notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine
This referral link gives you 10% off a Fastmail.com account and gives me a discount on my Fastmail account.

Get notified when packages are built

A new feature has been added. FreshPorts already tracks package built by the FreeBSD project. This information is displayed on each port page. You can now get an email when FreshPorts notices a new package is available for something on one of your watch lists. However, you must opt into that. Click on Report Subscriptions on the right, and New Package Notification box, and click on Update.

Finally, under Watch Lists, click on ABI Package Subscriptions to select your ABI (e.g. FreeBSD:14:amd64) & package set (latest/quarterly) combination for a given watch list. This is what FreshPorts will look for.

Port details
vuxml Vulnerability and eXposure Markup Language DTD
1.1_6 security on this many watch lists=31 search for ports that depend on this port Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 1.1_6Version of this port present on the latest quarterly branch.
Maintainer: ports-secteam@FreeBSD.org search for ports maintained by this maintainer
Port Added: 2004-02-12 14:24:23
Last Update: 2024-04-19 20:44:22
Commit Hash: 9addc75
People watching this port, also watch:: gnupg, curl, libxml2, nmap, vim
Also Listed In: textproc
License: BSD2CLAUSE
WWW:
https://vuxml.freebsd.org/
Description:
VuXML (the Vulnerability and eXposure Markup Language) is an XML application for documenting security bugs and corrections within a software package collection such as the FreeBSD Ports Collection. This port installs the DTDs required for validating VuXML documents.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (13 items)
Collapse this list.
  1. /usr/local/share/licenses/vuxml-1.1_6/catalog.mk
  2. /usr/local/share/licenses/vuxml-1.1_6/LICENSE
  3. /usr/local/share/licenses/vuxml-1.1_6/BSD2CLAUSE
  4. @xmlcatmgr share/xml/dtd/vuxml/catalog
  5. @xmlcatmgr share/xml/dtd/vuxml/catalog.xml
  6. share/xml/dtd/vuxml/vuxml-10.dtd
  7. share/xml/dtd/vuxml/vuxml-11.dtd
  8. share/xml/dtd/vuxml/vuxml-model-10.mod
  9. share/xml/dtd/vuxml/vuxml-model-11.mod
  10. share/xml/dtd/vuxml/xml1.dcl
  11. @owner
  12. @group
  13. @mode
Collapse this list.
Dependency lines:
  • vuxml>0:security/vuxml
To install the port:
cd /usr/ports/security/vuxml/ && make install clean
To add the package, run one of these commands:
  • pkg install security/vuxml
  • pkg install vuxml
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: vuxml
Flavors: there is no flavor information for this port.
distinfo:
SHA256 (vuxml/vuxml-10.dtd) = 6a635ad2cf45f52361c8c2a29a689157fad4d00519045485bc822d34e04a524e SIZE (vuxml/vuxml-10.dtd) = 2986 SHA256 (vuxml/vuxml-model-10.mod) = 051fed00b52bedde8ee901003fc29f7b95cd904157e31ceef34e6b06f2d1a14a

Expand this list (11 items)

Collapse this list.

SIZE (vuxml/vuxml-model-10.mod) = 10599 SHA256 (vuxml/vuxml-11.dtd) = 12b50061d7bb34cecffede2e08d439e4469324376d55aeb7c73eb6aab0f36af1 SIZE (vuxml/vuxml-11.dtd) = 3063 SHA256 (vuxml/vuxml-model-11.mod) = a40777208625a3029c6f416aeeea733f614802a6a5f26035a4e445a09e61a47c SIZE (vuxml/vuxml-model-11.mod) = 13282 SHA256 (vuxml/xml1.dcl) = 343efa94c4e1302e85e08b2d1791d86e50aac1ecdbc3161daecac100e4726847 SIZE (vuxml/xml1.dcl) = 7372 SHA256 (vuxml/catalog) = 479a69cf02995603443fd1f3b5b33f97811670931f87f53be99a727d664abc66 SIZE (vuxml/catalog) = 549 SHA256 (vuxml/catalog.xml) = 7b2e2850f57264eeba0ccd3d1fc161b9d5ce3071ae0ec51b9da7fa956f2a6509 SIZE (vuxml/catalog.xml) = 2150

Collapse this list.


