notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine
This referral link gives you 10% off a Fastmail.com account and gives me a discount on my Fastmail account.

Get notified when packages are built

A new feature has been added. FreshPorts already tracks package built by the FreeBSD project. This information is displayed on each port page. You can now get an email when FreshPorts notices a new package is available for something on one of your watch lists. However, you must opt into that. Click on Report Subscriptions on the right, and New Package Notification box, and click on Update.

Finally, under Watch Lists, click on ABI Package Subscriptions to select your ABI (e.g. FreeBSD:14:amd64) & package set (latest/quarterly) combination for a given watch list. This is what FreshPorts will look for.

Port details
vuxml Vulnerability and eXposure Markup Language DTD
1.1_6 security on this many watch lists=31 search for ports that depend on this port Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 1.1_6Version of this port present on the latest quarterly branch.
Maintainer: ports-secteam@FreeBSD.org search for ports maintained by this maintainer
Port Added: 2004-02-12 14:24:23
Last Update: 2024-05-17 11:50:44
Commit Hash: 601952e
People watching this port, also watch:: gnupg, curl, libxml2, nmap, vim
Also Listed In: textproc
License: BSD2CLAUSE
WWW:
https://vuxml.freebsd.org/
Description:
VuXML (the Vulnerability and eXposure Markup Language) is an XML application for documenting security bugs and corrections within a software package collection such as the FreeBSD Ports Collection. This port installs the DTDs required for validating VuXML documents.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (13 items)
Collapse this list.
  1. /usr/local/share/licenses/vuxml-1.1_6/catalog.mk
  2. /usr/local/share/licenses/vuxml-1.1_6/LICENSE
  3. /usr/local/share/licenses/vuxml-1.1_6/BSD2CLAUSE
  4. @xmlcatmgr share/xml/dtd/vuxml/catalog
  5. @xmlcatmgr share/xml/dtd/vuxml/catalog.xml
  6. share/xml/dtd/vuxml/vuxml-10.dtd
  7. share/xml/dtd/vuxml/vuxml-11.dtd
  8. share/xml/dtd/vuxml/vuxml-model-10.mod
  9. share/xml/dtd/vuxml/vuxml-model-11.mod
  10. share/xml/dtd/vuxml/xml1.dcl
  11. @owner
  12. @group
  13. @mode
Collapse this list.
Dependency lines:
  • vuxml>0:security/vuxml
To install the port:
cd /usr/ports/security/vuxml/ && make install clean
To add the package, run one of these commands:
  • pkg install security/vuxml
  • pkg install vuxml
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: vuxml
Flavors: there is no flavor information for this port.
distinfo:
SHA256 (vuxml/vuxml-10.dtd) = 6a635ad2cf45f52361c8c2a29a689157fad4d00519045485bc822d34e04a524e SIZE (vuxml/vuxml-10.dtd) = 2986 SHA256 (vuxml/vuxml-model-10.mod) = 051fed00b52bedde8ee901003fc29f7b95cd904157e31ceef34e6b06f2d1a14a

Expand this list (11 items)

Collapse this list.

SIZE (vuxml/vuxml-model-10.mod) = 10599 SHA256 (vuxml/vuxml-11.dtd) = 12b50061d7bb34cecffede2e08d439e4469324376d55aeb7c73eb6aab0f36af1 SIZE (vuxml/vuxml-11.dtd) = 3063 SHA256 (vuxml/vuxml-model-11.mod) = a40777208625a3029c6f416aeeea733f614802a6a5f26035a4e445a09e61a47c SIZE (vuxml/vuxml-model-11.mod) = 13282 SHA256 (vuxml/xml1.dcl) = 343efa94c4e1302e85e08b2d1791d86e50aac1ecdbc3161daecac100e4726847 SIZE (vuxml/xml1.dcl) = 7372 SHA256 (vuxml/catalog) = 479a69cf02995603443fd1f3b5b33f97811670931f87f53be99a727d664abc66 SIZE (vuxml/catalog) = 549 SHA256 (vuxml/catalog.xml) = 7b2e2850f57264eeba0ccd3d1fc161b9d5ce3071ae0ec51b9da7fa956f2a6509 SIZE (vuxml/catalog.xml) = 2150

Collapse this list.


