| /freebsd/crypto/openssl/ |
| H A D | NEWS.md | 28 OpenSSL 3.5.8 is a security patch release. The most severe CVE fixed 35 ([CVE-2026-18798]) 38 ([CVE-2026-63072]) 41 ([CVE-2026-63076]) 44 ([CVE-2026-14456]) 48 ([CVE-2026-14457]) 51 ([CVE-2026-54874]) 55 ([CVE-2026-63073]) 58 ([CVE-2026-63074]) 61 ([CVE-2026-63075]) [all …]
|
| H A D | CHANGES.md | 49 ([CVE-2026-18798]) 69 ([CVE-2026-63072]) 91 ([CVE-2026-63076]) 111 ([CVE-2026-14456]) 133 ([CVE-2026-14457]) 151 ([CVE-2026-54874]) 171 ([CVE-2026-63073]) 194 ([CVE-2026-63074]) 214 ([CVE-2026-63075]) 232 ([CVE-2026-75803]) [all …]
|
| /freebsd/contrib/tcpdump/ |
| H A D | CHANGES | 117 Use the buffer stack for de-escaping PPP; fixes CVE-2024-2397; 206 CVE-2023-1801: Fix an out-of-bounds write in the SMB printer. 393 CVE-2018-16301: For the -F option handle large input files safely. 465 CVE-2017-16808 (AoE) 466 CVE-2018-14468 (FrameRelay) 467 CVE-2018-14469 (IKEv1) 468 CVE-2018-14470 (BABEL) 469 CVE-2018-14466 (AFS/RX) 470 CVE-2018-14461 (LDP) 471 CVE-2018-14462 (ICMP) [all …]
|
| /freebsd/contrib/expat/ |
| H A D | Changes | 21 #1321 #1331 CVE-2026-66046, CVE-2026-76641 -- Fix quadratic runtime from 25 The vulnerability is closely related to past CVE-2026-45186 32 #1322 CVE-2026-76957 -- Protect custom encoding callbacks from 34 past issues CVE-2026-50219, CVE-2026-56131 and 35 CVE-2026-56412 that were all fixed with Expat 2.8.2. 36 #1326 CVE-2026-76956 -- Fix inverted getentropy() return handling 86 #1296 CVE-2026-72522 -- Fix an out-of-bounds read and the resulting 152 #1246 CVE-2026-50219 -- Disallow calls to functions 158 #1267 CVE-2026-56131 -- Protect XML_ResumeParser from being called 160 to CVE-2026-50219 [all …]
|
| /freebsd/crypto/heimdal/appl/rcp/ |
| H A D | ChangeLog | 18 Meissner at SUSE. Either of CVE-2006-3083 or CVE-2006-3084. 22 Meissner at SUSE. Either of CVE-2006-3083 or CVE-2006-3084. 26 Meissner at SUSE. Either of CVE-2006-3083 or CVE-2006-3084.
|
| /freebsd/tests/sys/netpfil/pf/ |
| H A D | Makefile | 81 CVE-2019-5597.py \ 82 CVE-2019-5598.py \
|
| H A D | icmp.sh | 62 $(atf_get_srcdir)/CVE-2019-5598.py \
|
| H A D | fragmentation_compat.sh | 143 $(atf_get_srcdir)/CVE-2019-5597.py \
|
| H A D | fragmentation_pass.sh | 147 $(atf_get_srcdir)/CVE-2019-5597.py \
|
| /freebsd/contrib/file/tests/ |
| H A D | Makefile.am | 28 CVE-2014-1943.result \ 29 CVE-2014-1943.testfile \ 51 CVE-2014-1943.result \ 52 CVE-2014-1943.testfile \
|
| H A D | Makefile.in | 326 CVE-2014-1943.result \ 327 CVE-2014-1943.testfile \ 349 CVE-2014-1943.result \ 350 CVE-2014-1943.testfile \
|
| /freebsd/tools/build/options/ |
| H A D | WITH_KERNEL_RETPOLINE | 1 Enable the "retpoline" mitigation for CVE-2017-5715 in the kernel
|
| H A D | WITHOUT_KERNEL_RETPOLINE | 1 Disable the "retpoline" mitigation for CVE-2017-5715 in the kernel
|
| H A D | WITH_RETPOLINE | 2 vulnerability mitigation for CVE-2017-5715.
