aboutsummaryrefslogtreecommitdiffstats
path: root/security/vuxml
Commit message (Expand)AuthorAgeFilesLines
* Change affected packages version for the emacs movemail format stringnobutaka2005-02-141-1/+1
* Document DoS in powerdns.simon2005-02-141-0/+26
* Document format string vulnerability in the Emacs movemail utility.simon2005-02-141-0/+53
* - Reflect fixing vulnerability in `net/opendchub'danfe2005-02-131-2/+3
* - Fix a cvename that should have been a certvu.simon2005-02-131-13/+16
* Document two vulnerabilities in ngircd.simon2005-02-131-0/+57
* Document mod_python information leakage vulnerability.simon2005-02-131-0/+32
* Document mailman directory traversal vulnerability.simon2005-02-131-0/+29
* Expand HTML entity reference in latest VuXML entry.nectar2005-02-121-1/+1
* Document enscript-{a4,letter,letterdj} vulnerabilities.naddy2005-02-121-0/+31
* Vulnerability in unrtf is fixed now.danfe2005-02-111-1/+2
* Document privilege escalation vulnerability in postgresql.simon2005-02-091-0/+38
* Document multiple protocol dissectors vulnerabilities in ethereal.simon2005-02-091-0/+53
* Add another squid issue.nectar2005-02-081-0/+34
* Add CERT Vulnerability Note reference for one squid issue,nectar2005-02-081-3/+4
* Add CVE name for squid confusing empty ACL issue.nectar2005-02-081-1/+2
* Add US-CERT Vulnerability Note references for recent squid issues.nectar2005-02-081-2/+5
* Add missing <code> markups in a citation from PSF-2005-001.perky2005-02-041-5/+5
* Add an entry for PSF-2005-001,perky2005-02-041-0/+52
* Update the entry for CAN-2005-0064 to indicate that gpdf 2.8.3 has a fixmarcus2005-02-041-2/+2
* Note that perl does not have a suidperl by default.nectar2005-02-031-0/+4
* Note vulnerabilities in perl.nectar2005-02-031-0/+33
* Add Bugtraq ID for evolution issue.nectar2005-02-021-0/+2
* Add CVE name for squid WCCP issue.nectar2005-02-021-0/+2
* Add a <modified> tag to the perl File::Path issue since the affectednectar2005-02-011-0/+1
* Narrow perl File::Path vulnerability version range a bit.tobez2005-02-011-1/+2
* Documented vulnerabilities found in the newspost, newsfetch and newsgrab ports.niels2005-02-011-0/+113
* The latest xpdf buffer overflow has been repaired in an updatenectar2005-02-011-2/+2
* Add CVE names for recent squid vulnerabilities.nectar2005-02-011-0/+6
* squid -- buffer overflow in WCCP recvfrom() callsem2005-01-301-0/+39
* Mark cups-base as fixed wrt. to "makeFileKey2() buffer overflowsimon2005-01-281-1/+2
* Document "makeFileKey2()" buffer overflow vulnerability in xpdf (andsimon2005-01-271-0/+60
* pdflib has been corrected.nectar2005-01-271-2/+2
* Document a vulnerability in zhcon.nectar2005-01-251-0/+31
* Fix last YAMT entry update to actually make sense... Greater than andsimon2005-01-251-1/+1
* Mark latest YAMT port version as fixed.simon2005-01-251-1/+2
* Document arbitrary code execution vulnerability in evolution.simon2005-01-251-0/+31
* Correct the entry date for 4e4bd2c2-6bd5-11d9-9e1e-c296ac722cb3nectar2005-01-251-1/+1
* Document a local vulnerability in mod_dosevasive.nectar2005-01-251-0/+36
* Document a possible cache-poisoning issue affecting squid.nectar2005-01-251-0/+42
* Document Bugzilla XSS issue.nectar2005-01-251-0/+35
* Oops, forgot to set <discovery> date.nectar2005-01-251-1/+1
* Document window injection vulnerabilities affecting several web browsers.nectar2005-01-251-2/+100
* Cancel duplicate phpbb entry e8c6ade2-6bcc-11d9-8e6f-000a95bc6fae. Itnectar2005-01-241-49/+32
* Document a vulnerability in YAMT.simon2005-01-241-0/+30
* Add squid security advisories for two recent squid entries.simon2005-01-221-2/+4
* squid bug #1200:edwin2005-01-221-0/+31
* Fix typo in last commit.simon2005-01-221-1/+1
