Bugtraq: by date

69 messages starting Aug 01 18 and ending Aug 30 18
Date index | Thread index | Author index


Wednesday, 01 August

CVE-2016-7085 NOT fixed in VMware-player-12.5.9-7535481.exe Stefan Kanthak
[slackware-security] blueman (SSA:2018-213-01) Slackware Security Team

Thursday, 02 August

Executable installers are vulnerable^WEVIL (case 55): escalation of privilege with VMware Player 12.5.9 Stefan Kanthak
[SECURITY] [DSA 4260-1] libmspack security update Salvatore Bonaccorso
[slackware-security] lftp (SSA:2018-214-01) Slackware Security Team

Sunday, 05 August

[SECURITY] [DSA 4265-1] xml-security-c security update Moritz Muehlenhoff
[SECURITY] [DSA 4262-1] symfony security update Moritz Muehlenhoff

Monday, 06 August

[SECURITY] [DSA 4266-1] linux security update Salvatore Bonaccorso
RE: [FD] Executable installers are vulnerable^WEVIL (case 56): arbitrary code execution WITH escalation of privilege via rufus*.exe Andrius Duksta
FreeBSD Security Advisory FreeBSD-SA-18:08.tcp FreeBSD Security Advisories

Wednesday, 08 August

New VMSA-2018-0019 - Horizon 6, 7, and Horizon Client for Windows updates address an out-of-bounds read vulnerability VMware Security Response Center
WebKitGTK+ and WPE WebKit Security Advisory WSA-2018-0006 Michael Catanzaro
[CVE-2018-14429] man-cgi < 1.16 Local File Include eL_Bart0
CA20180802-01: Security Notice for CA API Developer Portal Kotas, Kevin J
[CVE-2018-12584] Heap overflow vulnerability in reSIProcate through 1.10.2 Joachim De Zutter
[SECURITY] [DSA 4267-1] kamailio security update Salvatore Bonaccorso

Tuesday, 14 August

ASUSTOR NAS ADM - 3.1.0 Remote Command Execution, SQL Injections kyle Lovett
[SECURITY] [DSA 4271-1] samba security update Salvatore Bonaccorso
X41 D-Sec GmbH Security Advisory X41-2018-001: Multiple Vulnerabilities in Yubico Piv X41 D-Sec GmbH Advisories
X41 D-Sec GmbH Security Advisory X41-2018-004: Multiple Vulnerabilities in Yubico libykneomgr X41 D-Sec GmbH Advisories
X41 D-Sec GmbH Security Advisory X41-2018-003: Multiple Vulnerabilities in pam_pkcs11 X41 D-Sec GmbH Advisories
X41 D-Sec GmbH Security Advisory X41-2018-002: Multiple Vulnerabilities in OpenSC X41 D-Sec GmbH Advisories
X41 D-Sec GmbH Security Advisory X41-2018-005: Multiple Vulnerabilities in Apple smartcardservices X41 D-Sec GmbH Advisories
Defense in depth -- the Microsoft way (part 57): all the latest MSVCRT installers allow escalation of privilege Stefan Kanthak
[SECURITY] [DSA 4272-1] linux security update Salvatore Bonaccorso
[slackware-security] openssl (SSA:2018-226-01) Slackware Security Team
FreeBSD Security Advisory FreeBSD-SA-18:08.tcp FreeBSD Security Advisories
FreeBSD Security Advisory FreeBSD-SA-18:09.l1tf FreeBSD Security Advisories
FreeBSD Security Advisory FreeBSD-SA-18:10.ip FreeBSD Security Advisories
FreeBSD Security Advisory FreeBSD-SA-18:11.hostapd FreeBSD Security Advisories

Wednesday, 15 August

CSNC-2018-023 - Atmosphere Framework - Reflected Cross-Site Scripting (XSS) Advisories
CSNC-2018-016 - ownCloud iOS Application - Cross-Site Scripting Advisories

