gmane.comp.security.bugtraq archive

399 archived articles, newest first (page 2 of 4). Latest articles →

Re: Defense in depth -- the Microsoft way (part 64): Windows Defender loads and exeutes arbitrary DLLs
Sat, 28 Mar 2020 00:48:54 +0100
"Stefan Kanthak" <[email protected]> • #62122
TP-LINK Cloud Cameras NCXXX Remote NULL Pointer Dereference
Sun, 29 Mar 2020 20:47:15 +0100
Pietro Oliva <[email protected]> • #62121
Re: Defense in depth -- the Microsoft way (part 64): Windows Defender loads and exeutes arbitrary DLLs
Fri, 27 Mar 2020 23:25:50 +0000
Paul Szabo <paul.szabo-E0wInbZyfUpWG/[email protected]> • #62120
Defense in depth -- the Microsoft way (part 65): unsafe, easy to rediect paths all over
Fri, 27 Mar 2020 18:23:49 +0100
"Stefan Kanthak" <[email protected]> • #62119
Defense in depth -- the Microsoft way (part 64): Windows Defender loads and exeutes arbitrary DLLs
Fri, 27 Mar 2020 05:27:56 +0100
"Stefan Kanthak" <[email protected]> • #62118
CVE-2019-4716: conf overwrite + auth bypass = rce as root / SYSTEM on IBM PA / TM1
Fri, 27 Mar 2020 14:51:29 +0700
Pedro Ribeiro <[email protected]> • #62117
Defense in depth -- the Microsoft way (part 63): program defaults, settings, policies ... and (un)trustworthy computing
Tue, 10 Mar 2020 21:40:56 +0100
"Stefan Kanthak" <[email protected]> • #62116
[REVIVE-SA-2020-002] Revive Adserver Vulnerabilities
Thu, 12 Mar 2020 14:33:27 +0100
Matteo Beccati via Fulldisclosure <[email protected]> • #62115
SEC Consult SA-20200312-0 :: Authenticated Command Injection in Phoenix Contact TC Router & TC Cloud Client
Thu, 12 Mar 2020 17:48:58 +0100
SEC Consult Vulnerability Lab <research-SOMWcJgVuhyHT8/[email protected]> • #62114
WebKitGTK and WPE WebKit Security Advisory WSA-2020-0003
Thu, 12 Mar 2020 18:52:34 +0100
Carlos Alberto Lopez Perez <[email protected]> • #62113
[TZO-20-2020] - Quickheal Malformed Archive bypass (ZIP GPFLAG) - CVE-2020-9362
Wed, 4 Mar 2020 13:36:57 +0100
Thierry Zoller <[email protected]> • #62112
QuickHeal Generic Malformed Archive Bypass (ZIP GPFLAG)
Mon, 2 Mar 2020 10:50:28 +0100
Thierry Zoller <[email protected]> • #62111
Re: Defense in depth -- the Microsoft way (part 62): Windows shipped with end-of-life components
Fri, 28 Feb 2020 18:25:48 +0100
"Stefan Kanthak" <[email protected]> • #62110
Re: Defense in depth -- the Microsoft way (part 62): Windows shipped with end-of-life components
Fri, 28 Feb 2020 08:00:45 -0800
"Dennis E. Hamilton" <[email protected]> • #62109
[TZO-23-2020] - AVAST Generic Archive Bypass (ZIP)
Tue, 25 Feb 2020 22:24:22 +0100
Thierry Zoller <[email protected]> • #62108
[TZO-19-2020] - AVIRA Generic AV Bypass (ISO Container) - CVE-2020-9320
Fri, 21 Feb 2020 09:31:09 +0100
Thierry Zoller <[email protected]> • #62107
SEC Consult SA-20200225-0 :: Multiple Cross-site Scripting (XSS) Vulnerabilities in PHP-Fusion CMS
Tue, 25 Feb 2020 17:13:06 +0100
SEC Consult Vulnerability Lab <research-SOMWcJgVuhyHT8/[email protected]> • #62106
Defense in depth -- the Microsoft way (part 62): Windows shipped with end-of-life components
Mon, 24 Feb 2020 18:05:58 +0100
"Stefan Kanthak" <[email protected]> • #62105
Local information disclosure in OpenSMTPD (CVE-2020-8793)
Mon, 24 Feb 2020 10:35:55 -0800
Qualys Security Advisory <[email protected]> • #62104
LPE and RCE in OpenSMTPD's default install (CVE-2020-8794)
Mon, 24 Feb 2020 10:48:39 -0800
Qualys Security Advisory <[email protected]> • #62103
[SECURITY] [DSA 4633-1] curl security update
Mon, 24 Feb 2020 19:45:52 +0000
Alessandro Ghedini <[email protected]> • #62102
Cisco Unified Contact Center Express Privilege Escalation Vulnerability (CVE-2019-1888)
Tue, 25 Feb 2020 08:00:18 +0000
Jamie R <[email protected]> • #62101
[TZO-22-2020] Qihoo360 | GDATA | Rising | Command Generic Malformed Archive Bypass
Mon, 24 Feb 2020 12:37:45 +0100
Thierry Zoller <[email protected]> • #62100
[TZO-16-2020] - F-SECURE Generic Malformed Container bypass (GZIP)
Mon, 24 Feb 2020 10:38:50 +0100
Thierry Zoller <[email protected]> • #62099
[slackware-security] proftpd (SSA:2020-051-01)
Thu, 20 Feb 2020 16:38:10 -0800 (PST)
Slackware Security Team <[email protected]> • #62098
[SECURITY] [DSA 4628-1] php7.0 security update
Tue, 18 Feb 2020 22:00:11 +0000
Moritz Muehlenhoff <[email protected]> • #62097
[SECURITY] [DSA 4629-1] python-django security update
Wed, 19 Feb 2020 08:16:46 +0000
Sebastien Delafond <[email protected]> • #62096
[TZO-18-2020] - Bitdefender Malformed Archive bypass (GZIP)
Tue, 18 Feb 2020 12:12:54 +0100
Thierry Zoller <[email protected]> • #62095
[TZO-17-2020] - Kaspersky Generic Archive Bypass (ZIP FLNMLEN)
Mon, 17 Feb 2020 11:11:38 +0100
Thierry Zoller <[email protected]> • #62094
[SECURITY] [DSA 4626-1] php7.3 security update
Mon, 17 Feb 2020 20:39:09 +0000
Moritz Muehlenhoff <[email protected]> • #62093
[SECURITY] [DSA 4627-1] webkit2gtk security update
Mon, 17 Feb 2020 20:39:59 +0000
Moritz Muehlenhoff <[email protected]> • #62092
[SECURITY] [DSA 4621-1] openjdk-8 security update
Wed, 12 Feb 2020 22:14:32 +0000
Moritz Muehlenhoff <[email protected]> • #62091
Web Application Firewall bypass via Bluecoat device
Sun, 16 Feb 2020 20:39:12 +0100 (CET)
RedTimmy Security <[email protected]> • #62090
[SECURITY] [DSA 4620-1] firefox-esr security update
Wed, 12 Feb 2020 22:09:56 +0000
Moritz Muehlenhoff <[email protected]> • #62089
[slackware-security] libarchive (SSA:2020-043-01)
Wed, 12 Feb 2020 14:25:54 -0800 (PST)
Slackware Security Team <[email protected]> • #62088
CVE-2020-0728: Windows Modules Installer Service Information Disclosure Vulnerability
Fri, 14 Feb 2020 23:05:43 +0100
Imre Rad <[email protected]> • #62087
[SECURITY] [DSA 4624-1] evince security update
Fri, 14 Feb 2020 23:00:34 +0000
Salvatore Bonaccorso <[email protected]> • #62086
[SECURITY] [DSA 4625-1] thunderbird security update
Sat, 15 Feb 2020 21:01:38 +0000
Moritz Muehlenhoff <[email protected]> • #62085
[TZO-15-2020] - F-SECURE Generic Malformed Container bypass (RAR)
