Simulation of Wasmd message can cause crashing

CWA-2024-009 Severity Low (Marginal + Likely)[^1] Affected versions: wasmd < 0.53.1 Patched versions: wasmd 0.53.2 (please note that wasmd 0.53.1 is broken and must not be used) Description ...

Continue Reading
Important Photon OS Security Update – PHSA-2024-4.0-0719

Updates of ['grpc'] packages of Photon OS have been...Read More ...

Continue Reading
(RHSA-2024:10761) Important: rhc-worker-playbook security update

Python-based worker for Red Hat connect, used to launch Ansible playbooks via Ansible Runner. Security Fix(es): python-wheel: remote attackers can cause denial of service via attacker controlled inp ...

Continue Reading
CVE-2024-11407

A flaw was found in gRPC. In certain configurations, the data sent by the application may be corrupted before transmission over the network, leaving the recipient with an incorrect set of bytes, which ...

Continue Reading
Access to Archived Argo Workflows with Fake Token in `client` mode

Summary When using --auth-mode=client, Archived Workflows can be retrieved with a fake or spoofed token via the GET Workflow endpoint: /api/v1/workflows/{namespace}/{name} When using --auth-mode=sso, ...

Continue Reading
Access to Archived Argo Workflows with Fake Token in `client` mode

Summary When using --auth-mode=client, Archived Workflows can be retrieved with a fake or spoofed token via the GET Workflow endpoint: /api/v1/workflows/{namespace}/{name} When using --auth-mode=sso, ...

Continue Reading
UBUNTU-CVE-2024-11407

(There exists a denial of service through Data corruption in gRPC-C++ -...Read More ...

Continue Reading
CVE-2024-11407

There exists a denial of service through Data corruption in gRPC-C++ - gRPC-C++ servers with transmit zero copy enabled through the channel arg GRPC_ARG_TCP_TX_ZEROCOPY_ENABLED can experience data co ...

Continue Reading

Back to Main

Subscribe for the latest news: