Commit graph

122 commits

Author SHA1 Message Date
Dag-Erling Smørgrav
595ad0e912 Correction: FreeBSD-SA-04:12.jailroute does not apply to 4.7 and older. 2004-06-07 21:21:05 +00:00
Dag-Erling Smørgrav
a20983ae1d Whitespace cleanup 2004-06-07 21:17:33 +00:00
Dag-Erling Smørgrav
a26dd4806c Add FreeBSD-SA-04:12.jailroute. 2004-06-07 21:17:01 +00:00
Dag-Erling Smørgrav
6e9b77fc6b FreeBSD-SA-04:11 2004-05-26 11:32:29 +00:00
Alex Dupre
b8e5cf1448 Update modified date for mysql bug after fixing typo.
Requested by:	nectar
2004-05-24 11:49:54 +00:00
Jacques Vidrine
49e7f57b2d Add CVE name for one of the leafnode issues. 2004-05-21 12:42:01 +00:00
Jacques Vidrine
b42300f17f Edit the topics to distinguish a bit better between the different
leafnode DoS issues.
2004-05-21 12:39:46 +00:00
Jacques Vidrine
14d8eb415b Document several issues in leafnode.
Submitted by:	 Matthias Andree <matthias.andree@gmx.de>
2004-05-21 12:13:52 +00:00
Alex Dupre
46c866894f Fix typo.
Spotted by:	eik
2004-05-21 07:57:39 +00:00
Jacques Vidrine
3facc1efae Correct a typo (s/Jon/Joe/) 2004-05-19 21:06:20 +00:00
Jacques Vidrine
7d4906835e Add subversion and neon date parsing vulnerabilities. 2004-05-19 20:21:32 +00:00
Dag-Erling Smørgrav
c04f519b28 make tidy 2004-05-19 12:57:13 +00:00
Dag-Erling Smørgrav
9c52d8a476 Add an entry for the cvs pserver heap overflow. 2004-05-19 12:55:35 +00:00
Jacques Vidrine
ed0fd12534 Add CVE name and CERT Vulnerability Note references for old Cyrus bug. 2004-05-18 14:53:33 +00:00
Jacques Vidrine
fcde799d20 make tidy 2004-05-18 14:43:04 +00:00
Jacques Vidrine
a6876c07f6 Add URI handling issue that affects Opera and KDE, at least. 2004-05-18 14:39:03 +00:00
Alex Dupre
9001aff353 Note that the mysqlbug has been fixed. 2004-05-18 11:50:58 +00:00
Jacques Vidrine
9af3f466a0 Update version number for fspd, now that it has been corrected.
Reported by:	Radim Kolar <hsn@netmag.cz>
2004-05-17 13:20:29 +00:00
Oliver Eikemeier
3538dd0e93 &, not | 2004-05-15 13:20:03 +00:00
Oliver Eikemeier
08d289bf8f ProFTPD vulnerability is fixed in
<http://www.proftpd.org/docs/NEWS-1.2.10rc1>

Submitted by:	Koop Mast <kwm@rainbow-runner.nl>
2004-05-15 13:13:50 +00:00
Jacques Vidrine
895a5f3714 Add Cyrus IMSPd security release.
Reported by:	eik
2004-05-12 16:01:25 +00:00
Jacques Vidrine
31fab7e6c9 Add old Cyrus IMAP server heap buffer overflow.
Reported by:	eik
2004-05-12 15:28:50 +00:00
MANTANI Nobutaka
9f6ab8261d The security issue of multimedia/xine (insecure temporary file creation in
xine-check, xine-bugreport) has been fixed in 0.9.23_3.
2004-05-09 22:26:05 +00:00
Jacques Vidrine
f78771cdd3 Only one <modified> is allowed per entry. 2004-05-06 21:11:00 +00:00
Dag-Erling Smørgrav
a40fed5278 Correct the discovery date for the proftpd issue. 2004-05-06 20:40:18 +00:00
Jacques Vidrine
de801b76cb Oops. s/2005-05-05/2004-05-05/ :-) 2004-05-06 16:26:28 +00:00
Jacques Vidrine
d13341339d Second-guess Oliver and correct the affected entry for exim
in order to unbreak this file.
2004-05-06 16:12:55 +00:00
Oliver Eikemeier
dc24b4dab8 exim buffer overflow when verify = header_syntax is used 2004-05-06 15:43:52 +00:00
Jacques Vidrine
ab3d7fac85 Add phpBB session table exhaustion issue.
Submitted by:	Xin LI <delphij@frontfree.net>
2004-05-06 15:33:57 +00:00
Jacques Vidrine
4b76b96de1 Add the issues covered in FreeBSD-SA-04:08.heimdal and
FreeBSD-SA-04:09.kadmind.
2004-05-05 21:49:49 +00:00
Jacques Vidrine
4c21b98f3f make tidy 2004-05-05 14:57:32 +00:00
Jacques Vidrine
602de66182 Use PORTVERSION conventions for FreeBSD version numbers, so that
5.2.1-RELEASE-p5 becomes 5.2.1_5 (not 5.2.1p5, as it would have been
previously).

