Bug 234191

Summary: security/bro: Update to 2.6.1 (Fixes Magellan vulnerability)
Product: Ports & Packages Reporter: Kubilay Kocak <koobs>
Component: Individual Port(s)Assignee: Craig Leres <leres>
Status: Closed FIXED    
Severity: Affects Many People Keywords: security
Priority: --- Flags: leres: maintainer-feedback+
koobs: merge-quarterly+
Version: Latest   
Hardware: Any   
OS: Any   
Bug Depends on:    
Bug Blocks: 234112    

Description Kubilay Kocak freebsd_committer freebsd_triage 2018-12-20 02:21:52 UTC
security/bro: Update to 2.6.1
  
   - Update the embedded SQLite library from 3.18.0 to 3.26.0 to
     address a remote code execution vulnerability ("Magellan").
  
   - Uses a bundled version of the actor-framework (caf) library so
     we can remove the port-local build for caf.
  
  Replace broctl-config.sh absolute symlink with a relative one.

---

Committed in ports r487823
VuXML committed in ports r487821

Pending MFH
Comment 1 Craig Leres freebsd_committer freebsd_triage 2018-12-20 23:07:59 UTC
MFH handled by r487921.