oss-sec: by date

237 messages starting Apr 02 19 and ending Jun 30 19
Date index | Thread index | Author index


Tuesday, 02 April

CVE-2019-0196: mod_http2, read-after-free on a string compare Daniel Ruggeri
CVE-2019-0197: mod_http2, possible crash on late upgrade Daniel Ruggeri
CVE-2019-0211: Apache HTTP Server privilege escalation from modules' scripts Daniel Ruggeri
CVE-2019-0215: mod_ssl access control bypass Daniel Ruggeri
CVE-2019-0217: mod_auth_digest access control bypass Daniel Ruggeri
CVE-2019-0220: URL normalization inconsistincies Daniel Ruggeri

Wednesday, 03 April

CVE-2019-3882: Linux kernel: DoS through vfio/type1 DMA mappings Vladis Dronov
CVE-2019-3837: RHEL6: memory leak in tcp_recvmsg() with NET_DMA Vladis Dronov
Multiple vulnerabilities in Jenkins plugins Daniel Beck
Linux kernel < 4.8 local generic ASLR bypass for setuid binaries Federico Manuel Bento

Friday, 05 April

XSS in roundup bug tracker 404 page Hanno Böck

Sunday, 07 April

Re: XSS in roundup bug tracker 404 page Henri Salo
CVE-2019-3887 Kernel: KVM: nVMX: guest accesses L0 MSR causes potential DoS P J P

Monday, 08 April

DLL injection in Go < 1.12.2 [CVE-2019-9634] Jason A. Donenfeld

Tuesday, 09 April

[OSSA-2019-002] neutron-openvswitch-agent: Unable to install new flows on compute nodes when having broken security group rules (CVE-2019-10876) Gage Hugo

Wednesday, 10 April

Multiple vulnerabilities in Jenkins Daniel Beck
wpa_supplicant/hostapd: SAE side-channel attacks Jouni Malinen
wpa_supplicant/hostapd: EAP-pwd side-channel attack Jouni Malinen
hostapd: SAE confirm missing state validation Jouni Malinen
wpa_supplicant/hostapd: EAP-pwd missing commit validation Jouni Malinen
CVE-2019-0216, CVE-2019-0229 vulnerabilities affecting Apache Airflow <= 1.10.2 webserver component Ash Berlin-Taylor

Thursday, 11 April

WebKitGTK and WPE WebKit Security Advisory WSA-2019-0002 Michael Catanzaro

Saturday, 13 April

Re: Multiple vulnerabilities in Jenkins plugins Daniel Beck

Sunday, 14 April

[CVE-2019-0231] MINA SSLFilter security Issue Emmanuel Lecharny
CVE-2019-3893: Foreman: Compute resource credentials exposed during deletion on API Tomer Brisker

Monday, 15 April

Re: Linux kernel < 4.8 local generic ASLR - CVE-ID Vladis Dronov

Tuesday, 16 April

kernel address leak in drivers/media/dvb-frontends/ascot2e.c - linux 4.14.111 LTS Fuqian Huang

Wednesday, 17 April

3 pacemaker security flaws Huzaifa Sidhpurwala
Multiple vulnerabilities in Jenkins plugins Daniel Beck
urllib3: adds system certificates to ssl_context Havoc Pennington
Announce: OpenSSH 8.0 released Damien Miller

Thursday, 18 April

Re: 3 pacemaker security flaws Jan Pokorný
CVE-2019-10691: JSON encoder in Dovecot 2.3 incorrecty assert-crashes when encountering invalid UTF-8 characters. Aki Tuomi
Security issues in snapcraft snap-confine set*id binary Matthias Gerstner
Re: Linux kernel < 4.8 local generic ASLR - another CVE-ID Vladis Dronov
wpa_supplicant/hostapd: EAP-pwd message reassembly issue with unexpected fragment Jouni Malinen
Linux kernel < 4.14.111 drivers/media/dvb-frontends/cxd2841er.c kernel address dumps to user space Fuqian Huang
Linux kernel < 4.14.111 drivers/media/dvb-frontends/helene.c kernel address dumps to user space Fuqian Huang
Linux kernel < 4.14.111 drivers/media/dvb-frontends/horus3a.c kernel address dumps to user space Fuqian Huang
Linux kernel < 4.14.111 drivers/media/pci/saa7164/saa7164-core.c kernel address dumps to user space Fuqian Huang
Linux kernel < 4.14.111 drivers/message/fusion/mptbase.c kernel address dumps to user space Fuqian Huang
Linux kernel < 4.14.111 drivers/net/ethernet/chelsio/libcxgb/libcxgb_ppm.c kernel address dumps to user space Fuqian Huang
Linux kernel < 4.14.111 drivers/message/fusion/mptscsih.c kernel address dumps to user space Fuqian Huang
Linux kernel < 4.14.111 drivers/net/ethernet/netronome/nfp/nfp_net_debugfs.c kernel address dumps to user space Fuqian Huang
Linux kernel < 4.14.111 drivers/net/wan/lmc/lmc_main.c kernel address dumps to user space Fuqian Huang
Linux kernel < 4.14.111 drivers/nfc/nfcmrvl/usb.c kernel address dumps to user space Fuqian Huang
Linux kernel < 4.14.111 drivers/scsi/cxgbi/cxgb3i/cxgb3i.c kernel address dumps to user space Fuqian Huang
Linux kernel < 4.14.111 drivers/scsi/cxgbi/cxgb4i/cxgb4i.c kernel address dumps to user space Fuqian Huang
Linux kernel address leaks Solar Designer
Re: Linux kernel address leaks Greg KH

