diff options
author | Olli Hauer <ohauer@FreeBSD.org> | 2013-10-17 19:35:22 +0000 |
---|---|---|
committer | Olli Hauer <ohauer@FreeBSD.org> | 2013-10-17 19:35:22 +0000 |
commit | de51be064576665a3ae57b3954ef23019ca45632 (patch) | |
tree | 533dea51d71c7a52cd1c16c126c264779d421009 /german/bugzilla44 | |
parent | ffc964c93f0828189ac829c9f33651dbe6f7618b (diff) | |
download | ports-de51be064576665a3ae57b3954ef23019ca45632.tar.gz ports-de51be064576665a3ae57b3954ef23019ca45632.zip |
- update to latest release [1]
- use PKGNAMESUFFIX instead LATEST_LINK
- whitespace cleanup
- svn mv */bugzilla to */bugzilla40
- add vuxml entry
4.4.1, 4.2.7, and 4.0.11 Security Advisory
Wednesday Oct 16th, 2013
Summary
=======
Bugzilla is a Web-based bug-tracking system used by a large number of
software projects. The following security issues have been discovered
in Bugzilla:
* A CSRF vulnerability in process_bug.cgi affecting Bugzilla 4.4 only
can lead to a bug being edited without the user consent.
* A CSRF vulnerability in attachment.cgi can lead to an attachment
being edited without the user consent.
* Several unfiltered parameters when editing flagtypes can lead to XSS.
* Due to an incomplete fix for CVE-2012-4189, some incorrectly filtered
field values in tabular reports can lead to XSS.
All affected installations are encouraged to upgrade as soon as
possible.
[1] even bugzilla40 gets upstream fixes an upgrade to bugzilla42/44 is recommend
Security: vid e135f0c9-375f-11e3-80b7-20cf30e32f6d
CVE-2013-1733
CVE-2013-1734
CVE-2013-1742
CVE-2013-1743
Notes
Notes:
svn path=/head/; revision=330666
Diffstat (limited to 'german/bugzilla44')
-rw-r--r-- | german/bugzilla44/Makefile | 4 |
1 files changed, 1 insertions, 3 deletions
diff --git a/german/bugzilla44/Makefile b/german/bugzilla44/Makefile index 67a9ab06b189..669aa88865fc 100644 --- a/german/bugzilla44/Makefile +++ b/german/bugzilla44/Makefile @@ -11,9 +11,7 @@ DISTNAME= germzilla-${PORTVERSION}-1.utf-8 MAINTAINER= bugzilla@FreeBSD.org COMMENT= German localization for Bugzilla -RUN_DEPENDS= bugzilla>=${PORTVERSION}:${PORTSDIR}/devel/bugzilla44 - -LATEST_LINK= ${PKGNAMEPREFIX}bugzilla44 +RUN_DEPENDS= bugzilla44>=${PORTVERSION}:${PORTSDIR}/devel/bugzilla44 NO_WRKSUBDIR= yes |