Friday, October 11, 2024

Re: Update www/mozilla-firefox & www/firefox-esr in response to CVE-2024-9680

Le Sat, Oct 12, 2024 at 12:13:50AM -0500, izzy Meyer a écrit :
> Hello ports@, landry@
>
> First off, I wanna apologize if you, Landry have already been panicking
> about this. But, if you weren't aware, FF has an actively attacked RCE
> vuln right now, and the port in our ports tree hasn't been updated.

there's no point in panicking, ever. I don't know where you've looked,
but the port is up to date, both in current and stable, and that since
two days, when the security update has been released.

https://cvsweb.openbsd.org/cgi-bin/cvsweb/ports/www/mozilla-firefox/Makefile
https://cvsweb.openbsd.org/cgi-bin/cvsweb/ports/www/firefox-esr/Makefile

Landry

No comments:

Post a Comment