notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photos
All times are UTC
Ukraine
Port details
vuxml Vulnerability and eXposure Markup Language DTD
1.1_6 security on this many watch lists=33 search for ports that depend on this port Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 1.1_6Version of this port present on the latest quarterly branch.
Maintainer: ports-secteam@FreeBSD.org search for ports maintained by this maintainer
Port Added: 2004-02-12 14:24:23
Last Update: 2026-04-21 11:40:59
Commit Hash: 1ff7aec
People watching this port, also watch:: gnupg, libxml2, nmap, curl, postfix
Also Listed In: textproc
License: BSD2CLAUSE
WWW:
https://vuxml.freebsd.org/
Description:
VuXML (the Vulnerability and eXposure Markup Language) is an XML application for documenting security bugs and corrections within a software package collection such as the FreeBSD Ports Collection. This port installs the DTDs required for validating VuXML documents.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (13 items)
Collapse this list.
  1. /usr/local/share/licenses/vuxml-1.1_6/catalog.mk
  2. /usr/local/share/licenses/vuxml-1.1_6/LICENSE
  3. /usr/local/share/licenses/vuxml-1.1_6/BSD2CLAUSE
  4. @xmlcatmgr share/xml/dtd/vuxml/catalog
  5. @xmlcatmgr share/xml/dtd/vuxml/catalog.xml
  6. share/xml/dtd/vuxml/vuxml-10.dtd
  7. share/xml/dtd/vuxml/vuxml-11.dtd
  8. share/xml/dtd/vuxml/vuxml-model-10.mod
  9. share/xml/dtd/vuxml/vuxml-model-11.mod
  10. share/xml/dtd/vuxml/xml1.dcl
  11. @owner
  12. @group
  13. @mode
Collapse this list.
USE_RC_SUBR (Service Scripts)
  • no SUBR information found for this port
Dependency lines:
  • vuxml>0:security/vuxml
To install the port:
cd /usr/ports/security/vuxml/ && make install clean
To add the package, run one of these commands:
  • pkg install security/vuxml
  • pkg install vuxml
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: vuxml
Flavors: there is no flavor information for this port.
distinfo:
SHA256 (vuxml/vuxml-10.dtd) = 6a635ad2cf45f52361c8c2a29a689157fad4d00519045485bc822d34e04a524e SIZE (vuxml/vuxml-10.dtd) = 2986 SHA256 (vuxml/vuxml-model-10.mod) = 051fed00b52bedde8ee901003fc29f7b95cd904157e31ceef34e6b06f2d1a14a

Expand this list (11 items)

Collapse this list.

SIZE (vuxml/vuxml-model-10.mod) = 10599 SHA256 (vuxml/vuxml-11.dtd) = 12b50061d7bb34cecffede2e08d439e4469324376d55aeb7c73eb6aab0f36af1 SIZE (vuxml/vuxml-11.dtd) = 3063 SHA256 (vuxml/vuxml-model-11.mod) = a40777208625a3029c6f416aeeea733f614802a6a5f26035a4e445a09e61a47c SIZE (vuxml/vuxml-model-11.mod) = 13282 SHA256 (vuxml/xml1.dcl) = 343efa94c4e1302e85e08b2d1791d86e50aac1ecdbc3161daecac100e4726847 SIZE (vuxml/xml1.dcl) = 7372 SHA256 (vuxml/catalog) = 479a69cf02995603443fd1f3b5b33f97811670931f87f53be99a727d664abc66 SIZE (vuxml/catalog) = 549 SHA256 (vuxml/catalog.xml) = 7b2e2850f57264eeba0ccd3d1fc161b9d5ce3071ae0ec51b9da7fa956f2a6509 SIZE (vuxml/catalog.xml) = 2150

Collapse this list.


