Page MenuHomeFreeBSD

sysutils/bchunk: Update to 1.2.2; Fixed 3 security vulnerabilities
AbandonedPublic

Authored by yuri on Feb 10 2018, 8:46 PM.
Tags
None
Referenced Files
Unknown Object (File)
Mon, Feb 9, 12:10 PM
Unknown Object (File)
Sat, Feb 7, 3:37 AM
Unknown Object (File)
Jan 10 2026, 12:44 AM
Unknown Object (File)
Dec 12 2025, 3:50 PM
Unknown Object (File)
Dec 11 2025, 4:59 PM
Unknown Object (File)
Dec 11 2025, 1:20 AM
Unknown Object (File)
Dec 9 2025, 8:03 AM
Unknown Object (File)
Nov 13 2025, 11:06 AM
Subscribers

Details

Reviewers
tcberner
adamw
Summary

https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=225772

I had some doubts as for trivialness of this update, so creating this review.

freebsd_ports@k-worx.org takes maintainership

Vulnerabilities:

  • CVE-2017-15953 and CVE-2017-15954: a heap-based buffer overflow.
  • CVE-2017-15955: Access violation near NULL on destination operand and crash when processing a malformed CUE (.cue) file.

Additional port changes:

  • Changed to DISTVERSION
  • Added LICENSE/LICENSE_FILE
  • Minor formatting change in do-build

VuXML will be committed first. Then the port.

Diff Detail

Repository
rP FreeBSD ports repository
Lint
No Lint Coverage
Unit
No Test Coverage
Build Status
Buildable 14945
Build 15057: arc lint + arc unit