1
0
mirror of https://git.FreeBSD.org/ports.git synced 2024-11-29 01:13:08 +00:00
Commit Graph

3381 Commits

Author SHA1 Message Date
Ryan Steinmetz
d01674b06e - Document recent samba vulnerabilities (CVE-2014-3493, CVE-2014-0244) 2014-06-23 18:29:55 +00:00
Matthew Seaman
debc0af6e0 Document the latest phpMyAdmin vulnerabilities. Very little
information has been published as yet.  What there is here has been
gleaned from the ChangeLog at
http://sourceforge.net/projects/phpmyadmin/files/phpMyAdmin/4.2.4/phpMyAdmin-4.2.4-notes.html/view

Updates and CVE numbers to follow, as they are made available.
2014-06-20 23:24:19 +00:00
David Thiel
5dd9c831ed Add vuln entry for iodine.
Submitted by:	Kenta S.
2014-06-18 22:02:27 +00:00
Florian Smeets
fe17ed8a7e Document asterisk vulnerabilities 2014-06-17 08:12:07 +00:00
Koop Mast
3e0366bb14 Document dbus local dos
MFH:		2014Q2
2014-06-14 12:16:57 +00:00
Rene Ladan
2862518708 Document new vulnerabilities in www/chromium < 35.0.1916.153
Submitted by:	Carlos Jacobo Puga Medina <cpm@fbsd.es>
Obtained from:	http://www.googlechromereleases.blogspot.nl/
MFH:		2014Q2
2014-06-11 08:06:47 +00:00
Beat Gaetzi
8997d60dcf Document mozilla vulnerabilities 2014-06-10 20:12:13 +00:00
Xin LI
bcdab77b11 Document OpenSSL multiple vulnerabilities. 2014-06-05 12:34:21 +00:00
Matthias Andree
3fbfdd5ba5 Fix extraneous <vuxml> open tag on line 88. 2014-06-04 20:15:03 +00:00
Wesley Shields
2af70fc429 Fix build. 2014-06-04 19:07:16 +00:00
Cy Schubert
42945633eb Document gnutls CVE-2014-3466 to prevent memory corruption due to server
hello parsing.

Security:       CVE-2014-3466
2014-06-04 18:50:52 +00:00
Ryan Steinmetz
3104b11353 - Document vulnerability in security/gnutls3 (CVE-2014-3466) 2014-06-03 19:42:40 +00:00
Mark Felder
a859fc0e2f Fixing range of affected versions of mumble 1.2.4 to cover all portrevisions 2014-05-29 15:27:36 +00:00
Martin Wilke
75d79bcf0c - Fix formating 2014-05-29 15:24:54 +00:00
Mark Felder
b69a918fb8 audio/mumble vulnerabilities
My first foray into this dark, scary vuxml dungeon.
2014-05-29 15:13:24 +00:00
Eygene Ryabinkin
b29317c72d VuXML: cancel Exim's CVE-2014-2957
Current port isn't built with DMARC support and has no knobs to enable it.
2014-05-29 09:22:28 +00:00
Ryan Steinmetz
47c561915f - Document exim vulnerability (CVE-2014-2957) 2014-05-28 18:36:46 +00:00
Eitan Adler
f0fd32d0bc Undo my poor merge conflict editing.
Reported by:	rene, mat
2014-05-26 21:01:24 +00:00
Eitan Adler
35ab2d312e Report the latest flash security issue 2014-05-26 20:36:26 +00:00
Koop Mast
1b6f976988 Document a bunch of openjpeg vulnabilities.
MFH:		2014Q2
2014-05-24 14:28:28 +00:00
Rene Ladan
36300eeda5 Document new vulnerabilities in www/chromium < 35.0.1916.114
Obtained from:	http://googlechromereleases.blogspot.nl/
MFH:		2014Q2
2014-05-20 20:36:39 +00:00
Ryan Steinmetz
e77550ecd9 - Add STAGE support
- Add LICENSE
- Cleanup plist-related clever
- Pacify portlint(1)
- Bump PORTREVISION

