notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine
This referral link gives you 10% off a Fastmail.com account and gives me a discount on my Fastmail account.

Get notified when packages are built

A new feature has been added. FreshPorts already tracks package built by the FreeBSD project. This information is displayed on each port page. You can now get an email when FreshPorts notices a new package is available for something on one of your watch lists. However, you must opt into that. Click on Report Subscriptions on the right, and New Package Notification box, and click on Update.

Finally, under Watch Lists, click on ABI Package Subscriptions to select your ABI (e.g. FreeBSD:14:amd64) & package set (latest/quarterly) combination for a given watch list. This is what FreshPorts will look for.

Port details
vuxml Vulnerability and eXposure Markup Language DTD
1.1_6 security on this many watch lists=31 search for ports that depend on this port Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 1.1_6Version of this port present on the latest quarterly branch.
Maintainer: ports-secteam@FreeBSD.org search for ports maintained by this maintainer
Port Added: 2004-02-12 14:24:23
Last Update: 2024-05-02 10:33:31
Commit Hash: 2417fd8
People watching this port, also watch:: gnupg, curl, libxml2, nmap, vim
Also Listed In: textproc
License: BSD2CLAUSE
WWW:
https://vuxml.freebsd.org/
Description:
VuXML (the Vulnerability and eXposure Markup Language) is an XML application for documenting security bugs and corrections within a software package collection such as the FreeBSD Ports Collection. This port installs the DTDs required for validating VuXML documents.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (13 items)
Collapse this list.
  1. /usr/local/share/licenses/vuxml-1.1_6/catalog.mk
  2. /usr/local/share/licenses/vuxml-1.1_6/LICENSE
  3. /usr/local/share/licenses/vuxml-1.1_6/BSD2CLAUSE
  4. @xmlcatmgr share/xml/dtd/vuxml/catalog
  5. @xmlcatmgr share/xml/dtd/vuxml/catalog.xml
  6. share/xml/dtd/vuxml/vuxml-10.dtd
  7. share/xml/dtd/vuxml/vuxml-11.dtd
  8. share/xml/dtd/vuxml/vuxml-model-10.mod
  9. share/xml/dtd/vuxml/vuxml-model-11.mod
  10. share/xml/dtd/vuxml/xml1.dcl
  11. @owner
  12. @group
  13. @mode
Collapse this list.
Dependency lines:
  • vuxml>0:security/vuxml
To install the port:
cd /usr/ports/security/vuxml/ && make install clean
To add the package, run one of these commands:
  • pkg install security/vuxml
  • pkg install vuxml
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: vuxml
Flavors: there is no flavor information for this port.
distinfo:
SHA256 (vuxml/vuxml-10.dtd) = 6a635ad2cf45f52361c8c2a29a689157fad4d00519045485bc822d34e04a524e SIZE (vuxml/vuxml-10.dtd) = 2986 SHA256 (vuxml/vuxml-model-10.mod) = 051fed00b52bedde8ee901003fc29f7b95cd904157e31ceef34e6b06f2d1a14a

Expand this list (11 items)

Collapse this list.

SIZE (vuxml/vuxml-model-10.mod) = 10599 SHA256 (vuxml/vuxml-11.dtd) = 12b50061d7bb34cecffede2e08d439e4469324376d55aeb7c73eb6aab0f36af1 SIZE (vuxml/vuxml-11.dtd) = 3063 SHA256 (vuxml/vuxml-model-11.mod) = a40777208625a3029c6f416aeeea733f614802a6a5f26035a4e445a09e61a47c SIZE (vuxml/vuxml-model-11.mod) = 13282 SHA256 (vuxml/xml1.dcl) = 343efa94c4e1302e85e08b2d1791d86e50aac1ecdbc3161daecac100e4726847 SIZE (vuxml/xml1.dcl) = 7372 SHA256 (vuxml/catalog) = 479a69cf02995603443fd1f3b5b33f97811670931f87f53be99a727d664abc66 SIZE (vuxml/catalog) = 549 SHA256 (vuxml/catalog.xml) = 7b2e2850f57264eeba0ccd3d1fc161b9d5ce3071ae0ec51b9da7fa956f2a6509 SIZE (vuxml/catalog.xml) = 2150

Collapse this list.


Packages (timestamps in pop-ups are UTC):
vuxml
ABIaarch64amd64armv6armv7i386powerpcpowerpc64powerpc64le
FreeBSD:13:latest1.1_61.1_61.1_51.1_61.1_6-1.1_5-
FreeBSD:13:quarterly1.1_61.1_61.1_61.1_61.1_61.1_61.1_61.1_6
FreeBSD:14:latest1.1_61.1_61.1_61.1_61.1_61.1_6-1.1_6
FreeBSD:14:quarterly1.1_61.1_6-1.1_61.1_61.1_61.1_61.1_6
FreeBSD:15:latest1.1_61.1_6n/a1.1_6n/a1.1_61.1_61.1_6
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Runtime dependencies:
  1. xmlcatmgr : textproc/xmlcatmgr
  2. xsltproc : textproc/libxslt
  3. VERSION : textproc/xhtml-modularization
  4. xhtml-basic10.dtd : textproc/xhtml-basic
  5. python3.9 : lang/python39
There are no ports dependent upon this port

Configuration Options:
No options to configure
Options name:
security_vuxml
USES:
python:run
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. http://www.vuxml.org/dtd/vuxml-1/
Collapse this list.

Number of commits found: 7251 (showing only 100 on this page)

[First Page]  «  46 | 47 | 48 | 49 | 50 | 51 | 52 | 53 | 54 | 55 | 56  »  [Last Page]

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
1.1_1
06 Oct 2010 05:36:56
Original commit files touched by this commit
pgollucci search for other commits by this committer
- Fix a minor typo

Reported by:    stas
1.1_1
06 Oct 2010 05:29:50
Original commit files touched by this commit
pgollucci search for other commits by this committer
Document devel/apr1's apr-util vunerabilities

Security:       http://secunia.com/advisories/41701
Reviewed by:    secteam (cperciva) via irc
1.1_1
02 Oct 2010 11:16:58
Original commit files touched by this commit
niels search for other commits by this committer
Documented phpMyFaq XSS vulnerability

PR:             ports/151055
Submitted by:   Florian Smeets <flo@smeets.im>
Approved by:    itetcu (mentor, implicit)
Security:       http://www.phpmyfaq.de/advisory_2010-09-28.php
1.1_1
28 Sep 2010 18:04:46
Original commit files touched by this commit
thierry search for other commits by this committer
Report an XSS vulnerability in ftp/horde-gollem.
1.1_1
28 Sep 2010 17:48:19
Original commit files touched by this commit
thierry search for other commits by this committer
Report a XSS vulnerability in mail/horde-dimp.
1.1_1
28 Sep 2010 17:30:10
Original commit files touched by this commit
thierry search for other commits by this committer
Report a XSS vulnerability in mail/horde-imp.
1.1_1
28 Sep 2010 17:09:35
Original commit files touched by this commit
thierry search for other commits by this committer
Report 2 vulnerabilities in www/horde-base.
1.1_1
26 Sep 2010 13:32:10
Original commit files touched by this commit
niels search for other commits by this committer
Documented remote code execution vulnerability in OpenX

PR:             ports/150610
Approved by:    itetcu (mentor, implicit)
Security:       ttp://blog.openx.org/09/security-update/
1.1_1
24 Sep 2010 20:24:37
Original commit files touched by this commit
niels search for other commits by this committer
Documented squid denial of service vulnerability

PR:             ports/150364
Submitted by:   Thomas-Martin Seck <tmseck@web.de>
Approved by:    itetcu (mentor, implicit)
Security:       CVE-2010-3072
Security:       http://www.squid-cache.org/Advisories/SQUID-2010_3.txt
1.1_1
22 Sep 2010 17:45:56
Original commit files touched by this commit
nox search for other commits by this committer
Update to 10.1r85 resp. 9.0r283 [1].

Security:      
http://www.freebsd.org/ports/portaudit/8a34d9e6-c662-11df-b2e1-001b2134ef46.html
PR:             ports/150832 [2]
Submitted by:   pointyhat via pav [1], Tsurutani Naoki
                <turutani@scphys.kyoto-u.ac.jp> [2]
1.1_1
17 Sep 2010 20:07:07
Original commit files touched by this commit
delphij search for other commits by this committer
Correct discovery date, my bad :(
1.1_1
17 Sep 2010 19:31:59
Original commit files touched by this commit
delphij search for other commits by this committer
Document django XSS vulnerability.
1.1_1
15 Sep 2010 15:37:24
Original commit files touched by this commit
decke search for other commits by this committer
- Add libxul as affected package to the latest mozilla entry

Approved by:    beat (co-mentor)
1.1_1
10 Sep 2010 13:41:57
Original commit files touched by this commit
jadawin search for other commits by this committer
- Fix CVE name for webkit-gtk2
1.1_1
10 Sep 2010 13:03:20
Original commit files touched by this commit
kwm search for other commits by this committer
Document webkit-gtk2 - multiple vulnerabilities.

Also add 1 extra CVE to the previous webkit-gtk2 entry that was fixed but
didn't make it to the release notes.
1.1_1
09 Sep 2010 03:13:09
Original commit files touched by this commit
shaun search for other commits by this committer
Belatedly (and perhaps pointlessly) document [1]:

  vim6 -- heap-based overflow while parsing shell metacharacters

While here, prepare this old port for termination with DEPRECATED.

PR:             ports/129300 [1]
Submitted by:   Eygene Ryabinkin <rea-fbsd@codelabs.ru> [1]
1.1_1
08 Sep 2010 06:51:06
Original commit files touched by this commit
beat search for other commits by this committer
- Document mozilla -- multiple vulnerabilities
1.1_1
07 Sep 2010 18:11:49
Original commit files touched by this commit
wxs search for other commits by this committer
Document sudo Runas group vulnerability.
1.1_1
04 Sep 2010 16:20:33
Original commit files touched by this commit
bapt search for other commits by this committer
- wget 1.12_1 is also concerned
1.1_1
03 Sep 2010 13:57:14
Original commit files touched by this commit
bapt search for other commits by this committer
- Add wget entry CVE-2010-2252
- Add lftp entry CVE-2010-2251
1.1_1
31 Aug 2010 14:53:00
Original commit files touched by this commit
jadawin search for other commits by this committer
 - Document p5-libwww vulnerability (remote servers can create .(dot) files)
1.1_1
25 Aug 2010 07:49:08
Original commit files touched by this commit
niels search for other commits by this committer
Documented quagga vulnerabilities (stack overflow, DoS)

Approved by:    itetcu (mentor,implicit)
Security:       http://www.openwall.com/lists/oss-security/2010/08/24/3
Security:       http://www.quagga.net/news2.php?y=2010&m=8&d=19#id1282241100
1.1_1
24 Aug 2010 16:26:54
Original commit files touched by this commit
skv search for other commits by this committer
Document "bugzilla" - information disclosure, denial of service.
1.1_1
23 Aug 2010 07:12:57
Original commit files touched by this commit
lwhsu search for other commits by this committer
- Fix version range of phpMyAdmin

Submitted by:   Marko Njezic <mr.max AT maxempire.com>
1.1_1
22 Aug 2010 17:19:50
Original commit files touched by this commit
danfe search for other commits by this committer
Adjust the version range in previous entry: 1.0.1 is also vulnerable, and
fix minor whitespace nit while here.
1.1_1
22 Aug 2010 12:30:07
Original commit files touched by this commit
kwm search for other commits by this committer
Add entry for OpenTTD denial of server vulnability.

Reviewed by:    danfe@ (OpenTTD maintainer)
1.1_1
21 Aug 2010 21:30:32
Original commit files touched by this commit
niels search for other commits by this committer
- Added corkscrew: overflow condition due to insecure sscanf usage
- Fixed SLiM title: /SLiM/slim/

Approved by:    itetcu (mentor, implicit)
Security:       http://people.freebsd.org/~niels/issues/corkscrew-20100821.txt
1.1_1
21 Aug 2010 12:42:18
Original commit files touched by this commit
lwhsu search for other commits by this committer
- Add phpMyAdmin's CVE-2010-3056 entry
1.1_1
20 Aug 2010 23:34:13
Original commit files touched by this commit
stas search for other commits by this committer
- Fix date of the latest ruby entry.
1.1_1
20 Aug 2010 21:00:34
Original commit files touched by this commit
niels search for other commits by this committer
Added CVE to SLiM vulnerability

Approved by:    itetcu (mentor, implicit)
Security:       CVE-2010-2945
1.1_1
19 Aug 2010 21:11:53
Original commit files touched by this commit
niels search for other commits by this committer
- Document SLiM insecure PATH assignment issue
- Removed space from vlc title

Approved by:    itetcu (implicit, mentor)
Security:       http://seclists.org/oss-sec/2010/q3/198
1.1_1
18 Aug 2010 06:36:26
Original commit files touched by this commit
stas search for other commits by this committer
- Document recent WEBrick XSS vulnerability in ruby.
1.1_1
17 Aug 2010 12:50:38
Original commit files touched by this commit
bapt search for other commits by this committer
- Add security/isolate entry

PR:             ports/148911
Submitted by:   Steve Wills <steve _at_ mouf.net> (maintainer)
Approved by:    tabthorpe (mentor)
1.1_1
15 Aug 2010 17:10:53
Original commit files touched by this commit
shaun search for other commits by this committer
Fix krb5 entry (86b8b655-4d1a-11df-83fb-0015587e2cc1) version range
mark-up.

Submitted by:   Peggy Wilkins via freebsd-ports
1.1_1
14 Aug 2010 22:43:51
Original commit files touched by this commit
gabor search for other commits by this committer
- Fix last entry by adding the forgotten package name.
  (Hint: always run make validate before committing to this file)

Forgotten by:   jsa, kwm
1.1_1
14 Aug 2010 20:51:52
Original commit files touched by this commit
jsa search for other commits by this committer
Document VLC CVE-2010-2937.

Approved by:    kwm (mentor)
1.1_1
13 Aug 2010 20:15:54
Original commit files touched by this commit
nox search for other commits by this committer
Update to 10.1r82 resp. 9.0r280.

Security:      
http://www.freebsd.org/ports/portaudit/e19e74a4-a712-11df-b234-001b2134ef46.html
1.1_1
13 Aug 2010 15:23:18
Original commit files touched by this commit
shaun search for other commits by this committer
Document opera -- multiple vulnerabilities.
1.1_1
09 Aug 2010 09:10:12
Original commit files touched by this commit
beat search for other commits by this committer
- Belatedly document firefox -- Dangling pointer crash regression from plugin
  parameter array fix

Approved by:    miwi
1.1_1
04 Aug 2010 14:47:39
Original commit files touched by this commit
wxs search for other commits by this committer
Whitespace fixes.
1.1_1
04 Aug 2010 09:32:27
Original commit files touched by this commit
lwhsu search for other commits by this committer
- Fix Piwik entry's <name> tag

Pointed out by: jadawin
1.1_1
04 Aug 2010 09:18:12
Original commit files touched by this commit
lwhsu search for other commits by this committer
- Add Piwik CVE-2010-2786 entry
1.1_1
31 Jul 2010 12:00:24
Original commit files touched by this commit
kuriyama search for other commits by this committer
Previous vuln affects only apache-2.2.x
1.1_1
29 Jul 2010 23:03:53
Original commit files touched by this commit
gabor search for other commits by this committer
- Document libmspack and cabextract vulnerability
1.1_1
26 Jul 2010 01:42:21
Original commit files touched by this commit
kuriyama search for other commits by this committer
Add entry for apache.
1.1_1
23 Jul 2010 00:37:11
Original commit files touched by this commit
wxs search for other commits by this committer
Document buffer overflow when parsing gitdir.
While here, tidy up a whitespace problem.
1.1_1
21 Jul 2010 22:25:34
Original commit files touched by this commit
glarkin search for other commits by this committer
- Document www/codeigniter file upload class vulnerability

