FreeBSD ports you maintain which are out of date

2023-05-04 Thread portscout
Dear port maintainer,

The portscout new distfile checker has detected that one or more of your
ports appears to be out of date. Please take the opportunity to check
each of the ports listed below, and if possible and appropriate,
submit/commit an update. If any ports have already been updated, you can
safely ignore the entry.

You will not be e-mailed again for any of the port/version combinations
below.

Full details can be found at the following URL:
http://portscout.freebsd.org/pyt...@freebsd.org.html


Port| Current version | New version
+-+
devel/ipython   | 8.13.1  | 8.13.2
+-+
www/py-django32 | 3.2.18  | 3.2.19
+-+


If any of the above results are invalid, please check the following page
for details on how to improve portscout's detection and selection of
distfiles on a per-port basis:

http://portscout.freebsd.org/info/portscout-portconfig.txt

Reported by:portscout!



py-setuptools

2023-05-04 Thread John T. Darrah



Hello:

I am writing you because I would like to inquire about a port you 
maintain: py-setuptools. I get the following error when trying to build 
hiawatha, which py-setuptools is a requirement for:


py39-setuptools-63.1.0 is vulnerable:
  py39-setuptools -- denial of service vulnerability
  CVE: CVE-2022-40897
  WWW: 
https://vuxml.FreeBSD.org/freebsd/1b38aec4-4149-4c7d-851c-3c4de3a1fbd0.html


The listed link shows the py-setuptools issue was resolved in 
py-setuptools v. 65.5.1. Current version in FreeBSD ports is 63.1.0.


https://www.freshports.org/devel/py-setuptools/

If I can be of any assistance please let me know!


John