notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine

Bot filter coming soon

To deter bots pegging the database CPU to 100%, a bot testing filter to be added to the website. This should not affect newsfeeds etc. Anubis seems light-weight - it is already in use within the FreeBSD Project. This notice is just a heads up in case you see something odd. This notice will be updated after Anubis is installed.

non port: security/vuxml/vuln.xml

Number of commits found: 6273 (showing only 100 on this page)

[First Page]  «  22 | 23 | 24 | 25 | 26 | 27 | 28 | 29 | 30 | 31 | 32  »  [Last Page]

Monday, 6 Jul 2015
12:54 feld search for other commits by this committer
Add iojs as affected package

Security:	864e6f75-2372-11e5-86ff-14dae9d210b8
Original commitRevision:391405 
03:39 feld search for other commits by this committer
Correct bitcoin range for CVE-2015-3641
Original commitRevision:391388 
03:30 feld search for other commits by this committer
Document ansible vulnerabilities

PR:		201359
Original commitRevision:391386 
03:21 feld search for other commits by this committer
Document bitcoin CVE-2015-3641
Original commitRevision:391385 
00:23 feld search for other commits by this committer
add node-devel as affected package
confirmed source code of node 0.11.16 is also vulnerable
Original commitRevision:391380 
00:09 feld search for other commits by this committer
add www/node denial of service vulnerability
no known CVE has been assigned
Original commitRevision:391379 
Friday, 3 Jul 2015
19:17 feld search for other commits by this committer
cups-filters CVE-2015-3279
Original commitRevision:391269 
14:43 tijl search for other commits by this committer
Fix range for linux-c6-openssl
Original commitRevision:391245 
Wednesday, 1 Jul 2015
13:56 kwm search for other commits by this committer
Record libxml2 vulnability

Security:	CVE-2015-1819
Original commitRevision:391063 
13:22 feld search for other commits by this committer
Correct version range for netpbm CVE-2015-3885
Original commitRevision:391057 
00:09 delphij search for other commits by this committer
Document games/wesnoth authentication information disclosure vulnerability.

PR:		201105
Submitted by:	Jason Unovitch
Original commitRevision:391017 
Tuesday, 30 Jun 2015
23:56 amdmi3 search for other commits by this committer
- Document CVE-2015-3258 (cups-filters buffer overflow vulnerability)

PR:		201134
Submitted by:	cyberbotx@cyberbotx.com
Differential Revision:
Original commitRevision:391016 
20:56 delphij search for other commits by this committer
Document ntp remote control message DoS vulnerability.
Original commitRevision:391006 
Friday, 26 Jun 2015
19:13 nox search for other commits by this committer
Document qemu pcnet guest to host escape vulnerability - CVE-2015-3209

PR:		201064
Submitted by:	koobs
Security:	https://vuxml.FreeBSD.org/freebsd/acd5d037-1c33-11e5-be9c-6805ca1d3bb1.html
Original commitRevision:390663 
04:35 delphij search for other commits by this committer
Document CVE-2014-3120, CVE-2014-6439, CVE-2015-1427, CVE-2015-3337,
and CVE-2015-4165 (various Elasticsearch vulnerabilities).

PR:		ports/201008
Submitted by:	Jason Unovitch
Original commitRevision:390615 
Wednesday, 24 Jun 2015
20:35 delphij search for other commits by this committer
Split CVE-2015-4152 to its own entry as the affected port is logstash only.

While there also document CVE-2014-4326 (already fixed) for logstash.

PR:		ports/201001
Submitted by:	Jason Unovitch
Original commitRevision:390519 
20:17 delphij search for other commits by this committer
Add entry for logstash-forwarder/logstash.

PR:		ports/201065
Submitted by:	Jason Unovitch
Original commitRevision:390516 
18:54 jbeich search for other commits by this committer
Aggressively mark more consumers of bundled dcraw as vulnerable

ljpeg_start() originates from dcraw, no need to list every package with
copy of it at the expense of readability.
Original commitRevision:390513 
09:01 xmj search for other commits by this committer
Document linux-*-flashplugin11 CVE.

Reported by:	kwm
Reviewed by:	kwm
Security:	d02f6b01-1a3f-11e5-8bd6-c485083ca99c
Security:	CVE-2015-3113
Sponsored by:	Perceivon Hosting Inc.
Original commitRevision:390473 
Tuesday, 23 Jun 2015
00:15 delphij search for other commits by this committer
Fix entry date.
Original commitRevision:390348 
00:13 delphij search for other commits by this committer
Document rubygem-bson DoS and possible injection vulnerability.