Packages (timestamps in pop-ups are UTC):
vuxml
ABIaarch64amd64armv6armv7i386powerpcpowerpc64powerpc64le
FreeBSD:13:latest1.1_61.1_61.1_51.1_61.1_6-1.1_5-
FreeBSD:13:quarterly1.1_61.1_61.1_61.1_61.1_61.1_61.1_61.1_6
FreeBSD:14:latest1.1_61.1_61.1_61.1_61.1_61.1_6-1.1_6
FreeBSD:14:quarterly1.1_61.1_6-1.1_61.1_61.1_61.1_61.1_6
FreeBSD:15:latest1.1_61.1_6n/a1.1_6n/a1.1_61.1_61.1_6
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Runtime dependencies:
  1. xmlcatmgr : textproc/xmlcatmgr
  2. xsltproc : textproc/libxslt
  3. VERSION : textproc/xhtml-modularization
  4. xhtml-basic10.dtd : textproc/xhtml-basic
  5. python3.9 : lang/python39
There are no ports dependent upon this port

Configuration Options:
No options to configure
Options name:
security_vuxml
USES:
python:run
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. http://www.vuxml.org/dtd/vuxml-1/
Collapse this list.

Number of commits found: 7265 (showing only 100 on this page)

[First Page]  «  60 | 61 | 62 | 63 | 64 | 65 | 66 | 67 | 68 | 69 | 70  »  [Last Page]

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
1.1_1
12 Oct 2005 22:53:00
Original commit files touched by this commit
simon search for other commits by this committer
Improve last couple of entries:
- Use standard topic format.
- Fix packagename in phpmyadmin and zone entries.
- Fix indention and remove EOL white-space.
- Make lead in a bit more verbose.
- Add more references to phpmyadmin issue.
- Remove some redundant quoted text in zope issue.
1.1_1
12 Oct 2005 14:51:14
Original commit files touched by this commit
mnag search for other commits by this committer
Add entry for openssl
Remove entry about safe mode in phpmyadmin
1.1_1
12 Oct 2005 00:24:39
Original commit files touched by this commit
mnag search for other commits by this committer
Add entry for phpmyadmin (PMASA-2005-4)
1.1_1
12 Oct 2005 00:12:21
Original commit files touched by this commit
mnag search for other commits by this committer
Fix typo with range values
1.1_1
12 Oct 2005 00:01:03
Original commit files touched by this commit
mnag search for other commits by this committer
Add entry from zope28
1.1_1
09 Oct 2005 21:03:07
Original commit files touched by this commit
simon search for other commits by this committer
For libxine -- format string vulnerability entry:
- Add reference to xine security announcement.
- Fix indention on a few lines.
1.1_1
09 Oct 2005 16:14:41
Original commit files touched by this commit
nobutaka search for other commits by this committer
Add an entry for libxine format string vulnerability.
1.1_1
09 Oct 2005 10:14:28
Original commit files touched by this commit
simon search for other commits by this committer
Mark older revisions linux_base-suse 9.3 as vulnerable to kdebase --
Kate backup file permission leak.
1.1_1
07 Oct 2005 07:31:51
Original commit files touched by this commit
sergei search for other commits by this committer
- Mark cfengine's arbitrary file overwriting vulnerability as fixed in 2.1.6_1
- Add another possible variant of package name - cfengine2
1.1_1
05 Oct 2005 17:44:06
Original commit files touched by this commit
thierry search for other commits by this committer
Add an entry for UW-IMAP Mailbox Name Handling Remote Buffer Overflow
Vulnerability (CAN-2005-2933).
1.1_1
05 Oct 2005 15:55:08
Original commit files touched by this commit
ehaupt search for other commits by this committer
Add credit for recent ftp/weex incident

Approved by:    novel (mentor)
1.1_1
04 Oct 2005 13:23:00
Original commit files touched by this commit
garga search for other commits by this committer
rinetd >= 0.62_1 has no more vulnerabilities
1.1_1
02 Oct 2005 20:10:42
Original commit files touched by this commit
remko search for other commits by this committer
Add references to three squid entries.

