notbugIf you buy from Amazon USA, please support us by using this link.
non port: security/vuxml/vuln.xml
SVNWeb

Number of commits found: 5338 (showing only 100 on this page)

1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11  »  [Last Page]

Tue, 13 Nov 2018
[ 23:12 jkim ] Original commit   Revision:484903
484903 security/vuxml/vuln.xml
Document the latest Flash Player vulnerability.

https://helpx.adobe.com/security/products/flash-player/apsb18-39.html
Mon, 12 Nov 2018
[ 20:18 brnrd ] Original commit   Revision:484820
484820 security/vuxml/vuln.xml
security/vuxml: Document openssl vulnerability
[ 19:03 tcberner ] Original commit   Revision:484817
484817 security/vuxml/vuln.xml
security/vuxml: Add entry for devel/kio-extras <= 18.08.3_1

  https://www.kde.org/info/security/advisory-20181012-1.txt

Security:	CVE-2018-19120
Sun, 11 Nov 2018
[ 18:24 sunpoet ] Original commit   Revision:484755
484755 security/vuxml/vuln.xml
Update openjpeg status
[ 18:03 jbeich ] Original commit   Revision:484706
484706 security/vuxml/vuln.xml
security/vuxml: list CVE numbers forgotten in r484705
[ 17:53 jbeich ] Original commit   Revision:484705
484705 security/vuxml/vuln.xml
security/vuxml: mark patch < 2.7.7 as vulnerable

Another copypasta because pkg-audit(8) doesn't grok CPE e.g.,
https://nvd.nist.gov/vuln/search/results?form_type=Advanced&cves=on&cpe_version=cpe:2.3:a:gnu:patch:2.7.6
Sat, 10 Nov 2018
[ 14:02 brnrd ] Original commit   Revision:484612
484612 security/vuxml/vuln.xml
security/vuxml: Update latest openssl entry

 - LibreSSL prior to 2.8 not vulnerable
 - LibreSSL likely not vulnerable to CVE-2018-0735

PR:		233109
Submitted by:	Franco Fichtner <franco opnsense org>
Fri, 9 Nov 2018
[ 10:54 dinoex ] Original commit   Revision:484509
484509 security/vuxml/vuln.xml
- lighttpd - use-after-free vulnerabilities
PR:		232278
Thu, 8 Nov 2018
[ 23:08 girgen ] Original commit   Revision:484486
484486 security/vuxml/vuln.xml
Add info about security vulnerability in PostgreSQL

Security:	CVE-2018-16850
[ 17:29 brnrd ] Original commit   Revision:484465
484465 security/vuxml/vuln.xml
security/vuxml: Mark MariaDB 10.3.10 vulnerable

 - From MariaDB release notes (not released yet)

See: https://mariadb.com/kb/en/library/mariadb-10311-release-notes/

PR:		233068
Tue, 6 Nov 2018
[ 17:24 joneum ] Original commit   Revision:484312
484312 security/vuxml/vuln.xml
Add modified entrey for drupal after changes in r484148

Sponsored by:	Netzkommune GmbH
[ 16:34 joneum ] Original commit   Revision:484303
484303 security/vuxml/vuln.xml
Add entry for nginx and nginx-devel

Sponsored by:	Netzkommune GmbH
Sun, 4 Nov 2018
[ 21:16 acm ] Original commit   Revision:484148
484148 security/vuxml/vuln.xml
- Add www/drupal8 entry
Thu, 1 Nov 2018
[ 22:00 flo ] Original commit   Revision:483744
483744 security/vuxml/vuln.xml
Document gitea vulnerability

PR:		232897
Submitted by:	stb@lassitu.de (maintainer)
[ 19:20 sunpoet ] Original commit   Revision:483730
483730 security/vuxml/vuln.xml
Document curl vulnerability
[ 19:06 mfechner ] Original commit   Revision:483702
483702 security/vuxml/vuln.xml
Document gilab-ce vulnerability.