* Document XSS in Horde.simon2005-01-221-0/+33
* Oops, I accidently changed an <entry> date when I should havenectar2005-01-221-1/+2
* Document vulnerabilities in older versions of Midnight Commander.nectar2005-01-221-0/+39
* Document a race condition in Perl's File::Path module.nectar2005-01-221-0/+26
* Document phpBB vulnerabilities.nectar2005-01-221-0/+41
* Document vulnerabilities in the Opera web browser's Java implementation.nectar2005-01-221-0/+56
* Document that older versions of sudo lack CDPATH environmental variablenectar2005-01-221-0/+27
* Document vulnerabilities in fcron.nectar2005-01-221-0/+35
* Document vulnerabilities in RealPlayer.nectar2005-01-221-0/+31
* Add CVE name and iDEFENSE advisory references to xzgv issue.nectar2005-01-211-1/+3
* Grr, get the imlib version number right!nectar2005-01-211-1/+1
* Oops, imlib 1.9.15 is still affected. Adjust version number to reflectnectar2005-01-211-1/+1
* Document xpm heap overflows and integer overflows affecting imlib and imlib2.nectar2005-01-211-0/+40
* Document a vulnerability in eGroupWare.nectar2005-01-211-0/+24
* Document Quake II vulnerabilities reported by Richard Stanway.nectar2005-01-211-0/+31
* Add CVE names for konversation bugs.nectar2005-01-211-0/+4
* Document security issue in irc/konversation.josef2005-01-201-0/+24
* Correct several instances where the "msgid" attribute content had annectar2005-01-201-4/+6
* Eliminate character entity references. They are technically fine ofnectar2005-01-201-1/+1
* Update entries with 12 new CVE name references.nectar2005-01-191-6/+25
* Fix date (was YYYY-MM-DD, now 2005-01-19)edwin2005-01-191-1/+1
* squid -- no sanity check of usernames in squid_ldap_authedwin2005-01-191-0/+37
* Document remote DoS in CUPS.simon2005-01-191-0/+25
* During last year's bumpercrop of vulnerabilities in libtiff, a 2004 CVEnectar2005-01-191-0/+34
* Document exploitable vulnerabilities in zgv and xzgv.nectar2005-01-191-0/+41
* Document bug in Mozilla-based software that may leave downloaded filesnectar2005-01-191-0/+78
* Add more references to exim entry.simon2005-01-191-1/+5
* pdflib contains libtiff, and thus is affected by several vulnerabilitiesnectar2005-01-181-3/+15
* Document remote command execution vulnerability in awstats.simon2005-01-181-0/+37
* Document security vulnerability in ImageMagick.simon2005-01-181-0/+36
* Update "cups-base -- HPGL buffer overflow vulnerability" entry tosimon2005-01-181-1/+1
* Spelling corrections.nectar2005-01-181-2/+3
* Regarding CUPS lppasswd entry: Add the CVE names for each issue inlinenectar2005-01-171-4/+11
* Document two vulnerabilities in CUPS.simon2005-01-171-0/+80
* Document mysqlaccess insecure temporary file creation.simon2005-01-171-0/+35
* Document buffer overflow vulnerability in unrtf.simon2005-01-171-0/+28
* Correct recent squid entry: WCCP is in fact enabled by default.simon2005-01-171-3/+1
* For mod_access_referer issue:nectar2005-01-141-4/+5
* Add references to Konqueror password disclosure bug: CVE name, CERTnectar2005-01-141-0/+4
* Update phpBB command execution entry references:nectar2005-01-141-3/+5
* For the latest three Squid issues, add references to the Squid bugnectar2005-01-141-8/+16
* Add a better reference and description of the jabberd vulnerability.nectar2005-01-141-3/+21
* Oops, add missing closing tag for Bugtraq ID which I recently added.nectar2005-01-141-1/+1
* Add CVE name for up-imapproxy issue.nectar2005-01-141-0/+2
* Add CVE names to greed buffer overflows issue. Re-indent <references>nectar2005-01-141-3/+6
* For mpg123 playlist issue, add CVE name, Bugtraq ID, and X-Forcenectar2005-01-141-3/+6
* Add a CVE name for VIM modeline handling issue.nectar2005-01-141-0/+2
* Cancel VID 14e8f315-600e-11d9-a9e7-0001020eed82 "tiff -- stripoffsetsnectar2005-01-141-31/+3
