Bug 40020 - URGENT maintainer update port sysutils/ipa 1.2.6 -> 1.2.7
Summary: URGENT maintainer update port sysutils/ipa 1.2.6 -> 1.2.7
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: Normal Affects Only Me
Assignee: freebsd-ports (Nobody)
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2002-06-30 00:20 UTC by simon
Modified: 2002-06-30 03:18 UTC (History)
0 users

See Also:


Attachments
file.diff (148 bytes, patch)
2002-06-30 00:20 UTC, simon
no flags Details | Diff
file.diff (259 bytes, patch)
2002-06-30 00:20 UTC, simon
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description simon 2002-06-30 00:20:02 UTC
Please update port sysutils/ipa 1.2.6 -> 1.2.7 as quickly as possible.
I broked some functionality of IPA, but removed security problem from IPA
(strange that nobody reported me about security problem with ipastat(8)).

1.2.7	30/06/2002	released
- SECURITY PROBLEM: I removed SUID bit from ipastat(8) due to security
  problems, and don't even try to set it back.
  Admins who use the "db_owner" parameter *and* use some safe user/group,
  *and* din't forget to set the same safe user/group for the ipastat(8)
  program, as it was said in the SECURITY NOTE on the ipastat(8) manual page,
  should not worry a lot. Admins, who ignored that SECURITY NOTE, should double
  check security of their systems and change all passwords, secrets keys, etc.,
  if you think that somebody cracked your systems by ipastat(8).
  I'm sorry about this sad program mistake.

Fix: PORTNAME=	ipa
-PORTVERSION=	1.2.6
+PORTVERSION=	1.2.7
 CATEGORIES=	sysutils
 MASTER_SITES=	http://www.simon.org.ua/ipa/ \
 		http://www.mirrors.wiretapped.net/security/network-monitoring/ipa/ \
Comment 1 Dmitry Sivachenko freebsd_committer freebsd_triage 2002-06-30 03:18:13 UTC
State Changed
From-To: open->closed

Port updated, thanks!