Page Menu
Home
FreeBSD
Search
Configure Global Search
Log In
Files
F167806092
D18615.id52185.diff
No One
Temporary
Actions
View File
Edit File
Delete File
View Transforms
Subscribe
Mute Notifications
Flag For Later
Award Token
Size
1 KB
Referenced Files
None
Subscribers
None
D18615.id52185.diff
View Options
Index: security/vuxml/vuln.xml
===================================================================
--- security/vuxml/vuln.xml
+++ security/vuxml/vuln.xml
@@ -58,6 +58,34 @@
* Do not forget port variants (linux-f10-libxml2, libxml2, etc.)
-->
<vuxml xmlns="http://www.vuxml.org/apps/vuxml-1">
+ <vuln vid="b80f039d-579e-4b82-95ad-b534a709f220">
+ <topic>bro -- "Magellan" remote code execution vulnerability in bundled sqlite</topic>
+ <affects>
+ <package>
+ <name>bro</name>
+ <range><lt>2.6.1</lt></range>
+ </package>
+ </affects>
+ <description>
+ <body xmlns="http://www.w3.org/1999/xhtml">
+ <p>Bro Network security Monitor reports:</p>
+ <blockquote cite="https://www.bro.org/download/NEWS.bro.html">
+ <p>Bro 2.6.1 updates the embedded SQLite to version 3.26.0
+ to address the "Magellan" remote code execution vulnerability.
+ The stock Bro configuration/scripts don't use SQLite by
+ default, but custom user scripts/packages may.</p>
+ </blockquote>
+ </body>
+ </description>
+ <references>
+ <url>https://www.bro.org/download/NEWS.bro.html</url>
+ </references>
+ <dates>
+ <discovery>2018-12-01</discovery>
+ <entry>2018-12-20</entry>
+ </dates>
+ </vuln>
+
<vuln vid="fa6a4a69-03d1-11e9-be12-a4badb2f4699">
<topic>FreeBSD -- bootpd buffer overflow</topic>
<affects>
File Metadata
Details
Attached
Mime Type
text/plain
Expires
Tue, Aug 25, 4:50 PM (3 h, 5 m)
Storage Engine
blob
Storage Format
Raw Data
Storage Handle
37242535
Default Alt Text
D18615.id52185.diff (1 KB)
Attached To
Mode
D18615: security/vuxml: Mark bro < 2.6.1 as vulnerable
Attached
Detach File
Event Timeline
Log In to Comment