Bug 200195 - [security] textproc/rubygem-redcarpet vuxml entry
Summary: [security] textproc/rubygem-redcarpet vuxml entry
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Many People
Assignee: Michael Moll
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2015-05-14 16:59 UTC by Sevan Janiyan
Modified: 2015-05-15 12:11 UTC (History)
1 user (show)

See Also:
bugzilla: maintainer-feedback? (ruby)


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Sevan Janiyan 2015-05-14 16:59:50 UTC
for 3.2.2 and prior
http://openwall.com/lists/oss-security/2015/04/07/11
Comment 1 commit-hook freebsd_committer freebsd_triage 2015-05-15 12:03:39 UTC
A commit references this bug:

Author: mmoll
Date: Fri May 15 12:02:58 UTC 2015
New revision: 386399
URL: https://svnweb.freebsd.org/changeset/ports/386399

Log:
  security/vuxml: document vulnerability in rubygem-redcarpet <3.2.3

  PR:		200195
  Differential Revision:	https://reviews.freebsd.org/D2548
  Submitted by:	Sevan Janiyan <venture37@geeklan.co.uk>
  Approved by:	mat (mentor)

Changes:
  head/security/vuxml/vuln.xml
Comment 2 Michael Moll freebsd_committer freebsd_triage 2015-05-15 12:11:47 UTC
committed, thanks!