Commit graph

761 commits

Author SHA1 Message Date
Simon L. B. Nielsen
c5114fefb3 Document ethereal -- multiple vulnerabilities. 2005-07-30 08:26:06 +00:00
Clement Laforet
f758062b43 - Fix apache 2.1 range for CAN-2005-2088 entry which prevents apache 2.0 from
upgrading.

Pointyhat to:	clement, remko
Reviewed by:	erwin
2005-07-28 08:51:43 +00:00
Remko Lodder
086e9785f3 Mark apache+mod_ssl-1.3.33+2.8.22_1 as not vulnerable in the latest Apache entry. 2005-07-28 04:22:14 +00:00
Remko Lodder
7e01fa0b51 There must be an curse. s/il/li/.
Noticed by:	nectar
2005-07-27 17:21:35 +00:00
Remko Lodder
5199530afe Update my latest Apache entry to make clear that this only affects certain
installations (when Apache is used as a HTTP proxy in combination with some
web servers). I didn't make that clear in the first commit.

Requested by:		nectar
Discussed with:		clement
2005-07-27 17:01:45 +00:00
Remko Lodder
fe0cc1d802 Document apache -- http request smuggling.
Requested by:	clement
Glanced at by:	clement
2005-07-27 15:57:54 +00:00
Erwin Lansing
4667fefaa7 Set modified date in entry for previous commit.
Cluebat swung by:	simon
2005-07-26 13:32:39 +00:00
Erwin Lansing
3070ab2383 Note that the fd_set vulnerability in net/bld was fixed in 0.3.3
Prodded by:	garga
Glanced at by:	remko
2005-07-26 10:50:56 +00:00
Hiroki Sato
783a425a47 Document clamav -- multiple remote buffer overflows. 2005-07-25 15:57:46 +00:00
Simon L. B. Nielsen
820ff3497c - Document isc-dhcpd -- format string vulnerabilities (older
vulnerabilty). [1]
- Use standard title format for latest egroupware entry.

Reminded by:	Panagiotis Christias [1]
2005-07-23 09:30:01 +00:00
Jun Kuriyama
e9ae1a90f5 Add entry for eGroupWare's recent vulnerabilities. 2005-07-23 02:03:37 +00:00
Simon Barner
632103ed79 Document denial of service attack in fetchmail 6.5.2.1.
Reported by:	Matthias Andree <matthias.andree@gmx.de>
Reviewed by:	simon
2005-07-22 09:44:32 +00:00
Simon L. B. Nielsen
3d69e33260 Update phppgadmin entry to note that it was fixed in 3.5.4 and add a
few references while here anyway.

Prodded by:	Tobias Roth (I think :-) )
2005-07-21 21:13:45 +00:00
Simon L. B. Nielsen
f1b860d9e5 Document dnrd -- remote buffer and stack overflow vulnerabilities. 2005-07-21 16:31:13 +00:00
Simon L. B. Nielsen
e2038fe047 Fix typo in last commit
Noticed by:	Matthias Andree <matthias.andree@gmx.de>
2005-07-21 13:38:26 +00:00
Simon L. B. Nielsen
f085ba4502 Add more references to latest fetchmail entry [1] and sort references
while here anyway.

Submitted by:	Matthias Andree <matthias.andree@gmx.de> [1]
2005-07-21 10:56:44 +00:00
Tom Rhodes
8eb060fe5c Document an issue with the LDAP backend provided by PowerDNS. 2005-07-21 08:43:12 +00:00
Simon L. B. Nielsen
a23f66e331 Document fetchmail -- remote root/code injection from malicious POP3
server.

Submitted by:	Matthias Andree <matthias.andree@gmx.de>
2005-07-20 19:43:05 +00:00
Michael Landin
4ccb5ee963 o add kdebase (kate) vulnarability.
Reviewed by:	simon
2005-07-18 20:07:26 +00:00
Simon L. B. Nielsen
28825cc36f Add CVE names to recent bugzilla entry. 2005-07-18 09:54:06 +00:00
Simon L. B. Nielsen
e47a7c39fe - Document firefox & mozilla -- multiple vulnerabilities.
- Minor style nit in drupal entry: Use port name (i.e. lower case) as
  first part of the title.
2005-07-16 14:38:04 +00:00
Erwin Lansing
ede485957c Add an entry for the drupal vulnerabilities. 2005-07-16 11:29:43 +00:00
Niels Heinen
5bab4982a8 Fixed incorrect newsfetch and mnogosearch affected package versions
Approved by:	nectar (mentor)
2005-07-15 14:34:59 +00:00
Jun Kuriyama
29216de4a6 Markup fixed version of net-snmp problem. 2005-07-13 03:04:17 +00:00
Remko Lodder
2472e1c59f Correct a typo: s/lemote/remote/
Spotted by:	simon
2005-07-09 20:02:57 +00:00
Remko Lodder
112e0da40d Document the following vulnerabilities:
phpSysInfo -- cross site scripting vulnerability
mysql-server -- insecure temporary file creation
net-snmp -- fixproc insecure temporary file creation
phpbb -- multiple vulnerabilities
shtool -- insecure temporary file creation