|
| /freebsd/contrib/ntp/ |
| H A D | NEWS | 570 References: Sec 3454 / CVE-2018-7185 / VU#961909 608 References: Sec 3453 / CVE-2018-7184 / VU#961909 638 References: Sec 3415 / CVE-2018-7170 / VU#961909 639 Sec 3012 / CVE-2016-1549 / VU#718152 677 References: Sec 3414 / CVE-2018-7183 / VU#961909 701 References: Sec 3412 / CVE-2018-7182 / VU#961909 725 References: Sec 3012 / CVE-2016-1549 / VU#718152 893 References: Sec 3389 / CVE-2017-6464 / VU#325339 913 References: Sec 3388 / CVE-2017-6462 / VU#325339 937 References: Sec 3387 / CVE [all...] |
| /freebsd/contrib/bzip2/ |
| H A D | CHANGES | 324 * Security fix for CVE-2010-0405. This was reported by Mikolaj 338 * bzip2recover: Fix use after free issue with outFile (CVE-2016-3189) 340 * Make sure nSelectors is not out of range (CVE-2019-12900) 346 This relaxes the fix for CVE-2019-12900 from 1.0.7
|
| /freebsd/contrib/xz/ |
| H A D | AUTHORS | 34 the team behind him inserted a backdoor (CVE-2024-3094) into
|
| /freebsd/contrib/wpa/hostapd/ |
| H A D | ChangeLog | 64 (a mitigation for CVE-2023-52424; disabled by default for now, can be 152 [https://w1.fi/security/2019-1/] (CVE-2019-9494) 154 [https://w1.fi/security/2019-3/] (CVE-2019-9496) 157 [https://w1.fi/security/2019-2/] (CVE-2019-9495) 159 [https://w1.fi/security/2019-4/] (CVE-2019-9497 and CVE-2019-9498) 195 [http://w1.fi/security/2017-1/] (CVE-2017-13082) 249 [http://w1.fi/security/2015-7/] (CVE-2015-5314) 251 [http://w1.fi/security/2016-1/] (CVE-2016-4476) 322 [http://w1.fi/security/2015-2/] (CVE-2015-4141) 324 [http://w1.fi/security/2015-3/] (CVE-2015-4142) [all …]
|
| /freebsd/crypto/openssl/test/recipes/30-test_evp_data/ |
| H A D | evpencod.txt | 138 # CVE 2015-0292
|
| /freebsd/contrib/wpa/wpa_supplicant/ |
| H A D | ChangeLog | 78 (a mitigation for CVE-2023-52424; disabled by default for now, can be 184 [https://w1.fi/security/2019-1/] (CVE-2019-9494) 187 [https://w1.fi/security/2019-2/] (CVE-2019-9495) 189 [https://w1.fi/security/2019-4/] (CVE-2019-9499) 239 [https://w1.fi/security/2017-1/] (CVE-2017-13077, CVE-2017-13078, 240 CVE-2017-13079, CVE-2017-13080, CVE-2017-13081, CVE-2017-13082, 241 CVE-2017-13086, CVE-2017-13087, CVE-2017-13088) 243 [https://w1.fi/security/2018-1/] (CVE-2018-14526) 308 [http://w1.fi/security/2015-6/] (CVE-2015-5310) 310 [http://w1.fi/security/2015-7/] (CVE-2015-5315) [all …]
|
| /freebsd/contrib/unbound/contrib/ |
| H A D | unbound.spec_fedora | 213 - removed integrated CVE patch 223 - Applied patch for CVE-2011-1922 DoS vulnerability 341 - Added dependency on minimum SSL for CVE-2008-5077
|
| /freebsd/contrib/unbound/doc/ |
| H A D | Changelog | 53 - Fix CVE-2026-14586, Assertion in libngtcp2 when under pressure 57 - Fix CVE-2026-32665, Remote DNS-over-QUIC denial of 66 - Fix CVE-2026-40691, Packet of death for DNSCrypt over TCP. Thanks 70 - Fix CVE-2026-41637, Degradation of resolution service from 73 - Fix CVE-2026-42955, Extra fix for CVE-2026-40622 to also clamp 77 - Fix CVE-2026-44621, Libunbound applications configured with 81 - Fix CVE-2026-44687, Off-by-one error in 'harden-below-nxdomain' 84 - Fix CVE-2026-44690, Cross-zone wildcard cache poisoning via 87 - Fix CVE-2026-46582, A wildcard replay, as another piece of data, 90 - Fix CVE-2026-50045, 'max-global-quota' reset by DNSSEC validation [all …]
|
| /freebsd/sys/contrib/openzfs/tests/zfs-tests/tests/functional/crypto/ |
| H A D | aes_ccm_test.txt | 5462 flags: CVE-2017-18330 InvalidNonceSize 5473 flags: CVE-2017-18330 InvalidNonceSize 5484 flags: CVE-2017-18330 InvalidNonceSize 5605 flags: CVE-2017-18330 InvalidNonceSize 5616 flags: CVE-2017-18330 InvalidNonceSize 5627 flags: CVE-2017-18330 InvalidNonceSize 5748 flags: CVE-2017-18330 InvalidNonceSize 5759 flags: CVE-2017-18330 InvalidNonceSize 5770 flags: CVE-2017-18330 InvalidNonceSize
|
| /freebsd/contrib/libpcap/ |
| H A D | CHANGES | 10 CVE-2025-11961: Fix OOBR and OOBW in pcap_ether_aton(). 78 CVE-2025-11964: Fix a bug in error message character encoding mapping 196 CVE-2023-7256: Clean up sock_initaddress() and its callers to avoid 200 CVE-2024-8006: Fix pcap_findalldevs_ex() not to crash if passed a 784 Five CVE-2019-15161, CVE-2019-15162, CVE-2019-15163, CVE-2019-15164, CVE-2019-15165
|
| /freebsd/contrib/openpam/ |
| H A D | HISTORY | 81 result in a fail-open scenario. (CVE-2014-3879) 190 the policy file and some function arguments. (CVE-2011-4122)
|