From nobody Fri Sep 06 13:35:55 2024 X-Original-To: dev-commits-ports-main@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4X0cgb4PMCz5V5LV; Fri, 06 Sep 2024 13:35:55 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R11" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4X0cgb3sznz4LFb; Fri, 6 Sep 2024 13:35:55 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1725629755; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=kN4KvmjS4yzOwoEpcNHbKgeF/lWNic3dTUI9BYbVpfY=; b=OaD+mjkNkMuWvcXP/9NSMJmG08S+StehLhOj4cUVZKZEkUi9KCMNs6zZm4swLn0AfkKGBC 4kbBHa8CvZUHmw0Ek+4eV3bVugI8RWP1sBjzkwss7xfrHDT148vCEhdTigfLyAYIAGjyuO 2SRFwlGvnP+rRi17ZvasTM8BzS8XXHpn8D3Vs07cUq+POyPNMoFpbDr1u5FsYvK0NQD1EO k0lG1/cyIRlbnlVv6zIFgS8qigjIPedINefb+yg12ARr/MuZ4cKfnrde4x37YpMEkft/oH ykfV4tupMgpBSf3Gl3QOCc9Z+ylTboe95mJO2apv4UiKU394m1BfaNoFOQtH2A== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1725629755; a=rsa-sha256; cv=none; b=uj4xmYdhnItLc0hGSTWVN+u748VwwVou4K8doLdGsca5jdWsNZfh1n0V2A99dbJ0bwKqKq aEBRMyFsJgX1Ol6Q+0TRg7SkrSQr9RotS0P/pJbRQw1immWd1Sm8+7tWn6jgwf5nvszAie bIhQVjvUE3samNfDF4iDszo1JxAlpxGMxFbqi9pLVJtgxR19wT0Yx2Vb0mBwI1bAcwZDQF vs8HqdA3f320C/pd7zltMYIOWePNnmGoJz+4QU5No5dQNDBBvE80c30hYwlv2o/47Bzz17 wb5wEMIgCKIaSaK5L3uAqWGbMfNLbzpVPBxuNUNwtUW/3No3vwn9BKsf/NvOow== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1725629755; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=kN4KvmjS4yzOwoEpcNHbKgeF/lWNic3dTUI9BYbVpfY=; b=X1fB2bWBSNo1ckV8GWYVakDjC3pnmEwQxENVyZweYt6TaztghiHc3osQAh1Y9JdOiZ9T9t drxOP9tCGBiDcdmlqPD/nF2wYrnGks0eKP2LvZbeEEk3Mp6KfgKg4wQEOilbwR7CQxq3PC y/+7/SiqefvGAa3Il0sqVgQ5NTggRW+GI33homFFex2gTrPsmseBpYsm2dGGgDmyu45bOq d/MFQZvTkMAv4TL1FfmWXkSGpvcut2CCsYdUK6osLQbvuX8GqgMqoI6XfCC+pLbrvn1i4J 1wsCK6HyMCLoZVOV48QeENhPc/tsMmstTWxd3/CXtLgwVcG2osRpD3KaG0qKEQ== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4X0cgb3TW9ztS3; Fri, 6 Sep 2024 13:35:55 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.18.1/8.18.1) with ESMTP id 486DZtDr097850; Fri, 6 Sep 2024 13:35:55 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.18.1/8.18.1/Submit) id 486DZtut097847; Fri, 6 Sep 2024 13:35:55 GMT (envelope-from git) Date: Fri, 6 Sep 2024 13:35:55 GMT Message-Id: <202409061335.486DZtut097847@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-main@FreeBSD.org From: Vladimir Druzenko Subject: git: afa1c64ca18d - main - www/gitea: Update 1.21.11 =?utf-8?Q?=E2=86=92?= 1.22.2 (fixes security vulnerabilities) List-Id: Commits to the main branch of the FreeBSD ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-main List-Help: List-Post: List-Subscribe: List-Unsubscribe: X-BeenThere: dev-commits-ports-main@freebsd.org Sender: owner-dev-commits-ports-main@FreeBSD.