search for: securityfix

Displaying 4 results from an estimated 4 matches for "securityfix".

Did you mean: security_id
2013 Jan 04
5
FreeBSD wiki offline for a bit
...luding jailed) to keep it away from any sensitive FreeBSD.org parts, so there is absolutely no reason to believe a compromise would go any further than the wiki itself. I hope to have the wiki back within 24 hours, assuming not too much gets in the way. For further reference see: http://moinmo.in/SecurityFixes and http://permalink.gmane.org/gmane.linux.debian.devel.announce/1754 . PS. this is entirely unrelated to the 2012 November FreeBSD.org compromise. -- Simon L. B. Nielsen Hat: FreeBSD clusteradm / FreeBSD Security Officer
2018 Jul 02
0
Incomplete HTML escaping by Xapian::MSet::snippet() (CVE-2018-0499)
Hi folks, I spotted an HTML escaping bug in Xapian::MSet::snippet() while working on the code. This issue has been assigned CVE-2018-0499 (though currently there's no useful information on cve.mitre.org for it). I've added a wiki page for it here: https://trac.xapian.org/wiki/SecurityFixes/2018-07-02 The intended behaviour is that the selected input text is escaped for use in HTML, but this wasn't happening in all cases and there's potential for an attacker who can feed documents into a system to inject HTML markup into results pages for some searches. This method is wrap...
2018 Jul 02
0
Xapian 1.4.6 released
Xapian 1.4.6 can now be downloaded from: https://xapian.org/download This release includes a fix for CVE-2018-0499: https://trac.xapian.org/wiki/SecurityFixes/2018-07-02 The wiki will shortly have a summary of the most notable changes: https://trac.xapian.org/wiki/ReleaseOverview/1.4.6 A big thanks to the following people for helping to make this release a reality: Germán M. Bravo, Robert Stepanek, 张少华, Gaurav Arora, Andy Chilton, sielicki, Gurupras...
2006 Aug 10
2
atheros chips dangerous?
...D use a binary driver and I think it is located in this file[2]. Unlike OpenBSD which affirms that they have reverse engineering[3] the drivers would I be at risk if I use atheros based wireless cards with FreeBSD? all comments will be appreciated. Thank you. [1] http://blog.washingtonpost.com/securityfix/2006/08/hijacking_a_macbook_in_60_seco_1.html [2] http://www.freebsd.org/cgi/cvsweb.cgi/src/sys/contrib/dev/ath/public/i386-elf.hal.o.uu [3] http://www.onlamp.com/pub/a/bsd/2006/04/27/openbsd-3_9.html