pkgsrc-Bugs archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: pkg/51274: Mercurial needs updating to fix a bunch for remote code exec CVEs



The following reply was made to PR pkg/51274; it has been noted by GNATS.

From: Lloyd Parkes <lloyd%must-have-coffee.gen.nz@localhost>
To: gnats-bugs%NetBSD.org@localhost
Cc: pkg-manager%netbsd.org@localhost,
 gnats-admin%netbsd.org@localhost,
 pkgsrc-bugs%netbsd.org@localhost
Subject: Re: pkg/51274: Mercurial needs updating to fix a bunch for remote code exec CVEs
Date: Sun, 26 Jun 2016 17:35:18 +1200

 > On 26/06/2016, at 4:10 PM, David Holland <dholland-pbugs%netbsd.org@localhost> =
 wrote:
 >> Pkgsrc contains version 3.4 of Mercurial and this version of
 >> Mercurial has a number of known remote code execution bugs related
 >> to the conversion of git repos. The current version of Mercurial is
 >> version 3.8.3
 >=20
 > erm...
 >=20
 > % pkg_info mercurial | head -1
 > Information for mercurial-3.8.3:
 
 Sigh. I found a CVS sticky date in my devel/py-mercurial working copy. =
 Probably set when I was last fiddling with git integration.
 
 I shall try and remember to fiddle with stuff somewhere other than my =
 working copy of current pkgsrc and to make more liberal use of =E2=80=9C-A=
 =E2=80=9D.
 
 Please close this PR.
 
 Lloyd
 


Home | Main Index | Thread Index | Old Index