From nobody Sat Aug 19 17:51:50 2023 X-Original-To: dev-commits-ports-main@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4RSmX62Y8Zz4qxxB; Sat, 19 Aug 2023 17:51:50 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4RSmX625ZHz4SRn; Sat, 19 Aug 2023 17:51:50 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1692467510; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=jKW6E20nNKIQSCmsdAQIhfunOgqZBnmVx6lttB9bbgc=; b=CvIem+U87OZk8mVzNbmd28FAWoY99JI9BchrxwZYz5QeD3RYtgfIy/cexGc2+KZlJXUKbj oKFxym/SBcKgM4xmvNqv82KZm6QpUNqoZNr0O30TSKLYI+enasmUYOWTPCNzsjKyn3vnyV KPeQf/eZkACHxKiOWZbue4Jl5tRCpNKPMuMFnSTB/2+WT73234ouZ7exCA0R5iS751zMTf m5p3iYaUS8Qkt+27qfifRfRmR5wG2NzOoPH2VLdzZzW+NRuw6ky4jGs/O8v7e/1+a91+w+ BAKOCfp0Ur21iekUkf9BRZQCuqn/RCpRE83sni9rpd9telYAvL7G6cM5W/yPeQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1692467510; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=jKW6E20nNKIQSCmsdAQIhfunOgqZBnmVx6lttB9bbgc=; b=nniYPD1ubSRhIHRvfHSYMPkA5hAjWYNGlYUWmOTm4xyuV/GW0r1nXNBYkGYJAw79A+ekB6 Mmk109+teCWdaD9Z2589NpTVVnbQULBKP1ieJbFX5LDtP9VcfnGvo+yKfvBWvlICk4nx63 snlcw8SikmXwYqMYdfG/EeIxIPbVd0Xeyn1nnnLQL13VYH+vPmgOxV+L0VTUlgC8LDF2eo aWUJC4xAJlDC+JHyD1G58JGfAz6P2CK8Zv3vT5dpQ7E11mZs4NZycFHBa36awB1iBGGKrb 7JWuV7ArZr1LgrvTgV/AB81mQKmudMT/+gePfPNJWmEVf66ukxKB1glFIrrmlQ== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1692467510; a=rsa-sha256; cv=none; b=oYrIKCckt8hktnAB8s+Lhm48hiFVKZhwXvlOb+OxFa7TE36MhRi4Fa3D+nwd1J1qb/mSZ4 mgrGAsji2hz03kV4xASVcMF73f/U7zw8Y6+9QnhAeuMRCKkyO7J5NAPa04HJCH/sW2S5E4 uKDRhDJIteAOzI1LOzfPRt+B8+UJOBPRwbiHpNNAwd35uM7O4vLJUMI04UBExPzQCiSleH U1kAVWhW7YGwx3UjHZ0o4aOLKJjgkY1eiEFkaaoGcT25cw+brR6kdqaTBlEancZwJ5D7XW w3AqzqK7Ywt69Es1Bfr8orN4/j64+zs2LZESFu6OLQfX9ecWRQJBg1mgBtWNwA== ARC-Authentication-Results: i=1; mx1.freebsd.org; none Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4RSmX6181yz16Vm; Sat, 19 Aug 2023 17:51:50 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.17.1/8.17.1) with ESMTP id 37JHpo9E080740; Sat, 19 Aug 2023 17:51:50 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.17.1/8.17.1/Submit) id 37JHpohe080737; Sat, 19 Aug 2023 17:51:50 GMT (envelope-from git) Date: Sat, 19 Aug 2023 17:51:50 GMT Message-Id: <202308191751.37JHpohe080737@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-main@FreeBSD.org From: Fernando =?utf-8?Q?Apestegu=C3=ADa?= Subject: git: a13e8d285c91 - main - devel/artifactory: Mark as FORBIDDEN List-Id: Commits to the main branch of the FreeBSD ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-main List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-dev-commits-ports-main@freebsd.org X-BeenThere: dev-commits-ports-main@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: fernape X-Git-Repository: ports X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: a13e8d285c9195e769514732ea4493c90432e39f Auto-Submitted: auto-generated The branch main has been updated by fernape: URL: https://cgit.FreeBSD.org/ports/commit/?id=a13e8d285c9195e769514732ea4493c90432e39f commit a13e8d285c9195e769514732ea4493c90432e39f Author: Fernando ApesteguĂ­a AuthorDate: 2023-08-18 06:13:43 +0000 Commit: Fernando ApesteguĂ­a CommitDate: 2023-08-19 17:51:31 +0000 devel/artifactory: Mark as FORBIDDEN Port hasn't been updated since 2018 an ships a very old version of Tomcat with multiple vulnerabilities. PR: 269426 Reported by: lapo@lapo.it --- devel/artifactory/Makefile | 3 +++ 1 file changed, 3 insertions(+) diff --git a/devel/artifactory/Makefile b/devel/artifactory/Makefile index 8f58f139cef5..88ad006a6cbd 100644 --- a/devel/artifactory/Makefile +++ b/devel/artifactory/Makefile @@ -1,5 +1,6 @@ PORTNAME= artifactory DISTVERSION= 5.8.3 +PORTREVISION= 1 CATEGORIES= devel java MASTER_SITES= https://bintray.com/artifact/download/jfrog/artifactory/ DISTNAME= jfrog-${PORTNAME}-oss-${PORTVERSION} @@ -13,6 +14,8 @@ LICENSE_COMB= multi LICENSE_FILE_GPLv3= ${WRKSRC}/COPYING.AFFERO LICENSE_FILE_APACHE20= ${WRKSRC}/tomcat/LICENSE +FORBIDDEN= Ships a very vulnerable Tomcat 8.5.23 + RUN_DEPENDS= bash:shells/bash WRKSRC= ${WRKDIR}/${PORTNAME}-oss-${PORTVERSION}