Bugtraq: by author

58 messages starting Apr 30 18 and ending Apr 10 18
Date index | Thread index | Author index


Akira Ajisaka

CVE-2016-6811: Apache Hadoop Privilege escalation vulnerability Akira Ajisaka (Apr 30)

Apple Product Security

APPLE-SA-2018-04-24-2 Security Update 2018-001 Apple Product Security (Apr 25)
APPLE-SA-2018-04-24-1 iOS 11.3.1 Apple Product Security (Apr 25)
APPLE-SA-2018-04-24-3 Safari 11.1 (v. 11605.1.33.1.4, 12605.1.33.1.4, and 13605.1.33.1.4) Apple Product Security (Apr 24)

Atlassian

Advisory - Fisheye and Crucible - CVE-2018-5223 Atlassian (Apr 04)
Advisory - Sourcetree for Windows - CVE-2018-5226 Atlassian (Apr 30)
Advisory - Bamboo - CVE-2018-5224 Atlassian (Apr 04)

cyber-psrt

[security bulletin] MFSBGN03803 rev.1 - UCMDB, Installation File Access Control Privilege Escalation Vulnerability cyber-psrt (Apr 12)
[security bulletin] MFSBGN03802 - Virtualization Performance Viewer (vPV) / Cloud Optimizer, Local Disclosure of Information cyber-psrt (Apr 12)

FreeBSD Security Advisories

FreeBSD Security Advisory FreeBSD-SA-18:04.vt FreeBSD Security Advisories (Apr 03)
FreeBSD Security Advisory FreeBSD-SA-18:05.ipsec FreeBSD Security Advisories (Apr 03)

Hafez Kamal

[HITB-Announce] HITBGSEC2018 CFP - Final Call Hafez Kamal (Apr 26)

Luciano Bello

[SECURITY] [DSA 4165-1] ldap-account-manager security update Luciano Bello (Apr 03)
[SECURITY] [DSA 4167-1] sharutils security update Luciano Bello (Apr 05)
[SECURITY] [DSA 4161-1] python-django security update Luciano Bello (Apr 01)

Michael Catanzaro

WebKitGTK+ Security Advisory WSA-2018-0003 Michael Catanzaro (Apr 17)

Michael Gilbert

[SECURITY] [DSA 4182-1] chromium-browser security update Michael Gilbert (Apr 30)

Moritz Muehlenhoff

[SECURITY] [DSA 4166-1] openjdk-7 security update Moritz Muehlenhoff (Apr 04)
[SECURITY] [DSA 4177-1] libsdl2-image security update Moritz Muehlenhoff (Apr 23)
[SECURITY] [DSA 4163-1] beep security update Moritz Muehlenhoff (Apr 02)
[SECURITY] [DSA 4160-1] libevt security update Moritz Muehlenhoff (Apr 01)
[SECURITY] [DSA 4170-1] pjproject security update Moritz Muehlenhoff (Apr 10)
[SECURITY] [DSA 4162-1] irssi security update Moritz Muehlenhoff (Apr 01)
[SECURITY] [DSA 4185-1] openjdk-8 security update Moritz Muehlenhoff (Apr 30)
[SECURITY] [DSA 4173-1] r-cran-readxl security update Moritz Muehlenhoff (Apr 16)
[SECURITY] [DSA 4186-1] gunicorn security update Moritz Muehlenhoff (Apr 30)
[SECURITY] [DSA 4159-1] remctl security update Moritz Muehlenhoff (Apr 01)
[SECURITY] [DSA 4178-1] libreoffice security update Moritz Muehlenhoff (Apr 23)

RedTeam Pentesting GmbH

[RT-SA-2017-015] CyberArk Password Vault Memory Disclosure RedTeam Pentesting GmbH (Apr 09)
[RT-SA-2017-014] CyberArk Password Vault Web Access Remote Code Execution RedTeam Pentesting GmbH (Apr 09)

Salvatore Bonaccorso

[SECURITY] [DSA 4181-1] roundcube security update Salvatore Bonaccorso (Apr 30)
[SECURITY] [DSA 4164-1] apache2 security update Salvatore Bonaccorso (Apr 03)
[SECURITY] [DSA 4079-2] poppler regression update Salvatore Bonaccorso (Apr 12)
[SECURITY] [DSA 4184-1] sdl-image1.2 security update Salvatore Bonaccorso (Apr 30)
[SECURITY] [DSA 4180-1] drupal7 security update Salvatore Bonaccorso (Apr 25)
[SECURITY] [DSA 4168-1] squirrelmail security update Salvatore Bonaccorso (Apr 09)
[SECURITY] [DSA 4176-1] mysql-5.5 security update Salvatore Bonaccorso (Apr 23)
[SECURITY] [DSA 4183-1] tor security update Salvatore Bonaccorso (Apr 30)
[SECURITY] [DSA 4179-1] linux-tools security update Salvatore Bonaccorso (Apr 24)
[SECURITY] [DSA 4175-1] freeplane security update Salvatore Bonaccorso (Apr 23)

Sebastien Delafond

[SECURITY] [DSA 4174-1] corosync security update Sebastien Delafond (Apr 17)

SEC Consult Vulnerability Lab

SEC Consult SA-20180423-0 :: Multiple Stored XSS Vulnerabilities in WSO2 Carbon and Dashboard Server SEC Consult Vulnerability Lab (Apr 24)
SEC Consult SA-20180424-0 :: Reflected Cross-Site Scripting in multiple Zyxel ZyWALL products SEC Consult Vulnerability Lab (Apr 24)

Secunia Research

Secunia Research: Oracle Outside In Technology Use-After-Free Vulnerability Secunia Research (Apr 25)

Security Explorations

[SE-2011-01] The origin and impact of vulnerabilities in ST chipsets Security Explorations (Apr 23)

Simon Bieber

secuvera-SA-2017-04: SQL-Injection Vulnerability in OCS Inventory NG ocsreports Web application Simon Bieber (Apr 10)
secuvera-SA-2017-03: Reflected Cross-Site-Scripting Vulnerabilities in OCS Inventory NG ocsreports Web application Simon Bieber (Apr 10)

Slackware Security Team

[slackware-security] openvpn (SSA:2018-116-01) Slackware Security Team (Apr 27)
[slackware-security] mozilla-firefox (SSA:2018-120-02) Slackware Security Team (Apr 30)
[slackware-security] gd (SSA:2018-108-01) Slackware Security Team (Apr 18)
[slackware-security] libwmf (SSA:2018-120-01) Slackware Security Team (Apr 30)
[slackware-security] php (SSA:2018-090-01) Slackware Security Team (Apr 01)
[slackware-security] patch (SSA:2018-096-01) Slackware Security Team (Apr 09)

Stefan Kanthak

Defense in depth -- the Microsoft way (part 53): our MSRC doesn't know how Windows handles PATH Stefan Kanthak (Apr 10)

Summer of Pwnage

Seagate Media Server stored Cross-Site Scripting vulnerability Summer of Pwnage (Apr 19)
Seagate Media Server path traversal vulnerability Summer of Pwnage (Apr 23)

Yves-Alexis Perez

[SECURITY] [DSA 4169-1] pcs security update Yves-Alexis Perez (Apr 11)

Yves Younan

Call for Papers: USENIX Workshop on Offensive Technologies (WOOT '18) Yves Younan (Apr 10)