* Add CVE name for tnftp mget vulnerability. Re-indent <references>nectar2005-01-141-4/+6
* For recent squid WCCP DoS issue, correct the URL used in <blockquote>nectar2005-01-141-2/+3
* Document Mozilla NNTP handler vulnerability.nectar2005-01-141-0/+58
* - Document a vulnerability in mpg123.simon2005-01-141-6/+33
* - Integrate vendor patches as published onsimon2005-01-131-0/+62
* - Document some older security issues in libxine.nectar2005-01-121-41/+120
* Document HylaFAX authentication bypass vulnerability.nectar2005-01-121-0/+24
* Document xshisen buffer overflows.naddy2005-01-121-0/+27
* Add CERT Vulnerability Note reference for tiff issue.nectar2005-01-121-0/+2
* Bump copyright for 2005.nectar2005-01-111-1/+1
* Mark pdftohtml as vulnerable to recent xpdf vulnerability.simon2005-01-111-1/+5
* Documented two vulnerabilities in the helvis portniels2005-01-111-0/+62
* Add CVE names for exim issue.nectar2005-01-101-0/+3
* Document format string vulnerability in dillo.simon2005-01-091-0/+25
* - Shorten exim entrysem2005-01-091-12/+0
* Fix typo in latest tiff entry.simon2005-01-091-1/+2
* Change the behavior of `make newentry' so that it invokes ${EDITOR}nectar2005-01-091-13/+9
* Add a target, `newentry', that will insert a VuXML <vuln> templatenectar2005-01-082-0/+68
* - Document that two older tiff vulnerabilities also affectssimon2005-01-081-1/+7
* The tnftp port has been updated.nectar2005-01-071-1/+1
* Fix up last commit (tnftp entry):nectar2005-01-071-4/+4
* Document vulnerabilites in tnftpahze2005-01-071-0/+28
* Document several vulnerabilites in tiff.simon2005-01-071-0/+96
* Fill in forgotten `cite' attribute value.nectar2005-01-071-1/+1
* Document a local vulnerability in VIM's modeline handling.nectar2005-01-071-0/+41
* Add a CERT VU reference for the latest Acrobat Reader vulnerability.nectar2005-01-061-0/+5
* Document buffer overflow vulnerabilities in pcal.simon2005-01-061-0/+28
* Add (now deleted) exim-ldap package to latest exim entry.simon2005-01-061-0/+1
* s/le/lt/ on my last commit. it's "<", not "<=".sem2005-01-051-5/+5
* exim -- two relatively minor security issuessem2005-01-051-0/+43
* For the "kdelibs3 -- konqueror FTP command injection vulnerability"simon2005-01-051-2/+2
* Document security issues in golddig, greed, mpg123.josef2005-01-041-0/+95
* Mark open-motif-2.2.3_1 as fixed with regard to the "xpm -- imagesimon2005-01-031-2/+5
* - Note that the port update to up-imapproxy 1.2.2 included a patch tosimon2005-01-021-1/+5
* Document vulnerabilities in up-imapproxy.simon2005-01-021-0/+34
* Add two bugtraq ids to the latest a2ps entry.simon2005-01-021-0/+3
* Document FTP command injection vulnerability in kdelibs3.simon2005-01-011-0/+36
* Improve topic for latest phpbb vulnerability to highlight the mainsimon2004-12-311-1/+2
* Document insecure temporary file creation in a2ps.simon2004-12-311-0/+29
* Add more references to two older entries.simon2004-12-301-1/+5
* Add m odified date to my last commit.josef2004-12-301-0/+1
* libxine is also affected by the mplayer vulnerabilities.josef2004-12-301-1/+8
* Document vulnerability in libxine.josef2004-12-301-0/+24
* Document vulnerability in jabberd1josef2004-12-271-0/+24
* s/kpdf/kdegraphicsjosef2004-12-251-1/+1
* Add ports to xpdf report that come with own xpdf in distfile.josef2004-12-241-0/+21
* Remove duplicate word in the latest squid entry.simon2004-12-231-1/+1
* Document potentially confusing results results on empty ACLsimon2004-12-231-0/+30
* Document multiple vulnerabilities in ethereal.simon2004-12-231-0/+49
* Document a buffer overflow vulnerability in xpdf.simon2004-12-231-0/+31
* Document phpBB vulnerability that exists on phpBB < 2.0.11delphij2004-12-221-0/+34
