summaryrefslogtreecommitdiff
path: root/security
diff options
context:
space:
mode:
authorKoop Mast <kwm@FreeBSD.org>2010-09-10 13:03:19 +0000
committerKoop Mast <kwm@FreeBSD.org>2010-09-10 13:03:19 +0000
commit7f2356aac76f46b8870858fd2088860ce7c9a2e9 (patch)
tree937d93f37442e7dc1a67770d8833f223d2e520a6 /security
parentUpdate to 1.2.2 release. (diff)
Document webkit-gtk2 - multiple vulnerabilities.
Also add 1 extra CVE to the previous webkit-gtk2 entry that was fixed but didn't make it to the release notes.
Notes
Notes: svn path=/head/; revision=260932
Diffstat (limited to 'security')
-rw-r--r--security/vuxml/vuln.xml38
1 files changed, 38 insertions, 0 deletions
diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml
index f639e5f925dd..f020410f99d3 100644
--- a/security/vuxml/vuln.xml
+++ b/security/vuxml/vuln.xml
@@ -34,6 +34,43 @@ Note: Please add new entries to the beginning of this file.
-->
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
+ <vuln vid="9bcfd7b6-bcda-11df-9a6a-0015f2db7bde">
+ <topic>webkit-gtk2 -- Multiple vulnabilities</topic>
+ <affects>
+ <package>
+ <name>webkit-gtk2</name>
+ <range><lt>1.2.4</lt></range>
+ </package>
+ </affects>
+ <description>
+ <body xmlns="http://www.w3.org/1999/xhtml">
+ <p>Gustavo Noronha Silva reports:</p>
+ <blockquote cite="http://gitorious.org/webkitgtk/stable/commit/9d07fda89aab7105962d933eef32ca15dda610d8">
+ <p>With help from Vincent Danen and other members of the Red Hat
+ security team, the following CVE's where fixed.</p>
+ </blockquote>
+ </body>
+ </description>
+ <references>
+ <cvename>CVE-1781</cvename>
+ <cvename>CVE-1782</cvename>
+ <cvename>CVE-1784</cvename>
+ <cvename>CVE-1785</cvename>
+ <cvename>CVE-1786</cvename>
+ <cvename>CVE-1787</cvename>
+ <cvename>CVE-1788</cvename>
+ <cvename>CVE-1790</cvename>
+ <cvename>CVE-1792</cvename>
+ <cvename>CVE-1793</cvename>
+ <cvename>CVE-2648</cvename>
+ <url>http://gitorious.org/webkitgtk/stable/commit/9d07fda89aab7105962d933eef32ca15dda610d8</url>
+ </references>
+ <dates>
+ <discovery>2010-09-7</discovery>
+ <entry>2010-09-10</entry>
+ </dates>
+ </vuln>
+
<vuln vid="f866d2af-bbba-11df-8a8d-0008743bf21a">
<topic>vim6 -- heap-based overflow while parsing shell metacharacters</topic>
<affects>
@@ -995,6 +1032,7 @@ Note: Please add new entries to the beginning of this file.
<cvename>CVE-2010-1772</cvename>
<cvename>CVE-2010-1773</cvename>
<cvename>CVE-2010-1774</cvename>
+ <cvename>CVE-2010-2264</cvename>
<url>http://blog.kov.eti.br/?p=116</url>
</references>
<dates>