DSA-5472 cjose – security update

Read Time:11 Second

It was discovered that an incorrect implementation of AES GCM decryption
in cjose, a C library implementing the JOSE standard, may allow an attacker
to provide a truncated Authentication Tag and modify the JWE object.

Read More

Multiple Vulnerabilities in Google Android OS Could Allow for Remote Code Execution

Read Time:25 Second

Multiple vulnerabilities have been discovered in Google Android OS, the most severe of which could allow for remote code execution. Android is an operating system developed by Google for mobile devices, including, but not limited to, smartphones, tablets, and watches. Successful exploitation of the most severe of these vulnerabilities could allow for remote code execution. Depending on the privileges associated with the exploited component, an attacker could then install programs; view, change, or delete data; or create new accounts with full rights.

Read More