aboutsummaryrefslogtreecommitdiffstats
path: root/security/vuxml
Commit message (Expand)AuthorAgeFilesLines
* Document information disclosure in net/openafsfeld2015-10-291-0/+34
* Add entry for x11/xscreensaver for a lock bypass vulnerabilityzeising2015-10-281-0/+29
* Document lldpd security vunlnerability.mat2015-10-271-0/+26
* Update range for libressl vulnerabilityfeld2015-10-261-1/+2
* Add an entry for wireshark-1.12.8 for CVE-2015-7830.marcus2015-10-261-0/+34
* Document the recent remote site takeover via SQL injection vuln in Joomlajunovitch2015-10-251-0/+259
* Document redirect vulnerability in the drupal7 overlay modulejunovitch2015-10-241-0/+37
* Record phpMyAdmin -- content spoofing vulnerability.matthew2015-10-241-0/+32
* Add CVE references to the NTP entry.delphij2015-10-231-0/+17
* Document Mediawiki security vulnerabilities for 1.25.3, 1.24.4, and 1.23.11junovitch2015-10-231-0/+53
* Document October 2015 NTP Security Vulnerability Announcement (Medium)cy2015-10-221-0/+74
* Document multiple XSS vulnerabilities fixed in CodeIgniterjunovitch2015-10-201-0/+27
* - Add NO_ARCHsunpoet2015-10-201-2/+3
* Add new VuXML entry for git arbitrary code execution bug on versions beforegarga2015-10-201-0/+42
* - Document Salt multiple vulnerabilitiessunpoet2015-10-181-0/+39
* Document CVE-2015-7184 in firefoxswills2015-10-171-0/+35
* Document flash 0-day, remove code execution.kwm2015-10-171-0/+32
* Fix the vuxml build caused by a multitude of errors in r399425 (libressl).peter2015-10-161-6/+7
* security/libressl: Fix memory leak and buffer overflow DoS vulnerabilitybrnrd2015-10-161-0/+30
* Document vulnerability in polarssl, polarssl13, and mbedtlsfeld2015-10-151-0/+39
* Document multiple vulnerabilities in the Magento platformjunovitch2015-10-151-0/+45
* net/miniupnpc: improve TALOS-2015-0035 entry in VuXMLjbeich2015-10-151-1/+3
* net/miniupnpc: reference TALOS-2015-0035 fixjbeich2015-10-151-0/+2
* Document www/pear-twig remote code executionfeld2015-10-151-0/+28
* Document assigned CVE for graphics/optipngfeld2015-10-151-0/+2
* net/miniupnpc: Document buffer overflowfeld2015-10-151-0/+29
* Document latest flash vulnabilities.kwm2015-10-141-0/+56
* Forgot two vulnerabilities in the previous commit.rene2015-10-141-0/+5
* Document new vulnerabilities in www/chromium < 46.0.2490.71rene2015-10-141-0/+54
* Add CVE assignment to r398701 Zend Framework 1 entryjunovitch2015-10-121-0/+2
* Add CVE assignment to r398626 PHP entryjunovitch2015-10-121-0/+3
* Document shell command execution via improper escaping in p5-UI-Dialogjunovitch2015-10-101-0/+35
* Document iPython vulnerabilities fixed in 3.2.2junovitch2015-10-101-0/+47
* Add entry for two security problems in PostgreSQLgirgen2015-10-091-0/+55
* security/vuxml: Document Zend Framework 1 vulnerabilitywg2015-10-061-0/+29
* Document OpenSMTPD vulnerabilities (5.7.3)junovitch2015-10-061-4/+53
* Document recent mbed TLS/PolarSSL security releasesjunovitch2015-10-061-0/+74
* Unbreak vuxml, woops.kwm2015-10-051-1/+1
* Document heap overflows and a DoS in gdk-pixbuf2.kwm2015-10-051-0/+35
* Document 20150910 Plone advisoriesjunovitch2015-10-051-0/+42
* Document PHP multiple security advisories in phar pluginjunovitch2015-10-051-0/+41
* Add CVE reference to Apache James entryjunovitch2015-10-051-0/+2
* Document mail/opensmtpd vulnerabilityswills2015-10-041-0/+27
* Document security advisory for the Apache James serverjunovitch2015-10-011-0/+33
* Report OTRS vulnerabilitycs2015-09-301-0/+34
* Document newest flash vulnabilities.kwm2015-09-281-0/+79
