HomeFreeBSD

www/forgejo: update to 7.0.4 (fixes security vulnerabilities)

Description

www/forgejo: update to 7.0.4 (fixes security vulnerabilities)

CVE-2024-24789: the archive/zip package's handling of certain types of invalid
zip files differs from the behavior of most zip implementations. This
misalignment could be exploited to create an zip file with contents that vary
depending on the implementation reading the file.

PR: 279781
Reported by: stb@lassitu.de (maintainer)
MFH: 2024Q2
Security: CVE-2024-24789

Details

Provenance
stbAuthored on Mon, Jun 17, 5:16 PM
fernapeCommitted on Wed, Jun 19, 6:37 AM
Parents
R11:f751fbfe5939: print/lilypond-devel: update to 2.25.17
Branches
Unknown
Tags
Unknown