notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine
This referral link gives you 10% off a Fastmail.com account and gives me a discount on my Fastmail account.

Get notified when packages are built

A new feature has been added. FreshPorts already tracks package built by the FreeBSD project. This information is displayed on each port page. You can now get an email when FreshPorts notices a new package is available for something on one of your watch lists. However, you must opt into that. Click on Report Subscriptions on the right, and New Package Notification box, and click on Update.

Finally, under Watch Lists, click on ABI Package Subscriptions to select your ABI (e.g. FreeBSD:14:amd64) & package set (latest/quarterly) combination for a given watch list. This is what FreshPorts will look for.

non port: security/vuxml/vuln.xml

Number of commits found: 6271 (showing only 100 on this page)

[First Page]  «  1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11  »  [Last Page]

Wednesday, 19 Aug 2020
17:29 lme search for other commits by this committer
Document icingaweb2 vulnerability
Original commitRevision:545442 
16:26 sunpoet search for other commits by this committer
Document curl vulnerability
Original commitRevision:545438 
15:59 wen search for other commits by this committer
- Update a cvename entry
Original commitRevision:545339 
15:30 wen search for other commits by this committer
- Document python37 and python36 multiple vulnerabilities

PR:		248751
Submitted by:	mwalker@carbonhouse.com
Original commitRevision:545334 
08:24 zeising search for other commits by this committer
vuxml: Document security/trousers issues

Reapply r545263, but do it properly this time.
Document security issues in security/trousers.
Original commitRevision:545280 
03:30 gjb search for other commits by this committer
Revert r545263, which excludes the package name, version(s) affected,
and includes "INSERT BLOCKQUOTE URL HERE" for a URL, suggesting the
'make validate' target was clearly not executed.
Original commitRevision:545270 
Tuesday, 18 Aug 2020
23:17 zeising search for other commits by this committer
vuxml: Document security issues in security/trousers
Original commitRevision:545263 
19:36 rene search for other commits by this committer
Document new vulnerability in www/chromium < 84.0.4147.135
Original commitRevision:545255 
Monday, 17 Aug 2020
20:10 flo search for other commits by this committer
Document ceph vulnerability

PR:		248673
Submitted by:	Willem Jan Withagen <wjw@digiware.nl>
Original commitRevision:545184 
17:00 lwhsu search for other commits by this committer
Document Jenkins Security Advisory 2020-08-17

Sponsored by:	The FreeBSD Foundation
Original commitRevision:545174 
Sunday, 16 Aug 2020
17:45 rodrigo search for other commits by this committer
security/vuxml: Update rsync issues with zlib
Original commitRevision:545126 
13:27 swills search for other commits by this committer
Document py-ecdsa issue
Original commitRevision:545113 
Saturday, 15 Aug 2020
14:10 dbaio search for other commits by this committer
security/vuxml: Document net-mgmt/snmptt issue

PR:		248162
Reported by:	nistor@snickers.org
Original commitRevision:544945 
Friday, 14 Aug 2020
00:14 ler search for other commits by this committer
security/vuxml: mail/dovecot multiple vulnerabilities.
Original commitRevision:544856 
Thursday, 13 Aug 2020
10:48 mandree search for other commits by this committer
graphics/ilmbase, graphics/openexr: mention security fixes in v2.5.3

No CVE numbers available at this time.

Security:	b1d6b383-dd51-11ea-a688-7b12871ef3ad
Original commitRevision:544800 
Wednesday, 12 Aug 2020
13:31 lwhsu search for other commits by this committer
Document Jenkins Security Advisory 2020-08-12

Sponsored by:	The FreeBSD Foundation
Original commitRevision:544745 
Tuesday, 11 Aug 2020
19:31 rene search for other commits by this committer
Document new vulnerabilities in www/chromium < 84.0.4147.125
Original commitRevision:544710 
03:14 romain search for other commits by this committer
Document puppetdb5 vulnerability
Original commitRevision:544660 
Monday, 10 Aug 2020
13:30 danilo search for other commits by this committer
- Document ftp/bftpd vulnerabilities
Original commitRevision:544617 
Sunday, 9 Aug 2020
08:00 pi search for other commits by this committer
security/vuxml: add www/trafficserver entry for CVE-2020-9494

