MFH: r525497

Fix CVE-2019-14868: certain environment variables interpreted as
arithmetic expressions on startup, leading to code injection.

Submitted by:	Siteshwar Vashisht <svashisht@redhat.com>
Reported by:	Marian Rehak
Security:	CVE-2019-14868
		https://bugzilla.redhat.com/show_bug.cgi?id=1757324
		https://access.redhat.com/security/cve/CVE-2019-14868
Approved by:	portmgr (miwi)
This commit is contained in:
Cy Schubert 2020-02-20 03:42:57 +00:00
parent 116296778b
commit 3f7a774106
Notes: svn2git 2021-03-31 03:12:20 +00:00
svn path=/branches/2020Q1/; revision=526540

View File

@ -2,6 +2,7 @@
PORTNAME= ksh93
DISTVERSION= 2020.0.0
PORTREVISION= 1
PORTEPOCH= 1
CATEGORIES= shells