Bug 224335 - security/tor: CVE-2017-8819 needs to be fixed in quarterly branch too
Summary: security/tor: CVE-2017-8819 needs to be fixed in quarterly branch too
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: Normal Affects Some People
Assignee: Yuri Victorovich
URL: https://reviews.freebsd.org/D13492
Keywords: security
Depends on:
Blocks:
 
Reported: 2017-12-14 11:01 UTC by FStl
Modified: 2017-12-28 09:49 UTC (History)
1 user (show)

See Also:
koobs: merge-quarterly?


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description FStl 2017-12-14 11:01:52 UTC
The version of tor in quarterly branch is 0.3.1.7 which is affected by CVE-2017-8819. Please upgrade it.
Comment 1 Bugzilla Automation freebsd_committer freebsd_triage 2017-12-14 11:01:52 UTC
Maintainer informed via mail
Comment 2 Jochen Neumeister freebsd_committer freebsd_triage 2017-12-14 13:21:21 UTC
Over to maintainer
Comment 3 Kubilay Kocak freebsd_committer freebsd_triage 2017-12-15 10:45:58 UTC
For reference the original unmerged security update was ports r455329
Comment 4 FStl 2017-12-27 07:58:18 UTC
Why is it taking so long to do a simple version upgrade? Q4 is almost over and this bug report is becoming pointless...

Disappointed with the way FreeBSD maintainers treat the quarterly branch. :-(
Comment 5 Yuri Victorovich freebsd_committer freebsd_triage 2017-12-28 09:49:43 UTC
Committed.

Sorry for the delay.