DSA-5236 expat – security update
Rhodri James discovered a heap use-after-free vulnerability in the doContent function in Expat, an XML parsing C library, which could result in denial of service...
DSA-5235 bind9 – security update
Several vulnerabilities were discovered in BIND, a DNS server implementation. Read More
CVE-2021-43310
A vulnerability in Keylime before 6.3.0 allows an attacker to craft a request to the agent that resets the U and V keys as if...
CVE-2019-5641
Rapid7 InsightVM suffers from an information exposure issue whereby, when the user's session has ended due to inactivity, an attacker can use the Inspect Element...
thunderbird-102.3.0-1.fc37
FEDORA-2022-b4583f536b Packages in this update: thunderbird-102.3.0-1.fc37 Update description: Update to 102.3.0 ; https://www.mozilla.org/en-US/security/advisories/mfsa2022-42/ ; https://www.thunderbird.net/en-US/thunderbird/102.3.0/releasenotes/ Read More
thunderbird-102.3.0-1.fc35
FEDORA-2022-e88213dd24 Packages in this update: thunderbird-102.3.0-1.fc35 Update description: Update to 102.3.0 ; https://www.mozilla.org/en-US/security/advisories/mfsa2022-42/ ; https://www.thunderbird.net/en-US/thunderbird/102.3.0/releasenotes/ Read More
thunderbird-102.3.0-1.fc36
FEDORA-2022-feb7bdf6b2 Packages in this update: thunderbird-102.3.0-1.fc36 Update description: Update to 102.3.0 ; https://www.mozilla.org/en-US/security/advisories/mfsa2022-42/ ; https://www.thunderbird.net/en-US/thunderbird/102.3.0/releasenotes/ Read More
qemu-6.2.0-15.fc36
FEDORA-2022-f0a2695054 Packages in this update: qemu-6.2.0-15.fc36 Update description: nvme: Fix DMA reentrancy use-after-free (CVE-2021-3929) Read More
CVE-2022-0495 (koha_library_automation)
The library automation system product KOHA developed by Parantez Teknoloji before version 19.05.03 has an unauthenticated SQL Injection vulnerability. This has been fixed in the...
ZDI-22-1295: Apple macOS TIFF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Apple macOS. Interaction with the CoreGraphics framework is required to exploit this...