Packages with security vulnerabilities (3x)

René Ladan r.c.ladan at gmail.com
Wed Aug 28 10:24:45 UTC 2019


Hello Jos,

Op wo 28 aug. 2019 om 11:36 schreef Jos Chrispijn <bsdports at cloudzeeland.nl>:
>
> Dear maintainer(s),
>
> Can you pls update the following packages:
>
> Database fetched: Tue Aug 27 01:14:30 CEST 2019
>
> apache24-2.4.39_1 is vulnerable:
[...]

> libnghttp2-1.39.1 is vulnerable:
[...]
>
> mysql57-server-5.7.26_1 is vulnerable:
[...]

You will have to ask the maintainers to update the packages (ports
actually, that is where the packages are built from), and then the
updated binary packages will be available a few days later.
This is the case if you follow "HEAD" packages, updates for quarterly
packages (currently 2019Q3) need to be merged to the quarterly branch
first before those binary packages can be rebuilt.

This list is only for discussing the 'pkg' package itself.

René


More information about the freebsd-pkg mailing list