gmane.comp.security.bugtraq

61744 articles on record, showing the most recent 50.

[ES2023-01] Asterisk susceptible to Denial of Service via DTLS Hello packets during call initiation
Fri, 15 Dec 2023 13:27:06 +0100
"Sandro Gauci" <[email protected]> • #62221
Asterisk Release 20.3.1
Fri, 07 Jul 2023 20:10:00 +0000
Asterisk Development Team <[email protected]> • #62220
Asterisk Release certified-18.9-cert5
Fri, 07 Jul 2023 19:39:14 +0000
Asterisk Development Team <[email protected]> • #62219
Asterisk Release 19.8.1
Fri, 07 Jul 2023 19:08:25 +0000
Asterisk Development Team <[email protected]> • #62218
Asterisk Release 18.18.1
Fri, 07 Jul 2023 19:07:40 +0000
Asterisk Development Team <[email protected]> • #62217
Asterisk Release 16.30.1
Fri, 07 Jul 2023 19:01:15 +0000
Asterisk Development Team <[email protected]> • #62216
S2-064: CVE-2023-34396: Apache Struts: DoS via OOM owing to no sanity limit on normal form fields in multipart forms
Wed, 14 Jun 2023 07:35:56 +0000
Yasser Zamani <[email protected]> • #62215
S2-063: CVE-2023-34149: Apache Struts: DoS via OOM owing to not properly checking of list bounds
Wed, 14 Jun 2023 07:34:50 +0000
Yasser Zamani <[email protected]> • #62214
Defense in depth -- the Microsoft way (part 84): (no) fun with %COMSPEC%
Wed, 22 Mar 2023 19:50:40 +0100
"Stefan Kanthak" <[email protected]> • #62213
Re: Defense in depth -- the Microsoft way (part 83): instead to fix even their most stupid mistaskes, they spill barrels of snakeoil to cover them (or just leave them as-is)
Fri, 17 Mar 2023 08:18:03 +0100 (GMT+01:00)
Arik Seils <[email protected]> • #62212
Defense in depth -- the Microsoft way (part 83): instead to fix even their most stupid mistaskes, they spill barrels of snakeoil to cover them (or just leave them as-is)
Wed, 15 Mar 2023 13:39:22 +0100
"Stefan Kanthak" <[email protected]> • #62211
Defense in depth -- the Microsoft way (part 82): INVALID/BOGUS AppLocker rules disable SAFER on Windows 11 22H2
Wed, 22 Feb 2023 18:26:24 +0100
"Stefan Kanthak" <[email protected]> • #62210
Defense in depth -- the Microsoft way (part 81): enabling UTF-8 support breaks existing code
Fri, 10 Feb 2023 14:22:42 +0100
"Stefan Kanthak" <[email protected]> • #62209
WebKitGTK and WPE WebKit Security Advisory WSA-2022-0011
Mon, 26 Dec 2022 18:15:30 +0100
Carlos Alberto Lopez Perez <[email protected]> • #62208
WebKitGTK and WPE WebKit Security Advisory WSA-2022-0010
Fri, 4 Nov 2022 14:58:14 +0100
Carlos Alberto Lopez Perez <[email protected]> • #62207
Re: WebKitGTK and WPE WebKit Security Advisory WSA-2022-0009
Tue, 20 Sep 2022 14:19:08 +0200
Carlos Alberto Lopez Perez <[email protected]> • #62206
WebKitGTK and WPE WebKit Security Advisory WSA-2022-0009
Mon, 19 Sep 2022 14:44:45 +0200
Carlos Alberto Lopez Perez <[email protected]> • #62205
WebKitGTK and WPE WebKit Security Advisory WSA-2022-0008
Thu, 25 Aug 2022 23:34:04 +0200
Carlos Alberto Lopez Perez <[email protected]> • #62204
WebKitGTK and WPE WebKit Security Advisory WSA-2022-0007
Thu, 28 Jul 2022 22:32:00 +0200
Carlos Alberto Lopez Perez <[email protected]> • #62203
WebKitGTK and WPE WebKit Security Advisory WSA-2022-0006
Tue, 5 Jul 2022 13:16:55 +0200
Carlos Alberto Lopez Perez <[email protected]> • #62202
XML External Entity (XXE) vulnerability in the WSO2 Management Console
Mon, 6 Jun 2022 17:37:11 +0300
Hakan Bayır ( Biznet Bilişim ) <hakan.bayir-bwKeqTGMmZm/[email protected]> • #62201
WebKitGTK and WPE WebKit Security Advisory WSA-2022-0005
Mon, 30 May 2022 15:06:36 +0100
Carlos Alberto Lopez Perez <[email protected]> • #62200
Defense in depth -- the Microsoft way (part 80): 25 (in words: TWENTY-FIVE) year old TRIVIAL bug crashes CMD.exe
Tue, 10 May 2022 17:01:51 +0200
"Stefan Kanthak" <[email protected]> • #62199
[SECURITY][ANNOUNCE] Apache Subversion 1.14.2 released
Tue, 12 Apr 2022 06:54:47 -0400
"[email protected]" <[email protected]> • #62198
[SECURITY][ANNOUNCE] Apache Subversion 1.10.8 released
Tue, 12 Apr 2022 06:54:32 -0400
"[email protected]" <[email protected]> • #62197
WebKitGTK and WPE WebKit Security Advisory WSA-2022-0004
Fri, 8 Apr 2022 14:31:29 +0100
