notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine

Bot filter coming soon

To deter bots pegging the database CPU to 100%, a bot testing filter to be added to the website. This should not affect newsfeeds etc. Anubis seems light-weight - it is already in use within the FreeBSD Project. This notice is just a heads up in case you see something odd. This notice will be updated after Anubis is installed.

non port: security/vuxml/vuln.xml

Number of commits found: 6273 (showing only 100 on this page)

[First Page]  «  34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42 | 43 | 44  »  [Last Page]

Wednesday, 26 Oct 2011
07:57 flo search for other commits by this committer
document phpmyfaq remote PHP code injection vulnerability
Original commit
Tuesday, 25 Oct 2011
17:45 rene search for other commits by this committer
Mention vulnerabilities in www/chromium < 15.0.874.102

Obtained from:  http://googlechromereleases.blogspot.com/
Security:       CVE-2011-[2845, 3875-3891]
Original commit
Monday, 24 Oct 2011
15:20 glarkin search for other commits by this committer
- Document phpldapadmin - remote PHP code injection vulnerability

PR:             ports/161954
Submitted by:   Ruslan Mahmatkhanov <cvs-src@yandex.ru>
Original commit
Sunday, 23 Oct 2011
16:16 rakuco search for other commits by this committer
Document CVE-2011-3365 and CVE-2011-3366.

Different CVE numbers for different software, but they share the same
KDE security advisory.

Approved by:    makc (mentor)
Original commit
16:14 rakuco search for other commits by this committer
Fix the port names of a few past KDE vulnerabilities.

The entries mentioned kdebase4-runtime, kdebase3, kdelibs4 etc, but
the port names are kdebase, kdelibs etc.

Adjust the names and the version ranges.

Approved by:    makc (mentor)
Original commit
Thursday, 20 Oct 2011
11:01 flo search for other commits by this committer
add an entry for the recent piwik vulnerability, with the little information
that's available.

The only known fact is that Piwik rates this update critical.
Original commit
Tuesday, 18 Oct 2011
18:53 delphij search for other commits by this committer
Fix discovery date.
Original commit
18:24 kwm search for other commits by this committer
Document a File disclosure vulnerability and File permission change
vulnerability
in xorg-server.

Obtained from: 
http://lists.freedesktop.org/archives/xorg-announce/2011-October/001744.html
                upstream xorg-server
Security:       CVE-2011-4028, CVE-2011-4029
Original commit
Monday, 17 Oct 2011
19:49 amdmi3 search for other commits by this committer
- Fix entry dates for recently added OpenTTD vulns

Submitted by:   "Ilya A. Arkhipov" <micro@heavennet.ru>
Original commit
19:02 delphij search for other commits by this committer
Document asterisk -- remote crash vulnerability in SIP channel driver.
Original commit
18:54 delphij search for other commits by this committer
Commit result of manually merged make tidy output.
Original commit
18:52 delphij search for other commits by this committer
Document PivotX remote file inclusion vulnerability.

PR:             ports/161734
Submitted by:   Fumiyuki Shimizu <fumifumi abacustech jp>
Original commit
03:50 amdmi3 search for other commits by this committer
- Fix quotation links

Reported by:    danfe
Original commit
Sunday, 16 Oct 2011
18:39 amdmi3 search for other commits by this committer
Document openttd multiple vulnerabilities

PR:             161488
Submitted by:   "Ilya A. Arkhipov" <micro@heavennet.ru>
Original commit
Saturday, 8 Oct 2011
10:56 mandree search for other commits by this committer
ca_root_nss - fix capitalization of topics

Security: 1b27af46-d6f6-11e0-89a6-080027ef73ec
Security: aa5bc971-d635-11e0-b3cf-080027ef73ec
Original commit
10:54 mandree search for other commits by this committer
ca_root_nss - reword topic for clarity

