBSD.org/doc/commit/?id=21d7bdfba4497c62b000a8434c30c1a9d56dc780 commit 21d7bdfba4497c62b000a8434c30c1a9d56dc780 Author: Chris Moerz AuthorDate: 2024-03-16 15:13:05 +0000 Commit: Joseph Mingrone CommitDate: 2024-03-16 15:19:11 +0000 Porter's Handbook/Security: Update VuXML content - Use a valid MITRE CVE instead of outdated CAN - Remove obsolete MITRE CVE ids, security focus bug id, US Cert id, and US Cert Security alert - Update URLs for US Cert vulnerability note and Technical Cyber Security Alert PR: 277068 Reviewed by: jrm Differential Revision: https://reviews.freebsd.org/D43992 --- .../en/books/porters-handbook/security/_index.adoc | 16 +++------------- 1 file changed, 3 insertions(+), 13 deletions(-) diff --git a/documentation/content/en/books/porters-handbook/security/_index.adoc b/documentation/content/en/books/porters-handbook/security/_index.adoc index 7843b770d7..3c3c77b0b0 100644 --- a/documentation/content/en/books/porters-handbook/security/_index.adoc +++ b/documentation/content/en/books/porters-handbook/security/_index.adoc @@ -168,12 +168,8 @@ Now consider a realistic VuXML entry: <.> SA-10:75.foo <.> ports/987654 <.> - CAN-2010-0201 <.> - CAN-2010-0466 - 96298 <.> - CA-2010-99 <.> + CVE-2023-48795 <.> 740169 <.> - SA10-99A <.> SA10-99A <.> http://marc.theaimsgroup.com/?l=bugtraq&m=203886607825605 <.> http://j.r.hacker.com/advisories/1 <.> @@ -213,15 +209,9 @@ The above example specifies that affected are versions `1.6` and up to but not i <.> This is a https://cve.mitre.org/[MITRE CVE] identifier. -<.> This is a https://www.securityfocus.com/bid/[SecurityFocus Bug ID]. +<.> This is a https://www.kb.cert.org/vuls/[US-CERT] vulnerability note. -<.> This is a https://www.cert.org/[US-CERT] security advisory. - -<.> This is a https://www.cert.org/[US-CERT] vulnerability note. - -<.> This is a https://www.cert.org/[US-CERT] Cyber Security Alert. - -<.> This is a https://www.cert.org/[US-CERT] Technical Cyber Security Alert. +<.> This is a https://www.cisa.gov/news-events/cybersecurity-advisories[US-CERT] Technical Cyber Security Alert. <.> This is a URL to an archived posting in a mailing list. The attribute `msgid` is optional and may specify the message ID of the posting.