Packages (timestamps in pop-ups are UTC):
vuxml
ABIaarch64amd64armv6armv7i386powerpcpowerpc64powerpc64le
FreeBSD:13:latest1.1_61.1_61.1_51.1_61.1_6n/an/an/a
FreeBSD:13:quarterly1.1_61.1_61.1_61.1_61.1_6n/an/an/a
FreeBSD:14:latest1.1_61.1_61.1_61.1_61.1_61.1_6-1.1_6
FreeBSD:14:quarterly1.1_61.1_6-1.1_61.1_61.1_61.1_61.1_6
FreeBSD:15:latest1.1_61.1_6n/a1.1_6n/an/a1.1_61.1_6
FreeBSD:15:quarterly1.1_61.1_6n/a-n/an/a--
FreeBSD:16:latest1.1_61.1_6n/a-n/an/a--
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Runtime dependencies:
  1. xmlcatmgr : textproc/xmlcatmgr
  2. xsltproc : textproc/libxslt
  3. VERSION : textproc/xhtml-modularization
  4. xhtml-basic10.dtd : textproc/xhtml-basic
  5. python3.11 : lang/python311
There are no ports dependent upon this port

Configuration Options:
No options to configure
Options name:
security_vuxml
USES:
python:run
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. http://www.vuxml.org/dtd/vuxml-1/
Collapse this list.

Number of commits found: 7983 (showing only 100 on this page)

[First Page]  «  66 | 67 | 68 | 69 | 70 | 71 | 72 | 73 | 74 | 75 | 76  »  [Last Page]

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
1.1_1
12 Mar 2006 21:25:13
Original commit files touched by this commit
remko search for other commits by this committer
Document nfs -- remote denial of service (FreeBSD: SA-06:10)

Approved by:    portmgr (blanket VuXML)
1.1_1
12 Mar 2006 19:57:53
Original commit files touched by this commit
remko search for other commits by this committer
Add OpenSSH Remote Denial of Service (FreeBSD SA-06:09.openssh) to the
vuxml list.

Approved by:    portmgr (Blanket VuXML)
1.1_1
11 Mar 2006 10:38:11
Original commit files touched by this commit
remko search for other commits by this committer
Correct the gpg entry wrt. style.

Approved by:            portmgr (Blanket VuXML)
1.1_1
09 Mar 2006 22:44:23
Original commit files touched by this commit
kuriyama search for other commits by this committer
Update to 1.4.2.2.

Security:       GnuPG does not detect injection of unsigned data
References:    
http://lists.gnupg.org/pipermail/gnupg-announce/2006q1/000216.html
Probbed by:     simon
Approved by:    portmgr (erwin)
1.1_1
09 Mar 2006 10:53:15
Original commit files touched by this commit
vd search for other commits by this committer
Document multimedia/mplayer's heap overflow in the ASF demuxer

Reviewed by:    simon
Approved by:    portmgr (implicit), security-officer (simon)
1.1_1
06 Mar 2006 12:15:26
Original commit files touched by this commit
marius search for other commits by this committer
Add the ssh2-nox11 slave port to the list of ports affected by
VID 594ad3c5-a39b-11da-926c-0800209adf0e.

Prodded by:     Dmitry Pryanishnikov <dmitry@atlantis.dp.ua>
Approved by:    portmgr (erwin)
1.1_1
04 Mar 2006 17:31:07
Original commit files touched by this commit
marius search for other commits by this committer
Document a SSH.COM SFTP server format string vulnerability affecting
the security/ssh2 port.

Approved by:    portmgr (erwin)
1.1_1
04 Mar 2006 15:03:46
Original commit files touched by this commit
naddy search for other commits by this committer
Document GNU tar invalid headers buffer overflow.

Approved by:    portmgr (erwin)
1.1_1
27 Feb 2006 20:16:34
Original commit files touched by this commit
remko search for other commits by this committer
Remove the pinentry entry.  It was gentoo specific and I overlooked
that.

Noticed by:     Dejan Lesjak <dejan dot lesjak at ijs dot si>
Pointyhat:      remko
Approved by:    portmgr (implicit VuXML)
1.1_1
27 Feb 2006 14:36:53
Original commit files touched by this commit
skv search for other commits by this committer
Document Bugzilla [2.*, 2.20.1) vulnerabilities.