With hat:	ports-secteam
2014-05-17 17:58:38 +00:00
Rene Ladan
7f20b6f407 Describe new vulnerabilities in www/chromium < 34.0.1847.137
Obtained from:	http://googlechromereleases.blogspot.nl/
MFH:		2014Q2
2014-05-14 10:38:06 +00:00
Koop Mast
3b14ada334 Record libXfont X Font Service Protocol and Font metadata file handling issues
MFH:	2014Q2
2014-05-13 16:31:17 +00:00
Akinori MUSHA
eab7bf5544 Document CVE-2013-2877 which affects textproc/libxml2. 2014-05-13 02:07:06 +00:00
Akinori MUSHA
60b7abaa65 Summary: Oops, the current version is affected, hence <le/> instead of <lt/>. 2014-05-13 01:59:36 +00:00
Akinori MUSHA
4f1a7e64a1 Summary: Fix a typo copied from the original report. 2014-05-13 01:55:45 +00:00
Akinori MUSHA
ecc5c37282 Document CVE-2014-0191 which affects textproc/libxml2. 2014-05-13 01:49:51 +00:00
Dirk Meyer
cff4d7470f Document OpenSSL vulnerability
Security: CVE-2014-0198
2014-05-06 07:53:32 +00:00
Raphael Kubo da Costa
c037926bb6 Document qt4-xml vulnerability (CVE-2013-4549). 2014-05-05 21:09:44 +00:00
Ryan Steinmetz
9cd9c7dccc - Document strongSwan vulnerability (CVE-2014-2338)
- Add additional reminder to document port variants
2014-05-04 12:43:27 +00:00
Olli Hauer
abf9b91e0e - fix some entries so they are really detected
by old and new pkg audit tools

Approved by:	portmgr (bdrewery)
2014-04-30 17:51:29 +00:00
Frederic Culot
d0e36dd4c6 - Document vulnerabilities in www/mohawk
PR:		ports/189082
Submitted by:	mohawk <mohawk@bsdsx.fr>
2014-04-30 07:54:11 +00:00
Rene Ladan
1ec8f77e41 Document new vulnerabilities in www/chromium < 34.0.1847.132
Obtained from:	http://googlechromereleases.blogspot.nl/
2014-04-30 06:42:33 +00:00
Beat Gaetzi
bf9a9c511b Document mozilla vulnerabilities 2014-04-29 17:00:46 +00:00
Li-Wen Hsu
218bcd8aca Add back pakcage ranges for people have ancient packages
Notified by:	mat
2014-04-24 15:54:50 +00:00
Li-Wen Hsu
d70a23491d Fix Django package names
Submitted by:	mat
2014-04-23 13:36:36 +00:00
Li-Wen Hsu
b6557362ac Document Django 2014-04-21 vulnerabilty 2014-04-23 13:10:30 +00:00
Bryan Drewery
b979ba81fe - This is not really a quote, I summarized it myself. 2014-04-23 01:55:54 +00:00
Bryan Drewery
b81b2bc341 - Document OpenSSL CVE-2010-5298 2014-04-23 01:54:43 +00:00
Olli Hauer
2ce0f0829a - fix entries so issues for bugzilla40/42 are detected
first version found only bugzilla44 issues (tested with pkg audit)
2014-04-18 14:56:43 +00:00
Olli Hauer
814853fbe7 - document bugzilla issues
CVE-2014-1517 is fixed in bugzilla-4.4.3
  therefore use two vuxml entries.
2014-04-18 14:20:15 +00:00
Steve Wills
aa0a7fed8e - Add multiple missing entries
PR:		ports/188512
Submitted by:	Pawel Biernacki <pawel.biernacki@gmail.com>
2014-04-15 20:21:44 +00:00
Rene Ladan
d07b77f333 Fix typo.
Submitted by:	matthew@
2014-04-13 12:45:23 +00:00
Rene Ladan
3c2a4e164a Mention a vulnerability in japanese/chasen* which exists since 2011-11-08
Obtained from:	http://jvn.jp/en/jp/JVN16901583/index.html
2014-04-13 12:17:19 +00:00
Ryan Steinmetz
81666729dc - Correct version ranges for 7ccd4def-c1be-11e3-9d09-000c2980a9f3/5631ae98-be9e-11e3-b5e3-c80aa9043978
Reported by:	Tim Zingelman <tez@netbsd.org>
2014-04-11 21:41:43 +00:00
Ryan Steinmetz
265340fc86 - Move CVE-2014-0076 to its own entry+add FreeBSD system information as the affected list does not 100% line up with the vulnerability described in CVE-2014-0160/5631ae98-be9e-11e3-b5e3-c80aa9043978 2014-04-11 21:33:41 +00:00
Ryan Steinmetz
835c450a45 - Note FreeBSD system vulnerability information for 5631ae98-be9e-11e3-b5e3-c80aa9043978 2014-04-11 21:11:17 +00:00
Bryan Drewery
dc43860dcd - Mark linux-f10-openssl vulnerabilities
Reported by:	frogs on freenode
2014-04-10 23:58:47 +00:00
Ryan Steinmetz
34a687e3a4 - Document recent vulnerability in net/openafs (CVE-2014-0159) 2014-04-09 14:37:43 +00:00