[Bug 226491] [PATCH] devel/zziplib: update to 0.13.68 which fixes multiple CVEs

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Wed Mar 28 16:33:07 UTC 2018


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=226491

--- Comment #5 from Kai <freebsd_ports at k-worx.org> ---
(In reply to Yuri Victorovich from comment #4)

Upstream has given a official statement, that the current release, v0.13.69 has
no known CVEs at the moment.

I have checked this against the CVE database (cvs.mitre.org) and those in the
v0.13.68 were fixed so v0.13.69 should be non-vulnerable at the moment.

The patch for v0.13.69 is already attached and ready to land.
--
Cheers
Kai

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list