Bug 161734 - [vuxml] security/vuxml: PivotX -- Remote File Inclusion Vulnerability of TimThumb
Summary: [vuxml] security/vuxml: PivotX -- Remote File Inclusion Vulnerability of TimT...
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: Normal Affects Only Me
Assignee: Xin LI
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2011-10-17 08:40 UTC by fumifumi
Modified: 2011-11-01 07:20 UTC (History)
1 user (show)

See Also:


Attachments
vuxml-1.1_1.patch (1.72 KB, patch)
2011-10-17 08:40 UTC, fumifumi
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description fumifumi 2011-10-17 08:40:07 UTC
Currentry TimThumb.php remote file inclusion attack is in wild.

Port maintainer (secteam@FreeBSD.org) is cc'd.
Generated with FreeBSD Port Tools 0.99
Comment 1 Edwin Groothuis freebsd_committer freebsd_triage 2011-10-17 08:40:18 UTC
Responsible Changed
From-To: freebsd-ports-bugs->secteam

Over to maintainer (via the GNATS Auto Assign Tool)
Comment 2 Xin LI freebsd_committer freebsd_triage 2011-10-17 19:51:14 UTC
Responsible Changed
From-To: secteam->delphij

I'll take it.
Comment 3 dfilter service freebsd_committer freebsd_triage 2011-10-17 19:52:31 UTC
delphij     2011-10-17 18:52:16 UTC

  FreeBSD ports repository

  Modified files:
    security/vuxml       vuln.xml 
  Log:
  Document PivotX remote file inclusion vulnerability.
  
  PR:             ports/161734
  Submitted by:   Fumiyuki Shimizu <fumifumi abacustech jp>
  
  Revision  Changes    Path
  1.2462    +35 -1     ports/security/vuxml/vuln.xml
_______________________________________________
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscribe@freebsd.org"
Comment 4 Xin LI freebsd_committer freebsd_triage 2011-10-17 19:54:50 UTC
State Changed
From-To: open->closed

Committed, thanks!
Comment 5 dfilter service freebsd_committer freebsd_triage 2011-11-01 07:18:15 UTC
miwi        2011-11-01 07:18:06 UTC

  FreeBSD ports repository

  Modified files:
    security/vuxml       vuln.xml 
  Log:
  - bid from latest PivotX entry [1]
  - while remove a lot whitespaces
  
  PR:             161734 [1]
  Submitted by:   Fumiyuki Shimizu <fumifumi@abacustech.jp>
  
  Revision  Changes    Path
  1.2476    +28 -28    ports/security/vuxml/vuln.xml
_______________________________________________
cvs-all@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/cvs-all
To unsubscribe, send any mail to "cvs-all-unsubscribe@freebsd.org"