Re: 15.0p9 pkgs in repo, but no corresponding security/errata notice?

From: Gerrit Kühn <gerrit.kuehn_at_aei.mpg.de>
Date: Thu, 21 May 2026 06:07:25 UTC
Am Wed, 20 May 2026 15:04:09 -0700
schrieb Colin Percival <cperciva@freebsd.org>:

> > Installed packages to be UPGRADED:
> >          FreeBSD-bsdconfig: 15.0 -> 15.0p9 [FreeBSD-base]
> >          FreeBSD-bsdinstall: 15.0 -> 15.0p9 [FreeBSD-base]
> >          FreeBSD-kernel-generic: 15.0p8 -> 15.0p9 [FreeBSD-base]
> >          FreeBSD-libcasper: 15.0 -> 15.0p9 [FreeBSD-base]
> >          FreeBSD-rcmds: 15.0 -> 15.0p9 [FreeBSD-base]
> >          FreeBSD-runtime: 15.0p8 -> 15.0p9 [FreeBSD-base]
> >          FreeBSD-syslogd: 15.0 -> 15.0p9 [FreeBSD-base]
> >          FreeBSD-utilities: 15.0p1 -> 15.0p9 [FreeBSD-base]
> > 
> > Number of packages to be upgraded: 8
> > 
> > 56 MiB to be downloaded.
> > 
> > But the latest notices available on the website and -announce are only
> > for 15.0p8?  
> They're coming soon. :-)
> 
> In the mean time you can see the patches in the src repository; those
> commit messages provide some context for the issues which were fixed.


Just wondering:
Is it correct that pkg audit does not reflect on CVEs in pkgbase?


cu
  Gerrit