Packages (timestamps in pop-ups are UTC):
vuxml
ABIaarch64amd64armv6armv7i386powerpcpowerpc64powerpc64le
FreeBSD:13:latest1.1_61.1_61.1_51.1_61.1_6-1.1_5-
FreeBSD:13:quarterly1.1_61.1_61.1_61.1_61.1_61.1_61.1_61.1_6
FreeBSD:14:latest1.1_61.1_61.1_61.1_61.1_61.1_6-1.1_6
FreeBSD:14:quarterly1.1_61.1_6-1.1_61.1_61.1_61.1_61.1_6
FreeBSD:15:latest1.1_61.1_6n/a1.1_6n/a1.1_61.1_61.1_6
FreeBSD:15:quarterly--n/a-n/a---
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Runtime dependencies:
  1. xmlcatmgr : textproc/xmlcatmgr
  2. xsltproc : textproc/libxslt
  3. VERSION : textproc/xhtml-modularization
  4. xhtml-basic10.dtd : textproc/xhtml-basic
  5. python3.9 : lang/python39
There are no ports dependent upon this port

Configuration Options:
No options to configure
Options name:
security_vuxml
USES:
python:run
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. http://www.vuxml.org/dtd/vuxml-1/
Collapse this list.

Number of commits found: 7236 (showing only 100 on this page)

[First Page]  «  27 | 28 | 29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37  »  [Last Page]

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
1.1_2
26 Feb 2016 16:16:21
Revision:409622Original commit files touched by this commit
feld search for other commits by this committer
Document multimedia/pitivi vulnerability

Security:	CVE-2015-0855
1.1_2
26 Feb 2016 15:50:41
Revision:409614Original commit files touched by this commit
feld search for other commits by this committer
Document graphics/giflib vulnerability

Security:	CVE-2015-7555
1.1_2
25 Feb 2016 15:36:20
Revision:409527Original commit files touched by this commit
feld search for other commits by this committer
Document drupal vulnerabilities

PR:		207467
Security:	https://www.drupal.org/SA-CORE-2016-001
1.1_2
25 Feb 2016 05:25:10
Revision:409492Original commit files touched by this commit
lwhsu search for other commits by this committer
Document Jenkins Security Advisory 2016-02-24
1.1_2
24 Feb 2016 20:27:41
Revision:409481Original commit files touched by this commit
feld search for other commits by this committer
vuxml: Update entry for graphics/jasper

These vulnerabilities are resolved in 1.900.1_16

Security:	http://www.vuxml.org/freebsd/006e3b7c-d7d7-11e5-b85f-0018fe623f2b.html
Security:	http://www.vuxml.org/freebsd/f1692469-45ce-11e5-adde-14dae9d210b8.html
1.1_2
24 Feb 2016 11:46:09
Revision:409460Original commit files touched by this commit
junovitch search for other commits by this committer
Document squid remote DoS in HTTP response processing

PR:		207454
Reported by:	Pavel Timofeev <timp87@gmail.com>
Security:	https://vuxml.FreeBSD.org/freebsd/660ebbf5-daeb-11e5-b2bd-002590263bf5.html
1.1_2
21 Feb 2016 15:25:58
Revision:409297Original commit files touched by this commit
junovitch search for other commits by this committer
Document bsh remote code execution vulnerability

PR:		207334
Submitted by:	pfg (maintainer)
Security:	CVE-2016-2510
Security:	https://vuxml.FreeBSD.org/freebsd/9e5bbffc-d8ac-11e5-b2bd-002590263bf5.html
1.1_2
21 Feb 2016 14:55:47
Revision:409293Original commit files touched by this commit
junovitch search for other commits by this committer
Document libsrtp DoS via crafted RTP header vulnerability

PR:		207003
Reported by:	pi
Security:	CVE-2015-6360
Security:	https://vuxml.FreeBSD.org/freebsd/6171eb07-d8a9-11e5-b2bd-002590263bf5.html
1.1_2
21 Feb 2016 14:54:03
Revision:409291Original commit files touched by this commit
junovitch search for other commits by this committer
Respace entry so `make validate' passes
1.1_2
20 Feb 2016 14:01:59
Revision:409239Original commit files touched by this commit
dinoex search for other commits by this committer
- add jasper -- multiple vulnerabilities
- fix version for CVE-2015-5221
1.1_2
18 Feb 2016 23:08:33
Revision:409138Original commit files touched by this commit
feld search for other commits by this committer
Document that graphics/silgraphite is also vulnerable

