Bug 93406 - security/pear-Auth: upgrade to Auth-1.2.4 and fixes a security issue.
Summary: security/pear-Auth: upgrade to Auth-1.2.4 and fixes a security issue.
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: Normal Affects Only Me
Assignee: freebsd-ports-bugs (Nobody)
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2006-02-15 20:40 UTC by Thierry Thomas
Modified: 2006-02-16 18:32 UTC (History)
1 user (show)

See Also:


Attachments
pear-Auth.diff (1.18 KB, patch)
2006-02-15 20:40 UTC, Thierry Thomas
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Thierry Thomas freebsd_committer freebsd_triage 2006-02-15 20:40:03 UTC
	According to the official announcement:

	This release fixes a security issue that allows an attacker to perform
	injection attacks against the underlying storage containers. Upgrading
	is strongly recommended!

	See changelog at <http://pear.php.net/package/Auth/download/1.2.4>.

Fix: Apply the following patch:
How-To-Repeat: 	N/A.
Comment 1 Thierry Thomas freebsd_committer freebsd_triage 2006-02-15 20:41:02 UTC
State Changed
From-To: open->feedback


Waiting for maintainer's approval. 


http://www.freebsd.org/cgi/query-pr.cgi?pr=93406 

Adding to audit trail from misfiled PR ports/93407:

Date: Wed, 15 Feb 2006 21:53:58 +0100
Comment 2 Antonio Carlos Venancio Junior 2006-02-16 11:22:45 UTC
Thierry,

	Approved. Thank you!

Edwin Groothuis wrote:
> Maintainer of security/pear-Auth,
> 
> Please note that PR ports/93406 has just been submitted.
> 
> If it contains a patch for an upgrade, an enhancement or a bug fix
> you agree on, reply to this email stating that you approve the patch
> and a committer will take care of it.
> 
> The full text of the PR can be found at:
>     http://www.freebsd.org/cgi/query-pr.cgi?pr=ports/93406
> 


-- 
Cya

Antonio
echo antonio php net | sed 's/ /@/;s/ /./g'
FreeBSD/OpenBSD | PHP/MySQL | PGP Key ID 0x5BBEB073
"Can't buy what I want because its FREE!" - Pearl Jam
Comment 3 Thierry Thomas freebsd_committer freebsd_triage 2006-02-16 18:31:06 UTC
State Changed
From-To: feedback->closed


Committed, with maintainer's approval.