Summary: | www-misc/awstats-7.7 version bump | ||
---|---|---|---|
Product: | Gentoo Linux | Reporter: | Tobias Sager <moixa> |
Component: | Current packages | Assignee: | Gentoo Web Application Packages Maintainers <web-apps> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | joshin, reuben-gentoo-bugzilla |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | |||
Bug Blocks: | 642428 |
Description
Tobias Sager
2017-01-03 20:18:03 UTC
v7.7 has been released with critical security fixes for remote execution Changelog: Security fix: CVE-2017-1000501 Security fix: Missing sanitizing of parameters Fix LogFormat=4 with url containing spaces. Fix to window.opener vulnerability in external referral site links. Add methodurlprot in key to define log format. Add Dynamic DNS Lookup. Fix edge support. Confirming Tobia's comment. Renaming the existing ebuild works for me. The bug has been closed via the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=22812026e7262e3f7fc4cd5243df30c023b97133 commit 22812026e7262e3f7fc4cd5243df30c023b97133 Author: Jorge Manuel B. S. Vicetto (jmbsvicetto) <jmbsvicetto@gentoo.org> AuthorDate: 2020-05-12 11:06:09 +0000 Commit: Jorge Manuel B. S. Vicetto (jmbsvicetto) <jmbsvicetto@gentoo.org> CommitDate: 2020-05-12 11:06:09 +0000 www-misc/awstats: Security bump to 7.8 release (CVE-2017-1000501). Bug: https://bugs.gentoo.org/646786 Fixes: https://bugs.gentoo.org/604548 Package-Manager: Portage-2.3.96, Repoman-2.3.22 Signed-off-by: Jorge Manuel B. S. Vicetto (jmbsvicetto) <jmbsvicetto@gentoo.org> www-misc/awstats/Manifest | 1 + www-misc/awstats/awstats-7.8.ebuild | 111 ++++++++++++++++++++++++++++++++++++ 2 files changed, 112 insertions(+) |