[Bug 227642] [PATCH] mail/sympa: security update to 2.6.32

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Tue May 22 19:31:19 UTC 2018


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=227642

--- Comment #2 from commit-hook at freebsd.org ---
A commit references this bug:

Author: krion
Date: Tue May 22 19:30:51 UTC 2018
New revision: 470654
URL: https://svnweb.freebsd.org/changeset/ports/470654

Log:
  Security update to 6.2.32

  Description:
  A vulnerability has been discovered in Sympa web interface that
  allows write access to files on the server filesystem.

  This flaw allows to create or modify any file writable by the Sympa
  user, located on the server filesystem, using the function of Sympa
  web interface template file saving.

  PR:           227642
  Submitted by: maintainer

Changes:
  head/mail/sympa/Makefile
  head/mail/sympa/distinfo

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list