xen-4.16.2-2.fc37
FEDORA-2022-d80cc73088 Packages in this update: xen-4.16.2-2.fc37 Update description: Arm: unbounded memory consumption for 2nd-level page tables [XSA-409, CVE-2022-33747] P2M pool freeing may take excessively long...
USN-5683-1: Linux kernel (IBM) vulnerabilities
It was discovered that the framebuffer driver on the Linux kernel did not verify size limits when changing font or screen size, leading to an...
libreoffice-7.2.7.2-2.fc35
FEDORA-2022-775c747e4a Packages in this update: libreoffice-7.2.7.2-2.fc35 Update description: LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS SharePoint server. An additional...
USN-5682-1: Linux kernel (AWS) vulnerabilities
It was discovered that the BPF verifier in the Linux kernel did not properly handle internal data structures. A local attacker could use this to...
pypy3.9-7.3.9-4.3.9.fc35
FEDORA-2022-61d8e8d880 Packages in this update: pypy3.9-7.3.9-4.3.9.fc35 Update description: Backport fix for CVE-2021-28861 Read More
python3.9-3.9.15-1.fc36
FEDORA-2022-6c46abfb5a Packages in this update: python3.9-3.9.15-1.fc36 Update description: The release you're looking at is Python 3.9.15, a security bugfix release for the legacy 3.9 series....
USN-5680-1: gThumb vulnerabilities
It was discovered that gThumb did not properly managed memory when processing certain image files. If a user were tricked into opening a specially crafted...
Guloader Spam Indiscriminately Sent to State Elections Board
Recently, the United States Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) issued a joint public service announcement - Foreign...
RCE Vulnerability in Zimbra Collaboration Suite (CVE-2022-41352) Being Exploited in the Wild
FortiGuard Labs is aware of reports that a vulnerability affecting Zimbra Collaboration Suite (CVE-2022-41352) is a newly reported zero-day and is being exploited in the...
ZDI-22-1430: Adobe Acrobat Reader DC JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Adobe Acrobat Reader DC. User interaction is required to exploit this vulnerability...