Approved by:    security-officer (simon)
Approved by:    portmgr (implicit)
1.1_1
24 Feb 2006 19:56:28
Original commit files touched by this commit
delphij search for other commits by this committer
Document squirrelmail (< 1.4.6) vulnerabilities:
        CVE-2006-0377 (IMAP injection)
        CVE-2006-0195 (XSS)
        CVE-2006-0188 (XSS)

Approved by:    security-officer (simon)
Approved by:    portmgr (implicit)
1.1_1
20 Feb 2006 19:15:17
Original commit files touched by this commit
remko search for other commits by this committer
Remove the latest squid entry, it already existed.

Noticed by:     Thomas-Martin Seck <tmseck at netcologne dot de>
1.1_1
20 Feb 2006 16:03:37
Original commit files touched by this commit
remko search for other commits by this committer
Document gedit -- format string vulnerability.
1.1_1
20 Feb 2006 15:43:53
Original commit files touched by this commit
remko search for other commits by this committer
Add koffice to the RTF import issue.
1.1_1
20 Feb 2006 15:17:49
Original commit files touched by this commit
remko search for other commits by this committer
Documenet WebCalendar -- unauthorized access vulnerability.
1.1_1
20 Feb 2006 14:29:51
Original commit files touched by this commit
remko search for other commits by this committer
Document abiword -- stack based buffer overflow vulnerabilities.
1.1_1
20 Feb 2006 12:26:23
Original commit files touched by this commit
remko search for other commits by this committer
Document pinentry -- local privilege escalation.
Correct previous entry (the entry time was invalid).
1.1_1
20 Feb 2006 12:02:10
Original commit files touched by this commit
remko search for other commits by this committer
Document squid -- dns lookup spoofing.
1.1_1
18 Feb 2006 14:22:42
Original commit files touched by this commit
simon search for other commits by this committer
Document postgresql81-server -- SET ROLE privilege escalation.
1.1_1
17 Feb 2006 09:53:59
Original commit files touched by this commit
simon search for other commits by this committer
Document gnupg -- false positive signature verification.
1.1_1
16 Feb 2006 15:05:14
Original commit files touched by this commit
remko search for other commits by this committer
Document rssh -- privilege escalation vulnerability.
The port will be marked forbidden due to possible
root access.
1.1_1
16 Feb 2006 14:33:21
Original commit files touched by this commit
remko search for other commits by this committer
Document tor -- malicious tor server can locate a hidden service.
1.1_1
16 Feb 2006 14:20:23
Original commit files touched by this commit
remko search for other commits by this committer
Document sudo -- arbitrary command execution.
1.1_1
16 Feb 2006 14:08:27
Original commit files touched by this commit
remko search for other commits by this committer
Document libtomcrypt -- weak signature scheme with ECC keys.
1.1_1
16 Feb 2006 13:19:08
Original commit files touched by this commit
remko search for other commits by this committer
Document mantis -- "view_filters_page.php" cross site scripting vulnerability.
1.1_1
16 Feb 2006 12:59:21
Original commit files touched by this commit
remko search for other commits by this committer
Document phpbb -- multiple vulnerabilities.

Reviewed by:    simon
1.1_1
16 Feb 2006 12:50:36
Original commit files touched by this commit
remko search for other commits by this committer
Document postgresql -- character conversion and tsearch2 vulnerabilities.
1.1_1
16 Feb 2006 09:08:04
Original commit files touched by this commit
remko search for other commits by this committer
Document heartbeat -- insecure temporary file creation vulnerability.
1.1_1
15 Feb 2006 13:25:56
Original commit files touched by this commit
remko search for other commits by this committer
Document kpdf -- heap based buffer overflow
1.1_1
15 Feb 2006 12:53:21
Original commit files touched by this commit
remko search for other commits by this committer
Document perl, webmin, usermin -- perl format string integer wrap vulnerability

PR:             ports/91202
Submitted by:   KOMATSU Shinichiro <koma2 at lovepeers dot org>
                (slightly modified).
1.1_1
15 Feb 2006 12:33:37
Original commit files touched by this commit
remko search for other commits by this committer
Document phpicalendar -- cross site scripting vulnerability and
document phpicalendar -- file disclosure vulnerability [1].

