nginx released 1.8.1 and 1.9.10 security releases, with fixes for vulnerabilities in resolver (CVE-2016-0742, CVE-2016-0746, CVE-2016-0747). We need to update our versions in ports.
I sent already patches for both to osa@ couple of days ago, we ll see ...
A commit references this bug: Author: feld Date: Sat Jan 30 05:31:47 UTC 2016 New revision: 407509 URL: https://svnweb.freebsd.org/changeset/ports/407509 Log: www/nginx: Update to 1.8.1 PR: 206698 Security: CVE-2016-0742 Security: CVE-2016-0746 Security: CVE-2016-0747 Changes: head/www/nginx/Makefile head/www/nginx/distinfo
A commit references this bug: Author: feld Date: Sat Jan 30 05:34:42 UTC 2016 New revision: 407510 URL: https://svnweb.freebsd.org/changeset/ports/407510 Log: www/nginx-devel: Update to 1.9.10 PR: 206698 Security: CVE-2016-0742 Security: CVE-2016-0746 Security: CVE-2016-0747 Changes: head/www/nginx-devel/Makefile head/www/nginx-devel/distinfo
A commit references this bug: Author: feld Date: Sat Jan 30 05:35:36 UTC 2016 New revision: 407511 URL: https://svnweb.freebsd.org/changeset/ports/407511 Log: MFH: r407509 www/nginx: Update to 1.8.1 PR: 206698 Security: CVE-2016-0742 Security: CVE-2016-0746 Security: CVE-2016-0747 Approved by: ports-secteam (with hat) Changes: _U branches/2016Q1/ branches/2016Q1/www/nginx/Makefile branches/2016Q1/www/nginx/distinfo
A commit references this bug: Author: feld Date: Sat Jan 30 05:36:08 UTC 2016 New revision: 407512 URL: https://svnweb.freebsd.org/changeset/ports/407512 Log: MFH: r407510 www/nginx-devel: Update to 1.9.10 PR: 206698 Security: CVE-2016-0742 Security: CVE-2016-0746 Security: CVE-2016-0747 Approved by: ports-secteam (with hat) Changes: _U branches/2016Q1/ branches/2016Q1/www/nginx-devel/Makefile branches/2016Q1/www/nginx-devel/distinfo