Security:	http://www.vuxml.org/freebsd/8f10fa04-cf6a-11e5-96d6-14dae9d210b8.html
1.1_2
18 Feb 2016 21:23:58
Revision:409131Original commit files touched by this commit
rene search for other commits by this committer
Document new vulnerability in www/chromium < 48.0.2564.116

Obtained
from:	http://googlechromereleases.blogspot.nl/2016/02/stable-channel-update_18.html
1.1_2
18 Feb 2016 03:04:39
Revision:409084Original commit files touched by this commit
junovitch search for other commits by this committer
Document Linux glibc crash/code execution via crafted DNS responses

PR:		207272
Submitted by:	Johannes Jost Meixner <johannes@meixner.dk>
Security:	CVE-2015-7547
Security:	https://vuxml.FreeBSD.org/freebsd/2dd7e97e-d5e8-11e5-bcbd-bc5ff45d0f28.html
1.1_2
18 Feb 2016 02:20:24
Revision:409083Original commit files touched by this commit
junovitch search for other commits by this committer
Revise earlier Squid entry with official Squid SA as a reference

PR:		203186
Security:	https://vuxml.FreeBSD.org/freebsd/d3a98c2d-5da1-11e5-9909-002590263bf5.html
1.1_2
18 Feb 2016 02:16:14
Revision:409082Original commit files touched by this commit
junovitch search for other commits by this committer
Document Squid SSL/TLS processing remote DoS

PR:		207294
Security:	CVE-2016-2390
Security:	https://vuxml.FreeBSD.org/freebsd/56562efb-d5e4-11e5-b2bd-002590263bf5.html
1.1_2
17 Feb 2016 17:23:24
Revision:409054Original commit files touched by this commit
feld search for other commits by this committer
Document databases/adminer vulnerabilities
1.1_2
16 Feb 2016 22:48:43
Revision:409021Original commit files touched by this commit
jkim search for other commits by this committer
Correct CVE numbers for recent Flash vulnerabilities.
1.1_2
16 Feb 2016 02:40:27
Revision:408971Original commit files touched by this commit
cpm search for other commits by this committer
Document libgcrypt side-channel attack on ECDH

PR:		207107
Security:	CVE-2015-7511
Security:	https://vuxml.FreeBSD.org/freebsd/95b92e3b-d451-11e5-9794-e8e0b747a45a.html
1.1_2
16 Feb 2016 01:00:26
Revision:408967Original commit files touched by this commit
junovitch search for other commits by this committer
Document xdelta3 buffer overflow vulnerability

PR:		207174
Security:	CVE-2014-9765
Security:	https://vuxml.FreeBSD.org/freebsd/f1bf28c5-d447-11e5-b2bd-002590263bf5.html
1.1_2
15 Feb 2016 15:31:03
Revision:408939Original commit files touched by this commit
miwi search for other commits by this committer
- Update Description from previous commit.

PR:		207207
Suggested by:   Jan Beich
1.1_2
15 Feb 2016 15:18:25
Revision:408936Original commit files touched by this commit
miwi search for other commits by this committer
- Document firefox -- Same-origin-policy violation using Service Workers with
plugins

PR:		20720
Submitted by:	Christoph Moench-Tegeder
1.1_2
14 Feb 2016 21:18:39
Revision:408890Original commit files touched by this commit
junovitch search for other commits by this committer
Add CVE to the OpenSSH 7.0.p1 entry and also mention CVE-2015-6565

Security:	CVE-2015-6563
Security:	CVE-2015-6564
Security:	CVE-2015-6565
Security:	https://vuxml.FreeBSD.org/freebsd/2920c449-4850-11e5-825f-c80aa9043978.html
1.1_2
14 Feb 2016 19:11:35
Revision:408883Original commit files touched by this commit
girgen search for other commits by this committer
Correct URL.
1.1_2
14 Feb 2016 14:46:06
Revision:408859Original commit files touched by this commit
miwi search for other commits by this committer
- Fix formating
1.1_2
14 Feb 2016 14:39:55
Revision:408857Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Add entry for www/nghttp2 < 1.7.1

  - Out of memory error in nghttpd, nghttp, and libnghttp2_asio
    applications

Reviewed by:	feld (secteam, mentor)
Approved by:	feld (secteam, mentor)
Depends on:	D5218
Differential Revision:	D5271
1.1_2
14 Feb 2016 02:59:02
Revision:408841Original commit files touched by this commit
junovitch search for other commits by this committer
Document cross-site scripting vulnerabilities in Horde Groupware

