FreshPorts -- The Place For Ports If you buy from Amazon USA, please support us by using this link.
Follow us
Blog
Twitter

non port: head/lang/python27/files/patch-CVE-2014-1912
SVNWeb

Number of commits found: 2

Mon, 14 Jul 2014
[ 07:20 koobs ] Original commit   Revision:361735
361735 Mk/bsd.python.mk
361735 lang/python27/Makefile
361735 lang/python27/distinfo
361735 lang/python27/files/patch-CVE-2014-1912
361735 lang/python27/files/patch-Doc-library-fcntl.rst
361735 lang/python27/files/patch-Doc__library__fcntl.rst
361735 lang/python27/files/patch-Modules-fcntlmodule.c
361735 lang/python27/files/patch-Modules__fcntlmodule.c
361735 lang/python27/files/patch-issue20374
361735 lang/python27/files/patch-setup.py

(Only the first 10 of 13 ports in this commit are shown above. View all ports for this commit)
lang/python27: Update to 2.7.8

The FreeBSD Python team welcomes Python 2.7.8 to the Ports tree!

Announcement: https://www.python.org/download/releases/2.7.8/
Changelog:    http://hg.python.org/cpython/raw-file/v2.7.8/Misc/NEWS

- Update to 2.7.8, update pkg-plist
- OPTIONS: Reorder and sort alphabetically
- OPTIONS: Make POSIX SEM(aphores) a DEFAULT (Hi binary package users!)
- OPTIONS: Add better descriptions for UCS2 and UCS4
- OPTIONS: Use options helpers
- Remove patch-CVE-2014-1912: upstream, was backported
- Remove patch-issue20374: upstream, was backported
- Rename patch-Doc__library__fcntl.rst: underscore convention
(Only the first 15 lines of the commit message are shown above View all of this commit message)
Sat, 1 Mar 2014
[ 10:52 koobs ] Original commit   Revision:346614
346614 lang/python27/Makefile
346614 lang/python27/files/patch-CVE-2014-1912
346614 lang/python31/Makefile
346614 lang/python31/files/patch-CVE-2014-1912
346614 lang/python32/Makefile
346614 lang/python32/files/patch-CVE-2014-1912
346614 lang/python33/Makefile
346614 lang/python33/files/patch-CVE-2014-1912
lang/python*: Backport security fix for CVE-2014-1912

A vulnerability was reported [1] in Python's socket module, due to a
boundary error within the sock_recvfrom_into() function, which could be
exploited to cause a buffer overflow.

This could be used to crash a Python application that uses the
socket.recvfrom_info() function or, possibly, execute arbitrary code
with the permissions of the user running vulnerable Python code.

This vulnerable function, socket.recvfrom_into(), was introduced in
Python 2.5. Earlier versions are not affected by this flaw.  This is
fixed in upstream branches for version 2.7, 3.1, 3.2 and 3.3.

[1] http://bugs.python.org/issue20246

MFH:		2014Q1
Security:	8e5e6d42-a0fa-11e3-b09a-080027f2d077

Number of commits found: 2

Login
User Login
Create account

Servers and bandwidth provided by
New York Internet, SuperNews, and RootBSD

This site
What is FreshPorts?
About the authors
Issues
FAQ
How big is it?
The latest upgrade!
Privacy
Forums
Blog
Contact

Search
Enter Keywords:
 
more...

Latest Vulnerabilities
eximJun 21
openvpnJun 21
openvpn-mbedtlsJun 21
pear-Horde_ImageJun 21
pear-Horde_ImageJun 21
apache22Jun 20
apache24Jun 20
chromiumJun 16
curlJun 15
linux-flashplayerJun 15
p5-RT-Authen-ExternalAuthJun 15
rt42Jun 15
rt44Jun 15
firefoxJun 13
firefox-esrJun 13

13 vulnerabilities affecting 73 ports have been reported in the past 14 days

* - modified, not new

All vulnerabilities


Ports
Home
Categories
Deleted ports
Sanity Test Failures
Newsfeeds

Statistics
Graphs
NEW Graphs (Javascript)
Traffic

Calculated hourly:
Port count 30436
Broken 168
Deprecated 79
Ignore 459
Forbidden 0
Restricted 207
No CDROM 84
Vulnerable 153
Expired 33
Set to expire 75
Interactive 0
new 24 hours 25
new 48 hours26
new 7 days52
new fortnight90
new month513

Servers and bandwidth provided by
New York Internet, SuperNews, and RootBSD
Valid HTML, CSS, and RSS.
Copyright © 2000-2017 Dan Langille. All rights reserved.