Bug 281984 - net/libcoap: update 4.3.4 → 4.3.5, fixes CVE-2024-0962
Summary: net/libcoap: update 4.3.4 → 4.3.5, fixes CVE-2024-0962
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Only Me
Assignee: Dries Michiels
URL: https://github.com/obgm/libcoap/blob/...
Keywords: security
Depends on:
Blocks:
 
Reported: 2024-10-10 09:25 UTC by Älven
Modified: 2024-10-19 10:23 UTC (History)
2 users (show)

See Also:
bugzilla: maintainer-feedback? (driesm)
driesm: merge-quarterly+


Attachments
[PATCH] net/libcoap: update 4.3.4 → 4.3.5, fixes CVE-2024-0962 (11.63 KB, patch)
2024-10-10 09:25 UTC, Älven
alster: maintainer-approval? (driesm)
Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Älven 2024-10-10 09:25:53 UTC
Created attachment 254129 [details]
[PATCH] net/libcoap: update 4.3.4 → 4.3.5, fixes CVE-2024-0962

https://nvd.nist.gov/vuln/detail/CVE-2024-0962
Comment 1 commit-hook freebsd_committer freebsd_triage 2024-10-19 10:18:37 UTC
A commit in branch main references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=5df026c62f35a7fafe44ae3046bfa0fbbbb8252d

commit 5df026c62f35a7fafe44ae3046bfa0fbbbb8252d
Author:     Älven <alster@vinterdalen.se>
AuthorDate: 2024-10-10 09:19:04 +0000
Commit:     Dries Michiels <driesm@FreeBSD.org>
CommitDate: 2024-10-19 10:17:29 +0000

    net/libcoap: update to 4.3.5

    Changes:        https://github.com/obgm/libcoap/compare/v4.3.4...v4.3.5

    PR:             281984
    MFH:            2024Q4
    Security:       CVE-2024-0962

 net/libcoap/Makefile  |  6 ++----
 net/libcoap/distinfo  |  6 +++---
 net/libcoap/pkg-descr |  2 +-
 net/libcoap/pkg-plist | 50 +++++++++++++++++++++++++++++++++++++++++++++++++-
 4 files changed, 55 insertions(+), 9 deletions(-)
Comment 2 commit-hook freebsd_committer freebsd_triage 2024-10-19 10:22:39 UTC
A commit in branch 2024Q4 references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=94350ea5a2afa352ad04f49d9a07f2d523dc7528

commit 94350ea5a2afa352ad04f49d9a07f2d523dc7528
Author:     Älven <alster@vinterdalen.se>
AuthorDate: 2024-10-10 09:19:04 +0000
Commit:     Dries Michiels <driesm@FreeBSD.org>
CommitDate: 2024-10-19 10:21:47 +0000

    net/libcoap: update to 4.3.5

    Changes:        https://github.com/obgm/libcoap/compare/v4.3.4...v4.3.5

    PR:             281984
    MFH:            2024Q4
    Security:       CVE-2024-0962

    (cherry picked from commit 5df026c62f35a7fafe44ae3046bfa0fbbbb8252d)

 net/libcoap/Makefile  |  6 ++----
 net/libcoap/distinfo  |  6 +++---
 net/libcoap/pkg-descr |  2 +-
 net/libcoap/pkg-plist | 50 +++++++++++++++++++++++++++++++++++++++++++++++++-
 4 files changed, 55 insertions(+), 9 deletions(-)
Comment 3 Dries Michiels freebsd_committer freebsd_triage 2024-10-19 10:23:26 UTC
Fixed
Comment 4 Dries Michiels freebsd_committer freebsd_triage 2024-10-19 10:23:34 UTC
Committed, thanks!