The source package ocsinventory-server has been updated to address the API change in php-cas due to [CVE-2022-39369](https://security-tracker.debian.org/tracker/CVE-2022-39369), see DLA 3485-1 for det ...
Continue ReadingJuly 08, 2023
ruby [2.7.8-139] - Upgrade to Ruby 2.7.8. Resolves: rhbz#2149262 - Fix HTTP response splitting in CGI. Resolves: CVE-2021-33621 - Fix ReDoS vulnerability in URI. Resolves: CVE-2023-28755 - Fix R ...
Continue ReadingJuly 08, 2023
grpc is vulnerable to Connection Confusion. The vulnerability exists when the gRPC HTTP2 stack raised a header size exceeded error, and it skipped parsing the rest of the HPACK frame, which caused any ...
Continue ReadingJuly 08, 2023
[]() Secrets are meant to be hidden or, at the very least, only known to a specif ...
Continue ReadingJuly 07, 2023
[]() Cybersecurity researchers have unearthed an attack infrast ...
Continue ReadingJuly 07, 2023
## Summary Potential SAP NetWeaver AS for JAVA security bypass vulnerability ( CVE-2023-30744) has been identified that may affect Watson CP4D Data Stores. Refer to details for additional information. ...
Continue ReadingJuly 07, 2023
When gRPC HTTP2 stack raised a header size exceeded error, it skipped parsing the rest of the HPACK frame. This caused any HPACK table mutations to also be skipped, resulting in a desynchronization of ...
Continue ReadingJuly 07, 2023
When gRPC HTTP2 stack raised a header size exceeded error, it skipped parsing the rest of the HPACK frame. This caused any HPACK table mutations to also be skipped, resulting in a desynchronization of ...
Continue ReadingJuly 07, 2023
Back to Main