Approved by:    secteam (timeout - 1 week)
Security:       http://codeigniter.com/news/codeigniter_1.7.2_security_patch/
1.1_1
21 Jul 2010 12:46:17
Original commit files touched by this commit
beat search for other commits by this committer
- Document mozilla -- multiple vulnerabilities

Approved by:    remko
1.1_1
19 Jul 2010 00:07:23
Original commit files touched by this commit
kwm search for other commits by this committer
Add vte as package name, instead of empty.
1.1_1
18 Jul 2010 23:28:32
Original commit files touched by this commit
kwm search for other commits by this committer
Document vte title set+query attack vulnerability.

While here add the CVE numbers to the webkit-gtk2 entry I forgot in the
previous commit.

PR:             ports/148678
Submitted by:   Janne Snabb <snabb@epipe.com>
1.1_1
18 Jul 2010 22:44:05
Original commit files touched by this commit
kwm search for other commits by this committer
Document webkit-gtk2 vulnerabilities.

Security:       http://blog.kov.eti.br/?p=116
1.1_1
10 Jul 2010 08:34:16
Original commit files touched by this commit
decke search for other commits by this committer
- Document redmine vulnerabilities

Approved by:    miwi (secteam)
Security:       http://www.redmine.org/news/41
1.1_1
07 Jul 2010 09:13:02
Original commit files touched by this commit
nemoliu search for other commits by this committer
- Update to 3.1.1
- VuXML entry for PNG decoder security vulnerability
- License information

PR:     ports/147871
Approved by:    Pavel Pankov <pankov_p@mail.ru> (maintainer)
Feature safe:   yes
1.1_1
06 Jul 2010 21:39:10
Original commit files touched by this commit
delphij search for other commits by this committer
Add bogofilter heap underrun on malformed base64 input.

Submitted by:   mandree
PR:             ports/148408
Feature safe:   yes
1.1_1
06 Jul 2010 04:38:12
Original commit files touched by this commit
miwi search for other commits by this committer
- Cleanup a bit

Feature safe:   yes
1.1_1
05 Jul 2010 15:41:27
Original commit files touched by this commit
skv search for other commits by this committer
Document "bugzilla" - information disclosure.

Feature safe:   yes
1.1_1
30 Jun 2010 21:00:07
Original commit files touched by this commit
makc search for other commits by this committer
Document multiple vulnerabilities in irc/kvirc*

Approved by:    remko@
Feature safe:   yes
1.1_1
28 Jun 2010 17:38:13
Original commit files touched by this commit
delphij search for other commits by this committer
Add bid reference for libpng entry.

Feature safe:   yes
1.1_1
28 Jun 2010 16:18:53
Original commit files touched by this commit
dinoex search for other commits by this committer
- graphics/png CVE-2010-1205
Feature safe:   yes
1.1_1
28 Jun 2010 00:46:12
Original commit files touched by this commit
wen search for other commits by this committer
- Document moodle -- multiple vulnerabilities

Reviewed by:    delphij@, miwi@
Feature safe:   yes
1.1_1
27 Jun 2010 21:14:28
Original commit files touched by this commit
rene search for other commits by this committer
Document mDNSResponder -- corrupted stack crash when parsing bad resolv.conf

This only happens on a system where one has a system where
resolv.conf is writable by an untrusted user or where mdnsd is setuid
and can be tricked into opening an alternate resolv.conf.
PR:             ports/147007
Submitted by:   jmallett@
Approved by:    tabthorpe (mentor)
Feature safe:   yes
1.1_1
25 Jun 2010 23:29:50
Original commit files touched by this commit
shaun search for other commits by this committer
Document opera -- Data URIs can be used to allow cross-site scripting.

