aboutsummaryrefslogtreecommitdiff
path: root/MOVED
diff options
context:
space:
mode:
authorOlli Hauer <ohauer@FreeBSD.org>2013-10-17 19:35:22 +0000
committerOlli Hauer <ohauer@FreeBSD.org>2013-10-17 19:35:22 +0000
commitde51be064576665a3ae57b3954ef23019ca45632 (patch)
tree533dea51d71c7a52cd1c16c126c264779d421009 /MOVED
parentffc964c93f0828189ac829c9f33651dbe6f7618b (diff)
downloadports-de51be064576665a3ae57b3954ef23019ca45632.tar.gz
ports-de51be064576665a3ae57b3954ef23019ca45632.zip
- update to latest release [1]
- use PKGNAMESUFFIX instead LATEST_LINK - whitespace cleanup - svn mv */bugzilla to */bugzilla40 - add vuxml entry 4.4.1, 4.2.7, and 4.0.11 Security Advisory Wednesday Oct 16th, 2013 Summary ======= Bugzilla is a Web-based bug-tracking system used by a large number of software projects. The following security issues have been discovered in Bugzilla: * A CSRF vulnerability in process_bug.cgi affecting Bugzilla 4.4 only can lead to a bug being edited without the user consent. * A CSRF vulnerability in attachment.cgi can lead to an attachment being edited without the user consent. * Several unfiltered parameters when editing flagtypes can lead to XSS. * Due to an incomplete fix for CVE-2012-4189, some incorrectly filtered field values in tabular reports can lead to XSS. All affected installations are encouraged to upgrade as soon as possible. [1] even bugzilla40 gets upstream fixes an upgrade to bugzilla42/44 is recommend Security: vid e135f0c9-375f-11e3-80b7-20cf30e32f6d CVE-2013-1733 CVE-2013-1734 CVE-2013-1742 CVE-2013-1743
Notes
Notes: svn path=/head/; revision=330666
Diffstat (limited to 'MOVED')
-rw-r--r--MOVED3
1 files changed, 3 insertions, 0 deletions
diff --git a/MOVED b/MOVED
index 195649f2e48e..85e24688e47f 100644
--- a/MOVED
+++ b/MOVED
@@ -5116,3 +5116,6 @@ audio/akode-plugins-oss||2013-10-17|Removed: Dependency of KDE 3.x
audio/akode-plugins-pulseaudio||2013-10-17|Removed: Dependency of KDE 3.x
audio/akode-plugins-resampler||2013-10-17|Removed: Dependency of KDE 3.x
audio/akode-plugins-xiph||2013-10-17|Removed: Dependency of KDE 3.x
+german/bugzilla|german/bugzilla40|2013-10-17|Reflect PORTNAME
+japanese/bugzilla|japanese/bugzilla40|2013-10-17|Reflect PORTNAME
+russian/bugzilla|russian/bugzilla40|2013-10-17|Reflect PORTNAME