ZDI-24-1472: Veeam Backup Enterprise Manager AuthorizeByVMwareSsoToken Improper Certificate Validation Authentication Bypass Vulnerability
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of Veeam Backup Enterprise Manager. Authentication is not required to exploit this vulnerability. The...
ZDI-24-1486: (0Day) G DATA Total Security Incorrect Permission Assignment Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of G DATA Total Security. An attacker must first obtain the ability to execute...
chromium-130.0.6723.116-1.el9 dav1d-1.5.0-2.el9 ffmpeg-5.1.4-3.el9 libavif-0.11.1-5.el9 libavif0.10-0.10.1-2.el9 libheif-1.16.1-2.el9 vlc-3.0.21-9.el9 xine-lib-1.2.13-4.el9
FEDORA-EPEL-2024-398707b664 Packages in this update: chromium-130.0.6723.116-1.el9 dav1d-1.5.0-2.el9 ffmpeg-5.1.4-3.el9 libavif0.10-0.10.1-2.el9 libavif-0.11.1-5.el9 libheif-1.16.1-2.el9 vlc-3.0.21-9.el9 xine-lib-1.2.13-4.el9 Update description: Update dav1d to version 1.5.0 to address previously unaddressed security...
USN-7100-1: Linux kernel vulnerabilities
Supraja Sridhara, Benedict Schlüter, Mark Kuhne, Andrin Bertschi, and Shweta Shinde discovered that the Confidential Computing framework in the Linux kernel for x86 platforms did...
chromium-130.0.6723.116-1.fc39
FEDORA-2024-9c44ad3527 Packages in this update: chromium-130.0.6723.116-1.fc39 Update description: Update to 130.0.6723.116 Read More
chromium-130.0.6723.116-1.fc40
FEDORA-2024-011c4d53e5 Packages in this update: chromium-130.0.6723.116-1.fc40 Update description: Update to 130.0.6723.116 Read More
chromium-130.0.6723.116-1.el8
FEDORA-EPEL-2024-d396fc832a Packages in this update: chromium-130.0.6723.116-1.el8 Update description: Update to 130.0.6723.116 Read More
chromium-130.0.6723.116-1.fc41
FEDORA-2024-1e45ea2e6c Packages in this update: chromium-130.0.6723.116-1.fc41 Update description: Update to 130.0.6723.116 Read More
ZDI-24-1471: Panda Security Dome PSANHost Link Following Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Panda Security Dome. An attacker must first obtain the ability to execute low-privileged...
USN-7098-1: OpenJDK 17 vulnerabilities
Andy Boothe discovered that the Networking component of OpenJDK 17 did not properly handle access under certain circumstances. An unauthenticated attacker could possibly use this...