aboutsummaryrefslogtreecommitdiffstats
path: root/security/vuxml
Commit message (Expand)AuthorAgeFilesLines
* Add bugzilla -- multiple vulnerabilities entry.simon2006-11-111-2/+57
* Add cvs+ipv6 to the cvsbug to the vulnerability.remko2006-11-091-0/+5
* - Document recent vulerabilties in the imlib2.stas2006-11-091-0/+38
* - Document recent vulnerability in the ruby CGI library.stas2006-11-051-0/+35
* - pgp < 3.0 and pgpin does not support OpenPGP formatdinoex2006-11-031-2/+4
* The latest couple of firefox vulnerabilities should be fixed in thesimon2006-11-021-4/+4
* ru-apache and ru-apacvhe+mod_ssl were fixed.lev2006-11-011-1/+8
* Add a <modified> tag with the current date to reflect my previous change.vd2006-10-301-0/+1
* Fix typo: "Dmitri Lenev reports reports a privilege ..."vd2006-10-301-1/+1
* Document screen -- combined UTF-8 characters vulnerability.simon2006-10-301-0/+29
* Document two MySQL privilege escalations.simon2006-10-291-0/+60
* - Add entry for www/serendipity and www/serendipity-develmiwi2006-10-231-0/+35
* Document an integer overflow vulnerability in Qt and kdelibs, based on anmarkus2006-10-231-0/+39
* Add reference, which I missed the first time around, from Operasimon2006-10-211-0/+1
* Document opera -- URL parsing heap overflow vulnerability.simon2006-10-211-0/+37
* Minor correction to last commit; the NVIDIA driver version 1.0.8762simon2006-10-211-1/+1
* Update entry for nvidia-driver -- arbitrary root code executionsimon2006-10-211-4/+9
* Document asterisk -- remote heap overwrite vulnerabilityremko2006-10-201-0/+30
* Some style changes to the plone entry.remko2006-10-201-13/+11
* - Add a entry for www/plonemiwi2006-10-201-0/+37
* Document:shaun2006-10-191-0/+108
* Document "ingo -- local arbitrary shell command execution"shaun2006-10-191-0/+27
* Update php -- _ecalloc Integer Overflow Vulnerability entry withsimon2006-10-181-3/+20
* Mark multimedia/win32-codecs as not-vulnerable after the quicktime codecserwin2006-10-171-2/+2
* Document "nvidia-driver -- arbitrary root code execution vulnerability".simon2006-10-171-0/+36
* - Mark php open_basedir fixedsat2006-10-171-2/+3
* - clamav -- CHM unpacker and PE rebuilding vulnerabilitiesmnag2006-10-161-0/+38
* - Add some referencessat2006-10-161-6/+27
* - Document temporary file symlink privilege escalation in tkdiffsat2006-10-161-1/+28
* - Document multiple remote file inclusion vulnerabilities in vtigersat2006-10-151-0/+31
* - Document heap overflow in the KML engine in google-earthsat2006-10-141-0/+28
* devel/cscope was fixed in version 15.6 so use lt instead of le.erwin2006-10-111-2/+2
* Mark zgv as fixed wrt. "zgv, xzgv -- heap overflow vulnerability".simon2006-10-091-1/+2
* - Add php-suhosin to edabe438-542f-11db-a5ae-00508d6a62dfsat2006-10-091-1/+5
* - Fix python package naming in 6afa87d3-764b-11d9-b0e7-0000e249a0a2sat2006-10-081-3/+2
* Update versions affected by python -- buffer overrun in repr() forsimon2006-10-081-4/+7
* Fix whitespace in openssh -- multiple vulnerabilities entry, which Isimon2006-10-081-17/+17
* Update vuxml id 5a39a22e-5478-11db-8f1a-000a48049292tmclaugh2006-10-081-1/+1
* Remove mono-devel and mono-svn from 5a39a22e-5478-11db-8f1a-000a48049292tmclaugh2006-10-081-5/+0
