OpenBSD VuXML

Documenting security issues in the OpenBSD Ports & Packages Collection

Security issues that affect the OpenBSD Ports & Packages Collection are documented using the Vulnerabilities and Exposures Markup Language (VuXML). The current VuXML document that serves as the source for the content of this site can be found:

CVE name index


CVE Name Topic
CVE-2006-0162 clamav -- heap overflow in the UPX code
CAN-2005-2933 imap-uw -- buffer verflow vulnerability
CAN-2005-2534 openvpn -- several vulnerabilities
CAN-2005-2533 openvpn -- several vulnerabilities
CAN-2005-2532 openvpn -- several vulnerabilities
CAN-2005-2531 openvpn -- several vulnerabilities
CAN-2005-2491 pcre -- heap overflow
CAN-2005-2368 vim -- modelines execute arbitrary shell code
CAN-2005-2335 fetchmail -- remote code injection vulnerability
CAN-2005-1992 ruby -- arbitrary command execution on XMLRPC server
CAN-2005-1921 php4-pear -- PHP script injection vulnerability
CAN-2005-1911 leafnode -- denial of service vulnerability
CAN-2005-1519 squid -- multiple vulnerabilities
CAN-2005-1431 gnutls -- denial of service vulnerability
CAN-2005-1266 p5-Mail-SpamAssassin -- denial of service vulnerability
CAN-2005-1262 gaim -- multiple vulnerabilities
CAN-2005-1261 gaim -- multiple vulnerabilities
CAN-2005-1194 nasm -- multiple vulnerabilities
CAN-2005-1043 php4 -- multiple vulnerabilities
CAN-2005-1042 php4 -- multiple vulnerabilities
CAN-2005-0967 gaim -- multiple vulnerabilities
CAN-2005-0966 gaim -- multiple vulnerabilities
CAN-2005-0965 gaim -- multiple vulnerabilities
CAN-2005-0706 grip -- CDDB response multiple matches buffer overflow vulnerability
CAN-2005-0667 sylpheed -- message reply buffer overflow vulnerability
CAN-2005-0664 libexif -- buffer overflow vulnerability
CAN-2005-0525 php4 -- multiple vulnerabilities
CAN-2005-0525 php5 -- multiple vulnerabilities
CAN-2005-0524 php4 -- multiple vulnerabilities
CAN-2005-0524 php5 -- multiple vulnerabilities
CAN-2005-0490 curl -- authentication buffer overflow vulnerability
CAN-2005-0366 gnupg -- OpenPGP protocol attack
CAN-2005-0202 mailman -- directory traversal vulnerability
CAN-2005-0161 unace -- multiple buffer overflows
CAN-2005-0160 unace -- multiple buffer overflows
CAN-2005-0102 evolution -- arbitrary code execution vulnerability
CAN-2005-0100 (X)emacs -- format string vulnerability
CAN-2005-0095 squid -- several vulnerabilites
CAN-2005-0094 squid -- several vulnerabilites
CAN-2005-0064 cups -- stack overflow in included xpdf code
CAN-2005-0064 xpdf -- multiple stack overflows in makeFileKey2();
CAN-2005-0022 exim -- two buffer overflow vulnerabilities
CAN-2005-0021 exim -- two buffer overflow vulnerabilities
CAN-2005-0004 mysql-server -- mysqlaccess insecure temporary file creation
CAN-2004-1308 tiff -- multiple vulnerabilities
CAN-2004-1297 unrtf -- buffer overflow vulnerability
CAN-2004-1287 nasm -- multiple vulnerabilities
CAN-2004-1186 enscript -- multiple vulnerabilities
CAN-2004-1185 enscript -- multiple vulnerabilities
CAN-2004-1184 enscript -- multiple vulnerabilities
CAN-2004-1183 tiff -- multiple vulnerabilities
CAN-2004-1177 mailman -- cross-site scripting vulnerability
CAN-2004-1176 mc -- multiple vulnerabilities
CAN-2004-1152 acroread -- mailListIsPdf() buffer overflow vulnerability
CAN-2004-1092 mc -- multiple vulnerabilities
CAN-2004-1065 php5 -- multiple vulnerabilities
CAN-2004-1065 php4 -- multiple vulnerabilities
CAN-2004-1019 php5 -- multiple vulnerabilities
CAN-2004-1019 php4 -- multiple vulnerabilities
CAN-2004-1010 zip -- long path buffer overflow
CAN-2004-1005 mc -- multiple vulnerabilities
CAN-2004-1004 mc -- multiple vulnerabilities
CAN-2004-0918 squid -- SNMP related denial of service
CAN-2004-0891 gaim -- DOS and buffer overflow vulnerabilities
CAN-2004-0889 xpdf -- integer overflow vulnerabilities
CAN-2004-0888 xpdf -- integer overflow vulnerabilities
CAN-2004-0884 cyrus-sasl -- dynamic library loading and set-user-ID applications
CAN-2004-0755 ruby -- insecure file permissions
CAN-2004-0746 kdelibs -- konqueror cross-domain cookie injection
CAN-2004-0686 samba -- potential buffer overrun with 'mangling method = hash'
CAN-2004-0599 png -- stack-based buffer overflow and other code concerns
CAN-2004-0598 png -- stack-based buffer overflow and other code concerns
CAN-2004-0597 png -- stack-based buffer overflow and other code concerns
CAN-2004-0557 sox -- buffer overflows while handling malicious WAV files
CAN-2004-0494 gnomevfs -- unsafe URI handling
CAN-2004-0457 mysql-server -- insecure file creation in mysqlhotcopy
CAN-2004-0448 jftpgw -- format string vulnerability
CAN-2004-0421 libpng -- out of bound access
CAN-2004-0412 mailman -- member password disclosure vulnerability
CAN-2004-0400 exim -- buffer overflow when verify = header_syntax is used
CAN-2004-0398 neon -- buffer overflow
CAN-2004-0398 cadaver -- buffer overflow in included libneon
CAN-2004-0381 mysql -- insecure temporary file creation
CAN-2004-0235 lha -- buffer overflows and path traversal issues
CAN-2004-0234 lha -- buffer overflows and path traversal issues
CAN-2004-0189 squid -- ACL bypass due to URL decoding bug
CAN-2004-0179 neon -- format string vulnerabilities
CAN-2004-0179 cadaver -- format string vulnerabilities
CAN-2004-0157 xonix -- failure to drop privileges
CAN-2002-1363 png -- buffer overflow vulnerability on the row buffers
CAN-1999-1572 gcpio -- broken file permissions
CVE-1999-0710 squid -- multiple vulnerabilities