pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: pkgsrc/doc



Module Name:    pkgsrc
Committed By:   kikadf
Date:           Fri Aug 22 09:07:13 UTC 2025

Modified Files:
        pkgsrc/doc: pkg-vulnerabilities

Log Message:
doc/pkg-vulnerabilities: libwpd alarm fine-tuning

CVE-2017-14226: fixed in 0.10.2, https://sourceforge.net/p/libwpd/code/ci/f40827b3eae260ce657c67d9fecc855b09dea3c3/
https://sourceforge.net/p/libwpd/code/ci/0329a9c57f9b3b0efa0f09a5235dfd90236803a5/
CVE-2018-19208: fixed in 0.10.3, https://sourceforge.net/p/libwpd/code/ci/33e6bfdc1e7c3f0c5fa07863618cb8403aceabab/


To generate a diff of this commit:
cvs rdiff -u -r1.510 -r1.511 pkgsrc/doc/pkg-vulnerabilities

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.

Modified files:

Index: pkgsrc/doc/pkg-vulnerabilities
diff -u pkgsrc/doc/pkg-vulnerabilities:1.510 pkgsrc/doc/pkg-vulnerabilities:1.511
--- pkgsrc/doc/pkg-vulnerabilities:1.510        Fri Aug 22 09:04:48 2025
+++ pkgsrc/doc/pkg-vulnerabilities      Fri Aug 22 09:07:13 2025
@@ -1,4 +1,4 @@
-# $NetBSD: pkg-vulnerabilities,v 1.510 2025/08/22 09:04:48 kikadf Exp $
+# $NetBSD: pkg-vulnerabilities,v 1.511 2025/08/22 09:07:13 kikadf Exp $
 #
 #FORMAT 1.0.0
 #
@@ -13136,7 +13136,7 @@ php{56,70,71}-concrete5<5.7.4.1 sql-inje
 php{56,70,71}-concrete5<5.7.4.1        cross-site-scripting    https://nvd.nist.gov/vuln/detail/CVE-2015-4721
 ntp<4.2.8p3            denial-of-service                       https://nvd.nist.gov/vuln/detail/CVE-2015-5146
 qt5-qtwebkit<5.4       sensitive-information-disclosure        https://nvd.nist.gov/vuln/detail/CVE-2015-8079
-libwpd-[0-9]*          denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2017-14226
+libwpd<0.10.2          denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2017-14226
 #jasper-[0-9]*         denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2017-14229 Disputed, see https://github.com/jasper-maint/jasper/issues/20#issuecomment-648920879
 libbson-[0-9]*         denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2017-14227
 nasm<2.13.02           null-dereference        https://nvd.nist.gov/vuln/detail/CVE-2017-14228
@@ -16154,7 +16154,7 @@ uriparser<0.9.0         integer-overflow                https
 uriparser<0.9.0                null-pointer-dereference        https://nvd.nist.gov/vuln/detail/CVE-2018-19200
 php{56,70,71,72}-roundcube-plugin-enigma<1.3.7 sensitive-information-disclosure        https://nvd.nist.gov/vuln/detail/CVE-2018-19205
 php{56,70,71,72}-roundcube<1.3.8               cross-site-scripting                    https://nvd.nist.gov/vuln/detail/CVE-2018-19206
-libwpd-[0-9]*  null-pointer-dereference                https://nvd.nist.gov/vuln/detail/CVE-2018-19208
+libwpd<0.10.3  null-pointer-dereference                https://nvd.nist.gov/vuln/detail/CVE-2018-19208
 tiff<4.0.10nb1 null-pointer-dereference                https://nvd.nist.gov/vuln/detail/CVE-2018-19210
 ncurses<6.1nb7 null-pointer-dereference                https://nvd.nist.gov/vuln/detail/CVE-2018-19211
 ncurses<6.1    null-pointer-dereference                https://nvd.nist.gov/vuln/detail/CVE-2018-19217



Home | Main Index | Thread Index | Old Index