* Fix <freebsdpr> syntax on several entriesjunovitch2015-09-281-13/+20
* Document multiple vulnerabilities in CodeIgniterjunovitch2015-09-281-0/+151
* Document new vulnerabilities in www/chromium < 45.0.2454.101rene2015-09-271-0/+43
* Revise Moodle multiple security vulnerabilities from r397210 to reflectjunovitch2015-09-241-9/+27
* Fix older ruby vuxml entryfeld2015-09-241-3/+7
* libssh2 version entry range was missing PORTEPOCHfeld2015-09-231-1/+2
* Document vulnerability in security/libssh2feld2015-09-231-0/+30
* Summary: Document recent Mozilla vulnerabilitiesjbeich2015-09-231-5/+144
* Mention ports with libzip copyjbeich2015-09-201-0/+17
* Fix typojbeich2015-09-201-2/+3
* Next avidemux2 may have CVE-2015-3395 fix, adjustjbeich2015-09-201-2/+2
* Document recent ffmpeg vulnerabilitiesjbeich2015-09-201-0/+186
* Update dcraw entry in VUXMLcs2015-09-191-3/+2
* Document Moodle multiple security vulnerabilitiesjunovitch2015-09-181-0/+38
* Document squid TLS/SSL parser denial of service vulnerabilityjunovitch2015-09-181-0/+41
* Document remind buffer overflow with malicious reminder file inputjunovitch2015-09-181-0/+30
* Alter <topic> of some of my recent entries to be more consistently wordedfeld2015-09-181-3/+3
* Normalize "use after free" as "use-after-free" in <topic>feld2015-09-181-8/+8
* Document deskutils/shutter vulnerabilityfeld2015-09-181-0/+31
* Document graphics/openjpeg vulnerabilityfeld2015-09-171-0/+27
* Document vulnerability in older graphics/optipngfeld2015-09-171-0/+26
* Document net/openslp vulnerabilityfeld2015-09-171-0/+29
* Document archivers/p7zip vulnerabilityfeld2015-09-171-0/+31
* Document www/h2o vulnerabilityfeld2015-09-171-0/+34
* Fix spelling of zh_CN for wordpress vulnerabilities.delphij2015-09-161-7/+10
* Document wordpress multiple vulnerabilities.delphij2015-09-161-0/+50
* - document bugzilla CVE-2015-4499ohauer2015-09-141-0/+37
* net/openldap24-server Fix affected package namefeld2015-09-141-1/+2
* Document net/openldap24-server vulnerabilityfeld2015-09-121-0/+28
* Expand a35f415d-572a-11e5-b0a4-f8b156b6dcc8:naddy2015-09-101-3/+25
* Document oggenc buffer overflow in audio/vorbis-tools.naddy2015-09-101-0/+28
* Document pgbouncer failed auth_query lookups falling back to auth_userjunovitch2015-09-091-0/+31
* Document the latest phpMyAdmin vulnerability: reCaptcha bypassmatthew2015-09-091-0/+32
* Correct some package names that were mistakenly labeled as php56feld2015-09-091-4/+5
* Add assigned CVEs to previous php vulnerability entryfeld2015-09-091-0/+4
* Document php vulnerabilitiesfeld2015-09-091-0/+80
* Spelling frontent -> frontendfeld2015-09-091-2/+3
* Document sysutils/ganglia-webfrontent vulnerabilityfeld2015-09-091-0/+26
* Add net/wireshark-qt5 as affectedfeld2015-09-091-0/+2
* Document net/wireshark vulnerabilitiesfeld2015-09-091-0/+57
* Document sysutils/screen vulnerabilityfeld2015-09-091-0/+27
* Document net/libvncserver vulnerabilityfeld2015-09-091-0/+26
* Document a number of integer overflows in gdk-pixbuf2.kwm2015-09-051-0/+25
* Minimum range adjustment for bind vulnerabilityfeld2015-09-031-1/+1
* Correct version range mistakes in bind vulnerabilitiesfeld2015-09-031-3/+3
* Document bind vulnerabilitiesfeld2015-09-031-0/+81
* Document new vulnerabilities in www/chromium < 45.0.2454.85rene2015-09-031-0/+70
* Document dns/powerdns vulnerabilityfeld2015-09-031-0/+29
* Revise Ghostscript entry date to match date of commit.junovitch2015-09-021-1/+2
* Document denial of service (crash) via crafted Postscript files for Ghostscriptjunovitch2015-09-021-0/+59
* Document recent ffmpeg/libav vulnerabilitiesjbeich2015-09-011-0/+176
