| non port: security/portaudit-db/database/portaudit.txt |
|
CVSWeb
|
Number of commits found: 120 (showing only 100 on this page) 1 | 2 » |
|
Mon, 5 Feb 2007
|
[ 01:08 pav ]
1.2 devel/portmk/files/ChangeLog
1.3 devel/portmk/files/Features
1.3 devel/portmk/files/KnownIssues
1.1276 MOVED
1.2622 devel/Makefile
1.12 devel/portcheckout/Makefile
1.114 devel/portlint/Makefile
1.8 devel/portmk/Makefile
1.19 devel/porttools/Makefile
1.158 lang/python/Makefile
(Only the first 10 of 300 ports in this commit are shown above. )
Populate a new ports-mgmt category. List of moved ports:
devel/portcheckout -> ports-mgmt/portcheckout
devel/portlint -> ports-mgmt/portlint
devel/portmk -> ports-mgmt/portmk
devel/porttools -> ports-mgmt/porttools
misc/instant-tinderbox -> ports-mgmt/instant-tinderbox
misc/porteasy -> ports-mgmt/porteasy
misc/portell -> ports-mgmt/portell
misc/portless -> ports-mgmt/portless
misc/tinderbox -> ports-mgmt/tinderbox
security/jailaudit -> ports-mgmt/jailaudit
security/portaudit -> ports-mgmt/portaudit
security/portaudit-db -> ports-mgmt/portaudit-db
security/vulnerability-test-port -> ports-mgmt/vulnerability-test-port (Only the first 15 lines of the commit message are shown above )
|
|
Wed, 5 Jan 2005
|
[ 10:51 thierry ]
1.119 security/portaudit-db/database/portaudit.txt
Document Horde's XSS vulnerabilities.
Approved by: portmgr (krion).
|
|
Wed, 27 Oct 2004
|
[ 12:25 nectar ]
1.118 security/portaudit-db/database/portaudit.txt
1.327 security/vuxml/vuln.xml
Create a VuXML entry for Horde XSS help window vulnerability to replace
the portaudit-db entry.
|
|
Tue, 26 Oct 2004
|
[ 19:37 thierry ]
1.117 security/portaudit-db/database/portaudit.txt
Add an entry for a vulnerability fixed in horde-2.2.7.
|
|
Sun, 24 Oct 2004
|
[ 14:46 lofi ]
1.116 security/portaudit-db/database/portaudit.txt
Add entries for vulnerabilites in imported xpdf code in kdegraphics
and koffice.
|
|
Tue, 12 Oct 2004
|
[ 05:25 thierry ]
1.115 security/portaudit-db/database/portaudit.txt
Add an entry for a XSS vulnerability fixed in IMP-3.2.6.
|
|
Wed, 8 Sep 2004
|
[ 21:57 eik ]
1.114 security/portaudit-db/database/portaudit.txt
1.17 security/portaudit-db/database/portaudit.xml
- star-devel: privilege escalation
- multi-gnome-terminal: information leak
- usermin: remote shell command injection and insecure installation
- mpg123: layer 2 decoder buffer overflow
Approved by: portmgr (implicit)
|
|
Tue, 7 Sep 2004
|
[ 10:44 eik ]
1.113 security/portaudit-db/database/portaudit.txt
1.16 security/portaudit-db/database/portaudit.xml
- XSS vulnerability in phpGroupWare wiki module
- add some references
Approved by: portmgr (implicit)
|
|
Fri, 3 Sep 2004
|
[ 20:27 eik ]
1.112 security/portaudit-db/database/portaudit.txt
1.7 security/portaudit-db/database/portaudit.xlist
1.13 security/portaudit-db/database/portaudit.xml
- add some references
- extend ImageMagick entry
- squid ntlm authentication helper DoS
- multiple vpopmail vulnerabilities
- first attempts to check the base system for vulnerabilities:
+ cvs server code
+ zlib DoS
- BSD license portaudit.xml
|
|
Mon, 30 Aug 2004
|
[ 23:43 eik ]
1.111 security/portaudit-db/database/portaudit.txt
samba printer change notification request DoS
|
[ 10:57 eik ]
1.110 security/portaudit-db/database/portaudit.txt
multiple vulnerabilities in gaim
|
[ 10:07 eik ]
1.109 security/portaudit-db/database/portaudit.txt
security bug in rscsi client code
Submitted by: marius
|
|
Fri, 27 Aug 2004
|
[ 15:29 nectar ]
1.108 security/portaudit-db/database/portaudit.txt
1.205 security/vuxml/vuln.xml
Document NSS SSLv2 server buffer overflow (already referenced in
portaudit.txt).
