notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine
This referral link gives you 10% off a Fastmail.com account and gives me a discount on my Fastmail account.

Get notified when packages are built

A new feature has been added. FreshPorts already tracks package built by the FreeBSD project. This information is displayed on each port page. You can now get an email when FreshPorts notices a new package is available for something on one of your watch lists. However, you must opt into that. Click on Report Subscriptions on the right, and New Package Notification box, and click on Update.

Finally, under Watch Lists, click on ABI Package Subscriptions to select your ABI (e.g. FreeBSD:14:amd64) & package set (latest/quarterly) combination for a given watch list. This is what FreshPorts will look for.

Port details
vuxml Vulnerability and eXposure Markup Language DTD
1.1_6 security on this many watch lists=31 search for ports that depend on this port Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 1.1_6Version of this port present on the latest quarterly branch.
Maintainer: ports-secteam@FreeBSD.org search for ports maintained by this maintainer
Port Added: 2004-02-12 14:24:23
Last Update: 2024-05-08 09:01:36
Commit Hash: d31af55
People watching this port, also watch:: gnupg, curl, libxml2, nmap, vim
Also Listed In: textproc
License: BSD2CLAUSE
WWW:
https://vuxml.freebsd.org/
Description:
VuXML (the Vulnerability and eXposure Markup Language) is an XML application for documenting security bugs and corrections within a software package collection such as the FreeBSD Ports Collection. This port installs the DTDs required for validating VuXML documents.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (13 items)
Collapse this list.
  1. /usr/local/share/licenses/vuxml-1.1_6/catalog.mk
  2. /usr/local/share/licenses/vuxml-1.1_6/LICENSE
  3. /usr/local/share/licenses/vuxml-1.1_6/BSD2CLAUSE
  4. @xmlcatmgr share/xml/dtd/vuxml/catalog
  5. @xmlcatmgr share/xml/dtd/vuxml/catalog.xml
  6. share/xml/dtd/vuxml/vuxml-10.dtd
  7. share/xml/dtd/vuxml/vuxml-11.dtd
  8. share/xml/dtd/vuxml/vuxml-model-10.mod
  9. share/xml/dtd/vuxml/vuxml-model-11.mod
  10. share/xml/dtd/vuxml/xml1.dcl
  11. @owner
  12. @group
  13. @mode
Collapse this list.
Dependency lines:
  • vuxml>0:security/vuxml
To install the port:
cd /usr/ports/security/vuxml/ && make install clean
To add the package, run one of these commands:
  • pkg install security/vuxml
  • pkg install vuxml
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: vuxml
Flavors: there is no flavor information for this port.
distinfo:
SHA256 (vuxml/vuxml-10.dtd) = 6a635ad2cf45f52361c8c2a29a689157fad4d00519045485bc822d34e04a524e SIZE (vuxml/vuxml-10.dtd) = 2986 SHA256 (vuxml/vuxml-model-10.mod) = 051fed00b52bedde8ee901003fc29f7b95cd904157e31ceef34e6b06f2d1a14a

Expand this list (11 items)

Collapse this list.

SIZE (vuxml/vuxml-model-10.mod) = 10599 SHA256 (vuxml/vuxml-11.dtd) = 12b50061d7bb34cecffede2e08d439e4469324376d55aeb7c73eb6aab0f36af1 SIZE (vuxml/vuxml-11.dtd) = 3063 SHA256 (vuxml/vuxml-model-11.mod) = a40777208625a3029c6f416aeeea733f614802a6a5f26035a4e445a09e61a47c SIZE (vuxml/vuxml-model-11.mod) = 13282 SHA256 (vuxml/xml1.dcl) = 343efa94c4e1302e85e08b2d1791d86e50aac1ecdbc3161daecac100e4726847 SIZE (vuxml/xml1.dcl) = 7372 SHA256 (vuxml/catalog) = 479a69cf02995603443fd1f3b5b33f97811670931f87f53be99a727d664abc66 SIZE (vuxml/catalog) = 549 SHA256 (vuxml/catalog.xml) = 7b2e2850f57264eeba0ccd3d1fc161b9d5ce3071ae0ec51b9da7fa956f2a6509 SIZE (vuxml/catalog.xml) = 2150

Collapse this list.