* Document graphics/graphviz vulnerabilityfeld2015-08-291-0/+26
* Document recent mozilla vulnerabilitiesjbeich2015-08-281-0/+43
* graphics/libpgf was assigned a CVEfeld2015-08-261-0/+2
* Document multiple security advisories for go and go14junovitch2015-08-261-0/+39
* Fix MFSA quote link and add libtremor commitsjbeich2015-08-251-1/+7
* Document libtremor vulnerabilities in the ancient version we providejbeich2015-08-251-0/+64
* Document devel/pcre vulnerabilityfeld2015-08-251-0/+37
* Document drupal multiple vulnerabilities.delphij2015-08-221-0/+69
* Remove excess spacebdrewery2015-08-221-1/+1
* Document OpenSSH 7.0 PAM fixes.bdrewery2015-08-221-0/+32
* Document OpenSSH 7.0 PermitRootLogin issuebdrewery2015-08-221-0/+29
* Document sysutils/tarsnap security announcementfeld2015-08-211-0/+36
* Document vlc arbitrary pointer dereference.delphij2015-08-211-0/+35
* graphics/jasper new CVE added to entryfeld2015-08-201-1/+10
* Document vulnerability in graphics/libpgffeld2015-08-201-0/+28
* Look up a reference to a commit in 2005 that had been previously lost.peter2015-08-201-1/+1
* Update some legacy items that don't work or are using runtime remapping:peter2015-08-201-10/+9
* Extend recent QEMU related xen-tools CVEs to include the qemu-* portsjunovitch2015-08-201-3/+42
* Document CVE-2015-4491 in gdk-pixbuf2.kwm2015-08-191-0/+27
* irc/unreal fix <name> to be capitalizedfeld2015-08-191-1/+1
* Document django vulnerabilitiesfeld2015-08-191-0/+73
* Document irc/unreal denial of servicefeld2015-08-191-0/+29
* Document graphics/jasper vulnerabilityfeld2015-08-191-0/+30
* Document freexl multiple vulnerabilities. One is still awaiting CVE assignment.feld2015-08-191-0/+66
* rt was assigned a CVEfeld2015-08-191-0/+2
* ansible was assigned a CVEfeld2015-08-191-0/+2
* gnutls was assigned a CVEfeld2015-08-191-0/+2
* Document mod_jk vulnerabilityfeld2015-08-181-0/+32
* Document two QEMU related xen-tools security advisoriesjunovitch2015-08-171-0/+65
* Document PHP security issues impacting the lang/php5* ports (Core/SPL)junovitch2015-08-171-0/+77
* Document MediaWiki multiple security vulnerabilitiesjunovitch2015-08-151-0/+45
* Sync libvpx check for CVE-2015-448[56] with r394231jbeich2015-08-151-2/+2
* Document freeradius3 vulnerabilityfeld2015-08-151-0/+28
* Document gnutls vulnerabilitiesfeld2015-08-151-0/+65
* Document Froxlor database password information disclosure vulnerabilityjunovitch2015-08-131-0/+40
* Document two XSS vulnerabilities in rt40, rt42.matthew2015-08-131-0/+40
* Document py-foolscap vulnerabilityfeld2015-08-131-0/+32
* Make libvpx-1.3.0 vulnerable by moving MFSA 2014-77 into separate entryjbeich2015-08-121-4/+65
* Document newest flash vulnabilities.kwm2015-08-121-0/+92
* Oops, mark bundled libvpx v1.4.0 in firefox as vulnerable againjbeich2015-08-121-0/+9
* Move libvpx vulnerability into its own entryjbeich2015-08-121-5/+33
* Document recent mozilla vulnerabilitiesjbeich2015-08-121-0/+110
* Document an already fixxed vulnerability in lighttpd 1.4.35 or older.madpilot2015-08-101-0/+29
* Document PCRE heap overflow vulnerability in '(?|' situationsjunovitch2015-08-101-0/+34
* Mention all CVEs that are fixed in 4.2.4. The release notes only mentionedflo2015-08-101-0/+6
* Document recent mozilla vulnerabilitiesjbeich2015-08-071-0/+35
* Document wordpress vulnerabilitiesflo2015-08-071-0/+36
* Add two security issues for subversion.lev2015-08-061-0/+35
* Document Elasticsearch directory traversal attack and remote code executionjunovitch2015-08-061-0/+61
