freebsd-ports/sysutils/usermin/distinfo
Jimmy Olgeni 9fe42d2948 Update sysutils/usermin to version 1.780.
Contains fix for CVE-2019-15107.

From https://virtualmin.com/node/66890:

  To exploit the malicious code, your Webmin installation must have Webmin ->
  Webmin Configuration -> Authentication -> Password expiry policy set to
  Prompt users with expired passwords to enter a new one. This option is not
  set by default, but if it is set, it allows remote code execution.

PR:           239957
Submitted by: Bert JW Regeer <xistence@0x58.com>
Security:     CVE-2019-15107
2019-08-18 23:00:46 +00:00

4 lines
159 B
Plaintext

TIMESTAMP = 1566166759
SHA256 (usermin-1.780.tar.gz) = 6fc147e339106dbf3db5596b8712bf39a7e7181a15d329cad2b86e856fa7bc36
SIZE (usermin-1.780.tar.gz) = 17676345