svn commit: r568030 - head/security/vuxml
Neel Chauhan
nc at FreeBSD.org
Wed Mar 10 18:45:25 UTC 2021
Author: nc
Date: Wed Mar 10 18:45:24 2021
New Revision: 568030
URL: https://svnweb.freebsd.org/changeset/ports/568030
Log:
Document vulnerabilities in www/gitea < 1.13.4
PR: 254130
Submitted by: stb AT lassitu DOT de (maintainer)
Modified:
head/security/vuxml/vuln.xml
Modified: head/security/vuxml/vuln.xml
==============================================================================
--- head/security/vuxml/vuln.xml Wed Mar 10 18:39:04 2021 (r568029)
+++ head/security/vuxml/vuln.xml Wed Mar 10 18:45:24 2021 (r568030)
@@ -78,6 +78,41 @@ Notes:
* Do not forget port variants (linux-f10-libxml2, libxml2, etc.)
-->
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
+ <vuln vid="502ba001-7ffa-11eb-911c-0800278d94f0">
+ <topic>gitea -- multiple vulnerabilities</topic>
+ <affects>
+ <package>
+ <name>gitea</name>
+ <range><lt>1.13.24</lt></range>
+ </package>
+ </affects>
+ <description>
+ <body xmlns="http://www.w3.org/1999/xhtml">
+ <p>The Gitea Team reports for release 1.13.3:</p>
+ <blockquote cite="https://blog.gitea.io/2021/03/gitea-1.13.3-is-released/">
+ <ul>
+ <li>Turn default hash password algorithm back to pbkdf2 from argon2 until we find a better one </li>
+ </ul>
+ </blockquote>
+ <p>The Gitea Team reports for release 1.13.4:</p>
+ <blockquote cite="https://blog.gitea.io/2021/03/gitea-1.13.4-is-released/">
+ <ul>
+ <li>Fix issue popups</li>
+ </ul>
+ </blockquote>
+ </body>
+ </description>
+ <references>
+ <url>https://github.com/go-gitea/gitea/releases/tag/v1.13.3</url>
+ <url>https://github.com/go-gitea/gitea/releases/tag/v1.13.4</url>
+ <freebsdpr>ports/254130</freebsdpr>
+ </references>
+ <dates>
+ <discovery>2021-01-07</discovery>
+ <entry>2021-02-06</entry>
+ </dates>
+ </vuln>
+
<vuln vid="2dc8927b-54e0-11eb-9342-1c697a013f4b">
<topic>mantis -- multiple vulnerabilities</topic>
<affects>
More information about the svn-ports-all
mailing list