Assume opera-devel is vulnerable too, although snapshots aren't
mentioned in the advisory, and it's months out of date.

Feature safe:   yes
1.1_1
24 Jun 2010 12:54:49
Original commit files touched by this commit
niels search for other commits by this committer
- Cancelled movemail symlink vulnerability (doesnt affect our ports)
- Added entry for multiple vulnerabilities in cacti 0.8.7f
- Updated ziproxy entry to satisfy "make tidy"

Approved by:    itetcu (mentor, implicit)
Feature safe:   yes
1.1_1
23 Jun 2010 18:01:10
Original commit files touched by this commit
beat search for other commits by this committer
- Document mozilla -- multiple vulnerabilities

Feature safe:   yes
Approved by:    delphij
1.1_1
18 Jun 2010 00:38:36
Original commit files touched by this commit
delphij search for other commits by this committer
vuln 4e8344a3-ca52-11de-8ee8-00215c6a37bb has been fixed with
php4-gd-4.4.9_4.

Requested by:   Michael Gmelin <mg bindone de>
1.1_1
16 Jun 2010 12:42:09
Original commit files touched by this commit
erwin search for other commits by this committer
Fix typo in previous revision.
1.1_1
16 Jun 2010 12:13:30
Original commit files touched by this commit
miwi search for other commits by this committer
- Cleanup, Formating
1.1_1
16 Jun 2010 09:31:35
Original commit files touched by this commit
dinoex search for other commits by this committer
add CVE-2009-2347 tiff
1.1_1
15 Jun 2010 19:46:47
Original commit files touched by this commit
nox search for other commits by this committer
Document linux-flashplugin -- multiple vulnerabilities.

Reviewed by:    tmclaugh
1.1_1
14 Jun 2010 03:04:22
Original commit files touched by this commit
miwi search for other commits by this committer
- Cleanup / Whitespace fixes
1.1_1
12 Jun 2010 17:22:38
Original commit files touched by this commit
erwin search for other commits by this committer
Remove empty package in previous revision.
1.1_1
12 Jun 2010 16:44:34
Original commit files touched by this commit
dinoex search for other commits by this committer
- report FAX3 decoder buffer overrun
1.1_1
03 Jun 2010 00:10:57
Original commit files touched by this commit
wxs search for other commits by this committer
Document sudo secure path vulnerability. We are not vulnerable to this by
default but a user could build sudo with SUDO_SECURE_PATH defined or turn
it on in sudoers.
1.1_1
02 Jun 2010 11:24:45
Original commit files touched by this commit
pav search for other commits by this committer
- Update to 3.0.1

PR:             ports/147195
Submitted by:   Pavel Pankov <pankov_p@mail.ru> (maintainer)
1.1_1
02 Jun 2010 06:20:29
Original commit files touched by this commit
wen search for other commits by this committer
- Document two mediawiki security vulnerabilities

Approved by:    delphij@(ports-security override)
1.1_1
14 May 2010 18:28:43
Original commit files touched by this commit
decke search for other commits by this committer
- Document multiple redmine vulnerabilities

Approved by:    miwi (secteam), beat (co-mentor)
Security:       http://www.redmine.org/news/39
1.1_1
13 May 2010 09:12:02
Original commit files touched by this commit
niels search for other commits by this committer
Updated tomcat entry (CVE-2010-1157) with fixed version information.
This makes sure that the correct older versions are marked vulnerable

Approved by:    itetcu (mentor, implicit)
Security:      
http://www.vuxml.org/freebsd/3383e706-4fc3-11df-83fb-0015587e2cc1.html
1.1_1
12 May 2010 09:46:13
Original commit files touched by this commit
niels search for other commits by this committer
- Added 109 missing CVE names to 60 VuXML entries
- Fixed Tomcat55 entry to mark current PORTREVISION vulnerable