Approved by:	mentors (implicit)
[ 14:05 sunpoet ] Original commit   Revision:483668
483668 security/vuxml/vuln.xml
Document rubygem-loofah vulnerability
[ 12:16 brnrd ] Original commit   Revision:483658
483658 security/vuxml/vuln.xml
security/vuxml: Update latest OpenSSL entry

 - As per a LibreSSL dev, also vulnerable
Mon, 29 Oct 2018
[ 18:33 mfechner ] Original commit   Revision:483395
483395 security/vuxml/vuln.xml
Documented several security issues with www/gitlab-ce.

Approved by:	mentors (implicit)
[ 17:51 brnrd ] Original commit   Revision:483391
483391 security/vuxml/vuln.xml
security/vuxml: Document OpenSSL 1.1.x vulnerabilities
Sun, 28 Oct 2018
[ 16:26 riggs ] Original commit   Revision:483315
483315 security/vuxml/vuln.xml
Document potential remote code execution in net/liveMedia (CVE-2018-4013)
Sat, 27 Oct 2018
[ 17:04 leres ] Original commit   Revision:483151
483151 security/vuxml/vuln.xml
Mark mini_httpd < 1.30 as vulnerable as per:

    http://acme.com/updates/archive/211.html

The issue is arbitrary file disclosure in some circumstances.

Reviewed by:	matthew (mentor)
Approved by:	matthew (mentor)
Differential Revision:	https://reviews.freebsd.org/D17718
[ 08:06 woodsb02 ] Original commit   Revision:483113
483113 security/vuxml/vuln.xml
Add entry for sysutils/py-salt

PR:		232663
Reported by:	Christer Edwards <christer.edwards@gmail.com>
Security:	https://www.vuxml.org/freebsd/4f7c6af3-6a2c-4ead-8453-04e509688d45.html
Tue, 23 Oct 2018
[ 17:32 jbeich ] Original commit   Revision:482849
482849 security/vuxml/vuln.xml
security/vuxml: mark firefox < 63 as vulnerable
Mon, 22 Oct 2018
[ 16:21 joneum ] Original commit   Revision:482750
482750 security/vuxml/vuln.xml
Add entry for www/drupal7

Sponsored by:	Netzkommune GmbH
Sat, 20 Oct 2018
[ 14:57 sunpoet ] Original commit   Revision:482553
482553 security/vuxml/vuln.xml
Document ruby vulnerability

PR:		232427 (based on)
Submitted by:	Yasuhiro KIMURA <yasu@utahime.org>
[ 07:58 brnrd ] Original commit   Revision:482473
482473 security/vuxml/vuln.xml
security/vuxml: Document 2018-10 MySQL vulnerabilities
Fri, 19 Oct 2018
[ 16:06 joneum ] Original commit   Revision:482434
482434 security/vuxml/vuln.xml
Add entry for www/matomo

Sponsored by:	Netzkommune GmbH
Wed, 17 Oct 2018
[ 15:54 feld ] Original commit   Revision:482299
482299 security/vuxml/vuln.xml
Document libssh vulnerability

PR:		232344
Security:	CVE-2018-10933
Mon, 15 Oct 2018
[ 11:29 mfechner ] Original commit   Revision:482151
482151 security/vuxml/vuln.xml
Document security vulnerability with devel/libgit2 < 0.27.5.

Approved by:	mentors (implicit)
Thu, 11 Oct 2018
[ 19:54 thierry ] Original commit   Revision:481849
481849 security/vuxml/vuln.xml
Add an entry for a memory leak bug in net-im/tox < v0.2.8.
[ 15:28 joneum ] Original commit   Revision:481836
481836 security/vuxml/vuln.xml
Add entry for www/gitea

PR:		232123
Reported by:	maintainer
Sponsored by:	Netzkommune GmbH
[ 13:42 lwhsu ] Original commit   Revision:481826
481826 security/vuxml/vuln.xml
Document Jenkins Security Advisory 2018-10-10

Sponsored by:	The FreeBSD Foundation
Tue, 9 Oct 2018
[ 21:13 dinoex ] Original commit   Revision:481672
481672 security/vuxml/vuln.xml
- add entry for tinc and tinc-devel
Fri, 5 Oct 2018
[ 22:06 mfechner ] Original commit   Revision:481305
481305 security/vuxml/vuln.xml
Document several vulnerabilities for gitlab-ce.

