Bug 269976 - security/strongswan: update 5.9.9 -> 5.9.10 for CVE-2023-26463
Summary: security/strongswan: update 5.9.9 -> 5.9.10 for CVE-2023-26463
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Only Me
Assignee: Kurt Jaeger
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2023-03-05 14:09 UTC by Kurt Jaeger
Modified: 2023-03-05 15:40 UTC (History)
2 users (show)

See Also:
strongswan: maintainer-feedback+


Attachments
patch (3.09 KB, patch)
2023-03-05 14:09 UTC, Kurt Jaeger
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Kurt Jaeger freebsd_committer freebsd_triage 2023-03-05 14:09:40 UTC
Created attachment 240601 [details]
patch

Testbuilds look fine.
Comment 1 Francois ten Krooden 2023-03-05 15:25:43 UTC
approved
Comment 2 commit-hook freebsd_committer freebsd_triage 2023-03-05 15:39:46 UTC
A commit in branch main references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=0cc82a4810632d46ea854e9225f0f99a87ac2347

commit 0cc82a4810632d46ea854e9225f0f99a87ac2347
Author:     Kurt Jaeger <pi@FreeBSD.org>
AuthorDate: 2023-03-05 15:33:25 +0000
Commit:     Kurt Jaeger <pi@FreeBSD.org>
CommitDate: 2023-03-05 15:38:18 +0000

    security/strongswan: upgrade 5.9.9 -> 5.9.10 to fix CVE-2023-26463

    See also:
      https://www.strongswan.org/blog/2023/03/02/strongswan-vulnerability-(cve-2023-26463).html

    PR:             269976
    Approved-by:    Francois ten Krooden <strongswan@Nanoteq.com> (maintainer)
    Changelog:      https://github.com/strongswan/strongswan/releases/tag/5.9.10

 security/strongswan/Makefile                       |  3 +-
 security/strongswan/distinfo                       |  6 +--
 .../files/patch-src_libtls_tls_server.c (gone)     | 48 ----------------------
 3 files changed, 4 insertions(+), 53 deletions(-)
Comment 3 Kurt Jaeger freebsd_committer freebsd_triage 2023-03-05 15:40:35 UTC
Committed, thanks!