notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine
I started running short on disk space for the non-production FreshPorts hosts. This time, I have decided to ask for donations. See my recent blog post which points to my Patreon account.
Port details
vuxml Vulnerability and eXposure Markup Language DTD
1.1_6 security on this many watch lists=33 search for ports that depend on this port Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 1.1_6Version of this port present on the latest quarterly branch.
Maintainer: ports-secteam@FreeBSD.org search for ports maintained by this maintainer
Port Added: 2004-02-12 14:24:23
Last Update: 2025-08-29 03:22:52
Commit Hash: 17a37be
People watching this port, also watch:: gnupg, libxml2, nmap, postfix, curl
Also Listed In: textproc
License: BSD2CLAUSE
WWW:
https://vuxml.freebsd.org/
Description:
VuXML (the Vulnerability and eXposure Markup Language) is an XML application for documenting security bugs and corrections within a software package collection such as the FreeBSD Ports Collection. This port installs the DTDs required for validating VuXML documents.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (13 items)
Collapse this list.
  1. /usr/local/share/licenses/vuxml-1.1_6/catalog.mk
  2. /usr/local/share/licenses/vuxml-1.1_6/LICENSE
  3. /usr/local/share/licenses/vuxml-1.1_6/BSD2CLAUSE
  4. @xmlcatmgr share/xml/dtd/vuxml/catalog
  5. @xmlcatmgr share/xml/dtd/vuxml/catalog.xml
  6. share/xml/dtd/vuxml/vuxml-10.dtd
  7. share/xml/dtd/vuxml/vuxml-11.dtd
  8. share/xml/dtd/vuxml/vuxml-model-10.mod
  9. share/xml/dtd/vuxml/vuxml-model-11.mod
  10. share/xml/dtd/vuxml/xml1.dcl
  11. @owner
  12. @group
  13. @mode
Collapse this list.
Dependency lines:
  • vuxml>0:security/vuxml
To install the port:
cd /usr/ports/security/vuxml/ && make install clean
To add the package, run one of these commands:
  • pkg install security/vuxml
  • pkg install vuxml
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: vuxml
Flavors: there is no flavor information for this port.
distinfo:
SHA256 (vuxml/vuxml-10.dtd) = 6a635ad2cf45f52361c8c2a29a689157fad4d00519045485bc822d34e04a524e SIZE (vuxml/vuxml-10.dtd) = 2986 SHA256 (vuxml/vuxml-model-10.mod) = 051fed00b52bedde8ee901003fc29f7b95cd904157e31ceef34e6b06f2d1a14a

Expand this list (11 items)

Collapse this list.

SIZE (vuxml/vuxml-model-10.mod) = 10599 SHA256 (vuxml/vuxml-11.dtd) = 12b50061d7bb34cecffede2e08d439e4469324376d55aeb7c73eb6aab0f36af1 SIZE (vuxml/vuxml-11.dtd) = 3063 SHA256 (vuxml/vuxml-model-11.mod) = a40777208625a3029c6f416aeeea733f614802a6a5f26035a4e445a09e61a47c SIZE (vuxml/vuxml-model-11.mod) = 13282 SHA256 (vuxml/xml1.dcl) = 343efa94c4e1302e85e08b2d1791d86e50aac1ecdbc3161daecac100e4726847 SIZE (vuxml/xml1.dcl) = 7372 SHA256 (vuxml/catalog) = 479a69cf02995603443fd1f3b5b33f97811670931f87f53be99a727d664abc66 SIZE (vuxml/catalog) = 549 SHA256 (vuxml/catalog.xml) = 7b2e2850f57264eeba0ccd3d1fc161b9d5ce3071ae0ec51b9da7fa956f2a6509 SIZE (vuxml/catalog.xml) = 2150

Collapse this list.


Packages (timestamps in pop-ups are UTC):
vuxml
ABIaarch64amd64armv6armv7i386powerpcpowerpc64powerpc64le
FreeBSD:13:latest1.1_61.1_61.1_51.1_61.1_6-1.1_5-
FreeBSD:13:quarterly1.1_61.1_61.1_61.1_61.1_61.1_61.1_61.1_6
FreeBSD:14:latest1.1_61.1_61.1_61.1_61.1_61.1_6-1.1_6
FreeBSD:14:quarterly1.1_61.1_6-1.1_61.1_61.1_61.1_61.1_6
FreeBSD:15:latest--n/a1.1_6n/a1.1_61.1_61.1_6
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Runtime dependencies:
  1. xmlcatmgr : textproc/xmlcatmgr
  2. xsltproc : textproc/libxslt
  3. VERSION : textproc/xhtml-modularization
  4. xhtml-basic10.dtd : textproc/xhtml-basic
  5. python3.11 : lang/python311
There are no ports dependent upon this port

Configuration Options:
No options to configure
Options name:
security_vuxml
USES:
python:run
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. http://www.vuxml.org/dtd/vuxml-1/
Collapse this list.

Number of commits found: 7721 (showing only 100 on this page)

[First Page]  «  1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11  »  [Last Page]

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
1.1_6
18 Oct 2024 08:35:16
commit hash: 1c620b90f180b34a2ae6fffff672f07907f2076bcommit hash: 1c620b90f180b34a2ae6fffff672f07907f2076bcommit hash: 1c620b90f180b34a2ae6fffff672f07907f2076bcommit hash: 1c620b90f180b34a2ae6fffff672f07907f2076b files touched by this commit
Hiroki Tagato (tagattie) search for other commits by this committer
security/vuxml: document electron{31,32} multiple vulnerabilities

Obtained from:	https://github.com/electron/electron/releases/tag/v31.7.1,
	 	https://github.com/electron/electron/releases/tag/v32.2.1
1.1_6
15 Oct 2024 15:03:24
commit hash: 90a45de5e44a67951c6f59beb943e169190656d9commit hash: 90a45de5e44a67951c6f59beb943e169190656d9commit hash: 90a45de5e44a67951c6f59beb943e169190656d9commit hash: 90a45de5e44a67951c6f59beb943e169190656d9 files touched by this commit
Ashish SHUKLA (ashish) search for other commits by this committer
security/vuxml: Document element-web vulnerability
1.1_6
11 Oct 2024 08:13:00
commit hash: 882f13d52f94df2bf173fb6fd56fbb501cdf2644commit hash: 882f13d52f94df2bf173fb6fd56fbb501cdf2644commit hash: 882f13d52f94df2bf173fb6fd56fbb501cdf2644commit hash: 882f13d52f94df2bf173fb6fd56fbb501cdf2644 files touched by this commit
Hiroki Tagato (tagattie) search for other commits by this committer
security/vuxml: document VSCode remote code execution vulnerability

Obtained from:	https://github.com/microsoft/vscode/issues/230824
1.1_6
10 Oct 2024 17:59:22
commit hash: 69c1f9b658f50b92d6a629348f884e0779c98176commit hash: 69c1f9b658f50b92d6a629348f884e0779c98176commit hash: 69c1f9b658f50b92d6a629348f884e0779c98176commit hash: 69c1f9b658f50b92d6a629348f884e0779c98176 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix typo in firefox entry

Reported by:	jbeich@
1.1_6
10 Oct 2024 17:33:23
commit hash: 5acf2d27a56e2859ecaa26aa0f9fefbaaef43d81commit hash: 5acf2d27a56e2859ecaa26aa0f9fefbaaef43d81commit hash: 5acf2d27a56e2859ecaa26aa0f9fefbaaef43d81commit hash: 5acf2d27a56e2859ecaa26aa0f9fefbaaef43d81 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add firefox{-esr} use-after-free code execution

CVE-2024-9680
1.1_6
10 Oct 2024 02:46:53
commit hash: 4da2b186fe8e2a208dfc34e05d387b69d20b84a7commit hash: 4da2b186fe8e2a208dfc34e05d387b69d20b84a7commit hash: 4da2b186fe8e2a208dfc34e05d387b69d20b84a7commit hash: 4da2b186fe8e2a208dfc34e05d387b69d20b84a7 files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerabilities
1.1_6
09 Oct 2024 22:08:03
commit hash: 83ec241c5420ce9ccf1195c0f8db95e87cd1f31bcommit hash: 83ec241c5420ce9ccf1195c0f8db95e87cd1f31bcommit hash: 83ec241c5420ce9ccf1195c0f8db95e87cd1f31bcommit hash: 83ec241c5420ce9ccf1195c0f8db95e87cd1f31b files touched by this commit
Vladimir Druzenko (vvd) search for other commits by this committer
Author: Stefan Bethke
security/vuxml: Add record for www/gitea: Fix bug when a token is given public
only

PR:	281949
1.1_6
09 Oct 2024 20:26:44
commit hash: bbb9892c217f047fc2c160b1f327967ebdc78824commit hash: bbb9892c217f047fc2c160b1f327967ebdc78824commit hash: bbb9892c217f047fc2c160b1f327967ebdc78824commit hash: bbb9892c217f047fc2c160b1f327967ebdc78824 files touched by this commit
Vladimir Druzenko (vvd) search for other commits by this committer
Author: Ralf van der Enden
security/vuxml: Add record about CVE-2024-25590 in dns/powerdns-recursor

PowerDNS Recursor Security Advisory 2024-04:
https://blog.powerdns.com/2024/10/03/powerdns-recursor-4-9-9-5-0-9-5-1-2-released

PR:	281914
1.1_6
09 Oct 2024 17:46:50
commit hash: d5f8bbbb157d1e21ff02b2d4b7d938c18afc241bcommit hash: d5f8bbbb157d1e21ff02b2d4b7d938c18afc241bcommit hash: d5f8bbbb157d1e21ff02b2d4b7d938c18afc241bcommit hash: d5f8bbbb157d1e21ff02b2d4b7d938c18afc241b files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 129.0.6668.{89,100}

Obtained
from:	https://chromereleases.googleblog.com/2024/10/stable-channel-update-for-desktop.html
Obtained
from:	https://chromereleases.googleblog.com/2024/10/stable-channel-update-for-desktop_8.html
1.1_6
09 Oct 2024 15:35:07
commit hash: 67b39654b839b039d0cbf607ada2e50099cc3522commit hash: 67b39654b839b039d0cbf607ada2e50099cc3522commit hash: 67b39654b839b039d0cbf607ada2e50099cc3522commit hash: 67b39654b839b039d0cbf607ada2e50099cc3522 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix Thunderbird version

PR:		281960
Reported by:	John Hein <jcfyecrayz@liamekaens.com>
Fixes:		86d1aa3caa24c97cdc63962d13fef16be12c84b7
1.1_6
06 Oct 2024 16:16:19
commit hash: 7382ac2b1be7e88d833178bd9da899342293aa2fcommit hash: 7382ac2b1be7e88d833178bd9da899342293aa2fcommit hash: 7382ac2b1be7e88d833178bd9da899342293aa2fcommit hash: 7382ac2b1be7e88d833178bd9da899342293aa2f files touched by this commit
Robert Clausecker (fuz) search for other commits by this committer
security/vuxml: document unbound vulnerability

PR:		281894
Security:	CVE-2024-8508
Security:	2368755b-83f6-11ef-8d2e-a04a5edf46d9
1.1_6
05 Oct 2024 01:31:38
commit hash: 29c86bfa4cb5d8ee11b032f16f61bd092c42dcf5commit hash: 29c86bfa4cb5d8ee11b032f16f61bd092c42dcf5commit hash: 29c86bfa4cb5d8ee11b032f16f61bd092c42dcf5commit hash: 29c86bfa4cb5d8ee11b032f16f61bd092c42dcf5 files touched by this commit
Craig Leres (leres) search for other commits by this committer
security/vuxml: Mark zeek < 7.0.3 as vulnerable as per:

    https://github.com/zeek/zeek/releases/tag/v7.0.3

This release fixes the following potential DoS vulnerability:

 - Adding to the POP3 hardening in 7.0.2, the parser now simply
   discards too many pending commands, rather than any attempting
   to process them. Further, invalid server responses do not result
   in command completion anymore. Processing out-of-order commands
   or finishing commands based on invalid server responses could
   result in inconsistent analyzer state, potentially triggering
   null pointer references for crafted traffic.

Reported by:	Tim Wojtulewicz
1.1_6
04 Oct 2024 17:00:42
commit hash: f2f6d6588432a84e715ba9e9f2702938887d1fa3commit hash: f2f6d6588432a84e715ba9e9f2702938887d1fa3commit hash: f2f6d6588432a84e715ba9e9f2702938887d1fa3commit hash: f2f6d6588432a84e715ba9e9f2702938887d1fa3 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix name tag for textproc/expat2

Reported by:	Adam McDougall <mcdouga9@egr.msu.edu>
Fixes:		47955717fc53
1.1_6
03 Oct 2024 11:18:17
commit hash: 86d1aa3caa24c97cdc63962d13fef16be12c84b7commit hash: 86d1aa3caa24c97cdc63962d13fef16be12c84b7commit hash: 86d1aa3caa24c97cdc63962d13fef16be12c84b7commit hash: 86d1aa3caa24c97cdc63962d13fef16be12c84b7 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add firefox{-esr}, thunderbird vulnerabilities

CVE-2024-9392
CVE-2024-9396
CVE-2024-9400
CVE-2024-9401
CVE-2024-9402
CVE-2024-9403
1.1_6
03 Oct 2024 08:45:35
commit hash: 4775d28b85d878f9ef5fb0700ca6ba53f95c9cc2commit hash: 4775d28b85d878f9ef5fb0700ca6ba53f95c9cc2commit hash: 4775d28b85d878f9ef5fb0700ca6ba53f95c9cc2commit hash: 4775d28b85d878f9ef5fb0700ca6ba53f95c9cc2 files touched by this commit
Yasuhiro Kimura (yasu) search for other commits by this committer
security/vuxml: Update range of redis in 8b20f21a-8113-11ef-b988-08002784c58d

In 2024Q3 branch databases/redis still stays in 7.2.x.

Fixes:		e44e4021e418
1.1_6
03 Oct 2024 08:25:00
commit hash: 1562a9671bcc0f91aee7254979ade07c2684e9cecommit hash: 1562a9671bcc0f91aee7254979ade07c2684e9cecommit hash: 1562a9671bcc0f91aee7254979ade07c2684e9cecommit hash: 1562a9671bcc0f91aee7254979ade07c2684e9ce files touched by this commit
Li-Wen Hsu (lwhsu) search for other commits by this committer
security/vuxml: Document Jenkins Security Advisory 2024-10-02

Sponsored by:	The FreeBSD Foundation
1.1_6
02 Oct 2024 23:56:04
commit hash: e44e4021e418c8df15aa918517a60288af9967e2commit hash: e44e4021e418c8df15aa918517a60288af9967e2commit hash: e44e4021e418c8df15aa918517a60288af9967e2commit hash: e44e4021e418c8df15aa918517a60288af9967e2 files touched by this commit
Yasuhiro Kimura (yasu) search for other commits by this committer
security/vuxml: Document multiple valnerabilities in Redis and Valkey
1.1_6
02 Oct 2024 21:28:47
commit hash: d00372f062118f522de94ee50a4d2a99a0457603commit hash: d00372f062118f522de94ee50a4d2a99a0457603commit hash: d00372f062118f522de94ee50a4d2a99a0457603commit hash: d00372f062118f522de94ee50a4d2a99a0457603 files touched by this commit
Torsten Zuehlsdorff (tz) search for other commits by this committer
security/vuxml: Document PHP vulnerabilities

  There were 4 vulnerabilities found and fixed in PHP.

PR:		281770
Reported by:	FiLis <freebsdbugs@filis.org>
1.1_6
02 Oct 2024 09:28:09
commit hash: c391dd71c614d9a6be09b7cf19c98a87685c53fccommit hash: c391dd71c614d9a6be09b7cf19c98a87685c53fccommit hash: c391dd71c614d9a6be09b7cf19c98a87685c53fccommit hash: c391dd71c614d9a6be09b7cf19c98a87685c53fc files touched by this commit
Tijl Coosemans (tijl) search for other commits by this committer
security/vuxml: Update cups-filters entry
1.1_6
30 Sep 2024 19:27:57
commit hash: eee92723f251c11b6f656c3a40b9da70dad0a3ddcommit hash: eee92723f251c11b6f656c3a40b9da70dad0a3ddcommit hash: eee92723f251c11b6f656c3a40b9da70dad0a3ddcommit hash: eee92723f251c11b6f656c3a40b9da70dad0a3dd files touched by this commit
Mateusz Piotrowski (0mp) search for other commits by this committer
security/vuxml: Add CVE-2022-45197
1.1_6
30 Sep 2024 15:27:39
commit hash: 7e1bbdadcff481c46014759adac94baf110dcbf7commit hash: 7e1bbdadcff481c46014759adac94baf110dcbf7commit hash: 7e1bbdadcff481c46014759adac94baf110dcbf7commit hash: 7e1bbdadcff481c46014759adac94baf110dcbf7 files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 129.0.6668.70

Obtained
from:	https://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_24.html
1.1_6
30 Sep 2024 06:42:19
commit hash: 91064fdc5d6613c558832fb9ed26bdfaef107102commit hash: 91064fdc5d6613c558832fb9ed26bdfaef107102commit hash: 91064fdc5d6613c558832fb9ed26bdfaef107102commit hash: 91064fdc5d6613c558832fb9ed26bdfaef107102 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix typos

Add linux-*-sqlite3 to last entry.
s/mozilla/firefox in an older entry

Reported by:	Edward Sanford Sutton, III (mirror176@hotmail.com)
1.1_6
29 Sep 2024 17:11:10
commit hash: d94547d54ebe03dd72417b7d81e3f1f261e2cb06commit hash: d94547d54ebe03dd72417b7d81e3f1f261e2cb06commit hash: d94547d54ebe03dd72417b7d81e3f1f261e2cb06commit hash: d94547d54ebe03dd72417b7d81e3f1f261e2cb06 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add sqlite use after free vulnerability

CVE-2024-0232
  * Base Score:	5.5 MEDIUM
  * Vector:	CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
1.1_6
27 Sep 2024 15:15:19
commit hash: 02f3b1662d323910f02932884affb820ccc977ffcommit hash: 02f3b1662d323910f02932884affb820ccc977ffcommit hash: 02f3b1662d323910f02932884affb820ccc977ffcommit hash: 02f3b1662d323910f02932884affb820ccc977ff files touched by this commit
Tijl Coosemans (tijl) search for other commits by this committer
security/vuxml: Add cups-browsed RCE
1.1_6
27 Sep 2024 08:42:19
commit hash: 47955717fc531fc03406f32b1c6737e9d57dac1bcommit hash: 47955717fc531fc03406f32b1c6737e9d57dac1bcommit hash: 47955717fc531fc03406f32b1c6737e9d57dac1bcommit hash: 47955717fc531fc03406f32b1c6737e9d57dac1b files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add textproc/expat2 vulnerabilities

CVE-2024-45490
CVE-2024-45491
CVE-2024-45492

PR:		281738
Reported by:	FiLiS <freebsdbugs@filis.org>
1.1_6
26 Sep 2024 04:30:21
commit hash: a69537fc4adf33db9e5311f503dd11fbeb3b1db5commit hash: a69537fc4adf33db9e5311f503dd11fbeb3b1db5commit hash: a69537fc4adf33db9e5311f503dd11fbeb3b1db5commit hash: a69537fc4adf33db9e5311f503dd11fbeb3b1db5 files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerabilities
1.1_6
24 Sep 2024 15:52:08
commit hash: dcfd8e16e174aabe4f00c69fadf2471d255cece9commit hash: dcfd8e16e174aabe4f00c69fadf2471d255cece9commit hash: dcfd8e16e174aabe4f00c69fadf2471d255cece9commit hash: dcfd8e16e174aabe4f00c69fadf2471d255cece9 files touched by this commit
Olivier Cochard (olivier) search for other commits by this committer
security/vuxml: document frr vulnerabilities
1.1_6
24 Sep 2024 06:03:35
commit hash: 734d5fbae5b36ec42d6915ab054a596de9164965commit hash: 734d5fbae5b36ec42d6915ab054a596de9164965commit hash: 734d5fbae5b36ec42d6915ab054a596de9164965commit hash: 734d5fbae5b36ec42d6915ab054a596de9164965 files touched by this commit
Craig Leres (leres) search for other commits by this committer
security/vuxml: Update zeek range for 6.X

Really, it was silly of me to add the <ge> range since there were
no commited 6.X versions that were not vulnerable to the new issue.
1.1_6
24 Sep 2024 05:44:35
commit hash: f3bf10dd60b6dcd41170aa066e036bb1a03cb4ebcommit hash: f3bf10dd60b6dcd41170aa066e036bb1a03cb4ebcommit hash: f3bf10dd60b6dcd41170aa066e036bb1a03cb4ebcommit hash: f3bf10dd60b6dcd41170aa066e036bb1a03cb4eb files touched by this commit
Craig Leres (leres) search for other commits by this committer
security/vuxml: Mark zeek < 7.0.2 as vulnerable as per:

    https://github.com/zeek/zeek/releases/tag/v7.0.2

This release fixes the following potential DoS vulnerability:

 - The POP3 parser has been hardened to avoid unbounded state growth
   in the face of one-sided traffic capture or when enabled for
   non-POP3 traffic.

Reported by:	Tim Wojtulewicz
1.1_6
20 Sep 2024 06:48:05
commit hash: 90fa03342c4dc48297d87aeb91d2c17adbcf7c4ccommit hash: 90fa03342c4dc48297d87aeb91d2c17adbcf7c4ccommit hash: 90fa03342c4dc48297d87aeb91d2c17adbcf7c4ccommit hash: 90fa03342c4dc48297d87aeb91d2c17adbcf7c4c files touched by this commit
Philip Paeps (philip) search for other commits by this committer
security/vuxml: belatedly add FreeBSD SAs issued on 2024-08-07

FreeBSD-SA-24:05.pf affects all supported versions of FreeBSD
FreeBSD-SA-24:06.ktrace affects all supported versions of FreeBSD
FreeBSD-SA-24:07.nfsclient affects all supported versions of FreeBSD
1.1_6
20 Sep 2024 06:48:04
commit hash: 09398c098f7506bd834bfa76bfeb472d0e8a6687commit hash: 09398c098f7506bd834bfa76bfeb472d0e8a6687commit hash: 09398c098f7506bd834bfa76bfeb472d0e8a6687commit hash: 09398c098f7506bd834bfa76bfeb472d0e8a6687 files touched by this commit
Philip Paeps (philip) search for other commits by this committer
security/vuxml: complete FreeBSD reference for CVE-2024-7589

FreeBSD-SA-24:08.openssh was issued on 2024-08-07 to address
CVE-2024-7589.  All supported versions of FreeBSD were affected.

While here, correct minor markup nits in the vuxml entry.
1.1_6
20 Sep 2024 06:48:04
commit hash: 11f549f3b97dc63c7b4b5aa15404f12a45f3187ccommit hash: 11f549f3b97dc63c7b4b5aa15404f12a45f3187ccommit hash: 11f549f3b97dc63c7b4b5aa15404f12a45f3187ccommit hash: 11f549f3b97dc63c7b4b5aa15404f12a45f3187c files touched by this commit
Philip Paeps (philip) search for other commits by this committer
security/vuxml: reference FreeBSD-SA-24:04.openssh in CVE-2024-6387

All supported versions of FreeBSD were affected by CVE-2024-6387,
announced on 2024-07-01.  Reference FreeBSD-SA-24:04.openssh in the
vuxml entry.
1.1_6
20 Sep 2024 06:13:37
commit hash: b32b229ab83e79939d076c117b057270da7061d3commit hash: b32b229ab83e79939d076c117b057270da7061d3commit hash: b32b229ab83e79939d076c117b057270da7061d3commit hash: b32b229ab83e79939d076c117b057270da7061d3 files touched by this commit
Philip Paeps (philip) search for other commits by this committer
security/vuxml: add FreeBSD SAs issued on 2024-09-19

FreeBSD-SA-24:15.bhyve affects all supported versions of FreeBSD
FreeBSD-SA-24:16.libnv affects all supported versions of FreeBSD
1.1_6
18 Sep 2024 07:01:07
commit hash: 2e762b70abf959ddaa79255228795fab45e3eb4ccommit hash: 2e762b70abf959ddaa79255228795fab45e3eb4ccommit hash: 2e762b70abf959ddaa79255228795fab45e3eb4ccommit hash: 2e762b70abf959ddaa79255228795fab45e3eb4c files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerability
1.1_6
17 Sep 2024 13:44:49
commit hash: 59efdc09dba99355ace1359aab657afcb4159c66commit hash: 59efdc09dba99355ace1359aab657afcb4159c66commit hash: 59efdc09dba99355ace1359aab657afcb4159c66commit hash: 59efdc09dba99355ace1359aab657afcb4159c66 files touched by this commit
Alan Somers (asomers) search for other commits by this committer
security/vuxml: correct vulnerable package range for nginx

14dc2636e72c396459a6559868033910ee8a4532 added a new vuxml entry, but
forgot to account for PORTEPOCH.

PR:		281250
Approved by:	maintainer timeout
Security:	CVE-2024-7347
1.1_6
17 Sep 2024 12:03:42
commit hash: 21207218a20c9a97516b8ba092775275b61cfb90commit hash: 21207218a20c9a97516b8ba092775275b61cfb90commit hash: 21207218a20c9a97516b8ba092775275b61cfb90commit hash: 21207218a20c9a97516b8ba092775275b61cfb90 files touched by this commit
Mateusz Piotrowski (0mp) search for other commits by this committer
security/vuxml: Document OpenSSH's CVE-2024-7589

Sponsored by:	Klara, Inc.
1.1_6
16 Sep 2024 21:25:50
commit hash: fcbdddeccb2710da95c555463399bccd6059bf2ccommit hash: fcbdddeccb2710da95c555463399bccd6059bf2ccommit hash: fcbdddeccb2710da95c555463399bccd6059bf2ccommit hash: fcbdddeccb2710da95c555463399bccd6059bf2c files touched by this commit
Yasuhiro Kimura (yasu) search for other commits by this committer
security/vuxml: Document multiple mXSS vulnerabilities in SnappyMail
1.1_6
15 Sep 2024 17:59:00
commit hash: 9ad12df13589412b499b145993b65c70911a68f7commit hash: 9ad12df13589412b499b145993b65c70911a68f7commit hash: 9ad12df13589412b499b145993b65c70911a68f7commit hash: 9ad12df13589412b499b145993b65c70911a68f7 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix entry

Correct number of recorded CVEs.

Fixes:	019e45d60224
1.1_6
13 Sep 2024 07:11:15
commit hash: 019e45d60224889017071b8e9560042e5fc6b90ecommit hash: 019e45d60224889017071b8e9560042e5fc6b90ecommit hash: 019e45d60224889017071b8e9560042e5fc6b90ecommit hash: 019e45d60224889017071b8e9560042e5fc6b90e files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 128.0.6613.137

Obtained
from:	https://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop_10.html
1.1_6
12 Sep 2024 16:27:58
commit hash: 7bfbc4750dda604ceda3812de32d8d2cc91f9a5ccommit hash: 7bfbc4750dda604ceda3812de32d8d2cc91f9a5ccommit hash: 7bfbc4750dda604ceda3812de32d8d2cc91f9a5ccommit hash: 7bfbc4750dda604ceda3812de32d8d2cc91f9a5c files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerabilities
1.1_6
10 Sep 2024 18:49:21
commit hash: bce04250c81a80a14f178e18d014f43921d746cbcommit hash: bce04250c81a80a14f178e18d014f43921d746cbcommit hash: bce04250c81a80a14f178e18d014f43921d746cbcommit hash: bce04250c81a80a14f178e18d014f43921d746cb files touched by this commit
Joseph Mingrone (jrm) search for other commits by this committer
security/vuxml: Document Intel CPU vulnerabilities

Security:	CVE-2024-23984
Security:	CVE-2024-24968
Sponsored by:	The FreeBSD Foundation
1.1_6
10 Sep 2024 03:57:15
commit hash: b689d061639db8480e916ee7872c67f4141bef79commit hash: b689d061639db8480e916ee7872c67f4141bef79commit hash: b689d061639db8480e916ee7872c67f4141bef79commit hash: b689d061639db8480e916ee7872c67f4141bef79 files touched by this commit
Yasuhiro Kimura (yasu) search for other commits by this committer
security/vuxml: Document multiple vulnerabilities in ClamAV
1.1_6
09 Sep 2024 14:17:13
commit hash: 845d4ea587ac96ef5411beb1ebbdbf334d160718commit hash: 845d4ea587ac96ef5411beb1ebbdbf334d160718commit hash: 845d4ea587ac96ef5411beb1ebbdbf334d160718commit hash: 845d4ea587ac96ef5411beb1ebbdbf334d160718 files touched by this commit
Joe Marcus Clarke (marcus) search for other commits by this committer
security/vuxml: Document recent netatalk3 CVEs
1.1_6
08 Sep 2024 16:11:31
commit hash: cba51eeea7bcb5637d405d1d944fbfabca548579commit hash: cba51eeea7bcb5637d405d1d944fbfabca548579commit hash: cba51eeea7bcb5637d405d1d944fbfabca548579commit hash: cba51eeea7bcb5637d405d1d944fbfabca548579 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
Author: Tom Hukins
security/vuxml: add minio vulnerabilities

PR:		281362
Reported by:	tom@eborcom.com
1.1_6
07 Sep 2024 14:12:07
commit hash: d6899de046917a78fb788f27f7543f7425653cd2commit hash: d6899de046917a78fb788f27f7543f7425653cd2commit hash: d6899de046917a78fb788f27f7543f7425653cd2commit hash: d6899de046917a78fb788f27f7543f7425653cd2 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix firefox version

Reported by:	bapt@
1.1_6
07 Sep 2024 13:49:19
commit hash: da096b3e162fb9f43b510ce0613e6b0a3ad9d37bcommit hash: da096b3e162fb9f43b510ce0613e6b0a3ad9d37bcommit hash: da096b3e162fb9f43b510ce0613e6b0a3ad9d37bcommit hash: da096b3e162fb9f43b510ce0613e6b0a3ad9d37b files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Record firefox vulnerability

