CVE-2021-45960

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memor ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

Denial Of Service (DoS)

expat is vulnerable to denial-of-service. The vulnerability exists in `storeAtts` function in `xmlparse.c` may lead to realloc misbehavior, allowing a malicious user to cause an application crash.Read ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

EulerOS Virtualization 3.0.6.0 : php (EulerOS-SA-2022-1089)

According to the versions of the php packages installed, the EulerOS Virtualization installation on the remote host is affected by the following vulnerabilities : - In PHP versions 7.3.x below 7.3.2 ...

Continue Reading
RHEL 8 : ruby:2.6 (RHSA-2022:0544)

The remote Redhat Enterprise Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2022:0544 advisory. - rubygem-bundler: Dependencies of gems w ...

Continue Reading
(RHSA-2022:0543) Important: ruby:2.6 security update

Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks. Security Fix(es): * rubygem-bundler: Dependencies ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

Debian DSA-5082-1 : php7.4 – security update

The remote Debian 11 host has packages installed that are affected by multiple vulnerabilities as referenced in the dsa-5082 advisory. - In PHP versions 7.3.x below 7.3.33, 7.4.x below 7.4.26 and 8. ...

Continue Reading
(RHSA-2022:0581) Important: ruby:2.6 security update

Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks. Security Fix(es): * rubygem-bundler: Dependencies ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

PHP vulnerabilities

## Releases * Ubuntu 16.04 ESM ## Packages * php7.0 - HTML-embedded scripting language interpreter It was discovered that PHP incorrectly handled certain scripts. An attacker could possibly use th ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Back to Main

Subscribe for the latest news: