pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: pkgsrc/doc



Module Name:    pkgsrc
Committed By:   leot
Date:           Thu May 29 21:08:48 UTC 2025

Modified Files:
        pkgsrc/doc: pkg-vulnerabilities

Log Message:
pkg-vulnerabilities: + redis, yasm, tcpreplay, apache-tomcat

yasm is fixed with https://github.com/yasm/yasm/pull/263 AKA
https://github.com/yasm/yasm/commit/121ab150b3577b666c79a79f4a511798d7ad2432 but
no stable release with that commit.


To generate a diff of this commit:
cvs rdiff -u -r1.388 -r1.389 pkgsrc/doc/pkg-vulnerabilities

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.

Modified files:

Index: pkgsrc/doc/pkg-vulnerabilities
diff -u pkgsrc/doc/pkg-vulnerabilities:1.388 pkgsrc/doc/pkg-vulnerabilities:1.389
--- pkgsrc/doc/pkg-vulnerabilities:1.388        Thu May 29 09:45:54 2025
+++ pkgsrc/doc/pkg-vulnerabilities      Thu May 29 21:08:48 2025
@@ -1,4 +1,4 @@
-# $NetBSD: pkg-vulnerabilities,v 1.388 2025/05/29 09:45:54 leot Exp $
+# $NetBSD: pkg-vulnerabilities,v 1.389 2025/05/29 21:08:48 leot Exp $
 #
 #FORMAT 1.0.0
 #
@@ -26250,3 +26250,9 @@ chromium<137.0.7151.55  sensitive-informa
 chromium<137.0.7151.55 memory-corruption                       https://nvd.nist.gov/vuln/detail/CVE-2025-5283
 rt4<4.4.8      cross-site-scripting    https://nvd.nist.gov/vuln/detail/CVE-2025-30087
 rt5<5.0.8      cross-site-scripting    https://nvd.nist.gov/vuln/detail/CVE-2025-30087
+redis<8.0.2    stack-overflow  https://nvd.nist.gov/vuln/detail/CVE-2025-27151
+yasm-[0-9]*    null-pointer-dereference        https://nvd.nist.gov/vuln/detail/CVE-2024-22653
+tcpreplay<4.5.0        infinite-loop   https://nvd.nist.gov/vuln/detail/CVE-2024-22654
+apache-tomcat>=9<9.0.15                security-bypass https://nvd.nist.gov/vuln/detail/CVE-2025-46701
+apache-tomcat>=10<10.1.41      security-bypass https://nvd.nist.gov/vuln/detail/CVE-2025-46701
+apache-tomcat>=11<11.0.7       security-bypass https://nvd.nist.gov/vuln/detail/CVE-2025-46701



Home | Main Index | Thread Index | Old Index