Received: by mail.netbsd.org (Postfix, from userid 605) id 57C0C84DA7; Thu, 27 May 2021 14:10:14 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by mail.netbsd.org (Postfix) with ESMTP id 9417684D71 for ; Thu, 27 May 2021 14:10:13 +0000 (UTC) X-Virus-Scanned: amavisd-new at netbsd.org Received: from mail.netbsd.org ([IPv6:::1]) by localhost (mail.netbsd.org [IPv6:::1]) (amavisd-new, port 10025) with ESMTP id UErnURKQM99V for ; Thu, 27 May 2021 14:10:13 +0000 (UTC) Received: from cvs.NetBSD.org (ivanova.NetBSD.org [IPv6:2001:470:a085:999:28c:faff:fe03:5984]) by mail.netbsd.org (Postfix) with ESMTP id 08F2184CE3 for ; Thu, 27 May 2021 14:10:13 +0000 (UTC) Received: by cvs.NetBSD.org (Postfix, from userid 500) id F0E53FA95; Thu, 27 May 2021 14:10:12 +0000 (UTC) Content-Transfer-Encoding: 7bit Content-Type: multipart/mixed; boundary="_----------=_1622124612219870" MIME-Version: 1.0 Date: Thu, 27 May 2021 14:10:12 +0000 From: "Takahiro Kambe" Subject: CVS commit: pkgsrc/net/isc-dhcp4 To: pkgsrc-changes@NetBSD.org Reply-To: taca@netbsd.org X-Mailer: log_accum Message-Id: <20210527141012.F0E53FA95@cvs.NetBSD.org> Sender: pkgsrc-changes-owner@NetBSD.org List-Id: Precedence: bulk List-Unsubscribe: This is a multi-part message in MIME format. --_----------=_1622124612219870 Content-Disposition: inline Content-Transfer-Encoding: 8bit Content-Type: text/plain; charset="US-ASCII" Module Name: pkgsrc Committed By: taca Date: Thu May 27 14:10:12 UTC 2021 Modified Files: pkgsrc/net/isc-dhcp4: Makefile.common distinfo Log Message: net/isc-dhcp4: update to 4.4.2p1 Update isc-dhcp4 to 4.4.2p1 (4.4.2-P1). Changes since 4.4.2 (Bug Fixes) ! Corrected a buffer overwrite possible when parsing hexadecimal literals with more than 1024 octets. Reported by Jon Franklin from Dell, and also by Pawel Wieczorkiewicz from Amazon Web Services. [Gitlab #182] CVE: CVE-2021-25217 To generate a diff of this commit: cvs rdiff -u -r1.41 -r1.42 pkgsrc/net/isc-dhcp4/Makefile.common cvs rdiff -u -r1.29 -r1.30 pkgsrc/net/isc-dhcp4/distinfo Please note that diffs are not public domain; they are subject to the copyright notices on the relevant files. --_----------=_1622124612219870 Content-Disposition: inline Content-Length: 1905 Content-Transfer-Encoding: binary Content-Type: text/x-diff; charset=us-ascii Modified files: Index: pkgsrc/net/isc-dhcp4/Makefile.common diff -u pkgsrc/net/isc-dhcp4/Makefile.common:1.41 pkgsrc/net/isc-dhcp4/Makefile.common:1.42 --- pkgsrc/net/isc-dhcp4/Makefile.common:1.41 Sun May 10 14:24:59 2020 +++ pkgsrc/net/isc-dhcp4/Makefile.common Thu May 27 14:10:12 2021 @@ -1,4 +1,4 @@ -# $NetBSD: Makefile.common,v 1.41 2020/05/10 14:24:59 rillig Exp $ +# $NetBSD: Makefile.common,v 1.42 2021/05/27 14:10:12 taca Exp $ # # used by net/isc-dhcp4/Makefile # used by net/isc-dhcpd4/Makefile @@ -17,7 +17,7 @@ LICENSE= mpl-2.0 CONFLICTS+= isc-dhcp-base-3.* -VERSION= 4.4.2 +VERSION= 4.4.2-P1 .include "../../mk/bsd.prefs.mk" Index: pkgsrc/net/isc-dhcp4/distinfo diff -u pkgsrc/net/isc-dhcp4/distinfo:1.29 pkgsrc/net/isc-dhcp4/distinfo:1.30 --- pkgsrc/net/isc-dhcp4/distinfo:1.29 Thu Jan 23 08:11:27 2020 +++ pkgsrc/net/isc-dhcp4/distinfo Thu May 27 14:10:12 2021 @@ -1,9 +1,9 @@ -$NetBSD: distinfo,v 1.29 2020/01/23 08:11:27 taca Exp $ +$NetBSD: distinfo,v 1.30 2021/05/27 14:10:12 taca Exp $ -SHA1 (dhcp-4.4.2.tar.gz) = cb4ba6617e1bc2e3cbf770be5c0443b1ad276db5 -RMD160 (dhcp-4.4.2.tar.gz) = 4313051060f14c0d742ea70475d6cd506cbd45f1 -SHA512 (dhcp-4.4.2.tar.gz) = c3dee2cf6e4b43d519d4bc89e9b8b12a6e3747d8c4edc0f83d4a88355a483b91a5f7d2353a3c0a2f37f88704fd2f64478ac5161ca72b10c42cebcb92907afa40 -Size (dhcp-4.4.2.tar.gz) = 9906235 bytes +SHA1 (dhcp-4.4.2-P1.tar.gz) = 9a573dd7bb405f80c6ba41dfa88a4460755434ef +RMD160 (dhcp-4.4.2-P1.tar.gz) = 1e9a47e3772b6b4b94f5c252d6dba30b85d83062 +SHA512 (dhcp-4.4.2-P1.tar.gz) = 924e8b44f288361dbe837987869e57b929c73cb5e4af37cb2d7b19bca5ea8594048fb41c0792fede003188185f61b25befbc2ccda42f1f68e6b6bc22ef44b040 +Size (dhcp-4.4.2-P1.tar.gz) = 9898311 bytes SHA1 (patch-aa) = da090b3b824f5d437f8d05ce00e2ac4dfc65d6af SHA1 (patch-ab) = 0683dd2259e48184713559aa0356ee352aa52c39 SHA1 (patch-ac) = a7e6808a6e1e93c520eb085f31259f6c142750f4 --_----------=_1622124612219870--