openvpn-2.6.11-1.fc40
FEDORA-2024-b611e122fb Packages in this update: openvpn-2.6.11-1.fc40 Update description: Update to upstream OpenVPN 2.6.11 CVE-2024-5594: control channel: refuse control channel messages with nonprintable characters in them...
mingw-poppler-24.02.0-2.fc40
FEDORA-2024-94068499c9 Packages in this update: mingw-poppler-24.02.0-2.fc40 Update description: Backport fix for CVE-2024-6239. Read More
mingw-python-urllib3-1.26.19-1.fc39
FEDORA-2024-73f181db2a Packages in this update: mingw-python-urllib3-1.26.19-1.fc39 Update description: Update to 1.26.19, fixes CVE-2024-0444. Read More
mingw-python-urllib3-1.26.19-1.fc40
FEDORA-2024-da86a4f061 Packages in this update: mingw-python-urllib3-1.26.19-1.fc40 Update description: Update to 1.26.19, fixes CVE-2024-0444. Read More
Microsoft leak of PlayReady developer / Warbird libs
Posted by Security Explorations on Jun 21 Hello All, On Jun 11, 2024 Microsoft engineer posted on a public forum information about a crash experienced...
ZDI-24-840: (Pwn2Own) Wyze Cam v3 TCP Traffic Handling Stack-Based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Wyze Cam v3 IP cameras. Authentication is not required to exploit this...
ZDI-24-839: (Pwn2Own) Wyze Cam v3 Cloud Infrastructure Improper Authentication Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Wyze Cam v3 IP cameras. Authentication is not required to exploit this...
ZDI-24-838: (Pwn2Own) Wyze Cam v3 Wi-Fi SSID OS Command Injection Remote Code Execution Vulnerability
This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Wyze Cam v3 IP cameras. Authentication is not required to exploit...
ZDI-24-837: (Pwn2Own) Wyze Cam v3 Realtek Wi-Fi Driver Heap-Based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Wyze Cam v3 IP cameras. Authentication is not required to exploit this...
ZDI-24-836: (Pwn2Own) Synology BC500 update_ntp_config Command Injection Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Synology BC500 IP cameras. Authentication is required to exploit this vulnerability. The...