notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine
I started running short on disk space for the non-production FreshPorts hosts. This time, I have decided to ask for donations. See my recent blog post which points to my Patreon account.
There is a known issue with processing of security/vuxml data. As a results, the "Lastest Vulnerabilities" box is out of date and new entries after 2025-Sep-02 are not shown.
Port details
vuxml Vulnerability and eXposure Markup Language DTD
1.1_6 security on this many watch lists=33 search for ports that depend on this port Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 1.1_6Version of this port present on the latest quarterly branch.
Maintainer: ports-secteam@FreeBSD.org search for ports maintained by this maintainer
Port Added: 2004-02-12 14:24:23
Last Update: 2025-09-05 14:46:52
Commit Hash: b3399ce
People watching this port, also watch:: gnupg, libxml2, nmap, postfix, curl
Also Listed In: textproc
License: BSD2CLAUSE
WWW:
https://vuxml.freebsd.org/
Description:
VuXML (the Vulnerability and eXposure Markup Language) is an XML application for documenting security bugs and corrections within a software package collection such as the FreeBSD Ports Collection. This port installs the DTDs required for validating VuXML documents.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (13 items)
Collapse this list.
  1. /usr/local/share/licenses/vuxml-1.1_6/catalog.mk
  2. /usr/local/share/licenses/vuxml-1.1_6/LICENSE
  3. /usr/local/share/licenses/vuxml-1.1_6/BSD2CLAUSE
  4. @xmlcatmgr share/xml/dtd/vuxml/catalog
  5. @xmlcatmgr share/xml/dtd/vuxml/catalog.xml
  6. share/xml/dtd/vuxml/vuxml-10.dtd
  7. share/xml/dtd/vuxml/vuxml-11.dtd
  8. share/xml/dtd/vuxml/vuxml-model-10.mod
  9. share/xml/dtd/vuxml/vuxml-model-11.mod
  10. share/xml/dtd/vuxml/xml1.dcl
  11. @owner
  12. @group
  13. @mode
Collapse this list.
USE_RC_SUBR (Service Scripts)
  • no SUBR information found for this port
Dependency lines:
  • vuxml>0:security/vuxml
To install the port:
cd /usr/ports/security/vuxml/ && make install clean
To add the package, run one of these commands:
  • pkg install security/vuxml
  • pkg install vuxml
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: vuxml
Flavors: there is no flavor information for this port.
distinfo:
SHA256 (vuxml/vuxml-10.dtd) = 6a635ad2cf45f52361c8c2a29a689157fad4d00519045485bc822d34e04a524e SIZE (vuxml/vuxml-10.dtd) = 2986 SHA256 (vuxml/vuxml-model-10.mod) = 051fed00b52bedde8ee901003fc29f7b95cd904157e31ceef34e6b06f2d1a14a

Expand this list (11 items)

Collapse this list.

SIZE (vuxml/vuxml-model-10.mod) = 10599 SHA256 (vuxml/vuxml-11.dtd) = 12b50061d7bb34cecffede2e08d439e4469324376d55aeb7c73eb6aab0f36af1 SIZE (vuxml/vuxml-11.dtd) = 3063 SHA256 (vuxml/vuxml-model-11.mod) = a40777208625a3029c6f416aeeea733f614802a6a5f26035a4e445a09e61a47c SIZE (vuxml/vuxml-model-11.mod) = 13282 SHA256 (vuxml/xml1.dcl) = 343efa94c4e1302e85e08b2d1791d86e50aac1ecdbc3161daecac100e4726847 SIZE (vuxml/xml1.dcl) = 7372 SHA256 (vuxml/catalog) = 479a69cf02995603443fd1f3b5b33f97811670931f87f53be99a727d664abc66 SIZE (vuxml/catalog) = 549 SHA256 (vuxml/catalog.xml) = 7b2e2850f57264eeba0ccd3d1fc161b9d5ce3071ae0ec51b9da7fa956f2a6509 SIZE (vuxml/catalog.xml) = 2150

Collapse this list.


Packages (timestamps in pop-ups are UTC):
vuxml
ABIaarch64amd64armv6armv7i386powerpcpowerpc64powerpc64le
FreeBSD:13:latest1.1_61.1_61.1_51.1_61.1_6-1.1_5-
FreeBSD:13:quarterly1.1_61.1_61.1_61.1_61.1_61.1_61.1_61.1_6
FreeBSD:14:latest1.1_61.1_61.1_61.1_61.1_61.1_6-1.1_6
FreeBSD:14:quarterly1.1_61.1_6-1.1_61.1_61.1_61.1_61.1_6
FreeBSD:15:latest-1.1_6n/a1.1_6n/a1.1_61.1_61.1_6
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Runtime dependencies:
  1. xmlcatmgr : textproc/xmlcatmgr
  2. xsltproc : textproc/libxslt
  3. VERSION : textproc/xhtml-modularization
  4. xhtml-basic10.dtd : textproc/xhtml-basic
  5. python3.11 : lang/python311
There are no ports dependent upon this port

Configuration Options:
No options to configure
Options name:
security_vuxml
USES:
python:run
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. http://www.vuxml.org/dtd/vuxml-1/
Collapse this list.

Number of commits found: 7726 (showing only 100 on this page)

[First Page]  «  29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37 | 38 | 39  »  [Last Page]

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
1.1_3
21 Aug 2016 19:12:35
Revision:420578Original commit files touched by this commit
kwm search for other commits by this committer
Document fontconfig insufficiently cache file validation

Security:	CVE-2016-5384
1.1_3
19 Aug 2016 15:05:35
Revision:420474Original commit files touched by this commit
feld search for other commits by this committer
Fix ruby version range which was missing the important portepoch

Add postgres and mysql to the EoL port list

PR:		211975
1.1_3
19 Aug 2016 14:02:11
Revision:420470Original commit files touched by this commit
feld search for other commits by this committer
Fix PKGNAME matching for old ruby in vuxml

PR:		211975
1.1_3
19 Aug 2016 13:01:25
Revision:420460Original commit files touched by this commit
mat search for other commits by this committer
Fixup Perl package names in the EoL vuln.

Sponsored by:	Absolight
1.1_3
18 Aug 2016 22:27:48
Revision:420427Original commit files touched by this commit
jgh search for other commits by this committer
unbreak build (validation and tests pass)

Reported by:	feld
With hat:	ports-secteam
1.1_3
18 Aug 2016 21:44:35
Revision:420425Original commit files touched by this commit
feld search for other commits by this committer
Add a number of old expired and End of Life ports to vuxml

PR:		211975
1.1_3
18 Aug 2016 19:22:47
Revision:420419Original commit files touched by this commit
jkim search for other commits by this committer
Fix CVE name for security/gnupg and security/libgcrypt.  There was a typo in
the official release announcement.
1.1_3
18 Aug 2016 00:41:25
Revision:420376Original commit files touched by this commit
kuriyama search for other commits by this committer
Register recent gnupg1/libgcrypt vuln.
1.1_3
17 Aug 2016 11:02:43
Revision:420331Original commit files touched by this commit
matthew search for other commits by this committer
Document 26 new security advisories from phpmadmin.  Some of these are
described as 'critical'.
1.1_3
15 Aug 2016 09:26:54
Revision:420219Original commit files touched by this commit
mat search for other commits by this committer
Note where the XSLoader thing is being fixed in Perl 5.18 and 5.20.

