Page MenuHomeFreeBSD

www/mini_httpd: Update to 1.28 and address security advisory
ClosedPublic

Authored by leres on Feb 6 2018, 1:34 AM.
Tags
None
Referenced Files
Unknown Object (File)
Thu, Jan 30, 7:32 AM
Unknown Object (File)
Thu, Jan 30, 5:30 AM
Unknown Object (File)
Tue, Jan 28, 11:39 PM
Unknown Object (File)
Sat, Jan 25, 11:14 PM
Unknown Object (File)
Dec 4 2024, 11:32 AM
Unknown Object (File)
Dec 3 2024, 11:08 PM
Unknown Object (File)
Nov 24 2024, 7:49 PM
Unknown Object (File)
Nov 23 2024, 10:15 AM
Subscribers

Details

Summary

Proposed commit message:

Update to 1.28 which fixes a buffer overflow (that will be)
documented in CVE-2017-17663.

Reviewed by: ? (mentor)
Approved by: ? (mentor)
Security: CVE-2017-17663
Differential Revision: ?

Diff Detail

Repository
rP FreeBSD ports repository
Lint
No Lint Coverage
Unit
No Test Coverage
Build Status
Buildable 14804
Build 14922: arc lint + arc unit

Event Timeline

leres added reviewers: ler, matthew.

Heh, I managed to put my reviewers in the "test plan" section...

lgtm

but you should create (and get reviewed) a VuXML entry for the vulnerabilities before you commit, and reference the VuXML from your commit
message. The 'Security' tab in the commit template should contain the VuXMLid, although it is frequently used for other identifying numbers.

Don't forget to request MFH 2018Q1

This revision is now accepted and ready to land.Feb 9 2018, 7:27 AM
This revision was automatically updated to reflect the committed changes.