| non port: security/vuxml/vuln.xml |
|
CVSWeb
|
Number of commits found: 2715 (showing only 100 on this page) 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 » [Last Page] |
|
Sat, 26 May 2012
|
[ 00:59 gavin ]
1.2715 security/vuxml/vuln.xml
Correct spelling mistake, FreeSD -> FreeBSD
Reviewed by: nox
|
|
Thu, 24 May 2012
|
[ 23:46 jgh ]
1.2714 security/vuxml/vuln.xml
- document security issue for haproxy
PR: ports/165035
Submitted by: jgh@
Security: CVE-2012-2391
|
[ 19:55 flo ]
1.2713 security/vuxml/vuln.xml
Document RT vulnerabilities.
(I'm only committing this as matthew is still waiting for mentor approval, and
we found it important enough to commit it right now)
Submitted by: matthew
|
|
Mon, 21 May 2012
|
[ 16:43 jgh ]
1.2712 security/vuxml/vuln.xml
- inspircd 1.2.9 is not vulnerable
PR: ports/167975
Spotted by: feld@feld.me
|
[ 13:15 rm ]
1.2711 security/vuxml/vuln.xml
Add an entry for mail/sympa < 6.1.11 (CVE-2012-2352)
|
[ 06:57 rm ]
1.2710 security/vuxml/vuln.xml
Add www/foswiki < 1.1.5 entry (CVE-2012-1004)
|
[ 05:31 miwi ]
1.2709 security/vuxml/vuln.xml
- Correct b8ae4659-a0da-11e1-a294-bcaec565249c entry [1]
- Formating and cleanup
Submitted by: Neal Dias <ndias@cisco.com> [1]
|
|
Fri, 18 May 2012
|
[ 11:51 kwm ]
1.178 textproc/libxml2/Makefile
1.1 textproc/libxml2/files/patch-xpointer.c
1.2708 security/vuxml/vuln.xml
Document and fix a off-by-one vulnability in libxml2.
Obtained from: libxml upstream
Security: b8ae4659-a0da-11e1-a294-bcaec565249c
|
|
Thu, 17 May 2012
|
[ 17:31 jgh ]
1.2707 security/vuxml/vuln.xml
- fix date in 725ab25a-987b-11e1-a2ef-001fd0af1a4c
|
[ 17:12 jgh ]
1.2706 security/vuxml/vuln.xml
- revert unintentional date change in aa71daaa-9f8c-11e1-bd0a-0082a0c18826
- update date in f5f00804-a03b-11e1-a284-0023ae8e59f0
- adjust dates in 3d55b961-9a2e-11e1-a2ef-001fd0af1a4c
a1d0911f-987a-11e1-a2ef-001fd0af1a4c for ordering
|
[ 16:52 jgh ]
1.21 irc/inspircd/Makefile
1.6 irc/inspircd/distinfo
1.1 irc/inspircd/files/patch-src_dns.cpp
1.6 irc/inspircd/pkg-plist
1.2705 security/vuxml/vuln.xml
- Update inspircd to 2.0.5 [1]
- document CVE-2012-1836 [2]
PR: ports/167975
Submitted by: maintainer, feld@feld.me [1], jgh@ [2]
Security: CVE-2012-1836
|
[ 05:56 eadler ]
1.2704 security/vuxml/vuln.xml
Fix some nits:
The url in the cite attribute must appear as a reference
The CVE automatically gets expanded to a url so the mitre url is not
needed
|
[ 05:44 jgh ]
1.2703 security/vuxml/vuln.xml
- fix spelling in b3435b68-9ee8-11e1-997c-002354ed89bc
|
|
Wed, 16 May 2012
|
[ 19:41 dougb ]
1.37 security/pidgin-otr/Makefile
1.10 security/pidgin-otr/distinfo
1.8 security/pidgin-otr/pkg-plist
1.2702 security/vuxml/vuln.xml
Versions 3.2.0 and earlier of the pidgin-otr plugin contain
a format string security flaw. This flaw could potentially be
exploited by a remote attacker to cause arbitrary code to be
executed on the user's machine.