Approved by:	mentors (implicit)
Thu, 4 Oct 2018
[ 01:32 ler ] Original commit   Revision:481195
481195 security/vuxml/vuln.xml
security/vuxml: add multiple vulnerabilities in security/clamav.

PR:		231924
Submitted by:	yasu@utahime.org
Wed, 3 Oct 2018
[ 13:46 wen ] Original commit   Revision:481160
481160 security/vuxml/vuln.xml
- Document django21 vulnerability
[ 01:01 jbeich ] Original commit   Revision:481141
481141 security/vuxml/vuln.xml
security/vuxml: mark firefox < 62.0.3 as vulnerable
Mon, 1 Oct 2018
[ 19:02 mfechner ] Original commit   Revision:481052
481052 security/vuxml/vuln.xml
Document several vulnerabilities for gitlab-ce.

Approved by:	mentors (implicit)
[ 14:53 swills ] Original commit   Revision:481040
481040 security/vuxml/vuln.xml
Document pango DoS
Sun, 30 Sep 2018
[ 06:48 joneum ] Original commit   Revision:480936
480936 security/vuxml/vuln.xml
Add entry for www/serendipity

Sponsored by:	Netzkommune GmbH
Sat, 29 Sep 2018
[ 23:26 kbowling ] Original commit   Revision:480931
480931 security/vuxml/vuln.xml
security/vuxml: Add entry for net-p2p/bitcoin CVE-2018-17144

Add VuXML for r480928

Approved by:	timur (mentor)
Differential Revision:	https://reviews.freebsd.org/D17360
Wed, 26 Sep 2018
[ 18:09 zeising ] Original commit   Revision:480751
480751 security/vuxml/vuln.xml
Document spamassassin - multiple vulnerabilities

Document spamassassin vulnerabilities, as found in this announcement:
https://seclists.org/oss-sec/2018/q3/242
[ 13:07 lme ] Original commit   Revision:480735
480735 security/vuxml/vuln.xml
security/vuxml:

Document wesnoth vulnerability
[ 12:49 brnrd ] Original commit   Revision:480732
480732 security/vuxml/vuln.xml
security/vuxml: Add Apache 2.4 vulnerability
Tue, 25 Sep 2018
[ 16:09 sunpoet ] Original commit   Revision:480683
480683 security/vuxml/vuln.xml
Update OpenJPEG vulnerability

CVE-2018-5785 was fixed in r480624.
[ 14:07 tobik ] Original commit   Revision:480663
480663 security/vuxml/vuln.xml
Document mantis vulnerability
Sat, 22 Sep 2018
[ 16:50 sunpoet ] Original commit   Revision:480422
480422 security/vuxml/vuln.xml
Document rubygem-smart_proxy_dynflow vulnerability
[ 14:05 wen ] Original commit   Revision:480386
480386 security/vuxml/vuln.xml
- Document mediawiki's multiple vulnerabilities
Fri, 21 Sep 2018
[ 23:03 jbeich ] Original commit   Revision:480328
480328 security/vuxml/vuln.xml
security/vuxml: mark firefox < 62.0.2 as vulnerable
[ 08:17 madpilot ] Original commit   Revision:480237
480237 security/vuxml/vuln.xml
Document new asterisk vulnerability.
Tue, 18 Sep 2018
[ 10:48 wen ] Original commit   Revision:480008
480008 security/vuxml/vuln.xml
- Document moodle multiple vulnerabilities
Sat, 15 Sep 2018
[ 23:40 ler ] Original commit   Revision:479848
479848 security/vuxml/vuln.xml
security/vuxml: add Joomla3 Vulnerabilities
[ 08:54 jbeich ] Original commit   Revision:479825
479825 security/vuxml/vuln.xml
security/vuxml: mark waterfox < 56.2.3 as vulnerable
Thu, 13 Sep 2018
[ 21:56 sunpoet ] Original commit   Revision:479743
479743 security/vuxml/vuln.xml
Update OpenJPEG vulnerability

Only CVE-2017-17479 and CVE-2017-17480 were fixed in r477112.