* Document xen-tools QEMU heap overflow flaw with certain ATAPI commandsjunovitch2015-08-041-0/+32
* Correct version range for libidn entryjunovitch2015-08-031-1/+2
* Document older net-snmp DoS vulnerabilityfeld2015-08-011-0/+35
* Document net-snmp vulnerabilityfeld2015-07-311-0/+30
* Reflect Chicken 4.10.0 RC2 as the minimum version with the CVE-2015-4556 fixjunovitch2015-07-311-2/+3
* Document bind CVEfeld2015-07-291-0/+43
* Document OpenSSH CVE-2015-5600 for MaxAuthTries bypassbdrewery2015-07-281-0/+28
* Document logstash SSL/TLS security vulnerability (FREAK attack)feld2015-07-271-0/+33
* Document new vulnerabilities in www/chromium < 44.0.2403.89rene2015-07-251-0/+101
* Document shibboleth DoSfeld2015-07-251-0/+48
* Adjust wordpress range -- www/wordpress has PORTEPOCHfeld2015-07-241-0/+3
* Update Wordpress entry to add CVEsfeld2015-07-241-0/+3
* Document wordpress XSSfeld2015-07-241-0/+34
* Document libidn out-of-bounds read issue with invalid UTF-8 inputfeld2015-07-231-0/+29
* Document buffer overflow vulnerabilities in SoXfeld2015-07-231-0/+58
* Document CVE assignment in iPython 3.2.1 entry.olgeni2015-07-231-0/+2
* Add gdk-pixbuf2 vulnability.kwm2015-07-221-0/+26
* Adjust range for apache22feld2015-07-211-1/+1
* Document PCRE buffer overflowfeld2015-07-201-0/+36
* Fix moodle reference URLfeld2015-07-201-1/+2
* Document Cacti Multiple XSS and SQL injection vulnerabilitiesfeld2015-07-201-0/+44
* Document php-phar vulnerabilitiesfeld2015-07-191-0/+37
* zenphoto was assigned CVEsfeld2015-07-191-0/+5
* Document recent Moodle security advisoriesfeld2015-07-191-0/+48
* package name is mariadb100, not mariadb10feld2015-07-191-1/+1
* MySQL SSL Downgrade affects the client not the serverfeld2015-07-191-11/+3
* Add missing <cvename> to apache entryfeld2015-07-181-0/+1
* Add missing apache22 packages for other "workers"feld2015-07-181-0/+4
* Apache 2.2.31 is now public, fixing CVE-2015-3183feld2015-07-181-0/+30
* CVE now assigned to squidfeld2015-07-181-1/+2
* Update flash entry.kwm2015-07-171-3/+3
* Correct range for libavfeld2015-07-171-1/+1
* Document zenphoto vulnerabilitiesfeld2015-07-171-0/+28
* Document groovy vulnerabilityfeld2015-07-171-0/+35
* Document libav vulnerabilityfeld2015-07-171-0/+27
* Document recent multiple mozilla vulnerabilitiesjbeich2015-07-161-0/+116
* Add PolarSSL < 1.2.14 issues.mandree2015-07-161-0/+28
* Latest libxml2 vulnerability also affects linux-*-libxml2tijl2015-07-161-0/+9
* Document linux-*-libxml2 vulnerabilitiestijl2015-07-161-2/+29
* Document linux-c6-flac vulnerabilitiestijl2015-07-161-0/+5
* - Document multiple security issues for libwmffeld2015-07-151-0/+103
* Reference another URL for tidy's CVEfeld2015-07-151-0/+1
* CVEs have been assigned for tidyfeld2015-07-151-0/+3
* Document multiple apache24 vulnerabilitiesfeld2015-07-151-0/+43
* Fix typo in flash security bulletin.kwm2015-07-151-2/+2
* - Update url of latest Flash plugin advisorytijl2015-07-151-4/+19
* Use the correct package name for linux-*-flashplugintijl2015-07-141-20/+20
* Use correct <tag> to mark all versions vulnerable.kwm2015-07-141-2/+2
* Add newest flash vulnerabilities CVE-2015-5122 and CVE-2015-5123.kwm2015-07-141-0/+35
* Document php sqlite3 use-after-free vulnerabilityfeld2015-07-141-1/+34
* Document php spl use-after-free vulnerabilityfeld2015-07-141-0/+33
* Document PHP arbitrary code execution. No CVE assigned yet.feld2015-07-141-1/+36
* php 5.4 package name is php5, not php54feld2015-07-141-2/+2
* Document CVE-2015-3152 "BACKRONYM" vulnerabilityfeld2015-07-141-0/+61
* hadoop2 and oozie ports fetch a version of tomcat that is vulnerablefeld2015-07-131-0/+9