Packages (timestamps in pop-ups are UTC):
vuxml
ABIaarch64amd64armv6armv7i386powerpcpowerpc64powerpc64le
FreeBSD:13:latest1.1_61.1_61.1_51.1_61.1_6-1.1_5-
FreeBSD:13:quarterly1.1_61.1_61.1_61.1_61.1_61.1_61.1_61.1_6
FreeBSD:14:latest1.1_61.1_61.1_61.1_61.1_61.1_6-1.1_6
FreeBSD:14:quarterly1.1_61.1_6-1.1_61.1_61.1_61.1_61.1_6
FreeBSD:15:latest1.1_61.1_6n/a1.1_6n/a1.1_61.1_61.1_6
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Runtime dependencies:
  1. xmlcatmgr : textproc/xmlcatmgr
  2. xsltproc : textproc/libxslt
  3. VERSION : textproc/xhtml-modularization
  4. xhtml-basic10.dtd : textproc/xhtml-basic
  5. python3.9 : lang/python39
There are no ports dependent upon this port

Configuration Options:
No options to configure
Options name:
security_vuxml
USES:
python:run
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. http://www.vuxml.org/dtd/vuxml-1/
Collapse this list.

Number of commits found: 7252 (showing only 100 on this page)

[First Page]  «  13 | 14 | 15 | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23  »  [Last Page]

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
1.1_4
14 May 2019 21:19:03
Revision:501670Original commit files touched by this commit
jkim search for other commits by this committer
Document the latest Flash Player vulnerability.

https://helpx.adobe.com/security/products/flash-player/apsb19-26.html
1.1_4
11 May 2019 09:14:21
Revision:501238Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Document PHP-exif vulnerabilities
1.1_4
10 May 2019 12:41:16
Revision:501171Original commit files touched by this commit
girgen search for other commits by this committer
Add security issues from latest postgresql release
1.1_4
06 May 2019 08:47:08
Revision:500901Original commit files touched by this commit
joneum search for other commits by this committer
Add entry for www/gitea

PR:		237734
Sponsored by:	Netzkommune GmbH
1.1_4
05 May 2019 02:34:31
Revision:500846Original commit files touched by this commit
koobs search for other commits by this committer
security/vuxml: Add comms/hylafax -- Malformed fax sender remote code execution
in JPEG support
1.1_4
01 May 2019 07:16:46
Revision:500580Original commit files touched by this commit
mfechner search for other commits by this committer
Documented vulnerability for gitlab.
1.1_4
30 Apr 2019 23:35:08
Revision:500573Original commit files touched by this commit
ler search for other commits by this committer
security/vuxml: correct dovecot entry.

Reported by:	leres
1.1_4
30 Apr 2019 21:02:33
Revision:500566Original commit files touched by this commit
ler search for other commits by this committer
security/vuxml: document dovecot vulnerabilities
1.1_4
29 Apr 2019 20:33:08
Revision:500431Original commit files touched by this commit
mfechner search for other commits by this committer
Document gitlab vulnerabilities.
1.1_4
26 Apr 2019 11:29:17
Revision:500100Original commit files touched by this commit
koobs search for other commits by this committer
security/vuxml: Add buildbot CRLF injection vulnerability
1.1_4
25 Apr 2019 02:05:05
Revision:499927Original commit files touched by this commit
acm search for other commits by this committer
- Add drupal7 and drupal8 entries
1.1_4
24 Apr 2019 16:55:13
Revision:499864Original commit files touched by this commit
swills search for other commits by this committer
add missed PORTEPOCH to libssh2 version
1.1_4
24 Apr 2019 15:30:40
Revision:499855Original commit files touched by this commit
jpaetzel search for other commits by this committer
Document py-yaml vulnerability

PR:	237501
Submitted by:	sergey@akhmatov.ru
Security:	CVE-2017-18342
1.1_4
23 Apr 2019 03:03:45
Revision:499711Original commit files touched by this commit
cy search for other commits by this committer
Document wpa_supplicant/hostapd EAP-pwd message reassembly issue with
unexpected fragment.

