Thursday, September 28, 2017

[security] devel/libofx

LibOFX CVE-2017-2816 Stack Based Buffer Overflow Vulnerability:
http://www.securityfocus.com/bid/100828
https://www.talosintelligence.com/vulnerability_reports/TALOS-2017-0317

No shared libs changes detected by nm(1).

Best regards,

Rafael Sadowski


Index: Makefile
===================================================================
RCS file: /cvs/ports/devel/libofx/Makefile,v
retrieving revision 1.17
diff -u -p -u -p -r1.17 Makefile
--- Makefile 26 Jul 2017 22:45:18 -0000 1.17
+++ Makefile 28 Sep 2017 20:44:46 -0000
@@ -2,9 +2,8 @@

COMMENT= opensource implementation of the OFX specification

-DISTNAME= libofx-0.9.11
+DISTNAME= libofx-0.9.12
CATEGORIES= devel
-REVISION= 0

HOMEPAGE= http://libofx.sourceforge.net/

Index: distinfo
===================================================================
RCS file: /cvs/ports/devel/libofx/distinfo,v
retrieving revision 1.9
diff -u -p -u -p -r1.9 distinfo
--- distinfo 1 Sep 2016 14:53:54 -0000 1.9
+++ distinfo 28 Sep 2017 20:44:46 -0000
@@ -1,2 +1,2 @@
-SHA256 (libofx-0.9.11.tar.gz) = sBFch2vuXfhAAqlvWMyo1z73t115nWo6RJBcNKjP6U8=
-SIZE (libofx-0.9.11.tar.gz) = 1097501
+SHA256 (libofx-0.9.12.tar.gz) = wV+gYvoR51nrbYx4Qhkdshhe4bIho/dellDihJ17c3M=
+SIZE (libofx-0.9.12.tar.gz) = 1288227
Index: pkg/PLIST
===================================================================
RCS file: /cvs/ports/devel/libofx/pkg/PLIST,v
retrieving revision 1.8
diff -u -p -u -p -r1.8 PLIST
--- pkg/PLIST 1 Sep 2016 14:53:54 -0000 1.8
+++ pkg/PLIST 28 Sep 2017 20:44:46 -0000
@@ -17,70 +17,113 @@ share/doc/libofx/NEWS
share/doc/libofx/README
share/doc/libofx/html/
share/doc/libofx/html/annotated.html
+share/doc/libofx/html/annotated.js
share/doc/libofx/html/bc_s.png
+share/doc/libofx/html/bdwn.png
share/doc/libofx/html/classLibofxContext.html
+share/doc/libofx/html/classLibofxContext.js
share/doc/libofx/html/classOFCApplication.html
+share/doc/libofx/html/classOFCApplication.js
+share/doc/libofx/html/classOFCApplication.png
share/doc/libofx/html/classOFXApplication.html
+share/doc/libofx/html/classOFXApplication.js
+share/doc/libofx/html/classOFXApplication.png
share/doc/libofx/html/classOfxAccountContainer.html
+share/doc/libofx/html/classOfxAccountContainer.js
share/doc/libofx/html/classOfxAccountContainer.png
share/doc/libofx/html/classOfxAccountInfoRequest.html
+share/doc/libofx/html/classOfxAccountInfoRequest.js
share/doc/libofx/html/classOfxAccountInfoRequest.png
share/doc/libofx/html/classOfxAggregate.html
+share/doc/libofx/html/classOfxAggregate.js
share/doc/libofx/html/classOfxAggregate.png
share/doc/libofx/html/classOfxBalanceContainer.html
+share/doc/libofx/html/classOfxBalanceContainer.js
share/doc/libofx/html/classOfxBalanceContainer.png
share/doc/libofx/html/classOfxBankTransactionContainer.html
+share/doc/libofx/html/classOfxBankTransactionContainer.js
share/doc/libofx/html/classOfxBankTransactionContainer.png
share/doc/libofx/html/classOfxDummyContainer.html
+share/doc/libofx/html/classOfxDummyContainer.js
share/doc/libofx/html/classOfxDummyContainer.png
share/doc/libofx/html/classOfxGenericContainer.html
+share/doc/libofx/html/classOfxGenericContainer.js
share/doc/libofx/html/classOfxGenericContainer.png
share/doc/libofx/html/classOfxInvestmentTransactionContainer.html
+share/doc/libofx/html/classOfxInvestmentTransactionContainer.js
share/doc/libofx/html/classOfxInvestmentTransactionContainer.png
share/doc/libofx/html/classOfxMainContainer.html
+share/doc/libofx/html/classOfxMainContainer.js
