Received: by mail.netbsd.org (Postfix, from userid 605) id 7C44784D64; Fri, 18 Aug 2017 13:16:46 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by mail.netbsd.org (Postfix) with ESMTP id 1035384D50 for ; Fri, 18 Aug 2017 13:16:46 +0000 (UTC) X-Virus-Scanned: amavisd-new at netbsd.org Received: from mail.netbsd.org ([127.0.0.1]) by localhost (mail.netbsd.org [127.0.0.1]) (amavisd-new, port 10025) with ESMTP id kGXe1uxQPfmG for ; Fri, 18 Aug 2017 13:16:45 +0000 (UTC) Received: from cvs.NetBSD.org (ivanova.NetBSD.org [IPv6:2001:470:a085:999:28c:faff:fe03:5984]) by mail.netbsd.org (Postfix) with ESMTP id 89CF884D27 for ; Fri, 18 Aug 2017 13:16:45 +0000 (UTC) Received: by cvs.NetBSD.org (Postfix, from userid 500) id 84FDAFAD0; Fri, 18 Aug 2017 13:16:45 +0000 (UTC) Content-Transfer-Encoding: 7bit Content-Type: multipart/mixed; boundary="_----------=_1503062205203950" MIME-Version: 1.0 Date: Fri, 18 Aug 2017 13:16:45 +0000 From: "Ryo ONODERA" Subject: CVS commit: pkgsrc/sysutils/open-vm-tools To: pkgsrc-changes@NetBSD.org Reply-To: ryoon@netbsd.org X-Mailer: log_accum Message-Id: <20170818131645.84FDAFAD0@cvs.NetBSD.org> Sender: pkgsrc-changes-owner@NetBSD.org List-Id: pkgsrc-changes.NetBSD.org Precedence: bulk List-Unsubscribe: This is a multi-part message in MIME format. --_----------=_1503062205203950 Content-Disposition: inline Content-Transfer-Encoding: 8bit Content-Type: text/plain; charset="US-ASCII" Module Name: pkgsrc Committed By: ryoon Date: Fri Aug 18 13:16:45 UTC 2017 Modified Files: pkgsrc/sysutils/open-vm-tools: Makefile distinfo Log Message: Update to 10.1.10 Changelog: Fix for CVE-2015-5191 Open VMware Tools (CVE-2015-5191) contained multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation may result in a local privilege escalation. The impact of this vulnerability is low for distributions which have enabled PrivateTmp for the affected service. We would like to thank Florian Weimer and Kurt Seifried of Red Hat Product Security for reporting this issue to us. To generate a diff of this commit: cvs rdiff -u -r1.73 -r1.74 pkgsrc/sysutils/open-vm-tools/Makefile cvs rdiff -u -r1.23 -r1.24 pkgsrc/sysutils/open-vm-tools/distinfo Please note that diffs are not public domain; they are subject to the copyright notices on the relevant files. --_----------=_1503062205203950 Content-Disposition: inline Content-Length: 2306 Content-Transfer-Encoding: binary Content-Type: text/x-diff; charset=us-ascii Modified files: Index: pkgsrc/sysutils/open-vm-tools/Makefile diff -u pkgsrc/sysutils/open-vm-tools/Makefile:1.73 pkgsrc/sysutils/open-vm-tools/Makefile:1.74 --- pkgsrc/sysutils/open-vm-tools/Makefile:1.73 Mon Aug 7 17:56:13 2017 +++ pkgsrc/sysutils/open-vm-tools/Makefile Fri Aug 18 13:16:45 2017 @@ -1,10 +1,9 @@ -# $NetBSD: Makefile,v 1.73 2017/08/07 17:56:13 jlam Exp $ +# $NetBSD: Makefile,v 1.74 2017/08/18 13:16:45 ryoon Exp $ -DISTNAME= open-vm-tools-10.1.5-5055683 -PKGNAME= open-vm-tools-10.1.5 -PKGREVISION= 1 +DISTNAME= open-vm-tools-10.1.10-6082533 +PKGNAME= open-vm-tools-10.1.10 CATEGORIES= sysutils -MASTER_SITES= https://github.com/vmware/open-vm-tools/releases/download/stable-10.1.5/ +MASTER_SITES= https://github.com/vmware/open-vm-tools/releases/download/stable-10.1.10/ MAINTAINER= agc@NetBSD.org HOMEPAGE= https://github.com/vmware/open-vm-tools Index: pkgsrc/sysutils/open-vm-tools/distinfo diff -u pkgsrc/sysutils/open-vm-tools/distinfo:1.23 pkgsrc/sysutils/open-vm-tools/distinfo:1.24 --- pkgsrc/sysutils/open-vm-tools/distinfo:1.23 Sun Jul 2 09:17:56 2017 +++ pkgsrc/sysutils/open-vm-tools/distinfo Fri Aug 18 13:16:45 2017 @@ -1,9 +1,9 @@ -$NetBSD: distinfo,v 1.23 2017/07/02 09:17:56 taca Exp $ +$NetBSD: distinfo,v 1.24 2017/08/18 13:16:45 ryoon Exp $ -SHA1 (open-vm-tools-10.1.5-5055683.tar.gz) = 6de8e774cd61dde304c6e93a34b4fcdaefb12fc9 -RMD160 (open-vm-tools-10.1.5-5055683.tar.gz) = 54b39bc8ef20bbd948a7a50b0aa2e3b4f28c7477 -SHA512 (open-vm-tools-10.1.5-5055683.tar.gz) = eb934fb452d788f7f6153dc04fc97e722e69ed33acb900095989f79b3a7dd8ec6af639c128001877366d3839f6883ff386a8901c587e8de7e833d445167f6e54 -Size (open-vm-tools-10.1.5-5055683.tar.gz) = 5013543 bytes +SHA1 (open-vm-tools-10.1.10-6082533.tar.gz) = 54795f3f71bd78af8046c01b511948f280d7cbd1 +RMD160 (open-vm-tools-10.1.10-6082533.tar.gz) = 26ea25ed926e7acd4f056e8b8f47a269b88bafbf +SHA512 (open-vm-tools-10.1.10-6082533.tar.gz) = 60c52a24509cb0630f2ad649fe6717fefff624fc2a5c736ced35cbdb8f639264d482e063e8140eedb39216adfb1231d58232bfef0233ebc477ba4f9a732c5965 +Size (open-vm-tools-10.1.10-6082533.tar.gz) = 5111726 bytes SHA1 (patch-ag) = 67ce2bcba5cfcbd48f4d2345d5529329424952b3 SHA1 (patch-ah) = bdee6d92cdfe64f1ab513876ccd9d01f6fda6882 SHA1 (patch-ai) = 3e8c67a33f6072319f1741bda960377fc2663b06 --_----------=_1503062205203950--