Reviewed by:            simon [1]
Spotted on:             cvs-ports@ [1]
1.1_1
14 Feb 2006 10:35:41
Original commit files touched by this commit
remko search for other commits by this committer
Document FreeBSD -- Infinite loop in SACK handling (FreeBSD SA 06.08)
1.1_1
14 Feb 2006 10:28:54
Original commit files touched by this commit
remko search for other commits by this committer
Document pf -- IP fragment handling panic, FreeBSD SA 06.07
1.1_1
14 Feb 2006 10:09:23
Original commit files touched by this commit
remko search for other commits by this committer
Document FreeBSD -- Local kernel memory disclosure
(FreeBSD SA 06.07).
1.1_1
14 Feb 2006 09:57:32
Original commit files touched by this commit
remko search for other commits by this committer
Document IEEE 802.11 -- buffer overflow (FreeBSD SA 06.05).
1.1_1
14 Feb 2006 08:13:54
Original commit files touched by this commit
remko search for other commits by this committer
Add FreeBSD SA 06.04.ipfw to the vuln.xml list.
1.1_1
07 Feb 2006 20:43:51
Original commit files touched by this commit
simon search for other commits by this committer
Mark ivtools 1.2.3 as fixed for jpeg vulnerabilities.  Note that this
version is not yet in ports, but marking the new version fixed now
make porting a bit simpler.
1.1_1
07 Feb 2006 20:09:16
Original commit files touched by this commit
simon search for other commits by this committer
Document kpopup -- local root exploit and local denial of service.

PR:             ports/92359
Submitted by:   Ion-Mihai "IOnut" Tetcu <itetcu@people.tecnik93.com>
1.1_1
27 Jan 2006 19:07:32
Original commit files touched by this commit
remko search for other commits by this committer
Oops.  Forgot to modify the discovery date.

Spotted by:     simon (again)
1.1_1
27 Jan 2006 12:20:06
Original commit files touched by this commit
remko search for other commits by this committer
Add 4 FreeBSD advisories to the VuXML database.
The other recently released advisories will be
added later today.

o SA-06:03.cpio
o SA-06:02.ee
o SA-06:01.texindex
o SA-05:20.cvsbug
1.1_1
24 Jan 2006 06:38:31
Original commit files touched by this commit
edwin search for other commits by this committer
SHA256ify

Approved by: krion@
1.1_1
23 Jan 2006 21:29:47
Original commit files touched by this commit
brooks search for other commits by this committer
Document local root exploit in SGE.
1.1_1
23 Jan 2006 15:35:22
Original commit files touched by this commit
barner search for other commits by this committer
Document "fetchmail -- crash when bouncing a message" DOS vulnerability.

Reviewed by:    secteam (simon)
1.1_1
14 Jan 2006 23:36:11
Original commit files touched by this commit
simon search for other commits by this committer
- Update description and references for "clamav -- possible heap
  overflow in the UPX code" now that more information is available.
- Remove some EOL whitespace.
1.1_1
10 Jan 2006 14:02:52
Original commit files touched by this commit
ehaupt search for other commits by this committer
Add an entry for clamav/clamav-devel

Reviewed by:    simon (secteam)
1.1_1
09 Jan 2006 21:47:30
Original commit files touched by this commit
simon search for other commits by this committer
Document milter-bogom -- headerless message crash.

Reported by:    Victor Balada Diaz <victor@bsdes.net>
1.1_1
09 Jan 2006 20:49:54
Original commit files touched by this commit
simon search for other commits by this committer
Mark latest bnc version as fixed wrt. to "fd_set -- bitmap index
overflow in multiple applications".

Reported by:    Christian Elmerot <Chreo At chreo , net>
1.1_1
07 Jan 2006 14:56:01
Original commit files touched by this commit
simon search for other commits by this committer
Document two bogofilter vulnerabilities.

Submitted by:   Matthias Andree <matthias.andree@gmx.de>
1.1_1
04 Jan 2006 23:00:39
Original commit files touched by this commit
thierry search for other commits by this committer
Add an entry for rxvt-unicode < 6.3: root privileges were not restored
before the call to openpty(), so the permissions on the pty device node
remain root:wheel 666 after opening a new terminal.