PR:		201061
Submitted by:	Jason Unovitch
Original commitRevision:390347 
Monday, 22 Jun 2015
23:39 delphij search for other commits by this committer
Document 3 vulnerabilities with PHP that affected 4 extensions.

PR:		200926
Submitted by:	Jason Unovitch
Original commitRevision:390344 
23:22 delphij search for other commits by this committer
Reflect version range change after r390340.  While I'm there, also fix
the CVE-2015-4556 entry because it's not yet fixed in the ports tree and
add a reference to the PR while there.

PR:		200980
Submitted by:	Vitaly Magerya (with changes suggested by Jason Unovitch)
Original commitRevision:390341 
22:28 olgeni search for other commits by this committer
Document vulnerabilities in devel/ipython < 3.2.0.
Original commitRevision:390337 
19:23 rene search for other commits by this committer
Document new vulnerabilities in www/chromium < 43.0.2357.130

Obtained
from:	http://googlechromereleases.blogspot.nl/2015/06/chrome-stable-update.html
Original commitRevision:390315 
07:13 delphij search for other commits by this committer
Document rubygem-paperclip validation bypass vulnerabilitiy.

PR:		200979
Submitted by:	Jason Unovitch
Original commitRevision:390279 
07:02 delphij search for other commits by this committer
Document lang/chicken vulnerabilities CVE-2014-9651 and CVE-2015-4556.

PR:		200980
Submitted by:	Jason Unovitch
Original commitRevision:390276 
06:44 delphij search for other commits by this committer
Document cacti multiple vulnerabilities (affects < 0.8.8c) and
multiple XSS/SQL injection vulnerabilities (affects < 0.8.8d).

PR:		200963
Submitted by:	Jason Unovitch
Original commitRevision:390273 
Saturday, 20 Jun 2015
12:11 kuriyama search for other commits by this committer
Add p5-Dancer vuln.
Original commitRevision:390162 
Friday, 19 Jun 2015
00:13 delphij search for other commits by this committer
Document Drupal multiple vulnerabilities.
Original commitRevision:390089 
Wednesday, 17 Jun 2015
21:40 delphij search for other commits by this committer
Document two vulnerabilities of cURL.
Original commitRevision:389995 
17:24 sunpoet search for other commits by this committer
- Document Ruby on Rails multiple vulnerabilities
Original commitRevision:389951 
17:18 delphij search for other commits by this committer
Modify a5f160fa-deee-11e4-99f8-080027ef73ec so it covers ja-mailman too.

Submitted by:	Yasuhito FUTATSUKI
Original commitRevision:389948 
00:24 delphij search for other commits by this committer
Document testdisk multiple vulnerabilities.

PR:		ports/200250
Submitted by:	Jason Unovitch
Original commitRevision:389894 
Tuesday, 16 Jun 2015
00:44 delphij search for other commits by this committer
Document Tomcat multiple vulnerabilities.
Original commitRevision:389784 
Friday, 12 Jun 2015
14:10 brd search for other commits by this committer
Add ossec-hids-* vulnerabilities.

PR:		200801
Submitted by:	Jason Unovitch <jason.unovitch@gmail.com>
Approved by:	swills (mentor)
Original commitRevision:389270 
02:12 zi search for other commits by this committer
- Add vulnerability information for additional ports affected by openssl CVEs in
8305e215-1080-11e5-8ba2-000c2980a9f3
Original commitRevision:389259 
Thursday, 11 Jun 2015
21:35 zi search for other commits by this committer
- Document recent vulnerabilities in security/openssl
Original commitRevision:389254 
15:53 xmj search for other commits by this committer
Document 13 Flash vulnerabilities.
Affected: www/linux-*-flashplugin11.
Original commitRevision:389228 
Wednesday, 10 Jun 2015
18:09 delphij search for other commits by this committer
Document libzmq4 V3 protocol handler protocol downgrade vulnerability.

PR:		200502
Submitted by:	Jason Unovitch
Original commitRevision:389118 
17:34 delphij search for other commits by this committer
Document pgbouncer remote denial of service vulnerability.

PR:		200537
Submitted by:	Jason Unovitch
Original commitRevision:389105 
Tuesday, 9 Jun 2015
23:17 delphij search for other commits by this committer
Document cups multiple vulnerabilities.
Original commitRevision:389008 
08:23 delphij search for other commits by this committer
Document two strongswan vulnerabilities.

