From nobody Tue Nov 15 16:37:16 2022 X-Original-To: dev-commits-ports-all@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4NBWzw5L51z4hBXt; Tue, 15 Nov 2022 16:37:16 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4NBWzw4Zw8z3tcr; Tue, 15 Nov 2022 16:37:16 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1668530236; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=JrxjnrE2CmsQ5ezYtnlQDxZbQc1DYhQgDxSQoswQkjE=; b=wAh9HD/nLHVkBkTHodUY2zjHzhNMuG3p48BdOFh1bUImL1YO/g5fl/4TNBXcsTwX9mVYX1 inLNvXUVFs9suWzUNTGIMXx4VyQ4vETMkXylRaDBA9LCotjmU3+8fqPc4OrseN6e5+cT1Z 553HYDdUCZcscSA6i9Lbz28l/kKybDr76GUplV4/BJczsjoQqMuKHnV0TsL8f62/wYmr7M OE5LmApWGtYmSJb92a8w1VyK03Gb3DevmzJkpb37Ekfj6Ltv/PPkG45HKEOuAo8HKr970s tAUxOtWvaiD8P6ON5VwfLx8mTQ183ERH6KHcjUveoHDCkuRWKgshOoqYS2hTsA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1668530236; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=JrxjnrE2CmsQ5ezYtnlQDxZbQc1DYhQgDxSQoswQkjE=; b=j9YelEQNkqfhKcSljthdlqI0JO5fgMMpTIiEMOjqi/8Y3Wd4M36nvOtUqenwbzs6NND/oK +WNKF7gZ+dwJdGi0ZguMfRZndrTVgqopJLfyoKqVGaHB5qWgMGg5drZZ4FM/hWqkkpwpIk Rv3vN1Ucw+OrHyi6jzkxmbizDEOn3cJRVQ3wDrj23EGBH+B6sDGQjN1/vUmSXvOI6Mlaf2 FxUfFDxjB/9bXN8A5EXQdYn9P7e4T5GZQi25GboUrbzvrJVuMzHfZDeT5+C1oFLHuxrskt ABr/vLPyyNgOJxGw2iJQorhpXPSaqRc2qq7v/DwDp9YQKLsx+/qIg8LBABM6CQ== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1668530236; a=rsa-sha256; cv=none; b=phrrU3+QQEozCIA2+vBpGcer2pRXDG/d2wEXr64mZCHPLajjNcruqGTZtLfVY28l1Gup4X IkXs52Us3R3hMVCjQRrkHge/h+RUlLQEJ6zsJabJPXa06XD/VFbc9u1HJuSrN1N34u4cWv SSAJRo+EBz17qFh0Zw3gvT1/Wqb1LvZH3n21AE9TDLyKFpQNxYA/vNbfceyhfL1v1l3+Xi HRhjj1EAYqE/yR6hTNWJ99YP2266pNuY0RbfBHtFCNdfjmIeZIyZ4M1eQNLt/0jPjIc+g8 aWgS52moN00YA46tED2a5MiwqaAVrZW8G7lsAQJJC9xF2XaYL86hUiQyvbAC8w== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4NBWzw3DGpzV1m; Tue, 15 Nov 2022 16:37:16 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.16.1/8.16.1) with ESMTP id 2AFGbGHe029173; Tue, 15 Nov 2022 16:37:16 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.16.1/8.16.1/Submit) id 2AFGbGGm029172; Tue, 15 Nov 2022 16:37:16 GMT (envelope-from git) Date: Tue, 15 Nov 2022 16:37:16 GMT Message-Id: <202211151637.2AFGbGGm029172@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-main@FreeBSD.org From: Cy Schubert Subject: git: c49050564ffc - main - security/krb5-118: CVE-2022-42898: IGNORE and accelerate removal List-Id: Commit messages for all branches of the ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-all List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-dev-commits-ports-all@freebsd.org X-BeenThere: dev-commits-ports-all@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: cy X-Git-Repository: ports X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: c49050564ffcf36e155344562f594e15b82a5194 Auto-Submitted: auto-generated X-ThisMailContainsUnwantedMimeParts: N The branch main has been updated by cy: URL: https://cgit.FreeBSD.org/ports/commit/?id=c49050564ffcf36e155344562f594e15b82a5194 commit c49050564ffcf36e155344562f594e15b82a5194 Author: Cy Schubert AuthorDate: 2022-11-15 16:32:20 +0000 Commit: Cy Schubert CommitDate: 2022-11-15 16:37:03 +0000 security/krb5-118: CVE-2022-42898: IGNORE and accelerate removal krb5-118 was desupported by MIT when krb5-120 was released. CVE-2022-42898 now requires its accelerated removal from the tree. It is now flagged IGNORE until its removal on Nov 30, 2022. MFH: 2022Q4 Security: CVE-2022-42898 --- security/krb5-118/Makefile | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/security/krb5-118/Makefile b/security/krb5-118/Makefile index aa59adb40e57..333a851254fd 100644 --- a/security/krb5-118/Makefile +++ b/security/krb5-118/Makefile @@ -7,7 +7,8 @@ PKGNAMESUFFIX= -118 .endif DEPECATED= Desupported by MIT following 1.20 -EXPIRY= 2023-05-26 +EXPIRY= 2022-11-30 +IGNORE= Affected by CVE-2022-42898: integer overflow vulnerabilities in PAC parsing PATCH_SITES= http://web.mit.edu/kerberos/advisories/ PATCH_DIST_STRIP= -p2