Bug 256377 - inform users via vuxml about the recent remote exploitable vulnerability in isc dhcp
Summary: inform users via vuxml about the recent remote exploitable vulnerability in i...
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Many People
Assignee: freebsd-ports-bugs (Nobody)
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2021-06-02 12:15 UTC by rob2g2
Modified: 2021-06-02 13:49 UTC (History)
4 users (show)

See Also:


Attachments
vuxml entry (1.25 KB, patch)
2021-06-02 12:16 UTC, rob2g2
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description rob2g2 2021-06-02 12:15:23 UTC
inform users about CVE-2021-25217.

maybe someone needs to edit the versions affected, I do not know to what FreeBSD version the upstream version 4.4.2-P1 will translate.
Comment 1 rob2g2 2021-06-02 12:16:29 UTC
Created attachment 225496 [details]
vuxml entry
Comment 2 commit-hook freebsd_committer freebsd_triage 2021-06-02 13:48:53 UTC
A commit in branch main references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=687785a86a755feb934a5e7eb1d902c4431ce0ad

commit 687785a86a755feb934a5e7eb1d902c4431ce0ad
Author:     Ryan Steinmetz <zi@FreeBSD.org>
AuthorDate: 2021-06-02 13:46:30 +0000
Commit:     Ryan Steinmetz <zi@FreeBSD.org>
CommitDate: 2021-06-02 13:48:26 +0000

    security/vuxml: Document isc-dhcp44-* vulnerability

    PR:             256377

 security/vuxml/vuln.xml | 36 ++++++++++++++++++++++++++++++++++++
 1 file changed, 36 insertions(+)
Comment 3 Ryan Steinmetz freebsd_committer freebsd_triage 2021-06-02 13:49:15 UTC
Thanks!