Security:	no CVE documented,
	https://w1.fi/security/2019-5/eap-pwd-message-reassembly-issue-\
	with-unexpected-fragment.txt
1.1_4
23 Apr 2019 03:03:40
Revision:499710Original commit files touched by this commit
cy search for other commits by this committer
Document wpa_supplicant/hostapd EAP-pwd missing commit validation.
CVE-2019-9497 (EAP-pwd server not checking for reflection attack)
CVE-2019-9498 (EAP-pwd server missing commit validation for
scalar/element)
CVE-2019-9499 (EAP-pwd peer missing commit validation for
scalar/element)

Security:	CVE-2019-9497, CVE-2019-9498, CVE-2019-9499,
	https://w1.fi/security/2019-4/eap-pwd-missing-commit-validation.txt
1.1_4
23 Apr 2019 03:03:35
Revision:499709Original commit files touched by this commit
cy search for other commits by this committer
Document hostapd SAE confirm missing state validation.
CVE-2019-9496 (SAE confirm missing state validation in hostapd/AP)

Security:	CVE-2019-9496,
    https://w1.fi/security/2019-3/sae-confirm-missing-state-validation.txt
1.1_4
23 Apr 2019 03:03:30
Revision:499708Original commit files touched by this commit
cy search for other commits by this committer
Document wpa_supplicant/hostapd EAP-pwd side-channel attack.
CVE-2019-9495 (cache attack against EAP-pwd)

Security:	CVE-2019-9495,
	https://w1.fi/security/2019-2/eap-pwd-side-channel-attack.txt
1.1_4
23 Apr 2019 03:03:25
Revision:499707Original commit files touched by this commit
cy search for other commits by this committer
Document wpa_supplicant/hostapd SAE side-channel attacks.
CVE-2019-9494 (cache attack against SAE)

Security:	CVE-2019-9494, VU#871675,
	https://w1.fi/security/2019-1/sae-side-channel-attacks.txt
1.1_4
22 Apr 2019 20:30:19
Revision:499672Original commit files touched by this commit
danilo search for other commits by this committer
- Document istio vulnerabilities.
1.1_4
21 Apr 2019 17:35:59
Revision:499548Original commit files touched by this commit
tijl search for other commits by this committer
Document Ghostscript CVE-2019-3835 and CVE-2019-3838.

PR:		237390
Security:	CVE-2019-3835, CVE-2019-3838
1.1_4
19 Apr 2019 14:42:42
Revision:499362Original commit files touched by this commit
tijl search for other commits by this committer
Document GNUTLS-SA-2019-03-27.

Security:	https://www.gnutls.org/security-new.html#GNUTLS-SA-2019-03-27
1.1_4
18 Apr 2019 15:21:04
Revision:499272Original commit files touched by this commit
ler search for other commits by this committer
security/vuxml: Document dovecot json encoder issue
1.1_4
18 Apr 2019 10:36:50
Revision:499245Original commit files touched by this commit
swills search for other commits by this committer
Document libssh2 issue
1.1_4
17 Apr 2019 06:35:18
Revision:499147Original commit files touched by this commit
joneum search for other commits by this committer
Add entry for gitea

PR:		237303
Sponsored by:	Netzkommune GmbH
1.1_4
13 Apr 2019 13:53:22
Revision:498807Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Document vulnerabilities for MySQL

 - Pre-notification by Oracle, final to be published in 3 days
1.1_4
12 Apr 2019 08:43:30
Revision:498705Original commit files touched by this commit
vd search for other commits by this committer
Document ftp/wget's metadata in extended attributes vulnerability

Security:	CVE-2018-20483
1.1_4
11 Apr 2019 05:47:33
Revision:498648Original commit files touched by this commit
mfechner search for other commits by this committer
Document gitlab vulnerability.
1.1_4
10 Apr 2019 15:30:26
Revision:498569Original commit files touched by this commit
lwhsu search for other commits by this committer
Document Jenkins Security Advisory 2019-04-10

Sponsored by:	The FreeBSD Foundation
1.1_4
10 Apr 2019 07:52:51
Revision:498539Original commit files touched by this commit
jkim search for other commits by this committer
Document the latest Flash Player vulnerabilities.