Submitted by:           Thomas-Martin Seck <tmseck at netcologne dot de>
                        (except for the bid's which i added myself).
1.1_1
02 Oct 2005 17:46:23
Original commit files touched by this commit
simon search for other commits by this committer
Use the <freebsdpr> tag to markup a PR in weex -- remote format string
vulnerability entry.
1.1_1
02 Oct 2005 16:11:30
Original commit files touched by this commit
jylefort search for other commits by this committer
Document a format string vulnerability in ftp/weex.
1.1_1
02 Oct 2005 07:45:29
Original commit files touched by this commit
simon search for other commits by this committer
Document picasm -- buffer overflow vulnerability.
1.1_1
01 Oct 2005 16:43:38
Original commit files touched by this commit
nobutaka search for other commits by this committer
Add an URL to the entry of the japanese/uim.
1.1_1
01 Oct 2005 16:35:20
Original commit files touched by this commit
nobutaka search for other commits by this committer
Document japanese/uim privilege escalation vulnerability.
1.1_1
01 Oct 2005 15:21:57
Original commit files touched by this commit
simon search for other commits by this committer
Document cfengine -- arbitrary file overwriting vulnerability.
1.1_1
01 Oct 2005 10:17:19
Original commit files touched by this commit
remko search for other commits by this committer
Mark zsync <= 0.4.1 vulnerable to the zlib buffer overflow vulnerability.

Inspired by:            gordon's commit
1.1_1
01 Oct 2005 08:40:58
Original commit files touched by this commit
simon search for other commits by this committer
Add more references to unace -- multiple vulnerabilities entry.
1.1_1
01 Oct 2005 07:14:34
Original commit files touched by this commit
simon search for other commits by this committer
Add CVE name to an older ProZilla entry.
1.1_1
29 Sep 2005 20:01:41
Original commit files touched by this commit
simon search for other commits by this committer
Add more references for latest phpmyfaq entry.
1.1_1
29 Sep 2005 19:31:13
Original commit files touched by this commit
simon search for other commits by this committer
- Add a note that new entries, per convention, should be added to the
  start of this file.

For latest phpmyfaq entry:

- Use port directory name as first part of topic.
- No need to include information about affected releases in topic
  (it's somewhat redundant and makes the title longer).
- Reindent body with standard FreeBSD Doc Project (more or less)
  style.
1.1_1
28 Sep 2005 22:54:43
Original commit files touched by this commit
vsevolod search for other commits by this committer
Document vulnerabilities in www/phpmyfaq
1.1_1
24 Sep 2005 09:22:30
Original commit files touched by this commit
remko search for other commits by this committer
Add linux_base-suse-9.3 to the zlib entry.

Inspired by:            trevors commit.
1.1_1
24 Sep 2005 08:31:47
Original commit files touched by this commit
simon search for other commits by this committer
Document clamav -- arbitrary code execution and DoS vulnerabilities.
1.1_1
23 Sep 2005 21:44:15
Original commit files touched by this commit
simon search for other commits by this committer
- Be consistent and call entries "firefox & mozilla", not the other way
  around.
- Mark latest linux-mozilla port as fixed for recent mozilla
  vulnerabilities.
1.1_1
23 Sep 2005 19:19:04
Original commit files touched by this commit
simon search for other commits by this committer
- Document mozilla & firefox -- multiple vulnerabilities.
- Add Mozilla Foundation Security Advisory references to two other
  firefox/mozilla entries.
1.1_1
21 Sep 2005 23:03:57
Original commit files touched by this commit
simon search for other commits by this committer
Add real references to urban -- stack overflow vulnerabilities.
1.1_1
21 Sep 2005 22:31:09
Original commit files touched by this commit
simon search for other commits by this committer
Document mozilla & firefox -- command line URL shell command injection.
1.1_1
21 Sep 2005 21:59:32
Original commit files touched by this commit
simon search for other commits by this committer
Add CVE name for tor -- diffie-hellman handshake flaw.
1.1_1
21 Sep 2005 21:46:26
Original commit files touched by this commit
simon search for other commits by this committer
Correct package name for entry bind -- buffer overrun vulnerability.
1.1_1
21 Sep 2005 21:15:51
Original commit files touched by this commit
simon search for other commits by this committer
Add CVE name to an older CUPS issue.
1.1_1
19 Sep 2005 16:12:07
Original commit files touched by this commit
remko search for other commits by this committer
Fix the htdig entry, the port version and the VuXML version did not
align.

Reported by:            Nic Bellamy <nic at bellamy dot co dot nz>
1.1_1
19 Sep 2005 16:09:28
Original commit files touched by this commit
remko search for other commits by this committer
Fix the squirrelmail entry since only versions prior to 1.4.5 were
affected. Bump modification date accordingly.

