Commit graph

3422 commits

Author SHA1 Message Date
Rene Ladan
772a313bc5 Document new vulnerabilities in www/chromium < 37.0.2062.94
Obtained from:	http://googlechromereleases.blogspot.nl
MFH:		2014Q3
2014-08-26 16:36:41 +00:00
Ryan Steinmetz
b91a107bb8 - Document buffer overrun in sysutils/file 2014-08-21 19:46:21 +00:00
Li-Wen Hsu
61faa6c3bc Add missing <package> tag 2014-08-21 17:13:16 +00:00
Li-Wen Hsu
b4c5d1d593 Document Django 2014-08-20 vulnerabilty
Reviewed by:	koobs
2014-08-21 17:09:58 +00:00
Florian Smeets
df03bac70c Record PHP 5.3 vulnerabilities 2014-08-18 21:11:32 +00:00
Matthew Seaman
e9714da8d4 Document the latest phpMyAdmin security advisories.
XSS in view operations page

and

Multiple XSS vulnerabilities in browse table, ENUM editor, monitor, query charts and table relations pages

Security:	fbb01289-2645-11e4-bc44-6805ca0b3d42
2014-08-17 19:48:04 +00:00
Rene Ladan
bd5028c8d0 Document new vulnerabilities in www/chromium < 36.0.1985.143
Submitted by:	Carlos Jacobo Puga Media <cpm@fbsd.es>
Obtained from:	http://googlechromereleases.blogspot.nl/
MFH:		2014Q3
2014-08-13 06:43:35 +00:00
Olli Hauer
4d6d20cd7a - fix package name s/subversion18/subversion/
Thanks to jkim@ for the notice!
2014-08-11 20:19:40 +00:00
Ryan Steinmetz
4221067e37 - INSERT URL HERE 2014-08-11 19:06:36 +00:00
Olli Hauer
67688b393f - document serf CVE-2014-3504
MFH:		2014Q3
2014-08-11 18:52:33 +00:00
Olli Hauer
809ba9c35b - document subversion CVE-2014-3522, CVE-2014-3528
MFH:		2014Q3
2014-08-11 18:42:37 +00:00
Sergey A. Osokin
7b41a1a84d Fix typo.
Found by:	rene
2014-08-10 03:07:54 +00:00
Sergey A. Osokin
03b0bc919d Document nginx vulnerability. 2014-08-09 18:26:53 +00:00
Xin LI
52451d0c7d Document OpenSSL multiple vulnerabilities. 2014-08-06 23:12:58 +00:00
Raphael Kubo da Costa
aebff0af1b Document CVE-2014-4607 in net/krfb.
MFH:		2014Q3
2014-08-03 21:44:44 +00:00
Ryan Steinmetz
ab46c8e531 - Document net/samba4* vulnerability: CVE-2014-3560 2014-08-02 15:17:54 +00:00
Jason E. Hale
a41405ac06 - Document vulnerability in security/gpgme (CVE-2014-3564) 2014-08-02 02:34:44 +00:00
Raphael Kubo da Costa
906c5d3c0e Document x11/kdelibs4 vulnerability 2014-07-31 15:23:47 +00:00
Carlo Strub
99d8e61c61 tor -- traffic confirmation attack 2014-07-30 20:54:21 +00:00
Carlo Strub
85baf00471 Report serious i2p vulnerability 2014-07-28 18:38:13 +00:00
Olli Hauer
9c8cf238f6 - document bugzilla Cross Site Request Forgery (CVE-2014-1546)
MFH:		2014Q3
2014-07-25 14:12:54 +00:00
Olli Hauer
1750b34970 - document apache22 CVE entries
MFH:		2014Q3
2014-07-24 20:12:51 +00:00
Ryan Steinmetz
bc296ac1a2 - Document vulnerabilities in www/tomcat*: CVE-2014-0096, CVE-2014-0099, CVE-2014-0075 2014-07-23 16:51:38 +00:00
Xin LI
bc9db444b9 Document Mozilla multiple vulnerabilities. 2014-07-23 07:50:19 +00:00
Raphael Kubo da Costa
91c5ec7ce9 Fix the recent Qt vulnerability entry again.
The CVE patch applies to -imageformats in Qt4 but -gui in Qt5. I always get
confused by the different port names...

Noted by antoine@.

MFH:		2014Q3
Security:	904d78b8-0f7e-11e4-8b71-5453ed2e2b49
2014-07-21 21:36:54 +00:00
Steve Wills
e445944ac6 security/vuxml: document security issue in mcollective 2014-07-21 21:20:14 +00:00
Matthew Seaman
e7389e3f98 Update the latest phpMyAdmin entry with CVE numbers and descriptive
text from the security advisories, now that they have been published.

