A vulnerability, which was classified as critical, was found in Podman and Varlink 1.5.1. This affects an unknown part of the component API. The manipulation leads to Privilege Escalation. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Category Archives: Advisories
CVE-2019-25068
A vulnerability classified as critical was found in Axios Italia Axios RE 1.7.0/7.0.0. This vulnerability affects unknown code of the file REDefault.aspx of the component Connection Handler. The manipulation of the argument DBIDX leads to privilege escalation. The attack can be initiated remotely.
CVE-2019-25069
A vulnerability, which was classified as problematic, has been found in Axios Italia Axios RE 1.7.0/7.0.0. This issue affects some unknown processing of the component Error Message Handler. The manipulation leads to information disclosure (ASP.NET). The attack may be initiated remotely.
python-bottle-0.12.21-1.fc35
FEDORA-2022-a656f209f0
Packages in this update:
python-bottle-0.12.21-1.fc35
Update description:
Security fix for CVE-2022-31799
python-bottle-0.12.21-1.fc36
FEDORA-2022-81276006d3
Packages in this update:
python-bottle-0.12.21-1.fc36
Update description:
Security fix for CVE-2022-3179
liblouis-3.22.0-1.fc36
FEDORA-2022-81110193e5
Packages in this update:
liblouis-3.22.0-1.fc36
Update description:
Fixes CVE-2022-26981, CVE-2022-31783, and further issues.
A detailed list of changes can be found at http://liblouis.org/liblouis/2022/06/07/liblouis-release-3.22.0.html
python-bottle-0.12.21-1.el8
FEDORA-EPEL-2022-2fe63c65d3
Packages in this update:
python-bottle-0.12.21-1.el8
Update description:
Security fix for CVE-2022-31799
python-bottle-0.12.21-1.el9
FEDORA-EPEL-2022-4f458ed801
Packages in this update:
python-bottle-0.12.21-1.el9
Update description:
Security fix for CVE-2022-31799
DSA-5159 python-bottle – security update
Elton Nokaj discovered that incorrect error handling in Bottle, a WSGI
framework for Python, could result in the disclosure of sensitive
information.
rubygem-jmespath-1.3.1-1.el7
FEDORA-EPEL-2022-aaaeae50ce
Packages in this update:
rubygem-jmespath-1.3.1-1.el7
Update description:
Security fix for for CVE-2022-32511 and update to 1.3.1