PR:		200721
Submitted by:	Jason Unovitch (with changes: wrapped long line and changed
		CVE-2015-3991's coverage to cover only < 5.3.1 to reflect
		the reality).
Original commitRevision:388904 
Monday, 8 Jun 2015
22:33 delphij search for other commits by this committer
Document redis EVAL Lua sandbox escape vulnerability.
Original commitRevision:388888 
17:30 thierry search for other commits by this committer
Add an entry for www/tidy-* heap-buffer-overflow.

PR:		ports/200631
Submitted by:	Walter Hop
Original commitRevision:388847 
Sunday, 7 Jun 2015
21:07 delphij search for other commits by this committer
Fix typo and remove PHP from pcre vulnerabilities, as the bundled pcre
is not used.
Original commitRevision:388784 
20:53 delphij search for other commits by this committer
Document fixed version of pcre in e69af246-0ae2-11e5-90e4-d050996490d0.
Original commitRevision:388780 
Saturday, 6 Jun 2015
18:21 sunpoet search for other commits by this committer
- Update VuXML

PR:		200196
Submitted by:	Jason Unovitch <jason.unovitch@gmail.com>
Original commitRevision:388679 
Friday, 5 Jun 2015
23:54 zi search for other commits by this committer
- Re-add PHP removed in previous commit
- Update pcre to use lt instead of gt
Original commitRevision:388651 
15:42 zi search for other commits by this committer
- Make version matching on the pcre vuln a little more sane
- Remove PHP as the vulnerability appears to be in devel/pcre, not php
Original commitRevision:388586 
Thursday, 4 Jun 2015
18:18 delphij search for other commits by this committer
Document two recent pcre vulnerabilities that can be triggered by
specifically crafted *patterns* and would lead to stack or heap
overflow.
Original commitRevision:388540 
00:35 osa search for other commits by this committer
Update information for graphics/libraw.

PR:	200194
Original commitRevision:388491 
Tuesday, 2 Jun 2015
09:44 marino search for other commits by this committer
security/vuxml: multiple vulnerabilities of wpa_supplicant and hostapd

Security:	CVE-2015-4141
Security:	CVE-2015-4142
Security:	CVE-2015-4143
Security:	CVE-2015-4144
Security:	CVE-2015-4145
Security:	CVE-2015-4146
PR:		200568
Original commitRevision:388313 
02:50 jbeich search for other commits by this committer
Document recent ffmpeg0 vulnerabilities
Original commitRevision:388299 
Monday, 1 Jun 2015
19:37 riggs search for other commits by this committer
Add entry for vulnerable versions of avidemux2 and avidemux26

PR:		200507
Submitted by:	venture37@geeklan.co.uk
Original commitRevision:388266 
18:44 mmoll search for other commits by this committer
security/vuxml: add www/rubygem-rest-client vulnerabilities

PR:		200504
Differential Revision:	https://reviews.freebsd.org/D2699
Submitted by:	Sevan Janiyan <venture37@geeklan.co.uk>
Approved by:	ports-secteam (delphij, eadler)
Security:	CVE-2015-1820
Security:	CVE-2015-3448
Original commitRevision:388251 
07:24 delphij search for other commits by this committer
 - Add kodi to 57325ecf-facc-11e4-968f-b888e347c638 [1]
 - Update entry dates for newly added entry.

PR:		200200 [1]
Submitted by:	Jason Unovitch [1]
Original commitRevision:388203 
05:59 delphij search for other commits by this committer
Reflect CVE-2015-2060 and CVE-2014-9556.

PR:		ports/198955
Submitted by:	Jason Unovitch
Original commitRevision:388200 
Sunday, 31 May 2015
16:07 lwhsu search for other commits by this committer
- Document django vulnerability CVE-2015-3982
Original commitRevision:388116 
08:08 delphij search for other commits by this committer
Extend 57325ecf-facc-11e4-968f-b888e347c638 to cover rawstudio as well.

PR:		200199
Submitted by:	Jason Unovitch
Original commitRevision:388050 
Friday, 29 May 2015
22:20 delphij search for other commits by this committer
Document the issue with proxychains-ng which uses current directory when
searching for its own shared library (CVE-2015-3887).

PR:		200511
Submitted by:	Jason Unovitch
Original commitRevision:387897 
Thursday, 28 May 2015
19:47 delphij search for other commits by this committer
Document wireshark multiple vulnerabilities.
Original commitRevision:387763 
17:46 delphij search for other commits by this committer
Document krb5 requires_preauth bypass in PKINIT-enabled KDC.
Original commitRevision:387746 
Tuesday, 26 May 2015
22:15 delphij search for other commits by this committer
Retrofit document cURL multiple vulnerabilities.
Original commitRevision:387514 
Sunday, 24 May 2015
07:29 delphij search for other commits by this committer
Document cassandra remote code execution vulnerability.