The flaw is in pidgin-otr, not in libotr. Other applications
that use libotr are not affected.
|
[ 14:24 wxs ]
1.2701 security/vuxml/vuln.xml
Document sudo netmask vulnerability. Patch for port forthcoming.
|
[ 07:40 dinoex ]
1.2700 security/vuxml/vuln.xml
- Security update OpenSSL 1.0.1c
|
|
Tue, 15 May 2012
|
[ 18:39 rene ]
1.2699 security/vuxml/vuln.xml
Document vulnerabilities for www/chromium < 19.0.1084.46
Security: CVE-2011-[3083-3097], CVE-2011-[3099-3100]
|
|
Mon, 14 May 2012
|
[ 21:18 zi ]
1.2698 security/vuxml/vuln.xml
- Document vulnerability in net/socat (CVE-2012-0219)
|
[ 20:37 eadler ]
1.2697 security/vuxml/vuln.xml
Fix pivotx vuln.xml
|
|
Sat, 12 May 2012
|
[ 21:48 zi ]
1.2696 security/vuxml/vuln.xml
- 59b68b1e-9c78-11e1-b5e0-000c299b62e1 also applies to lang/php52
|
[ 21:35 zi ]
1.2695 security/vuxml/vuln.xml
- Document recent vulnerabilities in PHP (CVE-2012-2311 and CVE-2012-2329)
|
[ 16:24 marcus ]
1.2694 security/vuxml/vuln.xml
Add an entry for CVE-2012-2214 for an XMPP crash in libpurple.
|
[ 14:23 sbz ]
1.2693 security/vuxml/vuln.xml
- Document CVE-2012-2274 for port www/pivotx
PR: ports/167819
Submitted by: Fumiyuki Shimizu <fumifumi at abacustech.jp>
Security: CVE-2012-2274
|
|
Fri, 11 May 2012
|
[ 08:53 danfe ]
1.2692 security/vuxml/vuln.xml
Belated VuXML entry for recent NVIDIA Unix driver arbitrary system memory
access vulnerability.
Reviewed by: eadler, delphij
Security: CVE-2012-0946
|
|
Wed, 9 May 2012
|
[ 23:27 swills ]
1.2691 security/vuxml/vuln.xml
- Add entry for rubygem-mail
|
|
Tue, 8 May 2012
|
[ 20:53 rm ]
1.2690 security/vuxml/vuln.xml
Revert my "correction" for php52. All the 5.2.x still affected to NULL
poison bug. Just tested both latest 5.2 and 5.3 with the script from here:
https://bugs.php.net/bug.php?id=39863
Sorry.
|
[ 20:23 rm ]
1.2689 security/vuxml/vuln.xml
Mark php52 >= 5.2.15 as not vulnerable to NULL byte poisoning [1]. This problem
was fixed in 5.3.4 and 5.2.15 simultaneously.
[1] http://www.vuxml.org/freebsd/3761df02-0f9c-11e0-becc-0022156e8794.html
Reported by: Svyatoslav Lempert <svyatoslav.lempert at gmail dot com>
|
[ 02:20 swills ]
1.2688 security/vuxml/vuln.xml
- Add entry for www/node
|
[ 01:54 swills ]
1.2687 security/vuxml/vuln.xml
- Add entry for p5-Config-IniFiles
|
|
Sun, 6 May 2012
|
[ 15:45 eadler ]
1.2686 security/vuxml/vuln.xml
Add references for the portupgrade advisory. Some code actually expects content
in this section.
Reported by: dvl
Reviewed by: wxs,zi
|
|
Sat, 5 May 2012
|
[ 13:53 simon ]
1.2685 security/vuxml/vuln.xml
Unbreak vuln.xml format.
While here fix a long line.
Pointyhat: scheidell
|
[ 13:21 scheidell ]
1.2684 security/vuxml/vuln.xml
- Account for repocopy of php5 -> php53
- Account for php52 backport fix
- Add entry for php54 (which will be named php5)
Submitted by: scheidell@ (me)
|
[ 11:12 scheidell ]
1.2683 security/vuxml/vuln.xml
- Third time the charm. remove extra (
Submitted by: scheidell@ (me)
|
[ 11:02 scheidell ]
1.2682 security/vuxml/vuln.xml
- All versions of PHP between 2004 release and May 3rd, 2012 are vulnerable to
cmdarg attacks
- Note: PHP 5.2.12 and 5.4.2 were created to address this issue, but did not.
