Page MenuHomeFreeBSD

www/mini_httpd: Update to 1.28 and address security advisory
ClosedPublic

Authored by leres on Feb 6 2018, 1:34 AM.
Tags
None
Referenced Files
F164315467: D14218.id.diff
Thu, Jul 30, 5:10 PM
Unknown Object (File)
Sat, Jul 25, 8:29 PM
Unknown Object (File)
Fri, Jul 24, 12:28 PM
Unknown Object (File)
Wed, Jul 22, 6:59 PM
Unknown Object (File)
Sun, Jul 19, 9:54 PM
Unknown Object (File)
Fri, Jul 10, 4:28 PM
Unknown Object (File)
Fri, Jul 3, 5:39 AM
Unknown Object (File)
Thu, Jul 2, 5:02 PM
Subscribers

Details

Summary

Proposed commit message:

Update to 1.28 which fixes a buffer overflow (that will be)
documented in CVE-2017-17663.

Reviewed by: ? (mentor)
Approved by: ? (mentor)
Security: CVE-2017-17663
Differential Revision: ?

Diff Detail

Repository
rP FreeBSD ports repository
Lint
No Lint Coverage
Unit
No Test Coverage
Build Status
Buildable 14804
Build 14922: arc lint + arc unit

Event Timeline

leres added reviewers: ler, matthew.

Heh, I managed to put my reviewers in the "test plan" section...

lgtm

but you should create (and get reviewed) a VuXML entry for the vulnerabilities before you commit, and reference the VuXML from your commit
message. The 'Security' tab in the commit template should contain the VuXMLid, although it is frequently used for other identifying numbers.

Don't forget to request MFH 2018Q1

This revision is now accepted and ready to land.Feb 9 2018, 7:27 AM
This revision was automatically updated to reflect the committed changes.