CVE-2022-43680

In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations. #### Bugs * #### Notes Author| No ...

Continue Reading

CVSS3 - HIGH

Movable Type < 6.8.3 / 7.x < 7.8.2 Remote Command Injection

Movable Type Read More ...

Continue Reading
Movable Type < 6.8.7 / 7.x < 7.8.5 Remote Command Injection

Movable Type Read More ...

Continue Reading
Moderate: php:7.4 security, bug fix, and enhancement update

PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server. The following packages have been upgraded to a later upstream version: php (7.4.30), php-pear (1.10.13). (BZ#20554 ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

RHEL 8 : php:7.4 (RHSA-2022:7628)

The remote Redhat Enterprise Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2022:7628 advisory. - php: Special character breaks path in x ...

Continue Reading
PHP vulnerabilities

It was discovered that PHP incorrectly handled certain gzip files. An attacker could possibly use this issue to cause a denial of service. (CVE-2022-31628) It was discovered that PHP incorrectly handl ...

Continue Reading

CVSS3 - CRITICAL

CentOS 8 : php:7.4 (CESA-2022:7628)

The remote CentOS Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the CESA-2022:7628 advisory. - php: Special character breaks path in xml parsing ...

Continue Reading
CVE-2022-43753

A Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in spacewalk/Uyuni of SUSE Linux Enterprise Module for SUSE Manager Server 4.2, SUSE Linux Enterprise Mod ...

Continue Reading

Back to Main

Subscribe for the latest news: