Review a fix for OpenSSL3 CVE

Kirill A. Korinsky kirill at korins.ky
Tue Nov 1 18:04:40 UTC 2022


Folks,

OpenSSL team released a fix for found CVE: https://www.openssl.org/blog/blog/2022/11/01/email-address-overflows/ <https://www.openssl.org/blog/blog/2022/11/01/email-address-overflows/>

May I ask someone to review a PR to fix this CVE?

https://github.com/macports/macports-ports/pull/16545 <https://github.com/macports/macports-ports/pull/16545>

I think that this CVE should be a reason to merge such PR ASAP without maintainers confirmation.

--
wbr, Kirill

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.macports.org/pipermail/macports-dev/attachments/20221101/594aa23e/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: Message signed with OpenPGP
URL: <http://lists.macports.org/pipermail/macports-dev/attachments/20221101/594aa23e/attachment.sig>


More information about the macports-dev mailing list