[Bug 227642] [PATCH] mail/sympa: security update to 2.6.32

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Wed May 23 07:52:41 UTC 2018


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=227642

--- Comment #3 from commit-hook at freebsd.org ---
A commit references this bug:

Author: krion
Date: Wed May 23 07:52:05 UTC 2018
New revision: 470685
URL: https://svnweb.freebsd.org/changeset/ports/470685

Log:
  MFH: r470654

  Security update to 6.2.32

  Description:
  A vulnerability has been discovered in Sympa web interface that
  allows write access to files on the server filesystem.

  This flaw allows to create or modify any file writable by the Sympa
  user, located on the server filesystem, using the function of Sympa
  web interface template file saving.

  PR:           227642
  Submitted by: maintainer

  Approved by:  ports-secteam

Changes:
_U  branches/2018Q2/
  branches/2018Q2/mail/sympa/Makefile
  branches/2018Q2/mail/sympa/distinfo

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list