RHEL 5 / 7 : Red Hat JBoss Enterprise Application Platform 6.4 (RHSA-2020:3730)
The remote Redhat Enterprise Linux 5 / 7 host has a package installed that is affected by a vulnerability as referenced in the RHSA-2020:3730 advisory.
- jbossweb: Incomplete fix of CVE-2020-13935 f ...
Continue Reading
January 24, 2023
Security Bulletin: Vulnerability in WebSphere Application Server Liberty affect IBM Cloud Pak System (CVE-2022-37734)
## Summary
Vulnerability has been identified in WebSphere Application Server Liberty shipped with Cloud Pak System. Information about vulnerability has been published in security bulletin.
## Vulnerab ...
Continue Reading
January 24, 2023
RHEL 7 : Red Hat OpenShift Service Mesh 1.0.10 Jaeger and Kiali (RHSA-2020:0972)
The remote Redhat Enterprise Linux 7 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2020:0972 advisory.
- kiali: ignoring JWT claim fields (CVE-2 ...
Continue Reading
January 24, 2023
Exploit for Command Injection in Atlassian Bitbucket
# CVE-2022-36804: Pre-Auth RCE in Atlassian Bitbucket Server
A c...Read More ...
Continue Reading
January 23, 2023
Security Vulnerabilities fixed in Thunderbird 102.7 â Mozilla
An out of date library (libusrsctp) contained vulnerabilities that could potentially be exploited.
Due to the Thunderbird GTK wrapper code's use of text/plain for drag data and GTK treating all text/p ...
Continue Reading
January 23, 2023
SUSE SLED15 / SLES15 / openSUSE 15 Security Update : MozillaFirefox (SUSE-SU-2023:0113-1)
The remote SUSE Linux SLED15 / SLES15 / openSUSE 15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0113-1 advisory.
- An out of date libr ...
Continue Reading
January 22, 2023
SUSE SLES12 Security Update : MozillaFirefox (SUSE-SU-2023:0111-1)
The remote SUSE Linux SLES12 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0111-1 advisory.
- An out of date library (libusrsctp) contai ...
Continue Reading
January 22, 2023
Oracle Linux 8 : ruby:2.5 (ELSA-2023-12064)
The remote Oracle Linux 8 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2023-12064 advisory.
- There is a buffer over-read in Ruby before 2.6.10, 2.7.x b ...
Continue Reading
January 22, 2023
SUSE SLES15 Security Update : MozillaFirefox (SUSE-SU-2023:0112-1)
The remote SUSE Linux SLES15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0112-1 advisory.
- An out of date library (libusrsctp) contai ...
Continue Reading
January 22, 2023
Denial Of Service (DoS)
protobuf is vulnerable to Denial Of Service (DoS). The vulnerability is due to multiple instances of non-repeated embedded message inputs with repeated or unknown fields which cause the objects to be ...
Continue Reading
January 21, 2023