Commit graph

1813 commits

Author SHA1 Message Date
Martin Wilke
fb60b744cf - Cleanup (fix whitespaces, typos) 2009-01-03 12:35:32 +00:00
Chin-San Huang
3d89865a95 - Completely fix CVE-2005-0448
PR:		ports/129301
Submitted by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
2009-01-03 12:06:45 +00:00
Erwin Lansing
5992cfefd4 Bump copyright year. 2009-01-02 09:56:29 +00:00
Thomas Abthorpe
4a47213bfb - Document vim -- multiple vulnerabilities in the netrw module
PR:		ports/129137
Submitted by:	Eygene Ryabinkin <rea-fbsd codelabs.ru>
2009-01-02 04:44:10 +00:00
Jeremy Messenger
f09fefbfe7 Add vinagre -- format string vulnerability entry.
PR:		ports/129959
Submitted by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
2008-12-31 21:23:01 +00:00
Greg Larkin
6691f735ab Document twiki - multiple vulnerabilities 2008-12-30 19:16:14 +00:00
Alex Dupre
ddfc4e0b77 Add entry for roundcube.
Submitted by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
2008-12-30 17:09:02 +00:00
Martin Wilke
9583e35bdb - Document mysql -- MyISAM table privileges security bypass vulnerability for symlinked paths 2008-12-30 11:12:38 +00:00
Martin Wilke
6a99051daf - Document mplayer -- twinvq processing buffer overflow vulnerability
Reported by:	Thomas Zander <riggs@rrr.de> (mplayer maintainer)
2008-12-30 09:29:17 +00:00
Philippe Audeoud
dfc1c6e15b - ampache -- insecure temporary file usage 2008-12-26 09:22:47 +00:00
Martin Wilke
211f2c38f8 - Small cleanup for the last cups-base entry
* CVE-2008-5184 was fixed in 1.3.8.
  * CVE-2008-1722 does not related to anything in this entry;
  * PNG buffer overflow is really CVE-2008-5286.

Reported by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
No Cookies for: miwi
2008-12-25 16:41:54 +00:00
Martin Wilke
c6066a2ee6 - Document opera -- multiple vulnerabilities 2008-12-19 21:07:06 +00:00
Martin Wilke
9027a5b6e8 - Document mediawiki -- multiple vulnerabilities 2008-12-19 20:59:59 +00:00
Martin Wilke
9581e681f0 - Fix make validate 2008-12-19 20:36:50 +00:00
Martin Wilke
be03f0c48e - document drupal -- Multiple vulnerabilities 2008-12-19 20:29:46 +00:00
Martin Wilke
4e1254924f - Document mozilla -- multiple vulnerabilities 2008-12-19 20:01:32 +00:00
Martin Wilke
6b609129fc - Fix a small typo 2008-12-11 19:39:05 +00:00
Martin Wilke
7ea4bc00a7 - Document phpmyadmin -- cross-site request forgery vulnerability 2008-12-11 19:37:41 +00:00
Thomas Abthorpe
886ef222c2 - Document php5 -- potential magic_quotes_gpc vulnerability
Reviewed by:	miwi
2008-12-08 14:15:34 +00:00
Martin Wilke
7ae5ddd50e - Fix a typo
Reported by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
2008-12-07 19:13:45 +00:00
Martin Wilke
167bc49559 - Document wireshark -- SMTP Processing Denial of Service Vulnerability 2008-12-07 18:11:30 +00:00
Martin Wilke
e9d6eff634 - Document php -- multiple vulnerabilities 2008-12-07 12:13:14 +00:00
Martin Wilke
e01f75dd7d - Document mgetty+sendfax -- symlink attack via insecure temporary files
PR:		based on 129471
Submitted by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
2008-12-07 11:41:30 +00:00
Martin Wilke
0d89877671 - Document dovecot-managesieve -- Script Name Directory Traversal Vulnerability
PR:		based on 129303
Submitted by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
2008-12-07 11:32:07 +00:00
Martin Wilke
3e9cd5b4d5 Document habari -- Cross-Site Scripting Vulnerability
PR:		129475
Submitted by:	Ayumi M <ayu@dahlia.commun.jp>
2008-12-07 11:20:17 +00:00
Martin Wilke
146eb4c81b - Add 32545 to the latest vlc entry. 2008-12-07 09:09:22 +00:00
Martin Wilke
89008f1e7d - Document vlc -- arbitrary code execution in the RealMedia processor 2008-12-06 23:47:27 +00:00
Martin Wilke
d01626c5c2 - S/secunia/Secunia 2008-12-06 23:18:46 +00:00
Martin Wilke
cf6e091a74 - Document mantis - PHP Code Execution Vulnerability
PR:		based on 129438
Submitted by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
2008-12-06 22:00:53 +00:00
Martin Wilke
a06b63d720 Document mantis -- multiple vulnerabilities
PR:		based on 129438
2008-12-06 21:55:49 +00:00
Martin Wilke
eb1f04011d - Fix previous entry 2008-12-04 20:10:06 +00:00
Thomas Abthorpe
e7f45de9af - Document squirrelmail -- Cross site scripting vulnerability 2008-12-04 19:37:34 +00:00
Martin Wilke
7296ff0c79 - Fix discovery from previous entry 2008-11-29 16:24:41 +00:00
Martin Wilke
21f546011e - Document openoffice -- arbitrary code execution vulnerabilities
PR:		based on 129192
Submitted by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
2008-11-29 16:16:01 +00:00
Martin Wilke
d0a46d18ec - Document wordpress -- Header RSS Feed Script Insertion Vulnerability 2008-11-29 15:15:33 +00:00
Martin Wilke
1c54bc3bc1 - Document samba -- potential leakage of arbitrary memory contents
- Fix my previous entry
2008-11-29 14:31:33 +00:00
Martin Wilke
8c548377ad - Document hplip -- hpssd Denial of Service
PR:		based on 129097
Submitted by:	Eygene Ryabinkin
2008-11-29 13:48:43 +00:00
Martin Wilke
be1edfb785 - Document cups -- multiple vulnerabilities 2008-11-29 13:04:54 +00:00
Stanislav Sedov
79d7cbd775 - Document a buffer overflow vulnerability in imlib2.
PR:		ports/129037
Submitted by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
2008-11-24 17:47:52 +00:00
Martin Wilke
5ac5f7cf8b - Fix latest mozilla entry
Note:
	mail/thunderbird and mail/linux-thunderbird versions are wrong.
	All problems are fixed in 2.0.0.18 and not in 2.0.0.17.

