A vulnerability has been discovered in Citrix Gateway and Citrix ADC which could allow for remote code execution. Citrix ADC and Gateway is an Application Delivery Controller and a gateway service to products respectively. Successful exploitation of this vulnerability could allow an unauthenticated remote attacker to perform arbitrary code execution. Depending on the permission associated with the application running the exploit, an attacker could then install programs; view, change, or delete data.
Daily Archives: December 14, 2022
xorg-x11-server-1.20.14-11.fc36
FEDORA-2022-8ac67f69b1
Packages in this update:
xorg-x11-server-1.20.14-11.fc36
Update description:
CVE fix for: CVE-2022-4283, CVE-2022-46340, CVE-2022-46341, CVE-2022-46342, CVE-2022-46343, CVE-2022-46344
xorg-x11-server-1.20.14-11.fc37
FEDORA-2022-c3a65f7c65
Packages in this update:
xorg-x11-server-1.20.14-11.fc37
Update description:
CVE fixes for: CVE-2022-4283, CVE-2022-46340, CVE-2022-46341, CVE-2022-46342, CVE-2022-46343, CVE-2022-46344
suricata-6.0.9-1.fc37
FEDORA-2022-51316e38ce
Packages in this update:
suricata-6.0.9-1.fc37
Update description:
LibHTP has been updated to 0.5.42 and is bundled with the release. Various security, performance, accuracy and stability issues have been fixed.
suricata-6.0.9-1.el9
FEDORA-EPEL-2022-d7b2e42215
Packages in this update:
suricata-6.0.9-1.el9
Update description:
LibHTP has been updated to 0.5.42 and is bundled with the release. Various security, performance, accuracy and stability issues have been fixed.
suricata-6.0.9-1.fc36
FEDORA-2022-b916a7f4a1
Packages in this update:
suricata-6.0.9-1.fc36
Update description:
LibHTP has been updated to 0.5.42 and is bundled with the release. Various security, performance, accuracy and stability issues have been fixed.
CVE-2020-9420
The login password of the web administrative dashboard in Arcadyan Wifi routers VRV9506JAC23 is sent in cleartext, allowing an attacker to sniff and intercept traffic to learn the administrative credentials to the router.
CVE-2020-9419
Multiple stored cross-site scripting (XSS) vulnerabilities in Arcadyan Wifi routers VRV9506JAC23 allow remote attackers to inject arbitrary web script or HTML via the hostName and domain_name parameters present in the LAN configuration section of the administrative dashboard.
DSA-5301 firefox-esr – security update
Multiple security issues have been found in the Mozilla Firefox web
browser, which could potentially result in the execution of arbitrary
code or information disclosure.