Title is all. Details, please see URL. Reproducible: Always
I think it's okay with only patches for usr.bin/compress/zopen.c from this result. # equery b compress sys-freebsd/freebsd-ubin-9.0 (/usr/bin/compress) # equery b gzip app-arch/gzip-1.4 (/bin/gzip)
9.0 is fixed afaik
(In reply to comment #2) > 9.0 is fixed afaik Yes. I know about it. However, I think freebsd-*-8.2 packages are included in official portage tree yet, and we need to provide security updates. Thanks in advance.
(In reply to comment #3) > (In reply to comment #2) > > 9.0 is fixed afaik > > Yes. I know about it. > However, I think freebsd-*-8.2 packages are included in official portage > tree yet, and we need to provide security updates. > > Thanks in advance. or build 9.0 stages and deprecate older versions and remove them some time later :) anyway, i dont have any <9.0 installs anymore, so i cant do it
+*freebsd-ubin-8.2-r1 (02 Apr 2012) + + 02 Apr 2012; Naohiro Aota <naota@gentoo.org> + +files/freebsd-ubin-8.2-compress.patch, +freebsd-ubin-8.2-r1.ebuild, + -freebsd-ubin-8.2.ebuild: + Add patch to fix CVE-2011-2895. #408887 +