CVE-2021-1942
Improper handling of permissions of a shared memory region can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon...
ZDI-22-546: Trend Micro Antivirus for Mac Link Following Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Trend Micro Antivirus for Mac. An attacker must first obtain the ability to...
APPLE-SA-2022-03-31-1 iOS 15.4.1 and iPadOS 15.4.1
Posted by Apple Product Security via Fulldisclosure on Mar 31 APPLE-SA-2022-03-31-1 iOS 15.4.1 and iPadOS 15.4.1 iOS 15.4.1 and iPadOS 15.4.1 addresses the following issues....
APPLE-SA-2022-03-31-2 macOS Monterey 12.3.1
Posted by Apple Product Security via Fulldisclosure on Mar 31 APPLE-SA-2022-03-31-2 macOS Monterey 12.3.1 macOS Monterey 12.3.1 addresses the following issues. Information about the security...
USN-5362-1: Linux kernel (Intel IOTG) vulnerabilities
Nick Gregory discovered that the Linux kernel incorrectly handled network offload functionality. A local attacker could use this to cause a denial of service or...
USN-5361-1: Linux kernel vulnerabilities
It was discovered that the VFIO PCI driver in the Linux kernel did not properly handle attempts to access disabled memory spaces. A local attacker...
DSA-5111 zlib – security update
Danilo Ramos discovered that incorrect memory handling in zlib's deflate handling could result in denial of service or potentially the execution of arbitrary code if...
USN-5358-2: Linux kernel vulnerabilities
It was discovered that the network traffic control implementation in the Linux kernel contained a use-after-free vulnerability. A local attacker could use this to cause...
USN-5357-2: Linux kernel vulnerability
It was discovered that the IPsec implementation in the Linux kernel did not properly allocate enough memory when performing ESP transformations, leading to a heap-based...
USN-5360-1: Tomcat vulnerabilities
It was discovered that Tomcat incorrectly performed input verification. A remote attacker could possibly use this issue to intercept sensitive information. (CVE-2020-13943, CVE-2020-17527, CVE-2021-25122, CVE-2021-30640)...