DSA-5486 json-c – security update
An invalid memory access was discovered in json-c, a JSON library which could result in denial of service. Read More
DSA-5485 firefox-esr – security update
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code. Read More
CVE-2020-18912
An issue found in Earcms Ear App v.20181124 allows a remote attacker to execute arbitrary code via the uload/index-uplog.php. Read More
erofs-utils-1.6-3.fc39
FEDORA-2023-aadd651a30 Packages in this update: erofs-utils-1.6-3.fc39 Update description: Backports a fix for CVE-2023-33551 Backports a fix for CVE-2023-33552 Read More
erofs-utils-1.6-3.fc38
FEDORA-2023-f838326992 Packages in this update: erofs-utils-1.6-3.fc38 Update description: Backports a fix for CVE-2023-33551 Backports a fix for CVE-2023-33552 Read More
USN-6318-1: Linux kernel vulnerabilities
Daniel Moghimi discovered that some Intel(R) Processors did not properly clear microarchitectural state after speculative execution of various instructions. A local unprivileged user could use...
Multiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. Mozilla Firefox is a web browser...
USN-6317-1: Linux kernel vulnerabilities
Daniel Moghimi discovered that some Intel(R) Processors did not properly clear microarchitectural state after speculative execution of various instructions. A local unprivileged user could use...
USN-6316-1: Linux kernel (OEM) vulnerabilities
Daniel Moghimi discovered that some Intel(R) Processors did not properly clear microarchitectural state after speculative execution of various instructions. A local unprivileged user could use...
CVE-2021-3262
TripSpark VEO Transportation-2.2.x-XP_BB-20201123-184084 NovusEDU-2.2.x-XP_BB-20201123-184084 allows unsafe data inputs in POST body parameters from end users without sanitizing using server-side logic. It was possible to inject...