notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)

/commits.php is going away

I'm proposing to take /commits.php away - it mainly duplicates the home page. Details in this GitHub issue.
Port details
vuxml Vulnerability and eXposure Markup Language DTD
1.1_5 security on this many watch lists=30 search for ports that depend on this port Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 1.1_5Version of this port present on the latest quarterly branch.
Maintainer: ports-secteam@FreeBSD.org search for ports maintained by this maintainer
Port Added: 2004-02-12 14:24:23
Last Update: 2021-10-20 17:59:37
Commit Hash: 07cb3b9
People watching this port, also watch:: gnupg, libxml2, curl, nmap, zip
Also Listed In: textproc
License: BSD2CLAUSE
Description:
SVNWeb : git
pkg-plist: as obtained via: make generate-plist
Expand this list (13 items)
Collapse this list.
  1. /usr/local/share/licenses/vuxml-1.1_5/catalog.mk
  2. /usr/local/share/licenses/vuxml-1.1_5/LICENSE
  3. /usr/local/share/licenses/vuxml-1.1_5/BSD2CLAUSE
  4. @xmlcatmgr share/xml/dtd/vuxml/catalog
  5. @xmlcatmgr share/xml/dtd/vuxml/catalog.xml
  6. share/xml/dtd/vuxml/vuxml-10.dtd
  7. share/xml/dtd/vuxml/vuxml-11.dtd
  8. share/xml/dtd/vuxml/vuxml-model-10.mod
  9. share/xml/dtd/vuxml/vuxml-model-11.mod
  10. share/xml/dtd/vuxml/xml1.dcl
  11. @owner
  12. @group
  13. @mode
Collapse this list.
Dependency lines:
  • vuxml>0:security/vuxml
To install the port: cd /usr/ports/security/vuxml/ && make install clean
To add the package, run one of these commands:
  • pkg install security/vuxml
  • pkg install vuxml
PKGNAME: vuxml
Flavors: there is no flavor information for this port.
distinfo:
Packages (timestamps in pop-ups are UTC):
vuxml
ABIlatestquarterly
FreeBSD:11:aarch641.1_31.1_4
FreeBSD:11:amd641.1_51.1_5
FreeBSD:11:armv61.1_21.1_4
FreeBSD:11:i3861.1_51.1_5
FreeBSD:11:mips--
FreeBSD:11:mips641.1_31.1_4
FreeBSD:12:aarch641.1_31.1_5
FreeBSD:12:amd641.1_51.1_5
FreeBSD:12:armv61.1_31.1_4
FreeBSD:12:armv71.1_31.1_4
FreeBSD:12:i3861.1_51.1_5
FreeBSD:12:mips--
FreeBSD:12:mips641.1_31.1_4
FreeBSD:12:powerpc64-1.1_5
FreeBSD:13:aarch641.1_51.1_5
FreeBSD:13:amd641.1_51.1_5
FreeBSD:13:armv61.1_51.1_5
FreeBSD:13:armv71.1_51.1_5
FreeBSD:13:i3861.1_51.1_5
FreeBSD:13:mips--
FreeBSD:13:mips64--
FreeBSD:13:powerpc641.1_51.1_5
FreeBSD:14:aarch641.1_5-
FreeBSD:14:amd641.1_5-
FreeBSD:14:armv61.1_5-
FreeBSD:14:armv71.1_5-
FreeBSD:14:i3861.1_5-
FreeBSD:14:mips--
FreeBSD:14:mips64--
FreeBSD:14:powerpc641.1_5-
 

Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Runtime dependencies:
  1. xmlcatmgr : textproc/xmlcatmgr
  2. xsltproc : textproc/libxslt
  3. VERSION : textproc/xhtml-modularization
  4. xhtml-basic10.dtd : textproc/xhtml-basic
  5. python3.8 : lang/python38
There are no ports dependent upon this port

Configuration Options:
Options name:

USES:

FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. http://www.vuxml.org/dtd/vuxml-1/
Collapse this list.