Sponsored by:	Absolight
1.1_3
15 Aug 2016 04:18:36
Revision:420213Original commit files touched by this commit
koobs search for other commits by this committer
security/vuxml: Fix/Improve a few entry titles (<topic)

 - TeamSpeak 3 Server: Use standard "Product -- Description" title format
 - TeamSpeak 3 Server: Include RCE in title so people dont miss it. Importante.
 - puppet-agent MCollective: Remove duplicate name in title, use software name
 - FreeBSD ntp entry: Fix grammo
1.1_3
14 Aug 2016 22:19:31
Revision:420201Original commit files touched by this commit
pi search for other commits by this committer
audio/teamspeak3-server: Document remote code execution

PR:		211846
Security:	http://seclists.org/fulldisclosure/2016/Aug/61
Submitted by:	Ultima1252@gmail.com
1.1_3
14 Aug 2016 17:12:27
Revision:420194Original commit files touched by this commit
junovitch search for other commits by this committer
Fix PKGNAME for collectd5

PR:		211613
1.1_3
14 Aug 2016 08:33:15
Revision:420182Original commit files touched by this commit
romain search for other commits by this committer
Add entry for CVE-2015-7331

mcollective-puppet-agent -- Remote Code Execution in mcollective-puppet-agent
plugin
1.1_3
13 Aug 2016 21:44:31
Revision:420166Original commit files touched by this commit
mat search for other commits by this committer
Fix the perl5* section for the two recent vuln.

For some reason, perl5-devel was having a wrongly special treatment, and
it was failing to take into account the fact that we've had 5.21 and
5.23 in the tree.
Also, correct the version at which the XSLoader thing was solved in 5.25.

Sponsored by:	Absolight
1.1_3
12 Aug 2016 10:56:12
Revision:420120Original commit files touched by this commit
matthew search for other commits by this committer
The perl5 release candidate versions also address the XSLoader local
arbitrary code execution vulnerability (CVE-2016-6185), as documented
in perldelta(1)

So perl5.22-5.22.3.r2 and perl5.24-5.24.1.r2 are not vulnerable.

I can't confirm if the updates to perl5.18 and perl5.20 also solve the
XSLoader bug or not but by inspection of the source code, I don't
believe that to be the case.
1.1_3
11 Aug 2016 22:54:01
Revision:420111Original commit files touched by this commit
feld search for other commits by this committer
Correct the syntax for the <freebsdsa> entries.

They should not be prefixed with FreeBSD-
1.1_3
11 Aug 2016 21:50:02
Revision:420109Original commit files touched by this commit
feld search for other commits by this committer
Correct old vuxml entries for FreeBSD that use <ge>0</ge> or a <ge> without an
<le>

One entry has been cancelled in preference of a much newer entry referring to
the same CVE as it has more detail.
1.1_3
11 Aug 2016 21:34:00
Revision:420108Original commit files touched by this commit
feld search for other commits by this committer
Add missing FreeBSD SA entries from 2016 to vuxml
1.1_3
11 Aug 2016 21:27:28
Revision:420107Original commit files touched by this commit
feld search for other commits by this committer
Add missing FreeBSD SA entries from 2015 to vuxml
1.1_3
11 Aug 2016 21:19:09
Revision:420106Original commit files touched by this commit
feld search for other commits by this committer
Add missing FreeBSD SA entries from 2014 to vuxml
1.1_3
11 Aug 2016 18:53:51
Revision:420096Original commit files touched by this commit
gjb search for other commits by this committer
Fix vuxml build.

Approved by:	ports-secteam (implicit)
Sponsored by:	The FreeBSD Foundation
1.1_3
11 Aug 2016 16:40:21
Revision:420090Original commit files touched by this commit
koobs search for other commits by this committer
security/vuxml: Make PostgreSQL entry more explicit

Be more explicit in the title of the PostgreSQL entry as to the nature
of the vulnerabilities. Remove possibly subjective description of the
severity (minor) from the title, err on the side of allow users to make
the assessment based on their environments instead.

Approved by:	feld (ports-secteam)
1.1_3
11 Aug 2016 15:49:20
Revision:420081Original commit files touched by this commit
feld search for other commits by this committer
Add missing FreeBSD SA to vuxml

Security:	SA-14:01.bsnmpd
1.1_3
11 Aug 2016 14:51:44
Revision:420076Original commit files touched by this commit
girgen search for other commits by this committer
Add security info for upcoming PostgreSQL updates.

