pkgsrc-Bugs archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: pkg/48953: pkg audit showing erroneous CVE for nginx-1.5.12nb3 installed via pkgin



The following reply was made to PR pkg/48953; it has been noted by GNATS.

From: "OBATA Akio" <obata%lins.jp@localhost>
To: gnats-bugs%netbsd.org@localhost
Cc: 
Subject: Re: pkg/48953: pkg audit showing erroneous CVE for nginx-1.5.12nb3
 installed via pkgin
Date: Thu, 26 Jun 2014 13:39:54 +0900

 On Thu, 26 Jun 2014 11:45:00 +0900, <c.vv%outlook.com@localhost> wrote:
 
 > Package nginx-1.5.12nb3 has a man-in-the-middle-attack vulnerability, see 
 > http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4968
 >
 > The CVE indicated applies to nginx versions .7.61 - .8.40 only
 
 Just the day of 2011, 0.7.x and 0.8.x are latest releases.
    http://trac.nginx.org/nginx/ticket/13
 
 -- 
 OBATA Akio / obata%lins.jp@localhost
 


Home | Main Index | Thread Index | Old Index