Security:	CVE-2015-8807
Security:	CVE-2016-2228
Security:	https://vuxml.FreeBSD.org/freebsd/3aa8b781-d2c4-11e5-b2bd-002590263bf5.html
1.1_2
14 Feb 2016 01:55:27
Revision:408840Original commit files touched by this commit
junovitch search for other commits by this committer
Fix dnscrypt-proxy reference URL (ihttps -> https)
1.1_2
13 Feb 2016 22:35:55
Revision:408834Original commit files touched by this commit
girgen search for other commits by this committer
Document security problems in PostgreSQL

Security:	CVE-2016-0773, CVE-2016-0766
1.1_2
13 Feb 2016 22:28:41
Revision:408831Original commit files touched by this commit
junovitch search for other commits by this committer
Reflect QEMU DoS vulnerabilities now fixed in qemu-sbruno/qemu-user-static

PR:		205813
Security:	CVE-2015-8345
Security:	CVE-2015-8567
Security:	CVE-2015-8568
Security:	CVE-2015-8613
Security:	CVE-2015-8619
Security:	CVE-2015-8701
Security:	https://vuxml.FreeBSD.org/freebsd/1384f2fd-b1be-11e5-9728-002590263bf5.html
Security:	https://vuxml.FreeBSD.org/freebsd/62ab8707-b1bc-11e5-9728-002590263bf5.html
Security:	https://vuxml.FreeBSD.org/freebsd/9ad8993e-b1ba-11e5-9728-002590263bf5.html
Security:	https://vuxml.FreeBSD.org/freebsd/b3f9f8ef-b1bb-11e5-9728-002590263bf5.html
Security:	https://vuxml.FreeBSD.org/freebsd/b56fe6bb-b1b1-11e5-9728-002590263bf5.html
1.1_2
10 Feb 2016 13:08:13
Revision:408629Original commit files touched by this commit
kwm search for other commits by this committer
Document feb 8, 2016 flash vulnerabilities.

Security:	CVE-2016-0964, CVE-2016-0965, CVE-2016-0966, CVE-2016-0967,
		CVE-2016-0968, CVE-2016-0969, CVE-2016-0970, CVE-2016-0971,
		CVE-2016-0972, CVE-2016-0973, CVE-2016-0974, CVE-2016-0975,
		CVE-2016-0976, CVE-2016-0977, CVE-2016-0978, CVE-2016-0979,
		CVE-2016-0980, CVE-2016-0981, CVE-2016-0982, CVE-2016-0983,
		CVE-2016-0984, CVE-2016-0985
1.1_2
10 Feb 2016 00:10:40
Revision:408609Original commit files touched by this commit
feld search for other commits by this committer
Document dns/dnscrypt-proxy vulnerability

PR:		206938
1.1_2
10 Feb 2016 00:07:45
Revision:408608Original commit files touched by this commit
feld search for other commits by this committer
Fix vuxml to pass `make validate`
An errant newline from the last entry caused "Error 1"
1.1_2
09 Feb 2016 23:11:37
Revision:408604Original commit files touched by this commit
rene search for other commits by this committer
Document new vulnerabilities in www/chromium < 48.0.2564.109

Obtained
from:	http://googlechromereleases.blogspot.nl/2016/02/stable-channel-update_9.html
1.1_2
09 Feb 2016 20:30:42
Revision:408594Original commit files touched by this commit
feld search for other commits by this committer
Update graphics/graphite2 vulnerability details

I found a more comprehensive blog entry by Talos
1.1_2
09 Feb 2016 20:23:33
Revision:408593Original commit files touched by this commit
feld search for other commits by this committer
Document graphics/graphite2 vulnerability

Security:	CVE-2016-1521
1.1_2
09 Feb 2016 17:07:04
Revision:408582Original commit files touched by this commit
feld search for other commits by this committer
Fix duplicate "reports" in last entry
1.1_2
09 Feb 2016 17:01:02
Revision:408579Original commit files touched by this commit
feld search for other commits by this committer
Document net-mgmt/xymon-server vulnerabilities

MFH:		2016Q1
Security:	CVE-2016-2054
Security:	CVE-2016-2055
Security:	CVE-2016-2056
Security:	CVE-2016-2057
Security:	CVE-2016-2058
1.1_2
09 Feb 2016 10:55:58
Revision:408551Original commit files touched by this commit
miwi search for other commits by this committer
- Document php -- pcre vulnerability
1.1_2
09 Feb 2016 10:39:56
Revision:408550Original commit files touched by this commit
rakuco search for other commits by this committer
Document multiple vulnerabilities in graphics/py-imaging and graphics/py-pillow.