* - Remove an empty url (a typo)sat2006-10-071-1/+0
* - Document User-Agent XSS Vulnerability in torrentfluxsat2006-10-071-0/+27
* - Document buffer overrun in repr() for unicode strings in pythonsat2006-10-071-0/+40
* devel/cscope was fixed in version 15.6erwin2006-10-071-1/+2
* - Document _ecalloc Integer Overflow Vulnerability in php5sat2006-10-061-0/+35
* - Update an old mambo advisory and document its new vulnerabilitiessat2006-10-061-1/+57
* - Add linux-curl to a curl advisory and tweak versions a bitsat2006-10-061-1/+3
* - Add ja-lynx* to a lynx advisorysat2006-10-061-1/+2
* - chinese/tin was also vulnerablesat2006-10-061-0/+1
* - Document buffer overflow vulnerabilities in tinsat2006-10-061-0/+31
* - Use >0 for unpatched vulnerabilitiessat2006-10-051-5/+6
* - Document slapd acl selfwrite Security Issue in openldapsat2006-10-051-0/+35
* - Document "System.CodeDom.Compiler" Insecure Temporary Creation in monosat2006-10-051-0/+38
* - Document open_basedir Race Condition Vulnerability in phpsat2006-10-051-0/+63
* - Document NULL byte injection vulnerability in phpbbsat2006-10-051-0/+39
* - Add references and use earlier discovery date in fffa9257-3c17-11db-86ab-00...sat2006-10-041-1/+5
* - Add CVE names to 19b17ab4-51e0-11db-a5ae-00508d6a62dfsat2006-10-031-0/+3
* - Document admin section SQL injection in postnukesat2006-10-031-0/+31
* - Document LWFN Files Buffer Overflow Vulnerability in freetypesat2006-10-021-0/+39
* - Document Buffer Overflow Vulnerabilities in cscopesat2006-10-021-0/+41
* - Document RSA Signature Forgery Vulnerability in gnutlssat2006-10-021-0/+35
* - Document Search Unspecified XSS in MTsat2006-10-021-0/+34
* - Update dokuwiki advisoriessat2006-10-021-0/+13
* - Document latest XSRF vulnerabilities in phpmyadminsat2006-10-021-0/+31
* - Mark gtetrinet 0.7.10 safesat2006-10-011-1/+3
* Document openssh -- multiple vulnerabilities AKAsimon2006-10-011-0/+63
* - Document multiple vulnerabilities in dokuwikisat2006-09-301-0/+94
* - Document multiple vulnerabilities in tikiwikisat2006-09-301-0/+46
* - Document NULL byte injection vulnerability in punbbsat2006-09-301-0/+32
* - Concisify a Secunia reportsat2006-09-271-8/+1
* - Document (another) Denial of Service Vulnerability in freecivsat2006-09-261-0/+41
* - Document Packet Parsing Denial of Service Vulnerability in freecivsat2006-09-261-0/+36
* - Document multiple vulnerabilities in planssat2006-09-261-0/+49
* - Update the unace advisorysat2006-09-261-4/+24
* - Document multiple XSS security bugs in eyeOSsat2006-09-261-0/+28
* - Document restructuredText "csv_table" Information Disclosure in zopesat2006-09-221-0/+33
* - Document stack-based buffer overflow in libmmssat2006-09-221-0/+36
* - Document Opera SSL RSA Signature Forgerysat2006-09-221-0/+45
* Bump modified data which was missed in last commit.simon2006-09-221-0/+1
* - Mark latest linux-{firefox,seamonkey}-devel safesat2006-09-221-1/+7
* Document mozilla -- multiple vulnerabilities.simon2006-09-151-0/+80
* In the PHP entry, replace mod-php with mod_php [1].remko2006-09-141-8/+9
* Try to explain a bit better that users who have the Quicktime pluginremko2006-09-141-0/+2
* Document win32-codecs -- multiple vulnerabilitiesremko2006-09-141-1/+37
* Attempt two:remko2006-09-141-0/+63
