Current MariaDB version 10.1.32 in ports is vulnerable. Upstream released fixed version 10.1.33. Will you do the update of the port or should I try to create a patch?
Already have a patch ready, just need to commit.
Thank you for your report Miroslav
(In reply to Bernard Spil from comment #1) Thank you for your quick work!
A commit references this bug: Author: brnrd Date: Fri May 11 09:37:51 UTC 2018 New revision: 469620 URL: https://svnweb.freebsd.org/changeset/ports/469620 Log: databases/mariadb101-server: Security update to 10.1.33 - Fix build on aarch64 [1] - Remove ${name}_limits for 11-STABLE [2] PR: 227628 [1], 227434 [2], 228148 [3] Submitted by: Naram Qashat <cyberbotx cyberbotx com> [1] Submitted by: 0mp [2] Reported by: Miroslav Lachman <000 fbsd quip cz> [3] MFH: 2018Q2 Security: 57aec168-453e-11e8-8777-b499baebfeaf Changes: head/databases/mariadb101-server/Makefile head/databases/mariadb101-server/distinfo head/databases/mariadb101-server/files/patch-MDEV-15961 head/databases/mariadb101-server/files/patch-sql-common_client.c head/databases/mariadb101-server/pkg-plist
A commit references this bug: Author: brnrd Date: Sun May 13 14:02:19 UTC 2018 New revision: 469795 URL: https://svnweb.freebsd.org/changeset/ports/469795 Log: MFH: r469620 r469631 databases/mariadb101-server: Security update to 10.1.33 - Fix build on aarch64 [1] - Remove ${name}_limits for 11-STABLE [2] PR: 227628 [1], 227434 [2], 228148 [3] Submitted by: Naram Qashat <cyberbotx cyberbotx com> [1] Submitted by: 0mp [2] Reported by: Miroslav Lachman <000 fbsd quip cz> [3] Security: 57aec168-453e-11e8-8777-b499baebfeaf databases/mariadb101-client: Fix patch Reported by: Niels Poppe Approved by: portmgr (riggs) Changes: _U branches/2018Q2/ branches/2018Q2/databases/mariadb101-client/files/patch-sql-common_client.c branches/2018Q2/databases/mariadb101-server/Makefile branches/2018Q2/databases/mariadb101-server/distinfo branches/2018Q2/databases/mariadb101-server/files/patch-MDEV-15961 branches/2018Q2/databases/mariadb101-server/files/patch-sql-common_client.c branches/2018Q2/databases/mariadb101-server/pkg-plist