- See WWW: http://eindbazen.net/2012/05/php-cgi-advisory-cve-2012-1823/
- An additional, unreleased version is needed.
Submitted by: scheidell@ (me)
Obtained from: WWW:www.php.net/archive/2012.php#id2012-05-03-1
Security: CVE-2012-1823
|
[ 02:04 eadler ]
1.2681 security/vuxml/vuln.xml
Fix PHP entry to match the actual package name
Submitted by: simon
|
|
Wed, 2 May 2012
|
[ 15:33 glarkin ]
1.2680 security/vuxml/vuln.xml
- Document www/webcalendar-devel - multiple vulnerabilities
Requested by: eadler, Hanno Boeck <hanno@hboeck.de>
|
|
Tue, 1 May 2012
|
[ 12:56 rene ]
1.2679 security/vuxml/vuln.xml
Document vulnerabilities in www/chromium < 18.0.1025.168
Obtained from:
http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security: CVE-2011-[3078-3081], CVE-2012-1521
|
|
Mon, 30 Apr 2012
|
[ 22:03 swills ]
1.2678 security/vuxml/vuln.xml
- Document vulnerability in lang/php5
|
[ 17:51 delphij ]
1.2677 security/vuxml/vuln.xml
Document samba incorrect permission checks vulnerability.
|
[ 03:03 eadler ]
1.2676 security/vuxml/vuln.xml
Inform users that ports-mgmt/portupgrade-devel had unchecked distinfo
|
|
Fri, 27 Apr 2012
|
[ 02:45 zi ]
1.2675 security/vuxml/vuln.xml
- Document vulnerability in net-mgmt/net-snmp (CVE-2012-2141)
|
|
Tue, 24 Apr 2012
|
[ 17:51 beat ]
1.2674 security/vuxml/vuln.xml
- Document mozilla -- multiple vulnerabilities
|
|
Mon, 23 Apr 2012
|
[ 23:41 delphij ]
1.2673 security/vuxml/vuln.xml
Document dokuwiki CSRF vulnerability.
|
[ 20:20 flo ]
1.2672 security/vuxml/vuln.xml
Document multiple asterisk vulnerabilities
|
[ 15:26 eadler ]
1.2671 security/vuxml/vuln.xml
Inform users of security vulns in wordpress
PR: ports/167157
|
|
Sun, 22 Apr 2012
|
[ 18:30 eadler ]
1.2670 security/vuxml/vuln.xml
Unbreak vuxml by removing stray 'p'
Submitted by: vuxml buildbot
|
[ 18:02 danfe ]
1.2669 security/vuxml/vuln.xml
Fix formatting in the first 10% of VuXML database file.
|
[ 15:22 danfe ]
1.2668 security/vuxml/vuln.xml
Fix whitespace: run through unexpand(1), spelling, wrap overly long lines.
|
|
Sat, 21 Apr 2012
|
[ 23:43 eadler ]
1.2667 security/vuxml/vuln.xml
Inform users about the recent openssl vuln
Reviewed by: dinoex
|
[ 17:37 ohauer ]
1.93 devel/bugzilla/Makefile
1.90 devel/bugzilla3/Makefile
1.7 german/bugzilla/Makefile
1.6 german/bugzilla3/Makefile
1.16 russian/bugzilla3-ru/Makefile
1.50 devel/bugzilla/distinfo
1.49 devel/bugzilla3/distinfo
1.10 russian/bugzilla3-ru/distinfo
1.42 devel/bugzilla/pkg-plist
1.39 devel/bugzilla3/pkg-plist
(Only the first 10 of 11 ports in this commit are shown above. )
- security update to bugzilla 3.0.9 and 4.0.6
- update russian/bugzilla3-ru template
- patch german templates so revision match and no warning is displayed
- add vuxml entry
Approved by: skv (implicit)
Security: https://bugzilla.mozilla.org/show_bug.cgi?id=728639
https://bugzilla.mozilla.org/show_bug.cgi?id=745397
CVE-2012-0465
CVE-2012-0466
|
|
Thu, 19 Apr 2012
|
[ 03:12 jgh ]
1.2665 security/vuxml/vuln.xml
- document typo3 vulnerability
PR: ports/167029
|
|
Mon, 16 Apr 2012
|
[ 15:34 eadler ]
1.2664 security/vuxml/vuln.xml
Add information about the recent nginx security vulnerability
PR: ports/166990
Submitted by: rodrigo osorio <rodrigo@bebik.net>
|
|
Sat, 14 Apr 2012
|
[ 16:45 flo ]
1.2663 security/vuxml/vuln.xml
Document phpmyfaq -- Remote PHP Code Execution Vulnerability
|
|
Thu, 12 Apr 2012
|
[ 15:48 swills ]
1.2662 security/vuxml/vuln.xml
- Slight cleanups for my puppet entry
|
|
Wed, 11 Apr 2012
|
[ 01:44 swills ]
1.36 sysutils/puppet/Makefile
1.1 sysutils/puppet/files/patch-CVEs
1.2661 security/vuxml/vuln.xml
- Document security issue with Puppet
- Update puppet for security issue
Security: 607d2108-a0e4-423a-bf78-846f2a8f01b0
|
|
Tue, 10 Apr 2012
|
[ 21:16 delphij ]
1.2660 security/vuxml/vuln.xml
Document samba root code execution vulnerability.
|
[ 05:32 ohauer ]
1.2659 security/vuxml/vuln.xml
- document bugzilla Cross-Site Request Forgery
|
|
Mon, 9 Apr 2012
|
[ 23:15 eadler ]
1.2658 security/vuxml/vuln.xml
Document recent flash player vulnerabilities
Reviewed by: nox
|
|
Sun, 8 Apr 2012
|
[ 22:27 zi ]
1.2657 security/vuxml/vuln.xml
- Document vulnerability in graphics/png (CVE-2011-3048)
- Fix wording/spelling in 462e2d6c-8017-11e1-a571-bcaec565249c
Feature safe: yes
|
[ 07:47 remko ]
1.2656 security/vuxml/vuln.xml
As requested by eadler, revert the commit about the move of the
<!-- EOF --> tag. I cannot reproduce the error anymore, so it
might have been the reviewal entry or something else was locally
wrong.
I did a make validate before committing this to make sure it's
OK at this point, if someone encounters the same problem, please
let us know!
Feature safe: yes
|
|
Fri, 6 Apr 2012
|
[ 18:44 kwm ]
1.2655 security/vuxml/vuln.xml
Document freetype 2 multiple vulnabilities.
Feature safe: yes
|
[ 16:07 nox ]
1.326 mail/mutt-devel/Makefile
1.1 mail/mutt-devel/files/patch-gnutls-CN-validation
1.1 mail/mutt-devel/files/patch-nbsp
1.2654 security/vuxml/vuln.xml
- Fix vulnerability CVE-2011-1429.
- Add a patch to the mutt pager that handles non-breaking space
characters (0xA0) in an UTF8 environment correctly.
- Bump PORTREVISION.
PR: ports/166659
Submitted by: Udo Schweigert <udo.schweigert@siemens.com> (maintainer)
Security:
http://www.freebsd.org/ports/portaudit/49314321-7fd4-11e1-9582-001b2134ef46.html
Feature safe: yes
|
|
Thu, 5 Apr 2012
|
[ 20:59 rene ]
1.2653 security/vuxml/vuln.xml
Mention vulnerabilities in www/chromium < 18.0.1025.151
Obtained from:
http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security: CVE-2011-[3066-3077]
Feature safe: yes
|
|
Tue, 3 Apr 2012
|
[ 17:55 remko ]
1.2652 security/vuxml/vuln.xml
Someone forgot to do a make validate after adding the <!--EOF
line. It breaks the make validate.
