[Bug 247843] New port: net-mgmt/checkson simple tool for checking system states

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Sat Dec 12 08:03:46 UTC 2020


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=247843

Matthias Fechner <mfechner at FreeBSD.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|New                         |In Progress

--- Comment #3 from Matthias Fechner <mfechner at FreeBSD.org> ---
Could you please fix some security related problems upstream:
===> SECURITY REPORT:
      This port has installed the following world-writable files/directories.
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson/checks/shell.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson/checks/base.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson/apiclient.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson/context.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson/checks/certificate.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson/ui.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson/checks/dns.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson/config.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson/checks/packages.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson/checks/packagemanagers/abstractpkgmgr.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/lib/checkson/checks/process.rb
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/README.md
/usr/local/lib/ruby/gems/2.7/gems/checkson-1.0/bin/checkson

Just release a new version, that fixes this.
Let me know if a new version is available, then I will update and commit the
port. I already applied some modification and fixes to it:
https://gitlab.fechner.net/mfechner/Gitlab/-/commit/6754d28beda7328473673030395d0cefd26e0400

-- 
You are receiving this mail because:
You are on the CC list for the bug.


More information about the freebsd-ruby mailing list