Bug 126065 - [MAINTAINER] www/pivot-weblog: update to 1.40.6
Summary: [MAINTAINER] www/pivot-weblog: update to 1.40.6
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: Normal Affects Only Me
Assignee: freebsd-ports-bugs (Nobody)
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2008-07-29 07:40 UTC by Hans Fredrik Nordhaug
Modified: 2008-07-29 16:40 UTC (History)
0 users

See Also:


Attachments
pivot-weblog-1.40.6.patch (1.25 KB, patch)
2008-07-29 07:40 UTC, Hans Fredrik Nordhaug
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Hans Fredrik Nordhaug 2008-07-29 07:40:01 UTC
- Update to 1.40.6

This is a security update fixing CVE-2008-3128 - a directory traversal vulnerability in all prior Pivot 
1.40.x releases that for examples allows an attacker to read the usernames and password hashes of the
Pivot installation.

It also contains other various fixes and improvements, but no new features.

Generated with FreeBSD Port Tools 0.77
Comment 1 Pav Lucistnik freebsd_committer freebsd_triage 2008-07-29 16:34:17 UTC
State Changed
From-To: open->closed

Committed, thanks!
Comment 2 dfilter service freebsd_committer freebsd_triage 2008-07-29 16:37:08 UTC
pav         2008-07-29 15:36:51 UTC

  FreeBSD ports repository

  Modified files:
    www/pivot-weblog     Makefile distinfo 
  Log:
  - Update to 1.40.6
  
  PR:             ports/126065
  Submitted by:   Hans Fredrik Nordhaug <hans@nordhaug.priv.no> (maintainer)
  Security:       CVE-2008-3128 - a directory traversal vulnerability
  
  Revision  Changes    Path
  1.8       +2 -2      ports/www/pivot-weblog/Makefile
  1.7       +3 -3      ports/www/pivot-weblog/distinfo
_______________________________________________
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscribe@freebsd.org"