freebsd-ports/security/zeek
Craig Leres 4e0e0f48d7 security/zeek: Update to 5.0.7
https://github.com/zeek/zeek/releases/tag/v5.0.7

This release fixes the following potential DoS vulnerabilities:

 - Receiving DNS responses from async DNS requests (via the
   lookup_addr, etc BIF methods) with the TTL set to zero could
   cause the DNS manager to eventually stop being able to make new
   requests.

 - Specially-crafted FTP packets with excessively long usernames,
   passwords, or other fields could cause log writes to use large
   amounts of disk space.

 - The find_all and find_all_ordered BIF methods could take extremely
   large amounts of time to process incoming data depending on the
   size of the input.

This release fixes the following bugs:

 - Various issues with signed/unsigned character discrepancies on
   arm64 builds are fixed.

 - A performance degredation in debug builds involving hashing large
   keys for Dictionaries was fixed.

Reported by:	Tim Wojtulewicz
Security:	7a425536-74f7-4ce4-9768-0079a9d44d11
2023-02-21 14:39:32 -08:00
..
files
distinfo security/zeek: Update to 5.0.7 2023-02-21 14:39:32 -08:00
Makefile security/zeek: Update to 5.0.7 2023-02-21 14:39:32 -08:00
pkg-descr
pkg-plist