[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249982

 
 

909

 
 

195748

 
 

282

 
 
Paid content will be excluded from the download.

Filter
Matches : 195010 Download | Alert*

Tavis Ormandy discovered that the BN_mod_sqrt function of OpenSSL could be tricked into an infinite loop. This could result in denial of service via malformed certificates. Additional details can be found in the upstream advisory: https://www.openssl.org/news/secadv/20220315.txt In addition this update corrects a carry propagation bug specific to MIPS architectures.

Danilo Ramos discovered that incorrect memory handling in zlib"s deflate handling could result in denial of service or potentially the execution of arbitrary code if specially crafted input is processed.

The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2022-26700 ryuzaki discovered that processing maliciously crafted web content may lead to code execution. CVE-2022-26709 Chijin Zhou discovered that processing maliciously crafted web content may lead to arbitrary code execution. CVE-2022-26716 SorryMybad discovered that Processing maliciously crafted web content m ...

The following vulnerabilities have been discovered in the WPE WebKit web engine: CVE-2022-26700 ryuzaki discovered that processing maliciously crafted web content may lead to code execution. CVE-2022-26709 Chijin Zhou discovered that processing maliciously crafted web content may lead to arbitrary code execution. CVE-2022-26716 SorryMybad discovered that Processing maliciously crafted web content ...

The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2022-22677 An anonymous researcher discovered that the video in a webRTC call may be interrupted if the audio capture gets interrupted. CVE-2022-26710 Chijin Zhou discovered that processing maliciously crafted web content may lead to arbitrary code execution.

The following vulnerabilities have been discovered in the WPE WebKit web engine: CVE-2022-22677 An anonymous researcher discovered that the video in a webRTC call may be interrupted if the audio capture gets interrupted. CVE-2022-26710 Chijin Zhou discovered that processing maliciously crafted web content may lead to arbitrary code execution.

Sandipan Roy discovered two vulnerabilities in InfoZIP"s unzip program, a de-archiver for .zip files, which could result in denial of service or potentially the execution of arbitrary code.

[2.9.7-9.0.1] - Update doc/redhat.gif in tarball - Add libxml2-oracle-enterprise.patch and update logos in tarball [2.9.7-9] - Fix CVE-2020-24977

[1.0.2k-24.0.3] - fix CVE-2022-0778 - possible infinite loop in BN_mod_sqrt

[1:1.1.1k-5.0.1] - fix CVE-2022-0778 - possible infinite loop in BN_mod_sqrt [Orabug: 33974871]


Pages:      Start    7787    7788    7789    7790    7791    7792    7793    7794    7795    7796    7797    7798    7799    7800    ..   19500

© SecPod Technologies