ZDI-24-357: RARLAB WinRAR Mark-Of-The-Web Bypass Vulnerability
This vulnerability allows remote attackers to bypass the Mark-Of-The-Web protection mechanism on affected installations of RARLAB WinRAR. User interaction is required to exploit this vulnerability...
assimp-5.0.1-7.el8
FEDORA-EPEL-2024-d0d107787c Packages in this update: assimp-5.0.1-7.el8 Update description: Security fix for CVE-2023-45661 CVE-2023-45662 CVE-2023-45663 CVE-2023-45664 CVE-2023-45666 CVE-2023-45667 Read More
c-ares-1.28.1-1.fc38
FEDORA-2024-d351e7318e Packages in this update: c-ares-1.28.1-1.fc38 Update description: 1.28.1 fixes a significant bug in 1.28.0. Update to 1.28.0. Also fixes CVE-2024-25629. Read More
c-ares-1.28.1-1.fc40
FEDORA-2024-9963d77dcb Packages in this update: c-ares-1.28.1-1.fc40 Update description: 1.28.1 fixes a significant bug in 1.28.0. Update to 1.28.0. Also fixes CVE-2024-25629. Read More
c-ares-1.28.1-1.fc39
FEDORA-2024-835800b552 Packages in this update: c-ares-1.28.1-1.fc39 Update description: 1.28.1 fixes a significant bug in 1.28.0. Update to 1.28.0. Also fixes CVE-2024-25629. Read More
DSA-5650-1 util-linux – security update
Skyler Ferrante discovered that the wall tool from util-linux does not properly handle escape sequences from command line arguments. A local attacker can take advantage...
DSA-5651-1 mediawiki – security update
Two security issues were discovered in MediaWiki, a website engine for collaborative work, which could result in cross-site scripting or denial of service. https://security-tracker.debian.org/tracker/DSA-5651-1 Read...
libvirt-sandbox-0.8.0-15.fc40
FEDORA-2024-ebf015aa4e Packages in this update: libvirt-sandbox-0.8.0-15.fc40 Update description: rebuild to ensure vulnerable xz isn't statically linked Read More
libopenmpt-0.7.6-1.el8
FEDORA-EPEL-2024-acb47e6aea Packages in this update: libopenmpt-0.7.6-1.el8 Update description: libopenmpt 0.7.6 (2024-03-24) [Sec] Potential heap out-of-bounds read or write past sample end with malformed sustain loops...
libopenmpt-0.7.6-1.el7
FEDORA-EPEL-2024-07e8f5f1f0 Packages in this update: libopenmpt-0.7.6-1.el7 Update description: libopenmpt 0.7.6 (2024-03-24) [Sec] Potential heap out-of-bounds read or write past sample end with malformed sustain loops...