Discovered by:  Ryan Beasley <ryanb (at) rainbowdevilsland.co.uk>
1.1_1
03 Jan 2006 18:40:54
Original commit files touched by this commit
lev search for other commits by this committer
  `ru-apache' and `ru-apache+mod_ssl' was patchet against CAN-2005-3352
 
(http://www.FreeBSD.org/ports/portaudit/9fff8dc8-7aa7-11da-bf72-00123f589060.html)

  Yes, changes are validated with xmllint at this time.
1.1_1
02 Jan 2006 18:32:20
Original commit files touched by this commit
remko search for other commits by this committer
Correct a little typo.
1.1_1
01 Jan 2006 21:40:15
Original commit files touched by this commit
remko search for other commits by this committer
Document apache -- mod_imap cross-site scripting flaw.

I expanded the diff from the PR a bit to denote other
affected apache ports as well.  Therefor mistakes in
that should be redirected to me.

Also bump the copyright year for the vuxml file.

PR:                     ports/91157 (based on)
Submitted by:           KOMATSU Shinichiro <koma2 at lovepeers dot org>
1.1_1
01 Jan 2006 09:03:32
Original commit files touched by this commit
hrs search for other commits by this committer
Fix the affected versions of 9b4facec-6761-11da-99f6-00123ffe8333.

PR:             ports/91156
Submitted by:   KOMATSU Shinichiro (koma2 at lovepeers dot org)
1.1_1
25 Dec 2005 22:23:52
Original commit files touched by this commit
simon search for other commits by this committer
Add missing "</package>" tag from rev. 1.917, which caused the file to
be invalid XML and in turn caused the portaudit database to be only
partially built.

Bump modification date of all entries which had modification date on
the 23'rd to make sure VuXML consumers catch the updates.

Portaudit problem reported by:  Peter Vohmann
Pointy hat to:                  lev
1.1_1
23 Dec 2005 13:33:27
Original commit files touched by this commit
lev search for other commits by this committer
  russian/apache13 and russian/apache13-modssl were updated and new version
doesn't
contain any known vulnerabilities.
1.1_1
23 Dec 2005 12:10:22
Original commit files touched by this commit
simon search for other commits by this committer
Bump modification date for entries touched by last commit.
1.1_1
23 Dec 2005 11:47:24
Original commit files touched by this commit
remko search for other commits by this committer
Update the phpSysInfo entries, PR ports/90849 will solve the documented
issues.

Requested by:           Babak Farrokhi <babak at farrokhi dot net>
1.1_1
23 Dec 2005 10:29:50
Original commit files touched by this commit
remko search for other commits by this committer
Fix another typo in my nbd entry.

Spotted by:             Linus Nordberg <linus at nordberg dot se>
1.1_1
22 Dec 2005 21:25:07
Original commit files touched by this commit
remko search for other commits by this committer
Correct a typo.

Submitted by:           Linus Nordberg <linus at nordberg dot se>
1.1_1
22 Dec 2005 21:08:08
Original commit files touched by this commit
remko search for other commits by this committer
Update the affected range.

Prodded by:     erwin
1.1_1
22 Dec 2005 21:07:15
Original commit files touched by this commit
remko search for other commits by this committer
The previous entry should have read:
Document ndb-server -- buffer overflow vulnerability
1.1_1
22 Dec 2005 21:05:32
Original commit files touched by this commit
remko search for other commits by this committer
:
1.1_1
22 Dec 2005 16:25:10
Original commit files touched by this commit
garga search for other commits by this committer
- Register scponly-4.1 vulnerabilities

PR:             ports/90813
Submitted by:   maintainer
Security:      
https://lists.ccs.neu.edu/pipermail/scponly/2005-December/001027.html
1.1_1
22 Dec 2005 15:49:32
Original commit files touched by this commit
remko search for other commits by this committer
Correct the recent horde entries as per the FDP
(made the entries max 72 chars wide).
1.1_1
19 Dec 2005 15:14:35
Original commit files touched by this commit
barner search for other commits by this committer
Document fetchmail vulnerability:
http://fetchmail.berlios.de/fetchmail-SA-2005-03.txt (CVE-2005-4348)