Fri, 14 Feb 2020 15:59:39 +0100
Thierry Zoller <[email protected]> • #62084
WebKitGTK and WPE WebKit Security Advisory WSA-2020-0002
Fri, 14 Feb 2020 14:57:58 +0100
Carlos Alberto Lopez Perez <[email protected]> • #62083
[EnumJavaLibs]_ Remote Java classpath enumerator
Thu, 13 Feb 2020 21:22:58 +0100 (CET)
RedTimmy Security <[email protected]> • #62082
[SECURITY] [DSA 4623-1] postgresql-11 security update
Thu, 13 Feb 2020 21:37:19 +0000
Moritz Muehlenhoff <[email protected]> • #62081
[TZO-13-2020] - AVIRA Generic AV Bypass (ZIP GPFLAG)
Thu, 13 Feb 2020 13:46:28 +0100
Thierry Zoller <[email protected]> • #62080
[TZO-11-2020] - ESET Generic Malformed Archive Bypass (BZ2 Checksum)
Thu, 13 Feb 2020 13:44:51 +0100
Thierry Zoller <[email protected]> • #62079
[slackware-security] mozilla-firefox (SSA:2020-042-01)
Tue, 11 Feb 2020 21:58:16 -0800 (PST)
Slackware Security Team <[email protected]> • #62078
[SECURITY] [DSA 4622-1] postgresql-9.6 security update
Thu, 13 Feb 2020 21:36:36 +0000
Moritz Muehlenhoff <[email protected]> • #62077
[slackware-security] mozilla-thunderbird (SSA:2020-042-02)
Tue, 11 Feb 2020 21:58:37 -0800 (PST)
Slackware Security Team <[email protected]> • #62076
[SECURITY] [DSA 4618-1] libexif security update
Thu, 06 Feb 2020 21:20:38 +0000
Salvatore Bonaccorso <[email protected]> • #62075
[SECURITY] [DSA 4619-1] libxmlrpc3-java security update
Thu, 06 Feb 2020 21:30:44 +0000
Salvatore Bonaccorso <[email protected]> • #62074
xglance-bin exploit (CVE-2014-2630)
Fri, 7 Feb 2020 18:55:26 +0100 (CET)
[email protected] • #62073
[SECURITY] [DSA 4617-1] qtbase-opensource-src security update
Mon, 3 Feb 2020 21:21:36 +0000
Moritz Muehlenhoff <[email protected]> • #62072
[slackware-security] sudo (SSA:2020-031-01)
Fri, 31 Jan 2020 13:15:53 -0800 (PST)
Slackware Security Team <[email protected]> • #62071
[SECURITY] [DSA 4612-1] prosody-modules security update
Fri, 31 Jan 2020 21:55:17 +0000
Moritz Muehlenhoff <[email protected]> • #62070
[SECURITY] [DSA 4613-1] libidn2 security update
Sat, 01 Feb 2020 06:00:29 +0000
Salvatore Bonaccorso <[email protected]> • #62069
[SECURITY] [DSA 4614-1] sudo security update
Sat, 01 Feb 2020 12:45:56 +0000
Salvatore Bonaccorso <[email protected]> • #62068
[SECURITY] [DSA 4615-1] spamassassin security update
Sat, 01 Feb 2020 19:42:11 +0000
Salvatore Bonaccorso <[email protected]> • #62067
[SECURITY] [DSA 4616-1] qemu security update
Sun, 2 Feb 2020 20:47:01 +0000
Moritz Muehlenhoff <[email protected]> • #62066
Executable installers are vulnerable^WEVIL (case 58): IntelĀ® Processor Identification Utility - Windows* Versi on - arbitrary code execution with escalation of privilege
Fri, 31 Jan 2020 00:19:53 +0100
"Stefan Kanthak" <[email protected]> • #62065
[CVE-2019-20358] CVE-2019-9491 in Trend Micro Anti-Threat Toolkit (ATTK) was NOT properly FIXED
Thu, 30 Jan 2020 10:29:46 +0100
"Stefan Kanthak" <[email protected]> • #62064
