From 00564e9512ab254264c5c47e4dcb633e3a02d732 Mon Sep 17 00:00:00 2001 From: pawel Date: Wed, 30 Jan 2013 18:34:02 +0000 Subject: Document devel/upnp vulnerabilities --- security/vuxml/vuln.xml | 48 ++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 48 insertions(+) (limited to 'security/vuxml') diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index b21320d09f8a..8a71162b5a6b 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -51,6 +51,54 @@ Note: Please add new entries to the beginning of this file. --> + + upnp -- multiple vulnerabilities + + + upnp + 1.6.18 + + + + +

Project changelog reports:

+
+

This patch addresses three possible buffer overflows in + function unique_service_name().The three issues have the + folowing CVE numbers:

+
    +
  • CVE-2012-5958 Issue #2: Stack buffer overflow of Tempbuf
  • +
  • CVE-2012-5959 Issue #4: Stack buffer overflow of Event->UDN
  • +
  • CVE-2012-5960 Issue #8: Stack buffer overflow of Event->UDN
  • +
+

Notice that the following issues have already been dealt by + previous work:

+
    +
  • CVE-2012-5961 Issue #1: Stack buffer overflow of Evt->UDN
  • +
  • CVE-2012-5962 Issue #3: Stack buffer overflow of Evt->DeviceType
  • +
  • CVE-2012-5963 Issue #5: Stack buffer overflow of Event->UDN
  • +
  • CVE-2012-5964 Issue #6: Stack buffer overflow of Event->DeviceType
  • +
  • CVE-2012-5965 Issue #7: Stack buffer overflow of Event->DeviceType
  • +
+
+ +
+ + CVE-2012-5958 + CVE-2012-5959 + CVE-2012-5960 + CVE-2012-5961 + CVE-2012-5962 + CVE-2012-5963 + CVE-2012-5964 + CVE-2012-5965 + + + 2012-11-21 + 2013-01-30 + +
+ wordpress -- multiple vulnerabilities -- cgit minimist-1.2.2 FreeBSD GNOME current development ports (https://github.com/freebsd/freebsd-ports-gnome)
aboutsummaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
* Cleanup plistbapt2014-12-09