Security: CVE-2016-5424, CVE-2016-5423
1.1_3
11 Aug 2016 13:33:05
Revision:420068Original commit files touched by this commit
mat search for other commits by this committer
Fixup Perl versions for CVE-2016-1238.

Sponsored by:	Absolight
1.1_3
10 Aug 2016 09:21:41
Revision:419997Original commit files touched by this commit
tz search for other commits by this committer
www/piwik: Document XSS issues

PR:          211590
Security:   
https://vuxml.freebsd.org/freebsd/28bf62ef-5e2c-11e6-a15f-00248c0c745d.html
Approved by: pi (mentor)
1.1_3
10 Aug 2016 01:27:44
Revision:419979Original commit files touched by this commit
junovitch search for other commits by this committer
Document denial of service vector via oversized AXFR, IXFR, or Dynamic DNS
updates in BIND, Knot, NSD, and PowerDNS

Security:	CVE-2016-6170
Security:	CVE-2016-6171
Security:	CVE-2016-6172
Security:	CVE-2016-6173
Security:	https://vuxml.FreeBSD.org/freebsd/7d08e608-5e95-11e6-b334-002590263bf5.html
1.1_3
09 Aug 2016 22:25:53
Revision:419975Original commit files touched by this commit
feld search for other commits by this committer
Add missing FreeBSD SA vuxml entries for 2013

Entries that only affected BETA/RC releases were ignored

Security:	SA-13:10.sctp
Security:	SA-13:09.ip_multicast
Security:	SA-13:08.nfsserver
1.1_3
09 Aug 2016 21:18:18
Revision:419971Original commit files touched by this commit
feld search for other commits by this committer
Change all FreeBSD SA entries in vuxml from <system> to <package>
1.1_3
09 Aug 2016 21:04:51
Revision:419970Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to recent libarchive vuxml entry

Security:	SA-16:22.libarchive
Security:	SA-16:23.libarchive
1.1_3
09 Aug 2016 21:00:05
Revision:419969Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old openssl vuxml entry

Security:	SA-16:17.openssl
1.1_3
09 Aug 2016 20:57:19
Revision:419968Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old ntp vuxml entry

Security:	SA-16:16.ntp
1.1_3
09 Aug 2016 20:53:04
Revision:419967Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old openssh vuxml entry

Security:	SA-16:14.openssh
1.1_3
09 Aug 2016 20:36:34
Revision:419966Original commit files touched by this commit
feld search for other commits by this committer
Update many historical vuxml entries for FreeBSD with incorrect ranges

PR:		208522
1.1_3
09 Aug 2016 19:43:25
Revision:419963Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old openssl vuxml entry

Security:	SA-16:11.openssl
1.1_3
09 Aug 2016 19:39:28
Revision:419962Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old ntp vuxml entry

Security:	SA-16:09.ntp
1.1_3
09 Aug 2016 18:21:05
Revision:419959Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old bind vuxml entry

Security:	SA-16:08.bind
1.1_3
09 Aug 2016 18:18:42
Revision:419958Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old openssh vuxml entry

Security:	SA-16:07.openssh
1.1_3
09 Aug 2016 18:14:59
Revision:419956Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old ntp vuxml entry

Security:	SA-16:02.ntp
1.1_3
09 Aug 2016 18:12:21
Revision:419955Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old bind vuxml entry

Security:	SA-15:27.bind
1.1_3
09 Aug 2016 18:10:03
Revision:419954Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old openssl vuxml entry

Security:	SA-15:26.openssl
1.1_3
09 Aug 2016 18:07:10
Revision:419953Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old ntp vuxml entry

Security:	SA-15:25.ntp
1.1_3
09 Aug 2016 18:03:49
Revision:419951Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old bind vuxml entry

