Version of mohawk < 2.0.12 have multiple vulnerabilities
Class Changed From-To: sw-bug->maintainer-update Fix category (submitter is maintainer) (via the GNATS Auto Assign Tool)
Responsible Changed From-To: freebsd-ports-bugs->culot I'll take it.
Author: culot Date: Wed Apr 30 07:54:11 2014 New Revision: 352674 URL: http://svnweb.freebsd.org/changeset/ports/352674 QAT: https://qat.redports.org/buildarchive/r352674/ Log: - Document vulnerabilities in www/mohawk PR: ports/189082 Submitted by: mohawk <mohawk@bsdsx.fr> Modified: head/security/vuxml/vuln.xml Modified: head/security/vuxml/vuln.xml ============================================================================== --- head/security/vuxml/vuln.xml Wed Apr 30 06:42:33 2014 (r352673) +++ head/security/vuxml/vuln.xml Wed Apr 30 07:54:11 2014 (r352674) @@ -51,6 +51,32 @@ Note: Please add new entries to the beg --> <vuxml xmlns="http://www.vuxml.org/apps/vuxml-1"> + <vuln vid="670d732a-cdd4-11e3-aac2-0022fb6fcf92"> + <topic>mohawk -- multiple vulnerabilities</topic> + <affects> + <package> + <name>mohawk</name> + <range><lt>2.0.12</lt></range> + </package> + </affects> + <description> + <body xmlns="http://www.w3.org/1999/xhtml"> + <p>The mohawk project reports:</p> + <blockquote cite="http://fossil.bsdsx.fr/mohawk/tktview?name=1707f0e351"> + <p>Segfault when parsing malformed / unescaped url, coredump when setting syslog facility.</p> + </blockquote> + </body> + </description> + <references> + <url>http://fossil.bsdsx.fr/mohawk/tktview?name=1707f0e351</url> + <url>http://fossil.bsdsx.fr/mohawk/tktview?name=1c7565019e</url> + </references> + <dates> + <discovery>2014-04-10</discovery> + <entry>2014-04-30</entry> + </dates> + </vuln> + <vuln vid="7cf25a0c-d031-11e3-947b-00262d5ed8ee"> <topic>chromium -- multiple vulnerabilities</topic> <affects> _______________________________________________ svn-ports-all@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/svn-ports-all To unsubscribe, send any mail to "svn-ports-all-unsubscribe@freebsd.org"
State Changed From-To: open->closed Committed. Thanks!