git: 0e6da3c2e1f0 - main - archivers/ha: Fix CVE-2015-1198

Kubilay Kocak koobs at FreeBSD.org
Thu Sep 30 00:18:08 UTC 2021


On 29/09/2021 8:32 pm, Alex Kozlov wrote:
> On Wed, Sep 29, 2021 at 10:50:13AM +1000, Kubilay Kocak wrote:
>> On 28/09/2021 3:52 am, Alex Kozlov wrote:
>>> The branch main has been updated by ak:
>>>
>>> URL: https://cgit.FreeBSD.org/ports/commit/?id=0e6da3c2e1f0ca151be9e6428dcc9c0b7f19d170
>>>
>>> commit 0e6da3c2e1f0ca151be9e6428dcc9c0b7f19d170
>>> Author:     Alex Kozlov <ak at FreeBSD.org>
>>> AuthorDate: 2021-09-27 17:42:12 +0000
>>> Commit:     Alex Kozlov <ak at FreeBSD.org>
>>> CommitDate: 2021-09-27 17:42:12 +0000
>>>
>>>       archivers/ha: Fix CVE-2015-1198
>>>       Fix directory traversal vulnerabilities (CVE-2015-1198)
>>>       Reported by:    decke
>>
>> Hi Alex, could you merge this to quarterly?
> I could, but 2021Q4 will be created in a few days, so I am not sure there is a need
> to do that.
> 
> 

That will leave the current branch vulnerable.

@ports-secteam, could you VuXML and MFH please


More information about the dev-commits-ports-main mailing list