https://helpx.adobe.com/security/products/flash-player/apsb19-19.html
1.1_4
06 Apr 2019 14:46:00
Revision:498138Original commit files touched by this commit
sunpoet search for other commits by this committer
Update py-notebook status
1.1_4
05 Apr 2019 06:22:10
Revision:497936Original commit files touched by this commit
mfechner search for other commits by this committer
Documented vulnerabilities for clamav.
1.1_4
03 Apr 2019 17:22:25
Revision:497737Original commit files touched by this commit
romain search for other commits by this committer
Update sysutils/puppetserver5 entry

Puppetlabs released version 5.3.8 of Puppet Server which address the issue:
https://puppet.com/docs/puppetserver/5.3/release_notes.html#puppet-server-538

With hat:	puppet
1.1_4
02 Apr 2019 20:48:08
Revision:497587Original commit files touched by this commit
mfechner search for other commits by this committer
Documented gitlab vulnerability.
1.1_4
02 Apr 2019 07:58:42
Revision:497553Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Document Apache httpd vulnerabilities
1.1_4
01 Apr 2019 19:29:47
Revision:497507Original commit files touched by this commit
danilo search for other commits by this committer
- Document sysutils/kubectl CVE-2019-1002101
1.1_4
31 Mar 2019 13:50:46
Revision:497423Original commit files touched by this commit
dbaio search for other commits by this committer
security/vuxml: Document irc/znc issue

Security:	CVE-2019-9917
1.1_4
29 Mar 2019 16:36:03
Revision:497167Original commit files touched by this commit
sunpoet search for other commits by this committer
Document py-notebook vulnerability
1.1_4
29 Mar 2019 14:17:12
Revision:497140Original commit files touched by this commit
sunpoet search for other commits by this committer
Update openjpeg status
1.1_4
28 Mar 2019 12:21:37
Revision:497014Original commit files touched by this commit
ler search for other commits by this committer
vuxml: Document mail/dovecot buffer overflow.
1.1_4
28 Mar 2019 08:26:50
Revision:497005Original commit files touched by this commit
joneum search for other commits by this committer
Add modified line for drupal after r496987

Sponsored by:	Netzkommune GmbH
1.1_4
27 Mar 2019 21:51:40
Revision:496987Original commit files touched by this commit
acm search for other commits by this committer
- Update 94d63fd7-508b-11e9-9ba0-4c72b94353b5 entry
1.1_4
27 Mar 2019 19:23:40
Revision:496976Original commit files touched by this commit
sunpoet search for other commits by this committer
Update Python vulnerability (d74371d2-4fee-11e9-a5cd-1df8a848de3d)
1.1_4
27 Mar 2019 17:44:06
Revision:496953Original commit files touched by this commit
joneum search for other commits by this committer
Add entry for www/drupal7

Sponsored by:	Netzkommune GmbH
1.1_4
26 Mar 2019 18:12:24
Revision:496919Original commit files touched by this commit
sunpoet search for other commits by this committer
Document Python vulnerability
1.1_4
22 Mar 2019 04:08:55
Revision:496547Original commit files touched by this commit
zeising search for other commits by this committer
Update the libXdmcp entry to make it clearer.
1.1_4
21 Mar 2019 09:36:32
Revision:496435Original commit files touched by this commit
joneum search for other commits by this committer
Add entry for wordpress

Sponsored by:	Netzkommune GmbH
1.1_4
21 Mar 2019 08:15:01
Revision:496430Original commit files touched by this commit
mfechner search for other commits by this committer
Documented gitlab vulnerability.
1.1_4
21 Mar 2019 02:03:35
Revision:496407Original commit files touched by this commit
zeising search for other commits by this committer
Add entry for x11/libXdmcp vulnerabilty.

Add entry for x11/libXdmcp vulnerabilty, insufficient entripy generating
session keys.  It is unknown if this actually affects FreeBSD.

