index
:
ports
2014Q1
2014Q2
2014Q3
2014Q4
2015Q1
2015Q2
2015Q3
2015Q4
2016Q1
2016Q2
2016Q3
2016Q4
2017Q1
2017Q2
2017Q3
2017Q4
2018Q1
2018Q2
2018Q3
2018Q4
2019Q1
2019Q2
2019Q3
2019Q4
2020Q1
2020Q2
2020Q3
2020Q4
2021Q1
2021Q2
2021Q3
2021Q4
2022Q1
2022Q2
2022Q3
2022Q4
2023Q1
2023Q2
2023Q3
2023Q4
2024Q1
2024Q2
2024Q3
2024Q4
main
FreeBSD ports tree
about
summary
refs
log
tree
commit
diff
log msg
author
committer
range
path:
root
/
security
/
vuxml
Commit message (
Expand
)
Author
Age
Files
Lines
*
- Document typespeed arbitrary code execution
Gabor Kovesdan
2007-07-03
1
-0
/
+29
*
- Fix a typo vcl -> vlc
Martin Wilke
2007-06-29
1
-1
/
+1
*
- Document vlc - format string vulnerability and integer overflow
Martin Wilke
2007-06-29
1
-0
/
+30
*
- Document flac123 - stack overflow in comment parsing
Martin Wilke
2007-06-29
1
-0
/
+27
*
Document gd -- multiple vulnerabilities
Remko Lodder
2007-06-29
1
-0
/
+67
*
Document that CVE-2007-3257 was fixed with evolution-data-server
Xin LI
2007-06-28
1
-1
/
+3
*
- Fix modified date in mod_perl entry
Andrew Pantyukhin
2007-06-27
1
-1
/
+1
*
Mark www/mod_perl2 fixed in version 2.0.3_2,3
Erwin Lansing
2007-06-27
1
-2
/
+2
*
Document evolution-data-server remote arbitrary code execution
Xin LI
2007-06-25
1
-0
/
+30
*
The XMLRPC SQL Injection issue with wordpress was addressed in the
Erwin Lansing
2007-06-24
1
-1
/
+2
*
Document xpcd buffer overflow vulnerability.
Gabor Kovesdan
2007-06-21
1
-0
/
+32
*
Document clamav -- multiple vulnerabilities.
Remko Lodder
2007-06-19
1
-0
/
+40
*
Document SpamAssassin vulnerability CVE-2007-2873, a local
Xin LI
2007-06-18
1
-0
/
+28
*
- Document cups -- Incomplete SSL Negotiation Denial of Service.
Martin Wilke
2007-06-12
1
-0
/
+29
*
- Fix other duplicate entry.
Martin Wilke
2007-06-09
1
-4
/
+0
*
- Document c-ares -- DNS Cache Poisoning Vulnerability
Martin Wilke
2007-06-09
1
-0
/
+29
*
- Fix duplicate entry de-wordpress -> zh-wordpress.
Martin Wilke
2007-06-09
1
-1
/
+1
*
Add zh-wordpress as affected by the last two wordpress entries.
Gabor Kovesdan
2007-06-09
1
-0
/
+2
*
wordpress -- XMLRPC SQL Injection
Gabor Kovesdan
2007-06-09
1
-0
/
+71
*
- Document webmin -- cross site scripting
Martin Wilke
2007-06-09
1
-0
/
+31
*
- The fixed mplayer version number is 0.99.10_10, mark it as such. [1]
Simon L. B. Nielsen
2007-06-07
1
-7
/
+13
*
- Fix mplayer portversion.
Martin Wilke
2007-06-07
1
-1
/
+1
*
- Document mplayer -- cddb stack overflow.
Martin Wilke
2007-06-07
1
-0
/
+31
*
- Note that plone is also affected by 34414a1e-e377-11db-b8ab-000c76189c4c
Gabor Kovesdan
2007-06-06
1
-1
/
+6
*
- gzip 1.3.12 has been patched and is not affected by
Gabor Kovesdan
2007-06-05
1
-1
/
+2
*
Document an information disclosure vulnerability in mod_jk < 1.2.23.
Erwin Lansing
2007-06-05
1
-0
/
+32
*
Add an entry for an email header injection vulnerability in
Erwin Lansing
2007-06-04
1
-0
/
+30
*
- Document phppgadmin - Cross Site Scripting Vulnerability.
Martin Wilke
2007-06-04
1
-0
/
+31
*
- Add entry for findutils -- GNU locate heap buffer overrun.
Edward Tomasz Napierala
2007-06-01
1
-0
/
+32
*
Mark file < 4.21 as vulnerable to the heap overflow.
Xin LI
2007-05-31
1
-0
/
+5
*
Add an entry for the recent Freetype heap overflow vulnerability.
Joe Marcus Clarke
2007-05-25
1
-0
/
+30
*
Document FreeBSD-SA-07:04.file (heap overflow in file(1))
Remko Lodder
2007-05-23
1
-0
/
+40
*
- Document squirrelmail -- Cross site scripting in HTML filter
Martin Wilke
2007-05-21
1
-0
/
+30
*
Document png -- DoS crash vulnerability.
Simon L. B. Nielsen
2007-05-16
1
-0
/
+32
*
Document samba -- multiple vulnerabilities.
Simon L. B. Nielsen
2007-05-16
1
-0
/
+63
*
Backout last change.
Simon L. B. Nielsen
2007-05-10
1
-4
/
+0
*
Update PHP entry to include the vulnerable version so the entry is
Simon L. B. Nielsen
2007-05-10
2
-2
/
+33
*
Document a lot of PHP vulnerabilities, mark all php4 and php5 (+cli,cgi)
Remko Lodder
2007-05-07
1
-0
/
+69
*
Bump modification date for the latest mod_perl entry, this was forgotten
Remko Lodder
2007-05-07
1
-0
/
+1
*
Standarize the latest entry (qemu) a bit more and add a forgotten 'a'
Remko Lodder
2007-05-02
1
-4
/
+5
*
Document multiple qemu vulnerabilities
Juergen Lock
2007-05-01
1
-0
/
+53
*
Update to 0.57 - fixes possible overflow vulnerability regarding malformed
Lars Balker Rasmussen
2007-04-30
1
-0
/
+33
*
Document FreeBSD -- IPv6 Routing Header 0 is dangerous
Remko Lodder
2007-04-28
1
-0
/
+44
*
Rework the mod_perl entry to note that Mandriva originally released
Erwin Lansing
2007-04-25
1
-2
/
+7
*
Minor wordsmithing in the last mod_perl entry.
Erwin Lansing
2007-04-25
1
-3
/
+3
*
Add entry for mod_perl -- remote DOS in PATH_INFO parsing
Erwin Lansing
2007-04-25
1
-0
/
+29
*
p5-Crypt-OpenPGP 1.03_1 should not be vulnerable to CVE-2005-0366.
Anton Berezin
2007-04-23
1
-2
/
+2
*
- Mark latest firefox and seamonkey snapshots as safe
Andrew Pantyukhin
2007-04-19
1
-3
/
+9
*
- Add entry for claws-mail - APOP vulnerability
Martin Wilke
2007-04-19
1
-0
/
+29
*
lighttpd -- DOS when access files with mtime 0
Marcus Alves Grando
2007-04-14
1
-0
/
+63
[next]