[SECURITY] [DSA 4610-1] webkit2gtk security update
Wed, 29 Jan 2020 15:47:37 +0000
Moritz Muehlenhoff <[email protected]> • #62063
APPLE-SA-2020-1-29-1 iCloud for Windows 7.17
Wed, 29 Jan 2020 13:31:16 -0800
Apple Product Security <[email protected]> • #62062
APPLE-SA-2020-1-29-2 iCloud for Windows 10.9.2
Wed, 29 Jan 2020 13:31:31 -0800
Apple Product Security <[email protected]> • #62061
[SECURITY] [DSA 4611-1] opensmtpd security update
Wed, 29 Jan 2020 22:00:16 +0000
Moritz Muehlenhoff <[email protected]> • #62060
FreeBSD Security Advisory FreeBSD-SA-20:03.thrmisc
Tue, 28 Jan 2020 20:38:59 +0000 (UTC)
FreeBSD Security Advisories <[email protected]> • #62059
APPLE-SA-2020-1-28-1 iOS 13.3.1 and iPadOS 13.3.1
Tue, 28 Jan 2020 14:36:13 -0800
Apple Product Security <[email protected]> • #62058
APPLE-SA-2020-1-28-2 macOS Catalina 10.15.3, Security Update 2020-001 Mojave, Security Update 2020-001 High Sierra
Tue, 28 Jan 2020 14:36:24 -0800
Apple Product Security <[email protected]> • #62057
FreeBSD Security Advisory FreeBSD-SA-20:01.libfetch
Tue, 28 Jan 2020 20:38:47 +0000 (UTC)
FreeBSD Security Advisories <[email protected]> • #62056
FreeBSD Security Advisory FreeBSD-SA-20:02.ipsec
Tue, 28 Jan 2020 20:38:51 +0000 (UTC)
FreeBSD Security Advisories <[email protected]> • #62055
APPLE-SA-2020-1-28-3 watchOS 6.1.2
Tue, 28 Jan 2020 14:36:35 -0800
Apple Product Security <[email protected]> • #62054
APPLE-SA-2020-1-28-4 tvOS 13.3.1
Tue, 28 Jan 2020 14:36:42 -0800
Apple Product Security <[email protected]> • #62053
APPLE-SA-2020-1-28-5 Safari 13.0.5
Tue, 28 Jan 2020 14:36:51 -0800
Apple Product Security <[email protected]> • #62052
APPLE-SA-2020-1-28-6 iTunes for Windows 12.10.4
Tue, 28 Jan 2020 14:37:01 -0800
Apple Product Security <[email protected]> • #62051
Defense in depth -- the Microsoft way (part 61): security features are built to fail (or documented wrong)
Wed, 29 Jan 2020 00:45:19 +0100
"Stefan Kanthak" <[email protected]> • #62050
LPE and RCE in OpenSMTPD (CVE-2020-7247)
Wed, 29 Jan 2020 00:13:14 +0000
Qualys Security Advisory <[email protected]> • #62049
CVE - CVE-2020-7799 - FusionAuth command execution via Apache Freemarker Template
Mon, 27 Jan 2020 15:48:29 +0000
Gianluca Baldi <[email protected]> • #62048
[slackware-security] mozilla-thunderbird (SSA:2020-024-01)
Fri, 24 Jan 2020 15:25:03 -0800 (PST)
Slackware Security Team <[email protected]> • #62047
[SECURITY] [DSA 4609-1] python-apt security update
Thu, 23 Jan 2020 22:03:59 +0000
Moritz Muehlenhoff <[email protected]> • #62046
WebKitGTK and WPE WebKit Security Advisory WSA-2020-0001
Thu, 23 Jan 2020 18:27:10 +0100
Carlos Alberto Lopez Perez <[email protected]> • #62045
SEC Consult SA-20200123-0 :: Cross-Site Request Forgery (CSRF) in Umbraco CMS
Thu, 23 Jan 2020 15:33:42 +0100
SEC Consult Vulnerability Lab <research-SOMWcJgVuhyHT8/[email protected]> • #62044
SEC Consult SA-20200122-0 :: Reflected XSS in ZOHO ManageEngine ServiceDeskPlus
Wed, 22 Jan 2020 12:10:06 +0100
