notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine

Bot filter coming soon

To deter bots pegging the database CPU to 100%, a bot testing filter to be added to the website. This should not affect newsfeeds etc. Anubis seems light-weight - it is already in use within the FreeBSD Project. This notice is just a heads up in case you see something odd. This notice will be updated after Anubis is installed.

non port: security/vuxml/vuln.xml

Number of commits found: 6273 (showing only 100 on this page)

[First Page]  «  32 | 33 | 34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42  »  [Last Page]

Monday, 23 Apr 2012
23:41 delphij search for other commits by this committer
Document dokuwiki CSRF vulnerability.
Original commit
20:20 flo search for other commits by this committer
Document multiple asterisk vulnerabilities
Original commit
15:26 eadler search for other commits by this committer
Inform users of security vulns in wordpress

PR:             ports/167157
Original commit
Sunday, 22 Apr 2012
18:30 eadler search for other commits by this committer
Unbreak vuxml by removing stray 'p'

Submitted by:   vuxml buildbot
Original commit
18:02 danfe search for other commits by this committer
Fix formatting in the first 10% of VuXML database file.
Original commit
15:22 danfe search for other commits by this committer
Fix whitespace: run through unexpand(1), spelling, wrap overly long lines.
Original commit
Saturday, 21 Apr 2012
23:43 eadler search for other commits by this committer
Inform users about the recent openssl vuln

Reviewed by:    dinoex
Original commit
17:37 ohauer search for other commits by this committer
- security update to bugzilla 3.0.9 and 4.0.6
- update russian/bugzilla3-ru template
- patch german templates so revision match and no warning is displayed
- add vuxml entry

Approved by:    skv (implicit)
Security:       https://bugzilla.mozilla.org/show_bug.cgi?id=728639
                https://bugzilla.mozilla.org/show_bug.cgi?id=745397
                CVE-2012-0465
                CVE-2012-0466
Original commit
Thursday, 19 Apr 2012
03:12 jgh search for other commits by this committer
- document typo3 vulnerability

PR:     ports/167029
Original commit
Monday, 16 Apr 2012
15:34 eadler search for other commits by this committer
Add information about the recent nginx security vulnerability

PR:             ports/166990
Submitted by:   rodrigo osorio <rodrigo@bebik.net>
Original commit
Saturday, 14 Apr 2012
16:45 flo search for other commits by this committer
Document phpmyfaq -- Remote PHP Code Execution Vulnerability
Original commit
Thursday, 12 Apr 2012
15:48 swills search for other commits by this committer
- Slight cleanups for my puppet entry
Original commit
Wednesday, 11 Apr 2012
01:44 swills search for other commits by this committer
- Document security issue with Puppet
- Update puppet for security issue

Security:       607d2108-a0e4-423a-bf78-846f2a8f01b0
Original commit
Tuesday, 10 Apr 2012
21:16 delphij search for other commits by this committer
Document samba root code execution vulnerability.
Original commit
05:32 ohauer search for other commits by this committer
- document bugzilla Cross-Site Request Forgery
Original commit
Monday, 9 Apr 2012
23:15 eadler search for other commits by this committer
Document recent flash player vulnerabilities

Reviewed by:    nox
Original commit
Sunday, 8 Apr 2012
22:27 zi search for other commits by this committer
- Document vulnerability in graphics/png (CVE-2011-3048)
- Fix wording/spelling in 462e2d6c-8017-11e1-a571-bcaec565249c

Feature safe:   yes
Original commit
07:47 remko search for other commits by this committer
As requested by eadler, revert the commit about the move of the
<!-- EOF --> tag. I cannot reproduce the error anymore, so it
might have been the reviewal entry or something else was locally
wrong.

I did a make validate before committing this to make sure it's
OK at this point, if someone encounters the same problem, please
let us know!

Feature safe:   yes
Original commit
Friday, 6 Apr 2012
18:44 kwm search for other commits by this committer
Document freetype 2 multiple vulnabilities.

Feature safe:   yes
Original commit
16:07 nox search for other commits by this committer
- Fix vulnerability CVE-2011-1429.
- Add a patch to the mutt pager that handles non-breaking space
  characters (0xA0) in an UTF8 environment correctly.
- Bump PORTREVISION.

PR:             ports/166659
Submitted by:   Udo Schweigert <udo.schweigert@siemens.com> (maintainer)
Security:      
http://www.freebsd.org/ports/portaudit/49314321-7fd4-11e1-9582-001b2134ef46.html
Feature safe:   yes
Original commit
Thursday, 5 Apr 2012
20:59 rene search for other commits by this committer
Mention vulnerabilities in www/chromium < 18.0.1025.151

Obtained from: 
http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security:       CVE-2011-[3066-3077]
Feature safe:   yes
Original commit
Tuesday, 3 Apr 2012
17:55 remko search for other commits by this committer
Someone forgot to do a make validate after adding the <!--EOF
line. It breaks the make validate.

