On Tue, Jun 23, 2015 at 12:49:23AM +0900, Ryo ONODERA wrote: > CVE-2015-4000 is fixed in devel/nss 3.19.2. > You can replace nss-3.19.2 with 3.19.1 without recursive revbump. > > Can I update devel/nss during freeze? Yes, please. Thanks, Thomas