Reported by:            Avinash Piare <avinash at piare dot org>
1.1_1
17 Sep 2005 19:08:43
Original commit files touched by this commit
remko search for other commits by this committer
Document the following items:

o apache -- Certificate Revocation List (CRL) off-by-one vulnerability
o squirrelmail -- _$POST variable handling allows for various attacks

Reviewed by:            simon
1.1_1
15 Sep 2005 20:14:27
Original commit files touched by this commit
pav search for other commits by this committer
- Add an entry on possible DOS condition regarding NTLM in squid

PR:             ports/86179
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de>
1.1_1
14 Sep 2005 22:22:49
Original commit files touched by this commit
lesi search for other commits by this committer
Document X11 server -- pixmap allocation vulnerability.

Reviewed by:    simon
1.1_1
13 Sep 2005 20:18:44
Original commit files touched by this commit
remko search for other commits by this committer
Document unzip -- permission race vulnerability. [1]

Update the recent htdig entry with it's corrected version.

Reviewed by:            simon [1]
1.1_1
10 Sep 2005 20:55:35
Original commit files touched by this commit
simon search for other commits by this committer
Document firefox & mozilla -- buffer overflow vulnerability.

Prodded by:     pav
1.1_1
07 Sep 2005 08:46:53
Original commit files touched by this commit
lawrance search for other commits by this committer
Mark the latest version of cups-base fixed for "xpdf -- disk fill DoS
vulnerability"
1.1_1
04 Sep 2005 15:24:56
Original commit files touched by this commit
remko search for other commits by this committer
Add forgotten </package> line.

Spotted by:             simon
1.1_1
04 Sep 2005 15:16:52
Original commit files touched by this commit
remko search for other commits by this committer
Mark b2evolution prior to 0.9.0.12_2 vulnerable to the XML_RPC remote php code
injection vulnerability.

Inspired by:            pav's commit, updating the port.
1.1_1
04 Sep 2005 09:03:05
Original commit files touched by this commit
remko search for other commits by this committer
Document htdig -- cross site scripting vulnerability.

Reviewed by:    simon
1.1_1
04 Sep 2005 07:54:46
Original commit files touched by this commit
sem search for other commits by this committer
- Document two squid security related issues.

PR:             ports/85688
Submitted by:   Thomas-Martin Seck <tmseck@netcologne.de> (squid maintainer)
1.1_1
03 Sep 2005 19:05:01
Original commit files touched by this commit
remko search for other commits by this committer
Document bind9 -- denial of service.
Also merge the FreeBSD-SA-05:12.bind9 advisory in the entry. [1]

Suggested by:           simon [1]
Reviewed by:            simon
1.1_1
03 Sep 2005 18:06:52
Original commit files touched by this commit
remko search for other commits by this committer
Document bind -- buffer overrun vulnerability
1.1_1
02 Sep 2005 13:10:52
Original commit files touched by this commit
simon search for other commits by this committer
Add a more or less bogus reference section to the last entry, to make it
a valid entry.  The reference simply references the VuXML entry itself,
but at least it fixes the build for now.

Missed by:      simon
1.1_1
02 Sep 2005 12:59:55
Original commit files touched by this commit
jylefort search for other commits by this committer
Document stack overflow vulnerabilities in games/urban.

Approved by:    simon
1.1_1
29 Aug 2005 20:47:28
Original commit files touched by this commit
simon search for other commits by this committer
Mark latest evolution port version as fixed wrt. evolution -- remote
format string vulnerabilities.
1.1_1
29 Aug 2005 15:10:30
Original commit files touched by this commit
kuriyama search for other commits by this committer
Add entry for fswiki's vuln.
1.1_1
29 Aug 2005 08:11:21
Original commit files touched by this commit
niels search for other commits by this committer
Dante 1.1.15 is no longer affected by the fd_set bitmap index overflow.
Updated the version in VuXML (was 0).

Approved by:    nectar (mentor)
1.1_1
28 Aug 2005 20:48:11
Original commit files touched by this commit
simon search for other commits by this committer
- Fill out part of the std. VuXML template missed in the last entry.
- Mark acroread 7.0.1 as fixed for acroread -- XML External Entity
  vulnerability. [1]

Reported by:    Sverre H. Huseby [1]
1.1_1
27 Aug 2005 22:25:31
Original commit files touched by this commit
simon search for other commits by this committer
Document evolution -- remote format string vulnerabilities.