Carlos Alberto Lopez Perez <[email protected]> • #62196
WebKitGTK and WPE WebKit Security Advisory WSA-2022-0003
Thu, 17 Feb 2022 18:50:04 +0000
Carlos Alberto Lopez Perez <[email protected]> • #62195
WebKitGTK and WPE WebKit Security Advisory WSA-2022-0002
Wed, 9 Feb 2022 13:23:18 +0000
Carlos Alberto Lopez Perez <[email protected]> • #62194
Re: WebKitGTK and WPE WebKit Security Advisory WSA-2022-0001
Mon, 31 Jan 2022 18:49:31 +0000
Carlos Alberto Lopez Perez <[email protected]> • #62193
WebKitGTK and WPE WebKit Security Advisory WSA-2022-0001
Fri, 21 Jan 2022 16:53:45 +0000
Carlos Alberto Lopez Perez <[email protected]> • #62192
WebKitGTK and WPE WebKit Security Advisory WSA-2021-0007
Mon, 20 Dec 2021 14:16:15 +0000
Carlos Alberto Lopez Perez <[email protected]> • #62191
WebKitGTK and WPE WebKit Security Advisory WSA-2021-0006
Tue, 26 Oct 2021 20:05:36 +0100
Carlos Alberto Lopez Perez <[email protected]> • #62190
[ES2021-07] FreeSWITCH does not authenticate SIP MESSAGE requests, leading to spam and message spoofing
Mon, 25 Oct 2021 16:24:18 +0200
"Sandro Gauci" <[email protected]> • #62189
[ES2021-09] FreeSWITCH susceptible to Denial of Service via invalid SRTP packets
Mon, 25 Oct 2021 16:24:15 +0200
"Sandro Gauci" <[email protected]> • #62188
[ES2021-06] FreeSWITCH susceptible to Denial of Service via SIP flooding
Mon, 25 Oct 2021 16:24:13 +0200
"Sandro Gauci" <[email protected]> • #62187
[ES2021-08] FreeSWITCH does not authenticate SIP SUBSCRIBE requests by default
Mon, 25 Oct 2021 16:24:09 +0200
"Sandro Gauci" <[email protected]> • #62186
[ES2021-05] FreeSWITCH vulnerable to SIP digest leak for configured gateways
Mon, 25 Oct 2021 16:24:03 +0200
"Sandro Gauci" <[email protected]> • #62185
Defense in depth -- the Microsoft way (part 79): Local Privilege Escalation via Windows 11 Installation Assistant
Thu, 14 Oct 2021 20:47:54 +0200
"Stefan Kanthak" <[email protected]> • #62184
Defense in depth -- the Microsoft way (part 78): completely outdated, vulnerable open source component(s) shipped with Windows 10&11
Wed, 13 Oct 2021 01:18:46 +0200
"Stefan Kanthak" <[email protected]> • #62183
WebKitGTK and WPE WebKit Security Advisory WSA-2021-0005
Mon, 20 Sep 2021 12:49:39 +0100
Carlos Alberto Lopez Perez <[email protected]> • #62182
WebKitGTK and WPE WebKit Security Advisory WSA-2021-0004
Fri, 23 Jul 2021 16:17:54 +0100
Carlos Alberto Lopez Perez <[email protected]> • #62181
[KIS-2021-04] IPS Community Suite <= 4.5.4.2 (previewBlock) PHP Code Injection Vulnerability
Fri, 28 May 2021 19:15:34 +0200
[email protected] • #62180
Defense in depth -- the Microsoft way (part 77): access without access permission
Fri, 14 May 2021 19:03:59 +0200
"Stefan Kanthak" <[email protected]> • #62179
Defense in depth -- The Microsoft way (part 76): arbitrary code execution WITH elevation of privilege in user-writable directories below %SystemRoot%
Thu, 29 Apr 2021 17:50:42 +0200
"Stefan Kanthak" <[email protected]> • #62178
Defense in depth -- the Microsoft way (part 75): Bypass of SAFER alias Software Restriction Policies NOT FIXED
Thu, 29 Apr 2021 17:15:44 +0200
"Stefan Kanthak" <[email protected]> • #62177
Executable installers are vulnerable^WEVIL (case 61): arbitrary code execution WITH escalation of privilege via Intel WiFi drivers
Wed, 21 Apr 2021 20:18:56 +0200
"Stefan Kanthak" <[email protected]> • #62176
Defense in depth -- The Microsoft way (part 74): Windows Defender SmartScreen is rather DUMP, it allows denial of service
Fri, 2 Apr 2021 23:06:07 +0200
"Stefan Kanthak" <[email protected]> • #62175
WebKitGTK and WPE WebKit Security Advisory WSA-2021-0003
Mon, 29 Mar 2021 23:38:05 +0200
Carlos Alberto Lopez Perez <[email protected]> • #62174
CVE-2018-3635 revisited: executable installers are vulnerable^WEVIL (case 60): again arbitrary code execution WITH escalation of privilege via Intel Rapid Storage Technology User Interface and Driver
Tue, 23 Mar 2021 19:31:53 +0100
"Stefan Kanthak" <[email protected]> • #62173
WebKitGTK and WPE WebKit Security Advisory WSA-2021-0002
Mon, 22 Mar 2021 20:41:36 +0100
Carlos Alberto Lopez Perez <[email protected]> • #62172