ports/129262: upgrade of ledgersmb12
Antoine Beaupre
anarcat at lethe.koumbit.net
Fri Nov 28 18:30:03 UTC 2008
>Number: 129262
>Category: ports
>Synopsis: upgrade of ledgersmb12
>Confidential: no
>Severity: serious
>Priority: medium
>Responsible: freebsd-ports-bugs
>State: open
>Quarter:
>Keywords:
>Date-Required:
>Class: maintainer-update
>Submitter-Id: current-users
>Arrival-Date: Fri Nov 28 18:30:03 UTC 2008
>Closed-Date:
>Last-Modified:
>Originator: Antoine Beaupre
>Release: FreeBSD 6.3-RELEASE-p1 i386
>Organization:
Koumbit
>Environment:
System: FreeBSD lethe.koumbit.net 6.3-RELEASE-p1 FreeBSD 6.3-RELEASE-p1 #1: Mon Mar 24 16:30:04 EDT 2008 anarcat at lethe.koumbit.net:/usr/obj/usr/src/sys/LETHE6 i386
>Description:
The attached patch upgrades the ledgersmb12 port to 1.2.17.
Note that all ledgersmb versions before 1.2.15 are vulnerable to various security issues. I'm not sure how to fit this in the portaudit stuff... See:
http://ledgersmb.org/node/70
Also note that the ledgersmb port can probably be retired (in favour of the ledgersmb12 port).
>How-To-Repeat:
>Fix:
Note that I have brought back the dependencies that were removed in the latest update.
diff -ru ledgersmb12/Makefile ledgersmb12.svn/Makefile
--- ledgersmb12/Makefile 2008-11-28 13:00:14.000000000 -0500
+++ ledgersmb12.svn/Makefile 2008-11-28 12:54:01.000000000 -0500
@@ -6,14 +6,16 @@
#
PORTNAME= ledgersmb
-PORTVERSION= 1.2.13
+PORTVERSION= 1.2.17
CATEGORIES= finance perl5
MASTER_SITES= SF/ledger-smb
MAINTAINER= anarcat at anarcat.ath.cx
COMMENT= A double entry accounting system
-BUILD_DEPENDS= ${SITE_PERL}/${PERL_ARCH}/DBD/Pg.pm:${PORTSDIR}/databases/p5-DBD-Pg
+BUILD_DEPENDS= ${SITE_PERL}/${PERL_ARCH}/DBD/Pg.pm:${PORTSDIR}/databases/p5-DBD-Pg \
+ ${SITE_PERL}/MIME/Lite.pm:${PORTSDIR}/mail/p5-MIME-Lite \
+ ${SITE_PERL}/Config/Std.pm:${PORTSDIR}/devel/p5-Config-Std
RUN_DEPENDS= ${BUILD_DEPENDS}
LATEST_LINK= ledgersmb12
diff -ru ledgersmb12/distinfo ledgersmb12.svn/distinfo
--- ledgersmb12/distinfo 2008-06-22 18:57:09.000000000 -0400
+++ ledgersmb12.svn/distinfo 2008-11-28 12:51:59.000000000 -0500
@@ -1,3 +1,3 @@
-MD5 (ledgersmb-1.2.13.tar.gz) = 930b60b322b654fd2d7145b2b4cd2d50
-SHA256 (ledgersmb-1.2.13.tar.gz) = 70028bc77768566e0fe5c0fee3663018adc1ce78f6c84b208b0719359984388b
-SIZE (ledgersmb-1.2.13.tar.gz) = 3162173
+MD5 (ledgersmb-1.2.17.tar.gz) = 472343a79ee15dd8050cc26a2cc53ebe
+SHA256 (ledgersmb-1.2.17.tar.gz) = 52efd333f94f45bb8c9a8a98244efea28701e27857a9eb728bafbeee9fe5c9c6
+SIZE (ledgersmb-1.2.17.tar.gz) = 3165948
>Release-Note:
>Audit-Trail:
>Unformatted:
More information about the freebsd-ports-bugs
mailing list