Security:	CVE-2016-0740
Security:	CVE-2016-0775
1.1_2
06 Feb 2016 11:23:58
Revision:408292Original commit files touched by this commit
riggs search for other commits by this committer
Document remote denial of service in ffmpeg before 2.8.6 and
mencoder / mplayer before 1.2.r20151219_3
1.1_2
05 Feb 2016 20:04:05
Revision:408264Original commit files touched by this commit
junovitch search for other commits by this committer
Update version of net/samba36 package to reflect it is still unpatched

PR:		206808
Reported by:	Marcin Gryszkalis <mg@fork.pl>
Security:	CVE-2015-5252
Security:	CVE-2015-5296
Security:	CVE-2015-5299
Security:	https://vuxml.FreeBSD.org/freebsd/ef434839-a6a4-11e5-8275-000c292e4fd8.html
1.1_2
05 Feb 2016 16:32:09
Revision:408219Original commit files touched by this commit
kwm search for other commits by this committer
Document shotwell failure to validate TLS certificates.

PR:		206807
1.1_2
04 Feb 2016 11:03:33
Revision:408023Original commit files touched by this commit
kwm search for other commits by this committer
Document webkit CVE-2014-1748.

If people look at the announcement, CVE-2014-3192 is already fixed. This
CVE was against chromium, and the same code in 2.4.9 is in webkit trunk
so I assume it already fixed.

CVE-2013-6663 is for webkit < 2.4.0, and the rest of the CVE's are for
apple products without any attached patches.

PR:		205683
Obtained from:	http://webkitgtk.org/security/WSA-2015-0002.html
1.1_2
04 Feb 2016 10:35:32
Revision:408019Original commit files touched by this commit
koobs search for other commits by this committer
security/vuxml: Add CVE-2016-1494 for security/py-rsa

PR:		206746
Reported by:	 Sevan Janiyan <venture37 geeklan co.uk>
1.1_2
04 Feb 2016 09:25:09
Revision:408018Original commit files touched by this commit
madpilot search for other commits by this committer
Document new asterisk ports vulnerabilities.
1.1_2
03 Feb 2016 17:16:58
Revision:407963Original commit files touched by this commit
feld search for other commits by this committer
Document py-salt vulnerability

Security:	CVE-2016-1866
1.1_2
02 Feb 2016 22:44:11
Revision:407850Original commit files touched by this commit
sunpoet search for other commits by this committer
- Document Ruby on Rails multiple vulnerabilities
1.1_2
02 Feb 2016 11:05:10
Revision:407807Original commit files touched by this commit
kwm search for other commits by this committer
Document that the linux curl ports are still vulnerable.

Submitted by:	xmj@
1.1_2
01 Feb 2016 22:05:51
Revision:407777Original commit files touched by this commit
feld search for other commits by this committer
Document net/socat vulnerability
1.1_2
01 Feb 2016 07:37:59
Revision:407689Original commit files touched by this commit
jbeich search for other commits by this committer
Document recent Mozilla vulnerabilities

PR:		206637
Submitted by:	Christoph Moench-Tegeder <cmt@burggraben.net>
1.1_2
01 Feb 2016 02:42:40
Revision:407678Original commit files touched by this commit
junovitch search for other commits by this committer
Document multiple vulnerabilities in gdcm

PR:		206590
Reported by:	Sevan Janiyan <venture37@geeklan.co.uk>
Security:	CVE-2015-8396
Security:	CVE-2015-8397
Security:	https://vuxml.FreeBSD.org/freebsd/e00d8b94-c88a-11e5-b5fe-002590263bf5.html
1.1_2
31 Jan 2016 10:00:14
Revision:407604Original commit files touched by this commit
miwi search for other commits by this committer
- Fix x11/linux-c6-xorg-libs entry as fixed
- Also fix modify date

Reported by: Terry Kennedy <TERRY@glaver.org>
1.1_2
30 Jan 2016 18:42:17
Revision:407538Original commit files touched by this commit
miwi search for other commits by this committer
- Mark linux-c6* entys as fixed
1.1_2
30 Jan 2016 16:53:28
Revision:407535Original commit files touched by this commit
brnrd search for other commits by this committer
ftp/curl: Fix vuxml version check

