pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: pkgsrc/doc



Module Name:    pkgsrc
Committed By:   wiz
Date:           Wed Dec  6 08:07:49 UTC 2023

Modified Files:
        pkgsrc/doc: pkg-vulnerabilities

Log Message:
doc: more vulns for curl, webkit-gtk, go


To generate a diff of this commit:
cvs rdiff -u -r1.72 -r1.73 pkgsrc/doc/pkg-vulnerabilities

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.

Modified files:

Index: pkgsrc/doc/pkg-vulnerabilities
diff -u pkgsrc/doc/pkg-vulnerabilities:1.72 pkgsrc/doc/pkg-vulnerabilities:1.73
--- pkgsrc/doc/pkg-vulnerabilities:1.72 Tue Dec  5 13:47:19 2023
+++ pkgsrc/doc/pkg-vulnerabilities      Wed Dec  6 08:07:49 2023
@@ -1,4 +1,4 @@
-# $NetBSD: pkg-vulnerabilities,v 1.72 2023/12/05 13:47:19 wiz Exp $
+# $NetBSD: pkg-vulnerabilities,v 1.73 2023/12/06 08:07:49 wiz Exp $
 #
 #FORMAT 1.0.0
 #
@@ -25784,3 +25784,11 @@ vim<9.0.2121   use-after-free  https://nvd.
 samba4>=4.0<4.19.3     information-leak        https://nvd.nist.gov/vuln/detail/CVE-2018-14628
 py{27,38,39,310,311,312}-cryptography>=3.1<41.0.6      NULL-dereference        https://nvd.nist.gov/vuln/detail/CVE-2023-49083
 perl>=5.30.0<5.38.1    buffer-overflow https://nvd.nist.gov/vuln/detail/CVE-2023-47038
+webkit-gtk<2.42.3      disclose-sensitive-information  https://nvd.nist.gov/vuln/detail/CVE-2023-42916
+webkit-gtk<2.42.3      arbitrary-code-execution        https://nvd.nist.gov/vuln/detail/CVE-2023-42917
+go120<1.20.12  denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-39326
+go121<1.21.5   denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-39326
+go120<1.20.12  insecure-fallback       https://nvd.nist.gov/vuln/detail/CVE-2023-45285
+go121<1.21.5   insecure-fallback       https://nvd.nist.gov/vuln/detail/CVE-2023-45285
+curl>=7.46.0<8.5.0     information-exposure-through-sent-data  https://nvd.nist.gov/vuln/detail/CVE-2023-46218
+curl>=7.84.0<8.5.0     missing-encryption-of-sensitive-data    https://nvd.nist.gov/vuln/detail/CVE-2023-46219



Home | Main Index | Thread Index | Old Index