ZDI-24-803: Parallels Desktop Updater Protection Mechanism Failure Software Downgrade Vulnerability
This vulnerability allows local attackers to downgrade Parallels software on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute low-privileged...
ZDI-24-802: (0Day) Poly Plantronics Hub Link Following Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Poly Plantronics Hub. An attacker must first obtain the ability to execute low-privileged...
DSA-5714-1 roundcube – security update
Huy Nguyễn Phạm Nhật, and Valentin T. and Lutz Wolf of CrowdStrike, discovered that roundcube, a skinnable AJAX based webmail solution for IMAP servers, did...
DSA-5715-1 composer – security update
Two vulnerabilities have been discovered in Composer, a dependency manager for PHP, which could result in arbitrary command execution by operating on malicious git/hg repositories....
kitty-0.35.1-4.fc40
FEDORA-2024-15039ba9f9 Packages in this update: kitty-0.35.1-4.fc40 Update description: rebuild for rhbz#2292712 Read More
Business Logic Flaw and Username Enumeration in spa-cartcmsv1.9.0.6
Posted by Andrey Stoykov on Jun 15 # Exploit Title: Business Logic Flaw and Username Enumeration in spa-cartcmsv1.9.0.6 # Date: 6/2024 # Exploit Author: Andrey...
DSA-5713-1 libndp – security update
A buffer overflow was discovered in libndp, a library implementing the IPv6 Neighbor Discovery Protocol (NDP), which could result in denial of service or potentially...
python-PyMySQL-1.1.1-1.fc40
FEDORA-2024-b26f07d27b Packages in this update: python-PyMySQL-1.1.1-1.fc40 Update description: Update to 1.1.1 to fix CVE CVE-2024-36039 Read More
python-PyMySQL-1.1.1-1.fc39
FEDORA-2024-e7141ab284 Packages in this update: python-PyMySQL-1.1.1-1.fc39 Update description: Update to 1.1.1 to fix CVE CVE-2024-36039 Read More
DSA-5711-1 thunderbird – security update
Multiple security issues were discovered in Thunderbird, which could result inthe execution of arbitrary code. https://security-tracker.debian.org/tracker/DSA-5711-1 Read More