|
[ 14:43 nectar ]
1.107 security/portaudit-db/database/portaudit.txt
1.204 security/vuxml/vuln.xml
Document ripMIME decoding bug (already referenced in portaudit.txt).
|
[ 10:34 eik ]
1.106 security/portaudit-db/database/portaudit.txt
Argh. Duplicate entry for "Scorched 3D server chat box format string
vulnerabilty"
|
[ 10:31 eik ]
1.105 security/portaudit-db/database/portaudit.txt
Mozilla / NSS S/MIME DoS vulnerability & Scorched 3D server chat box format
string vulnerability
|
|
Thu, 26 Aug 2004
|
[ 22:10 nectar ]
1.104 security/portaudit-db/database/portaudit.txt
1.200 security/vuxml/vuln.xml
Note sanitize_path bug in rsync (already referenced in portaudit.txt).
|
[ 20:34 nectar ]
1.103 security/portaudit-db/database/portaudit.txt
1.198 security/vuxml/vuln.xml
Document buffer overflows in SoX (already referenced in portaudit.txt).
|
[ 20:15 nectar ]
1.102 security/portaudit-db/database/portaudit.txt
1.197 security/vuxml/vuln.xml
Document cookie bug in Konqueror (already referenced in portaudit.txt).
|
|
Wed, 25 Aug 2004
|
[ 13:58 nectar ]
1.101 security/portaudit-db/database/portaudit.txt
Remove libxine issue which is now documented in the FreeBSD VuXML
document.
Reminded by: eik
|
[ 13:10 eik ]
1.100 security/portaudit-db/database/portaudit.txt
nss library SSL remote buffer overflow
|
[ 11:07 eik ]
1.99 security/portaudit-db/database/portaudit.txt
multiple buffer overflows in xv
|
|
Mon, 23 Aug 2004
|
[ 23:28 eik ]
1.98 security/portaudit-db/database/portaudit.txt
Konqueror cross-domain cookie injection
|
[ 23:12 eik ]
1.97 security/portaudit-db/database/portaudit.txt
1.6 security/portaudit-db/database/portaudit.xlist
1.11 security/portaudit-db/database/portaudit.xml
handle some duplicates
|
|
Sat, 21 Aug 2004
|
[ 10:45 eik ]
1.96 security/portaudit-db/database/portaudit.txt
a2ps: Possible execution of shell commands as local user.
|
|
Fri, 20 Aug 2004
|
[ 08:31 eik ]
1.95 security/portaudit-db/database/portaudit.txt
correct topic of eda0ade6-f281-11d8-81b0-000347a4fa7d
|
[ 08:28 eik ]
1.94 security/portaudit-db/database/portaudit.txt
QT 3.x BMP (and possibly other graphics formats) heap-based overflow
|
|
Wed, 18 Aug 2004
|
[ 20:01 eik ]
1.93 security/portaudit-db/database/portaudit.txt
potential security flaws in mod_ssl
|
|
Tue, 17 Aug 2004
|
[ 07:56 eik ]
1.92 security/portaudit-db/database/portaudit.txt
1.5 security/portaudit-db/database/portaudit.xlist
1.10 security/portaudit-db/database/portaudit.xml
move a800386e-ef7e-11d8-81b0-000347a4fa7d to xml
|
|
Mon, 16 Aug 2004
|
[ 12:23 eik ]
1.91 security/portaudit-db/database/portaudit.txt
ruby CGI::Session insecure file creation
|
|
Sun, 15 Aug 2004
|
[ 23:44 eik ]
1.90 security/portaudit-db/database/portaudit.txt
multiple phpGroupWare vulnerabilities
|
[ 17:22 eik ]
1.89 security/portaudit-db/database/portaudit.txt
1.4 security/portaudit-db/database/portaudit.xlist
1.9 security/portaudit-db/database/portaudit.xml
phpGedView, jftpgw
|
|
Fri, 13 Aug 2004
|
[ 16:48 eik ]
1.88 security/portaudit-db/database/portaudit.txt
1.3 security/portaudit-db/database/portaudit.xlist
1.8 security/portaudit-db/database/portaudit.xml
fix some vuxml duplicates, add sympa unauthorized list creation
|
|
Thu, 12 Aug 2004
|
[ 21:32 lofi ]
1.87 security/portaudit-db/database/portaudit.txt
Add another entry for kdelibs3 due to another missed patch.
|
[ 21:17 lofi ]
1.86 security/portaudit-db/database/portaudit.txt
Correct entries for recent kde vuln's and add new entry for kdelibs
(3.2.3_3 didn't have all patches).
|
[ 10:45 eik ]
1.94 net/rsync/Makefile
1.1 net/rsync/files/patch-backup.c
1.4 net/rsync/files/patch-flist.c
1.1 net/rsync/files/patch-generator.c
1.1 net/rsync/files/patch-util.c
1.85 security/portaudit-db/database/portaudit.txt
1.2 net/rsync/files/rsyncd.sh
fix security hole in non-chroot rsync daemon.