Approved by:		simon
2005-07-09 19:57:12 +00:00
Simon L. B. Nielsen
0580c39d0f Document phppgadmin -- "formLanguage" local file inclusion vulnerability. 2005-07-08 21:36:19 +00:00
Simon L. B. Nielsen
f76a96caad Document pear-XML_RPC -- information disclosure vulnerabilities. 2005-07-08 21:17:12 +00:00
Simon L. B. Nielsen
81b2a86d18 Document ekg -- insecure temporary file creation. 2005-07-08 21:03:14 +00:00
Simon L. B. Nielsen
775ddef518 Document bugzilla -- multiple vulnerabilities. 2005-07-08 20:29:16 +00:00
Simon L. B. Nielsen
5bbec38d7c Document nwclient -- multiple vulnerabilities (old issues).
PR:		ports/82101
Submitted by:	niels
Noticed by:	Derik van Zuetphen <dz@426.ch>
2005-07-08 20:04:13 +00:00
Simon L. B. Nielsen
feedb4a329 Add CAN reference to recent phpbb vulnerability. 2005-07-06 22:46:02 +00:00
Simon L. B. Nielsen
a7f693e9cd Document acroread -- insecure temporary file creation. 2005-07-06 22:25:11 +00:00
Simon L. B. Nielsen
e51ea6f83d Document two calmav vulnerabilities. 2005-07-06 22:14:55 +00:00
Simon L. B. Nielsen
7d9bb89690 - Add FreeBSD-SA-05:16.zlib.
- Fix ranges for recent security advisories, a bunch of <le> really
  should have been <lt>.
2005-07-06 21:34:32 +00:00
Simon L. B. Nielsen
417582572e Document acroread -- buffer overflow vulnerability. 2005-07-06 20:45:34 +00:00
Simon L. B. Nielsen
04bda21000 Document net-snmp -- remote DoS vulnerability. 2005-07-05 21:13:38 +00:00
Simon L. B. Nielsen
3cf5b1eda5 Document cacti -- multiple vulnerabilities.
Prodded by:	Babak Farrokhi <babak@farrokhi.net>
2005-07-05 20:33:11 +00:00
Simon L. B. Nielsen
24dbf34258 - Add another reference to bzip2 -- denial of service and permission
race vulnerabilities.
- Document two cases of wordpress -- multiple vulnerabilities.
2005-07-05 19:01:15 +00:00
Hiroki Sato
0c4160ee5f Document the following issues:
- phpbb -- remote PHP code execution vulnerability
 - pear-XML_RPC -- arbitrary remote code execution
2005-07-03 08:40:51 +00:00
Simon L. B. Nielsen
f47912670d Add certvu reference to kernel -- TCP connection stall denial of service
vulnerability.
2005-07-03 08:12:20 +00:00
Simon L. B. Nielsen
0ced0e71fb Add FreeBSD-SA-05:13.ipfw, FreeBSD-SA-05:14.bzip2, and
FreeBSD-SA-05:15.tcp.
2005-06-29 23:00:52 +00:00
Simon L. B. Nielsen
107f041052 Document ethereal -- multiple protocol dissectors vulnerabilities. 2005-06-24 20:38:40 +00:00
Hiroki Sato
6612153b41 Document tor -- information disclosure. 2005-06-24 10:22:18 +00:00
Hiroki Sato
a3b72b8856 Document linux-realplayer -- RealText parsing heap overflow. 2005-06-24 09:09:22 +00:00
Hiroki Sato
4d8593594d Document ruby -- arbitrary command execution on XMLRPC server. 2005-06-23 06:55:35 +00:00
Sergey Matveychuk
578582c275 - net/cacti - potential SQL injection and cross site scripting attacks 2005-06-21 09:58:39 +00:00
Simon L. B. Nielsen
6d9112c46e Document three opera issues. 2005-06-20 22:34:16 +00:00
Simon L. B. Nielsen
087a40724b Document sudo -- local race condition vulnerability. 2005-06-20 20:18:18 +00:00
Simon L. B. Nielsen
3114180a17 Add another reference to the latest tcpdump issue. 2005-06-20 19:17:10 +00:00