Also correct range of affected FreeBSD versions

Security:	SA-15:23.bind
1.1_3
09 Aug 2016 18:01:17
Revision:419950Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old openssh vuxml entry

Security:	SA-15:22.openssh
1.1_3
09 Aug 2016 17:53:07
Revision:419949Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old bind vuxml entry

Also correct range of affected FreeBSD versions

Security:	SA-15:17.bind
1.1_3
09 Aug 2016 17:50:08
Revision:419948Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old openssh vuxml entry

Security:	SA-15:16.openssh
1.1_3
09 Aug 2016 17:35:24
Revision:419947Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old bind vuxml entry

Security:	SA-15:11.bind
1.1_3
09 Aug 2016 17:32:47
Revision:419946Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old openssl vuxml entry

Security:	SA-15:10.openssl
1.1_3
09 Aug 2016 17:24:19
Revision:419945Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old ntp vuxml entry

Security:	SA-15:07.ntp
1.1_3
09 Aug 2016 17:21:54
Revision:419944Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old openssl vuxml entry

Security:	SA-15:06.openssl
1.1_3
09 Aug 2016 17:11:15
Revision:419943Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old bind vuxml entry

Security:	SA-15:05.bind
1.1_3
09 Aug 2016 17:08:08
Revision:419942Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old openssl vuxml entry

Security:	SA-15:01.openssl
1.1_3
09 Aug 2016 17:04:57
Revision:419941Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA info to old unbound vuxml entry

Security:	SA-14:30.unbound
1.1_3
09 Aug 2016 17:00:29
Revision:419940Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA reference to old bind vuxml entry

Security:	SA-14:29.bind
1.1_3
09 Aug 2016 16:53:46
Revision:419939Original commit files touched by this commit
feld search for other commits by this committer
Update another openssl vuxml entry to add FreeBSD SA information

Security:	SA-14:23.openssl
1.1_3
09 Aug 2016 16:48:57
Revision:419938Original commit files touched by this commit
feld search for other commits by this committer
Add FreeBSD SA information to old openssl vuxml entry

Security:	SA-14:18.openssl
1.1_3
09 Aug 2016 16:39:04
Revision:419936Original commit files touched by this commit
feld search for other commits by this committer
Update another old openssl vuxml entry to add FreeBSD SA information

Security:	SA-14:10.openssl
1.1_3
09 Aug 2016 16:36:46
Revision:419935Original commit files touched by this commit
feld search for other commits by this committer
Update old openssl vuxml entry to include <freebsdsa> information and affected
FreeBSD versions
1.1_3
09 Aug 2016 16:30:58
Revision:419934Original commit files touched by this commit
feld search for other commits by this committer
Add <freebsdsa> to old vuxml entry for openssl

Affected FreeBSD versions were not added as they were all 10.0-RC.
1.1_3
09 Aug 2016 16:25:23
Revision:419933Original commit files touched by this commit
feld search for other commits by this committer
Correct <date> fields for last commit regarding SA 14:02
1.1_3
09 Aug 2016 16:23:35
Revision:419932Original commit files touched by this commit
feld search for other commits by this committer
Add affected FreeBSD versions to vuxml entry for SA-14:02
1.1_3
09 Aug 2016 16:13:35
Revision:419931Original commit files touched by this commit
feld search for other commits by this committer
Correct another FreeBSD SA in an old vuxml entry
1.1_3
09 Aug 2016 16:11:42
Revision:419930Original commit files touched by this commit
feld search for other commits by this committer
Correct FreeBSD SA in old vuxml entry
1.1_3
08 Aug 2016 15:47:23
Revision:419861Original commit files touched by this commit
brd search for other commits by this committer
Document collectd security advisory.

