Subject: CVS commit: pkgsrc/www/htdig
From: Lubomir Sedlacik
Date: 2005-03-20 21:34:27
Message id: 20050320203427.7B90C2DA27@cvs.netbsd.org

Log Message:
Security fix for CAN-2005-0085.

"Cross-site scripting (XSS) vulnerability in ht://dig allows remote
 attackers to execute arbitrary web script or HTML via the config
 parameter, which is not properly sanitized before it is displayed
 in an error message."

Patch from Debian.  Bump PKGREVISION.

Files:
RevisionActionfile
1.22modifypkgsrc/www/htdig/Makefile
1.5modifypkgsrc/www/htdig/distinfo
1.1addpkgsrc/www/htdig/patches/patch-af
1.1addpkgsrc/www/htdig/patches/patch-ag
1.1addpkgsrc/www/htdig/patches/patch-ah