Number of commits found: 6450 (showing only 100 on this page)

[First Page]  «  1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11  »  [Last Page]

Commit History - (may be incomplete: see SVNWeb link above for full details)
DateByDescription
18 Jul 2021 21:27:11
 files touched by this commit commit hash:eeb94ec5a2b7b8199e78e396d032d0898ddc739e  1.1_5
ygy search for other commits by this committer
security/vuxml: Document vulnerabilities in www/gitea

PR:		257221
Approved by:	lwhsu (mentor)
18 Jul 2021 17:54:30
 files touched by this commit commit hash:88c66b779edb4dd7747115b98600a4ce535f66a0  1.1_5
sunpoet search for other commits by this committer
security/vuxml: Fix make validate after 069e58611c7933431ec82b0b9c119677e8d6cc21

Reported by:	lwhsu
Approved by:	delphij (ports-secteam)
16 Jul 2021 20:31:59
 files touched by this commit commit hash:a9bfed5dc704e5765b8b5d4dee2f8f8cb72bb495  1.1_5
rene search for other commits by this committer
security/vuxml: document chromium < 91.0.4472.164

Obtained
from:	https://chromereleases.googleblog.com/2021/07/stable-channel-update-for-desktop.html
14 Jul 2021 17:26:34
 files touched by this commit commit hash:743e73b1836a808e3dcd0ccf1af9a5f1d6955bfc  1.1_5
sunpoet search for other commits by this committer
security/vuxml: Document ruby vulnerability
14 Jul 2021 16:10:51
 files touched by this commit commit hash:069e58611c7933431ec82b0b9c119677e8d6cc21  1.1_5
sunpoet search for other commits by this committer
security/vuxml: Fix make test

- Respect VUXML_FILE and VUXML_FLAT_FILE [1]
  It allows run "make test" on read-only media (e.g. poudriere jail)
- Copy all vuln XML file to the test directory [2]
  Since vuln.xml has been split into multiple XML files, all of them must be
copied to the test directory.

Without [1], the error message is as follows:
===>  Testing for vuxml-1.1_5
xmllint -noent vuln.xml > vuln-flat.xml
/bin/sh: cannot create vuln-flat.xml: Read-only file system
*** Error code 2
Stop.

Without [2], the error message is as follows:
(Only the first 15 lines of the commit message are shown above View all of this commit message)
13 Jul 2021 12:01:52
 files touched by this commit commit hash:ea4ec27ac98d25b0d077fba948a1e900da3f606d  1.1_5
dmgk search for other commits by this committer
security/vuxml: Document lang/go vulnerability
10 Jul 2021 12:51:01
 files touched by this commit commit hash:c57c61c1215a844e149bc064660734de05c1c888  1.1_5
riggs search for other commits by this committer
security/vuxml: Document vulnerabilities in databases/mantis

PR:		257068
Reported by:	Zoltan ALEXANDERSON BESSE <zab@zltech.eu>
08 Jul 2021 06:49:57
 files touched by this commit commit hash:c7ecdccd9607f5d91df72a90eb65e34f83bf6dfc  1.1_5
mfechner search for other commits by this committer
security/vuxml: Document gitlab vulnerability
04 Jul 2021 20:55:52
 files touched by this commit commit hash:0e1cf83190b530cb73a9c086a4a2ca1d30776996  1.1_5
tcberner search for other commits by this committer
security/vuxml: document vulnerabilities in graphics/exiv2

PR:	256803
03 Jul 2021 05:01:44
 files touched by this commit commit hash:4ec25bf2bc66bfb5397f2f811d9046aab1d853d8  1.1_5
mandree search for other commits by this committer
security/vuxml: document openexr < 3.0.5 vulns

Security:	f2596f27-db4c-11eb-8bc6-c556d71493c9
02 Jul 2021 07:34:26
 files touched by this commit commit hash:b659a4b77f207ce6d4c44b66bf34923433e69ca4  1.1_5
mfechner search for other commits by this committer
security/vuxml: Documented gitlab vulnerabilities.
01 Jul 2021 07:30:09
 files touched by this commit commit hash:72458a2a824c29e3f5a1c07208522a9c49573235  1.1_5
lwhsu search for other commits by this committer
security/vuxml: Let vuln-flat.xml depend on all vuln xml files

So it can get rebuilt when any of vuln xml file changed.