* OK, I do not know WHAT went wrong but it went wrong, revert to the oldremko2006-09-141-802/+739
* Document php -- multiple vulnerabilitiesremko2006-09-141-739/+802
* Cancel latest gnutls entry (GNUTLS-SA-2006-3) - it is a false alarm:novel2006-09-141-37/+1
* Upgrade drupal-pubcookie to the latest version fixing a security holebrooks2006-09-141-0/+29
* Style neats for the latest gnutls entry.novel2006-09-131-8/+10
* correct the tomcat entry (change the ,5 to _5 since we talk about PORTREVISIONremko2006-09-131-3/+7
* Document linux-flashplugin7 -- arbitrary code execution vulnerabilities.simon2006-09-131-0/+38
* Mark jakarta-tomcat5 as fixed since 5.0.30,5 regarding minor XSS issue.lawrance2006-09-111-1/+3
* Add an info about GNUTLS-SA-2006-3.novel2006-09-111-0/+38
* - mailman -- Multiple Vulnerabilitiesmnag2006-09-041-0/+44
* Bump modification date for last jabber entry changegarga2006-09-031-1/+1
* Fix jabber entrygarga2006-09-031-1/+1
* Document hlstats -- multiple cross site scripting vulnerabilities.remko2006-09-031-0/+26
* Document gtetrinet -- remote code executionremko2006-09-031-0/+29
* Bump modified date in the entry changed by garga.remko2006-09-031-1/+1
* net-im/jabber -- Mark the correct versions with fd_set vulnerability, authorgarga2006-09-031-1/+2
* Update the latest FreeBSD-SA entry, ppp got replaced by sppp.remko2006-08-311-5/+6
* Document joomla -- multiple vulnerabilitiesremko2006-08-301-0/+30
* Document FreeBSD-SA-06:18.pppremko2006-08-241-0/+41
* Minor whitespace cleanup (we need a blank line every after </entry>remko2006-08-201-0/+1
* - Add imp to the previous entry.shaun2006-08-181-0/+6
* Document horde -- Phishing and Cross-Site Scripting Vulnerabilities.shaun2006-08-181-0/+40
* Convert 8 spaces to tab as per the FDP for the latestremko2006-08-161-15/+15
* Add entry for globus tmpfile creation bugs.brooks2006-08-161-0/+42
* The lang/f2c port has been updated, update affected versions.brueffer2006-08-161-2/+2
* Document x11vnc -- authentication bypass vulnerability.remko2006-08-141-0/+28
* Document alsaplayer -- multiple vulnerabilities.remko2006-08-141-0/+50
* Document postgresql -- encoding based SQL injection.remko2006-08-141-0/+50
* Bump modified date in the older entry I just corrected.remko2006-08-131-0/+1
* Document postgresql -- multiple vulnerabilities.remko2006-08-131-1/+43
* Fix the discovery date in the latest MySQL entry.remko2006-08-131-1/+1
* Document mysql -- format string vulnerability.remko2006-08-131-0/+30
* OK after some more discussions with Simon it appeared that the ,2remko2006-08-131-1/+4
* Simon provided me with the necessary clue to mark the appropriate portsremko2006-08-131-4/+1
* Document squirrelmail -- random variable overwrite vulnerability.remko2006-08-131-0/+32
* Document rubygem-rails -- evaluation of ruby code.simon2006-08-111-0/+32
* Add CVE name to recent ClamAV entry.simon2006-08-091-0/+1
* Document clamav and clamav-devel vulnerabilitygarga2006-08-081-0/+43
* - Fix discovery date in latest entrymnag2006-08-081-2/+3
* Update drupal to 4.6.9 to fix yet another XSS vulnerability.brooks2006-08-031-0/+27
* Add recent gnupg issue.kuriyama2006-08-021-0/+28
* We are not affected by: CAN-2005-0018 in theremko2006-07-301-1/+1
