aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorsunpoet <sunpoet@FreeBSD.org>2014-09-12 15:41:09 +0800
committersunpoet <sunpoet@FreeBSD.org>2014-09-12 15:41:09 +0800
commit68e9a557528a14edb5e04bbd2343eb21dda8f5a9 (patch)
treeac8401c4a6017b1d755fe4b9b17326ebb061e2bc
parentfdb33e816766ae6ebb8fce5e44ec749d0875bfd1 (diff)
downloadfreebsd-ports-gnome-68e9a557528a14edb5e04bbd2343eb21dda8f5a9.tar.gz
freebsd-ports-gnome-68e9a557528a14edb5e04bbd2343eb21dda8f5a9.tar.zst
freebsd-ports-gnome-68e9a557528a14edb5e04bbd2343eb21dda8f5a9.zip
- Fix heap-based buffer overflow in formisc.c
- Bump PORTREVISION for package change Security: CVE-2014-3618 MFH: 2014Q3
-rw-r--r--mail/procmail/Makefile2
-rw-r--r--mail/procmail/files/patch-src-formisc.c16
2 files changed, 17 insertions, 1 deletions
diff --git a/mail/procmail/Makefile b/mail/procmail/Makefile
index 939cde833973..651fdfa6bead 100644
--- a/mail/procmail/Makefile
+++ b/mail/procmail/Makefile
@@ -3,7 +3,7 @@
PORTNAME= procmail
PORTVERSION= 3.22
-PORTREVISION= 7
+PORTREVISION= 8
CATEGORIES= mail
MASTER_SITES= ftp://ftp.ucsb.edu/pub/mirrors/procmail/ \
ftp://ftp.informatik.rwth-aachen.de/pub/packages/procmail/ \
diff --git a/mail/procmail/files/patch-src-formisc.c b/mail/procmail/files/patch-src-formisc.c
new file mode 100644
index 000000000000..2743d6c5f94a
--- /dev/null
+++ b/mail/procmail/files/patch-src-formisc.c
@@ -0,0 +1,16 @@
+--- src/formisc.c.orig 2001-06-29 10:20:45.000000000 +0800
++++ src/formisc.c 2014-09-12 00:58:12.989105253 +0800
+@@ -84,12 +84,11 @@
+ case '"':*target++=delim='"';start++;
+ }
+ ;{ int i;
+- do
++ while(*start)
+ if((i= *target++= *start++)==delim) /* corresponding delimiter? */
+ break;
+ else if(i=='\\'&&*start) /* skip quoted character */
+ *target++= *start++;
+- while(*start); /* anything? */
+ }
+ hitspc=2;
+ }