aboutsummaryrefslogtreecommitdiffstats
path: root/security/vuxml
Commit message (Expand)AuthorAgeFilesLines
* Fix discovery datebapt2011-08-251-1/+1
* DOcument phpMyAdmin CVE-2011-3181 (multiple XSS).delphij2011-08-251-0/+25
* Document new Chromium vulnerabilities.rene2011-08-241-2/+34
* Mark PHP5 < 5.3.7_2 as vulnerable to PHP bug #55439: crypt() returns onlydelphij2011-08-231-0/+27
* Document multiple PHP vulnerabilities.delphij2011-08-201-0/+42
* Document Rails multiple vulnerabilities.delphij2011-08-201-0/+33
* Document dovecot DoS vulnerability.delphij2011-08-201-0/+28
* Document "otrs" - vulnerabilities in OTRS-Core allows read accessskv2011-08-191-0/+30
* document recent mozilla vulnerabilitiesflo2011-08-171-0/+61
* Document samba vulnerabilities of SWAT web interface.delphij2011-08-171-0/+43
* Adjust dates in 510b630e-c43b-11e0-916c-00e0815b8da8.wxs2011-08-161-2/+2
* - Document ISC DHCP server DoS.wxs2011-08-141-0/+36
* Document "bugzilla" - multiple vulnerabilities.skv2011-08-141-0/+62
* Document dtc security issuescrees2011-08-131-0/+36
* Document freetype2 and libXfont vulnabilities.kwm2011-08-111-0/+59
* Update linux-f10-flashplugin to 10.3r183.5 .nox2011-08-111-0/+47
* Document new vulnerabilities for www/chromium ( < 13.0.782.107)rene2011-08-031-2/+99
* Document libsoup security hole.kwm2011-07-291-0/+30
* Fix match of phpmyadmin in recent revisions.delphij2011-07-281-2/+4
* - Add CVE reference for OpenSAML2 issueswills2011-07-261-1/+2
* Document phpmyadmin vulnerabilitieszi2011-07-261-0/+46
* Document OpenSAML2 issueswills2011-07-261-0/+29
* Document rsync DoS issue (CVE-2011-1097).delphij2011-07-211-0/+29
* Document BIND vulnerabilities for ports. This was inspired by the PR,dougb2011-07-061-0/+66
* Document phpMyAdmin multiple vulnerabilitiesjlaffaye2011-07-031-0/+50
* document one more vulnerability in the recent asterisk entryflo2011-06-291-3/+8
* Document new vulnerabilities for www/chromium ( < 12.0.742.112)rene2011-06-291-2/+25
* Add modified tag to 8a5770b4-54b5-11db-a5ae-00508d6a62df.wxs2011-06-281-0/+1
* Now that www/mambo is updated, fix the range inwxs2011-06-271-1/+1
* document recent asterisk vulnerabilitiesflo2011-06-261-0/+48
* - Document ejabberd vulnerability fixed in 2.1.8ashish2011-06-241-1/+32
* - also mark firefox35 vulnerableflo2011-06-231-0/+2
* - document recent mozilla vulnerabilities [1]flo2011-06-221-0/+95
* Document piwik remote command execution vulnerability.culot2011-06-221-0/+33
* Document dokuwiki XSS vulnerability.delphij2011-06-211-0/+31
* Update linux-f10-flashplugin to 10.3r181.26 .nox2011-06-161-0/+38
* - Document CVE-2011-1408 in www/ikiwikibrix2011-06-151-0/+29
* - Cleanupmiwi2011-06-121-12/+12
* Update to 10.3r181.22 .nox2011-06-091-0/+40
* Document www/chromium vulnerabilities fixed in version 12.0.742.91rene2011-06-081-3/+49
* - Document CVE-2011-1910wxs2011-06-071-0/+50
* Add CVE-2011-1947: fetchmail STARTTLS denial of service.mandree2011-06-061-0/+42
* - Cleanupmiwi2011-06-031-125/+124
* - document asterisk remote crash vulnerabilityflo2011-06-031-0/+29
* Document CVE-2011-1752, CVE-2011-1783 and CVE-2011-1921 in devel/subversionlev2011-06-021-0/+50
* Document drupal6 multiple vulnerabilities.wxs2011-05-261-0/+35
* Document Erlang R14B02 ssh library vulnerability (cryptographicallyolgeni2011-05-261-0/+32
* Document latest www/chromium vulnerabilities.rene2011-05-261-2/+17
* - Cleanup Part 1miwi2011-05-251-34/+35
* - Document the last unbound vulnerabilitysem2011-05-251-0/+29