Feature safe:   yes
Original commit
Sunday, 1 Apr 2012
23:57 marcus search for other commits by this committer
Add a record for CVE-2012-1178.

Reported by:    Peter Jeremy <peterjeremy@acm.org>
Feature safe:   yes
Original commit
Thursday, 29 Mar 2012
01:23 eadler search for other commits by this committer
Fix formatting so that "make tidy" passes

Feature safe:   yes
Original commit
Wednesday, 28 Mar 2012
23:50 matthew search for other commits by this committer
Another phpmyadmin security update.

ChangeLog:

http://sourceforge.net/projects/phpmyadmin/files/phpMyAdmin/3.4.10.2/phpMyAdmin-3.4.10.2-notes.html/download

Welcome to phpMyAdmin 3.4.10.2, a minor security release.

3.4.10.2 (2012-03-28)
- [security] Fixed local path disclosure vulnerability, see PMASA-2012-2

Advisory:

http://www.phpmyadmin.net/home_page/security/PMASA-2012-2.php

Approved by:    shaun (mentor)
Feature safe:   yes
Security:       a81161d2-790f-11e1-ac16-e0cb4e266481
Original commit
20:10 rene search for other commits by this committer
Document vulnerabilities in www/chromium < 18.0.1025.142

Obtained from: 
http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security:       CVE-2011-[3057-3065]
Feature safe:   yes
Original commit
Monday, 26 Mar 2012
11:56 sem search for other commits by this committer
- quagga-re affected the last vulnerability too.

Feature safe:   Yes
Original commit
Sunday, 25 Mar 2012
17:20 rakuco search for other commits by this committer
Document CVE-2012-0037 for textproc/raptor and textproc/raptor2.

Security:       CVE-2012-0037
Feature safe:   yes
Original commit
Saturday, 24 Mar 2012
15:12 eadler search for other commits by this committer
Fix formatting so that "make tidy" passes

Feature safe:   yes
Original commit
14:11 zi search for other commits by this committer
- Document recent vulnerabilities in net/quagga (CVE-2012-0249, CVE-2012-0250,
CVE-2012-0255)

Feature safe:   yes
Original commit
08:00 delphij search for other commits by this committer
Correct version ranges.

Feature safe:   yes
Original commit
07:20 lwhsu search for other commits by this committer
Document Apache Traffic Server -- heap overflow vulnerability

Feature safe:   yes
Original commit
Thursday, 22 Mar 2012
10:57 rene search for other commits by this committer
Document vulnerabilities for www/chromium < 17.0.963.83

Obtained from: 
http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security:       CVE-2011-[3045,3049-3057]
Feature safe:   yes
Original commit
Wednesday, 21 Mar 2012
21:58 delphij search for other commits by this committer
Document GNUtls and libtasn1 security vulnerabilities.

Feature safe:   yes
Original commit
Sunday, 18 Mar 2012
04:39 miwi search for other commits by this committer
- Cleanup

Feature safe:   yes
Original commit
04:30 miwi search for other commits by this committer
- Correct the last 3 firefox 3.6 entrys

PR:             166207
Submitted by:   Sergey Kandaurov <pluknet@gmail.com>
Feature safe:   yes
Original commit
Thursday, 15 Mar 2012
23:11 flo search for other commits by this committer
Document recent asterisk vulnerabilities.

Feature safe:   yes
Original commit
15:21 wxs search for other commits by this committer
Document CVE-2012-0884.

Feature safe:   yes
Original commit
13:45 osa search for other commits by this committer
Document nginx -- potential information leak.

Feature safe:   yes
Original commit
Wednesday, 14 Mar 2012
09:16 beat search for other commits by this committer
- Document mozilla -- multiple vulnerabilities

Feature safe:   yes
Original commit
Tuesday, 13 Mar 2012
09:37 kwm search for other commits by this committer
Do proper input validation for libXfont. This is for CVE-2011-2895.

Feature safe:   yes
Original commit
Monday, 12 Mar 2012
02:23 wxs search for other commits by this committer
Typo fix.

Feature safe:   yes
Original commit
Sunday, 11 Mar 2012
21:37 simon search for other commits by this committer
- Document portaudit -- auditfile remote code execution.
- Update (c) year.

Feature safe:   yes
Original commit
16:07 wxs search for other commits by this committer
Appease the tidy target. ;)

Feature safe:   yes
Original commit
11:16 rene search for other commits by this committer
Document vulnerabilities in www/chromium < 17.0.963.79

Security:       CVE-2011-3047
Feature safe:   yes
Original commit
Saturday, 10 Mar 2012
01:47 eadler search for other commits by this committer
Fix formatting so that "make tidy" passes

Feature safe:   yes
Original commit
01:45 eadler search for other commits by this committer
Document the latest flash player vulnerabilities

Reviewed by:    nox
Feature safe:   yes
Original commit
Friday, 9 Mar 2012
10:03 rene search for other commits by this committer
Mark chromium < 17.0.963.78 as vulnerable.