Reviewed by:	Erandir, miwi (ports-secteam)
Approved by:	miwi (ports-secteam)
1.1_2
30 Jan 2016 05:37:11
Revision:407513Original commit files touched by this commit
feld search for other commits by this committer
vuxml: fix version range for nginx which has a PORTEPOCH
1.1_2
30 Jan 2016 05:29:48
Revision:407508Original commit files touched by this commit
feld search for other commits by this committer
Document www/nginx vulnerabilities

Security:	CVE-2016-0742
Security:	CVE-2016-0746
Security:	CVE-2016-0747
1.1_2
29 Jan 2016 16:53:05
Revision:407487Original commit files touched by this commit
feld search for other commits by this committer
Document www/typo3 and www/typo3-lts vulnerabilities

PR:		206723
1.1_2
29 Jan 2016 16:44:04
Revision:407486Original commit files touched by this commit
feld search for other commits by this committer
vuxml: Fix owncloud discovery date
1.1_2
29 Jan 2016 16:43:37
Revision:407485Original commit files touched by this commit
feld search for other commits by this committer
Document www/nghttp2 vulnerability

PR:		206727
Security:	CVE-2015-8659
1.1_2
29 Jan 2016 16:36:38
Revision:407484Original commit files touched by this commit
feld search for other commits by this committer
vuxml: Fix openssl entry so `make validate` doesn't throw errors
1.1_2
29 Jan 2016 16:35:58
Revision:407483Original commit files touched by this commit
feld search for other commits by this committer
Document www/owncloud vulnerabilities

PR:		206724
Security:	CVE-2016-1498
Security:	CVE-2016-1499
Security:	CVE-2016-1500
1.1_2
29 Jan 2016 15:38:48
Revision:407475Original commit files touched by this commit
feld search for other commits by this committer
vuxml: radicale entry needs python prefixes for packagename

PR:		206717
1.1_2
29 Jan 2016 15:33:37
Revision:407472Original commit files touched by this commit
feld search for other commits by this committer
Document www/radicale vulnerabilities

Security:	CVE-2015-8747
Security:	CVE-2015-8748
1.1_2
28 Jan 2016 22:45:10
Revision:407433Original commit files touched by this commit
matthew search for other commits by this committer
Add 9 security advisories for phpMyAdmin:

 [Security] Multiple full path disclosure vulnerabilities, see PMASA-2016-1
 [Security] Unsafe generation of CSRF token, see PMASA-2016-2
 [Security] Multiple XSS vulnerabilities, see PMASA-2016-3
 [Security] Insecure password generation in JavaScript, see PMASA-2016-4
 [Security] Unsafe comparison of CSRF token, see PMASA-2016-5
 [Security] Multiple full path disclosure vulnerabilities, see PMASA-2016-6
 [Security] XSS vulnerability in normalization page, see PMASA-2016-7
 [Security] Full path disclosure vulnerability in SQL parser, see PMASA-2016-8
 [Security] XSS vulnerability in SQL editor, see PMASA-2016-9
1.1_2
28 Jan 2016 21:00:55
Revision:407422Original commit files touched by this commit
lx search for other commits by this committer
vuxml for prosody CVE-2016-0756.

PR:		206707
Submitted by: Anton Shestakov
1.1_2
28 Jan 2016 15:20:11
Revision:407412Original commit files touched by this commit
dinoex search for other commits by this committer
- report OpenSSL 1.0.2e vulnerability
MFH:		2016Q1
1.1_2
27 Jan 2016 16:01:39
Revision:407365Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Document cURL vulnerability

Reviewed by:	feld (ports-secteam, mentor), koobs (mentor)
Approved by:	feld (ports-secteam, mentor)
Security:	CVE-2016-0755
Security:	https://vuxml.FreeBSD.org/freebsd/8b27f1bc-c509-11e5-a95f-b499baebfeaf.html
Differential Revision:	D5091
1.1_2
26 Jan 2016 04:18:34
Revision:407261Original commit files touched by this commit
junovitch search for other commits by this committer
Document Wordpress cross site scripting vulnerability

Security:	CVE-2016-1564
Security:	https://vuxml.FreeBSD.org/freebsd/fb754341-c3e2-11e5-b5fe-002590263bf5.html
1.1_2
26 Jan 2016 03:13:32
Revision:407256Original commit files touched by this commit
junovitch search for other commits by this committer
Document recent privoxy security vulnerabilities