* - revert last change of apr-* entryohauer2011-05-251-7/+10
* - use apr-* and add <gt></gt> entries for all apr0/apr1 issuesohauer2011-05-251-11/+8
* Update the mod_pubcookie entry with an ap20 prefix. The port has alwasybrooks2011-05-251-1/+1
* Unbreak VuXML web build by changing "ap*-" to "ap-" in package name forsimon2011-05-241-1/+1
* Fix build.delphij2011-05-241-1/+1
* Partially address several years of neglect of pubcookie. Indicate thebrooks2011-05-241-0/+66
* - add entry for ViewVC < 1.1.11ohauer2011-05-241-7/+62
* Update to 10.3r181.14 .nox2011-05-241-0/+52
* Document Opera Frameset unload code injection vulnerability.mandree2011-05-231-0/+28
* Document pure-ftpd multiple vulnerabilities prior to 1.0.32.delphij2011-05-231-0/+30
* mail/exim: document CVE-2011-1764 and CVE-2011-1407rea2011-05-151-0/+46
* - document Apache APR DoS vulnerabilitiesohauer2011-05-141-0/+30
* - Document www/zend-framework (potential SQL injection when using PDO_MySQL)glarkin2011-05-131-0/+29
* Document mediawiki multiple vulnerabilities.wxs2011-05-131-0/+29
* Document CVE-2011-1799 and CVE-2011-1800 for www/chromiumrene2011-05-131-2/+10
* Incorporate changes recommended by the tidy target. While here, properlywxs2011-05-131-8/+4
* Document CVE-2011-1720: Postfix memory corruption error.sahil2011-05-091-0/+38
* Document www/chromium vulnerabilities fixed in version 11.0.696.57rene2011-04-301-2/+84
* Document mozilla -- multiple vulnerabilitiesflo2011-04-291-0/+59
* - document recent asterisk vulnerabilitiesflo2011-04-221-1/+49
* Document VideoLAN-SA-1103. Heap corruption in MP4 demultiplexer in VLC.jsa2011-04-181-0/+26
* Update to 10.2r159.1 .nox2011-04-181-0/+48
* Document multiple vulnerabilities in RT www/rt36 and www/rt38flo2011-04-171-0/+38
* Document www/chromium vulnerabilitiesrene2011-04-151-2/+10
* Unbreak file format:simon2011-04-151-5/+5
* Add the following for security/krb5:cy2011-04-151-0/+157
* Document a root exploit via rogue hostname in xrdb.kwm2011-04-141-0/+32
* Limit affected mupdf version to <0.8bapt2011-04-131-1/+1
* Document "otrs" - several XSS attacks possible.skv2011-04-131-0/+32
* Fix typoerwin2011-04-121-1/+1
* Document isc-dhcp41-client and isc-dhcp31-client vulnerabilities.wxs2011-04-111-0/+34
* Add CVE entry for recent tinyproxy vulnerability.wxs2011-04-091-0/+1
* - tinyproxypav2011-04-081-0/+23
* Document two quagga DoS vulnerabilitiessem2011-04-021-0/+33
* Add a missing </p>.kwm2011-03-291-1/+1
* Document gdm privilege escalation vulnerabilitykwm2011-03-291-0/+32
* Document vulnerabilities before Chromium 10.0.648.204rene2011-03-271-2/+22
* Add entries for php5-exif and php5-zip before 5.3.6 release.ale2011-03-251-0/+57
* Update to 10.2r153.nox2011-03-251-0/+44
* - Document mozilla -- update to HTTPS certificate blacklistbeat2011-03-241-0/+46
* Document CVE-2011-0411: Postfix "STARTTLS" Plaintextsahil2011-03-191-0/+38
* - Documented integer overflow in hiawatha web serverglarkin2011-03-181-0/+32
* Document asterisk multiple vulnerabilities.delphij2011-03-171-0/+39
* Mark chromium-9.0.597.107 and chromium-10.0.648.127 as vulnerable.rene2011-03-151-2/+57
* - Cleanup a bitmiwi2011-03-151-1/+1
* - Add correct infos to the avahi issusmiwi2011-03-151-5/+9
* Fix date in avahi entry.kwm2011-03-151-1/+1
* Add avahi denial of services attack.kwm2011-03-151-0/+35
* Fix discovery for mailman XSS vulnerabilities.wxs2011-03-101-1/+1
* Document mail/mailman XSS vulnerabilities.wxs2011-03-101-0/+29
* - Document redmine -- XSS vulnerabilitydecke2011-03-081-0/+29