PR:		211613
Security:	CVE-2016-6254
1.1_3
08 Aug 2016 09:58:15
Revision:419813Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Add versions for lates MariaDB vulns

PR:		211274
1.1_3
06 Aug 2016 01:57:51
Revision:419726Original commit files touched by this commit
junovitch search for other commits by this committer
Document multiple security advisories for Moodle (MSA-16-0019 - MSA-16-0021)

Security:	CVE-2016-5012
Security:	CVE-2016-5013
Security:	CVE-2016-5014
Security:	https://vuxml.FreeBSD.org/freebsd/3ddcb42b-5b78-11e6-b334-002590263bf5.html
1.1_3
06 Aug 2016 00:45:22
Revision:419722Original commit files touched by this commit
junovitch search for other commits by this committer
Document BIND security advisory

Security:	CVE-2016-2775
Security:	https://vuxml.FreeBSD.org/freebsd/7a31e0de-5b6d-11e6-b334-002590263bf5.html
1.1_3
06 Aug 2016 00:24:00
Revision:419719Original commit files touched by this commit
junovitch search for other commits by this committer
Document wnpa-sec-2016-41 through wnpa-sec-2016-49 for issues fixed in
Wireshark 2.0.5

Security:	CVE-2016-6505
Security:	CVE-2016-6506
Security:	CVE-2016-6508
Security:	CVE-2016-6509
Security:	CVE-2016-6510
Security:	CVE-2016-6511
Security:	CVE-2016-6512
Security:	CVE-2016-6513
Security:	https://vuxml.FreeBSD.org/freebsd/610101ea-5b6a-11e6-b334-002590263bf5.html
1.1_3
05 Aug 2016 17:15:57
Revision:419696Original commit files touched by this commit
feld search for other commits by this committer
Update perl vuxml entries

Perl package names changed somewhat recently, so add more <name> entries
to improve coverage for users on systems with outdated ports/packages

PR:		211561
1.1_3
05 Aug 2016 16:08:30
Revision:419692Original commit files touched by this commit
feld search for other commits by this committer
Cancel tiff vuxml entry for CVE-2016-5102

Upstream has marked it WONTFIX and is removing the utility in 4.0.7.
There is no indication that this bug does anything other than crash the
utility.
1.1_3
05 Aug 2016 13:54:48
Revision:419685Original commit files touched by this commit
feld search for other commits by this committer
Update vuxml entry for perl to correct range for perl5-devel
1.1_3
04 Aug 2016 18:19:01
Revision:419644Original commit files touched by this commit
feld search for other commits by this committer
Fix vuxml entry for recent perl vulnerabilities to correctly match package names

PR:		211561
1.1_3
04 Aug 2016 18:12:35
Revision:419642Original commit files touched by this commit
feld search for other commits by this committer
Document p5-XSLoader vulnerability

PR:		211561
Security:	CVE-2016-6185
1.1_3
04 Aug 2016 17:52:36
Revision:419639Original commit files touched by this commit
feld search for other commits by this committer
Document perl vulnerability

PR:		211561
Security:	CVE-2016-1238
1.1_3
04 Aug 2016 14:49:49
Revision:419621Original commit files touched by this commit
feld search for other commits by this committer
Document gd vulnerabilities

PR:		211562
1.1_3
04 Aug 2016 14:33:25
Revision:419616Original commit files touched by this commit
feld search for other commits by this committer
Document curl vulnerabilities

PR:		211575
1.1_3
03 Aug 2016 14:54:27
Revision:419527Original commit files touched by this commit
feld search for other commits by this committer
Document lighttpd vulnerabilities

PR:		211495
1.1_3
02 Aug 2016 02:07:56
Revision:419463Original commit files touched by this commit
junovitch search for other commits by this committer
Document Xen Security Advisories (XSAs 182, 183, and 184)

PR:		211482
Security:	CVE-2016-5403
Security:	CVE-2016-6259
Security:	CVE-2016-6258
Security:	https://vuxml.FreeBSD.org/freebsd/06574c62-5854-11e6-b334-002590263bf5.html
Security:	https://vuxml.FreeBSD.org/freebsd/04cf89e3-5854-11e6-b334-002590263bf5.html
Security:	https://vuxml.FreeBSD.org/freebsd/032aa524-5854-11e6-b334-002590263bf5.html
1.1_3
31 Jul 2016 15:14:57
Revision:419388Original commit files touched by this commit
junovitch search for other commits by this committer
Document security issues fixed Libidn 1.33

