Gentoo Archives: gentoo-commits

From: "Sergey Popov (pinkbyte)" <pinkbyte@g.o>
To: gentoo-commits@l.g.o
Subject: [gentoo-commits] gentoo commit in xml/htdocs/security/en/glsa: glsa-201206-29.xml
Date: Sun, 02 Feb 2014 18:37:35
Message-Id: 20140202183730.33EFD2004C@flycatcher.gentoo.org
1 pinkbyte 14/02/02 18:37:30
2
3 Modified: glsa-201206-29.xml
4 Log:
5 Correct GLSA 201206-29, there was no unaffected version of mount-cifs in tree ever
6
7 Revision Changes Path
8 1.2 xml/htdocs/security/en/glsa/glsa-201206-29.xml
9
10 file : http://sources.gentoo.org/viewvc.cgi/gentoo/xml/htdocs/security/en/glsa/glsa-201206-29.xml?rev=1.2&view=markup
11 plain: http://sources.gentoo.org/viewvc.cgi/gentoo/xml/htdocs/security/en/glsa/glsa-201206-29.xml?rev=1.2&content-type=text/plain
12 diff : http://sources.gentoo.org/viewvc.cgi/gentoo/xml/htdocs/security/en/glsa/glsa-201206-29.xml?r1=1.1&r2=1.2
13
14 Index: glsa-201206-29.xml
15 ===================================================================
16 RCS file: /var/cvsroot/gentoo/xml/htdocs/security/en/glsa/glsa-201206-29.xml,v
17 retrieving revision 1.1
18 retrieving revision 1.2
19 diff -u -r1.1 -r1.2
20 --- glsa-201206-29.xml 25 Jun 2012 18:57:31 -0000 1.1
21 +++ glsa-201206-29.xml 2 Feb 2014 18:37:30 -0000 1.2
22 @@ -1,6 +1,6 @@
23 <?xml version="1.0" encoding="UTF-8"?>
24 -<?xml-stylesheet type="text/xsl" href="/xsl/glsa.xsl"?>
25 -<?xml-stylesheet type="text/xsl" href="/xsl/guide.xsl"?>
26 +<?xml-stylesheet href="/xsl/glsa.xsl" type="text/xsl"?>
27 +<?xml-stylesheet href="/xsl/guide.xsl" type="text/xsl"?>
28 <!DOCTYPE glsa SYSTEM "http://www.gentoo.org/dtd/glsa.dtd">
29 <glsa id="201206-29">
30 <title>mount-cifs: Multiple vulnerabilites</title>
31 @@ -9,13 +9,12 @@
32 </synopsis>
33 <product type="ebuild">mount-cifs</product>
34 <announced>June 25, 2012</announced>
35 - <revised>June 25, 2012: 1</revised>
36 + <revised>February 02, 2014: 2</revised>
37 <bug>308067</bug>
38 <access>remote</access>
39 <affected>
40 <package name="net-fs/mount-cifs" auto="yes" arch="*">
41 - <unaffected range="ge">3.4.6</unaffected>
42 - <vulnerable range="lt">3.4.6</vulnerable>
43 + <vulnerable range="le">3.0.30</vulnerable>
44 </package>
45 </affected>
46 <background>
47 @@ -37,20 +36,20 @@
48 <p>There is no known workaround at this time.</p>
49 </workaround>
50 <resolution>
51 - <p>All mount-cifs users should upgrade to the latest version:</p>
52 + <p>Gentoo has discontinued support for mount-cifs. We recommend that users
53 + unmerge mount-cifs:
54 + </p>
55
56 <code>
57 - # emerge --sync
58 - # emerge --ask --oneshot --verbose "&gt;=net-fs/mount-cifs-3.4.6"
59 + # emerge --unmerge "net-fs/mount-cifs"
60 </code>
61 -
62 </resolution>
63 <references>
64 <uri link="http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-0547">CVE-2010-0547</uri>
65 <uri link="http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-0787">CVE-2010-0787</uri>
66 </references>
67 - <metadata timestamp="Sat, 08 Oct 2011 22:36:28 +0000" tag="requester">
68 + <metadata tag="requester" timestamp="Sat, 08 Oct 2011 22:36:28 +0000">
69 keytoaster
70 </metadata>
71 - <metadata timestamp="Mon, 25 Jun 2012 18:51:03 +0000" tag="submitter">craig</metadata>
72 + <metadata tag="submitter" timestamp="Sun, 02 Feb 2014 18:36:37 +0000">craig</metadata>
73 </glsa>