share/doc/libofx/html/classOfxMainContainer.png
share/doc/libofx/html/classOfxPaymentRequest.html
+share/doc/libofx/html/classOfxPaymentRequest.js
share/doc/libofx/html/classOfxPaymentRequest.png
share/doc/libofx/html/classOfxPushUpContainer.html
+share/doc/libofx/html/classOfxPushUpContainer.js
share/doc/libofx/html/classOfxPushUpContainer.png
share/doc/libofx/html/classOfxRequest.html
+share/doc/libofx/html/classOfxRequest.js
share/doc/libofx/html/classOfxRequest.png
share/doc/libofx/html/classOfxSecurityContainer.html
+share/doc/libofx/html/classOfxSecurityContainer.js
share/doc/libofx/html/classOfxSecurityContainer.png
share/doc/libofx/html/classOfxStatementContainer.html
+share/doc/libofx/html/classOfxStatementContainer.js
share/doc/libofx/html/classOfxStatementContainer.png
share/doc/libofx/html/classOfxStatementRequest.html
+share/doc/libofx/html/classOfxStatementRequest.js
share/doc/libofx/html/classOfxStatementRequest.png
share/doc/libofx/html/classOfxStatusContainer.html
+share/doc/libofx/html/classOfxStatusContainer.js
share/doc/libofx/html/classOfxStatusContainer.png
share/doc/libofx/html/classOfxTransactionContainer.html
+share/doc/libofx/html/classOfxTransactionContainer.js
share/doc/libofx/html/classOfxTransactionContainer.png
share/doc/libofx/html/classes.html
share/doc/libofx/html/classtree.html
+share/doc/libofx/html/classtree.js
share/doc/libofx/html/classtree_1_1fixed__depth__iterator.html
+share/doc/libofx/html/classtree_1_1fixed__depth__iterator.js
share/doc/libofx/html/classtree_1_1fixed__depth__iterator.png
share/doc/libofx/html/classtree_1_1iterator__base.html
+share/doc/libofx/html/classtree_1_1iterator__base.js
share/doc/libofx/html/classtree_1_1iterator__base.png
share/doc/libofx/html/classtree_1_1iterator__base__less.html
+share/doc/libofx/html/classtree_1_1iterator__base__less.js
share/doc/libofx/html/classtree_1_1post__order__iterator.html
+share/doc/libofx/html/classtree_1_1post__order__iterator.js
share/doc/libofx/html/classtree_1_1post__order__iterator.png
share/doc/libofx/html/classtree_1_1pre__order__iterator.html
+share/doc/libofx/html/classtree_1_1pre__order__iterator.js
share/doc/libofx/html/classtree_1_1pre__order__iterator.png
share/doc/libofx/html/classtree_1_1sibling__iterator.html
+share/doc/libofx/html/classtree_1_1sibling__iterator.js
share/doc/libofx/html/classtree_1_1sibling__iterator.png
share/doc/libofx/html/classtree__node__.html
+share/doc/libofx/html/classtree__node__.js
share/doc/libofx/html/closed.png
share/doc/libofx/html/config_8h_source.html
share/doc/libofx/html/context_8cpp_source.html
share/doc/libofx/html/context_8hh_source.html
+share/doc/libofx/html/dir_20e2ca10065093359117ddd9c719c709.html
+share/doc/libofx/html/dir_3cf3786b460160ab6139135c3eddb41a.html
+share/doc/libofx/html/dir_7d631e890fcd4250cf03649d3bed4eac.html
+share/doc/libofx/html/dir_9571d6a5bfc7e277cfafd71e2e16ab1b.html
+share/doc/libofx/html/dir_ab98ed36b5046cc6bcd1f3e3933b5014.html
+share/doc/libofx/html/dir_af29dbbdf5b6c58f7cdd493f608c14fa.html
share/doc/libofx/html/doxygen.css
share/doc/libofx/html/doxygen.png
+share/doc/libofx/html/dynsections.js
share/doc/libofx/html/file__preproc_8cpp.html
+share/doc/libofx/html/file__preproc_8cpp.js
share/doc/libofx/html/file__preproc_8cpp_source.html
share/doc/libofx/html/file__preproc_8hh.html
+share/doc/libofx/html/file__preproc_8hh.js
share/doc/libofx/html/file__preproc_8hh_source.html
share/doc/libofx/html/files.html
+share/doc/libofx/html/files.js
share/doc/libofx/html/ftv2blank.png
+share/doc/libofx/html/ftv2cl.png