Approved by:	ports-secteam (fluffy, implicitly)
01 Jul 2021 07:28:36
 files touched by this commit commit hash:d68a6ab853630dc058f4fd736e05046d4d166b5e  1.1_5
lwhsu search for other commits by this committer
security/vuxml: Document Jenkins Security Advisory 2021-06-30

Sponsored by:	The FreeBSD Foundation
30 Jun 2021 15:39:09
 files touched by this commit commit hash:73672272c088638676090ca6d2ef53bb91d54df3  1.1_5
otis search for other commits by this committer
security/vuxml: Fix dovecot entry

Fix stray ">" character in a CVE URL.
28 Jun 2021 15:01:36
 files touched by this commit commit hash:2c264eb052ae9177293b608fed7cceb9320bc747  1.1_5
dch search for other commits by this committer
security/vuxml: Add net/rabbitmq CVE-2021-22116 DoS vuln

Security:	CVE-2021-22116
Sponsored by:	SkunkWerks, GmbH
28 Jun 2021 15:01:36
 files touched by this commit commit hash:3ad8c34a571920724d5b47b5b5b22108bdc7455d  1.1_5
dch search for other commits by this committer
security/vuxml: Pet rabbitmq-c entry

make clean validate failed after rebased commit
fix package name error and indentation issues
28 Jun 2021 15:01:36
 files touched by this commit commit hash:69c471ebe0077879c98fb2d66ada7d414dbac592  1.1_5
dch search for other commits by this committer
security/vuxml: Pet puppetdb entry

make clean validate reports a missing stanza
25 Jun 2021 20:46:55
 files touched by this commit commit hash:ac3da0e9b9766f2a2e45824519b54f21b9af7112  1.1_5
dch search for other commits by this committer
security/vuxml:  add entry for net/rabbitmq-c

Sponsored by:   SkunkWerks, GmbH
Security:       CVE-2019-18609
Differential Revision: https://reviews.freebsd.org/D30906
25 Jun 2021 20:03:01
 files touched by this commit commit hash:6f1af3996fe5db1d0509eead3c7cb612060fb973  1.1_5
romain search for other commits by this committer
security/vuxml: Document CVE-2021-27021
25 Jun 2021 17:13:18
 files touched by this commit commit hash:83d998b46c103fff8750466bbac773a8b0297b44  1.1_5
0mp search for other commits by this committer
security/vuxml: Add another package for CVE-2021-3583

Also, fix a copy-paste error. py*-ansible-base are listed twice. The
second entry should list py*-ansible instead.
25 Jun 2021 14:27:15
 files touched by this commit commit hash:73c32ab8aecb03224f406a79958ac5e3811790b4  1.1_5
0mp search for other commits by this committer
security/vuxml: Update Ansible's CVE-2021-3583

It turns out that it affects not only ansible-core, but also some other
ports.
24 Jun 2021 18:50:15
 files touched by this commit commit hash:8801eee4e75edcbb9a2e37304d424d0d2b54558c  1.1_5
otis search for other commits by this committer
security/vuxml: Fix mail/dovecot-pigeonhole vulnerable versions

Correct mail/dovecot-pigeonhole vulnerable versions to proper value.
24 Jun 2021 10:30:56
 files touched by this commit commit hash:46119dd553f18833b20a76623029a24dd4948c58  1.1_5
lwhsu search for other commits by this committer
security/vuxml: Fix CVS name for vid e4cd0b38-c9f9-11eb-87e1-08002750c711

This should fix vuxml.org build.

PR:		256789
24 Jun 2021 10:03:43
 files touched by this commit commit hash:9f71f97163833d903bbf94c5e15434c9f3b4ece1  1.1_5
lwhsu search for other commits by this committer
security/vuxml: Update the doc link and the comment of where to add new entry

Approved by:	ports-secteam (implicitly)
24 Jun 2021 09:59:09
 files touched by this commit commit hash:9db99765e3c443cfe7f59a0c5adfdd46a4380804  1.1_5
0mp search for other commits by this committer
security/vuxml: Document sysutils/py-ansible-core vulnerability

Security:	CVE-2021-3583
23 Jun 2021 18:21:56
 files touched by this commit commit hash:21c57a3d9854730f915fe2a45f4e0e5b66e99c94  1.1_5
lwhsu search for other commits by this committer
security/vuxml: Fix `make validate` to use the latest vuxml file

This is a follow up for 6954792fe916862afd25cf6ce961bd7062dfb21f

Approved by:	ports-secteam (fluffy)
23 Jun 2021 14:34:34
 files touched by this commit commit hash:6954792fe916862afd25cf6ce961bd7062dfb21f  1.1_5
lwhsu search for other commits by this committer
security/vuxml: Create 2021 entity

Let's create a new entity in the beginning of each year and append to it,
instead of massive copying in the end of each year.
23 Jun 2021 10:00:10
 files touched by this commit commit hash:f3e4dbcb5ff2fe2a018f78f396a4247f1dd32cc9  1.1_5
lwhsu search for other commits by this committer
security/vuxml: Fix version range of www/py-aiohttp

This also marks 3.7.4.p0 as fixed.