<http://www.freebsd.org/ports/portaudit/2689f4cb-ec4c-11d8-9440-000347a4fa7d.html>
|
[ 00:08 eik ]
1.84 security/portaudit-db/database/portaudit.txt
1.7 security/portaudit-db/database/portaudit.xml
9fb5bb32-d6fa-11d8-b479-02e0185c0b53 is a duplicate of
40800696-c3b0-11d8-864c-02e0185c0b53
|
|
Wed, 11 Aug 2004
|
[ 22:57 eik ]
1.83 security/portaudit-db/database/portaudit.txt
1.6 security/portaudit-db/database/portaudit.xml
1.164 security/vuxml/vuln.xml
f72ccf7c-e607-11d8-9b0a-000347a4fa7d is a duplicate of
6f955451-ba54-11d8-b88c-000d610a3b12, move references
|
[ 01:27 lofi ]
1.12 arabic/koffice-i18n/Makefile
1.543 audio/Makefile
1.1 audio/mpeglib_artsplug/Makefile
1.7 chinese/koffice-i18n-zh_CN/Makefile
1.9 chinese/koffice-i18n-zh_TW/Makefile
1.41 deskutils/kdepim3/Makefile
1.5 editors/kate-plugins/Makefile
1.65 editors/koffice-kde3/Makefile
1.11 french/koffice-i18n/Makefile
1.6 games/atlantikdesigner/Makefile
(Only the first 10 of 216 ports in this commit are shown above. )
Factor out all but one of the build switches of the KDE main module ports
into separate ports. The OPTIONS will remain as of yet and trigger dependencies
now, for easy transition.
Update KOffice to version 1.3.2.
Add patches to fix a number of issues, including:
- fix kxkb on Xorg
- fix kdemultimedia WITH_MPEGLIB (now mpeglib_artsplug) compilation on gcc 3.4.2
with optimizations greater than -O
Add security related patches and entries to portaudit.txt.
|
|
Tue, 10 Aug 2004
|
[ 08:50 eik ]
1.81 security/portaudit-db/database/portaudit.txt
libine "vcd:" input source buffer overflow
|
[ 00:56 eik ]
1.80 security/portaudit-db/database/portaudit.txt
SpamAssassin DoS & cfengine authentication heap corruption
|
|
Sat, 7 Aug 2004
|
[ 09:09 eik ]
1.79 security/portaudit-db/database/portaudit.txt
CVStrac arbitrary remote code execution
|
|
Fri, 6 Aug 2004
|
[ 12:37 eik ]
1.78 security/portaudit-db/database/portaudit.txt
1.5 security/portaudit-db/database/portaudit.xml
fold entry 7eded4b8-e6fe-11d8-b12f-0a001f31891a into
2de14f7a-dad9-11d8-b59a-00061bc2ad93
|
[ 05:41 dinoex ]
1.77 security/portaudit-db/database/portaudit.txt
putty local command execution
|
|
Thu, 5 Aug 2004
|
[ 23:35 eik ]
1.76 security/portaudit-db/database/portaudit.txt
1.159 security/vuxml/vuln.xml
move abe47a5a-e23c-11d8-9b0a-000347a4fa7d to vuxml, add mozilla to the list of
vulnerable ports
|
[ 16:45 nork ]
1.43 japanese/samba/Makefile
1.22 japanese/samba/distinfo
1.17 japanese/samba/pkg-plist
1.75 security/portaudit-db/database/portaudit.txt
1.3 japanese/samba/files/samba.sh.sample
o Security Update to 2.2.10-ja-1.0.
o rcNG-ify obtained from net/samba3.