* Unbreak latest ruby entry by adding missing </lt>.simon2006-07-301-1/+1
* Run make tidy to clean up some style issues.simon2006-07-301-159/+104
* Only sort on entry date, not modified date. It simply causes too muchsimon2006-07-301-1/+1
* - The last vulnerabilities was fixed in ruby18 portsem2006-07-301-1/+2
* OK, I misunderstood Simon with this one. The <gt>1.8.*</gt> entryremko2006-07-301-0/+1
* Fix my previous version commit. The two entries matched twice when youremko2006-07-301-2/+1
* Mark all 1.6 and 1.8 versions as vulnerable, we do not have a fixremko2006-07-301-2/+2
* Add a BID to the latest vuxml entry.remko2006-07-301-28/+16
* - Document Ruby vulnerability. [1]shaun2006-07-301-1/+53
* Add linux-thunderbird to mozilla -- multiple vulnerabilities entry.simon2006-07-291-1/+2
* Document apache -- mod_rewrite ldap buffer overflow vulnerability.simon2006-07-291-0/+99
* Fix error in latest mozilla entry which marked all firefox version assimon2006-07-281-1/+2
* Document mozilla -- multiple vulnerabilities.simon2006-07-271-0/+99
* Add "zope -- information disclosure vulnerability" entrygarga2006-07-141-0/+30
* For latest drupal entry:simon2006-07-141-14/+3
* Add entry for drupal issues.brooks2006-07-141-0/+42
* Add shoutcast crosssite scripting.erwin2006-07-111-0/+31
* Cancel VID 0a4cd819-0291-11db-bbf7-000c6ec775d9 / opera -- JPEGsimon2006-07-111-31/+1
* Correct dates in latest mambo entry by resetting entry date and addingsimon2006-07-111-1/+2
* Bump modified date for previous commit.itetcu2006-07-111-1/+1
* The two two SQL injection vulnerabilities in Mambo described initetcu2006-07-111-1/+1
* Fix markup breakage that slipped in just before commit of the latestsimon2006-07-111-0/+1
* Document samba -- memory exhaustion DoS in smbd.simon2006-07-111-0/+31
* - For the latest trac entry include information from the releasesimon2006-07-101-5/+11
* Document twiki -- multiple file extensions file upload vulnerability.simon2006-07-101-0/+40
* Improve markup for last entry. No content change.simon2006-07-101-2/+5
* Add trac DoS.kuriyama2006-07-101-0/+26
* Add an entry for Horde's latest vulnerabilities.thierry2006-07-061-0/+31
* Document mambo -- SQL injection vulnerabilities.simon2006-07-061-0/+31
* Document phpmyadmin -- cross site scripting vulnerabilitymiwi2006-07-031-0/+27
* Document webmin, usermin -- arbitrary file disclosure vulnerability.remko2006-07-021-0/+34
* Document mutt -- Remote Buffer Overflow Vulnerability.shaun2006-07-011-0/+58
* Document joomla -- multiple vulnerabilitiesmiwi2006-07-011-0/+40
* Document hashcash -- heap overflow vulnerability.remko2006-06-281-0/+32
* Document gnupg -- user id integer overflow vulnerability.simon2006-06-261-0/+30
* Document opera -- JPEG processing integer overflow vulnerability.simon2006-06-231-0/+34
* Update the webcalendar entry, use alphabetic sorting, no functionalremko2006-06-171-1/+2
* Add an entry for Horde's latest XSS vulnerabilities.thierry2006-06-171-0/+39
* Add webcalendar -- information disclosure vulnerability.simon2006-06-171-0/+40
* Add FreeBSD-SA-06:17.sendmail to the VuXML database.remko2006-06-151-0/+39
* Bump modification date in the last entry and earn my own pointyhat.remko2006-06-121-0/+1
