Bug 246931

Summary: security/vuxml multiple issues freerdp
Product: Ports & Packages Reporter: rob2g2 <rob2g2-freebsd>
Component: Individual Port(s)Assignee: Kyle Evans <kevans>
Status: Closed FIXED    
Severity: Affects Only Me CC: jbeich, kevans, ports-secteam, rob2g2-freebsd
Priority: --- Flags: bugzilla: maintainer-feedback? (ports-secteam)
Version: Latest   
Hardware: Any   
OS: Any   
Attachments:
Description Flags
patch to show issues < 2.0.0
none
patch to show issues < 2.1.0
none
patch to show issues < 2.1.1 none

Description rob2g2 2020-06-02 08:21:24 UTC
FreeRDP has multiple vulnerabilities in different versions. versions 2.0.0 and 2.1.0 and 2.1.1 each address different issues, patches for inclusion in vuxml attached.
Comment 1 rob2g2 2020-06-02 08:22:37 UTC
Created attachment 215156 [details]
patch to show issues < 2.0.0
Comment 2 rob2g2 2020-06-02 08:23:11 UTC
Created attachment 215157 [details]
patch to show issues < 2.1.0
Comment 3 rob2g2 2020-06-02 08:25:31 UTC
Created attachment 215158 [details]
patch to show issues < 2.1.1
Comment 4 commit-hook freebsd_committer freebsd_triage 2020-06-08 15:49:48 UTC
A commit references this bug:

Author: kevans
Date: Mon Jun  8 15:49:06 UTC 2020
New revision: 538227
URL: https://svnweb.freebsd.org/changeset/ports/538227

Log:
  security/vuxml: document new vulnerabilities in net/freerdp < 2.1.0

  PR:		246931, 245517
  Obtained from:	https://github.com/FreeRDP/FreeRDP/blob/2.1.0/ChangeLog
  Approved by:	koobs (mentor)

Changes:
  head/security/vuxml/vuln.xml
Comment 5 Kyle Evans freebsd_committer freebsd_triage 2020-06-08 15:53:03 UTC
Documented in r538227 and committed in r538228; thanks!