Security:	CVE-2017-2625
1.1_4
20 Mar 2019 14:04:46
Revision:496343Original commit files touched by this commit
mfechner search for other commits by this committer
Documented security vulnerability for gitlab < 11.8.2.
1.1_4
20 Mar 2019 11:30:19
Revision:496333Original commit files touched by this commit
joneum search for other commits by this committer
Add entry for www/gitea

PR:		236563
1.1_4
19 Mar 2019 20:22:21
Revision:496292Original commit files touched by this commit
jbeich search for other commits by this committer
security/vuxml: mark firefox < 66 as vulnerable
1.1_4
19 Mar 2019 14:51:03
Revision:496262Original commit files touched by this commit
swills search for other commits by this committer
Document PowerDNS issue

PR:		236634
Reported by:	Dani <i.dani@outlook.com>
1.1_4
18 Mar 2019 18:25:00
Revision:496197Original commit files touched by this commit
sunpoet search for other commits by this committer
Document Rails vulnerability
1.1_4
17 Mar 2019 14:16:03
Revision:496062Original commit files touched by this commit
mandree search for other commits by this committer
Record PuTTY security vulnerabilities in versions before 0.71.
1.1_4
16 Mar 2019 23:23:16
Revision:495996Original commit files touched by this commit
sunpoet search for other commits by this committer
Document py-notebook vulnerability
1.1_4
15 Mar 2019 21:42:03
Revision:495829Original commit files touched by this commit
sunpoet search for other commits by this committer
Document ruby-gems vulnerability
1.1_4
12 Mar 2019 06:14:06
Revision:495442Original commit files touched by this commit
riggs search for other commits by this committer
Document CVE fixes in libsndfile-1.0.28_2

PR:		227669
Reported by:	p5B2E9A8F@t-online.de
1.1_4
08 Mar 2019 02:26:17
Revision:495009Original commit files touched by this commit
cy search for other commits by this committer
Fill in the actual URL for March 2019 ntp-4.2.8p13 NTP Release and
Security Vulnerability Announcement
1.1_4
07 Mar 2019 19:33:24
Revision:494994Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Document OpenSSL 1.1.1 vulnerability
1.1_4
07 Mar 2019 13:32:42
Revision:494940Original commit files touched by this commit
cy search for other commits by this committer
Document crafted ull dereference ntp attack.

Security:	CVE-2019-8936
Obtained from:	nwtime.org
1.1_4
06 Mar 2019 19:56:57
Revision:494835Original commit files touched by this commit
kai search for other commits by this committer
security/vuxml: Document shells/rssh < 2.3.4_2 vulnerabilities

PR:		235121
Approved by:	tcberner (mentor)
Differential Revision:	https://reviews.freebsd.org/D19473
1.1_4
06 Mar 2019 07:31:17
Revision:494780Original commit files touched by this commit
matthew search for other commits by this committer
Document a jQuery related XSS security fix in rt4.4.4 and rt4.2.16

Note: the release notes also mention 3 other security issues in perl
modules depended on by these packages.  Of those, vulnerabilities in
the Email::Address and Email::Address::List perl modules have already
been addressed in their respective ports, while the third: HTML::Gumbo
is not currently in the ports at all.
1.1_4
05 Mar 2019 15:00:54
Revision:494705Original commit files touched by this commit
0mp search for other commits by this committer
Document a slixmpp < 1.4.1 vulnerability

Reviewed by:	krion, mat
Approved by:	krion (mentor), mat (mentor)
MFH:		2019Q1
1.1_4
05 Mar 2019 10:23:44
Revision:494691Original commit files touched by this commit
mfechner search for other commits by this committer
Doucumented several www/gitlab-ce security vulnerabilities.
1.1_4
05 Mar 2019 06:20:50
Revision:494678Original commit files touched by this commit
tobik search for other commits by this committer
Document www/py-gunicorn vulnerability
1.1_4
04 Mar 2019 10:54:26
Revision:494582Original commit files touched by this commit
joneum search for other commits by this committer
Update mybb entry

Sponsored by:	Netzkommune GmbH
1.1_4
03 Mar 2019 00:03:11
Revision:494469Original commit files touched by this commit
bhughes search for other commits by this committer
security/vuxml: document Node.js February 2019 Security Releases

https://nodejs.org/en/blog/vulnerability/february-2019-security-releases/

Sponsored by:	Miles AS
1.1_4
02 Mar 2019 10:29:12
Revision:494381Original commit files touched by this commit
joneum search for other commits by this committer
Document vulnerability in www/mybb

Sponsored by:	Netzkommune GmbH
1.1_4
01 Mar 2019 08:57:16
Revision:494243Original commit files touched by this commit
madpilot search for other commits by this committer
Document new asterisk vulnerability.