PR:	256219
22 Jun 2021 16:14:41
 files touched by this commit commit hash:a7e91b4a2f898dba97d195a0ed946b7f70240112  1.1_5
otis search for other commits by this committer
security/vuxml: Document mail/dovecot-pigeonhole vulnerability
22 Jun 2021 16:14:41
 files touched by this commit commit hash:235ae8796642ebb88cee237620c61e4f4e911aed  1.1_5
otis search for other commits by this committer
security/vuxml: Document mail/dovecot vulnerabilities
21 Jun 2021 20:34:11
 files touched by this commit commit hash:c2a2f2b35ad4a23486bd9c1b4ccb50bb5eb75bbc  1.1_5
brd search for other commits by this committer
security/vuxml: Fix range for www/nginx CVE-2021-23017

Reviewed by:	garga
Sponsored by:	Rubicon Communications, LLC ("Netgate")
21 Jun 2021 16:20:13
 files touched by this commit commit hash:9dc61dc24711b7ffab85e219ac0bcb831005d85d  1.1_5
dbaio search for other commits by this committer
security/vuxml: Fix 'make validate'

While here, remove hyperlinks to simplify, they can be accessed through
the report's url.
20 Jun 2021 01:31:15
 files touched by this commit commit hash:f7a5ae58011b7bbd155c53e071412155f0893d7f  1.1_5
adamw search for other commits by this committer
security/vuxml: Add entry for gitea < 1.14.3

PR:		256720
18 Jun 2021 11:01:23
 files touched by this commit commit hash:fd3ddcabac2eaa421903819697de73add5f71930  1.1_5
rene search for other commits by this committer
security/vuxml: Add www/chromium < 91.0.4472.114

Obtained
from:	https://chromereleases.googleblog.com/2021/06/stable-channel-update-for-desktop_17.html
15 Jun 2021 15:48:20
 files touched by this commit commit hash:bfa25459fcfaf5bcb4803ff598d72208fd920580  1.1_5
kbowling search for other commits by this committer
security/vuxml: Document CVE-2021-29376 for irc/ircII

PR:		255492
Reported by:	Andrew Gierth <andrew@tao11.riddles.org.uk>
14 Jun 2021 07:15:01
 files touched by this commit commit hash:029ca9d69fdb1711bbb9b29ea017ab8055549989  1.1_5
brnrd search for other commits by this committer
security/vuxml: Document Apache httpd vulns
11 Jun 2021 10:50:26
 files touched by this commit commit hash:8c237a296c41c802eb47371f94d5e88ea250ca33  1.1_5
amdmi3 search for other commits by this committer
security/vuxml: document CVE-2021-33564 for rubygem-dragonfly
10 Jun 2021 14:37:05
 files touched by this commit commit hash:c7737d4b2e5d96b01ebc3034bdef1216456cd07d  1.1_5
rodrigo search for other commits by this committer
security/vuxml: Document CVE-2020-35701 for net-mgmt/cacti
10 Jun 2021 11:37:46
 files touched by this commit commit hash:e3a211b95d93ae9ebae769c8b9ba5095b0fe5b21  1.1_5
rene search for other commits by this committer
security/vuxml: add Chromium < 91.0.4472.101

Obtained
from:	https://chromereleases.googleblog.com/2021/06/stable-channel-update-for-desktop.html
08 Jun 2021 19:30:08
 files touched by this commit commit hash:4d177318cb45c368c213f4e155ee23f16d921789  1.1_5
ashish search for other commits by this committer
security/vuxml: Document CVE-2021-33896 in net-im/dino port
06 Jun 2021 20:48:56
 files touched by this commit commit hash:ef3b8b2cfe595e9d2ade55206497199382ef6046  1.1_5
matthew search for other commits by this committer
security/vuxml: Document CVE-2021-3515 for databases/pglogical

A shell injection flaw was found in pglogical in versions before 2.3.4
and before 3.6.26. An attacker with CREATEDB privileges on a
PostgreSQL server can craft a database name that allows execution of
shell commands as the postgresql user when calling
pglogical.create_subscription().
06 Jun 2021 08:48:40
 files touched by this commit commit hash:daffeee5e909fad7c384d2ab5f759472db1e6c75  1.1_5
pi search for other commits by this committer
security/vuxml: add www/drupal7 CVE
04 Jun 2021 18:29:52
 files touched by this commit commit hash:0958ffc12c9c0bba44f9a1adc0ca5173d7cd8bf9  1.1_5
tcberner search for other commits by this committer
security/vuxml: document vulnerability in sysutils/polkit

Cedric Buissart reports:

	The function `polkit_system_bus_name_get_creds_sync` is used to get the
	uid and pid of the process requesting the action. It does this by
	sending the unique bus name of the requesting process, which is
	typically something like ":1.96", to `dbus-daemon`. These unique names
	are assigned and managed by `dbus-daemon` and cannot be forged, so this
	is a good way to check the privileges of the requesting process.

	The vulnerability happens when the requesting process disconnects from
	`dbus-daemon` just before the call to
	`polkit_system_bus_name_get_creds_sync` starts. In this scenario, the
	unique bus name is no longer valid, so `dbus-daemon` sends back an error
(Only the first 15 lines of the commit message are shown above View all of this commit message)
04 Jun 2021 09:59:47
 files touched by this commit commit hash:44ca7573855d48957714ccbe1e0849617ac18915  1.1_5
riggs search for other commits by this committer
security/vuxml: Document CVE-2021-33054 for www/sogo*.

PR:		256374
Reported by:	rob2g2 <spam123@bitbert.com>
04 Jun 2021 09:38:47
 files touched by this commit commit hash:a64c3e0ebe0c6b62e95e07d28eea2d0fad4525b8  1.1_5
fernape search for other commits by this committer
security/vuxml: Add CVE-2020-8492 for lang/tauthon

PR: 256387
Reported by:	olivier.freebsd@free.fr
04 Jun 2021 09:32:50
 files touched by this commit commit hash:df775d9b0750551c46c5f344faa1e8789bbad071  1.1_5
riggs search for other commits by this committer
security/vuxml: Document CVE-2021-28091 for security/lasso.

PR:		256373
Reported by:	spam123@bitbert.com
03 Jun 2021 23:17:28
 files touched by this commit commit hash:597614c7aa35a47ce2f5e909aa2c66055ed89e3a  1.1_5
dmgk search for other commits by this committer
security/vuxml: Document lang/go vulnerabilities
03 Jun 2021 11:26:09
 files touched by this commit commit hash:35af594b7bc172468bc41af66cc26faae91758fb  1.1_5
amdmi3 search for other commits by this committer
security/vuxml: document aiohttp CVE-2021-21330
02 Jun 2021 23:53:02
 files touched by this commit commit hash:29ff3797d89eb84c5d40bb59ba2b9f8998287b64  1.1_5
leres search for other commits by this committer
security/vuxml: Mark zeek < 4.0.2 as vulnerable as per:

    https://github.com/zeek/zeek/releases/tag/v4.0.2

 - Fix potential Undefined Behavior in decode_netbios_name() and
   decode_netbios_name_type() BIFs. The latter has a possibility
   of a remote heap-buffer-overread, making this a potential DoS
   vulnerability.

 - Add some extra length checking when parsing mobile ipv6 packets.
   Due to the possibility of reading invalid headers from remote
   sources, this is a potential DoS vulnerability.
02 Jun 2021 18:41:43
 files touched by this commit commit hash:2acbd03da0c12f63b77be9348b7f1d662322cc7d  1.1_5
amdmi3 search for other commits by this committer
security/vuxml: add entry for PyYAML CVE-2020-14343

PR:		256220
02 Jun 2021 13:48:26
 files touched by this commit commit hash:72a5d3cd59a6a858cb043cf67579dd1621676300  1.1_5
zi search for other commits by this committer
security/vuxml: Fix overly large entry that violates 'make validate'
02 Jun 2021 13:48:26
 files touched by this commit commit hash:687785a86a755feb934a5e7eb1d902c4431ce0ad  1.1_5
zi search for other commits by this committer
security/vuxml: Document isc-dhcp44-* vulnerability

PR:		256377
01 Jun 2021 22:37:21
 files touched by this commit commit hash:ddf691df64ce12d2b147348bb3055eaa0235d426  1.1_5
mfechner search for other commits by this committer
security/vuxml: Document gitlab vulnerabilities.
01 Jun 2021 16:59:21
 files touched by this commit commit hash:6e4e87484e5fa0bafb115be2207ffcf4be8f4606  1.1_5
jkim search for other commits by this committer
security/vuxml: Correct CVE entry for the x11/libX11 vulnerability
01 Jun 2021 15:35:26
 files touched by this commit commit hash:ae21649ab74532ad61cb080c8c5d36f17d13ea73  1.1_5
osa search for other commits by this committer
security/vuxml: document vulnerability in databases/redis