CVE-2024-7652
1.1_6
07 Sep 2024 13:43:04
commit hash: a9fe5514faff8a892bc6706f915e7dd929317219commit hash: a9fe5514faff8a892bc6706f915e7dd929317219commit hash: a9fe5514faff8a892bc6706f915e7dd929317219commit hash: a9fe5514faff8a892bc6706f915e7dd929317219 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix topic

Reported by:	jhaley@
Fixes:		05d4a95e7f58
1.1_6
07 Sep 2024 11:44:49
commit hash: e87eba586cd4e505c36dca170e3376d23fda8703commit hash: e87eba586cd4e505c36dca170e3376d23fda8703commit hash: e87eba586cd4e505c36dca170e3376d23fda8703commit hash: e87eba586cd4e505c36dca170e3376d23fda8703 files touched by this commit
Baptiste Daroussin (bapt) search for other commits by this committer
security/vuxml: really fix versionning for firefox

in 8a5936ed301ec363fd7e80762e74bacf0d69fd05 I added the missing
portepoch except I added the wrong one, portepoch is at 2, not at 1

Reported by:	Piotr Smyrak <piotr@smyrak.com>
1.1_6
07 Sep 2024 09:29:09
commit hash: 56ac822d19e0b4f5e647416bde6c8f3e4d4b37f7commit hash: 56ac822d19e0b4f5e647416bde6c8f3e4d4b37f7commit hash: 56ac822d19e0b4f5e647416bde6c8f3e4d4b37f7commit hash: 56ac822d19e0b4f5e647416bde6c8f3e4d4b37f7 files touched by this commit
Jason E. Hale (jhale) search for other commits by this committer
security/vuxml: Add exiv2 >= 0.28.0 and < 0.28.3
1.1_6
06 Sep 2024 20:53:19
commit hash: 19df0c241ebb0ce7da82308959ba920eca4290b5commit hash: 19df0c241ebb0ce7da82308959ba920eca4290b5commit hash: 19df0c241ebb0ce7da82308959ba920eca4290b5commit hash: 19df0c241ebb0ce7da82308959ba920eca4290b5 files touched by this commit
Vladimir Druzenko (vvd) search for other commits by this committer
Author: Stefan Bethke
security/vuxml: Add www/forgejo < 8.0.3 and www/forgejo7 < 7.0.9

PR:	281314
1.1_6
06 Sep 2024 15:24:55
commit hash: ef0f4c5a06cf6e85447a5f1d08529ba00a512e93commit hash: ef0f4c5a06cf6e85447a5f1d08529ba00a512e93commit hash: ef0f4c5a06cf6e85447a5f1d08529ba00a512e93commit hash: ef0f4c5a06cf6e85447a5f1d08529ba00a512e93 files touched by this commit
Cy Schubert (cy) search for other commits by this committer
security/vuxml: Add portepoch

Noted by:	bapt
Pointy hat to:	cy
1.1_6
06 Sep 2024 14:59:12
commit hash: 84f04e5ace71693a7dcc2c48da1624caaf3efd6fcommit hash: 84f04e5ace71693a7dcc2c48da1624caaf3efd6fcommit hash: 84f04e5ace71693a7dcc2c48da1624caaf3efd6fcommit hash: 84f04e5ace71693a7dcc2c48da1624caaf3efd6f files touched by this commit
Cy Schubert (cy) search for other commits by this committer
security/vuxml: devel/binutils: Correct reporting URL
1.1_6
06 Sep 2024 14:52:09
commit hash: 05d4a95e7f58d75a6a2cf7321751c50ee5d42568commit hash: 05d4a95e7f58d75a6a2cf7321751c50ee5d42568commit hash: 05d4a95e7f58d75a6a2cf7321751c50ee5d42568commit hash: 05d4a95e7f58d75a6a2cf7321751c50ee5d42568 files touched by this commit
Cy Schubert (cy) search for other commits by this committer
security/vuxml: Add devel/binutils < 2.43
1.1_6
06 Sep 2024 13:32:13
commit hash: afa1c64ca18da1f259324283f25e281484e50188commit hash: afa1c64ca18da1f259324283f25e281484e50188commit hash: afa1c64ca18da1f259324283f25e281484e50188commit hash: afa1c64ca18da1f259324283f25e281484e50188 files touched by this commit
Vladimir Druzenko (vvd) search for other commits by this committer
Author: Stefan Bethke
www/gitea: Update 1.21.11 → 1.22.2 (fixes security vulnerabilities)

Changelogs:
https://github.com/go-gitea/gitea/releases/tag/v1.22.0
https://github.com/go-gitea/gitea/releases/tag/v1.22.1
https://github.com/go-gitea/gitea/releases/tag/v1.22.2

While here replace spaces with tabs in Makefile.

PR:	281298
MFH:	2024Q3
1.1_6
06 Sep 2024 01:53:39
commit hash: 9893ad73a61fdbcca302b57fc03b5936385484cdcommit hash: 9893ad73a61fdbcca302b57fc03b5936385484cdcommit hash: 9893ad73a61fdbcca302b57fc03b5936385484cdcommit hash: 9893ad73a61fdbcca302b57fc03b5936385484cd files touched by this commit
Li-Wen Hsu (lwhsu) search for other commits by this committer
security/vuxml: Fix the name of CVE-2024-43110

Sponsored by:	The FreeBSD Foundation
1.1_6
05 Sep 2024 18:31:12
commit hash: 2627f3bb50cf816257b805976950e0119082a3cbcommit hash: 2627f3bb50cf816257b805976950e0119082a3cbcommit hash: 2627f3bb50cf816257b805976950e0119082a3cbcommit hash: 2627f3bb50cf816257b805976950e0119082a3cb files touched by this commit
Jason E. Hale (jhale) search for other commits by this committer
security/vuxml: Add www/qt5-webengine < 5.15.17p3
1.1_6
05 Sep 2024 17:00:26
commit hash: b447efc7742e2865d1367a5291e9940d853fffe0commit hash: b447efc7742e2865d1367a5291e9940d853fffe0commit hash: b447efc7742e2865d1367a5291e9940d853fffe0commit hash: b447efc7742e2865d1367a5291e9940d853fffe0 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Firefox multiple vulnerabilities

 CVE-2024-8381:
    * Base Score:	9.8 CRITICAL
    * Vector:		CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

 CVE-2024-8382:
    * Base Score:	8.8 HIGH
    * Vector:		CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

 CVE-2024-8383:
    * Base Score:	7.5 HIGH
    * Vector:		CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

 CVE-2024-8384:
(Only the first 15 lines of the commit message are shown above View all of this commit message)
1.1_6
05 Sep 2024 06:54:04
commit hash: 1c2a42c43ecbef4213e3a65dd67c117cc35e1542commit hash: 1c2a42c43ecbef4213e3a65dd67c117cc35e1542commit hash: 1c2a42c43ecbef4213e3a65dd67c117cc35e1542commit hash: 1c2a42c43ecbef4213e3a65dd67c117cc35e1542 files touched by this commit
Philip Paeps (philip) search for other commits by this committer
security/vuxml: reference FreeBSD-SA-24:13.openssl

Add a reference to FreeBSD-SA-24:13.openssl (issued 2024-09-04) to the
vuxml entry for OpenSSL CVE-2024-6119.