Security:       CVE-2011-3046
Feature safe:   yes
Original commit
Wednesday, 7 Mar 2012
18:44 lwhsu search for other commits by this committer
Document jenkins XSS vulnerability.

Submitted by:   Gersom van de Bunt <gersom.vandebunt@pine.nl>
Original commit
Monday, 5 Mar 2012
18:16 rene search for other commits by this committer
Add new vulnerabilities for www/chromium < 17.0.963.65

Obtained from: 
http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security:       CVE-2011-[3031-3044]
Original commit
Sunday, 4 Mar 2012
23:07 ak search for other commits by this committer
Document dropbear security issue

Approved by:    eadler (mentor)
Original commit
01:00 wxs search for other commits by this committer
Whitespace cleanup and stick to ASCII in recent openx entry.
Original commit
Friday, 2 Mar 2012
21:32 jgh search for other commits by this committer
document latest openx security issue

PR:     ports/165613
Original commit
Tuesday, 28 Feb 2012
19:19 crees search for other commits by this committer
Document latest PostgreSQL vulnerabilities

Security:       http://www.postgresql.org/about/news/1377/
Original commit
00:09 eadler search for other commits by this committer
- Add information about make tidy checking now that it actually functions
- use ' instead of `
- add a note about ports-security
Original commit
00:04 eadler search for other commits by this committer
Document recent flash vulns

Reviewed by:    nox
Original commit
Monday, 27 Feb 2012
23:49 eadler search for other commits by this committer
Pacify 'make tidy' and use valid XML.
While make diff against the tidy version a canconical test.
Original commit
23:10 kwm search for other commits by this committer
Add libxml2 vulnability.

PR:             ports/164270
Submitted by:   kj <b4039413@nwldx.com>
Original commit
03:04 wxs search for other commits by this committer
Fixup python entry. No need to have python metaport listed.

Reviewed by:    miwi@
Original commit
Monday, 20 Feb 2012
04:28 eadler search for other commits by this committer
Minor whitespace fixup
Original commit
Sunday, 19 Feb 2012
22:27 rene search for other commits by this committer
Include PORTREVISION in plib version number to fix previous commit.
Original commit
22:14 rene search for other commits by this committer
Document a remote code execution via a buffer overflow in PLIB.

Security:       CVE-2011-4620
Original commit
Saturday, 18 Feb 2012
15:00 matthew search for other commits by this committer
  Security update to 3.4.10.1

    XSS in replication setup

  ChangeLog:

    Welcome to phpMyAdmin 3.4.10.1, a minor security release.

3.4.10.1 (2012-02-18)
- [security] XSS in replication setup, see PMASA-2012-1

  Security Advisory:

    http://www.phpmyadmin.net/home_page/security/PMASA-2012-1.php

Approved by:    shaun (mentor)
Original commit
Friday, 17 Feb 2012
21:21 jgh search for other commits by this committer
- document latest piwik security vulnerability

PR:     ports/165217
Original commit
19:38 flo search for other commits by this committer
- document recent mozilla vulnerabilities
- wrap a long line
Original commit
Wednesday, 15 Feb 2012
23:16 rene search for other commits by this committer
Document vulnerabilities in chromium < 17.0.963.56

Obtained from: 
http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security:       CVE-2011-[3015-3027]
Original commit
19:58 glarkin search for other commits by this committer
- Updated the recent WebCalendar entry to match <= 1.2.4 instead of < 1.2.4,
  since 1.2.4 (not yet in tree) is vulnerable, and 1.2.5 has not been
  released by upstream yet
- Fixed the URL in the recent WebCalendar entry
- Canonicalized naming in other WebCalendar entries
- Fixed various nits flagged by "make tidy"
Original commit
00:03 eadler search for other commits by this committer
This vuln also affects pypy
Original commit
Tuesday, 14 Feb 2012
03:32 eadler search for other commits by this committer
typo
Original commit
03:31 eadler search for other commits by this committer
Inform users of the DoS issue in the python SimpleXMLRPCServer function
Original commit
Monday, 13 Feb 2012
16:27 eadler search for other commits by this committer
Add the recently assigned cve number
Original commit
Sunday, 12 Feb 2012
04:17 eadler search for other commits by this committer
Inform users of the XSS issue in the latest version of WebCalendar.