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: vvd X-Git-Repository: ports X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: afa1c64ca18da1f259324283f25e281484e50188 Auto-Submitted: auto-generated The branch main has been updated by vvd: URL: https://cgit.FreeBSD.org/ports/commit/?id=afa1c64ca18da1f259324283f25e281484e50188 commit afa1c64ca18da1f259324283f25e281484e50188 Author: Stefan Bethke AuthorDate: 2024-09-06 13:32:13 +0000 Commit: Vladimir Druzenko CommitDate: 2024-09-06 13:32:13 +0000 www/gitea: Update 1.21.11 → 1.22.2 (fixes security vulnerabilities) Changelogs: https://github.com/go-gitea/gitea/releases/tag/v1.22.0 https://github.com/go-gitea/gitea/releases/tag/v1.22.1 https://github.com/go-gitea/gitea/releases/tag/v1.22.2 While here replace spaces with tabs in Makefile. PR: 281298 MFH: 2024Q3 --- security/vuxml/vuln/2024.xml | 26 ++++++++++++++++++++++++++ www/gitea/Makefile | 9 ++++----- www/gitea/distinfo | 6 +++--- 3 files changed, 33 insertions(+), 8 deletions(-) diff --git a/security/vuxml/vuln/2024.xml b/security/vuxml/vuln/2024.xml index 21cb6b145c59..f4f89e3aaea7 100644 --- a/security/vuxml/vuln/2024.xml +++ b/security/vuxml/vuln/2024.xml @@ -1,3 +1,29 @@ + + gitea -- multiple issues + + + gitea + 1.22.2 + + + + +

Problem Description:

+
    +
  • Replace v-html with v-text in search inputbox
  • +
  • Fix nuget/conan/container packages upload bugs
  • +
+ +
+ + https://github.com/go-gitea/gitea/releases/tag/v1.22.2 + + + 2024-09-03 + 2024-09-05 + +
+ qt5-webengine -- Multiple vulnerabilities diff --git a/www/gitea/Makefile b/www/gitea/Makefile index 0e906fae35d6..f0b9d24b29a2 100644 --- a/www/gitea/Makefile +++ b/www/gitea/Makefile @@ -1,7 +1,6 @@ PORTNAME= gitea DISTVERSIONPREFIX= v -DISTVERSION= 1.21.11 -PORTREVISION= 4 +DISTVERSION= 1.22.2 CATEGORIES= www MASTER_SITES= https://github.com/go-gitea/gitea/releases/download/${DISTVERSIONPREFIX}${DISTVERSION}/ \ https://dl.gitea.io/gitea/${DISTVERSION}/ @@ -16,7 +15,7 @@ LICENSE_FILE= ${WRKSRC}/LICENSE RUN_DEPENDS= git:devel/git -USES= cpe gmake go:1.21,no_targets +USES= cpe gmake go:1.22,no_targets USE_RC_SUBR= gitea EXTRACT_AFTER_ARGS= --strip-components 1 # since 1.17.0, archive includes gitea-src-VERSION directory @@ -54,8 +53,8 @@ DAEMONARGS= -f SUB_LIST+= DAEMONARGS="${DAEMONARGS}" SSP_UNSAFE= true -LDFLAGS+= "'-X "code.gitea.io/gitea/modules/setting.CustomPath=${PREFIX}/etc/gitea"'" -LDFLAGS+= "'-X "code.gitea.io/gitea/modules/setting.AppWorkPath=${PREFIX}/share/gitea"'" +LDFLAGS+= "'-X "code.gitea.io/gitea/modules/setting.CustomPath=${PREFIX}/etc/gitea"'" +LDFLAGS+= "'-X "code.gitea.io/gitea/modules/setting.AppWorkPath=${PREFIX}/share/gitea"'" MAKE_ARGS= GOPATH=${WRKDIR} TAGS="${GO_TAGS}" GOFLAGS="-buildvcs=false" ALL_TARGET= backend MAKE_JOBS_UNSAFE= yes diff --git a/www/gitea/distinfo b/www/gitea/distinfo index def33049cfee..4deeecdab0ed 100644 --- a/www/gitea/distinfo +++ b/www/gitea/distinfo @@ -1,3 +1,3 @@ -TIMESTAMP = 1715269556 -SHA256 (gitea-src-1.21.11.tar.gz) = 4f1cac5f0de555d57f86520bced33e0fbc08a5ea977e0940cbb024d80c679443 -SIZE (gitea-src-1.21.11.tar.gz) = 54029294 +TIMESTAMP = 1725555216 +SHA256 (gitea-src-1.22.2.tar.gz) = 8c2f2cdac0b0403dfe99198064fcc1cd92c560e31072e550da3fc9c49a22c05d +SIZE (gitea-src-1.22.2.tar.gz) = 54444512