Created attachment 225341 [details] Patch
Hi. Thanks for the patch. I didn't receive the portscout notification about this update and there is a CVE involved, a vuxml entry is necessary. if all consumers are building fine, please go ahead.
^Triage: security update, set merge-quarterly flag, cc ports-secteam, bump prio
Comment on attachment 225341 [details] Patch Pending QA: Approved by: dbaio (maintainer) MFH: 2020Q2 (security release)
Consumers build fine, vuxml entry added.
A commit in branch main references this bug: URL: https://cgit.FreeBSD.org/ports/commit/?id=44ab2946a775ffac4851022225e24c868888e7dc commit 44ab2946a775ffac4851022225e24c868888e7dc Author: Dmitry Marakasov <amdmi3@FreeBSD.org> AuthorDate: 2021-05-28 17:05:05 +0000 Commit: Dmitry Marakasov <amdmi3@FreeBSD.org> CommitDate: 2021-06-02 18:41:43 +0000 devel/py-yaml: update to 5.4.1 PR: 256220 Approved by: dbaio (maintainer) MFH: 2020Q2 (security release) devel/py-yaml/Makefile | 7 +++---- devel/py-yaml/distinfo | 6 +++--- 2 files changed, 6 insertions(+), 7 deletions(-)
A commit in branch main references this bug: URL: https://cgit.FreeBSD.org/ports/commit/?id=2acbd03da0c12f63b77be9348b7f1d662322cc7d commit 2acbd03da0c12f63b77be9348b7f1d662322cc7d Author: Dmitry Marakasov <amdmi3@FreeBSD.org> AuthorDate: 2021-06-02 18:36:44 +0000 Commit: Dmitry Marakasov <amdmi3@FreeBSD.org> CommitDate: 2021-06-02 18:41:43 +0000 security/vuxml: add entry for PyYAML CVE-2020-14343 PR: 256220 security/vuxml/vuln.xml | 36 ++++++++++++++++++++++++++++++++++++ 1 file changed, 36 insertions(+)
A commit in branch 2021Q2 references this bug: URL: https://cgit.FreeBSD.org/ports/commit/?id=08da1b52dddc923dbe55ae9c18701b6fa29df5fe commit 08da1b52dddc923dbe55ae9c18701b6fa29df5fe Author: Dmitry Marakasov <amdmi3@FreeBSD.org> AuthorDate: 2021-05-28 17:05:05 +0000 Commit: Dmitry Marakasov <amdmi3@FreeBSD.org> CommitDate: 2021-06-02 18:44:41 +0000 devel/py-yaml: update to 5.4.1 PR: 256220 Approved by: dbaio (maintainer) MFH: 2020Q2 (security release) (cherry picked from commit 44ab2946a775ffac4851022225e24c868888e7dc) devel/py-yaml/Makefile | 7 +++---- devel/py-yaml/distinfo | 6 +++--- 2 files changed, 6 insertions(+), 7 deletions(-)