Bug 284059 - www/oauth2-proxy: Update to v7.8.0 CVE-2024-45338
Summary: www/oauth2-proxy: Update to v7.8.0 CVE-2024-45338
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Only Me
Assignee: Ruslan Makhmatkhanov
URL: https://github.com/oauth2-proxy/oauth...
Keywords:
Depends on:
Blocks:
 
Reported: 2025-01-14 13:38 UTC by Matthias Wolf
Modified: 2025-01-29 21:14 UTC (History)
1 user (show)

See Also:


Attachments
www/oauth2-proxy (43.80 KB, patch)
2025-01-14 13:38 UTC, Matthias Wolf
no flags Details | Diff
security/vuxml (1.16 KB, patch)
2025-01-14 13:39 UTC, Matthias Wolf
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Matthias Wolf 2025-01-14 13:38:31 UTC
Created attachment 256689 [details]
www/oauth2-proxy

Upgrade to Version 7.8.0

Tested on 13.4-RELEASE and 14.2-RELEASE and using make test.

Security fixes: CVE-2024-45338
Comment 1 Matthias Wolf 2025-01-14 13:39:58 UTC
Created attachment 256690 [details]
security/vuxml
Comment 2 Ruslan Makhmatkhanov freebsd_committer freebsd_triage 2025-01-29 20:39:05 UTC
I'll take it
Comment 3 commit-hook freebsd_committer freebsd_triage 2025-01-29 21:07:59 UTC
A commit in branch main references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=ab5f837462e075723c1be8573d178751b2ba2ede

commit ab5f837462e075723c1be8573d178751b2ba2ede
Author:     Ruslan Makhmatkhanov <rm@FreeBSD.org>
AuthorDate: 2025-01-29 21:06:04 +0000
Commit:     Ruslan Makhmatkhanov <rm@FreeBSD.org>
CommitDate: 2025-01-29 21:06:04 +0000

    security/vuxml: add www/oauth2-proxy < 7.8.0 entry

    PR:             284059
    Reported by:    Matthias Wolf <freebsd@rheinwolf.de>

 security/vuxml/vuln/2025.xml | 28 ++++++++++++++++++++++++++++
 1 file changed, 28 insertions(+)
Comment 4 commit-hook freebsd_committer freebsd_triage 2025-01-29 21:13:00 UTC
A commit in branch main references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=f54b30545d123d6cdf24aafdb8d035c90075a4ce

commit f54b30545d123d6cdf24aafdb8d035c90075a4ce
Author:     Ruslan Makhmatkhanov <rm@FreeBSD.org>
AuthorDate: 2025-01-29 21:10:32 +0000
Commit:     Ruslan Makhmatkhanov <rm@FreeBSD.org>
CommitDate: 2025-01-29 21:10:32 +0000

    www/oauth2-proxy: update to 7.8.0

    PR:             284059
    Submitted by:   Matthias Wolf <Matthias Wolf> (maintainer)
    Security:       258a58a9-6583-4808-986b-e785c27b0a18

 www/oauth2-proxy/Makefile                 |  50 ++-
 www/oauth2-proxy/distinfo                 |  94 ++---
 www/oauth2-proxy/files/modules.txt (gone) | 622 ------------------------------
 3 files changed, 70 insertions(+), 696 deletions(-)
Comment 5 Ruslan Makhmatkhanov freebsd_committer freebsd_triage 2025-01-29 21:14:11 UTC
Committed, thank you for submission!

PS. There is already v7.8.1 btw