[Bug 198813] devel/psptoolchain-binutils: Multiple security vulnerabilities

From: <bugzilla-noreply_at_freebsd.org>
Date: Wed, 27 Apr 2022 10:41:03 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=198813

Kubilay Kocak <koobs@FreeBSD.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
              Flags|maintainer-feedback?        |maintainer-feedback?(ports-
                   |                            |secteam@FreeBSD.org),
                   |                            |maintainer-feedback?(core@F
                   |                            |reeBSD.org),
                   |                            |maintainer-feedback?(pkubaj
                   |                            |@FreeBSD.org)
                 CC|                            |core@FreeBSD.org,
                   |                            |pkubaj@FreeBSD.org,
                   |                            |ports-bugs@FreeBSD.org
           Assignee|ports-secteam@FreeBSD.org   |ports-bugs@FreeBSD.org
           Keywords|needs-patch                 |

--- Comment #23 from Kubilay Kocak <koobs@FreeBSD.org> ---
^Triage: Reset Assignee (timeout: 2 years, original (security) report 2015)

It would be a shame to lose these ports, but 7 years on multiple security
vulnerabilities in our tree.

Upstream repo's are active [1][2], but this port now has no maintainer.
(comment 22).

Can someone please mark these ports deprecated with an expiration_date of ~3
months due to outstanding and unresolved security issues. We originally triaged
this in 2015.

While here, ping pkubaj who's fixed issues with these ports on other archs, in
the event they'd like to update them and has free cycles. Also cc
freebsd-ports-bugs to get the word out. If any issue needs it its this one.

[1] https://github.com/pspdev/psptoolchain
[2] https://github.com/pspdev/pspdev

Retriage Requested by: concerned freebsd community member

-- 
You are receiving this mail because:
You are the assignee for the bug.
You are on the CC list for the bug.