Security: 1b27af46-d6f6-11e0-89a6-080027ef73ec
Original commit
Friday, 7 Oct 2011
07:32 novel search for other commits by this committer
Be less grubby in specifying vulnerable gnutls-devel versions.
Original commit
Thursday, 6 Oct 2011
00:25 jlaffaye search for other commits by this committer
Latest pyblosxom version is not vulnerable
Original commit
Wednesday, 5 Oct 2011
20:44 delphij search for other commits by this committer
Document quagga multiple vulnerabilities
Original commit
Tuesday, 4 Oct 2011
18:24 rene search for other commits by this committer
Document latest vulnerabilities for www/chromium

Obtained from:  http://googlechromereleases.blogspot.com/
Security:       CVE-2011-[2876-2881, 3873]
Original commit
Friday, 30 Sep 2011
18:06 delphij search for other commits by this committer
Correct tomcat version represetations.

Pointed out by: Tim Zingelman <tez netbsd.org>
Original commit
Wednesday, 28 Sep 2011
15:58 beat search for other commits by this committer
- Document mozilla -- multiple vulnerabilities
Original commit
Friday, 23 Sep 2011
20:02 delphij search for other commits by this committer
Properly mark version range for horde-imp.
Original commit
Thursday, 22 Sep 2011
20:47 nox search for other commits by this committer
- Update linux-f10-flashplugin to 10.3r183.10 . [1]
- Make gnome desktopfileutils dependency optional. [2]

PR:             ports/160894 [1]
Submitted by:   Garrett Cooper <yanegomi@gmail.com> [1]
Suggested by:   Peter Jeremy <peterjeremy@acm.org> [2]
Security:      
http://www.freebsd.org/ports/portaudit/53e531a7-e559-11e0-b481-001b2134ef46.html
Original commit
Wednesday, 21 Sep 2011
11:35 zi search for other commits by this committer
Improve accuracy of krb5 vulnerability entries for upcoming port addition of
krb5-17.
(one entry was missed from the previous commit)
Original commit
02:21 zi search for other commits by this committer
Improve accuracy of krb5 vulnerability entries for upcoming port addition
of krb5-17.
Original commit
Tuesday, 20 Sep 2011
18:24 rene search for other commits by this committer
Document vulnerabilities in Chromium 13.0.x.y

Obtained from:  http://googlechromereleases.blogspot.com/
Security:       CVE-2011-[2834-2838, 2840-2844, 2846-2862, 2864, 2874-2875,
                          3234]
Original commit
Wednesday, 14 Sep 2011
23:26 delphij search for other commits by this committer
Document phpMyAdmin multiple XSS vulnerability.

Update phpMyAdminn to 3.4.5 release. [1]

PR:             ports/160589 [1]
Submitted by:   maitainer [1]
Original commit
Tuesday, 13 Sep 2011
17:50 delphij search for other commits by this committer
Document Django multiple vulnerabilities.
Original commit
01:11 delphij search for other commits by this committer
Document roundcube XSS vulnerability.
Original commit
Monday, 12 Sep 2011
18:38 olgeni search for other commits by this committer
Document libsndfile -- PAF file processing integer overflow.

Security:       CVE-2011-2696
Original commit
Saturday, 10 Sep 2011
07:41 ashish search for other commits by this committer
Re-revise emacs vulnerability to limit with >= 22 and < 22.2_1 instead of
>21.* and <22.2_1 which didn't work as expected
Original commit
Thursday, 8 Sep 2011
22:30 ashish search for other commits by this committer
- Limit emacs vulnerability to > 21.* and <= 22.2 instead of just <= 22.2
Original commit
Wednesday, 7 Sep 2011
18:30 delphij search for other commits by this committer
Document two OpenSSL vulnerabilities.