share/doc/libofx/html/ftv2doc.png
share/doc/libofx/html/ftv2folderclosed.png
share/doc/libofx/html/ftv2folderopen.png
@@ -88,124 +131,159 @@ share/doc/libofx/html/ftv2lastnode.png
share/doc/libofx/html/ftv2link.png
share/doc/libofx/html/ftv2mlastnode.png
share/doc/libofx/html/ftv2mnode.png
+share/doc/libofx/html/ftv2mo.png
share/doc/libofx/html/ftv2node.png
+share/doc/libofx/html/ftv2ns.png
share/doc/libofx/html/ftv2plastnode.png
share/doc/libofx/html/ftv2pnode.png
share/doc/libofx/html/ftv2splitbar.png
share/doc/libofx/html/ftv2vertline.png
share/doc/libofx/html/functions.html
-share/doc/libofx/html/functions_0x62.html
-share/doc/libofx/html/functions_0x63.html
-share/doc/libofx/html/functions_0x64.html
-share/doc/libofx/html/functions_0x65.html
-share/doc/libofx/html/functions_0x66.html
-share/doc/libofx/html/functions_0x67.html
-share/doc/libofx/html/functions_0x68.html
-share/doc/libofx/html/functions_0x69.html
-share/doc/libofx/html/functions_0x6c.html
-share/doc/libofx/html/functions_0x6d.html
-share/doc/libofx/html/functions_0x6e.html
-share/doc/libofx/html/functions_0x6f.html
-share/doc/libofx/html/functions_0x70.html
-share/doc/libofx/html/functions_0x72.html
-share/doc/libofx/html/functions_0x73.html
-share/doc/libofx/html/functions_0x74.html
-share/doc/libofx/html/functions_0x75.html
-share/doc/libofx/html/functions_0x76.html
-share/doc/libofx/html/functions_0x77.html
+share/doc/libofx/html/functions_b.html
+share/doc/libofx/html/functions_c.html
+share/doc/libofx/html/functions_d.html
+share/doc/libofx/html/functions_dup.js
+share/doc/libofx/html/functions_e.html
share/doc/libofx/html/functions_enum.html
share/doc/libofx/html/functions_eval.html
+share/doc/libofx/html/functions_f.html
share/doc/libofx/html/functions_func.html
+share/doc/libofx/html/functions_g.html
+share/doc/libofx/html/functions_h.html
+share/doc/libofx/html/functions_i.html
+share/doc/libofx/html/functions_l.html
+share/doc/libofx/html/functions_m.html
+share/doc/libofx/html/functions_n.html
+share/doc/libofx/html/functions_o.html
+share/doc/libofx/html/functions_p.html
+share/doc/libofx/html/functions_r.html
+share/doc/libofx/html/functions_s.html
+share/doc/libofx/html/functions_t.html
share/doc/libofx/html/functions_type.html
+share/doc/libofx/html/functions_u.html
+share/doc/libofx/html/functions_v.html
share/doc/libofx/html/functions_vars.html
+share/doc/libofx/html/functions_w.html
share/doc/libofx/html/getopt1_8c_source.html
share/doc/libofx/html/getopt_8c_source.html
share/doc/libofx/html/globals.html
-share/doc/libofx/html/globals_0x63.html
-share/doc/libofx/html/globals_0x64.html
-share/doc/libofx/html/globals_0x65.html
-share/doc/libofx/html/globals_0x66.html
-share/doc/libofx/html/globals_0x69.html
-share/doc/libofx/html/globals_0x6c.html
-share/doc/libofx/html/globals_0x6d.html
-share/doc/libofx/html/globals_0x6f.html
-share/doc/libofx/html/globals_0x70.html
-share/doc/libofx/html/globals_0x71.html
-share/doc/libofx/html/globals_0x72.html
-share/doc/libofx/html/globals_0x73.html
-share/doc/libofx/html/globals_0x74.html
-share/doc/libofx/html/globals_0x75.html
-share/doc/libofx/html/globals_0x77.html
+share/doc/libofx/html/globals_c.html
+share/doc/libofx/html/globals_d.html
+share/doc/libofx/html/globals_dup.js
+share/doc/libofx/html/globals_e.html
share/doc/libofx/html/globals_enum.html
share/doc/libofx/html/globals_eval.html
+share/doc/libofx/html/globals_f.html
share/doc/libofx/html/globals_func.html
+share/doc/libofx/html/globals_i.html
+share/doc/libofx/html/globals_l.html
+share/doc/libofx/html/globals_m.html