* Document CSRF remote execution vulnerability for devel/ipython (CVE pending).olgeni2015-07-131-0/+42
* Document freeradius vulnerabilityfeld2015-07-131-0/+44
* Correct range for non-devel version of v8feld2015-07-131-0/+3
* CVE-2015-5380 also affects v8 and v8-develfeld2015-07-131-2/+8
* Advisory URL was identical; remove duplicatefeld2015-07-131-1/+0
* PowerDNS discovered the fix for CVE-2015-1868 was not complete in thefeld2015-07-131-2/+6
* Add note on how to use the new html functionalityfeld2015-07-131-1/+2
* Add ability to produce html files for vuxml entriesfeld2015-07-133-1/+417
* - Add xen-tools to the list of packages fixed in existingbapt2015-07-121-0/+5
* Document all recent xen-kernel and xen-tools security issuesbapt2015-07-121-0/+604
* Document a few pivotx vulnerabilitiesbapt2015-07-111-0/+55
* Update squid entry to reflect new range of affected versionsfeld2015-07-101-16/+12
* Document wpa_supplicant WPS_NFC option payload length validationdelphij2015-07-101-0/+26
* Document OpenSSL alternative chains certificate forgery vulnerability.delphij2015-07-101-0/+36
* - Correct the version range of www/py-django-devellwhsu2015-07-101-4/+4
* document django vulnerabilitiesfeld2015-07-091-0/+96
* node and iojs vuln now has a CVE assignedfeld2015-07-091-1/+2
* Document Adobe Flash Plugin vulnerability (CVE-2015-5119)tijl2015-07-091-0/+36
* Fix other no-op formatting mistakes for the roundcube entryfeld2015-07-091-2/+2
* Fix formatting by adding some breaksfeld2015-07-091-6/+6
* Make version range closer to reality -- this should be a no-op (use of P2delphij2015-07-081-2/+2
* -base options for dns/bind have been gone now. Cover them with <gt>0</gt>delphij2015-07-081-2/+6
* Document BIND remote resolver DoS vulnerability when DNSsec validationdelphij2015-07-081-0/+45
* cups-filters mentions wrong CVE in some placesfeld2015-07-071-0/+2
* Document haproxy information leakfeld2015-07-071-0/+36
* Document roundcube vulnerabilitiesfeld2015-07-071-0/+39
* Document SQL Injection in turnserverfeld2015-07-071-0/+26
* Document recent squid vulnerabilitiesfeld2015-07-071-0/+83
* Use correct end tag.kwm2015-07-061-1/+1
* Add iojs as affected packagefeld2015-07-061-0/+6
* Correct bitcoin range for CVE-2015-3641feld2015-07-061-1/+1
* Document ansible vulnerabilitiesfeld2015-07-061-0/+188
* Document bitcoin CVE-2015-3641feld2015-07-061-0/+32
* add node-devel as affected packagefeld2015-07-061-0/+4
* add www/node denial of service vulnerabilityfeld2015-07-061-0/+29
* cups-filters CVE-2015-3279feld2015-07-041-0/+39
* Fix range for linux-c6-openssltijl2015-07-031-2/+2
* Record libxml2 vulnabilitykwm2015-07-011-0/+30
* Correct version range for netpbm CVE-2015-3885feld2015-07-011-3/+2
* Document games/wesnoth authentication information disclosure vulnerability.delphij2015-07-011-0/+40
* - Document CVE-2015-3258 (cups-filters buffer overflow vulnerability)amdmi32015-07-011-0/+38
* Document ntp remote control message DoS vulnerability.delphij2015-07-011-0/+40
* Document qemu pcnet guest to host escape vulnerability - CVE-2015-3209nox2015-06-271-0/+36
* Document CVE-2014-3120, CVE-2014-6439, CVE-2015-1427, CVE-2015-3337,delphij2015-06-261-0/+210
* Split CVE-2015-4152 to its own entry as the affected port is logstash only.delphij2015-06-251-11/+75
* Add entry for logstash-forwarder/logstash.delphij2015-06-251-0/+53
* Aggressively mark more consumers of bundled dcraw as vulnerablejbeich2015-06-251-2/+47
* Document linux-*-flashplugin11 CVE.xmj2015-06-241-0/+41
* Fix entry date.delphij2015-06-231-1/+1