Collected every two hours from specialised publications — each link leads to the original article.
xorg-x11-server: buffer overflow in _GetCountedString() in xkb/xkb.c (CVE-2022-3550) * xorg-x11-server: memory leak in ProcXkbGetKbdByName() in xkb/xkb.c (CVE-…
Ethical hacking is analyzing a system without permission to try and discover vulnerabilities that hackers can use. On the other hand, penetration testing attem…
Data leaks are extremely prominent in the cyber world due to lack of proper or adequate security implementation. Securing databases is an essential practice to…
Multiple vulnerabilities have been discovered in the Xen hypervisor, which could result in privilege escalation, denial of service or information leaks. For th…
This update upgrades Firefox to version 102.4.0 ESR. * Mozilla: Same-origin policy violation could have leaked cross-origin URLs (CVE-2022-42927) * Mozilla: Me…
Multiple security issues were discovered in MediaWiki, a website engine for collaborative work, which could result in restriction bypass, information leaks, cr…
This update upgrades Thunderbird to version 102.3.0. * Mozilla: Leaking of sensitive information when composing a response to an HTML email with a META refresh…
It was found that authenticated users could trigger a fault in Nova, a cloud computing fabric controller, to cause information leak. In addition, this update i…
Multiple security vulnerabilities have been discovered in cURL, an URL transfer library. These flaws may allow remote attackers to obtain sensitive information…
Bottle could be made to leak sensitive information if it received a specially crafted request.
Security fix for CVE-2022-31116 and CVE-2022-31117. ## 5.4.0 **Added** - Add support for arbitrary size integers **Fixed** - CVE-2022-31116: Replace `wchar_t` …
New version 2.8.5 is released. This new version address the security issue CVE-2022-31033 related to header information leak.
This update upgrades Thunderbird to version 91.10.0. * Mozilla: Braille space character caused incorrect sender email to be shown for a digitally signed email …
Jeffrey Bencteux reported two vulnerabilities in cifs-utils, the Common Internet File System utilities, which can result in escalation of privileges (CVE-2022-…
This update upgrades Firefox to version 91.10.0 ESR. * Mozilla: Cross-Origin resource's length leaked (CVE-2022-31736) * Mozilla: Heap buffer overflow in WebGL…
### 5.3.0 **Added** - Test Python 3.11 beta **Changed** - Benchmark refactor - argparse CLI **Fixed** - Fix segmentation faults when errors occur while handlin…
A new ransomware named ''Cheers' has appeared in the cybercrime space and has started its operations by targeting vulnerable VMware ESXi servers.
A new ransomware named ''Cheers' has appeared in the cybercrime space and has started its operations by targeting vulnerable VMware ESXi servers.
- fix too eager reuse of TLS and SSH connections (CVE-2022-27782) ---- - fix credential leak on redirect (CVE-2022-27774) - fix auth/cookie leak on redirect (C…
Security researcher Jason Donenfeld who is known for leading the development of the WireGuard open-source software has outlined a new security vulnerability af…
- fix too eager reuse of TLS and SSH connections (CVE-2022-27782) ---- - fix credential leak on redirect (CVE-2022-27774) - fix auth/cookie leak on redirect (C…
This update upgrades Thunderbird to version 91.9.0. * Mozilla: Bypassing permission prompt in nested browsing contexts (CVE-2022-29909) * Mozilla: iframe Sandb…
This update upgrades Firefox to version 91.9.0 ESR. * Mozilla: Bypassing permission prompt in nested browsing contexts (CVE-2022-29909) * Mozilla: iframe Sandb…
Multiple vulnerabilities have been discovered in the Xen hypervisor, which could result in privilege escalation, denial of service or information leaks. For th…