PR:		199091
Submitted by:	Jason Unovitch <jason unovitch gmail com>
Original commitRevision:387252 
07:23 delphij search for other commits by this committer
Fix version range for previous commit.
Original commitRevision:387250 
07:19 delphij search for other commits by this committer
Extend CVE-2015-3456 to cover xen-tools (4.5.0-4.5.0_5: we didn't supported
the feature in earlier version of this port) and VirtualBox cases as well.

PR:		200311
Original commitRevision:387249 
03:43 xmj search for other commits by this committer
document possible vulnerabilities in sysutils/py-salt

PR:		200172
Submitted by:	Sevan Janiyan <venture37@geeklan.co.uk>
Original commitRevision:387242 
Saturday, 23 May 2015
18:25 pi search for other commits by this committer
Add entry for mail/davmail.

PR:		198297
Submitted by:	Jason Unovitch <jason.unovitch@gmail.com>
Approved by:	<john.c.prather@gmail.com> (maintainer (timeout))
Original commitRevision:387178 
08:38 mandree search for other commits by this committer
Document dnsmasq and -devel vulnerabilities (CVE-2015-3294 and one other in rc).
Original commitRevision:387118 
Friday, 22 May 2015
22:49 delphij search for other commits by this committer
Document PCRE and PHP multiple vulnerabilities.
Original commitRevision:387088 
22:15 delphij search for other commits by this committer
Correct PR number.

Submitted by:	jason.unovitch gmail.com
Original commitRevision:387086 
19:06 girgen search for other commits by this committer
Record some minor PostgreSQL sercurity problems.

"This update fixes three security vulnerabilities reported in PostgreSQL over
the past few months. Nether of these issues is seen as particularly urgent.
However, users should examine them in case their installations are vulnerable."

URL:	http://www.postgresql.org/about/news/1587/
Original commitRevision:387053 
Wednesday, 20 May 2015
19:21 delphij search for other commits by this committer
Document CVE-2015-3306 proftpd mod_copy unauthenticated copying of files
vulnerability.
Original commitRevision:386883 
Tuesday, 19 May 2015
19:27 brd search for other commits by this committer
Document vulnerability in security/ipsec-tools.

PR:		200334
Approved by:	bdrewery (mentor)
Original commitRevision:386807 
17:48 rene search for other commits by this committer
Document new vulnerabilities in www/chromium < 43.0.2357.65

Obtained
from:	http://googlechromereleases.blogspot.nl/2015/05/stable-channel-update_19.html
Original commitRevision:386798 
07:54 delphij search for other commits by this committer
Document ClamAV multiple vulnerabilities.
Original commitRevision:386746 
Sunday, 17 May 2015
15:48 mmoll search for other commits by this committer
security/vuxml: Add CVE-2015-3900 entry for devel/ruby-gems

PR:		200264
Differential Revision:	https://reviews.freebsd.org/D2572
Approved by:	mat (mentor)
Security:	CVE-2015-3900
Original commitRevision:386625 
10:06 nox search for other commits by this committer
Document qemu "VENOM" vulnerability - CVE-2015-3456

PR:		200255
PR:		200256
PR:		200257
Submitted by:	venture37@geeklan.co.uk
Security:	http://vuxml.FreeBSD.org/freebsd/2780e442-fc59-11e4-b18b-6805ca1d3bb1.html
Original commitRevision:386591 
Saturday, 16 May 2015
10:00 makc search for other commits by this committer
Document Quassel IRC vulnerability CVE-2015-3427
Original commitRevision:386510 
Friday, 15 May 2015
22:31 truckman search for other commits by this committer
Correct entry for apache-openoffice-* / libreoffice CVE-2015-1774 so
that apache-openoffice-4.1.1_9 is not incorrectly flagged as vulnerable.

Approved by:	mat (mentor, implicit)
Original commitRevision:386487 
12:02 mmoll search for other commits by this committer
security/vuxml: document vulnerability in rubygem-redcarpet <3.2.3

PR:		200195
Differential Revision:	https://reviews.freebsd.org/D2548
Submitted by:	Sevan Janiyan <venture37@geeklan.co.uk>
Approved by:	mat (mentor)
Original commitRevision:386399 
07:12 rodrigo search for other commits by this committer
security/vuxml: Add CVE-2015-3885 entry for graphics/ufraw

PR:		200197
Original commitRevision:386387 
Wednesday, 13 May 2015
18:51 matthew search for other commits by this committer
Record two new phpMyAdmin security vulnerabilities
Original commitRevision:386237 
14:39 xmj search for other commits by this committer
Document multiple vulnerabilities in www/linux-*-flashplugin11.