Reviewed by:    secteam (simon@)
1.1_1
14 Dec 2005 21:51:50
Original commit files touched by this commit
remko search for other commits by this committer
Document the following mantis vulnerabilities:

o "t_core_path" file inclusion vulnerability
o "view_filters_page.php" cross-site scripting vulnerability
1.1_1
11 Dec 2005 21:41:22
Original commit files touched by this commit
thierry search for other commits by this committer
- Add entries for several XSS vulnerabilities in Horde, Kronolith, Nag
  Turba and Mnemo;

- Fix a typo in the previous Horde entry.
1.1_1
09 Dec 2005 12:24:22
Original commit files touched by this commit
mnag search for other commits by this committer
Add curl -- URL buffer overflow vulnerability

Reviewed by:    simon
1.1_1
07 Dec 2005 21:59:01
Original commit files touched by this commit
mnag search for other commits by this committer
Add phpmyadmin -- register_globals emulation "import_blacklist" manipulation
Add phpmyadmin -- XSS vulnerabilities
1.1_1
07 Dec 2005 11:53:08
Original commit files touched by this commit
mnag search for other commits by this committer
Add ffmpeg -- libavcodec buffer overflow vulnerability

Reviewed by:    simon
1.1_1
07 Dec 2005 11:34:34
Original commit files touched by this commit
mnag search for other commits by this committer
Add trac -- search module SQL injection vulnerability

Reviewed by:    simon
1.1_1
01 Dec 2005 16:08:47
Original commit files touched by this commit
mnag search for other commits by this committer
Add drupal -- multiple vulnerabilities

Reviewed by:    simon
1.1_1
30 Nov 2005 20:55:37
Original commit files touched by this commit
simon search for other commits by this committer
Document opera -- multiple vulnerabilities.
1.1_1
30 Nov 2005 20:35:51
Original commit files touched by this commit
simon search for other commits by this committer
Document opera -- command line URL shell command injection.
1.1_1
30 Nov 2005 13:41:54
Original commit files touched by this commit
mnag search for other commits by this committer
Add entry to www/mambo

Reviewed by:    simon
1.1_1
29 Nov 2005 08:46:13
Original commit files touched by this commit
simon search for other commits by this committer
Backup rev 1.9 which should not have been committed since it was just my
local hack.

Note to self: Do not commit before having at least two cups of coffee.

Pointy hat to:  simon
1.1_1
29 Nov 2005 08:41:52
Original commit files touched by this commit
simon search for other commits by this committer
Mark flyspar 0.9.8 as fixed wrt. "flyspray -- cross-site scripting
vulnerabilities" since our port version of 0.9.8 includes update1 which
fixes the issue.

Reported by:    Volodymyr Kostyrko via pav
1.1_1
28 Nov 2005 15:37:04
Original commit files touched by this commit
mnag search for other commits by this committer
Change topic zope28 to zope (www/zope affected too)
Add <cvename> to zope entry
Change CAN-XXXX-XXXX to CVE-XXXX-XXXX

Reviewed by:    simon
1.1_1
27 Nov 2005 17:57:19
Original commit files touched by this commit
hrs search for other commits by this committer
Security fix: several shell scripts included in the Ghostscript package
allow local users to overwrite files via a symlink attack on temporary
files.

Security: CAN-2004-0967
1.1_1
26 Nov 2005 10:58:05
Original commit files touched by this commit
remko search for other commits by this committer
Forced commit to notice that I also added some references to the
latest horde entry.
1.1_1
26 Nov 2005 10:54:22
Original commit files touched by this commit
remko search for other commits by this committer
Standarize the horde -- Cross site scripting vulnerabilities in MIME
viewers entry as per the FDP-primer and the vuxml layout (topic).

Also correct the qpopper vulnerability to match 4.0 and above since
the 2.x range is listed as affected at the moment but has an entirely
different base.  After checking it appears that the information all
point to >= 4.0. [1]

Noticed by:     ache [1]
1.1_1
22 Nov 2005 19:56:54
Original commit files touched by this commit
thierry search for other commits by this committer
Add an entry for cross site scripting vulnerabilities in Horde's MIME
viewers.
1.1_1
16 Nov 2005 14:17:44
Original commit files touched by this commit
mnag search for other commits by this committer
phpmyadmin -- HTTP Response Splitting vulnerability

Reviewed by:    simon
1.1_1
14 Nov 2005 16:57:26
Original commit files touched by this commit
simon search for other commits by this committer
Add CVE name to an old sudo entry.
1.1_1
14 Nov 2005 08:45:09
Original commit files touched by this commit
simon search for other commits by this committer
Update latest phpSysInfo entry to reflect that 2.4 was in fact not fixed
(or rather, had an incorrect "fix").