SEC Consult Vulnerability Lab <research-SOMWcJgVuhyHT8/[email protected]> • #62043
[SECURITY] [DSA 4608-1] tiff security update
Tue, 21 Jan 2020 21:45:57 +0000
Moritz Muehlenhoff <[email protected]> • #62042
[REVIVE-SA-2020-001] Revive Adserver Vulnerability
Tue, 21 Jan 2020 14:24:14 +0100
Matteo Beccati via Fulldisclosure <[email protected]> • #62041
[SECURITY] [DSA 4607-1] openconnect security update
Mon, 20 Jan 2020 20:50:40 +0000
Salvatore Bonaccorso <[email protected]> • #62040
Neowise CarbonFTP v1.4 Insecure Proprietary Password Encryption CVE-2020-6857
Tue, 21 Jan 2020 01:17:59 GMT
[email protected] • #62039
Trend Micro Security 2019 (Consumer) Multiple Products Security Bypass Protected Service Tampering CVE-2019-19697
Tue, 21 Jan 2020 01:18:30 GMT
[email protected] • #62038
Trend Micro Security (Consumer) Multiple Products Persistent Arbitrary Code Execution CVE-2019-20357
Tue, 21 Jan 2020 01:19:03 GMT
[email protected] • #62037
[SECURITY] [DSA 4606-1] chromium security update
Mon, 20 Jan 2020 06:59:13 -0500
Michael Gilbert <[email protected]> • #62036
[SECURITY] [DSA 4603-1] thunderbird security update
Fri, 17 Jan 2020 21:40:41 +0000
Moritz Muehlenhoff <[email protected]> • #62035
[SECURITY] [DSA 4604-1] cacti security update
Sun, 19 Jan 2020 21:49:03 +0000
Moritz Muehlenhoff <[email protected]> • #62034
[SECURITY] [DSA 4605-1] openjdk-11 security update
Sun, 19 Jan 2020 21:52:05 +0000
Moritz Muehlenhoff <[email protected]> • #62033
CVE-2020-2656 - Low impact information disclosure via Solaris xlock
Wed, 15 Jan 2020 13:47:16 +0000
Marco Ivaldi <[email protected]> • #62032
CVE-2020-2696 - Local privilege escalation via CDE dtsession
Wed, 15 Jan 2020 13:55:07 +0000
Marco Ivaldi <[email protected]> • #62031
[SECURITY] [DSA 4602-1] xen security update
Mon, 13 Jan 2020 22:27:39 +0000
Moritz Muehlenhoff <[email protected]> • #62030
[TZO-09-2020] - Bitdefender Malformed Archive bypass (RAR Uncompressed Size)
Tue, 14 Jan 2020 12:56:20 +0100
Thierry Zoller <[email protected]> • #62029
[TZO-10-2020] - Bitdefender Malformed Archive bypass (RAR Compression Information)
Tue, 14 Jan 2020 12:57:07 +0100
Thierry Zoller <[email protected]> • #62028
[slackware-security] mozilla-thunderbird (SSA:2020-010-01)
Fri, 10 Jan 2020 16:19:13 -0800 (PST)
Slackware Security Team <[email protected]> • #62027
[TZO-08-2020] Bitdefender Generic Malformed Archive Bypass (ZIP GPFLAG)
Sat, 11 Jan 2020 11:22:33 +0100
Thierry Zoller <[email protected]> • #62026
[TZO-06-2020] - Kaspersky Generic Archive Bypass (ZIP FLNMLEN)
Sat, 11 Jan 2020 11:23:07 +0100
Thierry Zoller <[email protected]> • #62025
[TZO-05-2020] Kaspersky Generic Malformed Archive Bypass (ZIP Compressed Size)
Fri, 10 Jan 2020 13:52:41 +0100
Thierry Zoller <[email protected]> • #62024
[TZO-07-2020] Bitdefender Generic Malformed Archive Bypass (RAR HOST_OS)
Fri, 10 Jan 2020 13:53:44 +0100
Thierry Zoller <[email protected]> • #62023
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.