Approved by:    portmgr (blanket, VuXML)
1.1_1
27 Aug 2005 21:54:42
Original commit files touched by this commit
simon search for other commits by this committer
Document pam_ldap -- authentication bypass vulnerability.

Approved by:    portmgr (blanket, VuXML)
1.1_1
27 Aug 2005 18:17:24
Original commit files touched by this commit
simon search for other commits by this committer
Mark phpgroupware as vulnerable to pear-XML_RPC -- remote PHP code
injection vulnerability.

Reported by:    olgeni
Approved by:    portmgr (blanket, VuXML)
1.1_1
26 Aug 2005 21:24:31
Original commit files touched by this commit
simon search for other commits by this committer
Document pcre -- regular expression buffer overflow.

Approved by:    portmgr (blanket, VuXML)
1.1_1
23 Aug 2005 20:26:39
Original commit files touched by this commit
simon search for other commits by this committer
Mark latest awstats port as fixed for awstats -- arbitrary code
execution vulnerability.

Approved by:    portmgr (blanket, VuXML)
1.1_1
23 Aug 2005 19:07:08
Original commit files touched by this commit
sem search for other commits by this committer
Document mail/elm remote buffer overflow vulnerability.

PR:             ports/85225
Submitted by:   Kevin Day <toasty@dragondata.com> (elm maintainer)
Approved by:    portmgr (blanket, VuXML)
1.1_1
19 Aug 2005 09:58:20
Original commit files touched by this commit
remko search for other commits by this committer
Document four vulnerabilities in openvpn:

* openvpn -- multiple TCP clients connecting with the same certificate at the
same time can crash the server
* openvpn -- denial of service: malicious authenticated &quot;tap&quot; client
can deplete server virtual memory
* openvpn -- denial of service: undecryptable packet from authorized client can
disconnect unrelated clients
* openvpn -- denial of service: client certificate validation can disconnect
unrelated clients

Approved by:    portsmgr (blanket VuXML)
Submitted by:   Matthias Andree <matthias dot andree at gmx dot de>
1.1_1
17 Aug 2005 20:01:02
Original commit files touched by this commit
simon search for other commits by this committer
Also mark phpAdsNew as affected by "pear-XML_RPC -- remote PHP code
injection vulnerability".

Approved by:    portmgr (blanket, VuXML)
1.1_1
17 Aug 2005 19:46:40
Original commit files touched by this commit
remko search for other commits by this committer
Add the fixed version so that people do not get a stale portaudit when the
update is there.
Also fix some indentation that i overlooked.

Noticed by:             simon (both of the items)
Approved by:            portsmgr (blanket VuXML)
1.1_1
17 Aug 2005 19:34:44
Original commit files touched by this commit
remko search for other commits by this committer
Document tor -- diffie-hellman handshake flaw.

Submitted by:           Michal Bartkowiak <michal at nonspace dot net>
Approved by:            portsmgr (blanket VuXML)
1.1_1
16 Aug 2005 21:19:30
Original commit files touched by this commit
simon search for other commits by this committer
gpdf has been fixed for "xpdf -- disk fill DoS vulnerability", mark it
as such.

Approved by:    portmgr (blanket, VuXML)
1.1_1
16 Aug 2005 20:56:54
Original commit files touched by this commit
simon search for other commits by this committer
Add eGroupWare to the list of packages affected by "pear-XML_RPC --
remote PHP code injection vulnerability".

Approved by:    portmgr (blanket, VuXML)
1.1_1
16 Aug 2005 18:43:41
Original commit files touched by this commit
simon search for other commits by this committer
Document acroread -- plug-in buffer overflow vulnerability.

Approved by:    portmgr (blanket, VuXML)
1.1_1
15 Aug 2005 20:38:54
Original commit files touched by this commit
simon search for other commits by this committer
Add phpmyfaq and drupal to the "pear-XML_RPC -- remote PHP code
injection vulnerability" entry since they contain an embedded version of
pear-XML_RPC.

Fix typo in body of the latest xpdf entry (note: no modified date bump
as this is a minor typo fix which does change <affects>).

