aboutsummaryrefslogtreecommitdiffstats
path: root/security
Commit message (Expand)AuthorAgeFilesLines
* Fix package, don't create links to WRKSRC into PREFIXarved2005-01-261-1/+2
* Fixed typo in Makefile (MAN/MAN3), bumped PORTREVISIONniels2005-01-261-3/+3
* Document a vulnerability in zhcon.nectar2005-01-251-0/+31
* Don't leave the pkgconfig data directory rotting thereyar2005-01-251-0/+1
* Don't leave the pkgconfig data directory rotting thereyar2005-01-251-0/+1
* Fix last YAMT entry update to actually make sense... Greater than andsimon2005-01-251-1/+1
* Mark latest YAMT port version as fixed.simon2005-01-251-1/+2
* Document arbitrary code execution vulnerability in evolution.simon2005-01-251-0/+31
* - Move editors/gedit2 to editors/geditpav2005-01-251-2/+2
* Correct the entry date for 4e4bd2c2-6bd5-11d9-9e1e-c296ac722cb3nectar2005-01-251-1/+1
* Document a local vulnerability in mod_dosevasive.nectar2005-01-251-0/+36
* Document a possible cache-poisoning issue affecting squid.nectar2005-01-251-0/+42
* Chase the Gaim update, and tighten CONFLICTS to make portlint a bit happier.marcus2005-01-252-0/+2
* Document Bugzilla XSS issue.nectar2005-01-251-0/+35
* Oops, forgot to set <discovery> date.nectar2005-01-251-1/+1
* Document window injection vulnerabilities affecting several web browsers.nectar2005-01-251-2/+100
* Cancel duplicate phpbb entry e8c6ade2-6bcc-11d9-8e6f-000a95bc6fae. Itnectar2005-01-241-49/+32
* - extended API for hw-cryptodinoex2005-01-242-1/+38
* Document a vulnerability in YAMT.simon2005-01-241-0/+30
* Unbreak: now compiles with latest libevent portpetef2005-01-242-4/+0
* Workaround a bug in the configure script which caused libcrypto.abms2005-01-231-0/+11
* Add squid security advisories for two recent squid entries.simon2005-01-221-2/+4
* Upgrade to 2.1.4.thierry2005-01-222-6/+7
* squid bug #1200:edwin2005-01-221-0/+31
* Fix typo in last commit.simon2005-01-221-1/+1
* Document XSS in Horde.simon2005-01-221-0/+33
* Oops, I accidently changed an <entry> date when I should havenectar2005-01-221-1/+2
* Document vulnerabilities in older versions of Midnight Commander.nectar2005-01-221-0/+39
* Document a race condition in Perl's File::Path module.nectar2005-01-221-0/+26
* Document phpBB vulnerabilities.nectar2005-01-221-0/+41
* Document vulnerabilities in the Opera web browser's Java implementation.nectar2005-01-221-0/+56
* Document that older versions of sudo lack CDPATH environmental variablenectar2005-01-221-0/+27
* Document vulnerabilities in fcron.nectar2005-01-221-0/+35
* Document vulnerabilities in RealPlayer.nectar2005-01-221-0/+31
* Add CVE name and iDEFENSE advisory references to xzgv issue.nectar2005-01-211-1/+3
* Grr, get the imlib version number right!nectar2005-01-211-1/+1
* Oops, imlib 1.9.15 is still affected. Adjust version number to reflectnectar2005-01-211-1/+1
* Document xpm heap overflows and integer overflows affecting imlib and imlib2.nectar2005-01-211-0/+40
* Document a vulnerability in eGroupWare.nectar2005-01-211-0/+24
* Document Quake II vulnerabilities reported by Richard Stanway.nectar2005-01-211-0/+31
* Add CVE names for konversation bugs.nectar2005-01-211-0/+4
* don't sed ${WRKSRC}/Makefile.in twiceoliver2005-01-212-4/+4
* Update to 4421jeh2005-01-212-3/+3
* Remove conditional dependencies on security/tcp_wrapper: That portcperciva2005-01-211-9/+0
* Update: security/osiris 4.0.6 -> 4.0.8edwin2005-01-202-3/+3
* Document security issue in irc/konversation.josef2005-01-201-0/+24