Security:	CVE-2019-7251
1.1_4
27 Feb 2019 07:33:22
Revision:494030Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Update OpenSSL 1.0.2r entry
1.1_4
24 Feb 2019 19:59:26
Revision:493804Original commit files touched by this commit
kwm search for other commits by this committer
Document webkit-gtk CVE's

Security:	CVE-2019-6212, CVE-2019-6215, CVE-2019-6216, CVE-2019-6217, \
		CVE-2019-6226, CVE-2019-6227, CVE-2019-6229, CVE-2019-6233, \
		CVE-2019-6234.
1.1_4
22 Feb 2019 17:58:16
Revision:493578Original commit files touched by this commit
pi search for other commits by this committer
security/vuxml: dokument rdesktop < 1.8.4 vulnerabilities

PR:		235885, 229029
1.1_4
21 Feb 2019 19:49:00
Revision:493527Original commit files touched by this commit
romain search for other commits by this committer
Document sysutils/puppetserver* vulnerabilities.

PuppetServer bundles Bouncy Castle, so add affected ports to the Bouncy Castle
entry.

sysutils/puppetserver is EOL and will likely never get a fix;
sysutils/puppetserver5 may get fixed in a future release of the 5.x branch;
sysutils/puppetserver6 was fixed in the latest release.

With hat:	puppet
1.1_4
21 Feb 2019 14:45:25
Revision:493506Original commit files touched by this commit
acm search for other commits by this committer
- Add drupal8 vulnerability entry
1.1_4
20 Feb 2019 10:13:39
Revision:493418Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Document announced OpenSSL vulnerability

 - To be updated with more specifics on 2019-02-26
1.1_4
15 Feb 2019 15:06:16
Revision:493001Original commit files touched by this commit
novel search for other commits by this committer
Document mail/msmtp certificate verification issue
1.1_4
13 Feb 2019 11:27:36
Revision:492852Original commit files touched by this commit
cmt search for other commits by this committer
fix firefox-esr PORTEPOCH in latest entry

Submitted by:	jbeich
1.1_4
13 Feb 2019 11:09:39
Revision:492847Original commit files touched by this commit
cmt search for other commits by this committer
add more mozilla products to latest entry

https://www.mozilla.org/en-US/security/advisories/mfsa2019-05/
(same CVEs as mfsa2019-04, so not creating another entry)
1.1_4
13 Feb 2019 09:57:34
Revision:492841Original commit files touched by this commit
cmt search for other commits by this committer
document firefox vulnerabilities

https://www.mozilla.org/en-US/security/advisories/mfsa2019-04/
1.1_4
12 Feb 2019 15:39:34
Revision:492788Original commit files touched by this commit
jkim search for other commits by this committer
Document the latest Flash Player vulnerability.

https://helpx.adobe.com/security/products/flash-player/apsb19-06.html
1.1_4
11 Feb 2019 19:11:34
Revision:492731Original commit files touched by this commit
sunpoet search for other commits by this committer
Fix r492723 for the name of NVD report
1.1_4
11 Feb 2019 18:59:48
Revision:492723Original commit files touched by this commit
sunpoet search for other commits by this committer
Update openjpeg status

There were 5 vulnerabilities in openjpeg and 4 of them are fixed.
The current status  is described in [1] as follows:
- CVE-2017-17479 and CVE-2017-17480 were fixed in r477112.
- CVE-2018-5785 was fixed in r480624.
- CVE-2018-6616 was fixed in r489415.
- CVE-2018-5727 is not fixed yet.

Though I keep committing fixes and updating the status, it does not show in the
"pkg audit" result. Users have to follow the link but apparently few people
would do that. Therefore, I got mails asking if the CVEs are fixed, etc.

I don't know if there's a better way to handle this condition (partly fixed over
several months). Instead of removing fixed CVEs from vuln.xml, I decided to add
a new entry (5efd7a93-2dfb-11e9-9549-e980e869c2e9) which is split from the old
entry (11dc3890-0e64-11e8-99b0-d017c2987f9a). It should be clearer for users if
they only read the "pkg audit" result.

