FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The last vuln.xml file processed by FreshPorts is:

Revision:  351541
Date:      2014-04-18
Time:      14:56:43Z
Committer: ohauer

List all Vulnerabilities, by package

List all Vulnerabilities, by date

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
ccd325d2-fa08-11d9-bc08-0001020eed82isc-dhcpd -- format string vulnerabilities

The ISC DHCP programs are vulnerable to several format string vulnerabilities which may allow a remote attacker to execute arbitrary code with the permissions of the DHCP programs, typically root for the DHCP server.


Discovery 2004-11-08
Entry 2005-07-23
isc-dhcp3-client
isc-dhcp3-devel
isc-dhcp3-relay
isc-dhcp3-server
isc-dhcp3
isc-dhcp
isc-dhcpd
lt 3.0.1

11591
448384
CVE-2004-1006
http://marc.theaimsgroup.com/?l=dhcp-announce&m=109996073218290
7a9d5dfe-c507-11d8-8898-000d6111a684isc-dhcp3-server buffer overflow in logging mechanism

A buffer overflow exists in the logging functionality of the DHCP daemon which could lead to Denial of Service attacks and has the potential to allow attackers to execute arbitrary code.


Discovery 2004-06-22
Entry 2004-06-25
Modified 2004-08-12
isc-dhcp3-relay
isc-dhcp3-server
ge 3.0.1.r12 lt 3.0.1.r14

CVE-2004-0460
http://www.osvdb.org/7237
TA04-174A
317350
http://www.securityfocus.com/archive/1/366801
http://www.securityfocus.com/archive/1/367286
7a9d5dfe-c507-11d8-8898-000d6111a684isc-dhcp3-server buffer overflow in logging mechanism

A buffer overflow exists in the logging functionality of the DHCP daemon which could lead to Denial of Service attacks and has the potential to allow attackers to execute arbitrary code.


Discovery 2004-06-22
Entry 2004-06-25
Modified 2004-08-12
isc-dhcp3-relay
isc-dhcp3-server
ge 3.0.1.r12 lt 3.0.1.r14

CVE-2004-0460
http://www.osvdb.org/7237
TA04-174A
317350
http://www.securityfocus.com/archive/1/366801
http://www.securityfocus.com/archive/1/367286
ccd325d2-fa08-11d9-bc08-0001020eed82isc-dhcpd -- format string vulnerabilities

The ISC DHCP programs are vulnerable to several format string vulnerabilities which may allow a remote attacker to execute arbitrary code with the permissions of the DHCP programs, typically root for the DHCP server.


Discovery 2004-11-08
Entry 2005-07-23
isc-dhcp3-client
isc-dhcp3-devel
isc-dhcp3-relay
isc-dhcp3-server
isc-dhcp3
isc-dhcp
isc-dhcpd
lt 3.0.1

11591
448384
CVE-2004-1006
http://marc.theaimsgroup.com/?l=dhcp-announce&m=109996073218290