Reported by:    Christopher Kunz (advisory author)
Security:       http://www.hardened-php.net/advisory_222005.81.html
1.1_1
13 Nov 2005 21:39:56
Original commit files touched by this commit
sem search for other commits by this committer
- Micromedia -> Macromedia
- Standard FDP primer documentation rules apply
- Two dots fixed

Noted by:       remko
1.1_1
13 Nov 2005 21:21:16
Original commit files touched by this commit
sem search for other commits by this committer
- Document phpSysInfo vulnerability
1.1_1
13 Nov 2005 20:59:47
Original commit files touched by this commit
sem search for other commits by this committer
- Document flashplugin vulnerability
1.1_1
10 Nov 2005 11:09:56
Original commit files touched by this commit
sem search for other commits by this committer
- Document p5-Mail-SpamAssassin vulnerabily (alread fixed in ports)
- Document flyspray cross-site scripting vulnerabilities
1.1_1
08 Nov 2005 17:34:40
Original commit files touched by this commit
remko search for other commits by this committer
Update the recent gallery2 and webcalendar entries:

o Add a better topic (description)
o Reword the webcalendar entry to have some more usefull data
o Add references (bid's and CVE names).
1.1_1
07 Nov 2005 20:44:06
Original commit files touched by this commit
remko search for other commits by this committer
Document qpopper -- multiple privilege escalation vulnerabilities.

Note that the current version is not affected anymore.
1.1_1
06 Nov 2005 17:28:04
Original commit files touched by this commit
sem search for other commits by this committer
- Add missed </p> tag [1]
- Modify 594eb447-e398-11d9-a8bd-000cf18bbe54 entry:
  ruby 1.6.x is not affected this vulnerability,
  it have no XMLRPC support.

Pointy hat to:  simon [1]
1.1_1
04 Nov 2005 22:49:34
Original commit files touched by this commit
simon search for other commits by this committer
Add a bit more info from the PEAR advisory about the vulnerability to
make the scope of the vulnerability a bit more clear.

Disussed with:  thierry
1.1_1
04 Nov 2005 22:35:06
Original commit files touched by this commit
simon search for other commits by this committer
The two latest OpenVPN vulnerabilities were both only for 2.0 and
newer, so mark the correctly as such.

Submitted by:   Matthias Andree <matthias.andree@gmx.de>
1.1_1
04 Nov 2005 21:23:28
Original commit files touched by this commit
thierry search for other commits by this committer
Add an entry for pear-PEAR arbitrary code execution vulnerability.
1.1_1
02 Nov 2005 10:16:51
Original commit files touched by this commit
simon search for other commits by this committer
Correct skype entry to match the correct fixed port version number.

Noted by:       Stefan Lambrev, cheffo FreeBSD-BG org
1.1_1
01 Nov 2005 22:49:20
Original commit files touched by this commit
simon search for other commits by this committer
Document two OpenVPN vulnerabilities.

Submitted by:   Matthias Andree <matthias.andree@gmx.de>
1.1_1
01 Nov 2005 21:39:25
Original commit files touched by this commit
naddy search for other commits by this committer
As Peter Jeremy points out, the recent lynx vulnerability also concerns
lynx-ssl.
1.1_1
01 Nov 2005 09:33:41
Original commit files touched by this commit
sem search for other commits by this committer
- Document skype vulnerabilities
- Document PHP vulnerabilities
- Convert first letters in titles from upcase to lowercase
  in my last additions.
1.1_1
01 Nov 2005 08:44:37
Original commit files touched by this commit
sem search for other commits by this committer
- Document CVE-2005-3258:
    Squid FTP Server Response Handling Denial of Service

Number of commits found: 7983 (showing only 100 on this page)

[First Page]  «  66 | 67 | 68 | 69 | 70 | 71 | 72 | 73 | 74 | 75 | 76  »  [Last Page]