Created attachment 207535 [details] patch TODO: exp-run ?
A note from maintainer. Tested with poudriere @12.0, ok.
Created attachment 207575 [details] vuxml entry vuxml entry
Exp-run looks fine
A commit references this bug: Author: pi Date: Thu Sep 19 12:37:41 UTC 2019 New revision: 512335 URL: https://svnweb.freebsd.org/changeset/ports/512335 Log: textproc/expat2: upgrade 2.2.7 -> 2.2.8 PR: 240613 Submitted by: Sergei Vyshenski <svysh.fbsd@gmail.com> (maintainer) Exp-Run by: antoine Relnotes: https://github.com/libexpat/libexpat/blob/R_2_2_8/expat/Changes Security: CVE-2019-15903 Changes: head/textproc/expat2/Makefile head/textproc/expat2/distinfo head/textproc/expat2/pkg-plist
No MFH because of functional changes in 2.2.7, which might cause other problems in the quarterly tree.
A commit references this bug: Author: pi Date: Thu Sep 19 12:43:21 UTC 2019 New revision: 512338 URL: https://svnweb.freebsd.org/changeset/ports/512338 Log: security/vuxml: add entry for CVE-2019-15903 in expat < 2.2.8 PR: 240613 Submitted by: Sergei Vyshenski <svysh.fbsd@gmail.com> (maintainer) Changes: head/security/vuxml/vuln.xml
Committed, thanks!
A commit references this bug: Author: delphij Date: Wed Sep 25 17:45:04 UTC 2019 New revision: 512800 URL: https://svnweb.freebsd.org/changeset/ports/512800 Log: MFH: r512162, r512335 textproc/expat2: upgrade 2.2.6 -> 2.2.7 - exp-run by antoine PR: 238864 Submitted by: Sergei Vyshenski <svysh.fbsd@gmail.com> (maintainer) Reviewed by: koobs Relnotes: https://github.com/libexpat/libexpat/blob/R_2_2_7/expat/Changes Security: https://github.com/libexpat/libexpat/issues/186 https://github.com/libexpat/libexpat/pull/262 textproc/expat2: upgrade 2.2.7 -> 2.2.8 PR: 240613 Submitted by: Sergei Vyshenski <svysh.fbsd@gmail.com> (maintainer) Exp-Run by: antoine Relnotes: https://github.com/libexpat/libexpat/blob/R_2_2_8/expat/Changes Security: CVE-2019-15903 Approved by: ports-secteam Changes: _U branches/2019Q3/ branches/2019Q3/textproc/expat2/Makefile branches/2019Q3/textproc/expat2/distinfo branches/2019Q3/textproc/expat2/pkg-plist