FreeBSD-SA-24:13.openssl affects FreeBSD 14.x
1.1_6
05 Sep 2024 06:54:04
commit hash: b73693f0eedf7faa865abe0d90ac00281ec90d19commit hash: b73693f0eedf7faa865abe0d90ac00281ec90d19commit hash: b73693f0eedf7faa865abe0d90ac00281ec90d19commit hash: b73693f0eedf7faa865abe0d90ac00281ec90d19 files touched by this commit
Philip Paeps (philip) search for other commits by this committer
security/vuxml: add FreeBSD SAs issued 2024-09-04

FreeBSD-SA-24:09.libnv affects all supported releases
FreeBSD-SA-24:10.bhyve affects FreeBSD 14.x
FreeBSD-SA-24:11.ctl affects all supported releases
FreeBSD-SA-24:12.bhyve affects all supported releases
FreeBSD-SA-24:14.umtx affects all supported releases
1.1_6
05 Sep 2024 06:31:38
commit hash: d662435e085f5072f8ef17e924b2d82f395998b0commit hash: d662435e085f5072f8ef17e924b2d82f395998b0commit hash: d662435e085f5072f8ef17e924b2d82f395998b0commit hash: d662435e085f5072f8ef17e924b2d82f395998b0 files touched by this commit
Bernard Spil (brnrd) search for other commits by this committer
security/vuxml: Fix urls in latest OpenSSL vulns

Reported by:	ashish
1.1_6
04 Sep 2024 15:19:31
commit hash: 8a5936ed301ec363fd7e80762e74bacf0d69fd05commit hash: 8a5936ed301ec363fd7e80762e74bacf0d69fd05commit hash: 8a5936ed301ec363fd7e80762e74bacf0d69fd05commit hash: 8a5936ed301ec363fd7e80762e74bacf0d69fd05 files touched by this commit
Baptiste Daroussin (bapt) search for other commits by this committer
security/vuxml: fix firefox version

portepoch should be specified otherwise the version won't ever match the
installed version
1.1_6
03 Sep 2024 17:52:07
commit hash: 1e9ef2db7b49a9dd2d8f160ddacfc4c757c1078fcommit hash: 1e9ef2db7b49a9dd2d8f160ddacfc4c757c1078fcommit hash: 1e9ef2db7b49a9dd2d8f160ddacfc4c757c1078fcommit hash: 1e9ef2db7b49a9dd2d8f160ddacfc4c757c1078f files touched by this commit
Bernard Spil (brnrd) search for other commits by this committer
security/vuxml: Document OpenSSL vulnerabilities
1.1_6
03 Sep 2024 08:01:31
commit hash: 1f7cc421c065f17f0c4b96b31e0bb8b8d3bfc6b8commit hash: 1f7cc421c065f17f0c4b96b31e0bb8b8d3bfc6b8commit hash: 1f7cc421c065f17f0c4b96b31e0bb8b8d3bfc6b8commit hash: 1f7cc421c065f17f0c4b96b31e0bb8b8d3bfc6b8 files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 128.0.6613.119

fix syntax while here

Obtained
from:	https://chromereleases.googleblog.com/2024/09/stable-channel-update-for-desktop.html
1.1_6
30 Aug 2024 22:29:46
commit hash: d679d90261d22bad2a659e78325a9cc54910f54ecommit hash: d679d90261d22bad2a659e78325a9cc54910f54ecommit hash: d679d90261d22bad2a659e78325a9cc54910f54ecommit hash: d679d90261d22bad2a659e78325a9cc54910f54e files touched by this commit
Vladimir Druzenko (vvd) search for other commits by this committer
Author: Stefan Bethke
security/vuxml: Record www/forgejo security vulnerability

Upstream issue:
https://codeberg.org/forgejo/forgejo/pulls/5149

PR:	281133
1.1_6
30 Aug 2024 14:24:05
commit hash: 660b4adde47bd682371ecbffd84505ad83c27215commit hash: 660b4adde47bd682371ecbffd84505ad83c27215commit hash: 660b4adde47bd682371ecbffd84505ad83c27215commit hash: 660b4adde47bd682371ecbffd84505ad83c27215 files touched by this commit
Dave Cottlehuber (dch) search for other commits by this committer
security/vuxml: add rabbitmq-c creds disclosure
1.1_6
30 Aug 2024 10:19:35
commit hash: 893abaacfd20c34b8be43d270defe84308447b37commit hash: 893abaacfd20c34b8be43d270defe84308447b37commit hash: 893abaacfd20c34b8be43d270defe84308447b37commit hash: 893abaacfd20c34b8be43d270defe84308447b37 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Record firefox multiple vulnerabilities

CVE-2024-6608
 * Base Score:	4.3 MEDIUM
 * Vector:	CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L

CVE-2024-6609
 * Base Score:	8.8 HIGH
 * Vector:	CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CVE-2024-6610
 * Base Score:	4.3 MEDIUM
 * Vector:	CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L

CVE-2024-7524
 * Base Score:	6.1 MEDIUM
 * Vector:	CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
1.1_6
30 Aug 2024 10:09:55
commit hash: b823d9ff184bacc1192dbb5053d6a0f15d82d8e4commit hash: b823d9ff184bacc1192dbb5053d6a0f15d82d8e4commit hash: b823d9ff184bacc1192dbb5053d6a0f15d82d8e4commit hash: b823d9ff184bacc1192dbb5053d6a0f15d82d8e4 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Revert "Record firefox multiple vulnerabilites"

This reverts commit 4453cf7eef05f9ac2b27bda7a87afb7da713f1c4.

The 3 CVEs only apply to firefox on iOS.

Reported by:	ronald-lists@klop.ws
1.1_6
29 Aug 2024 17:47:42
commit hash: 4453cf7eef05f9ac2b27bda7a87afb7da713f1c4commit hash: 4453cf7eef05f9ac2b27bda7a87afb7da713f1c4commit hash: 4453cf7eef05f9ac2b27bda7a87afb7da713f1c4commit hash: 4453cf7eef05f9ac2b27bda7a87afb7da713f1c4 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Record firefox multiple vulnerabilites

CVE-2024-43111
 * Base Score:	6.1 MEDIUM
 * Vector:	CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

CVE-2024-43112
 * Base Score:	6.1 MEDIUM
 * Vector:	CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

CVE-2024-43113
 * Base Score:	6.1 MEDIUM
 * Vector:	CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
1.1_6
29 Aug 2024 09:26:38
commit hash: 219a9026710490a385c43f03861cd2ecb21422c5commit hash: 219a9026710490a385c43f03861cd2ecb21422c5commit hash: 219a9026710490a385c43f03861cd2ecb21422c5commit hash: 219a9026710490a385c43f03861cd2ecb21422c5 files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 128.0.6613.114

Obtained
from:	https://chromereleases.googleblog.com/2024/08/stable-channel-update-for-desktop_28.html
1.1_6
29 Aug 2024 07:48:56
commit hash: 3682d8112960f5ae10d452e4c3ef6cfd9aced047commit hash: 3682d8112960f5ae10d452e4c3ef6cfd9aced047commit hash: 3682d8112960f5ae10d452e4c3ef6cfd9aced047commit hash: 3682d8112960f5ae10d452e4c3ef6cfd9aced047 files touched by this commit
Nicola Vitale (nivit) search for other commits by this committer
security/vuxml: Add devel/py-configobj <= 5.0.8
1.1_6
25 Aug 2024 07:54:53
commit hash: 84c4ed42ced67d858f7482c3035e5d1634690ba9commit hash: 84c4ed42ced67d858f7482c3035e5d1634690ba9commit hash: 84c4ed42ced67d858f7482c3035e5d1634690ba9commit hash: 84c4ed42ced67d858f7482c3035e5d1634690ba9 files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerabilities
1.1_6
23 Aug 2024 18:21:17
commit hash: f245e53cda28bdd00447597182ec2f39253739b0commit hash: f245e53cda28bdd00447597182ec2f39253739b0commit hash: f245e53cda28bdd00447597182ec2f39253739b0commit hash: f245e53cda28bdd00447597182ec2f39253739b0 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Record firefox multiple vulnerabilities

