marking vulnerable ports forbidden?

Bryan Drewery bdrewery at FreeBSD.org
Tue Jul 15 21:49:03 UTC 2014


On 7/15/2014 7:45 AM, René Ladan wrote:
> Hi,
> 
> according to Freshports [1] there are currently 24 vulnerable ports not
> marked as forbidden.
> How about checking this list on a regular basis and marking such ports and
> forbidden and optionally as deprecated? This would inform users not using
> vuxml earlier about vulnerabilities.
> 
> [1] http://www.freshports.org/ports-vulnerable.php
> 
> Regards,
> René
> _______________________________________________

Do take it case-by-case though. Doing this wipes out most Linux ports
IIRC. Some of the vulns documented are not worthy of a FORBIDDEN.

-- 
Regards,
Bryan Drewery

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 553 bytes
Desc: OpenPGP digital signature
URL: <http://lists.freebsd.org/pipermail/freebsd-ports/attachments/20140715/77bda832/attachment.sig>


More information about the freebsd-ports mailing list