PR:		247713
Submitted by:	spam123@bitbert.com
Original commitRevision:544548 
Saturday, 8 Aug 2020
18:52 brnrd search for other commits by this committer
security/vuxml: www/mod_http2 also vulnerable to latest Apache httpd vulns
Original commitRevision:544506 
09:53 brnrd search for other commits by this committer
security/vuxml: Add Apache httpd vulnerabilities
Original commitRevision:544381 
Thursday, 6 Aug 2020
17:22 dmgk search for other commits by this committer
security/vuxml: Document lang/go vulnerability
Original commitRevision:544282 
07:35 mfechner search for other commits by this committer
Document gitlab-ce vulnerabilities.
Original commitRevision:544267 
03:43 philip search for other commits by this committer
security/vuxml: correct a typo in SA-20:22.sqlite

Pointy hat to:  philip
Original commitRevision:544262 
03:31 philip search for other commits by this committer
security/vuxml: add FreeBSD SA-20:23.sendmsg
Original commitRevision:544261 
03:31 philip search for other commits by this committer
security/vuxml: add FreeBSD SA-20:21.usb_net
Original commitRevision:544260 
03:31 philip search for other commits by this committer
security/vuxml: add FreeBSD SA to sqlite3 entry

Reference FreeBSD-SA-20:22.sqlite and correct the fixed patch releases
in the recent sqlite3 entry.
Original commitRevision:544259 
Tuesday, 4 Aug 2020
09:30 joneum search for other commits by this committer
add entry for typo3-9 and typo3-10

PR:		248430 248429
Sponsored by:	Netzkommune GmbH
Original commitRevision:544152 
Saturday, 1 Aug 2020
13:50 zeising search for other commits by this committer
vuxml: Document vulns in xorg-server and libX11

Document two vulnerabilities, one in xorg-server and one in libX11.
The one in libX11 is a heap corruption vulnerability. [1]
The one in xorg-server (and slave ports) is a uninitialized memory
disclosure.  [2]

Security:	CVE-2020-14344[1], CVE-2020-14347 [2]
Original commitRevision:543910 
Friday, 31 Jul 2020
13:57 wen search for other commits by this committer
- Document python38 multiple vulnerabilities
Original commitRevision:543865 
Thursday, 30 Jul 2020
17:10 tcberner search for other commits by this committer
security/vuxml: fix randomly introduced typo

Pointy hat:	tcberner
Reported by:	kevans
Original commitRevision:543806 
15:54 tcberner search for other commits by this committer
Document vulnerability in archivers/ark

- fixed in r543704 (head), r543705 (2020Q3)
Original commitRevision:543799 
Tuesday, 28 Jul 2020
17:42 rene search for other commits by this committer
Document new vulnerabilities in www/chromium < 84.0.4147.105

Obtained
from:	https://chromereleases.googleblog.com/2020/07/stable-channel-update-for-desktop_27.html
Original commitRevision:543621 
12:19 riggs search for other commits by this committer
Document out-of-bounds-read in libsndfile (CVE-2019-3832).

PR:		248268
Original commitRevision:543593 
04:38 kevans search for other commits by this committer
security/vuxml: document new vulnerability in net/freerdp < 2.2.0

PR:		248198
Original commitRevision:543570 
01:00 leres search for other commits by this committer
security/vuxml: Mark zeek < 3.0.8 as vulnerable as per:

    https://github.com/zeek/zeek/releases/tag/v3.0.8

Two potential stack overflows.
Original commitRevision:543559 
Monday, 27 Jul 2020
08:48 joneum search for other commits by this committer
Add entry for Cacti

PR:		248140
Sponsored by:	Netzkommune GmbH
Original commitRevision:543507 
Friday, 24 Jul 2020
19:08 sunpoet search for other commits by this committer
Document wagtail vulnerability
Original commitRevision:543372 
Thursday, 23 Jul 2020
18:37 joneum search for other commits by this committer
Fix typo

Reported by:	cmt
Sponsored by:	Netzkommune GmbH
Original commitRevision:542953 
17:32 joneum search for other commits by this committer
Add entry for pango

Sponsored by:	Netzkommune GmbH
Original commitRevision:542941 
14:43 joneum search for other commits by this committer
Fix typo

Sponsored by:	Netzkommune GmbH
Original commitRevision:542935 
14:42 joneum search for other commits by this committer
modified the tomcat entry and add CVE-2020-11996

PR:		247555
Sponsored by:	Netzkommune GmbH
Original commitRevision:542934 
11:54 joneum search for other commits by this committer
Add entry for www/tomcat{7,85,9,-devel}

PR:		247975
Sponsored by:	Netzkommune GmbH
Original commitRevision:542927 
Wednesday, 22 Jul 2020
17:17 cy search for other commits by this committer
Fixup affected versions, imprecisely.