[1] https://www.vuxml.org/freebsd/11dc3890-0e64-11e8-99b0-d017c2987f9a.html
1.1_4
11 Feb 2019 00:11:41
Revision:492661Original commit files touched by this commit
feld search for other commits by this committer
Document FreeBSD-SA-19:02.fd
1.1_4
11 Feb 2019 00:10:59
Revision:492660Original commit files touched by this commit
feld search for other commits by this committer
Document FreeBSD-SA-19:01.syscall
1.1_4
10 Feb 2019 18:02:38
Revision:492622Original commit files touched by this commit
tcberner search for other commits by this committer
Document kf5-kauth vulnerability.
1.1_4
08 Feb 2019 01:12:26
Revision:492404Original commit files touched by this commit
osa search for other commits by this committer
Update versions range for recent unit vulnerability.
1.1_4
08 Feb 2019 01:04:53
Revision:492402Original commit files touched by this commit
osa search for other commits by this committer
Document unit vulnerability.
1.1_4
07 Feb 2019 23:14:47
Revision:492400Original commit files touched by this commit
sunpoet search for other commits by this committer
Document curl vulnerability
1.1_4
06 Feb 2019 09:10:47
Revision:492295Original commit files touched by this commit
mfechner search for other commits by this committer
Document gitlab-ce vulnerability.
1.1_4
05 Feb 2019 14:52:23
Revision:492246Original commit files touched by this commit
ler search for other commits by this committer
mail/dovecot: update reporter for latest vuln
1.1_4
05 Feb 2019 14:39:13
Revision:492242Original commit files touched by this commit
ler search for other commits by this committer
mail/dovecot: Suitable client certificate can be used to login as other user

update vuxml
1.1_4
02 Feb 2019 21:55:47
Revision:492007Original commit files touched by this commit
sunpoet search for other commits by this committer
Document typo3 vulnerability

PR:		235187, 235188
1.1_4
02 Feb 2019 01:26:48
Revision:491910Original commit files touched by this commit
jrm search for other commits by this committer
security/vuxml: Document Gitea < 1.7.1 vulnerabilities

PR:		235399
Submitted by:	stb@lassitu.de (www/gitea maintainer)
1.1_4
31 Jan 2019 19:36:16
Revision:491756Original commit files touched by this commit
matthew search for other commits by this committer
Document vulnerability addressed by release 0.06 of p5-Email-Address-List

Unfortunately there is very little real description of the
vulnerability available, other than what is in the changelog.  Even
the CVE number only leads to a page saying the number is reserved.
1.1_4
31 Jan 2019 17:42:14
Revision:491741Original commit files touched by this commit
mfechner search for other commits by this committer
Documented multiple vulnerabilities for www/gitlab-ce.
1.1_4
30 Jan 2019 11:37:56
Revision:491623Original commit files touched by this commit
bhughes search for other commits by this committer
security/vuxml: document vulnerabilities in net/turnserver

Sponsored by:	Miles AS
1.1_4
29 Jan 2019 17:18:59
Revision:491586Original commit files touched by this commit
jbeich search for other commits by this committer
security/vuxml: mark firefox < 65 as vulnerable
1.1_4
28 Jan 2019 16:53:42
Revision:491493Original commit files touched by this commit
swills search for other commits by this committer
Document powerdns-recursor issue

PR:		235113
Submitted by:	Ralf van der Enden <tremere@cainites.net>
1.1_4
27 Jan 2019 19:58:21
Revision:491395Original commit files touched by this commit
sunpoet search for other commits by this committer
Update py-requests entry

Reference:	https://lists.freebsd.org/pipermail/svn-ports-head/2019-January/198601.html
1.1_4
27 Jan 2019 15:14:56
Revision:491356Original commit files touched by this commit
brnrd search for other commits by this committer
security/vuxml: Document recent MySQL vulnerabilities

 - 5.5 branch see https://mariadb.com/kb/en/library/mariadb-5563-release-notes/

Number of commits found: 7252 (showing only 100 on this page)

[First Page]  «  13 | 14 | 15 | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23  »  [Last Page]