* Fix the latest entry by using the entity for &, this passes make validate.remko2006-06-121-3/+3
* - Added multiple dokuwiki vulnerabilitiesaaron2006-06-121-0/+30
* Add an entry for libxine -- buffer overflow vulnerability.nobutaka2006-06-111-0/+33
* Document FreeBSD-SA-06:15.ypserv and FreeBSD-SA-06:16.smbfs.remko2006-06-091-12/+111
* Document two freeradius issues, one newer and one older issue:remko2006-06-091-0/+71
* Mark graphics/fractorama 1.6.7_1 "clean". This port now links against libtiffehaupt2006-06-081-5/+21
* The awstats port has PORTEPOCH bumped, so update the vuxml entry awstatssimon2006-06-081-1/+2
* Mumble, back out local changes which should not have been committed.simon2006-06-061-6/+0
* Mark squirrelmail-1.4.6_1 as fixed for squirrelmail -- plugin.phpsimon2006-06-062-1/+8
* Document squirrelmail -- plugin.php local file inclusion vulnerability.simon2006-06-061-0/+31
* Document dokuwiki -- spellchecker remote PHP code execution.simon2006-06-061-0/+35
* Document drupal -- multiple vulnerabilities.simon2006-06-061-0/+39
* - Add last two MySQL vulnerabilitiesmnag2006-06-021-0/+94
* Document frontpage -- cross site scripting vulnerability and pointsimon2006-05-241-0/+48
* cscope -- buffer overflow vulnerabilitiesmnag2006-05-231-0/+32
* coppermine -- Multiple File Extensions Vulnerabilitymnag2006-05-221-0/+110
* phpmyadmin -- XSRF vulnerabilitiesmnag2006-05-211-0/+30
* - Normalize the topic of last entrypav2006-05-191-1/+1
* - Add VuXML entry for vnc 4.1.1pav2006-05-191-0/+28
* - Add vulnerabilities in last topic.mnag2006-05-141-1/+1
* phpldapadmin -- Cross-Site Scripting and Script Insertionmnag2006-05-141-0/+40
* Modify the entry for p5-DBI insecure temporary files creation to reflecttobez2006-05-121-2/+7
* Add www/fswiki vulnerability.kuriyama2006-05-061-0/+25
* - Add missing s in latest awstats entry's title.simon2006-05-061-1/+36
* - Cancel last rsync entry. Does not affect FreeBSD port.mnag2006-05-061-32/+1
* Document awstat -- arbitrary command execution vulnerability.simon2006-05-061-1/+44
* phpwebftp -- "language" Local File Inclusionmnag2006-05-041-0/+34
* Document firefox -- denial of service vulnerabilityvd2006-05-031-0/+38
* trac -- Wiki Macro Script Insertion Vulnerabilitymnag2006-05-031-0/+34
* rsync -- "xattrs.diff" Patch Integer Overflow Vulnerabilitymnag2006-05-031-0/+35
* clamav -- Freshclam HTTP Header Buffer Overflow Vulnerabilitymnag2006-05-031-0/+40
* - Add last jabberd entry:mnag2006-05-011-0/+33
* Also mark linux-seamonkey vulnerable to recent mozillasimon2006-04-271-1/+2
* cacti -- ADOdb "server.php" Insecure Test Script Security Issuemnag2006-04-271-0/+30
* amaya -- Attribute Value Buffer Overflow Vulnerabilitiesmnag2006-04-271-0/+35
* lifetype -- ADOdb "server.php" Insecure Test Script Security Issuemnag2006-04-271-2/+33
* ethereal -- Multiple Protocol Dissector Vulnerabilitiesmnag2006-04-271-0/+47
* My 100th commit to the vuln.xml file:remko2006-04-261-0/+29
* Change paraview checks to be < 2.4.3 now that paraview uses system libtiff.anholt2006-04-261-5/+20
* Document zgv, xzgv -- heap overflow vulnerability.remko2006-04-241-0/+39
* Document crossfire-server -- denial of service and remote code executionremko2006-04-231-0/+34