While here, catch up on the prior release's advisories for completeness

PR:		206504
Security:	CVE-2016-1982
Security:	CVE-2016-1983
Security:	https://vuxml.FreeBSD.org/freebsd/a763a0e7-c3d9-11e5-b5fe-002590263bf5.html
1.1_2
26 Jan 2016 01:36:25
Revision:407251Original commit files touched by this commit
junovitch search for other commits by this committer
Document potential privilege escalation via symlink misconfiguration in sudo

PR:		206592
Reported by:	Sevan Janiyan <venture37@geeklan.co.uk>
Security:	CVE-2015-5602
Security:	https://vuxml.FreeBSD.org/freebsd/2e8cdd36-c3cc-11e5-b5fe-002590263bf5.html
1.1_2
22 Jan 2016 19:21:17
Revision:406940Original commit files touched by this commit
feld search for other commits by this committer
Document graphics/imlib2 vulnerabilities

PR:		206372
Security:	CVE-2014-9762
Security:	CVE-2014-9763
Security:	CVE-2014-9764
1.1_2
22 Jan 2016 17:20:08
Revision:406937Original commit files touched by this commit
feld search for other commits by this committer
Recent BIND vulnerabilities are supposed to be in separate entries
1.1_2
21 Jan 2016 21:49:22
Revision:406881Original commit files touched by this commit
rene search for other commits by this committer
Document new vulnerabilities in www/chromium < 48.0.2564.82

PR:		206474
Submitted by:	Christoph Moench-Tegeder
Obtained
from:	http://googlechromereleases.blogspot.de/2016/01/stable-channel-update_20.html
1.1_2
21 Jan 2016 09:30:59
Revision:406838Original commit files touched by this commit
delphij search for other commits by this committer
Document NTP multiple vulnerabilities.
1.1_2
20 Jan 2016 23:41:20
Revision:406815Original commit files touched by this commit
junovitch search for other commits by this committer
Document cgit -- multiple vulnerabilities

PR:		206417
Security:	CVE-2016-1899
Security:	CVE-2016-1900
Security:	CVE-2016-1901
Security:	https://vuxml.FreeBSD.org/freebsd/62c0dbbd-bfce-11e5-b5fe-002590263bf5.html
1.1_2
20 Jan 2016 16:32:35
Revision:406780Original commit files touched by this commit
feld search for other commits by this committer
Document bind vulnerabilities

Security:	CVE-2015-8704
Security:	CVE-2015-8705
1.1_2
19 Jan 2016 16:52:06
Revision:406712Original commit files touched by this commit
pawel search for other commits by this committer
Document claws-mail CVE

Security:	CVE-2015-8614
1.1_2
19 Jan 2016 08:35:48
Revision:406638Original commit files touched by this commit
sunpoet search for other commits by this committer
- Fix libproxy range
1.1_2
18 Jan 2016 23:50:10
Revision:406623Original commit files touched by this commit
junovitch search for other commits by this committer
Document several vulnerabilities in libarchive

PR:		200176
Reported by:	Sevan Janiyan <venture37@geeklan.co.uk>
Security:	CVE-2013-0211
Security:	CVE-2015-2304
Security:	https://vuxml.FreeBSD.org/freebsd/7c63775e-be31-11e5-b5fe-002590263bf5.html
1.1_2
18 Jan 2016 14:04:44
Revision:406573Original commit files touched by this commit
junovitch search for other commits by this committer
Document go information disclosure vulnerability

Security:	CVE-2015-8618
Security:	https://vuxml.FreeBSD.org/freebsd/6809c6db-bdeb-11e5-b5fe-002590263bf5.html
1.1_2
18 Jan 2016 06:16:38
Revision:406548Original commit files touched by this commit
riggs search for other commits by this committer
Correct vulerable package version entries for ffmpeg entry in r406293
1.1_2
17 Jan 2016 18:06:31
Revision:406521Original commit files touched by this commit
feld search for other commits by this committer
Document isc-dhcpd CVE

Security:	CVE-2015-8605
1.1_2
17 Jan 2016 11:33:11
Revision:406302Original commit files touched by this commit
rakuco search for other commits by this committer
Document CVE-2012-4504 in net/libproxy and its slave ports.