Notified by:	tijl
[ 19:08 joneum ] Original commit   Revision:479688
479688 security/vuxml/vuln.xml
Document vulnerability in www/mybb

Sponsored by:	Netzkommune GmbH
Wed, 12 Sep 2018
[ 13:57 feld ] Original commit   Revision:479603
479603 security/vuxml/vuln.xml
Document FreeBSD-SA-18:12.elf
Tue, 11 Sep 2018
[ 20:36 yuri ] Original commit   Revision:479568
479568 security/vuxml/vuln.xml
Add VuXML vulnerability CVE-2018-15598 for traefik.

Port update is already MFHed.
[ 18:43 jkim ] Original commit   Revision:479541
479541 security/vuxml/vuln.xml
Document the latest Flash Player vulnerability.

https://helpx.adobe.com/security/products/flash-player/apsb18-31.html
[ 16:13 feld ] Original commit   Revision:479532
479532 security/vuxml/vuln.xml
Improve formatting
Also add plexmediaserver-plexpass package as vulnerable
[ 16:10 feld ] Original commit   Revision:479531
479531 security/vuxml/vuln.xml
Document Plex vulnerability

Security:	CVE-2018-13415
[ 10:39 adridg ] Original commit   Revision:479521
479521 security/vuxml/vuln.xml
The 0.18 release of x11/sddm contains a fix for a security error
that allows unlocking a session without a password, if the
ReuseSession configuration option is set to true. The default
configuration sets it to false.

I'm setting the version to < 0.17.0_1 here, because I'm going
to update 0.17 with backports rather than pull in 0.18 (there's
a lot more work in that update, because of reorganisation upstream
and none of our patches apply anymore).

PR:		230029
Reported by:	doctorwhoguy@gmail.com
[ 09:53 joneum ] Original commit   Revision:479517
479517 security/vuxml/vuln.xml
Document vulnerability in www/mybb

Sponsored by:	Netzkommune GmbH
Sun, 9 Sep 2018
[ 17:46 flo ] Original commit   Revision:479323
479323 security/vuxml/vuln.xml
Document gitea vulnerability.

PR:		231180
Submitted by:	stb@lassitu.de
Security:	7c750960-b129-11e8-9fcd-080027f43a02
Fri, 7 Sep 2018
[ 03:49 cy ] Original commit   Revision:479178
479178 security/vuxml/vuln.xml
Remove duplicate entry for WPA EAPOL vulnerability. Use r477829 instead
as its version range is more complete.

PR:		231054
Reported by:	000.fbsd@quip.cz
Thu, 6 Sep 2018
[ 06:53 yuri ] Original commit   Revision:479088
479088 security/vuxml/vuln.xml
Add VuXML entry for the fixed CVE-2017-11114 in www/links

PR:		230849
Submitted by:	Dmitri Goutnik <dg@syrec.org>
Wed, 5 Sep 2018
[ 23:30 sunpoet ] Original commit   Revision:479049
479049 security/vuxml/vuln.xml
Document curl vulnerability
[ 20:39 jbeich ] Original commit   Revision:479043
479043 security/vuxml/vuln.xml
security/vuxml: mark firefox < 62 as vulnerable
Tue, 4 Sep 2018
[ 12:47 tijl ] Original commit   Revision:478953
478953 security/vuxml/vuln.xml
Document Ghostscript -dSAFER sandbox bypass vulnerabilities.

PR:		231148
Security:	https://www.kb.cert.org/vuls/id/332928
Fri, 31 Aug 2018
[ 23:47 swills ] Original commit   Revision:478626
478626 security/vuxml/vuln.xml
Document grafana issues

PR:		 231019
PR:		 231020
PR:		 231021
PR:		 231022
Thu, 30 Aug 2018
[ 20:47 mfechner ] Original commit   Revision:478494
478494 security/vuxml/vuln.xml
Document several vulnerabilities for gitlab-ce.

