Bug 282203 - security/cryptlib: update 3.4.6 → 3.4.7, fix CVE-2024-0202
Summary: security/cryptlib: update 3.4.6 → 3.4.7, fix CVE-2024-0202
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Only Me
Assignee: Alex Dupre
URL: https://www.cs.auckland.ac.nz/~pgut00...
Keywords: security
Depends on:
Blocks:
 
Reported: 2024-10-19 18:58 UTC by Älven
Modified: 2024-10-22 15:51 UTC (History)
2 users (show)

See Also:
bugzilla: maintainer-feedback? (ale)
alster: merge-quarterly?


Attachments
[PATCH] security/cryptlib: update 3.4.6 → 3.4.7, fix CVE-2024-0202 (4.79 KB, patch)
2024-10-19 18:58 UTC, Älven
alster: maintainer-approval? (ale)
Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Älven 2024-10-19 18:58:28 UTC
Created attachment 254364 [details]
[PATCH] security/cryptlib: update 3.4.6 → 3.4.7, fix CVE-2024-0202

https://nvd.nist.gov/vuln/detail/CVE-2024-0202
Comment 1 commit-hook freebsd_committer freebsd_triage 2024-10-22 15:37:09 UTC
A commit in branch main references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=53b58221ade14504875fbd818f42ee551f65f79e

commit 53b58221ade14504875fbd818f42ee551f65f79e
Author:     Alex Dupre <ale@FreeBSD.org>
AuthorDate: 2024-10-22 15:31:22 +0000
Commit:     Alex Dupre <ale@FreeBSD.org>
CommitDate: 2024-10-22 15:33:29 +0000

    security/cryptlib: update to 3.4.7 release.

    PR:             282203
    Submitted by:   Alven <alster@vinterdalen.se>
    Security:       CVE-2024-0202

 security/cryptlib/Makefile                    |  2 +-
 security/cryptlib/distinfo                    |  6 ++---
 security/cryptlib/files/patch-makefile        |  4 +--
 security/cryptlib/files/patch-misc_os__spec.h |  4 +--
 security/cryptlib/files/patch-test_certs.c    |  8 +++---
 security/cryptlib/files/patch-tools_ccopts.sh | 36 ++-------------------------
 6 files changed, 14 insertions(+), 46 deletions(-)
Comment 2 commit-hook freebsd_committer freebsd_triage 2024-10-22 15:51:14 UTC
A commit in branch 2024Q4 references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=f4d0d45cbe89ec6fc49a6501af943fc2995d3703

commit f4d0d45cbe89ec6fc49a6501af943fc2995d3703
Author:     Alex Dupre <ale@FreeBSD.org>
AuthorDate: 2024-10-22 15:31:22 +0000
Commit:     Alex Dupre <ale@FreeBSD.org>
CommitDate: 2024-10-22 15:50:02 +0000

    security/cryptlib: update to 3.4.7 release.

    PR:             282203
    Submitted by:   Alven <alster@vinterdalen.se>
    Security:       CVE-2024-0202

    (cherry picked from commit 53b58221ade14504875fbd818f42ee551f65f79e)

 security/cryptlib/Makefile                    |  2 +-
 security/cryptlib/distinfo                    |  6 ++---
 security/cryptlib/files/patch-makefile        |  4 +--
 security/cryptlib/files/patch-misc_os__spec.h |  4 +--
 security/cryptlib/files/patch-test_certs.c    |  8 +++---
 security/cryptlib/files/patch-tools_ccopts.sh | 36 ++-------------------------
 6 files changed, 14 insertions(+), 46 deletions(-)