Security:	CVE-2012-4504
1.1_2
17 Jan 2016 10:27:35
Revision:406297Original commit files touched by this commit
riggs search for other commits by this committer
Document usage of vulnerable ffmpeg prior to 2.8.5 in mplayer/mencoder
1.1_2
17 Jan 2016 10:12:17
Revision:406293Original commit files touched by this commit
riggs search for other commits by this committer
Document zero day remote vulnerability in ffmpeg 2.0.0 - 2.8.4

PR:		206282
1.1_2
15 Jan 2016 17:47:33
Revision:406172Original commit files touched by this commit
bdrewery search for other commits by this committer
Fix OpenSSH version ranges.

Reported by:	sunpoet
1.1_2
15 Jan 2016 15:22:44
Revision:406163Original commit files touched by this commit
miwi search for other commits by this committer
- Document h2o -- directory traversal vulnerability

PR:		206193
1.1_2
14 Jan 2016 19:34:26
Revision:406127Original commit files touched by this commit
bdrewery search for other commits by this committer
Document OpenSSH CVE-2016-0777 and CVE-2016-0778.

Submitted by:	brnrd
1.1_2
14 Jan 2016 00:25:59
Revision:406085Original commit files touched by this commit
junovitch search for other commits by this committer
Document two vulnerabilities in Prosody

PR:		206150
Reported by:	Anton Shestakov <av6@dwimlabs.net>
Security:	CVE-2016-1232
Security:	CVE-2016-1231
Security:	https://vuxml.FreeBSD.org/freebsd/842cd117-ba54-11e5-9728-002590263bf5.html
1.1_2
13 Jan 2016 23:57:53
Revision:406081Original commit files touched by this commit
junovitch search for other commits by this committer
Document Kibana 4.x XSS vulnerabilty

PR:		205961
PR:		205962
PR:		205963
Security:	https://vuxml.FreeBSD.org/freebsd/a7a4e96c-ba50-11e5-9728-002590263bf5.html
1.1_2
12 Jan 2016 14:50:44
Revision:405876Original commit files touched by this commit
rakuco search for other commits by this committer
Add entry for CVE-2015-8607 in devel/p5-PathTools.

Security:	CVE-2015-8607
1.1_2
11 Jan 2016 11:07:43
Revision:405774Original commit files touched by this commit
miwi search for other commits by this committer
- php -- multiple vulnerabilities
1.1_2
09 Jan 2016 13:42:06
Revision:405629Original commit files touched by this commit
rakuco search for other commits by this committer
Add entry for CVE-2015-8557 in textproc/py-pygments.
1.1_2
08 Jan 2016 18:49:51
Revision:405585Original commit files touched by this commit
feld search for other commits by this committer
Add openjdk7 to the existing java vuxml entry

PR:		204268
1.1_2
08 Jan 2016 18:44:02
Revision:405584Original commit files touched by this commit
feld search for other commits by this committer
Document polkit vulnerabilities

PR:		204235
Security:	CVE-2015-4625
Security:	CVE-2015-3218
Security:	CVE-2015-3255
Security:	CVE-2015-3256
1.1_2
08 Jan 2016 18:23:26
Revision:405583Original commit files touched by this commit
feld search for other commits by this committer
Document net/librsync collision vulnerability

PR:		204237
Security:	CVE-2014-8242
1.1_2
08 Jan 2016 17:55:40
Revision:405578Original commit files touched by this commit
feld search for other commits by this committer
Document fixed version of graphics/exact-image

Security:	CVE-2015-3885
1.1_2
08 Jan 2016 17:25:40
Revision:405572Original commit files touched by this commit
feld search for other commits by this committer
Document devel/m6811-binutils is also vuln to older CVEs

PR:		198815
Security:	CVE-2014-8501
Security:	CVE-2014-8502
Security:	CVE-2014-8503
1.1_2
08 Jan 2016 06:16:20
Revision:405530Original commit files touched by this commit
delphij search for other commits by this committer
Document ntp remote denial of service vulnerability.
1.1_2
08 Jan 2016 01:31:32
Revision:405502Original commit files touched by this commit
junovitch search for other commits by this committer
Document two dhcpcd vulnerabilities

PR:		206015
Security:	CVE-2016-1504
Security:	CVE-2016-1503
Security:	https://vuxml.FreeBSD.org/freebsd/df587aa2-b5a5-11e5-9728-002590263bf5.html

Number of commits found: 7236 (showing only 100 on this page)

[First Page]  «  27 | 28 | 29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37  »  [Last Page]