* Update to DAT 4420jeh2005-01-202-3/+3
* Correct several instances where the "msgid" attribute content had annectar2005-01-201-4/+6
* Eliminate character entity references. They are technically fine ofnectar2005-01-201-1/+1
* Update entries with 12 new CVE name references.nectar2005-01-191-6/+25
* Fix date (was YYYY-MM-DD, now 2005-01-19)edwin2005-01-191-1/+1
* squid -- no sanity check of usernames in squid_ldap_authedwin2005-01-191-0/+37
* Add CONFLICTS due to libexec/ftpd.nectar2005-01-191-0/+2
* Document remote DoS in CUPS.simon2005-01-191-0/+25
* During last year's bumpercrop of vulnerabilities in libtiff, a 2004 CVEnectar2005-01-191-0/+34
* Document exploitable vulnerabilities in zgv and xzgv.nectar2005-01-191-0/+41
* Document bug in Mozilla-based software that may leave downloaded filesnectar2005-01-191-0/+78
* Fix plist, unmark broken.bms2005-01-192-23/+1
* Add more references to exim entry.simon2005-01-191-1/+5
* pdflib contains libtiff, and thus is affected by several vulnerabilitiesnectar2005-01-181-3/+15
* Document remote command execution vulnerability in awstats.simon2005-01-181-0/+37
* Document security vulnerability in ImageMagick.simon2005-01-181-0/+36
* Update to a new version of the none ciper patch. The previous versionbrooks2005-01-182-2/+7
* Update "cups-base -- HPGL buffer overflow vulnerability" entry tosimon2005-01-181-1/+1
* Spelling corrections.nectar2005-01-181-2/+3
* Regarding CUPS lppasswd entry: Add the CVE names for each issue inlinenectar2005-01-171-4/+11
* Update to 2.0.5vs2005-01-1718-24/+21
* Document two vulnerabilities in CUPS.simon2005-01-171-0/+80
* Document mysqlaccess insecure temporary file creation.simon2005-01-171-0/+35
* Document buffer overflow vulnerability in unrtf.simon2005-01-171-0/+28
* Correct recent squid entry: WCCP is in fact enabled by default.simon2005-01-171-3/+1
* Remove leftover directory.adamw2005-01-162-1/+2
* Use a vendor-provided method for preventing gnomesu-pam installation.adamw2005-01-162-11/+1
* Fix plist.krion2005-01-151-0/+1
* Adjust the CONFLICTS to appease portlint.marcus2005-01-151-1/+1
* Instruct 4.x users to append the sample gnomesu-pam to /etc/pam.conf,adamw2005-01-151-2/+1
* Extra super OMFG-I'd-be-screwed-without-you thanks to marcus for theadamw2005-01-157-10/+54
* Update to 0.9.4.bms2005-01-146-60/+59
* Fixed build error that occurs when libsavi is installed and addedniels2005-01-141-0/+13
* Fix package.bms2005-01-143-20/+15
* - Update to 0.2.9vs2005-01-143-9/+9
* With my portmgr hat on, mark this port IGNORE on 4.X as it will corruptmarcus2005-01-141-1/+7
* Fix build on >4.x.adamw2005-01-142-0/+13
* Author rerolled distfile with an updated NEWS entry.adamw2005-01-141-2/+2
* Upgrade to version 1.2.3 which contains a fix for the reportedniels2005-01-143-11/+7
* For mod_access_referer issue:nectar2005-01-141-4/+5
* Add references to Konqueror password disclosure bug: CVE name, CERTnectar2005-01-141-0/+4
* - Update to 1.0pav2005-01-145-51/+52
* Update phpBB command execution entry references:nectar2005-01-141-3/+5
* For the latest three Squid issues, add references to the Squid bugnectar2005-01-141-8/+16
* Add a better reference and description of the jabberd vulnerability.nectar2005-01-141-3/+21
* Oops, add missing closing tag for Bugtraq ID which I recently added.nectar2005-01-141-1/+1
* Add CVE name for up-imapproxy issue.nectar2005-01-141-0/+2
* Add CVE names to greed buffer overflows issue. Re-indent <references>nectar2005-01-141-3/+6