PR:             ports/146418
Approved by:    itetcu (mentor, implicit)
Security:       http://people.freebsd.org/~niels/vuxml/
1.1_1
07 May 2010 19:53:26
Original commit files touched by this commit
niels search for other commits by this committer
Added wireshark (DoS) and piwik (XSS) issues

Approved by:    itetcu (mentor, implicit)
Security:       http://www.wireshark.org/security/wnpa-sec-2010-03.html
Security:       http://www.wireshark.org/security/wnpa-sec-2010-04.html
Security:       http://piwik.org/blog/2010/04/piwik-0-6-security-advisory/
1.1_1
06 May 2010 19:44:56
Original commit files touched by this commit
niels search for other commits by this committer
Added spamass-milter remote command execution vulnerability

Approved by:    itetcu (mentor, implicit)
Security:       CVE-2010-1132
Security:      
http://archives.neohapsis.com/archives/fulldisclosure/2010-03/0139.html
1.1_1
05 May 2010 19:12:37
Original commit files touched by this commit
niels search for other commits by this committer
- Added mediawiki and lxr vulnerabilities
- Fixed vlc topic format (lower case, portname first)

PR:             ports/146337
Approved by:    itetcu (mentor, implicit)
Security:      
http://lists.wikimedia.org/pipermail/mediawiki-announce/2010-April/000090.html
Security:      
http://sourceforge.net/mailarchive/message.php?msg_name=E1NS2s4-0001PE-F2%403bkjzd1.ch3.sourceforge.com
1.1_1
04 May 2010 20:46:06
Original commit files touched by this commit
niels search for other commits by this committer
Added 38 missing CVE names to 24 VuXML entries
(256 CVE names to go)

Approved by:    itetcu (mentor, implicit)
Security:       http://people.freebsd.org/~niels/vuxml/
1.1_1
02 May 2010 15:32:40
Original commit files touched by this commit
niels search for other commits by this committer
Added 34 missing CVE names to 24 VuXML entries
(294 CVE names to go)

Approved by:    miwi (secteam)
Security:       http://people.freebsd.org/~niels/vuxml/
1.1_1
02 May 2010 00:52:40
Original commit files touched by this commit
sylvio search for other commits by this committer
- VideoLAN has released 1.0.6 to address serveral vulnerabilities they discoverd
while working towards the 1.1.0 release. These vulnerabilities could potentially
allow for a specially crafted file to execute code.

PR:             ports/146099
Submitted by:   Joseph S. Atkinson <jsa@wickedmachine.net> (maintainer)
1.1_1
30 Apr 2010 04:25:33
Original commit files touched by this commit
dinoex search for other commits by this committer
- fix version for apache+mod_ssl
1.1_1
30 Apr 2010 04:24:30
Original commit files touched by this commit
dinoex search for other commits by this committer
- fix info for apache+mod_ssl
1.1_1
28 Apr 2010 21:09:45
Original commit files touched by this commit
makc search for other commits by this committer
Mark kdebase3 as safe now.
1.1_1
27 Apr 2010 05:46:00
Original commit files touched by this commit
niels search for other commits by this committer
- Documented multiple Joomla! vulnerabilities
- Added new reference to the recent cacti issue

Approved by:    remko (secteam)
Security:       http://developer.joomla.org/security/
1.1_1
24 Apr 2010 21:14:58
Original commit files touched by this commit
niels search for other commits by this committer
Documented vulnerabilities in moodle, tomcat55, tomcat66 and cacti

PR:             ports/146021
PR:             ports/146022
Approved by:    remko (secteam)
Security:       http://seclists.org/bugtraq/2010/Apr/200
Security:       http://docs.moodle.org/en/Moodle_1.9.8_release_notes
Security:       http://www.bonsai-sec.com/en/research/vulnerability.php
1.1_1
23 Apr 2010 18:16:18
Original commit files touched by this commit
niels search for other commits by this committer
Documented emacs movemail vulnerability and marked the seperate
mail/movemail port vulnerable to an old format string vulnerability.