Reported by:	mat
Original commitRevision:542877 
Monday, 20 Jul 2020
08:10 wen search for other commits by this committer
- Document multiple vulnerabilities of python38
- Fix 2 typos in my last commit
Original commitRevision:542617 
Sunday, 19 Jul 2020
09:11 madpilot search for other commits by this committer
Document multiple vulnerabilities in VirtualBox>

PR:		244212
Submitted by:	Nikita Stepanov <nikitastepan0v@bk.ru>
Original commitRevision:542548 
Friday, 17 Jul 2020
05:44 pi search for other commits by this committer
security/vuxml: Document multiple vulnerabilities in clamav

- CVE-2020-3350, CVE-2020-3327, CVE-2020-3481

PR:		248027
Submitted by:	Yasuhiro KIMURA <yasu@utahime.org>
Original commitRevision:542407 
Thursday, 16 Jul 2020
12:02 mandree search for other commits by this committer
vuln db: record OpenEXR/ilmbase < 2.5.2 vulnerabilities

Security:	714e6c35-c75b-11ea-aa29-d74973d1f9f3
Original commitRevision:542351 
Wednesday, 15 Jul 2020
18:13 rene search for other commits by this committer
Document new vulnerabilities in www/chromium < 84.0.4147.89

Obtained
from:	https://chromereleases.googleblog.com/2020/07/stable-channel-update-for-desktop.html
Original commitRevision:542278 
16:58 lwhsu search for other commits by this committer
Document Jenkins Security Advisory 2020-07-15

Sponsored by:	The FreeBSD Foundation
Original commitRevision:542271 
Saturday, 11 Jul 2020
11:40 brnrd search for other commits by this committer
security/vuxml: Add MySQL vulns from pre-announce
Original commitRevision:541961 
Friday, 10 Jul 2020
05:30 philip search for other commits by this committer
security/vuxml: update CVE-2020-1266[23] entry

Note vulnerable FreeBSD releases and add a reference to
FreeBSD-SA-20:19.unbound.
Original commitRevision:541837 
05:30 philip search for other commits by this committer
security/vuxml: add FreeBSD SA-20:20.ipv6
Original commitRevision:541836 
05:30 philip search for other commits by this committer
security/vuxml: add FreeBSD SA-20:18.posix_spawnp
Original commitRevision:541835 
Thursday, 9 Jul 2020
21:52 joneum search for other commits by this committer
Add entry for www/mybb

Sponsored by:	Netzkommune GmbH
Original commitRevision:541823 
17:09 cy search for other commits by this committer
Correct FreeBSD versions vulnerable to the latest sqlite3
vulnerabilities. This will be updated by so@ at a future date.

PR:		247865
Submitted by:	Yasuhiro KIMURA <yasu at utahime.org>
Reported by:	Yasuhiro KIMURA <yasu at utahime.org>
Approved by:	ports-secteam (jonenum)
Original commitRevision:541761 
Wednesday, 8 Jul 2020
19:20 sunpoet search for other commits by this committer
Document rubygem-kramdown vulnerability
Original commitRevision:541709 
Tuesday, 7 Jul 2020
11:49 tijl search for other commits by this committer
Document Mbed TLS security advisory 2020-07.

Security:	https://tls.mbed.org/tech-updates/security-advisories/mbedtls-security-advisory-2020-07
Original commitRevision:541413 
10:14 mfechner search for other commits by this committer
Document gitlab vulnerability.
Original commitRevision:541402 
Monday, 6 Jul 2020
02:02 wen search for other commits by this committer
- Document python37 multiple vulnerabilities
Original commitRevision:541309 
Sunday, 5 Jul 2020
00:45 timur search for other commits by this committer
Add entry about Samba vulnerabilities CVE-2020-10730, CVE-2020-10745,
CVE-2020-10760, CVE-2020-14303

PR:		247725
Security:	CVE-2020-10730
		CVE-2020-10745
		CVE-2020-10760
		CVE-2020-14303
Original commitRevision:541244 
Saturday, 4 Jul 2020
15:37 joneum search for other commits by this committer
Add entry for anydesk

PR:		247406
Sponsored by:	Netzkommune GmbH
Original commitRevision:541220 
Friday, 3 Jul 2020
07:04 lwhsu search for other commits by this committer
Document net-im/py-matrix-synapse security issue before 1.15.2

PR:		247720
Submitted by:	Sascha Biberhofer <ports@skyforge.at>
Original commitRevision:541079 
06:02 tcberner search for other commits by this committer
Document vulnerability in dbus < 2.12.18

* See [1] for details.
* The port is already updated to 2.12.18.