CVE-2024-5698
CVE-2024-5697
1.1_6
23 Aug 2024 18:09:50
commit hash: d2c2fbb45db04a1b5985a8daebd8c458d7bcd42dcommit hash: d2c2fbb45db04a1b5985a8daebd8c458d7bcd42dcommit hash: d2c2fbb45db04a1b5985a8daebd8c458d7bcd42dcommit hash: d2c2fbb45db04a1b5985a8daebd8c458d7bcd42d files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Record heap buffer overflow for mcpp

PR:		280962
Reported by:	Älven <alster@vinterdalen.se>
1.1_6
23 Aug 2024 18:02:45
commit hash: 6b27d9ea72167081d6ddde68ce7458cb199b078bcommit hash: 6b27d9ea72167081d6ddde68ce7458cb199b078bcommit hash: 6b27d9ea72167081d6ddde68ce7458cb199b078bcommit hash: 6b27d9ea72167081d6ddde68ce7458cb199b078b files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Record DoS vulnerability for md4c

PR:	280956
Reported by: Älven <alster@vinterdalen.se>
1.1_6
22 Aug 2024 07:47:17
commit hash: 860ccda68e43cdc3bbf55143dd5500575b656d69commit hash: 860ccda68e43cdc3bbf55143dd5500575b656d69commit hash: 860ccda68e43cdc3bbf55143dd5500575b656d69commit hash: 860ccda68e43cdc3bbf55143dd5500575b656d69 files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 128.0.6613.84

Obtained
from:	https://chromereleases.googleblog.com/2024/08/stable-channel-update-for-desktop_21.html
1.1_6
22 Aug 2024 01:35:52
commit hash: 14dc2636e72c396459a6559868033910ee8a4532commit hash: 14dc2636e72c396459a6559868033910ee8a4532commit hash: 14dc2636e72c396459a6559868033910ee8a4532commit hash: 14dc2636e72c396459a6559868033910ee8a4532 files touched by this commit
Sergey A. Osokin (osa) search for other commits by this committer
security/vuxml: document buffer overread vulnerability in nginx

CVE-2024-7347
1.1_6
20 Aug 2024 16:29:21
commit hash: d24e76ca7261706f265baa2161ee5f8a787ee2efcommit hash: d24e76ca7261706f265baa2161ee5f8a787ee2efcommit hash: d24e76ca7261706f265baa2161ee5f8a787ee2efcommit hash: d24e76ca7261706f265baa2161ee5f8a787ee2ef files touched by this commit
Alan Somers (asomers) search for other commits by this committer
security/vuxml: Correct recent postgresql vulnerability

Commit 0c9ebc9a5f6feb6859c23e2ea875f9d4f59b3e38 added VID
48e6d514-5568-11ef-af48-6cc21735f730 for CVE-2024-7348 , but misspelled
the package names.  Fix the spelling.

Approved by:	lwhsu (ports)
Sponsored by:	Axcient
1.1_6
20 Aug 2024 09:20:48
commit hash: cab7616c17ce593a96608ccdbb080a2d1a973a41commit hash: cab7616c17ce593a96608ccdbb080a2d1a973a41commit hash: cab7616c17ce593a96608ccdbb080a2d1a973a41commit hash: cab7616c17ce593a96608ccdbb080a2d1a973a41 files touched by this commit
Nicola Vitale (nivit) search for other commits by this committer
security/vuxml: Add devel/py-Jinja2 <= 3.1.3

Reference:	https://github.com/advisories/GHSA-h75v-3vvj-5mfj

PR:		279350
1.1_6
19 Aug 2024 20:25:39
commit hash: 45ab0e1eb0868171c96fd550f571f31bb38bc98ccommit hash: 45ab0e1eb0868171c96fd550f571f31bb38bc98ccommit hash: 45ab0e1eb0868171c96fd550f571f31bb38bc98ccommit hash: 45ab0e1eb0868171c96fd550f571f31bb38bc98c files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Record firefox spoofing vulnerability

CVE-2024-7518

 * Base Score:	6.5 MEDIUM
 * Vector:	CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
1.1_6
18 Aug 2024 01:45:43
commit hash: a4a193c51b707af88c6112c13cd38c473f87a19dcommit hash: a4a193c51b707af88c6112c13cd38c473f87a19dcommit hash: a4a193c51b707af88c6112c13cd38c473f87a19dcommit hash: a4a193c51b707af88c6112c13cd38c473f87a19d files touched by this commit
Hiroki Tagato (tagattie) search for other commits by this committer
security/vuxml: document electron31 multiple vulnerabilities

Obtained from:	https://github.com/electron/electron/releases/tag/v31.4.0
1.1_6
18 Aug 2024 01:38:42
commit hash: 9434bcc75f7ff202a627f919cc45cee814840da9commit hash: 9434bcc75f7ff202a627f919cc45cee814840da9commit hash: 9434bcc75f7ff202a627f919cc45cee814840da9commit hash: 9434bcc75f7ff202a627f919cc45cee814840da9 files touched by this commit
Hiroki Tagato (tagattie) search for other commits by this committer
security/vuxml: document electron{29,30} multiple vulnerabilities

Obtained from:	https://github.com/electron/electron/releases/tag/v29.4.6,
	 	https://github.com/electron/electron/releases/tag/v30.4.0
1.1_6
17 Aug 2024 07:48:01
commit hash: c81b36005c04e94e2a14cb2e790c68d62241a501commit hash: c81b36005c04e94e2a14cb2e790c68d62241a501commit hash: c81b36005c04e94e2a14cb2e790c68d62241a501commit hash: c81b36005c04e94e2a14cb2e790c68d62241a501 files touched by this commit
Alexander Leidinger (netchild) search for other commits by this committer
security/vuxml: Add an antry for dovecot.
1.1_6
14 Aug 2024 14:22:04
commit hash: 7c5ead6bb4144f63f6da5de2fc35113aad884e25commit hash: 7c5ead6bb4144f63f6da5de2fc35113aad884e25commit hash: 7c5ead6bb4144f63f6da5de2fc35113aad884e25commit hash: 7c5ead6bb4144f63f6da5de2fc35113aad884e25 files touched by this commit
Joseph Mingrone (jrm) search for other commits by this committer
security/vuxml: Document Intel CPU vulnerabilities

Security:	CVE-2024-24853
Security:	CVE-2024-25939
Security:	CVE-2024-24980
Security:	CVE-2023-42667
Security:	CVE-2023-49141
Sponsored by:	The FreeBSD Foundation
1.1_6
13 Aug 2024 15:55:52
commit hash: ad193401a1a5e5ebc68eb6b13ad72f598f8193a5commit hash: ad193401a1a5e5ebc68eb6b13ad72f598f8193a5commit hash: ad193401a1a5e5ebc68eb6b13ad72f598f8193a5commit hash: ad193401a1a5e5ebc68eb6b13ad72f598f8193a5 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Register firefox vulnerabilities

CVE-2024-7527
CVE-2024-7528
CVE-2024-7530
CVE-2024-7521
CVE-2024-7520
CVE-2024-7522
CVE-2024-7525
CVE-2024-7529
CVE-2024-7531
1.1_6
13 Aug 2024 10:02:28
commit hash: 94def2b5804206cee4f0c04366fc09337996c90ccommit hash: 94def2b5804206cee4f0c04366fc09337996c90ccommit hash: 94def2b5804206cee4f0c04366fc09337996c90ccommit hash: 94def2b5804206cee4f0c04366fc09337996c90c files touched by this commit
Alexander Leidinger (netchild) search for other commits by this committer
misc/openhab: update to 4.2.1

This is mainly for security fixes in the CometVisu plugin.
1.1_6
12 Aug 2024 18:42:26
commit hash: 3ecad34586d2449da3df87980f02007a5771d4b7commit hash: 3ecad34586d2449da3df87980f02007a5771d4b7commit hash: 3ecad34586d2449da3df87980f02007a5771d4b7commit hash: 3ecad34586d2449da3df87980f02007a5771d4b7 files touched by this commit
Bernard Spil (brnrd) search for other commits by this committer
security/vuxml: Document vaultwarden vulnerabilities
1.1_6
10 Aug 2024 23:09:56
commit hash: d72a8184c782e00f6023be8c240e3a2d8d8194d1commit hash: d72a8184c782e00f6023be8c240e3a2d8d8194d1commit hash: d72a8184c782e00f6023be8c240e3a2d8d8194d1commit hash: d72a8184c782e00f6023be8c240e3a2d8d8194d1 files touched by this commit
Joseph Mingrone (jrm) search for other commits by this committer
security/vuxml: Document AMD CPU vulnerabilities

Security:	CVE-2023-31315
Sponsored by:	The FreeBSD Foundation
1.1_6
10 Aug 2024 13:26:58
commit hash: 14152bd8f406963459a6527631b74bcedb74987ccommit hash: 14152bd8f406963459a6527631b74bcedb74987ccommit hash: 14152bd8f406963459a6527631b74bcedb74987ccommit hash: 14152bd8f406963459a6527631b74bcedb74987c files touched by this commit
Bernard Spil (brnrd) search for other commits by this committer
security/vuxml: Document Roundcube 1.6.7 vulns
1.1_6
10 Aug 2024 12:07:01
commit hash: d229892deb0ef43b60653bab67a49d8a40665b5fcommit hash: d229892deb0ef43b60653bab67a49d8a40665b5fcommit hash: d229892deb0ef43b60653bab67a49d8a40665b5fcommit hash: d229892deb0ef43b60653bab67a49d8a40665b5f files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add firefox CVE

By monitoring the time certain operations take, an attacker could have guessed
which external protocol handlers were functional on a user's system.
1.1_6
09 Aug 2024 11:14:55
commit hash: 932245df1a0a67401a4e8564ec2cd450690fe44ccommit hash: 932245df1a0a67401a4e8564ec2cd450690fe44ccommit hash: 932245df1a0a67401a4e8564ec2cd450690fe44ccommit hash: 932245df1a0a67401a4e8564ec2cd450690fe44c files touched by this commit
Ashish SHUKLA (ashish) search for other commits by this committer
security/vuxml: Document soft-serve vulnerability
1.1_6
08 Aug 2024 13:02:47
commit hash: 0c9ebc9a5f6feb6859c23e2ea875f9d4f59b3e38commit hash: 0c9ebc9a5f6feb6859c23e2ea875f9d4f59b3e38commit hash: 0c9ebc9a5f6feb6859c23e2ea875f9d4f59b3e38commit hash: 0c9ebc9a5f6feb6859c23e2ea875f9d4f59b3e38 files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/vuxml: Document vulnerability in postgresql
1.1_6
07 Aug 2024 18:48:23
commit hash: 9fc0530113b35de8dbbab5470e3b76909f38e875commit hash: 9fc0530113b35de8dbbab5470e3b76909f38e875commit hash: 9fc0530113b35de8dbbab5470e3b76909f38e875commit hash: 9fc0530113b35de8dbbab5470e3b76909f38e875 files touched by this commit
Li-Wen Hsu (lwhsu) search for other commits by this committer
security/vuxml: Document Jenkins Security Advisory 2024-08-07

Sponsored by:	The FreeBSD Foundation
1.1_6
07 Aug 2024 16:00:29
commit hash: 856a61a3f1b9ca979dde044f051baaffb8ecf640commit hash: 856a61a3f1b9ca979dde044f051baaffb8ecf640commit hash: 856a61a3f1b9ca979dde044f051baaffb8ecf640commit hash: 856a61a3f1b9ca979dde044f051baaffb8ecf640 files touched by this commit
Joe Marcus Clarke (marcus) search for other commits by this committer
security/vuxml: Correct mysql81-server typo

This was bothering me why mysql80-server 8.0.39 was being reported as
vulnerable when anything above 8.0.38 should be fine.  It wasn't until I
looked at the VuXML webpage that I saw mysql81-server had a typo calling
it mysql80-server.
1.1_6
07 Aug 2024 13:26:43
commit hash: 15df20b90d8934dce2662bc03be26faab7a43249commit hash: 15df20b90d8934dce2662bc03be26faab7a43249commit hash: 15df20b90d8934dce2662bc03be26faab7a43249commit hash: 15df20b90d8934dce2662bc03be26faab7a43249 files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerabilities
1.1_6
07 Aug 2024 08:40:12
commit hash: 8fc84d6588edf5776d5a4c6a22f90577d6f370c6commit hash: 8fc84d6588edf5776d5a4c6a22f90577d6f370c6commit hash: 8fc84d6588edf5776d5a4c6a22f90577d6f370c6commit hash: 8fc84d6588edf5776d5a4c6a22f90577d6f370c6 files touched by this commit
Wen Heping (wen) search for other commits by this committer
security/vuxml: Document Django's multiple vulnerabilities
1.1_6
06 Aug 2024 19:02:34
commit hash: 5319b54a9ededb3019700fa2c20bd332bf3741f2commit hash: 5319b54a9ededb3019700fa2c20bd332bf3741f2commit hash: 5319b54a9ededb3019700fa2c20bd332bf3741f2commit hash: 5319b54a9ededb3019700fa2c20bd332bf3741f2 files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 127.0.6533.99

Obtained
from:	https://chromereleases.googleblog.com/2024/08/stable-channel-update-for-desktop.html
1.1_6
31 Jul 2024 19:32:27
commit hash: 81352f435d52e68cf0a001c2ad4d6f9e1a994acccommit hash: 81352f435d52e68cf0a001c2ad4d6f9e1a994acccommit hash: 81352f435d52e68cf0a001c2ad4d6f9e1a994acccommit hash: 81352f435d52e68cf0a001c2ad4d6f9e1a994acc files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 127.0.6533.88

Obtained
from:	https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_30.html
1.1_6
30 Jul 2024 11:22:32
commit hash: dfcb6a2bd8905663520ece3a3a5b614c9275bec6commit hash: dfcb6a2bd8905663520ece3a3a5b614c9275bec6commit hash: dfcb6a2bd8905663520ece3a3a5b614c9275bec6commit hash: dfcb6a2bd8905663520ece3a3a5b614c9275bec6 files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 127.0.6533.72

Obtained
from:	https://chromereleases.googleblog.com/2024/07/stable-channel-update-for-desktop_23.html
1.1_6
29 Jul 2024 06:15:12
commit hash: ce3e9bc7ca66471f27b1745ee0306964b4cfcbd4commit hash: ce3e9bc7ca66471f27b1745ee0306964b4cfcbd4commit hash: ce3e9bc7ca66471f27b1745ee0306964b4cfcbd4commit hash: ce3e9bc7ca66471f27b1745ee0306964b4cfcbd4 files touched by this commit
Zsolt Udvari (uzsolt) search for other commits by this committer
Author: Mathias Monnerville
security/vuxml: document glpi vulnerability

PR:		280313
1.1_6
29 Jul 2024 02:51:30
commit hash: db5b658b3235883291f610de8d4dd13c5f88cad1commit hash: db5b658b3235883291f610de8d4dd13c5f88cad1commit hash: db5b658b3235883291f610de8d4dd13c5f88cad1commit hash: db5b658b3235883291f610de8d4dd13c5f88cad1 files touched by this commit
Danilo G. Baio (dbaio) search for other commits by this committer
security/vuxml: Add irc/znc security issue

PR:		280477
Reported by:	John R <gamer@ryppn.com>

Number of commits found: 7721 (showing only 100 on this page)

[First Page]  «  1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11  »  [Last Page]