From nobody Fri Jun 23 09:29:57 2023 X-Original-To: dev-commits-ports-main@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4QnX673y0Wz4gnRj; Fri, 23 Jun 2023 09:30:39 +0000 (UTC) (envelope-from eugen@freebsd.org) Received: from hz.grosbein.net (hz.grosbein.net [IPv6:2a01:4f8:c2c:26d8::2]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (2048 bits) client-digest SHA256) (Client CN "hz.grosbein.net", Issuer "hz.grosbein.net" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 4QnX670xQfz4K4S; Fri, 23 Jun 2023 09:30:39 +0000 (UTC) (envelope-from eugen@freebsd.org) Authentication-Results: mx1.freebsd.org; none Received: from eg.sd.rdtc.ru (root@eg.sd.rdtc.ru [62.231.161.221] (may be forged)) by hz.grosbein.net (8.17.1/8.17.1) with ESMTPS id 35N9UZa3028834 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Fri, 23 Jun 2023 09:30:36 GMT (envelope-from eugen@freebsd.org) X-Envelope-From: eugen@freebsd.org X-Envelope-To: leres@freebsd.org Received: from [10.58.0.11] (dadvw [10.58.0.11] (may be forged)) by eg.sd.rdtc.ru (8.16.1/8.16.1) with ESMTPS id 35N9UYhi068480 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128 verify=NOT); Fri, 23 Jun 2023 16:30:35 +0700 (+07) (envelope-from eugen@freebsd.org) Subject: Re: git: 6a95bd16a497 - main - security/vuxml: correct range after previous commit for py39-setuptools To: Craig Leres , ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-main@FreeBSD.org References: <202306221409.35ME9dHA066668@gitrepo.freebsd.org> From: Eugene Grosbein Message-ID: <8d2ff300-3536-a8b1-3329-7a677f30e46a@freebsd.org> Date: Fri, 23 Jun 2023 16:29:57 +0700 User-Agent: Mozilla/5.0 (Windows NT 6.3; WOW64; rv:45.0) Gecko/20100101 Thunderbird/45.8.0 List-Id: Commits to the main branch of the FreeBSD ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-main List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-dev-commits-ports-main@freebsd.org X-BeenThere: dev-commits-ports-main@freebsd.org MIME-Version: 1.0 In-Reply-To: Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 7bit X-Spam-Status: No, score=-1.0 required=5.0 tests=ALL_TRUSTED,SHORTCIRCUIT autolearn=disabled version=3.4.6 X-Spam-Report: * -0.0 SHORTCIRCUIT No description available. * -1.0 ALL_TRUSTED Passed through trusted hosts only via SMTP X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on hz.grosbein.net X-Rspamd-Queue-Id: 4QnX670xQfz4K4S X-Spamd-Bar: ---- X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:24940, ipnet:2a01:4f8::/32, country:DE] X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-ThisMailContainsUnwantedMimeParts: N 23.06.2023 0:35, Craig Leres wrote: > On 6/22/23 07:09, Eugene Grosbein wrote: >> The branch main has been updated by eugen: >> >> URL: https://cgit.FreeBSD.org/ports/commit/?id=6a95bd16a497674631f906d8c98690686c555cc9 >> >> commit 6a95bd16a497674631f906d8c98690686c555cc9 >> Author: Eugene Grosbein >> AuthorDate: 2023-06-22 14:06:12 +0000 >> Commit: Eugene Grosbein >> CommitDate: 2023-06-22 14:09:33 +0000 >> >> security/vuxml: correct range after previous commit for py39-setuptools >> Fixes: a3d611120fccf3b51b3dc62ec9246588e7d7a8ac >> --- >> security/vuxml/vuln/2023.xml | 2 +- >> 1 file changed, 1 insertion(+), 1 deletion(-) >> >> diff --git a/security/vuxml/vuln/2023.xml b/security/vuxml/vuln/2023.xml >> index 5cd8ec24d829..cd13f7023658 100644 >> --- a/security/vuxml/vuln/2023.xml >> +++ b/security/vuxml/vuln/2023.xml >> @@ -2835,7 +2835,7 @@ >> py39-setuptools >> 44.1.1 >> 57.0.058.5.3_3 >> - 63.1.0_1 >> + 62.1.063.1.0_1 >> >> >> > > Does this also need to be adjusted for python 2.7 as well? pkg audit still flags the package after a3d611120fcc. It does. Two other VuXML records now adjusted as well, thank you for the report.