Security:	CVE-2021-32625
01 Jun 2021 15:13:05
 files touched by this commit commit hash:51990d40050a8fb47d2296d87f205423613f0707  1.1_5
jkim search for other commits by this committer
security/vuxml: Document vulnerability in x11/libX11

PR:		256034
Security:	CVE-2021-31535
01 Jun 2021 03:02:51
 files touched by this commit commit hash:6890a3c0b215c66ee4ac27745dc8caee73dda7f8  1.1_5
ygy search for other commits by this committer
security/vuxml: Document vulnerability in net-mgmt/prometheus2

PR:		255976
Security:	CVE-2021-29622
Approved by:	lwhsu (mentor)
31 May 2021 20:55:37
 files touched by this commit commit hash:0bd31cd6df4e2110846ea19edd591fdd34e3e15d  1.1_5
adridg search for other commits by this committer
security/vuxml: Document graphics/wayland <= 1.19.0
27 May 2021 05:17:36
 files touched by this commit commit hash:bbd2f19ba54f58a026d153272a2dfced70a6bb87  1.1_5
philip search for other commits by this committer
security/vuxml: add FreeBSD SA-21:12.libradius
27 May 2021 05:17:36
 files touched by this commit commit hash:23f6f30d5c54472a4039759ebb031ea4518b8c0b  1.1_5
philip search for other commits by this committer
security/vuxml: add FreeBSD SA-21:11.smap
26 May 2021 10:17:39
 files touched by this commit commit hash:05bea260baec460d64150f2d581fe6749c7cd70b  1.1_5
rene search for other commits by this committer
vuln.xml: Document chromium < 91.0.4472.77

Obtained
from:	https://chromereleases.googleblog.com/2021/05/stable-channel-update-for-desktop_25.html
26 May 2021 00:33:57
 files touched by this commit commit hash:b48ef2625f60a360d0c7618d1650a7dd9155b89b  1.1_5
dbaio search for other commits by this committer
security/vuxml: Document net/libzmq4 issues

PR:		255102
Reported by:	Thomas Petig <thomas@petig.eu>
Security:	CVE-2019-13132
Security:	CVE-2020-15166
25 May 2021 15:40:21
 files touched by this commit commit hash:1109a4b0c62848f107f03195e7b92480b77769c1  1.1_5
osa search for other commits by this committer
security/vuxml: document vulnerability in www/nginx and www/nginx-devel

Security:	CVE-2021-23017
24 May 2021 15:57:00
 files touched by this commit commit hash:4132a67c6395dd389c143a51fe518eccb3562cee  1.1_5
girgen search for other commits by this committer
databases/pg_partman: arbitrary code execution

Security:	CVE-2021-33204
24 May 2021 15:02:45
 files touched by this commit commit hash:4ff544422ffe21f039595fc312b2e4bff39a705c  1.1_5
tcberner search for other commits by this committer
security/vuxml: document vulnerability in texptroc/expat2

Security:	CVE-2013-0340
PR: 		256121
23 May 2021 14:44:41
 files touched by this commit commit hash:d4a41873b303f4097db1fb304c15e5c7d038391d  1.1_5
tcberner search for other commits by this committer
security/vuxml: document vulnerability in texptroc/libxml2

PR:		256093
Security:	CVE-2021-3541
17 May 2021 15:11:08
 files touched by this commit commit hash:1e3fa6237af2f0e146f78080d5ae37cfc6c9dec0  1.1_5
0mp search for other commits by this committer
security/vuxml: Add example cvename tag to template

Reviewed by:	riggs
Approved by:	riggs (ports secteam)
Differential Revision:  https://reviews.freebsd.org/D30231
15 May 2021 09:12:15
 files touched by this commit commit hash:41060618343864d958bac8d10ff4dd39b398b3a3  1.1_5
girgen search for other commits by this committer
databases/postgresql??-server: multiple security issues
13 May 2021 19:44:55
 files touched by this commit commit hash:b1a6389106ec82ccd66ab4f92f604f57e1843b11  1.1_5
nc search for other commits by this committer
security/vuxml: Add entry for net-im/prosody

PR:	255845, 255849
13 May 2021 14:43:16
 files touched by this commit commit hash:e34fc76d33306c0a9b886728887f4b43692825dc  1.1_5
thierry search for other commits by this committer
security/vuxml: declare vulnerabilities for ImageMagick6

