This page displays vulnerability information about FreeBSD Ports.
The VUXML data was last processed by FreshPorts on 2024-11-19 19:12:13 UTC
List all Vulnerabilities, by package
List all Vulnerabilities, by date
k68These are the vulnerabilities relating to the commit you have selected:
VuXML ID | Description |
---|---|
111f1f84-1d14-4ff2-a9ea-cf07119c0d3b | libyaml heap overflow resulting in possible code execution libyaml was prone to a heap overflow that could result in arbitrary code execution. Pkg uses libyaml to parse the package manifests in some cases. Pkg also used libyaml to parse the remote repository until 1.2. RedHat Product Security Team reports on libyaml:
Discovery 2013-11-24 Entry 2014-02-01 Modified 2014-02-01 libyaml < 0.1.4_3 pkg < 1.2.6 pkg-devel < 1.2.6 CVE-2013-6393 https://bugzilla.redhat.com/show_bug.cgi?id=1033990 |
580cc46b-bb1e-11e3-b144-2c4138874f7d | LibYAML input sanitization errors oCERT reports:
Discovery 2014-03-11 Entry 2014-03-26 libyaml < 0.1.6 mingw32-libyaml < 0.1.6 CVE-2014-2525 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-2525 |