mail/horde-turba: upgrade Turba to 4.2.29 and fix a vulnerability

Fix remote code execution by an unserialization attack (CVE-2022-30287)

Changelog at <https://github.com/horde/turba/blob/v4.2.29/docs/CHANGES>.

Security:	CVE-2022-30287

PR:		264523
Approved by:	horde (maintainer) and ports-secteam time-out
This commit is contained in:
Thierry Thomas 2022-06-07 14:38:03 +02:00
parent db283c3063
commit 455e2b036d
2 changed files with 4 additions and 4 deletions

View File

@ -1,5 +1,5 @@
PORTNAME= turba
PORTVERSION= 4.2.25
PORTVERSION= 4.2.29
CATEGORIES= mail www pear
PKGNAMEPREFIX= ${PHP_PKGNAMEPREFIX}horde-

View File

@ -1,3 +1,3 @@
TIMESTAMP = 1559196860
SHA256 (Horde/turba-4.2.25.tgz) = 5e8485f400a51458d136be5cfcc2a736735aaec551a4200f38d2d94114ae13ef
SIZE (Horde/turba-4.2.25.tgz) = 2002750
TIMESTAMP = 1655629235
SHA256 (Horde/turba-4.2.29.tgz) = 1231b1e19529c1ac0d73143724376bd6fd338d61bea29caf803ebe7e6e8a565a
SIZE (Horde/turba-4.2.29.tgz) = 2004290