(There is no OpenSSL 0.9.8s in the ports so mark <1.0.0 as vulnerable).
Original commit
Tuesday, 6 Sep 2011
21:12 flo search for other commits by this committer
fix last thunderbird entry
Original commit
20:12 flo search for other commits by this committer
add firefox, thunderbird and seamonkey to the DigiNotar.nl entry

Security:      
http://www.vuxml.org/freebsd/aa5bc971-d635-11e0-b3cf-080027ef73ec.html
Original commit
Monday, 5 Sep 2011
16:24 bapt search for other commits by this committer
Fix vuln.xml, while here fix indentation
Original commit
15:55 eadler search for other commits by this committer
- Update to 1.2.7

PR:             ports/160368
Submitted by:   gjb
Approved by:    dvl (maintainer), bapt (mentor)
Security:       CVE-2011-2938
Original commit
Sunday, 4 Sep 2011
20:15 crees search for other commits by this committer
- Document cfs buffer overflow vulnerability.
- While here, unbreak packaudit -- it doesn't like newlines in the
  middle of tags.  Perhaps a comment should say something?
Original commit
13:14 mandree search for other commits by this committer
Revise nss/ca_root_nss working around Mozilla,
limit ca_root_nss vuln to < 3.12.11 from <= 3.12.11.

Add a new entry for the ca_root_nss bug that caused extraction of untrusted
certificates to the trust bundle.

PR: ports/160455
Original commit
11:46 sunpoet search for other commits by this committer
- Correct affected plone versions
Original commit
04:09 dinoex search for other commits by this committer
- bump modifiled for CVE-2007-5137
Original commit
Saturday, 3 Sep 2011
16:28 dinoex search for other commits by this committer
- update CVE-2007-5137
Original commit
16:18 mandree search for other commits by this committer
Update range to exclude nss 3.12.11 from vuln, as kwm@'s commit
to upgrade nss to 3.12.11 included the newer CKBI 1.87 that explicitly
distrusts DigiNotar.
Original commit
15:43 mandree search for other commits by this committer
Add a security notice for the DigiNotar incident, listing nss/ca_root/nss.
Original commit
12:49 flo search for other commits by this committer
- only match vulnerable versions in the hlstats entry
- add additional CVEs
Original commit
Friday, 2 Sep 2011
17:15 crees search for other commits by this committer
Final modification for apache22 vulnerability; include slave ports as well

Pointed out by: flo
Reviewed by:    eadler
Original commit
Thursday, 1 Sep 2011
19:06 crees search for other commits by this committer
Correct range for apache22, 2.2.20 is fixed and 1.3 wasn't affected.

Submitted by:   Aleksandr Stankevic (sysmonk on IRC/Freenode##FreeBSD)
Security:       CVE-2011-3192
Original commit
Tuesday, 30 Aug 2011
22:29 shaun search for other commits by this committer
Put a lower bound on the last php entry, as the bug was introduced in
5.3.7-RC5.

Submitted by:   "jaset" via #bsdports
Original commit
13:21 sbz search for other commits by this committer
- Fix entry date and use two ranges

Reviewed by:    gahr@
Approved by:    jadawin@ (mentor)
Original commit
12:01 sbz search for other commits by this committer
- Document CVE-2011-3192 for recent apache DoS vulnerability

Approved by:    jadawin@ (mentor)
Security:      
http://vuxml.org/freebsd/7f6108d2-cea8-11e0-9d58-0800279895ea.html
Original commit
Friday, 26 Aug 2011
18:12 delphij search for other commits by this committer
Upstream indicates that this only affects 4.40 and 4.41 so add a <ge> tag
to indicate that.
Original commit
18:10 delphij search for other commits by this committer
Document stunnel heap corruption vulnerability.
Original commit
Wednesday, 24 Aug 2011
22:43 bapt search for other commits by this committer
Fix discovery date
Original commit
22:20 delphij search for other commits by this committer
DOcument phpMyAdmin CVE-2011-3181 (multiple XSS).
Original commit
Tuesday, 23 Aug 2011
17:02 rene search for other commits by this committer
Document new Chromium vulnerabilities.

Obtained from:  http://google-chrome-browser.com/releases
Security:       CVE-2011-[2821, 2823-2829, 2839]
Original commit
00:58 delphij search for other commits by this committer
Mark PHP5 < 5.3.7_2 as vulnerable to PHP bug #55439: crypt() returns only
the salt for MD5.
Original commit
Saturday, 20 Aug 2011
00:43 delphij search for other commits by this committer
Document multiple PHP vulnerabilities.
Original commit
Friday, 19 Aug 2011
18:42 delphij search for other commits by this committer
Document Rails multiple vulnerabilities.
Original commit
17:46 delphij search for other commits by this committer
Document dovecot DoS vulnerability.
Original commit
Thursday, 18 Aug 2011
19:06 skv search for other commits by this committer
Document "otrs" - vulnerabilities in OTRS-Core allows read access
to any file on local file system.
Original commit
Tuesday, 16 Aug 2011
18:12 flo search for other commits by this committer
document recent mozilla vulnerabilities
Original commit
17:36 delphij search for other commits by this committer
Document samba vulnerabilities of SWAT web interface.
Original commit
Monday, 15 Aug 2011
20:00 wxs search for other commits by this committer
Adjust dates in 510b630e-c43b-11e0-916c-00e0815b8da8.

Noticed by:     kwm@
Original commit
Sunday, 14 Aug 2011
01:41 wxs search for other commits by this committer
- Document ISC DHCP server DoS.
Original commit
Saturday, 13 Aug 2011
18:19 skv search for other commits by this committer
Document "bugzilla" - multiple vulnerabilities.
Original commit
15:02 crees search for other commits by this committer
Document dtc security issues

PR:             ports/159736
Submitted by:   Ansgar Burchardt <ansgar@debian.org>
Original commit
Thursday, 11 Aug 2011
08:37 kwm search for other commits by this committer
Document freetype2 and libXfont vulnabilities.
Original commit
Wednesday, 10 Aug 2011
20:27 nox search for other commits by this committer
Update linux-f10-flashplugin to 10.3r183.5 .

Submitted by:   pointyhat via erwin
Security:      
http://www.freebsd.org/ports/portaudit/2c12ae0c-c38d-11e0-8eb7-001b2134ef46.html
Original commit
Tuesday, 2 Aug 2011
17:57 rene search for other commits by this committer
Document new vulnerabilities for www/chromium ( < 13.0.782.107)

Obtained from:  http://googlechromereleases.blogspot.com/
Security:       CVE-2011-{2358-2361, 2782-2805, 2818-2819}
Original commit
Thursday, 28 Jul 2011
19:18 kwm search for other commits by this committer
Document libsoup security hole.
Original commit
07:10 delphij search for other commits by this committer
Fix match of phpmyadmin in recent revisions.
Original commit
Tuesday, 26 Jul 2011
02:12 swills search for other commits by this committer
- Add CVE reference for OpenSAML2 issue
- Use official citation
Original commit
01:12 zi search for other commits by this committer
Document phpmyadmin vulnerabilities

Approved by:    wxs (mentor)
Original commit
Monday, 25 Jul 2011
23:47 swills search for other commits by this committer
Document OpenSAML2 issue
Original commit
Wednesday, 20 Jul 2011
20:50 delphij search for other commits by this committer
Document rsync DoS issue (CVE-2011-1097).
Original commit
Tuesday, 5 Jul 2011
23:39 dougb search for other commits by this committer
Document BIND vulnerabilities for ports. This was inspired by the PR,
but re-formatted and edited by me, so responsibility for errors is mine.

PR:             ports/158672
Submitted by:   Ryan Steinmetz <rpsfa@rit.edu>
Original commit
Sunday, 3 Jul 2011
13:32 jlaffaye search for other commits by this committer
Document phpMyAdmin multiple vulnerabilities

Reviewed by:    flo
Approved by:    rene (mentor vacation)
Original commit
Wednesday, 29 Jun 2011
10:15 flo search for other commits by this committer
document one more vulnerability in the recent asterisk entry
Original commit
Tuesday, 28 Jun 2011
22:50 rene search for other commits by this committer
Document new vulnerabilities for www/chromium ( < 12.0.742.112)

Security:       CVE-2011-[2345-2351]
Original commit
00:57 wxs search for other commits by this committer
Add modified tag to 8a5770b4-54b5-11db-a5ae-00508d6a62df.

