# pkg audit
libidn2-2.2.0 is vulnerable:
^^^^^^^^
libidn2 -- roundtrip check vulnerability
CVE: CVE-2019-12290
WWW:
https://vuxml.FreeBSD.org/freebsd/f04f840d-0840-11ea-8d66-75d3253ef913.html
Opening the link, I find:
GNU libidn2 *before* 2.2.0 fails...
Which is right?
Is 2.2.0 affected or not?
bye & Thanks
av.
_______________________________________________
freebsd-ports@freebsd.org mailing list
https://lists.freebsd.org/mailman/listinfo/freebsd-ports
To unsubscribe, send any mail to "freebsd-ports-unsubscr...@freebsd.org"