ZDI-24-107: Allegra extarctZippedFile Directory Traversal Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, the existing authentication...
ZDI-24-106: Allegra renderFieldMatch Deserialization of Unstrusted Data Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, product implements a...
ZDI-24-105: Allegra loadFieldMatch Deserialization of Untrusted Data Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, product implements a...
ZDI-24-104: Allegra saveFile Directory Traversal Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Although authentication is required to exploit this vulnerability, product implements a...
GLSA 202402-11: libxml2: Multiple Vulnerabilities
Post Content Read More
DSA-5619-1 libgit2 – security update
Two vulnerabilities were discovered in libgit2, a low-level Git library, which may result in denial of service or potentially the execution of arbitrary code. https://security-tracker.debian.org/tracker/DSA-5619-1...
clamav-1.0.5-1.el9
FEDORA-EPEL-2024-471565274b Packages in this update: clamav-1.0.5-1.el9 Update description: Update to 1.0.5 Read More
clamav-1.0.5-1.fc39
FEDORA-2024-3439911df6 Packages in this update: clamav-1.0.5-1.fc39 Update description: Update to 1.0.5 Read More
clamav-1.0.5-1.fc38
FEDORA-2024-c42cf0e576 Packages in this update: clamav-1.0.5-1.fc38 Update description: Update to 1.0.5 Read More
USN-6625-2: Linux kernel (GCP) vulnerabilities
Marek Marczykowski-Górecki discovered that the Xen event channel infrastructure implementation in the Linux kernel contained a race condition. An attacker in a guest VM could...