Approved by:    remko (secteam)
Security:       http://www.ubuntu.com/usn/USN-919-1
1.1_1
21 Apr 2010 20:19:12
Original commit files touched by this commit
niels search for other commits by this committer
Added krb5 double free vulnerability

Approved by:    remko (secteam)
Security:       http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2010-004.txt
Security:       CVE-2010-1320
1.1_1
20 Apr 2010 21:03:51
Original commit files touched by this commit
niels search for other commits by this committer
Documented the following vulnerabilities:
- png: libpng decompression denial of service
- e107: code execution and XSS vulnerabilities
- pidgin: multiple remote denial of service vulnerabilities
- fetchmail: denial of service vulnerability

PR:             ports/145885
PR:             ports/145857
Approved by:    remko (secteam)
Security:       CVE-2010-0996
Security:       CVE-2010-0997
Security:       CVE-2010-1167
Security:       CVE-2010-0277
Security:       CVE-2010-0420
Security:       CVE-2010-0423
Security:       CVE-2010-0205
1.1_1
19 Apr 2010 19:06:23
Original commit files touched by this commit
niels search for other commits by this committer
Documented the following vulnerabilities:
- curl: libcurl buffer overflow vulnerability
- irssi: multiple vulnerabilities
- ejabberd: queue overload denial of service vulnerability

Approved by:    remko (secteam)
Security:       http://curl.haxx.se/docs/adv_20100209.html
Security:       http://support.process-one.net/browse/EJAB-1173
Security:       http://xforce.iss.net/xforce/xfdb/57790
Security:       http://xforce.iss.net/xforce/xfdb/57791
1.1_1
19 Apr 2010 07:13:42
Original commit files touched by this commit
niels search for other commits by this committer
- Added three krb5 vulnerabilities
- Fixed indent on mahara entry
- Fixed title of KDM entry

Approved by:    remko (secteam)
Security:       http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2010-001.txt
Security:       http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2010-002.txt
Security:       http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2010-003.txt
1.1_1
18 Apr 2010 19:00:29
Original commit files touched by this commit
niels search for other commits by this committer
Document mahara sql injection vulnerability

Approved by:    remko (secteam)
Security:       http://www.debian.org/security/2010/dsa-2030
1.1_1
16 Apr 2010 02:25:07
Original commit files touched by this commit
wxs search for other commits by this committer
Correct CVE entry. The advisory from Todd[0] says CVE 2010-0426, which is
the entry assigned to the original sudoedit vulnerability[1]. The new
one (CVE-2010-1163) was just assigned. I believe the one assigned by CVE
folks is the proper one to use.

[0]: http://sudo.ws/sudo/alerts/sudoedit_escalate2.html
[1]: 018a84d0-2548-11df-b4a3-00e0815b8da8
1.1_1
15 Apr 2010 20:53:03
Original commit files touched by this commit
wxs search for other commits by this committer
- Document sudo privilege escalation bug. This is similar to
  018a84d0-2548-11df-b4a3-00e0815b8da8.
1.1_1
14 Apr 2010 21:46:52
Original commit files touched by this commit
avilla search for other commits by this committer
- Do not match x11/kdebase4 in latest KDM vulnerability.

Approved by:    tabthorpe (mentor)
1.1_1
14 Apr 2010 19:04:39
Original commit files touched by this commit
avilla search for other commits by this committer
- Document KDM local privilege escalation vulnerability.

Approved by:    tabthorpe (mentor), delphij (secteam)
1.1_1
06 Apr 2010 17:53:39
Original commit files touched by this commit
glarkin search for other commits by this committer
- Document dojo - cross-site scripting and other vulnerabilities
- Document ZendFramework - security issues in bundled Dojo library

Approved by:    secteam (remko)
Security:      
http://dojotoolkit.org/blog/post/dylan/2010/03/dojo-security-advisory/
Security:       http://framework.zend.com/security/advisory/ZF2010-07

Number of commits found: 7251 (showing only 100 on this page)

[First Page]  «  46 | 47 | 48 | 49 | 50 | 51 | 52 | 53 | 54 | 55 | 56  »  [Last Page]