Approved by:    portmgr (blanket, VuXML)
1.1_1
15 Aug 2005 13:20:31
Original commit files touched by this commit
simon search for other commits by this committer
Document pear-XML_RPC -- remote PHP code injection vulnerability.

Submitted by:   hrs
Approved by:    portmgr (blanket, VuXML)
1.1_1
14 Aug 2005 21:09:11
Original commit files touched by this commit
simon search for other commits by this committer
Document awstats -- arbitrary code execution vulnerability.

Approved by:    portmgr (blanket, VuXML)
1.1_1
12 Aug 2005 16:38:54
Original commit files touched by this commit
simon search for other commits by this committer
After further examination it turns out that gnugadu does not include
libgadu, at least not any in any current version, and from looking at
the gnugadu code there is no direct indication that this code should
actually be vulnerable to the other libgadu vulnerabilities. [1]

The gaim part of libgadu -- multiple vulnerabilities was fixed in
1.4.0_1. [2]

Polish translation clue:        pjd [1]
General clue by:                markus [2]
Not enough checking:            simon
Approved by:                    portmgr (blanket, VuXML)
1.1_1
12 Aug 2005 14:45:57
Original commit files touched by this commit
simon search for other commits by this committer
Remove pl-gnugadu2 and kadu from being affected by libgadu -- multiple
vulnerabilities, since it turns out that they use libgadu from the ekg
port.

Approved by:    portmgr (blanket, VuXML)
1.1_1
12 Aug 2005 14:21:10
Original commit files touched by this commit
simon search for other commits by this committer
Document libgadu -- multiple vulnerabilities.

Approved by:    portmgr (blanket, VuXML)
1.1_1
12 Aug 2005 11:26:44
Original commit files touched by this commit
simon search for other commits by this committer
Document gaim -- AIM/ICQ away message buffer overflow and gaim --
AIM/ICQ non-UTF-8 filename crash.

Approved by:    portmgr (blanket, VuXML)
1.1_1
12 Aug 2005 10:42:14
Original commit files touched by this commit
simon search for other commits by this committer
Remove pdftohtml from the list of packages affected by xpdf -- disk
fill DoS vulnerability, since it includes xpdf 2, which should not be
affected.

Approved by:    portmgr (blanket, VuXML)
1.1_1
11 Aug 2005 22:18:53
Original commit files touched by this commit
simon search for other commits by this committer
Document xpdf -- disk fill DoS vulnerability.

Approved by:    portmgr (blanket, VuXML)
1.1_1
11 Aug 2005 12:40:52
Original commit files touched by this commit
simon search for other commits by this committer
Mark apache 1.3.33_2 as fixed for apache -- http request smuggling.

Approved by:    portmgr (blanket, VuXML)
1.1_1
09 Aug 2005 11:51:25
Original commit files touched by this commit
simon search for other commits by this committer
Document gforge -- XSS and email flood vulnerabilities.

Approved by:    portmgr (blanket, VuXML)
1.1_1
07 Aug 2005 22:19:56
Original commit files touched by this commit
simon search for other commits by this committer
Document postnuke -- multiple vulnerabilities.

Approved by:    portmgr (blanket, VuXML)
1.1_1
05 Aug 2005 13:32:17
Original commit files touched by this commit
simon search for other commits by this committer
Document mambo -- multiple vulnerabilities.

Approved by:    portmgr (blanket, VuXML)
1.1_1
05 Aug 2005 10:34:41
Original commit files touched by this commit
remko search for other commits by this committer
Correct the ranges for the IPSec advisory and the devfs advisory.
Also correct proper ranges for the zlib advisory.

Approved by:            portsmgr (blanket VuXML)
1.1_1
05 Aug 2005 10:21:39
Original commit files touched by this commit
remko search for other commits by this committer
Document some recent FreeBSD advisories:
o devfs -- ruleset bypass.
o zlib -- buffer overflow vulnerability.
o ipsec -- Incorrect key usage in AES-XCBC-MAC.

Approved by:    portsmgr (blanket VuXML)
1.1_1
04 Aug 2005 15:56:53
Original commit files touched by this commit
remko search for other commits by this committer
Add some more entries to the apache -- http smuggling vulnerability.