PR: ports/70034
Submitted by: NAKAJI Hiroyuki <nakaji@jp.freebsd.org> (maintainer)
|
[ 15:36 eik ]
1.74 security/portaudit-db/database/portaudit.txt
add Opera "location" object write access vulnerability
|
[ 14:27 eik ]
1.73 security/portaudit-db/database/portaudit.txt
1.158 security/vuxml/vuln.xml
move f9e3e60b-e650-11d8-9b0a-000347a4fa7d to vuxml, add mozilla to the list of
vulnerable ports
|
[ 04:33 dinoex ]
1.72 security/portaudit-db/database/portaudit.txt
back out last commit
|
[ 04:31 dinoex ]
1.71 security/portaudit-db/database/portaudit.txt
putty local command execution
|
|
Wed, 4 Aug 2004
|
[ 20:14 eik ]
1.70 security/portaudit-db/database/portaudit.txt
libPNG stack-based buffer overflow and other code concerns
|
[ 11:43 eik ]
1.69 security/portaudit-db/database/portaudit.txt
Acrobat Reader handling of malformed uuencoded pdf files
|
[ 11:18 eik ]
1.68 security/portaudit-db/database/portaudit.txt
Squid NTLM authentication helper overflow
|
[ 11:10 eik ]
1.67 security/portaudit-db/database/portaudit.txt
ripMIME attachment extraction bypass
|
|
Mon, 2 Aug 2004
|
[ 17:54 eik ]
1.66 security/portaudit-db/database/portaudit.txt
GnuTLS certificate chain verification DoS
|
|
Sat, 31 Jul 2004
|
[ 15:00 eik ]
1.65 security/portaudit-db/database/portaudit.txt
phpMyAdmin configuration manipulation and code injection
|
|
Fri, 30 Jul 2004
|
[ 17:28 thierry ]
1.64 security/portaudit-db/database/portaudit.txt
Register a vulnerability in mail/imp3.
This vulnerability only exists when using the Internet Explorer to
access IMP and only when using the inline MIME viewer for HTML messages.
|
[ 15:28 eik ]
1.63 security/portaudit-db/database/portaudit.txt
Mozilla Firefox certificate spoofing
|
[ 10:00 eik ]
1.62 security/portaudit-db/database/portaudit.txt
DansGuardian banned extension filter bypass vulnerability
|
|
Thu, 29 Jul 2004
|
[ 08:15 eik ]
1.61 security/portaudit-db/database/portaudit.txt
add a reference to the SoX buffer overflow entry
|
|
Wed, 28 Jul 2004
|
[ 20:33 eik ]
1.60 security/portaudit-db/database/portaudit.txt
SoX buffer overflows when handling .WAV files
|
[ 09:34 eik ]
1.59 security/portaudit-db/database/portaudit.txt
LCDProc buffer overflow/format string vulnerabilities
|
|
Tue, 27 Jul 2004
|
[ 10:40 eik ]
1.58 security/portaudit-db/database/portaudit.txt
pavuk digest auth buffer overflow
|
[ 10:30 eik ]
1.57 security/portaudit-db/database/portaudit.txt
add Nessus "adduser" race condition and Dropbear DSS verification bug
|
|
Thu, 22 Jul 2004
|
[ 19:08 eik ]
1.56 security/portaudit-db/database/portaudit.txt
l2tpd BSS-based buffer overflow
|
[ 13:29 eik ]
1.55 security/portaudit-db/database/portaudit.txt
phpBB cross site scripting vulnerabilities
|
|
Tue, 20 Jul 2004
|
[ 15:48 eik ]
1.54 security/portaudit-db/database/portaudit.txt
add subversion-perl, subversion-python
|
[ 10:30 eik ]
1.53 security/portaudit-db/database/portaudit.txt
subversion access control bypass
|
|
Sun, 18 Jul 2004
|
[ 10:49 eik ]
1.52 security/portaudit-db/database/portaudit.txt
mod_ssl format string vulnerability
|
|
Fri, 16 Jul 2004
|
[ 07:39 eik ]
1.51 security/portaudit-db/database/portaudit.txt
Roundup directory traversal
|
|
Wed, 14 Jul 2004
|
[ 06:56 eik ]
1.50 security/portaudit-db/database/portaudit.txt
wv library datetime field buffer overflow
|
|
Tue, 13 Jul 2004
|
[ 23:47 eik ]
1.49 security/portaudit-db/database/portaudit.txt
multiple vulnerabilities in Bugzilla
|
|
Sun, 11 Jul 2004
|
[ 12:09 eik ]
1.48 security/portaudit-db/database/portaudit.txt
correct vulnerable version of linux-png and add a reference
|
[ 11:18 eik ]
1.47 security/portaudit-db/database/portaudit.txt
libpng row buffer overflow
|
|
Thu, 8 Jul 2004
|
[ 14:24 eik ]
1.46 security/portaudit-db/database/portaudit.txt
1.147 security/vuxml/vuln.xml
move e5e2883d-ceb9-11d8-8898-000d6111a684 to vuln.xml
|
|
Tue, 6 Jul 2004
|
[ 14:52 eik ]
1.45 security/portaudit-db/database/portaudit.txt
add some references
|
[ 07:17 eik ]
1.44 security/portaudit-db/database/portaudit.txt
MySQL versions < 4.1 seem to be unaffected
Reported by: Alexander Vasenin <blacksir@number.ru>
|
|
Mon, 5 Jul 2004
|
[ 19:45 eik ]
1.43 security/portaudit-db/database/portaudit.txt
add MySQL server authentication bypass / buffer overflow
|
[ 15:30 eik ]
1.42 security/portaudit-db/database/portaudit.txt
1.2 security/portaudit-db/database/portaudit.xlist
1.3 security/portaudit-db/database/portaudit.xml
Mark 4aec9d58-ce7b-11d8-858d-000d610a3b12 as a duplicate of the
already existing c63936c1-caed-11d8-8898-000d6111a684.
