Re: Found security expliot in port phpBB 2.0.8 FreeBSD4.10

From: Josef El-Rayes (josef_at_FreeBSD.org)
Date: 12/30/04

  • Next message: Roger Marquis: "Re: Found security expliot in port phpBB 2.0.8 FreeBSD4.10"
    Date: Thu, 30 Dec 2004 14:28:20 +0000
    To: Xin LI <delphij@frontfree.net>
    
    
    

    Xin LI <delphij@frontfree.net>:
    > I always have a headache with the phpBB installation for the FreeBSD
    > China Community. I personally subscribe to phpBB's CVS commit message
    > and patch immediately when they have committed something "interesting".
    >
    > I would admit that it's a bit late for the vuxml chunk to catch up with
    > this. However, it's a good idea to catch up with every phpbb updates,
    > as almost every updates is related to security issues during the last
    > year[1]...
    >
    > [1] http://www.freebsd.org/cgi/cvsweb.cgi/ports/www/phpbb/Makefile

    it would be nice if maintainers/committers forward such security-related
    commits to secteam if they do not want to create a vuxml entry
    themselves.

    i dont feel like tracking mailinglists / cvs repositories of our
    12000+ ports and i guess my secteam colleagues dont feel like this
    either.

    greets, josef

    -- 
    Josef El-Rayes                   (__)
    Email:	  josef@daemon.li     \\\'',) 
    Web:	  http://daemon.li/     \/  \ ^
    FreeBSD   Security Team         .\._/_)
    
    



  • Next message: Roger Marquis: "Re: Found security expliot in port phpBB 2.0.8 FreeBSD4.10"