Mailing List:
oss-security@lists.openwall.com
Add newDisplay options
0
replies
[SECURITY ADVISORY] curl - SASL password overflow via integer overflow
started 2018-10-31 11:55:37 UTC
2018-10-31 11:55:37 UTC
Daniel Stenberg
3
replies
Linux kernel: CVE-2017-18344: arbitrary-read vulnerability in the timer subsystem
started 2018-08-02 23:57:07 UTC
2018-10-30 20:24:54 UTC
Andrey Konovalov
0
replies
[CVE-2018-16468] Loofah XSS Vulnerability
started 2018-10-30 18:14:52 UTC
2018-10-30 18:14:52 UTC
Mike Dalessio
0
replies
Linux kernel: TLB flush happens too late on mremap (CVE-2018-18281; fixed in 4.9.135, 4.14.78, 4.18.16, 4.19)
started 2018-10-29 20:11:34 UTC
2018-10-29 20:11:34 UTC
Jann Horn
0
replies
Script sandbox bypass in multiple Jenkins plugins
started 2018-10-29 18:42:29 UTC
2018-10-29 18:42:29 UTC
Daniel Beck
0
replies
X.Org security advisory: October 25, 2018
started 2018-10-25 19:25:39 UTC
2018-10-25 19:25:39 UTC
Matthieu Herrb
0
replies
Xen Security Advisory 278 v1 - x86: Nested VT-x usable even when disabled
started 2018-10-25 02:13:02 UTC
2018-10-25 02:13:02 UTC
Xen.org security team
0
replies
Fwd: CVE-2018-11785 and CVE-2018-11792, was "[ANNOUNCE] Apache Impala 3.0.1 release"
started 2018-10-25 00:11:35 UTC
2018-10-25 00:11:35 UTC
Jim Apple
0
replies
CVE-2018-11804: Apache Spark build/mvn runs zinc, and can expose information from build machines
started 2018-10-24 21:30:21 UTC
2018-10-24 21:30:21 UTC
Sean Owen
9
replies
GCC Compiler Induced Vulnerability - affects programs compiled with GCC 7 and 8 containing nested functions
started 2018-10-23 00:24:20 UTC
2018-10-24 19:30:36 UTC
Jordan Glover
1
reply
Buffer overflow in cabextract/libmspack (Fwd: New cabextract 1.8 and libmspack 0.8 release)
started 2018-10-22 11:17:35 UTC
2018-10-23 23:09:45 UTC
Salvatore Bonaccorso
5
replies
Using quilt on untrusted RPM spec files
started 2018-09-27 20:59:34 UTC
2018-10-23 15:33:28 UTC
Stuart D. Gathman
0
replies
GLib (2.20.0+): GVariant, GDBus and GMarkup out of bounds reads, DoS and unbounded recursion
started 2018-10-23 15:30:13 UTC
2018-10-23 15:30:13 UTC
Philip Withnall
2
replies
Attempting to patch ghostscript-9.25
started 2018-10-20 06:47:01 UTC
2018-10-21 06:04:50 UTC
Ken Moffat
10
replies
ghostscript: 1Policy operator gives access to .forceput CVE-2018-18284
started 2018-10-16 23:06:14 UTC
2018-10-18 22:16:03 UTC
Jordan Glover
0
replies
Linux kernel: BPF verifier bug leads to out-of-bounds access (CVE-2018-18445; 4.14.9-4.14.74; 4.15-4.18.12)
started 2018-10-17 23:36:24 UTC
2018-10-17 23:36:24 UTC
Jann Horn
21
replies
ghostscript: bypassing executeonly to escape -dSAFER sandbox (CVE-2018-17961)
started 2018-10-09 18:58:39 UTC
2018-10-17 19:48:37 UTC
Rich Felker
1
reply
CVE-2018-10933: libssh: authentication bypass in server code
started 2018-10-16 17:21:43 UTC
2018-10-17 17:48:24 UTC
Minh Tuan Luong
0
replies
CVE-2018-12617 Qemu: qemu-guest-agent: Integer overflow in qmp_guest_file_read may lead to crash
started 2018-10-17 16:54:01 UTC
2018-10-17 16:54:01 UTC
P J P
0
replies
CVE-2018-18438 Qemu: Integer overflow in ccid_card_vscard_read() allows memory corruption
started 2018-10-17 12:29:01 UTC
2018-10-17 12:29:01 UTC
P J P
1
reply
jQuery-File-Upload <= v9.22.0 unauthenticated arbitrary file upload vulnerability
started 2018-10-11 21:06:21 UTC
2018-10-14 07:11:41 UTC
Larry W. Cashdollar
1
reply
Linux kernel: "Meltdown leaks with Global kernel mapping"
started 2018-10-09 16:41:26 UTC
2018-10-12 01:30:33 UTC
Dave Hansen
0
replies
ghostscript: saved execution stacks can leak operator arrays (CVE-2018-18073)
started 2018-10-10 23:01:47 UTC
2018-10-10 23:01:47 UTC
Tavis Ormandy
0
replies
Multiple vulnerabilities in Jenkins
started 2018-10-10 20:11:42 UTC
2018-10-10 20:11:42 UTC
Daniel Beck
3
replies
net-snmp 5.7.3 unauthenticated remote Denial of Service (exploit available)
started 2018-10-08 23:46:29 UTC
2018-10-10 11:38:50 UTC
Magnus Klaaborg Stubman
0
replies
[CVE-2018-11796] Apache Tika Denial of Service via XML Entity Expansion Vulnerability
started 2018-10-10 01:05:18 UTC
2018-10-10 01:05:18 UTC
Tim Allison
0
replies
CVE-2018-17407: Tex-Live buffer overflow in handling of Type 1 fonts
started 2018-10-08 21:54:34 UTC
2018-10-08 21:54:34 UTC
Nick Roessler
3
replies
CVE-2018-17977: CentOS ipsec remote denial of service vulnerability
started 2018-10-05 20:46:07 UTC
2018-10-08 12:14:20 UTC
luo
0
replies
Qemu: integer overflow issues
started 2018-10-08 10:05:19 UTC
2018-10-08 10:05:19 UTC
P J P
5
replies
arm64 Linux kernel: Privilege escalation by taking control of the KVM hypervisor
started 2018-10-02 21:07:14 UTC
2018-10-07 11:04:51 UTC
Salvatore Bonaccorso
Click to Load More...
Loading...