cvs commit: ports/security/vuxml vuln.xml

Chris Rees crees at freebsd.org
Wed Sep 7 19:38:32 UTC 2011


On 7 September 2011 19:30, Xin LI <delphij at freebsd.org> wrote:
> delphij     2011-09-07 18:30:42 UTC
>
>  FreeBSD ports repository
>
>  Modified files:
>    security/vuxml       vuln.xml
>  Log:
>  Document two OpenSSL vulnerabilities.
>
>  (There is no OpenSSL 0.9.8s in the ports so mark <1.0.0 as vulnerable).

<range><ge>1.0.0</ge><lt>1.0.0_6</lt></range>
<range><ge>0.9.8</ge><lt>1.0.0</lt></range>

I'm sure there's a simple answer, but why not use:

<range><ge>0.9.8</ge><lt>1.0.0_6</lt></range>

? Perhaps your explanation was in the comment above, but I couldn't
quite understand it...

Chris


More information about the cvs-ports mailing list