Approved by:	mentors (implicit)
[ 06:33 tota ] Original commit   Revision:478434
478434 security/vuxml/vuln.xml
- Fix range for ja-mailman in CVE-2018-13796
[ 00:09 leres ] Original commit   Revision:478426
478426 security/vuxml/vuln.xml
Mark bro < 2.5.5 as vulnerable as per:

    https://www.bro.org/download/NEWS.bro.html

Reviewed by:	ler (mentor)
Approved by:	ler (mentor)
Differential Revision:	https://reviews.freebsd.org/D16948
Mon, 27 Aug 2018
[ 11:19 bhughes ] Original commit   Revision:478191
478191 security/vuxml/vuln.xml
security/vuxml: document Node.js vulnerabilities

https://nodejs.org/en/blog/vulnerability/august-2018-security-releases/

Sponsored by:	Miles AS
Fri, 24 Aug 2018
[ 10:34 tobik ] Original commit   Revision:477955
477955 security/vuxml/vuln.xml
Fix databases/mantis entry after r477954
Thu, 23 Aug 2018
[ 05:34 matthew ] Original commit   Revision:477855
477855 security/vuxml/vuln.xml
Apparently you can have more than on <name></name> item inside a
<package></packge> group.  Also, re-add plain 'phpMyAdmin' without a
flavour suffix as a possible package name -- it's only been a few
months since flavourization, and there may well be some older installs
still out there.  (Although those should already be flagging for the
previous PMASA)

Reported by:	mat
Wed, 22 Aug 2018
[ 21:58 matthew ] Original commit   Revision:477842
477842 security/vuxml/vuln.xml
Third time's the charm.  Now capitalize the package names correctly.
[ 21:40 matthew ] Original commit   Revision:477830
477830 security/vuxml/vuln.xml
phpMyAdmin is flavoured now: use the correct package names.
[ 21:28 feld ] Original commit   Revision:477829
477829 security/vuxml/vuln.xml
Document FreeBSD-SA-18:11.hostapd
[ 21:28 feld ] Original commit   Revision:477828
477828 security/vuxml/vuln.xml
Document FreeBSD-SA-18:10.ip
[ 21:27 feld ] Original commit   Revision:477827
477827 security/vuxml/vuln.xml
Document FreeBSD-SA-18:09.l1tf
[ 21:03 swills ] Original commit   Revision:477824
477824 security/vuxml/vuln.xml
Document gogs open redirect issue

PR:		230800
Submitted by:	Dmitri Goutnik <dg@syrec.org>
[ 20:32 matthew ] Original commit   Revision:477823
477823 security/vuxml/vuln.xml
Document the latest phpMyAdmin security advisory PMASA-2018-5
[ 19:28 zeising ] Original commit   Revision:477811
477811 security/vuxml/vuln.xml
Document libX11 vulnerabilities.

CVE-2018-14598
CVE-2018-14599
CVE-2018-14600

https://lists.x.org/archives/xorg-announce/2018-August/002915.html
Tue, 21 Aug 2018
[ 17:53 dch ] Original commit   Revision:477726
477726 security/vuxml/vuln.xml
security/vuxml: add CVE-2018-11769 for databases/couchdb versions < 2.2.0

Reported by:	Apache CouchDB PMC
Approved by:	jrm
Security:	CVE-2018-11769
Security:	https://lists.apache.org/thread.html/1052ad7a1b32b9756df4f7860f5cb5a96b739f444117325a19a4bf75@%3Cdev.couchdb.apache.org%3E
Differential Revision:	https://reviews.freebsd.org/D16820
Fri, 17 Aug 2018
[ 21:07 swills ] Original commit   Revision:477448
477448 security/vuxml/vuln.xml
Document issue in security/botan2

PR:		230666
Wed, 15 Aug 2018
[ 21:01 lwhsu ] Original commit   Revision:477284
477284 security/vuxml/vuln.xml
Document Jenkins Security Advisory 2018-08-15

Sponsored by:	The FreeBSD Foundation
Tue, 14 Aug 2018
[ 20:21 cy ] Original commit   Revision:477201
477201 security/vuxml/vuln.xml
Document WPA unauthenticated encrypted EAPOL-Key data vunlerability.

Security:	CVE-2018-14526
[ 19:08 jkim ] Original commit   Revision:477197
477197 security/vuxml/vuln.xml
Document the latest Flash Player vulnerabilities.

https://helpx.adobe.com/security/products/flash-player/apsb18-25.html
[ 13:37 timur ] Original commit   Revision:477152
477152 security/vuxml/vuln.xml
Add an entry about multiple Samba vulnerabilities:

* CVE-2018-1139  (Weak authentication protocol allowed.)
* CVE-2018-1140  (Denial of Service Attack on DNS and LDAP server.)
* CVE-2018-10858 (Insufficient input validation on client directory
  listing in libsmbclient.)
* CVE-2018-10918 (Denial of Service Attack on AD DC DRSUAPI server.)
* CVE-2018-10919 (Confidential attribute disclosure from the AD LDAP
  server.)