PR:             ports/84312
Submitted by:   Dmitry A Grigorovich <odip at bionet dot nsc dot ru>
Approved by:    portsmgr (blanket VuXML)
1.1_1
03 Aug 2005 17:14:16
Original commit files touched by this commit
simon search for other commits by this committer
Document proftpd -- format string vulnerabilities.

Approved by:    portmgr (blanket, VuXML)
1.1_1
03 Aug 2005 16:54:48
Original commit files touched by this commit
simon search for other commits by this committer
Note that the fix for gnupg -- OpenPGP symmetric encryption
vulnerability in gnupg is not complete (see entry for details).

Discussed with: nectar
Approved by:    portmgr (blanket, VuXML)
1.1_1
03 Aug 2005 11:58:12
Original commit files touched by this commit
simon search for other commits by this committer
Mark p5-Crypt-OpenPGP, pgp, and pgpin as vulnerable to gnupg --
OpenPGP symmetric encryption vulnerability.

Reminded by:    nectar
Approved by:    portmgr (blanket, VuXML)
1.1_1
01 Aug 2005 18:38:11
Original commit files touched by this commit
simon search for other commits by this committer
Mark latest gdal version as fixed for all tiff vulnerabilities.
1.1_1
01 Aug 2005 07:45:18
Original commit files touched by this commit
niels search for other commits by this committer
Added nbsmtp format string vulnerability.

Approved by:    nectar (mentor)
1.1_1
31 Jul 2005 23:39:50
Original commit files touched by this commit
simon search for other commits by this committer
Mark latest the linux-tiff and pdflib ports safe from latest tiff
vulnerability.

Thanks to lawrance and netchild for fast fixes.
1.1_1
31 Jul 2005 15:00:54
Original commit files touched by this commit
simon search for other commits by this committer
Document sylpheed -- MIME-encoded file name buffer overflow
vulnerability.
1.1_1
31 Jul 2005 13:50:20
Original commit files touched by this commit
simon search for other commits by this committer
Document phpmyadmin -- cross site scripting vulnerability.
1.1_1
31 Jul 2005 13:23:50
Original commit files touched by this commit
simon search for other commits by this committer
Document gnupg -- OpenPGP symmetric encryption vulnerability.

Note: this is mainly a theoretical vulnerability.
1.1_1
31 Jul 2005 11:38:25
Original commit files touched by this commit
remko search for other commits by this committer
Bump entry date.

Forgotten by:   remko
Spotted by:     simon
1.1_1
31 Jul 2005 11:31:52
Original commit files touched by this commit
remko search for other commits by this committer
Document vim -- vulnerabilities in modeline handling: glob, expand.

Discussed with:         nectar, simon
1.1_1
30 Jul 2005 22:20:27
Original commit files touched by this commit
simon search for other commits by this committer
Document that ekg -- insecure temporary file creation was fixed in
1.6r2,1.

Noted by:       Michal Kalkowski
1.1_1
30 Jul 2005 20:20:52
Original commit files touched by this commit
simon search for other commits by this committer
Add pdflib-perl, fractorama, gdal, iv, ivtools, ja-iv, ja-libimg,
paraview to recent libtiff vulnerabilities since they contain (and
compile) an embedded version of libtiff...
1.1_1
30 Jul 2005 19:13:10
Original commit files touched by this commit
simon search for other commits by this committer
Change MAINTAINER address for ports maintained by the Security Team to
secteam@ instead of security@ to make it more clear that the ports are
not maintained by the freebsd-security@ mailing list.  Both addresses
go to the same people.
1.1_1
30 Jul 2005 15:48:06
Original commit files touched by this commit
simon search for other commits by this committer
Document tiff -- buffer overflow vulnerability.
1.1_1
30 Jul 2005 11:18:20
Original commit files touched by this commit
simon search for other commits by this committer
- Misc. markup/whitespace fixes.
- Collapse a few package entries from the latest apache entry (still
  matches same package names, is just shorter markup-wise).
- Use standard topic style for jaberd entry.
- Fix entry date for jaberd entry.
1.1_1
30 Jul 2005 10:00:41
Original commit files touched by this commit
vsevolod search for other commits by this committer
Document jabberd vulnerabilities that were fixed by the latest update.

Approved by:    perky (mentor)

Number of commits found: 7265 (showing only 100 on this page)

[First Page]  «  60 | 61 | 62 | 63 | 64 | 65 | 66 | 67 | 68 | 69 | 70  »  [Last Page]