* For mpg123 playlist issue, add CVE name, Bugtraq ID, and X-Forcenectar2005-01-141-3/+6
* Add a CVE name for VIM modeline handling issue.nectar2005-01-141-0/+2
* Cancel VID 14e8f315-600e-11d9-a9e7-0001020eed82 "tiff -- stripoffsetsnectar2005-01-141-31/+3
* Add CVE name for tnftp mget vulnerability. Re-indent <references>nectar2005-01-141-4/+6
* Fix PLIST again. Spell `password' correctly and keep the pointynectar2005-01-142-3/+3
* For recent squid WCCP DoS issue, correct the URL used in <blockquote>nectar2005-01-141-2/+3
* Document Mozilla NNTP handler vulnerability.nectar2005-01-141-0/+58
* - Document a vulnerability in mpg123.simon2005-01-141-6/+33
* Updated the port to version 0.2.2 + small cleanupniels2005-01-143-11/+3
* Mark DEPRECATED and set 1 month expiration date due to unresolvedsimon2005-01-131-0/+3
* - remove urldinoex2005-01-131-1/+0
* - add WWWdinoex2005-01-131-0/+2
* Register conflict with gnomesu. The removal of gnomesu is beingadamw2005-01-131-0/+2
* - Integrate vendor patches as published onsimon2005-01-131-0/+62
* Update to 4419jeh2005-01-132-3/+3
* Finish incorporating the changes proposed inyar2005-01-135-12/+14
* Do the things I forgot about in my previous commit:yar2005-01-132-7/+7
* 1. Make clamav-milter write its pidfile.yar2005-01-135-12/+16
* libgnomesu is a library for providing superuser privileges to GNOMEadamw2005-01-135-0/+95
* Added p5-SAVI-Perl, a perl interface module to Sophos Anti virus.niels2005-01-135-0/+45
* Fix PLIST (forgotten new manual pages). Bump PORTREVISION.nectar2005-01-132-0/+4
* Update my email address in MAINTAINER and comment fields.bms2005-01-122-2/+2
* Unbreak security/clamav-devel by updating it to 20050110 (maintainer update)niels2005-01-124-22/+16
* - Document some older security issues in libxine.nectar2005-01-121-41/+120
* Update port: security/metasploit 2.2 -> 2.3edwin2005-01-123-447/+837
* Document HylaFAX authentication bypass vulnerability.nectar2005-01-121-0/+24
* Document xshisen buffer overflows.naddy2005-01-121-0/+27
* Add CERT Vulnerability Note reference for tiff issue.nectar2005-01-121-0/+2
* Update to 0.4.1.adamw2005-01-116-8/+8
* Update libgcrypt to 1.2.1. Changes:arved2005-01-1112-15/+22
* Bump copyright for 2005.nectar2005-01-111-1/+1
* - update to autossh-1.2gleeym2005-01-112-3/+3
* Applied patches to work on 4.x, they should have been included inniels2005-01-115-4/+45
* New port: unicornscan, a UDP and TCP portscanner that can be usedniels2005-01-1111-0/+335
* Mark pdftohtml as vulnerable to recent xpdf vulnerability.simon2005-01-111-1/+5
* Documented two vulnerabilities in the helvis portniels2005-01-111-0/+62
* - Update to 20050107sem2005-01-112-3/+3
* - Update to 4.5.3sem2005-01-112-4/+4
* Upgrade 0.6.1 -> 0.6.3nectar2005-01-102-3/+3
* increment PORTREVISIONmharo2005-01-102-0/+2
* add RUN_DEPENDSmharo2005-01-101-4/+3
* Add RUN_DEPENDSmharo2005-01-101-0/+1
* Add CVE names for exim issue.nectar2005-01-101-0/+3
* Update distinfo after last updatearved2005-01-102-4/+4
* Remove obsolete patch.lofi2005-01-101-15/+0
* Remove redundant USE_PERL5_BUILD.marcus2005-01-091-1/+0
* Reset undeliverable maintainer email address:kris2005-01-092-2/+2
* Update to 0.2.4krion2005-01-094-4/+5
* o Update to 0.0.9.2lioux2005-01-094-8/+32
* Document format string vulnerability in dillo.simon2005-01-091-0/+25
* Upgrade to 1.6.8p6mharo2005-01-092-4/+4
* - Spell wpa_supplicant with two 'p's in PORTNAMEbrooks2005-01-094-49/+49
