1
0
mirror of https://git.FreeBSD.org/ports.git synced 2024-12-11 02:50:24 +00:00

- Document xfce -- multiple vulnerabilities

This commit is contained in:
Martin Wilke 2008-01-22 22:01:46 +00:00
parent 726630b40f
commit 15549c2297
Notes: svn2git 2021-03-31 03:12:20 +00:00
svn path=/head/; revision=206040

View File

@ -34,6 +34,38 @@ Note: Please add new entries to the beginning of this file.
-->
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
<vuln vid="024edd06-c933-11dc-810c-0016179b2dd5">
<topic>xfce -- multiple vulnerabilities</topic>
<affects>
<package>
<name>xfce4-panel</name>
<name>libxfce4gui</name>
<range><gt>4.4.1_1</gt></range>
</package>
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<p>Gentoo reports:</p>
<blockquote cite="http://www.gentoo.org/security/en/glsa/glsa-200801-06.xml">
<p>A remote attacker could entice a user to install a specially
crafted "rc" file to execute arbitrary code via long strings
in the "Name" and "Comment" fields or via unspecified vectors
involving the second vulnerability.</p>
</blockquote>
</body>
</description>
<references>
<cvename>CVE-2007-6531</cvename>
<cvename>CVE-2007-6532</cvename>
<url>http://www.xfce.org/documentation/changelogs/4.4.2</url>
<url>http://www.gentoo.org/security/en/glsa/glsa-200801-06.xml</url>
</references>
<dates>
<discovery>2008-01-FIXME</discovery>
<entry>2008-01-22</entry>
</dates>
</vuln>
<vuln vid="a59afa47-c930-11dc-810c-0016179b2dd5">
<topic>claws-mail -- insecure temporary file creation</topic>
<affects>