* Document subversion -- remote HTTP DoS vulnerabilitylev2011-03-051-0/+32
* - Document mozilla -- multiple vulnerabilitiesbeat2011-03-021-0/+83
* Document Chromium versions 9.0.597.[84,94,107]rene2011-03-021-2/+71
* Add two OpenLDAP security by-pass vulnerabilities.delphij2011-02-261-0/+29
* Fix broken linux-sun-jdk vulndb entries.mandree2011-02-251-3/+7
* - Cleanup previous entrymiwi2011-02-231-7/+8
* - add asterisk -- Exploitable Stack and Heap Array Overflowsflo2011-02-231-0/+38
* Document PivotX administrator password reset vulnerability.delphij2011-02-201-0/+34
* - Update lastest tomcat entry (tomcat6/7 have the same problem)miwi2011-02-151-0/+11
* - Document tomcat vulnerabilitywen2011-02-151-0/+28
* Document two phpMyAdmin vulnerabilities.delphij2011-02-121-0/+37
* Update to 10.2r152.nox2011-02-121-0/+47
* Document mupdf PDF handling remote code execution vulnerability.delphij2011-02-121-0/+30
* Document rubygem-mail Remote Arbitrary Shell Command Injection Vulnerability.delphij2011-02-121-0/+31
* Document plone remote security bypass vulnerability.delphij2011-02-121-0/+36
* Document exim local privilege escalasion vulnerability.delphij2011-02-121-0/+35
* Document OpenOffice multiple vulnerabilities.delphij2011-02-121-0/+46
* - Cleanup previous commitmiwi2011-02-111-6/+6
* Document multiple webkit-gtk2 security vulnabilities, fixed in 1.2.7.kwm2011-02-101-0/+46
* Document awstat multiple vulnerability.delphij2011-02-101-0/+36
* Document Opera multiple vulnerabilities.delphij2011-02-101-0/+57
* Document multiple vulnerabilities in Django.delphij2011-02-101-0/+45
* - S/seriuos/seriousmiwi2011-02-091-1/+1
* - Document mediawiki - multiple vulnerabilitesmiwi2011-02-091-0/+42
* - Add chinese/wordpress-zh_CN and chinese/wordpress-zh_TW to the previous wo...miwi2011-02-091-0/+3
* - While here drop MD5 Supportmiwi2011-02-051-7/+0
* - Add entry for wordpress - SQL injection vulnerabilitymiwi2011-02-051-0/+33
* - Cleanup previous commitmiwi2011-02-031-1/+1
* Add vlc - Insufficient input validation in MKV demuxer vulnability.kwm2011-02-021-0/+26
* - Cleanup previous Entrymiwi2011-01-311-7/+7
* - Document maradns -- denial of service when resolving a long DNS hostnamedecke2011-01-311-0/+34
* Adjust range for ISC DHCPv6 server crash.wxs2011-01-291-1/+1
* Document ISC DHCPv6 server crash.wxs2011-01-291-0/+31
* Document "bugzilla" - multiple seriuos vulnerabilities.skv2011-01-251-0/+58
* Add dokuwiki multiple ACL escalation vulnerabilities.delphij2011-01-251-0/+40
* Try to unbreak vuxml portaudit build by removing use of HTML entity.simon2011-01-241-1/+1
* Describe www/chromium vulnerabilities between 8.0.552.215 and 8.0.552.237rene2011-01-231-2/+53
* asterisk-1.8.2.1 is still vulnerable due to a botched merge upstream.flo2011-01-211-1/+1
* - fix asterisk16 version stringflo2011-01-191-1/+1
* - Document Exploitable Stack Buffer Overflow in asteriskflo2011-01-191-0/+39
* Document tarsnap cryptographic nonce reuse vulnerability.wxs2011-01-191-0/+31
* Add entry for moinmoin XSS vulnerabilities.delphij2011-01-181-4/+37
* Document tor remote code execution and crash vulnerability.delphij2011-01-181-0/+37
* security/sudo: document privilege escalation, CVE-2011-0010rea2011-01-131-0/+33
* devel/subversion: document security fixes in 1.6.15rea2011-01-131-0/+43
* Split recent PHP entry into multiple onesrea2011-01-131-41/+246
* Add entry for CVE-2010-4645 (php).ale2011-01-091-0/+41
* Document CVE-2010-4345: local exim -> root escalationrea2011-01-081-0/+30
* - Cleanupmiwi2011-01-061-15/+16
