[Bug 201001] sysutils/logstash: Update to 1.5.1

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Sun Jun 21 14:34:44 UTC 2015


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=201001

Jason Unovitch <jason.unovitch at gmail.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |jason.unovitch at gmail.com

--- Comment #3 from Jason Unovitch <jason.unovitch at gmail.com> ---
Thanks for the patch.  This resolves "Logstash versions 1.4.2 and prior are
vulnerable to a directory traversal attack that allows an attacker to
over-write files on the server running Logstash." (CVE-2015-4152) reported in
bug 200759.

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list