Noticed by:     sahil@
Original commit
Monday, 27 Jun 2011
14:39 wxs search for other commits by this committer
Now that www/mambo is updated, fix the range in
8a5770b4-54b5-11db-a5ae-00508d6a62df.
Original commit
Saturday, 25 Jun 2011
22:48 flo search for other commits by this committer
document recent asterisk vulnerabilities
Original commit
Friday, 24 Jun 2011
13:46 ashish search for other commits by this committer
- Document ejabberd vulnerability fixed in 2.1.8

PR:             ports/158137
Submitted by:   Ruslan Mahamatkhanov <cvs-src@yandex.ru>
Security:      
http://vuxml.org/freebsd/01d3ab7d-9c43-11e0-bc0f-0014a5e3cda6.html
Original commit
Thursday, 23 Jun 2011
12:36 flo search for other commits by this committer
- also mark firefox35 vulnerable
Original commit
Tuesday, 21 Jun 2011
20:26 flo search for other commits by this committer
- document recent mozilla vulnerabilities [1]
- while here also document an older samba Denial of service vulnerability [2]

Security:      
http://www.vuxml.org/freebsd/dfe40cff-9c3f-11e0-9bec-6c626dd55a41.html [1]
               
http://www.vuxml.org/freebsd/bfdbc7ec-9c3f-11e0-9bec-6c626dd55a41.html [2]
Requested by:   timur [2]
Original commit
17:50 culot search for other commits by this committer
Document piwik remote command execution vulnerability.
Original commit
Monday, 20 Jun 2011
22:59 delphij search for other commits by this committer
Document dokuwiki XSS vulnerability.
Original commit
Wednesday, 15 Jun 2011
19:53 nox search for other commits by this committer
Update linux-f10-flashplugin to 10.3r181.26 .

PR:             ports/157900
Submitted by:   Tsurutani Naoki <turutani@scphys.kyoto-u.ac.jp>
Security:      
http://www.freebsd.org/ports/portaudit/55a528e8-9787-11e0-b24a-001b2134ef46.html
Original commit
12:43 brix search for other commits by this committer
- Document CVE-2011-1408 in www/ikiwiki
Original commit
Sunday, 12 Jun 2011
05:15 miwi search for other commits by this committer
- Cleanup
Original commit
Wednesday, 8 Jun 2011
20:49 nox search for other commits by this committer
Update to 10.3r181.22 .

PR:             ports/157696
Submitted by:   Tsurutani Naoki <turutani@scphys.kyoto-u.ac.jp>
Security:      
http://www.freebsd.org/ports/portaudit/57573136-920e-11e0-bdc9-001b2134ef46.html
Original commit
Tuesday, 7 Jun 2011
17:30 rene search for other commits by this committer
Document www/chromium vulnerabilities fixed in version 12.0.742.91

Security:       CVE-2011-{1808-1819,2332,2342}
Original commit
00:24 wxs search for other commits by this committer
- Document CVE-2011-1910

PR:             ports/157548
Submitted by:   Ryan Steinmetz <rpsfa@rit.edu>
Original commit
Monday, 6 Jun 2011
12:45 mandree search for other commits by this committer
Add CVE-2011-1947: fetchmail STARTTLS denial of service.
Original commit
Friday, 3 Jun 2011
03:36 miwi search for other commits by this committer
- Cleanup
Original commit
Thursday, 2 Jun 2011
20:39 flo search for other commits by this committer
- document asterisk remote crash vulnerability

Security:      
http://www.vuxml.org/freebsd/34ce5817-8d56-11e0-b5a2-6c626dd55a41.html
Original commit
14:19 lev search for other commits by this committer
  Document CVE-2011-1752, CVE-2011-1783 and CVE-2011-1921 in devel/subversion
Original commit
Thursday, 26 May 2011
13:54 wxs search for other commits by this committer
Document drupal6 multiple vulnerabilities.

Submitted by:   Nick Hilliard <nick@foobar.org>
Original commit
Wednesday, 25 May 2011
21:14 olgeni search for other commits by this committer
Document Erlang R14B02 ssh library vulnerability (cryptographically
weak RNG).

Security:       CVE-2011-0766
Original commit

Number of commits found: 6273 (showing only 100 on this page)

[First Page]  «  34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42 | 43 | 44  »  [Last Page]