Thursday, 16 August

SEC Consult SA-20180813-0 :: SQL Injection, XSS & CSRF vulnerabilities in Pimcore SEC Consult Vulnerability Lab
[SECURITY] [DSA 4273-1] intel-microcode security update Moritz Muehlenhoff
[SECURITY] [DSA 4274-1] xen security update Moritz Muehlenhoff
[SECURITY] [DSA 4275-1] keystone security update Moritz Muehlenhoff

Friday, 17 August

[SECURITY] [DSA 4276-1] php-horde-image security update Sebastien Delafond

Sunday, 19 August

[SECURITY] [DSA 4277-1] mutt security update Salvatore Bonaccorso
[slackware-security] samba (SSA:2018-229-02) Slackware Security Team
[SECURITY] [DSA 4278-1] jetty9 security update Moritz Muehlenhoff
[slackware-security] ntp (SSA:2018-229-01) Slackware Security Team

Monday, 20 August

[CVE-2018-15528] Reflected XSS in Java System Solutions SSO Plugin 4.0.13.1 for BMC MyIT mamurch
[SECURITY] [DSA 4279-1] linux security update Salvatore Bonaccorso

Tuesday, 21 August

[slackware-security] libX11 (SSA:2018-233-01) Slackware Security Team
Mutiny Monitoring Appliance < 6.1.0-5263 - Command Injection (CVE-2018-15529) reggie . dodd30
[SECURITY] [DSA 4280-1] openssh security update Sebastien Delafond

Wednesday, 22 August

[ANN] CVE-2018-11776 Apache Struts 2.3 to 2.3.34 and 2.5 to 2.5.16 Yasser Zamani

Thursday, 23 August

[SECURITY] [DSA 4279-2] linux regression update Salvatore Bonaccorso
Seagate Media Server multiple SQL injection vulnerabilities Summer of Pwnage
Couchbase Server - Remote Code Execution x ksi

Friday, 24 August

Couchbase Server - Remote Code Execution x ksi
Couchbase Server - Remote Code Execution x ksi

Monday, 27 August

[SYSS-2018-010] Dojo Toolkit - dojox.grid.DataGrid editing XSS Moritz Bechler
[CVE-2018-15877] Plainview Activity Monitor RCE Lydéric LEFEBVRE
[CVE-2018-15877] Plainview Activity Monitor RCE Lydéric LEFEBVRE

Wednesday, 29 August

[HITB-Announce] Reminder: HITBSecConf2018 Dubai CFP Hafez Kamal
[slackware-security] Slackware 14.2 kernel (SSA:2018-240-01) Slackware Security Team
Signal IOS Remote Memory Exhaustion and Restart nick . m . mckenna
[SECURITY] [DSA 4281-1] tomcat8 security update Sebastien Delafond
CSNC-2018-015 - ownCloud Impersonate - Authorization Bypass Advisories
[security bulletin] MFSBGN03812 rev.1 - Application Performance Management, remote cross-site tracing cyber-psrt
Sensitive Data Exposure via WiFi Broadcasts in Android OS [CVE-2018-9489] research

Thursday, 30 August

[security bulletin] MFSBGN03813 rev.1 - Network Operations Management (NOM) Suite CDF, Remote Code Execution cyber-psrt
[security bulletin] MFSBGN03817 rev.1 - Operations Bridge containerized suite, Remote Code Execution cyber-psrt
[security bulletin] MFSBGN03814 rev.1 - Service Management Automation (SMA) containerized, Remote Code Execution cyber-psrt
[security bulletin] MFSBGN03818 rev.1 - Micro Focus Operations Bridge containerized suite, Remote Code Execution cyber-psrt
[security bulletin] MFSBGN03815 rev.1 - Data Center Automation Containerized (DCA) suite, remote code execution cyber-psrt
[security bulletin] MFSBGN03820 rev.1 - Micro Focus Hybrid Cloud Management (HCM) containerized suites, remote code execution cyber-psrt
[security bulletin] MFSBGN03821 rev.1 - Micro Focus Hybrid Cloud Management (HCM) containerized suite, Remote Code Execution cyber-psrt