|
|
Sat, 3 Jul 2004
|
[ 06:48 trhodes ]
1.41 security/portaudit-db/database/portaudit.txt
1.142 security/vuxml/vuln.xml
Move phpnuke vulnerabilities to VuXML.
|
|
Fri, 2 Jul 2004
|
[ 00:48 eik ]
1.40 security/portaudit-db/database/portaudit.txt
1.137 security/vuxml/vuln.xml
move "phpMyAdmin code injection" to vuxml
|
|
Thu, 1 Jul 2004
|
[ 19:03 eik ]
1.39 security/portaudit-db/database/portaudit.txt
phpMyAdmin code injection
|
|
Wed, 30 Jun 2004
|
[ 23:39 eik ]
1.38 security/portaudit-db/database/portaudit.txt
- SSLtelnet remote format string vulnerability
(guys, this is a public list)
- add some references
|
|
Tue, 29 Jun 2004
|
[ 10:33 eik ]
1.37 security/portaudit-db/database/portaudit.txt
add MIT Kerberos 5 krb5_aname_to_localname() buffer overflow
|
[ 10:21 eik ]
1.36 security/portaudit-db/database/portaudit.txt
add isakmpd security association deletion vulnerability
|
|
Mon, 28 Jun 2004
|
[ 22:09 eik ]
1.35 security/portaudit-db/database/portaudit.txt
add Apache input header folding DoS vulnerability
|
[ 09:55 eik ]
1.34 security/portaudit-db/database/portaudit.txt
xine-lib RTSP handling vulnerabilities
|
[ 03:58 trhodes ]
1.33 security/portaudit-db/database/portaudit.txt
1.132 security/vuxml/vuln.xml
Move MoinMoin entry to VuXML.
|
|
Fri, 25 Jun 2004
|
[ 20:01 trhodes ]
1.32 security/portaudit-db/database/portaudit.txt
1.129 security/vuxml/vuln.xml
Add an entry for recent isc-dhcp3-server buffer overflows.
Remove the one in portaudit.txt.
|
[ 17:18 trhodes ]
1.31 security/portaudit-db/database/portaudit.txt
1.128 security/vuxml/vuln.xml
Move giFT-FastTrack to VuXML.
|
[ 13:34 eik ]
1.30 security/portaudit-db/database/portaudit.txt
giFT-FastTrack remote DoS
|
[ 12:37 eik ]
1.29 security/portaudit-db/database/portaudit.txt
correct rlpr version
|
[ 10:31 eik ]
1.28 security/portaudit-db/database/portaudit.txt
Pure-FTPd DoS when the max number of connection is reached
|
[ 01:35 trhodes ]
1.27 security/portaudit-db/database/portaudit.txt
1.126 security/vuxml/vuln.xml
Move the Gallery entry to VuXML.
|
|
Thu, 24 Jun 2004
|
[ 14:52 eik ]
1.15 print/rlpr/Makefile
1.26 security/portaudit-db/database/portaudit.txt
rlpr local and remote exploitable buffer overflow (CAN-2004-0393, CAN-2004-0454)
|
[ 11:23 eik ]
1.20 net/sup/Makefile
1.25 security/portaudit-db/database/portaudit.txt
CAN-2004-0451: format string vulnerabilities in sup
|
[ 11:01 eik ]
1.24 security/portaudit-db/database/portaudit.txt
Security flaw in rssh
|
[ 10:45 eik ]
1.23 security/portaudit-db/database/portaudit.txt
Icecast remote DoS vulnerability
|
|
Wed, 23 Jun 2004
|
[ 12:11 eik ]
1.22 security/portaudit-db/database/portaudit.txt
it seems like isc-dhcp3-{client,devel} are unaffected
|
[ 11:56 eik ]
1.21 security/portaudit-db/database/portaudit.txt
reword gallery entry
add multiple isc-dhcp3 vulnerabilities
|
Number of commits found: 120 (showing only 100 on this page) 1 | 2 » |