Page MenuHomeFreeBSD

security/vuxml: document vulnerability in rubygem-redcarpet <3.2.3
ClosedPublic

Authored by mmoll on May 14 2015, 10:32 PM.
Tags
None
Referenced Files
Unknown Object (File)
Sun, Sep 21, 11:06 PM
Unknown Object (File)
Thu, Sep 18, 10:56 PM
Unknown Object (File)
Aug 27 2025, 3:46 PM
Unknown Object (File)
Aug 15 2025, 8:34 PM
Unknown Object (File)
Jul 25 2025, 2:50 PM
Unknown Object (File)
Jul 22 2025, 6:05 AM
Unknown Object (File)
Jul 12 2025, 7:04 PM
Unknown Object (File)
Jul 7 2025, 10:49 AM
Subscribers
None

Details

Reviewers
swills
mat
Summary

Proposed commit message:

security/vuxml: document vulnerability in rubygem-redcarpet <3.2.3

PR:		200195
Submitted by:	Sevan Janiyan <venture37@geeklan.co.uk>
Approved by:	swills (mentor), mat (mentor)
Test Plan

make validate and pkg audit:

mmoll@marduk:/svn/ports/security/vuxml$ make validate
/bin/sh /svn/ports/security/vuxml/files/tidy.sh "/svn/ports/security/vuxml/files/tidy.xsl" "/svn/ports/security/vuxml/vuln.xml" > "/svn/ports/security/vuxml/vuln.xml.tidy"
>>> Validating...
/usr/local/bin/xmllint --valid --noout /svn/ports/security/vuxml/vuln.xml
>>> Successful.
Checking if tidy differs...
... seems okay
Checking for space/tab...
... seems okay
/usr/local/bin/python2.7 /svn/ports/security/vuxml/files/extra-validation.py
mmoll@marduk:/svn/ports/security/vuxml$ env PKG_DBDIR=/svn/ports/security/vuxml pkg audit rubygem-redcarpet-3.2.2
rubygem-redcarpet-3.2.2 is vulnerable:
rubygem-redcarpet -- XSS vulnerability
WWW: http://vuxml.FreeBSD.org/freebsd/c368155a-fa83-11e4-bc58-001e67150279.html

1 problem(s) in the installed packages found.
mmoll@marduk:/svn/ports/security/vuxml$ env PKG_DBDIR=/svn/ports/security/vuxml pkg audit rubygem-redcarpet-3.2.3
0 problem(s) in the installed packages found.

Diff Detail

Repository
rP FreeBSD ports repository
Lint
No Lint Coverage
Unit
No Test Coverage

Event Timeline

mmoll retitled this revision from to security/vuxml: document vulnerability in rubygem-redcarpet <3.2.3.
mmoll updated this object.
mmoll edited the test plan for this revision. (Show Details)
mmoll added reviewers: swills, mat.
mat edited edge metadata.
This revision is now accepted and ready to land.May 15 2015, 8:23 AM