[1] https://gitlab.freedesktop.org/dbus/dbus/-/issues/294

PR:		247340
Submitted by:	rob2g2 <spam123@bitbert.com>
Security:	CVE-2020-12049
Original commitRevision:541073 
Thursday, 2 Jul 2020
19:21 mfechner search for other commits by this committer
Document gitlab vulnerabilities.
Original commitRevision:541057 
17:33 yuri search for other commits by this committer
security/vuxml update: coturn CVE-2020-4067 for net/coturn
Original commitRevision:541049 
08:58 joneum search for other commits by this committer
Add entrx for dns/powerdns-recursor

PR:		247707
Submitted by:	Ralf van der Enden <tremere@cainites.net>
Sponsored by:	Netzkommune GmbH
Original commitRevision:541025 
Wednesday, 1 Jul 2020
08:50 joneum search for other commits by this committer
Add entry for Drupal 7

Sponsored by:	Netzkommune GmbH
Original commitRevision:540934 
Tuesday, 30 Jun 2020
08:04 meta search for other commits by this committer
Document xrdp CVE-2020-4044 vulnerability
Original commitRevision:540867 
Monday, 29 Jun 2020
16:58 pi search for other commits by this committer
security/vuxml: add mongodb CVE entry

- See also: https://jira.mongodb.org/browse/SERVER-45472

PR:		247392
Submitted by:	Ronald Klop <ronald-lists@klop.ws>
Original commitRevision:540816 
Sunday, 28 Jun 2020
21:47 naddy search for other commits by this committer
Document libvorbis vulnerabilities CVE-2017-14160 and CVE-2018-10392.
Original commitRevision:540731 
13:52 mandree search for other commits by this committer
security/putty: two security vulnerabilities in versions < 0.74

Security:	6190c0cd-b945-11ea-9401-2dcf562daa69
Security:	CVE-2020-14002
Security:	FZI-2020-5
Original commitRevision:540715 
Thursday, 25 Jun 2020
19:26 zeising search for other commits by this committer
vuln.xml: Adjust sqlite version in sqlite entry

Update the sqlite versions affected in the latest sqlite entry.  The entry
failed to take PORTEPOCH into account, and without this fix pkg audit fails
to mark sqlite as vulnerable when it's not updated to the latest version,
since any version with PORTEPOCH set will always be greater than any version
without.

PR:		247149
Original commitRevision:540402 
Wednesday, 24 Jun 2020
21:53 gjb search for other commits by this committer
Fix build, again...

Sponsored by:	Rubicon Communications, LLC (netgate.com)
Original commitRevision:540354 
21:30 rene search for other commits by this committer
Document new vulnerablities in www/chromium < 83.0.4103.116
Original commitRevision:540352 
20:30 zeising search for other commits by this committer
Update VuXML with security issues in mail/mutt

PR:		247399
Submitted by:	Derek Schrock
Original commitRevision:540344 
17:59 sunpoet search for other commits by this committer
Document curl vulnerability
Original commitRevision:540335 
14:42 gjb search for other commits by this committer
Attempt to fix build.

Sponsored by:	Rubicon Communications, LLC (netgate.com)
Original commitRevision:540067 
14:10 tijl search for other commits by this committer
Document CUPS CVE-2019-8842 and CVE-2020-3898.