PR:		211407
Reported by:	Piotr Kubaj <pkubaj@anongoth.pl>
Security:	CVE-2015-8948
Security:	CVE-2016-6261
Security:	CVE-2016-6262
Security:	CVE-2016-6263
Security:	https://vuxml.FreeBSD.org/freebsd/cb5189eb-572f-11e6-b334-002590263bf5.html
1.1_3
29 Jul 2016 07:30:28
Revision:419230Original commit files touched by this commit
cmt search for other commits by this committer
document Gimp XCF loader vulnerability

Approved by:	rene (mentor)
1.1_3
27 Jul 2016 01:54:48
Revision:419155Original commit files touched by this commit
cy search for other commits by this committer
With the release of krb5 1.13.6, which also fixes the KDC denial of
service vulnerability (CVE-2016-3120 -- same vulnerability fixed in
krb5 1.14.3), update entry 62d45229-4fa0-11e6-9d13-206a8a720317 to
also document the same in krb5 1.13.6.

Security:	62d45229-4fa0-11e6-9d13-206a8a720317
Security:	CVE-2016-3120
1.1_3
26 Jul 2016 16:03:16
Revision:419122Original commit files touched by this commit
feld search for other commits by this committer
Document xerces-c3 vulnerabilities

PR:		211023
Security:	CVE-2016-2099
Security:	CVE-2016-4463
1.1_3
26 Jul 2016 14:58:24
Revision:419111Original commit files touched by this commit
feld search for other commits by this committer
Document php vulnerabilities

Security:	CVE-2015-8879
Security:	CVE-2016-5385
Security:	CVE-2016-5399
Security:	CVE-2016-6288
Security:	CVE-2016-6289
Security:	CVE-2016-6290
Security:	CVE-2016-6291
Security:	CVE-2016-6292
Security:	CVE-2016-6294
Security:	CVE-2016-6295
Security:	CVE-2016-6296
Security:	CVE-2016-6297
1.1_3
22 Jul 2016 20:30:16
Revision:418932Original commit files touched by this commit
rene search for other commits by this committer
Document new vulnerabilities in www/chromium < 52.0.2743.82

Obtained
from:	https://googlechromereleases.blogspot.nl/2016/07/stable-channel-update.html
1.1_3
22 Jul 2016 00:22:19
Revision:418902Original commit files touched by this commit
cy search for other commits by this committer
Document a rare KDC denial of service vulnerability when anonymous
client principals are restricted to obtaining TGTs only [CVE-2016-3120]

URL:		http://web.mit.edu/kerberos/krb5-1.14/
Security:	CVE-2016-3120
1.1_3
21 Jul 2016 18:25:22
Revision:418887Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Current mysql57 is NOT vulnerable

PR:		211248
1.1_3
21 Jul 2016 18:04:14
Revision:418884Original commit files touched by this commit
truckman search for other commits by this committer
Apache OpenOffice CVE-2016-1513 Memory Corruption Vulnerability
(Impress Presentations)
1.1_3
21 Jul 2016 14:58:08
Revision:418877Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Add MySQL vulnerabilities from quarterly update

  - Add MariaDB ports
  - Add Percona ports

PR:		211248
1.1_3
21 Jul 2016 14:23:01
Revision:418876Original commit files touched by this commit
feld search for other commits by this committer
Properly cancel the httpoxy vuxml entry
1.1_3
20 Jul 2016 12:25:51
Revision:418834Original commit files touched by this commit
feld search for other commits by this committer
Remove HTTPoxy entry in vuxml until a we know if upstream vendors will
patch this so things aren't marked vulnerable forever.
1.1_3
19 Jul 2016 12:55:43
Revision:418774Original commit files touched by this commit
tz search for other commits by this committer
www/typo3 and www/typo3-lts: Document missing access check in Extbase