It seems that there has been no response from the vendor
and users may want to switch to an alternate product that fits their needs.
Original commit
Saturday, 11 Feb 2012
18:17 wxs search for other commits by this committer
Whitespace fixes.
Original commit
10:50 beat search for other commits by this committer
- Document mozilla -- use after free in nsXBLDocumentInfo::ReadPrototypeBindings
Original commit
04:55 eadler search for other commits by this committer
Inform bip users of buffer overflow (CVE-2012-0806)
Original commit
01:27 eadler search for other commits by this committer
Inform users of the private information disclosure bug in surf (CVE-2012-0842)

Reviewed by:    dougb
Original commit
Friday, 10 Feb 2012
10:26 jadawin search for other commits by this committer
Fix style

Reported by:    flo@ via irc
Original commit
10:11 jadawin search for other commits by this committer
Document last glpi vulnerabilities

Submitted by:   Mathias Monnerville <mathias@monnerville.com> via email
Original commit
Thursday, 9 Feb 2012
12:48 rene search for other commits by this committer
Document new Chromium < 17.0.963.46 vulnerabilities.

Obtained from: 
http://googlechromereleases.blogspot.com/search/label/Stable%20updates
Security:       fe1976c2-5317-11e1-9e99-00262d5ed8ee
Original commit
Tuesday, 7 Feb 2012
23:11 delphij search for other commits by this committer
Document Drupal core multiple vulnerabilities.
Original commit
04:13 wxs search for other commits by this committer
Fix up 3fd040be-4f0b-11e1-9e32-0025900931f by giving a better description.
Original commit
Monday, 6 Feb 2012
12:01 skv search for other commits by this committer
Document "bugzilla" - multiple vulnerabilities.
Original commit
Saturday, 4 Feb 2012
08:40 delphij search for other commits by this committer
Document PHP remote code vulnerability.
Original commit
Friday, 3 Feb 2012
06:33 rm search for other commits by this committer
Add vuxml entry for mathopd directory traversal vulnerability.

PR:             164717
Submitted by:   Michiel Boland <michiel at boland dot org>
Security:       6e7ad1d7-4e27-11e1-8e12-90e6ba8a36a2
Original commit
Thursday, 2 Feb 2012
18:34 jgh search for other commits by this committer
- adjust ordering for latest apache entry

Spotted by: remko
Original commit
14:02 wxs search for other commits by this committer
MITRE is spelled in all capital letters.
Original commit
01:32 jgh search for other commits by this committer
document latest Apache vulnerabilities

PR:     ports/164675
Reviewed by: crees, eadler
Approved by: crees (mentor)
Original commit
Wednesday, 1 Feb 2012
09:46 flo search for other commits by this committer
document recent mozilla vulnerabilities
Original commit
Tuesday, 31 Jan 2012
13:34 wxs search for other commits by this committer
Correct versions for sudo format string vulnerability.

Noticed by:     pluknet@
Original commit
Monday, 30 Jan 2012
16:36 wxs search for other commits by this committer
Document sudo format string vulnerability.
Original commit
03:03 wxs search for other commits by this committer
Document missing FreeBSD Security Advisories:
- SA-11:01.mountd
- SA-11:04.compress
- SA-11:09.pam_ssh
- SA-11:10.pam

Modify existing entries to document (add/adjust modified tag for all):
- SA-11:06.bind
  - Add FreeBSD package and freebsdsa
- SA-11:07.chroot
  - Add FreeBSD package
- SA-11:08.telnetd
  - Add FreeBSD package, freebsdsa and a relevant URL
Original commit
Sunday, 29 Jan 2012
23:39 zi search for other commits by this committer
- Adjust formatting for 93688f8f-4935-11e1-89b4-001ec9578670
Original commit
Saturday, 28 Jan 2012
13:30 zi search for other commits by this committer
- Document vulnerabilities in mail/postfixadmin (CVE-2012-0811, CVE-2012-0812)
Original commit
08:01 miwi search for other commits by this committer
- Cleanup & Formating
Original commit
Thursday, 26 Jan 2012
12:32 zi search for other commits by this committer
- Document vulnerability in converters/mpack
Original commit
12:17 zi search for other commits by this committer
- Document vulnerabilities in print/acroread9 (prior to 9.4.7)
Original commit
Tuesday, 24 Jan 2012
11:02 rene search for other commits by this committer
- update entry fixed in chromium-16.0.912.75 (CVE-2011-3925)
- add entry for vulnerabilities fixed in chromium-16.0.912.77

Security:       CVE-2011-[3924-3928]
Original commit
04:18 wxs search for other commits by this committer
Fix build while chanting "I will run make validate". :(

Pointyhat to:   wxs@
Original commit
04:01 wxs search for other commits by this committer
Add CVE for recent spamdyke buffer overflows.
Original commit
Monday, 23 Jan 2012
22:02 wxs search for other commits by this committer
Document multiple vulnerabilities in wireshark, all of which have
already been fixed in our port.
Original commit

Number of commits found: 6273 (showing only 100 on this page)

[First Page]  «  32 | 33 | 34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42  »  [Last Page]