[SECURITY] [DLA 2866-1] uw-imap security update
- -------------------------------------------------------------------------
Debian LTS Advisory DLA-2866-1 [email protected]
https://www.debian.org/lts/security/ ...
Continue Reading
July 01, 2023
CVE-2021-45960
In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places
in the storeAtts function in xmlparse.c can lead to realloc misbehavior
(e.g., allocating too few bytes, or only freeing memor ...
Continue Reading
July 01, 2023
Denial Of Service (DoS)
expat is vulnerable to denial-of-service. The vulnerability exists in `storeAtts` function in `xmlparse.c` may lead to realloc misbehavior, allowing a malicious user to cause an application crash.Read ...
Continue Reading
July 01, 2023
(RHSA-2022:0543) Important: ruby:2.6 security update
Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks.
Security Fix(es):
* rubygem-bundler: Dependencies ...
Continue Reading
July 01, 2023
(RHSA-2022:0581) Important: ruby:2.6 security update
Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks.
Security Fix(es):
* rubygem-bundler: Dependencies ...
Continue Reading
July 01, 2023
PHP vulnerabilities
## Releases
* Ubuntu 16.04 ESM
## Packages
* php7.0 - HTML-embedded scripting language interpreter
It was discovered that PHP incorrectly handled certain scripts.
An attacker could possibly use th ...
Continue Reading
July 01, 2023
Cobbler subject to Command Injection
A Command Injection in action_power.py in Cobbler prior to v2.6.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) username or (2) password fields to the power ...
Continue Reading
July 01, 2023
CVE-2022-35405
Zoho ManageEngine Password Manager Pro before 12101 and PAM360 before 5510 are vulnerable to unauthenticated remote code execution. (This also affects ManageEngine Access Manager Plus before 4303 with ...
Continue Reading
July 01, 2023
Palo Alto Networks Firewalls – Root Remote Code Execution
Palo Alto Networks Firewalls - Root Remote Code ExecutionRead More ...
Continue Reading
July 01, 2023
Cobbler subject to Command Injection
A Command Injection in action_power.py in Cobbler prior to v2.6.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) username or (2) password fields to the power ...
Continue Reading
July 01, 2023