* Document a vulnerability in acroread.simon2004-12-221-0/+36
* Document a vulnerability in ecartis.simon2004-12-221-0/+30
* Document multiple vulnerabilities in mplayer.simon2004-12-221-0/+40
* Document a heap buffer overflow vulnerability in MIT Kerberos 5.simon2004-12-211-0/+37
* Document an integer overflow vulnerability in samba.simon2004-12-211-0/+40
* Corrected typo (blockquote in wrong place).niels2004-12-201-1/+1
* - Update the corrected version number for recent phpMyAdmin entry to matchsimon2004-12-191-2/+4
* Updates for the latest PHP entry:simon2004-12-191-1/+4
* Correct recent php entry, 4.3.10 and 5.0.3 are fixed.simon2004-12-171-4/+4
* Fix VID for the last commit.sem2004-12-171-1/+1
* Multiple vulnerabilities in PHP. From Secunia report.sem2004-12-171-0/+52
* Added 5 MySQL vulnerabilitiesniels2004-12-161-0/+177
* Document two vulnerabilities in phpMyAdmin.simon2004-12-161-0/+65
* Document multiple vulnerabilities in wget.simon2004-12-151-0/+44
* - Add bugtraqid references to several entries.simon2004-12-131-1/+12
* Document security issue in Konqueror.josef2004-12-131-0/+26
* Document a NULL pointer dereference vulnerability in mod_access_referer.simon2004-12-121-0/+31
* Integrate the following vendor patches as published onsem2004-12-091-0/+27
* Document information leakage in viewcvs.simon2004-12-081-0/+25
* Document a symlink attack vulnerability in cscope.simon2004-12-071-0/+28
* . Put the topic in the same format all other recent topics have been in forglewis2004-12-051-1/+6
* Add cvename to bnc vulnerability.simon2004-12-051-0/+1
* Document a remote code execution vulnerability in bnc.simon2004-12-051-0/+34
* Fix grammar nit in ImageMagick entry.simon2004-12-051-1/+1
* For the Java plugin vulnerability, also match the linux-jdk packagesimon2004-12-051-1/+2
* . Note that although linux-sun-jdk13 had one plugin vulnerability fixedglewis2004-12-041-1/+1
* Document vulnerability that allows arbitrary command execution in rsshrushani2004-12-031-0/+33
* Document buffer overflows in rockdodger.naddy2004-12-031-0/+27
* Add CVE to zip vulnerability.simon2004-12-021-0/+1
* Document a long path buffer overflow in zip.simon2004-12-021-0/+33
* Document signal delivery vulnerability in sudoscript.simon2004-12-011-0/+23
* Document vulnerability in net/jabberd.josef2004-12-011-0/+27
* Document vulnerability in net/opendchub.josef2004-11-301-0/+26
* Add Bugtraq ID for SA-04:16.fetch entry.simon2004-11-291-0/+1
* Document two vulnerabilities in unarj.simon2004-11-271-0/+53
* . Mark linux-ibm-jdk as also vulnerable to the Java plugin vulnerability.glewis2004-11-261-0/+4
* . Fix the range and add an additional range for the jdk vulnerability.glewis2004-11-261-1/+12
* . Fix whitespace.glewis2004-11-261-6/+6
* . Add an entry for the problem in the Java plugin.glewis2004-11-261-0/+31
* Update ruby CGI DoS entry to note that the most recent version insimon2004-11-251-2/+3
* Document vulnerability in ftp/prozilla.josef2004-11-251-0/+27
* correct fixed versionume2004-11-241-2/+2
* c0a269d5-3d16-11d9-8818-008088034841 andume2004-11-241-2/+6
* Document that the twiki vulnerability is fixed in twiki-20040902.simon2004-11-231-1/+2
* add Cyrus IMAP Server multiple remote vulnerabilities.ume2004-11-231-0/+134
* Add CVE reference for the SA-04:16.fetch entry.simon2004-11-211-0/+1
* Document vulnerability in phpmyadmin.josef2004-11-201-0/+25
* Add localized versions of gd port to the VuXML entry.josef2004-11-191-0/+2
* Document SA-04:16.fetch.simon2004-11-181-0/+36
* Document the buffer overrun vulnerability in samba3josef2004-11-181-0/+27
* Correct range for xpdf vulnerability, as cups-base got a fixingjosef2004-11-181-1/+1