* - Document the Clickjacking vulnerabilities of mediawikiwen2011-01-061-0/+31
* Bump copyright year.erwin2011-01-011-1/+1
* Document webkit-gtk2 multiple vulnerabilities < 1.2.6.kwm2010-12-311-0/+37
* Document django multiple vulnerabilities.delphij2010-12-301-0/+67
* Add Drupal views plugin - Cross Site Scripting (XSS).remko2010-12-281-1/+38
* - Document redmine -- multiple vulnerabilitiesdecke2010-12-231-0/+33
* Add Tor remote crash and the possibility of remote code execution.remko2010-12-231-0/+38
* Update to properly cover php52.delphij2010-12-171-1/+2
* - Document JavaScript injection exploits in Yahoo UI (YUI) libraryglarkin2010-12-161-0/+34
* Document PHP multiple vulnerabilitiesdelphij2010-12-141-0/+64
* - Document mozilla -- multiple vulnerabilitiesbeat2010-12-101-0/+88
* - Document recent MIT krb5 checksum handling vulnerabilities.stas2010-12-101-0/+189
* Document the known vulnerabilities for www/chromium.rene2010-12-081-0/+99
* Document ProFTPD compromised source packages backdoor security issue.osa2010-12-041-0/+29
* - Document phpMyAdmin XSS attack in database searchsunpoet2010-11-301-0/+33
* Document net/isc-dhcp41-server DHCPv6 DoS. The update to the port is comingwxs2010-11-251-0/+30
* Add entry for CVE-2010-4168: denial of service (server/client) via invaliddanfe2010-11-241-0/+31
* - Kill EOL whitespace and reformat to fit in standard terminal width betterdanfe2010-11-241-119/+108
* Add an entry for www/horde-base VCARD attachments XSS vulnerability.thierry2010-11-241-0/+27
* Fix discovery date in last entry.simon2010-11-241-1/+1
* Add proftpd remote root vulnerability.remko2010-11-241-0/+37
* - add security/openssl CVE-2010-3864dinoex2010-11-171-0/+35
* - Update to 10.1r102 resp. 9.0r289.nox2010-11-071-0/+55
* Add wireshark CVE-2010-3445.delphij2010-11-061-0/+53
* - Limit affected version of dovecot to 1.2.* before 1.2.8sunpoet2010-11-041-1/+1
* Document mailman XSS.wxs2010-11-041-0/+36
* Document "otrs" - multiple XSS and denial of service vulnerabilities.skv2010-11-031-0/+49
* - Document mozilla -- Heap buffer overflow mixing document.write and DOMbeat2010-10-281-0/+56
* - www/operadinoex2010-10-271-0/+41
* - Add bzip2 integer overflow vulnerabilitysunpoet2010-10-261-0/+36
* Add the missing FreeBSD SA entries. We used to add these but stopped a whilewxs2010-10-251-0/+319
* Add monotone denial of service.rene2010-10-251-0/+30
* - Add devel/apr0 to list of packages that is affect.pgollucci2010-10-211-2/+6
* - Document mozilla -- multiple vulnerabilitiesbeat2010-10-201-0/+75
* Add multiple vulnabilities in webkit-gtk2.kwm2010-10-201-0/+37
* - set modified datepgollucci2010-10-061-0/+1
* - these 2 urls are covered by the <cvename/> tagspgollucci2010-10-061-2/+0
* - Fix a minor typopgollucci2010-10-061-1/+1
* Document devel/apr1's apr-util vunerabilitiespgollucci2010-10-061-0/+39
* Documented phpMyFaq XSS vulnerabilityniels2010-10-021-0/+32
* Report an XSS vulnerability in ftp/horde-gollem.thierry2010-09-291-11/+12
* Report a XSS vulnerability in mail/horde-dimp.thierry2010-09-291-0/+27
* Report a XSS vulnerability in mail/horde-imp.thierry2010-09-291-0/+29
* Report 2 vulnerabilities in www/horde-base.thierry2010-09-291-0/+34
* Documented remote code execution vulnerability in OpenXniels2010-09-261-0/+31
* Documented squid denial of service vulnerabilityniels2010-09-251-0/+31
* Update to 10.1r85 resp. 9.0r283 [1].nox2010-09-231-0/+44
* Correct discovery date, my bad :(delphij2010-09-181-1/+1
* Document django XSS vulnerability.delphij2010-09-181-0/+47