Security:	3f09ca29-0e48-11e4-b17a-6805ca0b3d42
2014-07-20 21:47:42 +00:00
Raphael Kubo da Costa
16b46fef8f Fix the list of packages affected by 904d78b8-0f7e-11e4-8b71-5453ed2e2b49.
Submitted by:	RyoTa SimaMoto <liangtai.s16@gmail.com>
MFH:		2014Q3
2014-07-20 17:06:36 +00:00
Raphael Kubo da Costa
9ee8152a5d Document qt4-gui/qt5-gui vulnerability.
MFH:		2014Q3
2014-07-19 20:24:30 +00:00
Olli Hauer
406b6e43aa - document apache24 CVE entries
until now there is no official CHANGELOG and apache-2.4.10
  is not released, so take summary from upstream SVN.
2014-07-19 13:46:20 +00:00
Matthew Seaman
169e50cc12 Yet another tranche of phpMyAdmin security alerts. In typical style
there has been a software release with warnings that it contains
security fixes, but the Security Advisories are not yet available and
CVE numbers have not yet been published.
2014-07-18 07:02:34 +00:00
Rene Ladan
7a9ca32269 Document new vulnerabilities in www/chromium < 36.0.1985.125
Submitted by:	Carlos Jacobo Puga Medina <cpm@fbsd.es> via freebsd-chromium
Obtained from:	http://googlechromereleases.blogspot.nl/
MFH:		2014Q3
2014-07-17 08:29:53 +00:00
Raphael Kubo da Costa
860ef3cc85 Document x11/kdelibs4 vulnerability.
MFH:		2014Q3
2014-07-16 20:12:28 +00:00
Raphael Kubo da Costa
d82277eb31 Add entry for mail/postfixadmin.
PR:		189248
MFH:		2014Q3
2014-07-13 13:29:21 +00:00
Steve Wills
949f87d9ea - Add seamonkey to list of things affected by mozilla issue 2014-07-04 06:38:23 +00:00
Koop Mast
66c747aa5c Document more dbus vulnabilities. 2014-07-03 14:57:40 +00:00
Thomas Zander
b324fb648f Add vuln entries for mplayer and mencoder for CVE-2014-4610
(integer overflow in ffmpeg's lzo code)

Approved by:	mentors (implicit)
MFH:	2014Q2
2014-06-28 12:09:08 +00:00
Matthias Andree
bb9cd2e711 Add a vulnerability entry for lzo2. 2014-06-26 18:08:02 +00:00
Jun Kuriyama
de8645c23b Add also gnupg-2.0.24. 2014-06-24 14:49:43 +00:00
Matthew Seaman
3ed3495184 Update vuln.xml now that advisories have been published. 2014-06-24 06:48:54 +00:00
Jun Kuriyama
2e9f7ed9b7 Add about gnupg-1.4.17. 2014-06-24 00:07:48 +00:00
Ryan Steinmetz
d01674b06e - Document recent samba vulnerabilities (CVE-2014-3493, CVE-2014-0244) 2014-06-23 18:29:55 +00:00
Matthew Seaman
debc0af6e0 Document the latest phpMyAdmin vulnerabilities. Very little
information has been published as yet.  What there is here has been
gleaned from the ChangeLog at
http://sourceforge.net/projects/phpmyadmin/files/phpMyAdmin/4.2.4/phpMyAdmin-4.2.4-notes.html/view

Updates and CVE numbers to follow, as they are made available.
2014-06-20 23:24:19 +00:00
David Thiel
5dd9c831ed Add vuln entry for iodine.
Submitted by:	Kenta S.
2014-06-18 22:02:27 +00:00
Florian Smeets
fe17ed8a7e Document asterisk vulnerabilities 2014-06-17 08:12:07 +00:00
Koop Mast
3e0366bb14 Document dbus local dos
MFH:		2014Q2
2014-06-14 12:16:57 +00:00
Rene Ladan
2862518708 Document new vulnerabilities in www/chromium < 35.0.1916.153
Submitted by:	Carlos Jacobo Puga Medina <cpm@fbsd.es>
Obtained from:	http://www.googlechromereleases.blogspot.nl/
MFH:		2014Q2
2014-06-11 08:06:47 +00:00
Beat Gaetzi
8997d60dcf Document mozilla vulnerabilities 2014-06-10 20:12:13 +00:00
Xin LI
bcdab77b11 Document OpenSSL multiple vulnerabilities. 2014-06-05 12:34:21 +00:00
Matthias Andree
3fbfdd5ba5 Fix extraneous <vuxml> open tag on line 88. 2014-06-04 20:15:03 +00:00