Security:	CVE-2018-1139
		CVE-2018-1140
		CVE-2018-10858
		CVE-2018-10918
		CVE-2018-10919
Sponsored by:	iXsystems Inc.
Sun, 12 Aug 2018
[ 17:35 sunpoet ] Original commit   Revision:477030
477030 security/vuxml/vuln.xml
Document GraphicsMagick vulnerability
[ 13:44 tobik ] Original commit   Revision:476991
476991 security/vuxml/vuln.xml
Document lang/chicken vulerabilities
[ 07:55 flo ] Original commit   Revision:476973
476973 security/vuxml/vuln.xml
Document www/gitea vulnerability, with the scarce details provided by Gitea

PR:		230512
Fri, 10 Aug 2018
[ 14:35 tijl ] Original commit   Revision:476835
476835 security/vuxml/vuln.xml
Document mbed TLS Security Advisory 2018-02.

Security:	https://tls.mbed.org/tech-updates/security-advisories/mbedtls-security-advisory-2018-02
[ 08:56 girgen ] Original commit   Revision:476813
476813 security/vuxml/vuln.xml
Add entry about postgresql vulnerabilites
Wed, 8 Aug 2018
[ 19:07 brnrd ] Original commit   Revision:476657
476657 security/vuxml/vuln.xml
security/vuxml: Document Oracle's Crititcal Patch Update
Tue, 7 Aug 2018
[ 13:18 girgen ] Original commit   Revision:476594
476594 security/vuxml/vuln.xml
Add vulnerability information about apache-xml-security-c
Mon, 6 Aug 2018
[ 21:26 feld ] Original commit   Revision:476550
476550 security/vuxml/vuln.xml
Document FreeBSD-SA-18:08.tcp
[ 03:23 koobs ] Original commit   Revision:476487
476487 security/vuxml/vuln.xml
security/py-cryptography: Add tag forgery vulnerability

PR:	226906
Sun, 5 Aug 2018
[ 11:56 riggs ] Original commit   Revision:476408
476408 security/vuxml/vuln.xml
Document CVE-2018-14912 in devel/cgit before version 1.2.1

PR:		230360
Submitted by:	yasu@utahime.org

Number of commits found: 5338 (showing only 100 on this page)

1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11  »  [Last Page]

Login
User Login
Create account

Servers and bandwidth provided by
New York Internet, SuperNews, and RootBSD

This site
What is FreshPorts?
About the authors
Issues
FAQ
How big is it?
The latest upgrade!
Privacy
Forums
Blog
Contact

Search
Enter Keywords:
 
more...

Latest Vulnerabilities
linux-flashplayerNov 13
kio-extrasNov 12
opensslNov 12
openjpeg*Nov 11
patch*Nov 11
libressl*Nov 10
libressl-devel*Nov 10
openssl-devel*Nov 10
openssl111*Nov 10
lighttpdNov 09
mariadb100-server*Nov 08
mariadb101-server*Nov 08
mariadb102-server*Nov 08
mariadb103-server*Nov 08
mariadb55-server*Nov 08

15 vulnerabilities affecting 148 ports have been reported in the past 14 days

* - modified, not new

All vulnerabilities

Last updated:
2018-11-13 23:13:01


Ports
Home
Categories
Deleted ports
Sanity Test Failures
Newsfeeds

Statistics
Graphs
NEW Graphs (Javascript)
Traffic

Calculated hourly:
Port count 35967
Broken 114
Deprecated 588
Ignore 380
Forbidden 3
Restricted 162
No CDROM 74
Vulnerable 39
Expired 5
Set to expire 561
Interactive 0
new 24 hours 2
new 48 hours4
new 7 days20
new fortnight49
new month149

Servers and bandwidth provided by
New York Internet, SuperNews, and RootBSD
Valid HTML, CSS, and RSS.
Copyright © 2000-2018 Dan Langille. All rights reserved.