PR:          210870, 210871
Security:    CVE-2016-5091
Security:   
https://vuxml.freebsd.org/freebsd/3caf4e6c-4cef-11e6-a15f-00248c0c745d.html
Approved by: junovitch (mentor)
1.1_3
19 Jul 2016 06:43:52
Revision:418762Original commit files touched by this commit
brnrd search for other commits by this committer
net/haproxy: Mark vulnerable to httpoxy in vuxml

Security:	cf0b5668-4d1b-11e6-b2ec-b499baebfeaf
1.1_3
18 Jul 2016 20:38:37
Revision:418747Original commit files touched by this commit
brnrd search for other commits by this committer
lang/go: Mark 1.6.3 as NOT vulnerable to httpoxy

  - Version 1.6.3 includes fix for "httpoxy" [1]

1: https://groups.google.com/forum/#!topic/golang-announce/7jZDOQ8f8tM

Security:	cf0b5668-4d1b-11e6-b2ec-b499baebfeaf
Security:	CVE-2016-5386
1.1_3
18 Jul 2016 20:15:17
Revision:418744Original commit files touched by this commit
brnrd search for other commits by this committer
www/apache24: Fix httpoxy vulnerability (+2.2)

  - Mark new Apache revisions not vulnerable
  - Add apache22-mpm-* ports
  - Add Apache CVE-number

Security:       cf0b5668-4d1b-11e6-b2ec-b499baebfeaf
Security:       CVE-2016-5387
1.1_3
18 Jul 2016 19:47:27
Revision:418737Original commit files touched by this commit
brnrd search for other commits by this committer
httpoxy: Mark ports as vulnerable

  - apache22, apache24, go, go14, php55, php56, php70, python27, python33,
    python34, python35, nginx are all vulnerable.
  - No new versions fixing the HTTP Proxy header vulnerability
1.1_3
18 Jul 2016 17:36:43
Revision:418723Original commit files touched by this commit
bdrewery search for other commits by this committer
Fix CVE-2016-0772 entry to not blame only Python 2.7
1.1_3
16 Jul 2016 02:26:55
Revision:418617Original commit files touched by this commit
junovitch search for other commits by this committer
Document security issues from ATutor 2.2.1 and 2.2.2 changelog

Security:	https://vuxml.FreeBSD.org/freebsd/00cb1469-4afc-11e6-97ea-002590263bf5.html
Security:	https://vuxml.FreeBSD.org/freebsd/ffa8ca79-4afb-11e6-97ea-002590263bf5.html
1.1_3
16 Jul 2016 01:08:06
Revision:418615Original commit files touched by this commit
junovitch search for other commits by this committer
Update Drupal SA-CORE-2016-002 with the assigned CVEs

PR:		210317
Security:	CVE-2016-6211
Security:	CVE-2016-6212
Security:	https://vuxml.FreeBSD.org/freebsd/7932548e-3427-11e6-8e82-002590263bf5.html
1.1_3
16 Jul 2016 00:59:10
Revision:418612Original commit files touched by this commit
junovitch search for other commits by this committer
Document Flash vulnerabilities in Adobe Security Bulletins APSB16-25

Security:	CVE-2016-4172
Security:	CVE-2016-4173
Security:	CVE-2016-4174
Security:	CVE-2016-4175
Security:	CVE-2016-4176
Security:	CVE-2016-4177
Security:	CVE-2016-4178
Security:	CVE-2016-4179
Security:	CVE-2016-4180
Security:	CVE-2016-4181
Security:	CVE-2016-4182
Security:	CVE-2016-4183
Security:	CVE-2016-4184
(Only the first 15 lines of the commit message are shown above View all of this commit message)

Number of commits found: 7726 (showing only 100 on this page)

[First Page]  «  29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37 | 38 | 39  »  [Last Page]