FreeBSD : Gitlab — multiple vulnerabilities (065b3b72-c5ab-11e8-9ae2-001b217b3468)

Gitlab reports : SSRF GCP access token disclosure Persistent XSS on issue details Diff formatter DoS in Sidekiq jobs Confidential information disclosure in events API endpoint validate_localhost funct ...

Continue Reading
Happy graduation, Envoy!

Envoy, the new darling of the DevOps community, performs the role of a service and edge proxy. With advanced features such as timeouts, rate limiting, circuit breaking, load balancing, retries, stats, ...

Continue Reading
CVE-2018-16886

etcd versions 3.2.x before 3.2.26 and 3.3.x before 3.3.11 are vulnerable to an improper authentication issue when role-based access control (RBAC) is used and client-cert-auth is enabled. If an etcd c ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

grpc/api_fuzzer: Incorrect-function-pointer-type in grpc_core::AresDnsResolver::StartResolvingLocked

Project: https://github.com/grpc/grpc.git Detailed report: https://oss-fuzz.com/testcase?key=5752853455437824 Project: grpc Fuzzer: libFuzzer_grpc_api_fuzzer Fuzz target binary: api_fuzzer Job Type: l ...

Continue Reading
Cisco IOS XR gRPC Software Denial of Service Vulnerability

A vulnerability in the Event Management Service daemon (emsd) of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected devic ...

Continue Reading
P4wnP1 A.L.O.A. – Framework Which Turns A Rapsberry Pi Zero W Into A Flexible, Low-Cost Platform For Pentesting, Red Teaming And Physical Engagements

[![](https://1.bp.blogspot.com/-kAfpXyhBA0g/XOS89ORP25I/AAAAAAAAO9U/ohWV8x2YZRoU8uw-JNH2-J2fUP6QWvIXQCLcBGAs/s640/raspberry%2Bpi%2Bzero.jpg)]() P4wnP1 A.L.O.A. by MaMe82 is a framework which turns a R ...

Continue Reading
Security update for helm (moderate)

An update that fixes three vulnerabilities is now available. Description: This update for helm to version 2.13.1 fixes the following issues: - set correct git_commit value so that 'helm version' ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

Security update for haproxy (moderate)

An update that fixes one vulnerability is now available. Description: This update for haproxy to version 2.0.5+git0.d905f49a fixes the following issues: Security issue fixed: - CVE-2019-14 ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Back to Main

Subscribe for the latest news: