git: 5f57c067b60f - main - security/vuxml: Update ghostscript CVE-2023-28879 entry

From: Matthias Andree <mandree_at_FreeBSD.org>
Date: Fri, 28 Apr 2023 14:24:48 UTC
The branch main has been updated by mandree:

URL: https://cgit.FreeBSD.org/ports/commit/?id=5f57c067b60fc17e8b848a8e698c60a92dc765ac

commit 5f57c067b60fc17e8b848a8e698c60a92dc765ac
Author:     Matthias Andree <mandree@FreeBSD.org>
AuthorDate: 2023-04-28 14:20:47 +0000
Commit:     Matthias Andree <mandree@FreeBSD.org>
CommitDate: 2023-04-28 14:20:47 +0000

    security/vuxml: Update ghostscript CVE-2023-28879 entry
    
    and mark ghostscript9-agpl-base 9.56.1_10 as fixed,
    and remove ghostscript9-agpl-x11 which does not seem to be
    using the vulnerable code.
    
    Security:       25872b25-da2d-11ed-b715-a1e76793953b
    Security:       CVE-2023-28879
    PR:             270823
---
 security/vuxml/vuln/2023.xml | 5 ++---
 1 file changed, 2 insertions(+), 3 deletions(-)

diff --git a/security/vuxml/vuln/2023.xml b/security/vuxml/vuln/2023.xml
index 22cd64fddd51..39275525bce1 100644
--- a/security/vuxml/vuln/2023.xml
+++ b/security/vuxml/vuln/2023.xml
@@ -436,8 +436,7 @@
       <package><name>ghostscript7-x11</name><range><lt>10.01.1</lt></range></package>
       <package><name>ghostscript8-base</name><range><lt>10.01.1</lt></range></package>
       <package><name>ghostscript8-x11</name><range><lt>10.01.1</lt></range></package>
-      <package><name>ghostscript9-agpl-base</name><range><lt>10.01.1</lt></range></package>
-      <package><name>ghostscript9-agpl-x11</name><range><lt>10.01.1</lt></range></package>
+      <package><name>ghostscript9-agpl-base</name><range><lt>9.56.1_10</lt></range></package>
     </affects>
     <description>
       <body xmlns="http://www.w3.org/1999/xhtml">
@@ -460,7 +459,7 @@
     <dates>
       <discovery>2023-03-23</discovery>
       <entry>2023-04-13</entry>
-      <modified>2023-04-23</modified>
+      <modified>2023-04-28</modified>
     </dates>
   </vuln>