Bug 230360

Summary: security/vuxml: Document directory traversal vulnerability in cgit (CVE-2018-14912)
Product: Ports & Packages Reporter: Yasuhiro Kimura <yasu>
Component: Individual Port(s)Assignee: Thomas Zander <riggs>
Status: Closed FIXED    
Severity: Affects Some People CC: riggs
Priority: --- Keywords: patch
Version: LatestFlags: riggs: maintainer-feedback+
Hardware: Any   
OS: Any   
See Also: https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=230361
Bug Depends on:    
Bug Blocks: 230361    
Attachments:
Description Flags
patch file none

Description Yasuhiro Kimura freebsd_committer freebsd_triage 2018-08-04 19:56:56 UTC
Created attachment 195854 [details]
patch file

Document directory traversal vulnerability in cgit (CVE-2018-14912).
Comment 1 commit-hook freebsd_committer freebsd_triage 2018-08-05 11:57:49 UTC
A commit references this bug:

Author: riggs
Date: Sun Aug  5 11:56:50 UTC 2018
New revision: 476408
URL: https://svnweb.freebsd.org/changeset/ports/476408

Log:
  Document CVE-2018-14912 in devel/cgit before version 1.2.1

  PR:		230360
  Submitted by:	yasu@utahime.org

Changes:
  head/security/vuxml/vuln.xml