PR:		246011
Security:	https://github.com/apple/cups/releases/tag/v2.3.3
Original commitRevision:540064 
13:14 sunpoet search for other commits by this committer
Clean up unnecessary "<p>.</p>" in blockquote section
Original commitRevision:540062 
Monday, 22 Jun 2020
16:13 sunpoet search for other commits by this committer
Document rails vulnerability
Original commitRevision:539882 
Friday, 19 Jun 2020
14:29 tcberner search for other commits by this committer
security/vuxml: Document multimedia/vlc Vulnerability

PR:		247341
Security:	CVE-2020-13428
Original commitRevision:539617 
Thursday, 18 Jun 2020
14:45 lme search for other commits by this committer
security/vuxml:

Document CVE-2020-13882 and CVE-2019-13033 for security/lynis.
Original commitRevision:539544 
08:05 philip search for other commits by this committer
security/vuxml: CVE-2020-8618 and CVE-2020-8619

ISC published CVE-2020-8618 affecting dns/bind916 and CVE-2020-8619
affecting dns/bind911 and dns/bind916.  Both ports were updated.
Original commitRevision:539533 
Saturday, 13 Jun 2020
14:08 dbaio search for other commits by this committer
security/vuxml: Update CVE-2019-18348 and CVE-2020-8492 entries

Python 3.6 and 3.7 are not vulnerable in the ports tree anymore.
Change range for python35 to <le>, suggested by swills.

PR:		246984, 246738
Original commitRevision:538674 
08:20 fluffy search for other commits by this committer
security/vuxml: document libreoffice <6.4.4 security issues

PR:		247196
Submitted by:	rob2g2 <spam123@bitbert.com>
Original commitRevision:538650 
04:43 cy search for other commits by this committer
Document multiple sqlite3 vulnerabilities with CVSS scores ranging
from 5.5 (medium) to 7.5 (high).

PR:		247149
Original commitRevision:538637 
Friday, 12 Jun 2020
04:47 bhughes search for other commits by this committer
security/vuxml: document Node.js June 2020 Security Releases

https://nodejs.org/en/blog/vulnerability/june-2020-security-releases/

Sponsored by:	Miles AS
Original commitRevision:538562 
Thursday, 11 Jun 2020
13:24 ehaupt search for other commits by this committer
Document net-mgmt/tcpreplay vulnerabilities
Original commitRevision:538483 
00:36 dbaio search for other commits by this committer
security/vuxml: Document irc/znc issue

Security:	CVE-2020-13775
Original commitRevision:538447 
Wednesday, 10 Jun 2020
12:12 mfechner search for other commits by this committer
Document npm vulnerabilities.
Original commitRevision:538392 
09:12 ehaupt search for other commits by this committer
Document the audio/libadplug vulnerabilities:

https://github.com/adplug/adplug/releases/tag/adplug-2.3.3
Original commitRevision:538376 
02:29 leres search for other commits by this committer
security/vuxml: Mark zeek < 3.0.7 as vulnerable as per:

    https://raw.githubusercontent.com/zeek/zeek/v3.0.7/NEWS

Various issues including stack overflows and memory leaks.
Original commitRevision:538363 
Tuesday, 9 Jun 2020
21:50 jkim search for other commits by this committer
Document the latest Flash Player vulnerability.

https://helpx.adobe.com/security/products/flash-player/apsb20-30.html
Original commitRevision:538349 
16:59 gordon search for other commits by this committer
Add FreeBSD-SA-20:17.usb.

Approved by:	so
Original commitRevision:538328 
Monday, 8 Jun 2020
16:26 joneum search for other commits by this committer
Unbreak vuxmlbuild

Parsing VuXML ...Application exception:
bad CVE name for vid 669f3fe8-a07a-11ea-b83e-f0def1f5c5a2: GHSL-2020-100 @ho:215
*** Error code 1

Sponsored by:	Netzkommune GmbH
Original commitRevision:538232 
15:49 kevans search for other commits by this committer
security/vuxml: document new vulnerabilities in net/freerdp < 2.1.0

PR:		246931, 245517
Obtained from:	https://github.com/FreeRDP/FreeRDP/blob/2.1.0/ChangeLog
Approved by:	koobs (mentor)
Original commitRevision:538227 
Sunday, 7 Jun 2020
02:20 dbaio search for other commits by this committer
security/vuxml: Update CVE-2019-18348 and CVE-2020-8492 entries

CVE-2019-18348:	Add missing Python packages range
CVE-2020-8492:	Fix Python 3.7 entrie, it's currently affected.

After committing fixes, we'll need to change ranges again.

PR:		246984
Original commitRevision:538142 
Friday, 5 Jun 2020
10:51 rene search for other commits by this committer
Document new vulnerabilities in www/chromium < 83.0.4103.97

Obtained
from:	https://chromereleases.googleblog.com/2020/06/stable-channel-update-for-desktop.html
Original commitRevision:538006 

Number of commits found: 6271 (showing only 100 on this page)

[First Page]  «  1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11  »  [Last Page]