This is necessary because e.g. 5.2p1 > 5.2.1p5 using existing version
comparison tools.
2004-05-05 14:57:01 +00:00
Jacques Vidrine
e8dfa6b403 Correct package name for xchat Socks5 vulnerability (xchat -> xchat2).
Note that the issue is fixed in version 2.0.8_2 (thanks marcus!).
2004-05-03 20:15:32 +00:00
Jacques Vidrine
99ef6b4db1 Correct the fixed version for lha. 2004-05-03 18:23:43 +00:00
Jacques Vidrine
8643a11f95 png issue was fixed in png-1.2.5_4 2004-05-03 14:42:38 +00:00
Jacques Vidrine
5863676f54 Add a vulnerability in www/pound.
Submitted by:	clement

Add a security-related regression in ftp/proftpd.
Add several security issues in misc/mc.
Add a DoS issue in graphics/png.
Add a security issues in archivers/lha.
Add recent advisories for xine.
Add rsync path traversal issue.
2004-05-02 16:55:27 +00:00
Jacques Vidrine
d9d517326a tla is also affected by libneon issue.
PR:		ports/65754
Submitted by:	Frank Ruell <stoerte@dreamwarrior.net>

Additional reference for mysql issue.

Submitted by:	Daniel Harris <dannyboy@FreeBSD.org>
2004-04-30 16:04:55 +00:00
Jacques Vidrine
69ed463ec6 Added CVE name for ident2 issue.
Added the ``new'' TCP DoS issue.
Added phpBB issue. (1)
Added XChat Socks5 issue.

Submitted by:	(1) Frankye - ML <listsucker@ipv5.net>
2004-04-23 23:07:27 +00:00
Jacques Vidrine
3eb8597bd7 Add mysqlbug temporary file handling vulnerability.
Add ident2 vulnerability.

make tidy (sorry, I meant to do this in a separate commit)
2004-04-16 16:29:01 +00:00
Jacques Vidrine
3e8e3ecfe4 Additional CVE name for recent CVS vulnerability. 2004-04-16 14:44:09 +00:00
Jacques Vidrine
2350898f67 Add kdepim vulnerability 2004-04-16 00:49:15 +00:00
Jacques Vidrine
3602d88b45 Add neon vulnerability
Correct the version range for openh323
2004-04-16 00:26:36 +00:00
Jacques Vidrine
a37b24d826 Add CVS vulnerabilities. 2004-04-14 17:18:52 +00:00
Jacques Vidrine
c060bd04c2 Document another racoon DoS vulnerability.
Note that racoon was also affected by the tcpdump ISAKMP vulnerability.
2004-04-14 15:10:12 +00:00
Jacques Vidrine
78faefe889 make tidy 2004-04-13 20:39:27 +00:00
Jacques Vidrine
c126f6de61 Add CVE name for racoon DoS vulnerability. 2004-04-13 20:38:39 +00:00
Jacques Vidrine
287aeadbe4 Correct modified date in previous commit: format is YYYY-MM-DD and
timezone is UTC.
2004-04-13 17:56:43 +00:00
Max Khon
7249a319a8 Midnight Commander vulnerability CAN-2003-1023 was fixed in version 4.6.0_9. 2004-04-13 17:31:12 +00:00
Jacques Vidrine
ef1ce6c505 make tidy 2004-04-07 17:13:05 +00:00
Jacques Vidrine
16c43cb9df Add new affected version of gaim.
Add year 2004 FreeBSD security advisories.
2004-04-07 16:27:57 +00:00