Security:	CVE-2015-3044
Security:	CVE-2015-3077
Security:	CVE-2015-3078
Security:	CVE-2015-3079
Security:	CVE-2015-3080
Security:	CVE-2015-3081
Security:	CVE-2015-3082
Security:	CVE-2015-3083
Security:	CVE-2015-3084
Security:	CVE-2015-3085
Security:	CVE-2015-3086
Security:	CVE-2015-3087
Security:	CVE-2015-3088
Security:	CVE-2015-3089
Security:	CVE-2015-3090
Security:	CVE-2015-3091
Security:	CVE-2015-3092
Security:	CVE-2015-3093
Original commitRevision:386219 
Tuesday, 12 May 2015
18:24 jbeich search for other commits by this committer
VuXML: document recent mozilla vulnerabilities
Original commitRevision:386166 
10:48 koobs search for other commits by this committer
security/vuxml: Add CVE-2015-0971 entry for security/suricata
Original commitRevision:386133 
Monday, 11 May 2015
18:12 delphij search for other commits by this committer
Revert r385940,r385932,r385864:

The usage of * is actually valid, as pointed out at the FreeBSD porter's
handbook:

https://www.freebsd.org/doc/en/books/porters-handbook/security-notify.html

Which denotes "the smallest version number" (in other words, * < 0).

Requested by:	many
Pointy hat to:	delphij
Original commitRevision:386095 
Sunday, 10 May 2015
20:24 rakuco search for other commits by this committer
Add entry for CVE-2015-3146 in security/libssh.
Original commitRevision:386026 
12:12 ohauer search for other commits by this committer
- fix a second postfix entry

PR:			200089 (followup)
Original commitRevision:385940 
08:28 delphij search for other commits by this committer
Correct version range.

PR:		200089
Original commitRevision:385932 
Saturday, 9 May 2015
08:20 delphij search for other commits by this committer
* is not valid for version number, replace all instances with 0 and bump
modification date.

Submitted by:	Chris Nehren <cnehren tenable com> (version number part)
Original commitRevision:385864 
Friday, 8 May 2015
18:42 jbeich search for other commits by this committer
VuXML: update sqlite3 entry with verbose descriptions. CVE-2015-341[4-6]

PR:		199483
Original commitRevision:385815 
Thursday, 7 May 2015
23:56 truckman search for other commits by this committer
Document HWP filter vulnerability in editors/libreoffice < 4.3.7 and
editors/openoffice < 4.1.2, CVE-2015-1774.

Approved by:	mat (mentor)
Differential Revision:	https://reviews.freebsd.org/D2475
Original commitRevision:385716 
09:21 kwm search for other commits by this committer
Document current and previous wordpress vulnabilities.
Original commitRevision:385603 
Saturday, 2 May 2015
00:59 delphij search for other commits by this committer
Fix version range of two ancient items.

Submitted by:	Chris Nehren <cnehren tenable com>
Original commitRevision:385161 
Friday, 1 May 2015
15:05 brd search for other commits by this committer
Add entry for powerdns and powerdns-recursor.

Approved by:	bdrewery (mentor)
Original commitRevision:385120 
Tuesday, 28 Apr 2015
20:28 rene search for other commits by this committer
Document new vulnerabities in www/chromium < 42.0.2311.135

Obtained
from:	http://googlechromereleases.blogspot.nl/2015/04/stable-channel-update_28.html
Original commitRevision:384939 
Monday, 27 Apr 2015
10:53 rene search for other commits by this committer
Document new vulnerabilities in www/chromium < 42.0.2311.90

Obtained
from:	http://googlechromereleases.blogspot.nl/2015/04/stable-channel-update_14.html
Original commitRevision:384821 
Sunday, 26 Apr 2015
16:32 marino search for other commits by this committer
security/vuxml: Add entry for security/wpa_supplicant

Security:	CVE-2015-1863
PR:		199678
Original commitRevision:384800 

Number of commits found: 6273 (showing only 100 on this page)

[First Page]  «  22 | 23 | 24 | 25 | 26 | 27 | 28 | 29 | 30 | 31 | 32  »  [Last Page]