svn commit: r476657 - head/security/vuxml

Bernard Spil brnrd at FreeBSD.org
Wed Aug 8 19:07:32 UTC 2018


Author: brnrd
Date: Wed Aug  8 19:07:31 2018
New Revision: 476657
URL: https://svnweb.freebsd.org/changeset/ports/476657

Log:
  security/vuxml: Document Oracle's Crititcal Patch Update

Modified:
  head/security/vuxml/vuln.xml

Modified: head/security/vuxml/vuln.xml
==============================================================================
--- head/security/vuxml/vuln.xml	Wed Aug  8 19:03:36 2018	(r476656)
+++ head/security/vuxml/vuln.xml	Wed Aug  8 19:07:31 2018	(r476657)
@@ -58,6 +58,100 @@ Notes:
   * Do not forget port variants (linux-f10-libxml2, libxml2, etc.)
 -->
 <vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
+  <vuln vid="909be51b-9b3b-11e8-add2-b499baebfeaf">
+    <topic>MySQL -- multiple vulnerabilities</topic>
+    <affects>
+      <package>
+	<name>mariadb55-server</name>
+	<range><lt>5.5.61</lt></range>
+      </package>
+      <package>
+	<name>mariadb100-server</name>
+	<range><lt>10.0.36</lt></range>
+      </package>
+      <package>
+	<name>mariadb101-server</name>
+	<range><lt>10.1.35</lt></range>
+      </package>
+      <package>
+	<name>mariadb102-server</name>
+	<range><lt>10.2.17</lt></range>
+      </package>
+      <package>
+	<name>mariadb103-server</name>
+	<range><lt>10.3.9</lt></range>
+      </package>
+      <package>
+	<name>mysql55-server</name>
+	<range><lt>5.5.61</lt></range>
+      </package>
+      <package>
+	<name>mysql56-server</name>
+	<range><lt>5.6.41</lt></range>
+      </package>
+      <package>
+	<name>mysql57-server</name>
+	<range><lt>5.7.23</lt></range>
+      </package>
+      <package>
+	<name>mysql80-server</name>
+	<range><lt>8.0.12</lt></range>
+      </package>
+      <package>
+	<name>percona55-server</name>
+	<range><lt>5.5.61</lt></range>
+      </package>
+      <package>
+	<name>percona56-server</name>
+	<range><lt>5.6.41</lt></range>
+      </package>
+      <package>
+	<name>percona57-server</name>
+	<range><lt>5.7.23</lt></range>
+      </package>
+    </affects>
+    <description>
+      <body xmlns="http://www.w3.org/1999/xhtml">
+	<p>Oracle reports:</p>
+	<blockquote cite="http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html">
+	  <p>Multiple vulnerabilities have been disclosed by Oracle without
+	    further detail. CVSS scores 7.1 - 2.7</p>
+	</blockquote>
+      </body>
+    </description>
+    <references>
+      <url>http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html</url>
+      <cvename>CVE-2018-3064</cvename>
+      <cvename>CVE-2018-0739</cvename>
+      <cvename>CVE-2018-3070</cvename>
+      <cvename>CVE-2018-3060</cvename>
+      <cvename>CVE-2018-3065</cvename>
+      <cvename>CVE-2018-3073</cvename>
+      <cvename>CVE-2018-3074</cvename>
+      <cvename>CVE-2018-3081</cvename>
+      <cvename>CVE-2018-3071</cvename>
+      <cvename>CVE-2018-3079</cvename>
+      <cvename>CVE-2018-3054</cvename>
+      <cvename>CVE-2018-3077</cvename>
+      <cvename>CVE-2018-3078</cvename>
+      <cvename>CVE-2018-3080</cvename>
+      <cvename>CVE-2018-3061</cvename>
+      <cvename>CVE-2018-3067</cvename>
+      <cvename>CVE-2018-3063</cvename>
+      <cvename>CVE-2018-3075</cvename>
+      <cvename>CVE-2018-3058</cvename>
+      <cvename>CVE-2018-3056</cvename>
+      <cvename>CVE-2018-3066</cvename>
+      <cvename>CVE-2018-2767</cvename>
+      <cvename>CVE-2018-3084</cvename>
+      <cvename>CVE-2018-3082</cvename>
+    </references>
+    <dates>
+      <discovery>2018-07-17</discovery>
+      <entry>2018-08-08</entry>
+    </dates>
+  </vuln>
+
   <vuln vid="5786185a-9a43-11e8-b34b-6cc21735f730">
     <topic>xml-security-c -- crashes on malformed KeyInfo content</topic>
     <affects>


More information about the svn-ports-head mailing list