* - Add libxul as affected package to the latest mozilla entrydecke2010-09-151-0/+5
* - Fix CVE name for webkit-gtk2jadawin2010-09-101-11/+11
* Document webkit-gtk2 - multiple vulnerabilities.kwm2010-09-101-0/+38
* Belatedly (and perhaps pointlessly) document [1]:shaun2010-09-091-0/+30
* - Document mozilla -- multiple vulnerabilitiesbeat2010-09-081-0/+86
* Document sudo Runas group vulnerability.wxs2010-09-081-0/+36
* - wget 1.12_1 is also concernedbapt2010-09-051-1/+1
* - Add wget entry CVE-2010-2252bapt2010-09-031-0/+57
* - Document p5-libwww vulnerability (remote servers can create .(dot) files)jadawin2010-08-311-0/+28
* Documented quagga vulnerabilities (stack overflow, DoS)niels2010-08-251-0/+38
* Document "bugzilla" - information disclosure, denial of service.skv2010-08-251-0/+62
* - Fix version range of phpMyAdminlwhsu2010-08-231-2/+2
* Adjust the version range in previous entry: 1.0.1 is also vulnerable, anddanfe2010-08-231-2/+2
* Add entry for OpenTTD denial of server vulnability.kwm2010-08-221-0/+30
* - Added corkscrew: overflow condition due to insecure sscanf usageniels2010-08-221-1/+27
* - Add phpMyAdmin's CVE-2010-3056 entrylwhsu2010-08-211-0/+31
* - Fix date of the latest ruby entry.stas2010-08-211-1/+2
* Added CVE to SLiM vulnerabilityniels2010-08-211-0/+2
* - Document SLiM insecure PATH assignment issueniels2010-08-201-1/+26
* - Document recent WEBrick XSS vulnerability in ruby.stas2010-08-181-0/+34
* - Add security/isolate entrybapt2010-08-171-0/+29
* Fix krb5 entry (86b8b655-4d1a-11df-83fb-0015587e2cc1) version rangeshaun2010-08-161-2/+1
* - Fix last entry by adding the forgotten package name.gabor2010-08-151-1/+1
* Document VLC CVE-2010-2937.jsa2010-08-151-0/+29
* Update to 10.1r82 resp. 9.0r280.nox2010-08-141-0/+40
* Document opera -- multiple vulnerabilities.shaun2010-08-131-0/+35
* - Belatedly document firefox -- Dangling pointer crash regression from pluginbeat2010-08-091-0/+30
* Whitespace fixes.wxs2010-08-041-3/+3
* - Fix Piwik entry's <name> taglwhsu2010-08-041-1/+1
* - Add Piwik CVE-2010-2786 entrylwhsu2010-08-041-0/+34
* Previous vuln affects only apache-2.2.xkuriyama2010-07-311-1/+1
* - Document libmspack and cabextract vulnerabilitygabor2010-07-301-0/+35
* Add entry for apache.kuriyama2010-07-261-0/+28
* Document buffer overflow when parsing gitdir.wxs2010-07-231-1/+30
* - Document www/codeigniter file upload class vulnerabilityglarkin2010-07-221-0/+29
* - Document mozilla -- multiple vulnerabilitiesbeat2010-07-211-0/+84
* Add vte as package name, instead of empty.kwm2010-07-191-1/+1
* Document vte title set+query attack vulnerability.kwm2010-07-191-0/+53
* Document webkit-gtk2 vulnerabilities.kwm2010-07-191-0/+28
* - Document redmine vulnerabilitiesdecke2010-07-101-0/+27
* - Update to 3.1.1nemoliu2010-07-071-0/+28
* Add bogofilter heap underrun on malformed base64 input.delphij2010-07-071-2/+40
* - Cleanup a bitmiwi2010-07-061-13/+13
* Document "bugzilla" - information disclosure.skv2010-07-051-0/+43
* Document multiple vulnerabilities in irc/kvirc*makc2010-07-011-0/+34
* Add bid reference for libpng entry.delphij2010-06-291-0/+2
* - graphics/png CVE-2010-1205dinoex2010-06-291-0/+37
* - Document moodle -- multiple vulnerabilitieswen2010-06-281-0/+24
* Document mDNSResponder -- corrupted stack crash when parsing bad resolv.confrene2010-06-281-0/+31
* Document opera -- Data URIs can be used to allow cross-site scripting.shaun2010-06-261-0/+33
* - Cancelled movemail symlink vulnerability (doesnt affect our ports)niels2010-06-241-61/+36