[Bug 207187] www/horde-base & devel/pear-Horde_Core: XSS vulnerabilites in 2016Q4 version

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Sun Feb 14 13:05:17 UTC 2016


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=207187

            Bug ID: 207187
           Summary: www/horde-base & devel/pear-Horde_Core: XSS
                    vulnerabilites in 2016Q4 version
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Keywords: security
          Severity: Affects Some People
          Priority: ---
         Component: Individual Port(s)
          Assignee: horde at FreeBSD.org
          Reporter: junovitch at freebsd.org
                CC: ports-secteam at FreeBSD.org
          Assignee: horde at FreeBSD.org
             Flags: maintainer-feedback?(horde at FreeBSD.org),
                    merge-quarterly?

https://github.com/horde/horde/commit/11d74fa5a22fe626c5e5a010b703cd46a136f253
https://github.com/horde/horde/commit/f03301cf6edcca57121a15e80014c4d0f29d99a0

This was documented in:
https://svnweb.FreeBSD.org/changeset/ports/408841

These are addressed in the recent Horde package updates SVN commits:
https://svnweb.FreeBSD.org/changeset/ports/407900
https://svnweb.FreeBSD.org/changeset/ports/407927
https://svnweb.FreeBSD.org/changeset/ports/408020

This touches a lot of packages though.  Should the 3 Horde updates be bulk
MFH'd at once or just the patches from git applied?

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list