Category Archives: Advisories

php-tcpdf-6.7.2-1.fc40

Read Time:20 Second

FEDORA-2024-217278abc5

Packages in this update:

php-tcpdf-6.7.2-1.fc40

Update description:

Version 6.7.2 (2024-03-18)

Fix security issue.
[BREAKING CHANGE] The tcpdf HTML tag syntax has changed, see example_049.php.
New K_ALLOWED_TCPDF_TAGS configuration constant to set the allowed methods for the tcdpf HTML tag.
Raised minimum PHP version to PHP 5.5.0.

Read More

Backdoor.Win32.Emegrab.b / Remote Stack Buffer Overflow (SEH)

Read Time:19 Second

Posted by malvuln on Mar 19

Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2024
Original source:
https://malvuln.com/advisory/19a14d0414aec62ef38378de2e8b259d.txt
Contact: malvuln13 () gmail com
Media: twitter.com/malvuln

Threat: Backdoor.Win32.Emegrab.b
Vulnerability: Remote Stack Buffer Overflow (SEH)
Family: Emegrab
Type: PE32
MD5: 19a14d0414aec62ef38378de2e8b259d
Vuln ID: MVID-2024-0675
ASLR: False
DEP: False
CFG: False
Safe SEH: False
Disclosure:…

Read More

perl-Data-UUID-1.227-1.fc38

Read Time:13 Second

FEDORA-2024-08bb549a36

Packages in this update:

perl-Data-UUID-1.227-1.fc38

Update description:

This update fixes CVE-2013-4184 (possible symlink attack due to use of predictable temporary file names). The module no longer saves state in temporary files at all.

Read More

perl-Data-UUID-1.227-1.fc40

Read Time:13 Second

FEDORA-2024-3da8ed5be3

Packages in this update:

perl-Data-UUID-1.227-1.fc40

Update description:

This update fixes CVE-2013-4184 (possible symlink attack due to use of predictable temporary file names). The module no longer saves state in temporary files at all.

Read More

perl-Data-UUID-1.227-1.fc39

Read Time:13 Second

FEDORA-2024-a58a7e2388

Packages in this update:

perl-Data-UUID-1.227-1.fc39

Update description:

This update fixes CVE-2013-4184 (possible symlink attack due to use of predictable temporary file names). The module no longer saves state in temporary files at all.

Read More

perl-Data-UUID-1.227-1.el7

Read Time:14 Second

FEDORA-EPEL-2024-1c85d457ef

Packages in this update:

perl-Data-UUID-1.227-1.el7

Update description:

This update fixes CVE-2013-4184 (possible symlink attack due to use of predictable temporary file names). The module no longer saves state in temporary files at all.

Read More

Fortinet Releases Security Updates for Multiple Products.

Read Time:31 Second

Fortinet has released security updates to address multiple vulnerabilities found in Fortinet products. The vulnerabilities, if exploited could allow unauthenticated attacker to execute arbitrary code on Fortinet products. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the affected service/user account. Depending on the privileges associated with the account an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Accounts that are configured to have fewer user rights on the system could be less impacted than those who operate with administrative user rights.

Read More