+share/doc/libofx/html/globals_o.html
+share/doc/libofx/html/globals_p.html
+share/doc/libofx/html/globals_q.html
+share/doc/libofx/html/globals_r.html
+share/doc/libofx/html/globals_s.html
+share/doc/libofx/html/globals_t.html
share/doc/libofx/html/globals_type.html
+share/doc/libofx/html/globals_u.html
share/doc/libofx/html/globals_vars.html
+share/doc/libofx/html/globals_w.html
share/doc/libofx/html/gnugetopt_8h_source.html
share/doc/libofx/html/hierarchy.html
+share/doc/libofx/html/hierarchy.js
share/doc/libofx/html/inc_2libofx_8h.html
+share/doc/libofx/html/inc_2libofx_8h.js
share/doc/libofx/html/inc_2libofx_8h_source.html
share/doc/libofx/html/index.html
share/doc/libofx/html/jquery.js
-share/doc/libofx/html/libofx-0_89_89_2inc_2libofx_8h.html
-share/doc/libofx/html/libofx-0_89_89_2inc_2libofx_8h_source.html
+share/doc/libofx/html/libofx-0_89_811_2inc_2libofx_8h.html
+share/doc/libofx/html/libofx-0_89_811_2inc_2libofx_8h.js
+share/doc/libofx/html/libofx-0_89_811_2inc_2libofx_8h_source.html
share/doc/libofx/html/messages_8cpp.html
+share/doc/libofx/html/messages_8cpp.js
share/doc/libofx/html/messages_8cpp_source.html
share/doc/libofx/html/messages_8hh.html
+share/doc/libofx/html/messages_8hh.js
share/doc/libofx/html/messages_8hh_source.html
share/doc/libofx/html/namespacekp.html
share/doc/libofx/html/namespaces.html
+share/doc/libofx/html/namespaces.js
share/doc/libofx/html/nav_f.png
+share/doc/libofx/html/nav_g.png
share/doc/libofx/html/nav_h.png
share/doc/libofx/html/navtree.css
share/doc/libofx/html/navtree.js
+share/doc/libofx/html/navtreeindex0.js
+share/doc/libofx/html/navtreeindex1.js
+share/doc/libofx/html/navtreeindex2.js
+share/doc/libofx/html/navtreeindex3.js
+share/doc/libofx/html/navtreeindex4.js
share/doc/libofx/html/ofc__sgml_8cpp.html
+share/doc/libofx/html/ofc__sgml_8cpp.js
share/doc/libofx/html/ofc__sgml_8cpp_source.html
share/doc/libofx/html/ofc__sgml_8hh.html
+share/doc/libofx/html/ofc__sgml_8hh.js
share/doc/libofx/html/ofc__sgml_8hh_source.html
share/doc/libofx/html/ofx__aggregate_8hh.html
share/doc/libofx/html/ofx__aggregate_8hh_source.html
share/doc/libofx/html/ofx__container__account_8cpp.html
+share/doc/libofx/html/ofx__container__account_8cpp.js
share/doc/libofx/html/ofx__container__account_8cpp_source.html
share/doc/libofx/html/ofx__container__generic_8cpp.html
+share/doc/libofx/html/ofx__container__generic_8cpp.js
share/doc/libofx/html/ofx__container__generic_8cpp_source.html
share/doc/libofx/html/ofx__container__main_8cpp.html
share/doc/libofx/html/ofx__container__main_8cpp_source.html
share/doc/libofx/html/ofx__container__security_8cpp.html
+share/doc/libofx/html/ofx__container__security_8cpp.js
share/doc/libofx/html/ofx__container__security_8cpp_source.html
share/doc/libofx/html/ofx__container__statement_8cpp.html
+share/doc/libofx/html/ofx__container__statement_8cpp.js
share/doc/libofx/html/ofx__container__statement_8cpp_source.html
share/doc/libofx/html/ofx__container__transaction_8cpp.html
+share/doc/libofx/html/ofx__container__transaction_8cpp.js
share/doc/libofx/html/ofx__container__transaction_8cpp_source.html
share/doc/libofx/html/ofx__containers_8hh.html
share/doc/libofx/html/ofx__containers_8hh_source.html
share/doc/libofx/html/ofx__containers__misc_8cpp.html
+share/doc/libofx/html/ofx__containers__misc_8cpp.js
share/doc/libofx/html/ofx__containers__misc_8cpp_source.html
share/doc/libofx/html/ofx__error__msg_8hh.html
+share/doc/libofx/html/ofx__error__msg_8hh.js
share/doc/libofx/html/ofx__error__msg_8hh_source.html
