aboutsummaryrefslogtreecommitdiff
path: root/UPDATING
diff options
context:
space:
mode:
authorMark Felder <feld@FreeBSD.org>2014-12-19 18:08:40 +0000
committerMark Felder <feld@FreeBSD.org>2014-12-19 18:08:40 +0000
commitfec31fa56571a697d5dcb45867578c6ed5e64c31 (patch)
treeb19db6a6431c95f4d9164a5b3bd2a0639cadd0f5 /UPDATING
parent08f04987d938af57ce7e83c22f6797a275cf13b5 (diff)
downloadports-fec31fa56571a697d5dcb45867578c6ed5e64c31.tar.gz
ports-fec31fa56571a697d5dcb45867578c6ed5e64c31.zip
Update Xymon to 4.3.18
This version was not put on the usual MASTER SITE much to my dismay.
Notes
Notes: svn path=/head/; revision=374960
Diffstat (limited to 'UPDATING')
-rw-r--r--UPDATING18
1 files changed, 18 insertions, 0 deletions
diff --git a/UPDATING b/UPDATING
index 3da8efed8721..cad270ad08ab 100644
--- a/UPDATING
+++ b/UPDATING
@@ -6,6 +6,24 @@ You should get into the habit of checking this file for changes each time
you update your ports collection, before attempting any port upgrades.
20141219:
+ AFFECTS: users of net-mgmt/xymon-server
+ AUTHOR: feld@FreeBSD.org
+
+ Xymon has been updated to 4.3.18. A major change is the replacement of
+ the individual cgi shell scripts with symlinks to a cgi program written
+ in C. This is to mitigate shellshock on Linux systems where the
+ /bin/sh -> /bin/bash. FreeBSD users were not exposed except in the
+ most unusual and unsupported circumstances. However, this is an
+ important update for security. This change could break your
+ configuration as Henrik describes here:
+
+ > NOTE: Replacing the shell script wrappers means that the cgioptions.cfg
+ > file is no longer processed as a shell script. The new wrapper works
+ > fine with the default version of cgioptions.cfg, but it you have
+ > modified it in a way that it relies on being processed by a shell, then
+ > it will break.
+
+20141219:
AFFECTS: users of audio/abcde
AUTHOR: gblach@FreeBSD.org