Feature safe: yes
|
|
Sun, 1 Apr 2012
|
[ 23:57 marcus ]
1.2651 security/vuxml/vuln.xml
Add a record for CVE-2012-1178.
Reported by: Peter Jeremy <peterjeremy@acm.org>
Feature safe: yes
|
|
Thu, 29 Mar 2012
|
[ 01:23 eadler ]
1.2650 security/vuxml/vuln.xml
Fix formatting so that "make tidy" passes
Feature safe: yes
|
|
Wed, 28 Mar 2012
|
[ 23:50 matthew ]
1.156 databases/phpmyadmin/Makefile
1.130 databases/phpmyadmin/distinfo
1.2649 security/vuxml/vuln.xml
Another phpmyadmin security update.
ChangeLog:
http://sourceforge.net/projects/phpmyadmin/files/phpMyAdmin/3.4.10.2/phpMyAdmin-3.4.10.2-notes.html/download
Welcome to phpMyAdmin 3.4.10.2, a minor security release.
3.4.10.2 (2012-03-28)
- [security] Fixed local path disclosure vulnerability, see PMASA-2012-2
Advisory:
http://www.phpmyadmin.net/home_page/security/PMASA-2012-2.php
Approved by: shaun (mentor)
Feature safe: yes
Security: a81161d2-790f-11e1-ac16-e0cb4e266481
|
[ 20:10 rene ]
1.2648 security/vuxml/vuln.xml
Document vulnerabilities in www/chromium < 18.0.1025.142
Obtained from:
http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security: CVE-2011-[3057-3065]
Feature safe: yes
|
|
Mon, 26 Mar 2012
|
[ 11:56 sem ]
1.2647 security/vuxml/vuln.xml
- quagga-re affected the last vulnerability too.
Feature safe: Yes
|
|
Sun, 25 Mar 2012
|
[ 17:20 rakuco ]
1.2646 security/vuxml/vuln.xml
Document CVE-2012-0037 for textproc/raptor and textproc/raptor2.
Security: CVE-2012-0037
Feature safe: yes
|
|
Sat, 24 Mar 2012
|
[ 15:12 eadler ]
1.2645 security/vuxml/vuln.xml
Fix formatting so that "make tidy" passes
Feature safe: yes
|
[ 14:11 zi ]
1.2644 security/vuxml/vuln.xml
- Document recent vulnerabilities in net/quagga (CVE-2012-0249, CVE-2012-0250,
CVE-2012-0255)
Feature safe: yes
|
[ 08:00 delphij ]
1.2643 security/vuxml/vuln.xml
Correct version ranges.
Feature safe: yes
|
[ 07:20 lwhsu ]
1.2642 security/vuxml/vuln.xml
Document Apache Traffic Server -- heap overflow vulnerability
Feature safe: yes
|
|
Thu, 22 Mar 2012
|
[ 10:57 rene ]
1.2641 security/vuxml/vuln.xml
Document vulnerabilities for www/chromium < 17.0.963.83
Obtained from:
http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security: CVE-2011-[3045,3049-3057]
Feature safe: yes
|
|
Wed, 21 Mar 2012
|
[ 21:58 delphij ]
1.2640 security/vuxml/vuln.xml
Document GNUtls and libtasn1 security vulnerabilities.
Feature safe: yes
|
|
Sun, 18 Mar 2012
|
[ 04:39 miwi ]
1.2639 security/vuxml/vuln.xml
- Cleanup
Feature safe: yes
|
[ 04:30 miwi ]
1.2638 security/vuxml/vuln.xml
- Correct the last 3 firefox 3.6 entrys
PR: 166207
Submitted by: Sergey Kandaurov <pluknet@gmail.com>
Feature safe: yes
|
|
Thu, 15 Mar 2012
|
[ 23:11 flo ]
1.2637 security/vuxml/vuln.xml
Document recent asterisk vulnerabilities.
Feature safe: yes
|
[ 15:21 wxs ]
1.2636 security/vuxml/vuln.xml
Document CVE-2012-0884.
Feature safe: yes
|
[ 13:45 osa ]
1.2635 security/vuxml/vuln.xml
Document nginx -- potential information leak.
