svn commit: r340819 - head/security/vuxml

Remko Lodder remko at FreeBSD.org
Fri Jan 24 18:45:48 UTC 2014


On 24 Jan 2014, at 17:03, Warren Block <wblock at wonkity.com> wrote:

> On Fri, 24 Jan 2014, Remko Lodder wrote:
> 
>> It seems that igor can do some of the checking already;
>> 
>> [remko at speeltuin /virtual/workspace/subversion/ports/security/vuxml]$ igor vuln.xml  | more
>> vuln.xml:55:wrap long line:    <topic>HTMLDOC -- buffer overflow issues when reading AFM files[ ]and parsing page sizes</topic>
> ...
>> Not yet perfect[tm] but it was not intended from start for vuxml, but we might lure wblock into perhaps have a look at that?
> 
> A quick version that adds the missing tags is available here:
> http://www.wonkity.com/~wblock/tmp/vux/igor
> 
> If there are special tests needed just for vuln.xml, a -V option could be added.
> 
> For ANSI color (my preferred mode)
> % igor -R /usr/ports/security/vuxml/vuln.xml | less -RS

Ah this looks promising already! I got more “complaints” today from koobs that the current way to add a new entry is too
difficult. I understand the problem(s) and igor is a promising way to verify some things already before something else
is created to do this better (before verification is actually taking place)

Thanks a lot for quickly jumping into this!

Cheers
Remko

> _______________________________________________
> svn-ports-all at freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/svn-ports-all
> To unsubscribe, send any mail to "svn-ports-all-unsubscribe at freebsd.org"

-- 

/"\   Best regards,                      | remko at FreeBSD.org
\ /   Remko Lodder                       | remko at EFnet
 X    http://www.evilcoder.org/          |
/ \   ASCII Ribbon Campaign              | Against HTML Mail and News

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 841 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://lists.freebsd.org/pipermail/svn-ports-all/attachments/20140124/66e1c9bd/attachment.sig>


More information about the svn-ports-all mailing list