* - Shorten exim entrysem2005-01-091-12/+0
* Fix typo in latest tiff entry.simon2005-01-091-1/+2
* New port: security/py-clamav A python binding to libclamav written in Csem2005-01-095-0/+60
* Change the behavior of `make newentry' so that it invokes ${EDITOR}nectar2005-01-091-13/+9
* - Update to 0.44clement2005-01-095-28/+16
* Add a target, `newentry', that will insert a VuXML <vuln> templatenectar2005-01-082-0/+68
* Update to 4418jeh2005-01-082-3/+3
* FIx build on amd64.krion2005-01-081-0/+14
* upadate to courier-authlib 0.52, courier-imap 4.0.1 and sqwebmail 5.0.0oliver2005-01-088-14/+56
* - Document that two older tiff vulnerabilities also affectssimon2005-01-081-1/+7
* The tnftp port has been updated.nectar2005-01-071-1/+1
* Fix up last commit (tnftp entry):nectar2005-01-071-4/+4
* Document vulnerabilites in tnftpahze2005-01-071-0/+28
* Document several vulnerabilites in tiff.simon2005-01-071-0/+96
* Fill in forgotten `cite' attribute value.nectar2005-01-071-1/+1
* Document a local vulnerability in VIM's modeline handling.nectar2005-01-071-0/+41
* Add a CERT VU reference for the latest Acrobat Reader vulnerability.nectar2005-01-061-0/+5
* Document buffer overflow vulnerabilities in pcal.simon2005-01-061-0/+28
* Add (now deleted) exim-ldap package to latest exim entry.simon2005-01-061-0/+1
* Document Horde's XSS vulnerabilities.thierry2005-01-051-0/+1
* s/le/lt/ on my last commit. it's "<", not "<=".sem2005-01-051-5/+5
* exim -- two relatively minor security issuessem2005-01-051-0/+43
* For the "kdelibs3 -- konqueror FTP command injection vulnerability"simon2005-01-051-2/+2
* Document security issues in golddig, greed, mpg123.josef2005-01-041-0/+95
* Update stunnel to 4.07, which incorporates most of our fixes to 4.06roam2005-01-033-34/+9
* Mark open-motif-2.2.3_1 as fixed with regard to the "xpm -- imagesimon2005-01-031-2/+5
* - Note that the port update to up-imapproxy 1.2.2 included a patch tosimon2005-01-021-1/+5
* Document vulnerabilities in up-imapproxy.simon2005-01-021-0/+34
* BROKEN by libevent update: Does not linkkris2005-01-022-0/+4
* Add two bugtraq ids to the latest a2ps entry.simon2005-01-021-0/+3
* BROKEN on alpha 4.x: Internal compiler errorkris2005-01-021-0/+4
* Add --disable-gpg-check to CONFIGURE_ARGS to avoid breakage with gpg-1.4.0.marcus2005-01-021-0/+1
* Document FTP command injection vulnerability in kdelibs3.simon2005-01-011-0/+36
* - Fix gnu-crypto.info:lioux2004-12-312-2/+20
* o Update to <bsd.java.mk> standard 2.0lioux2004-12-311-6/+3
* New port gnu-crypto version 2.0.1: Java cryptographic primitiveslioux2004-12-314-0/+84
* Improve topic for latest phpbb vulnerability to highlight the mainsimon2004-12-311-1/+2
* Document insecure temporary file creation in a2ps.simon2004-12-311-0/+29
* Okay then, purge the last reference to MySQL in the startup script...roam2004-12-302-2/+2
* The last update for this year, I hope :)roam2004-12-304-39/+79
* Fix a getnameinfo() out-of-memory error caused by passing a 20-characterroam2004-12-302-4/+7
* Add more references to two older entries.simon2004-12-301-1/+5
* Update mhash to version 0.9.1, which provides three new hashes.roam2004-12-303-4/+16
* Maintainer has stated that he no longer has time to maintain this port.linimon2004-12-301-1/+1
* - Fix plistsem2004-12-302-3/+3
* Update to 2.32.marcus2004-12-306-12/+14
* Update to DAT 4417jeh2004-12-302-3/+3
* Add m odified date to my last commit.josef2004-12-301-0/+1
* libxine is also affected by the mplayer vulnerabilities.josef2004-12-301-1/+8
* Document vulnerability in libxine.josef2004-12-301-0/+24
* Upgrade to 1.4.0.kuriyama2004-12-296-34/+26
* Fix the build on FreeBSD versions around 5.2 when EAI_NODATA wasroam2004-12-291-4/+6
* - Fix build with gcc 3.4pav2004-12-294-7/+88
* - Fix fetching, unbreakpav2004-12-291-5/+1
* - Update to 2.2.1pav2004-12-283-12/+12
* - update to 1.2clsung2004-12-282-3/+12
* Update to stunnel-4.06. In addition to the PR:roam2004-12-277-36/+68
* Patch up for http://secunia.com/advisories/13566/tobez2004-12-272-0/+12
* Document vulnerability in jabberd1josef2004-12-271-0/+24
* Update to 4.1.2krion2004-12-273-4/+5
* Update to 0.5.2.knu2004-12-262-3/+3
* Update to 1.5.2.knu2004-12-262-3/+3
* Remove deprecated USE_SIZElioux2004-12-251-1/+0
* s/kpdf/kdegraphicsjosef2004-12-251-1/+1
* Add ports to xpdf report that come with own xpdf in distfile.josef2004-12-241-0/+21
* Update to 0.0.9.1krion2004-12-246-8/+6
* Update to 0.24krion2004-12-242-3/+3
* Remove duplicate word in the latest squid entry.simon2004-12-231-1/+1
* - Update to 5.2.1clement2004-12-234-28/+8
* Clean up SQLite and related ports.nork2004-12-231-2/+2
* Attempt to make pam_alreadyloggedin work on 4.x again.green2004-12-232-4/+15
* Document potentially confusing results results on empty ACLsimon2004-12-231-0/+30
* Document multiple vulnerabilities in ethereal.simon2004-12-231-0/+49
* Document a buffer overflow vulnerability in xpdf.simon2004-12-231-0/+31
* Update to 1.9.14lofi2004-12-235-6/+21
* Update to 0.6.9lofi2004-12-234-16/+6
* Fix build on 4.X.marcus2004-12-232-0/+35
* Update to DAT 4416jeh2004-12-232-3/+3
* Document phpBB vulnerability that exists on phpBB < 2.0.11delphij2004-12-221-0/+34
* Fix ports: security/clamav and security/clamav-devel (change dbedwin2004-12-2212-30/+36
* Update to 0.7.5.marcus2004-12-226-63/+65
* Document a vulnerability in acroread.simon2004-12-221-0/+36
* Update port: security/pear-LiveUser to 0.14.0edwin2004-12-222-53/+35
* Document a vulnerability in ecartis.simon2004-12-221-0/+30
* Document multiple vulnerabilities in mplayer.simon2004-12-221-0/+40
* Fix pkg-plist.skv2004-12-214-6/+5
* - gpgme et gpgme03 are no longer in conflictclement2004-12-212-4/+0
* - Rework gpgme03 port to avoid conflict with gpgme 1.0clement2004-12-2111-14/+141
* Document a heap buffer overflow vulnerability in MIT Kerberos 5.simon2004-12-211-0/+37
* Update 1.3.5 --> 1.3.6cy2004-12-218-44/+40
* Document an integer overflow vulnerability in samba.simon2004-12-211-0/+40
* Crypto-publish.org no longer maintains a current release of MIT-KRB5.cy2004-12-218-60/+0
* - Move gpgme.h to ${PREFIX}/include/gpgme/ to make gpgme-1.x andclement2004-12-212-3/+5
* - Fix pkg-plist.sem2004-12-216-3/+6
* Corrected typo (blockquote in wrong place).niels2004-12-201-1/+1
* Update to version 0.0.21krion2004-12-202-9/+5
* Update the wording on IGNORE.linimon2004-12-201-1/+1
* s/BUILD_DEPEND/BUILD_DEPENDS/ and bump PORTREVISIONkris2004-12-201-1/+2
* This is the Metasploit Project.sem2004-12-205-0/+595
* - Update the corrected version number for recent phpMyAdmin entry to matchsimon2004-12-191-2/+4
* Add courier-authliboliver2004-12-1920-0/+956
* Switch from FORBIDDEN to IGNORE, since no security issue seems to be stated.linimon2004-12-191-1/+1
* This port is scheduled to be removed on 2005-02-18 if it is stillkris2004-12-193-0/+6
* Change dependency file to something gpgme03-specific.lofi2004-12-191-1/+1