PR:		255818
13 May 2021 14:43:16
 files touched by this commit commit hash:0e7c332de8bbd7100f615c8b07569925f6a2e42c  1.1_5
thierry search for other commits by this committer
security/vuxml: declare vulnerabilities for ImageMagick7

PR:		255802
12 May 2021 10:09:17
 files touched by this commit commit hash:b1fa93c1a77c2d06b6c80cd4dc4ec6105e2f06d8  1.1_5
thierry search for other commits by this committer
security/vuxml: add vunerabilities fixed in 8.2.0

PR:		255361
11 May 2021 18:11:58
 files touched by this commit commit hash:8a46088e42ea23088057e5597de37a7db3f87496  1.1_5
rene search for other commits by this committer
Document vulnerabilities in Chromium < 90.0.4430.212

Obtained
from:	https://chromereleases.googleblog.com/2021/05/stable-channel-update-for-desktop.html
11 May 2021 15:19:59
 files touched by this commit commit hash:d110fd22b0220d9920ab6c2ff331a697f9d603f6  1.1_5
nc search for other commits by this committer
security/vuxml: Add entry for net-im/py-matrix-synapse
10 May 2021 12:35:14
 files touched by this commit commit hash:ca2859597c061cc09e5b1feb2cd4812abac8f468  1.1_5
ume search for other commits by this committer
security/vuxml: cyrus-imapd -- Remote authenticated users could bypass intended
access restrictions on c\ertain server annotations.
08 May 2021 16:03:23
 files touched by this commit commit hash:11845a30ff2383ce2de5568c3b02278e980fc0a1  1.1_5
naddy search for other commits by this committer
security/vuxml: Document FLAC out-of-bounds read
08 May 2021 09:33:44
 files touched by this commit commit hash:487828600d153ea9347fafb6338bf742e8fe8aeb  1.1_5
mandree search for other commits by this committer
security/vuxml: add CVE #s for OpenEXR 2.5.4 fixes
07 May 2021 09:52:53
 files touched by this commit commit hash:066d3dbe5cca34958c37627ee2a0363f118d2ecd  1.1_5
sunpoet search for other commits by this committer
security/vuxml: Document rails vulnerability
06 May 2021 20:12:51
 files touched by this commit commit hash:bf7bd67c9b107d54328577a2e71b467090b180c4  1.1_5
dmgk search for other commits by this committer
security/vuxml: Document lang/go vulnerability
05 May 2021 08:39:44
 files touched by this commit commit hash:56db8443c94a9784fdc9d3b6d58eacf16fc14c60  1.1_5
0mp search for other commits by this committer
security/vuxml: Document Ansible vulnerability
05 May 2021 07:05:58
 files touched by this commit commit hash:f468496e18bf89a76f96495c0a382cacb29b7b52  1.1_5
wen search for other commits by this committer
security/vuxml : Document django's multiple vulnerabilities
05 May 2021 03:39:35
 files touched by this commit commit hash:1388ee6c4cbebc0c6285ce0973a2e5be0632855e  1.1_5
wen search for other commits by this committer
Document Python's multiple vulnerabilities
04 May 2021 14:26:23
 files touched by this commit commit hash:ebf298637d17a99676d2bf535fd5ebfa41ae152b  1.1_5
brnrd search for other commits by this committer
security/vuxml: Update latest MySQL vuln entry

 * Adds CVE numbers
 * Mark MariaDB partially affected
03 May 2021 21:44:51
 files touched by this commit commit hash:f7743680c102e31388b1ea20a58dcded671a8746  1.1_5
osa search for other commits by this committer
security/vuxml: document recent vulnerabilities with redis ports.
PR:	255580
03 May 2021 13:59:52
 files touched by this commit commit hash:4689236288cc83f50bf133cd253dcc58ce61ad54  1.1_5
meta search for other commits by this committer
security/vuxml: Document command injection vulnerability in RDoc

PR:		255552
Reported by:	Yasuhiro Kimura <yasu@utahime.org>
Security:	CVE-2021-31799
02 May 2021 12:59:33
 files touched by this commit commit hash:5271faba4b2a2f9f28a3d84dcc7342442452d9b4  1.1_5
pi search for other commits by this committer
security/vuxml: add mail/sympa CVE

PR:		252464
01 May 2021 01:25:40
 files touched by this commit commit hash:265e9a670c90ee806226bdf152df954d5f5b5898  1.1_5
timur search for other commits by this committer
Add an entry about Samba vulnerability CVE-2021-20254:

Negative idmap cache entries can cause incorrect group entries in the Samba file
server process token.

