Bug 275074 - www/typo3-12: Update to 12.4.8
Summary: www/typo3-12: Update to 12.4.8
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Many People
Assignee: Fernando Apesteguía
URL: https://typo3.org/article/typo3-1248-...
Keywords:
Depends on:
Blocks:
 
Reported: 2023-11-14 11:52 UTC by Helmut Ritter
Modified: 2023-11-15 15:26 UTC (History)
2 users (show)

See Also:
fernape: merge-quarterly+


Attachments
Update to 12.4.8 (820 bytes, patch)
2023-11-14 11:52 UTC, Helmut Ritter
freebsd-ports: maintainer-approval+
Details | Diff
Poudriere Log (28.40 KB, text/plain)
2023-11-14 11:52 UTC, Helmut Ritter
no flags Details

Note You need to log in before you can comment on or make changes to this bug.
Description Helmut Ritter 2023-11-14 11:52:29 UTC
All versions are security releases and contain important security fixes - read the corresponding security advisories here:

https://typo3.org/security/advisory/typo3-core-sa-2023-005
https://typo3.org/security/advisory/typo3-core-sa-2023-006
https://typo3.org/security/advisory/typo3-core-sa-2023-007

For details about the releases, please see:

https://typo3.org/article/typo3-1248-and-11533-security-releases-published
Comment 1 Helmut Ritter 2023-11-14 11:52:34 UTC
Created attachment 246302 [details]
Update to 12.4.8
Comment 2 Helmut Ritter 2023-11-14 11:52:37 UTC
Created attachment 246303 [details]
Poudriere Log
Comment 3 commit-hook freebsd_committer freebsd_triage 2023-11-15 14:46:08 UTC
A commit in branch main references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=9f2b97cf900250ac7f00b93fdd9a0904e9ecffaf

commit 9f2b97cf900250ac7f00b93fdd9a0904e9ecffaf
Author:     Fernando Apesteguía <fernape@FreeBSD.org>
AuthorDate: 2023-11-15 13:22:57 +0000
Commit:     Fernando Apesteguía <fernape@FreeBSD.org>
CommitDate: 2023-11-15 14:44:30 +0000

    security/vuxml: Record typo3-1{12} vulnerabilities

    PR: 275073 275074

 security/vuxml/vuln/2023.xml | 56 ++++++++++++++++++++++++++++++++++++++++++++
 1 file changed, 56 insertions(+)
Comment 4 commit-hook freebsd_committer freebsd_triage 2023-11-15 14:52:13 UTC
A commit in branch main references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=f4b91d82ab90b05b65ebf2a8d9796aaa2ec17d95

commit f4b91d82ab90b05b65ebf2a8d9796aaa2ec17d95
Author:     Helmut Ritter <freebsd-ports@charlieroot.de>
AuthorDate: 2023-11-15 08:57:16 +0000
Commit:     Fernando Apesteguía <fernape@FreeBSD.org>
CommitDate: 2023-11-15 14:51:20 +0000

    www/typo3-12: Update to 12.4.8

    ChangeLog:
    https://typo3.org/article/typo3-1248-and-11533-security-releases-published

    Fixes three security issues:

     * CVE-2023-47125
            * Base Score:   4.7 MEDIUM
            * Vector:       CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N
     * CVE-2023-47126
            * Base Score:   3.7 LOW
            * Vector:       CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
     * CVE-2023-47127
            * Base Score:   4.2 MEDIUM
            * Vector:       CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N

    PR:             275074
    Reported by:    freebsd-ports@charlieroot.de (maintainer)
    MFH:            2023Q4 (Security fixes)
    Security:       CVE-2023-47125 CVE-2023-47126 CVE-2023-47127

 www/typo3-12/Makefile | 2 +-
 www/typo3-12/distinfo | 6 +++---
 2 files changed, 4 insertions(+), 4 deletions(-)
Comment 5 commit-hook freebsd_committer freebsd_triage 2023-11-15 14:54:14 UTC
A commit in branch 2023Q4 references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=50c7578d4cc4377066c580a4eb0780c1cf16a074

commit 50c7578d4cc4377066c580a4eb0780c1cf16a074
Author:     Helmut Ritter <freebsd-ports@charlieroot.de>
AuthorDate: 2023-11-15 08:57:16 +0000
Commit:     Fernando Apesteguía <fernape@FreeBSD.org>
CommitDate: 2023-11-15 14:53:02 +0000

    www/typo3-12: Update to 12.4.8

    ChangeLog:
    https://typo3.org/article/typo3-1248-and-11533-security-releases-published

    Fixes three security issues:

     * CVE-2023-47125
            * Base Score:   4.7 MEDIUM
            * Vector:       CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N
     * CVE-2023-47126
            * Base Score:   3.7 LOW
            * Vector:       CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
     * CVE-2023-47127
            * Base Score:   4.2 MEDIUM
            * Vector:       CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N

    PR:             275074
    Reported by:    freebsd-ports@charlieroot.de (maintainer)
    MFH:            2023Q4 (Security fixes)
    Security:       CVE-2023-47125 CVE-2023-47126 CVE-2023-47127

    (cherry picked from commit f4b91d82ab90b05b65ebf2a8d9796aaa2ec17d95)

 www/typo3-12/Makefile | 2 +-
 www/typo3-12/distinfo | 6 +++---
 2 files changed, 4 insertions(+), 4 deletions(-)
Comment 6 Fernando Apesteguía freebsd_committer freebsd_triage 2023-11-15 15:26:17 UTC
Committed,

Thanks!