share/doc/libofx/html/ofx__preproc_8cpp.html
+share/doc/libofx/html/ofx__preproc_8cpp.js
share/doc/libofx/html/ofx__preproc_8cpp_source.html
share/doc/libofx/html/ofx__preproc_8hh.html
+share/doc/libofx/html/ofx__preproc_8hh.js
share/doc/libofx/html/ofx__preproc_8hh_source.html
share/doc/libofx/html/ofx__request_8cpp.html
+share/doc/libofx/html/ofx__request_8cpp.js
share/doc/libofx/html/ofx__request_8cpp_source.html
share/doc/libofx/html/ofx__request_8hh.html
+share/doc/libofx/html/ofx__request_8hh.js
share/doc/libofx/html/ofx__request_8hh_source.html
share/doc/libofx/html/ofx__request__accountinfo_8cpp.html
+share/doc/libofx/html/ofx__request__accountinfo_8cpp.js
share/doc/libofx/html/ofx__request__accountinfo_8cpp_source.html
share/doc/libofx/html/ofx__request__accountinfo_8hh.html
share/doc/libofx/html/ofx__request__accountinfo_8hh_source.html
share/doc/libofx/html/ofx__request__statement_8cpp.html
+share/doc/libofx/html/ofx__request__statement_8cpp.js
share/doc/libofx/html/ofx__request__statement_8cpp_source.html
share/doc/libofx/html/ofx__request__statement_8hh.html
share/doc/libofx/html/ofx__request__statement_8hh_source.html
share/doc/libofx/html/ofx__sgml_8cpp.html
+share/doc/libofx/html/ofx__sgml_8cpp.js
share/doc/libofx/html/ofx__sgml_8cpp_source.html
share/doc/libofx/html/ofx__sgml_8hh.html
+share/doc/libofx/html/ofx__sgml_8hh.js
share/doc/libofx/html/ofx__sgml_8hh_source.html
share/doc/libofx/html/ofx__utilities_8cpp.html
+share/doc/libofx/html/ofx__utilities_8cpp.js
share/doc/libofx/html/ofx__utilities_8cpp_source.html
share/doc/libofx/html/ofx__utilities_8hh.html
+share/doc/libofx/html/ofx__utilities_8hh.js
share/doc/libofx/html/ofx__utilities_8hh_source.html
share/doc/libofx/html/ofxconnect_2cmdline_8c_source.html
share/doc/libofx/html/ofxconnect_2cmdline_8h_source.html
@@ -214,20 +292,37 @@ share/doc/libofx/html/ofxdump_2cmdline_8
share/doc/libofx/html/open.png
share/doc/libofx/html/resize.js
share/doc/libofx/html/structErrorMsg.html
+share/doc/libofx/html/structErrorMsg.js
share/doc/libofx/html/structLibofxFileFormatInfo.html
+share/doc/libofx/html/structLibofxFileFormatInfo.js
share/doc/libofx/html/structOfxAccountData.html
+share/doc/libofx/html/structOfxAccountData.js
share/doc/libofx/html/structOfxCurrency.html
+share/doc/libofx/html/structOfxCurrency.js
share/doc/libofx/html/structOfxFiLogin.html
+share/doc/libofx/html/structOfxFiLogin.js
share/doc/libofx/html/structOfxFiServiceInfo.html
+share/doc/libofx/html/structOfxFiServiceInfo.js
share/doc/libofx/html/structOfxPayee.html
+share/doc/libofx/html/structOfxPayee.js
share/doc/libofx/html/structOfxPayment.html
+share/doc/libofx/html/structOfxPayment.js
share/doc/libofx/html/structOfxSecurityData.html
+share/doc/libofx/html/structOfxSecurityData.js
share/doc/libofx/html/structOfxStatementData.html
+share/doc/libofx/html/structOfxStatementData.js
share/doc/libofx/html/structOfxStatusData.html
+share/doc/libofx/html/structOfxStatusData.js
share/doc/libofx/html/structOfxTransactionData.html
+share/doc/libofx/html/structOfxTransactionData.js
share/doc/libofx/html/structcmdline__parser__params.html
+share/doc/libofx/html/structcmdline__parser__params.js
share/doc/libofx/html/structgengetopt__args__info.html
+share/doc/libofx/html/structgengetopt__args__info.js
share/doc/libofx/html/structoption.html
+share/doc/libofx/html/structoption.js
+share/doc/libofx/html/sync_off.png
+share/doc/libofx/html/sync_on.png
share/doc/libofx/html/tab_a.png
share/doc/libofx/html/tab_b.png
share/doc/libofx/html/tab_h.png

No comments:

Post a Comment