Feature safe: yes
|
|
Wed, 14 Mar 2012
|
[ 09:16 beat ]
1.2634 security/vuxml/vuln.xml
- Document mozilla -- multiple vulnerabilities
Feature safe: yes
|
|
Tue, 13 Mar 2012
|
[ 09:37 kwm ]
1.28 x11-fonts/libXfont/Makefile
1.1 x11-fonts/libXfont/files/patch-src_fontfile_decompress.c
1.2633 security/vuxml/vuln.xml
Do proper input validation for libXfont. This is for CVE-2011-2895.
Feature safe: yes
|
|
Mon, 12 Mar 2012
|
[ 02:23 wxs ]
1.2632 security/vuxml/vuln.xml
Typo fix.
Feature safe: yes
|
|
Sun, 11 Mar 2012
|
[ 21:37 simon ]
1.2631 security/vuxml/vuln.xml
- Document portaudit -- auditfile remote code execution.
- Update (c) year.
Feature safe: yes
|
[ 16:07 wxs ]
1.2630 security/vuxml/vuln.xml
Appease the tidy target. ;)
Feature safe: yes
|
[ 11:16 rene ]
1.2629 security/vuxml/vuln.xml
Document vulnerabilities in www/chromium < 17.0.963.79
Security: CVE-2011-3047
Feature safe: yes
|
|
Sat, 10 Mar 2012
|
[ 01:47 eadler ]
1.2628 security/vuxml/vuln.xml
Fix formatting so that "make tidy" passes
Feature safe: yes
|
[ 01:45 eadler ]
1.2627 security/vuxml/vuln.xml
Document the latest flash player vulnerabilities
Reviewed by: nox
Feature safe: yes
|
|
Fri, 9 Mar 2012
|
[ 10:03 rene ]
1.2626 security/vuxml/vuln.xml
Mark chromium < 17.0.963.78 as vulnerable.
Security: CVE-2011-3046
Feature safe: yes
|
|
Wed, 7 Mar 2012
|
[ 18:44 lwhsu ]
1.2625 security/vuxml/vuln.xml
Document jenkins XSS vulnerability.
Submitted by: Gersom van de Bunt <gersom.vandebunt@pine.nl>
|
|
Mon, 5 Mar 2012
|
[ 18:16 rene ]
1.2624 security/vuxml/vuln.xml
Add new vulnerabilities for www/chromium < 17.0.963.65
Obtained from:
http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security: CVE-2011-[3031-3044]
|
|
Sun, 4 Mar 2012
|
[ 23:07 ak ]
1.2623 security/vuxml/vuln.xml
Document dropbear security issue
Approved by: eadler (mentor)
|
[ 01:00 wxs ]
1.2622 security/vuxml/vuln.xml
Whitespace cleanup and stick to ASCII in recent openx entry.
|
|
Fri, 2 Mar 2012
|
[ 21:32 jgh ]
1.2621 security/vuxml/vuln.xml
document latest openx security issue
PR: ports/165613
|
|
Tue, 28 Feb 2012
|
[ 19:19 crees ]
1.2620 security/vuxml/vuln.xml
Document latest PostgreSQL vulnerabilities
Security: http://www.postgresql.org/about/news/1377/
|
[ 00:09 eadler ]
1.2619 security/vuxml/vuln.xml
- Add information about make tidy checking now that it actually functions
- use ' instead of `
- add a note about ports-security
|
[ 00:04 eadler ]
1.2618 security/vuxml/vuln.xml
Document recent flash vulns
Reviewed by: nox
|
|
Mon, 27 Feb 2012
|
[ 23:49 eadler ]
1.2617 security/vuxml/vuln.xml
Pacify 'make tidy' and use valid XML.
While make diff against the tidy version a canconical test.
|
[ 23:10 kwm ]
1.2616 security/vuxml/vuln.xml
Add libxml2 vulnability.
PR: ports/164270
Submitted by: kj <b4039413@nwldx.com>
|
Number of commits found: 2715 (showing only 100 on this page) 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 » [Last Page] |