Bug 144092 - [UPDATE] graphics/optipng to 0.6.3 [security fix]
Summary: [UPDATE] graphics/optipng to 0.6.3 [security fix]
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: Normal Affects Only Me
Assignee: Martin Wilke
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2010-02-19 06:40 UTC by R.Mahmatkhanov
Modified: 2010-03-10 13:30 UTC (History)
0 users

See Also:


Attachments
file.diff (910 bytes, patch)
2010-02-19 06:40 UTC, R.Mahmatkhanov
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description R.Mahmatkhanov 2010-02-19 06:40:01 UTC
- update to 0.6.3 
It fixes some security issues in past versions.

Fix: Patch attached with submission follows:
Comment 1 Edwin Groothuis freebsd_committer freebsd_triage 2010-02-19 06:40:37 UTC
Maintainer of graphics/optipng,

Please note that PR ports/144092 has just been submitted.

If it contains a patch for an upgrade, an enhancement or a bug fix
you agree on, reply to this email stating that you approve the patch
and a committer will take care of it.

The full text of the PR can be found at:
    http://www.freebsd.org/cgi/query-pr.cgi?pr=ports/144092

-- 
Edwin Groothuis via the GNATS Auto Assign Tool
edwin@FreeBSD.org
Comment 2 Edwin Groothuis freebsd_committer freebsd_triage 2010-02-19 06:40:40 UTC
State Changed
From-To: open->feedback

Awaiting maintainers feedback (via the GNATS Auto Assign Tool)
Comment 3 Martin Wilke freebsd_committer freebsd_triage 2010-02-19 08:32:07 UTC
Responsible Changed
From-To: freebsd-ports-bugs->miwi

I'll take it.
Comment 4 Thomas Hurst 2010-02-21 11:52:14 UTC
Tested with porttools and the binary verified as working in some simple
tests.  Please commit.

The security issue is with reading GIF files, CVE-2009-0749:

  http://secunia.com/advisories/cve_reference/CVE-2009-0749/

This should probably go into vuxml.

Thanks!

-- 
Thomas 'Freaky' Hurst
    http://hur.st/
Comment 5 R.Mahmatkhanov 2010-02-23 10:09:30 UTC
Feature safe: yes
Comment 6 Martin Wilke freebsd_committer freebsd_triage 2010-03-10 13:29:17 UTC
State Changed
From-To: feedback->closed

Committed. Thanks!
Comment 7 dfilter service freebsd_committer freebsd_triage 2010-03-10 13:29:54 UTC
miwi        2010-03-10 13:29:05 UTC

  FreeBSD ports repository

  Modified files:
    graphics/optipng     Makefile distinfo 
  Log:
  - Update to 0.6.3
  
  PR:             144092
  Submitted by:   Ruslan Mahmatkhanov <cvs-src@yandex.ru>
  Approved by:    Thomas Hurst <tom@hur.st> (maintainer)
  
  Revision  Changes    Path
  1.7       +1 -1      ports/graphics/optipng/Makefile
  1.8       +3 -3      ports/graphics/optipng/distinfo
_______________________________________________
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscribe@freebsd.org"