PR:
Submitted by:
Reported by:
Reviewed by:
Approved by:
Obtained from:
MFC after:
MFH:
Relnotes:
Security:	CVE-2021-20254
Sponsored by:
Differential Revision:
29 Apr 2021 23:00:45
 files touched by this commit commit hash:4eea2e58a13352a2ca56b9ec2c40d48072cb0d1f  1.1_5
truckman search for other commits by this committer
security/vuxml: Update fixed version of openoffice-devel.

CVE-2021-30245 is fixed in version 1619649022 of
editors/openoffice-devel.
28 Apr 2021 21:57:39
 files touched by this commit commit hash:199adc301bbcbef519f19845dbd3d4da5295c53e  1.1_5
mfechner search for other commits by this committer
Document gitlab-ce vulnerabilities.
28 Apr 2021 21:57:38
 files touched by this commit commit hash:41ffee85fee36c10e56d70882db7f212b462560f  1.1_5
mfechner search for other commits by this committer
Document vulnerabilities for www/rubygem-carrierwave.
28 Apr 2021 16:56:22
 files touched by this commit commit hash:10ad22f83cf7c9a495f3f04c822e2b63ee580215  1.1_5
nc search for other commits by this committer
mail/sympa: add vuxml entry

PR:		255455
Submitted by:	Geoffroy Desvernay <dgeo@centrale-marseille.fr> (maintainer)
27 Apr 2021 17:11:58
 files touched by this commit commit hash:1eeb9f4c46a0c635789fcc83ccc7ea9a9478022e  1.1_5
rene search for other commits by this committer
Document new vulns, www/chromium < 90.0.4430.93

Obtained
from:	https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_26.html
26 Apr 2021 13:30:52
 files touched by this commit commit hash:7e0f5d9dfdc256ae93158afcc75292f4d42c3a93  1.1_5
girgen search for other commits by this committer
security/shibboleth.sp: add more information to security advisory
26 Apr 2021 08:36:36
 files touched by this commit commit hash:f0d60c47251226f5679aa2a1c06cafc36ce979d3  1.1_5
girgen search for other commits by this committer
security/shibboleth-sp: add entry for upcoming vulnerability

The details are not yet disclosed.
21 Apr 2021 21:40:41
 files touched by this commit commit hash:53d0f5e5bcd4f652fdb8f2b4d0b0e2b03e2526d1  1.1_5
leres search for other commits by this committer
security/vuxml: Mark zeek < 4.0.1 as vulnerable as per:

    https://github.com/zeek/zeek/releases/tag/v4.0.1

Fix null-pointer dereference when encountering an invalid enum name
in a config/input file that tries to read it into a set[enum]. For
those that have such an input feed whose contents may come from
external/remote sources, this is a potential DoS vulnerability.
21 Apr 2021 17:48:54
 files touched by this commit commit hash:d1184f27e5473ca66cb58643eefb5eec8f9a8f07  1.1_5
mandree search for other commits by this committer
security/vuxml: add devel/openvpn < 2.5.2 entry

Security:	CVE-2020-15078
Security:	efb965be-a2c0-11eb-8956-1951a8617e30
21 Apr 2021 08:11:40
 files touched by this commit commit hash:d70c998cc6e35b952db804a966810e4c0623be8d  1.1_5
rene search for other commits by this committer
Document new vulnerabilities in www/chromium < 90.0.4430.85

Obtained
from:	https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_20.html
20 Apr 2021 19:28:14
 files touched by this commit commit hash:c55e97c0f341dd40a9360334e6d615e0f98cf85f  1.1_5
bdrewery search for other commits by this committer
Another openssh version fix for CVE-2021-28041.

Reported by:	leres
20 Apr 2021 19:26:54
 files touched by this commit commit hash:87da0092a49ead1ae480c19dbf76bea6e3996202  1.1_5
lwhsu search for other commits by this committer
Document Jenkins Security Advisory 2021-04-20

Sponsored by:	The FreeBSD Foundation
20 Apr 2021 15:37:57
 files touched by this commit commit hash:da89336b8dd885b50dd9994c56f731362270ce64  1.1_5
bdrewery search for other commits by this committer
Fix openssh version in entry for CVE-2021-28041

Reported by:	leres

Number of commits found: 6450 (showing only 100 on this page)

[First Page]  «  1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11  »  [Last Page]