* The last commit to japanese/samba also fixed the security issuejosef2004-11-171-1/+4
* Add CVE name to twiki entry.simon2004-11-171-0/+1
* Add teTeX-base to affected packages in xpdf's vuxml entry.josef2004-11-171-0/+4
* Document arbitrary shell command execution in twiki.simon2004-11-151-0/+33
* Document a format string vulnerability in proxytunnel.simon2004-11-151-0/+36
* Fix entry date for the ruby entry from the last commit.simon2004-11-131-1/+1
* - Document at DoS in the Ruby CGI module.simon2004-11-131-0/+60
* Add CVE name for gnats issue.nectar2004-11-121-1/+2
* Note (likely) remotely exploitable vulnerability in samba 3.nectar2004-11-121-0/+33
* Document vulnerability in GNATS.josef2004-11-121-0/+24
* Document a XSS in squirrelmail.simon2004-11-121-0/+32
* Fix entry date.josef2004-11-121-1/+1
* Document BNC vulnerability.josef2004-11-121-0/+25
* Note old hafiye bug.nectar2004-11-121-0/+36
* Fix a format string vulnerability in ez-ipupdate.naddy2004-11-111-0/+27
* Document a buffer overflow in ImageMagick's EXIF parser.simon2004-11-111-0/+26
* Correct recent Apache 2 entry to not match Apache 1.X.simon2004-11-111-1/+2
* Document vulnerability in Apache 2 (CAN-2004-0942).josef2004-11-111-0/+26
* Update the libxml vulnerability to indicate the fixed version.marcus2004-11-111-1/+2
* Document a format string vulnerability in socat.simon2004-11-101-0/+33
* Document remote buffers overflow in libxml and libxml2.simon2004-11-101-0/+32
* The bugs discovered by Chris Evans have been fixednectar2004-11-101-2/+2
* Fix pkgnames for mod_include vulnerability.josef2004-11-081-6/+6
* Document a virus detection evasion in p5-Archive-Zip.simon2004-11-081-0/+27
* Document mod_include vulnerability in apache and related ports.josef2004-11-061-0/+54
* Document an insecure temporary file creation in postgresql-contrib.simon2004-11-061-0/+31
* Bump modified date in the entry for the last commit.simon2004-11-061-0/+1
* Update latest mpg123 entry to note that the port is fixed in the mostsimon2004-11-061-1/+1
* There was a gd 1.X port with portepoch 2 for a while, so let the gdsimon2004-11-051-0/+1
* Document an integer overflow in the GD Graphics Library.simon2004-11-051-0/+33
* Correct entry date for the putty entry.simon2004-11-041-1/+1
* Document vulnerability in puttyjosef2004-11-041-0/+28
* Add an entry for a wzdftpd remote DoS.simon2004-11-041-0/+22
* Updates to the bogofilter entry:simon2004-11-041-1/+4
* Update linux-openmotif to 2.2.4 to fix the security.mezz2004-11-021-1/+4
* Document rssh format string vulnerability.josef2004-10-281-0/+26
* Create a VuXML entry for Horde XSS help window vulnerability to replacenectar2004-10-271-0/+28
* Document a denial-of-service issue in bogofilter.nectar2004-10-261-0/+33
* Fix integer overflow vulnerabilities.nork2004-10-261-1/+4
* Document xpdf 2 and xpdf 3 vulnerabilities.nectar2004-10-261-0/+38
* Document several security issues in gaim, fixed in various versions fromnectar2004-10-261-5/+222
* Note that the Red Hat based linux_base ports containnectar2004-10-261-1/+2
* Document SSL_Cypherbypass vulnerability in mod_ssljosef2004-10-251-0/+71
* - Document more buffer overflows in mpg123.simon2004-10-241-0/+37
* I suck. (Correct a typo that would have been readily detected ifnectar2004-10-221-1/+1
* Add CVE name for cabextract issue.nectar2004-10-221-0/+2
* Fix a copy/paste typo in last commit.simon2004-10-221-1/+1
* Document DoS in Apache 2 SSL handling.simon2004-10-221-0/+37
* Note that xpm has been fixed.nectar2004-10-221-2/+8
* Update entry regarding INN 2.4.x buffer overflow:nectar2004-10-211-2/+3
* Document remote command execution vulnerability in phpMyAdmin.simon2004-10-211-0/+32
* Document insecure directory handling in cabextract.simon2004-10-211-0/+24