* Document p5-DBI -- insecure temporary file creation vulnerability.remko2006-04-231-0/+32
* Document wordpress -- full path disclosure.remko2006-04-231-0/+30
* Document xine -- multiple remote string vulnerabilities.remko2006-04-231-0/+33
* Add an entry for cyrus-sasl -- DIGEST-MD5 Pre-Authenticationume2006-04-221-0/+25
* Also mark all other versions of FreeBSD (That were released) asremko2006-04-201-0/+2
* Add FreeBSD -- FPU information disclosure (SA-06:14) to theremko2006-04-201-0/+50
* Add some CERT references to latest Mozilla entry.simon2006-04-191-0/+13
* plone -- "member_id" Parameter Portrait Manipulation Vulnerabilitymnag2006-04-181-0/+31
* Fix copy/paste error in last commit and mark linux-mozilla < 1.7.13 assimon2006-04-171-1/+1
* Document mozilla/firefox/thunderbirds's latest attempt at Internetsimon2006-04-171-0/+118
* Update entry for sysutils/heartbeat. The insecure temporary file creationehaupt2006-04-161-1/+2
* mailman -- Private Archive Script Cross-Site Scriptingmnag2006-04-161-0/+35
* Document f2c -- insecure temporary files.remko2006-04-111-0/+29
* mplayer -- Multiple integer overflowsmnag2006-04-081-0/+38
* - Add Secunia references for last phpMyAdmin issue.mnag2006-04-071-0/+2
* Document kaffeine -- buffer overflow vulnerability.remko2006-04-071-0/+30
* Document thunderbird -- javascript execution.remko2006-04-071-0/+29
* Update the latest zoo entry to match the latest update to the port.remko2006-04-071-1/+2
* phpmyadmin -- XSS vulnerabilitiesmnag2006-04-071-0/+58
* clamav -- Multiple Vulnerabilitiesmnag2006-04-061-0/+43
* Add cvename to the recent OpenVPN entry.remko2006-04-061-0/+2
* Document mediawiki -- hardcoded placeholder string security bypassremko2006-04-061-0/+30
* Document netpbm -- buffer overflow in pnmtopng.remko2006-04-061-0/+31
* Document zoo -- stack based buffer overflow.remko2006-04-061-0/+30
* Document mediawiki -- cross site scripting vulnerability.remko2006-04-061-0/+30
* dia -- XFig Import Plugin Buffer Overflowmnag2006-04-061-0/+34
* openvpn -- LD_PRELOAD code execution on client through malicious or compromis...mnag2006-04-051-0/+35
* samba -- Exposure of machine account credentials in winbind log filesmnag2006-04-051-0/+44
* Upgrade pubcookie from 3.3.0-beta2 to 3.3.0a fixing serious XSSbrooks2006-04-051-0/+93
* Fill in the version numbers for the vidsedwin2006-04-011-2/+2
* For horde -- remote code execution vulnerability in the help viewersimon2006-03-301-4/+8
* freeradius -- EAP-MSCHAPv2 Authentication Bypassmnag2006-03-301-0/+32
* Add an entry about Horde's remote code execution vulnerability in thethierry2006-03-291-0/+31
* linux-realplayer -- buffer overrunmnag2006-03-281-0/+69
* s/8 spaces/tab/ in the sendmail entry.remko2006-03-251-1/+1
* Record that our sendmail port was also vulnerable.remko2006-03-251-0/+5
* Update the 'Evolution - remote format string vulnerabilities' entry.remko2006-03-241-1/+2
* Document the latest three FreeBSD Security Advisories:remko2006-03-241-0/+127
* xorg-server -- privilege escalationlesi2006-03-221-0/+30
* - heimdal -- Multiple vulnerabilitiesmnag2006-03-201-0/+44
* Document ftp/curl's TFTP packet buffer overflow vulnerabilityvd2006-03-201-0/+35
* Add drupal <= 4.6.5 vulns.brooks2006-03-181-0/+52