Pointy hat to:	tabthorpe
2008-11-23 16:04:35 +00:00
Martin Wilke
ed6a0fdedb - Document streamripper -- multiple buffer overflows
PR:		based on 128999
2008-11-23 08:38:54 +00:00
Martin Wilke
e1baec3e5a - Dokument -- Mantis: Session hijacking vulnerability 2008-11-22 22:01:10 +00:00
Martin Wilke
547c1dffa6 - Cleanup
- Fix a lot whitespaces
2008-11-22 21:46:04 +00:00
Xin LI
301edfdf6c Document two ACL bypassing vulnerabilities of dovecot.
Submitted by:	Eygene Ryabinkin <rea-fbsd codelabs.ru> (with changes)
PR:		ports/129000
2008-11-19 22:37:18 +00:00
Thomas Abthorpe
592e12bfdd - Document libxml2 -- multiple vulnerabilities 2008-11-19 21:07:47 +00:00
Thomas Abthorpe
6a1535676c - Document openfire -- multiple vulnerabilities 2008-11-19 15:24:44 +00:00
Wesley Shields
f83ede5241 Document syslog-ng2 chroot vulnerability.
PR:		ports/128960
Submitted by:	Eygene Ryabinkin <rea-fbsd@codelabs.ru>
Reviewed by:	tabthorpe
2008-11-18 23:07:15 +00:00
Rong-En Fan
18fc6a624e - Add a missing new line between entries 2008-11-18 15:34:10 +00:00
Rong-En Fan
f3cf253f4f - Add an entry for print/enscript and its slave ports
PR:		ports/128958
Submitted by:	Eygene Ryabinkin <rea-fbsd at codelabs.ru> (based on)
Reviewed by:	stas@
2008-11-18 15:33:33 +00:00
Wesley Shields
7d45ea9f2a Add CVE identifier for clamav off-by-one error.
PR:		ports/128924
Submitted by:	Mark Foster <mark@foster.cc>
2008-11-17 19:02:06 +00:00