Created attachment 210964 [details] update to 2.6.4 Changelog: Fixed security issue in the Sync WebUI. The credit for reporting this issue goes to Frantisek Uhrecky (fruh) Port: * fix order; * use ${AWK}. * add future conflict with beta version.
Build info is available at https://gitlab.com/swills/freebsd-ports/pipelines/111436145
Adding request to merge-quaterly since this fixes a security issue. ^Triage: Please set the maintainer-approval attachment flag (to +) on patches for ports you maintain to signify approval :) Attachment -> Details -> maintainer-approval [+]
Pending VuXML entry
Thank you Volodymyr for setting the flag :) Do you think you could add the patch for VuXML? You can see information here: https://www.freebsd.org/doc/en_US.ISO8859-1/books/porters-handbook/security-notify.html Cheers!
A commit references this bug: Author: joneum Date: Sat May 23 12:18:03 UTC 2020 New revision: 536292 URL: https://svnweb.freebsd.org/changeset/ports/536292 Log: Update to 2.6.4 Changelog: - Fixed security issue in the Sync WebUI. Credits to Frantisek Uhrecky (fruh) PR: 243518 Reported by: Volodymyr Kostyrko <arcade@b1t.name> (maintainer) MFH: 2020Q2 Sponsored by: Netzkommune GmbH Changes: head/net-p2p/rslsync/Makefile head/net-p2p/rslsync/distinfo
A commit references this bug: Author: joneum Date: Sat May 23 12:19:48 UTC 2020 New revision: 536293 URL: https://svnweb.freebsd.org/changeset/ports/536293 Log: MFH: r536292 Update to 2.6.4 Changelog: - Fixed security issue in the Sync WebUI. Credits to Frantisek Uhrecky (fruh) PR: 243518 Reported by: Volodymyr Kostyrko <arcade@b1t.name> (maintainer) Sponsored by: Netzkommune GmbH Approved by: ports-secteam (with hat) Changes: _U branches/2020Q2/ branches/2020Q2/net-p2p/rslsync/Makefile branches/2020Q2/net-p2p/rslsync/distinfo