Friday, 19 April

Re: urllib3: adds system certificates to ssl_context Havoc Pennington

Saturday, 20 April

[CVE-2019-0218] Apache Pony Mail (incubating) Reflected XSS Daniel Gruno

Monday, 22 April

Nokogiri security update v1.10.3 Mike Dalessio

Tuesday, 23 April

Issues fixed in previous releases of Apache Zeppelin 0.7.3 and 0.8.0 (CVE-2017-12619 CVE-2018-1317 CVE-2018-1328) Apache Security Team
Re: Nokogiri security update v1.10.3 Florian Weimer
fprintd: found storing user fingerprints without encryption Seong-Joong Kim
[SECURITY] CVE-2019-0223: Apache Qpid Proton TLS Man in the Middle Vulnerability Robbie Gemmell
Re: Nokogiri security update v1.10.3 Mike Dalessio

Wednesday, 24 April

CVE-2018-11802: Apache Solr authorization bug vulnerability disclosure Noble Paul
Re: CVE-2018-11802: Apache Solr authorization bug vulnerability disclosure Ishan Chattopadhyaya
CVE Request: golang-seccomp incorrectly handles multiple syscall arguments Jamie Strandboge
Re: CVE Request: golang-seccomp incorrectly handles multiple syscall arguments Jamie Strandboge
Multiple BIND vulnerabilities disclosed (CVE-2018-5743, CVE-2019-6467, and CVE-2019-6468) Michael McNally

Thursday, 25 April

CVE-2019-3900 Kernel: vhost_net: infinite loop while receiving packets leads to DoS P J P
Re: Multiple BIND vulnerabilities disclosed (CVE-2018-5743, CVE-2019-6467, and CVE-2019-6468) Peter Korsgaard
Linux kernel: no permission check during open() time of /proc/[pid]/maps in kernels < 3.18 Matthias Gerstner
Re: Linux kernel: no permission check during open() time of /proc/[pid]/maps in kernels < 3.18 Solar Designer
Re: CVE Request: golang-seccomp incorrectly handles multiple syscall arguments Jamie Strandboge
Re: Security issues in snapcraft snap-confine set*id binary Jamie Strandboge
[CVE-2019-0186] The input fields of the Chat Room demo are vulnerable to Cross-Site Scripting (XSS) attacks Neil Griffin

Friday, 26 April

Re: wpa_supplicant/hostapd: EAP-pwd message reassembly issue with unexpected fragment Salvatore Bonaccorso

Saturday, 27 April

Re: Multiple BIND vulnerabilities disclosed (CVE-2018-5743, CVE-2019-6467, and CVE-2019-6468) andreas
Re: Multiple BIND vulnerabilities disclosed (CVE-2018-5743, CVE-2019-6467, and CVE-2019-6468) Peter Korsgaard
Re: Multiple BIND vulnerabilities disclosed (CVE-2018-5743, CVE-2019-6467, and CVE-2019-6468) andreas

Monday, 29 April

Linux kernel: multiple issues Jann Horn
Re: Linux kernel: multiple issues Salvatore Bonaccorso
[CVE-2019-9826] phpBB Native Fulltext Search denial of service Colin Snover

Tuesday, 30 April

Re: Linux kernel: multiple issues Salvatore Bonaccorso
[SECURITY] New security advisory CVE-2019-0194 released for Apache Camel Andrea Cosentino
Cross Site Scripting | Alkacon OpenCMS v10.5.4 and before Pramod Rana
Spoofing OpenPGP and S/MIME Signatures in Emails (multiple clients) Marcus Brinkmann
Multiple vulnerabilities in Jenkins plugins Daniel Beck
Multiple vulnerabilities in Dovecot 2.3 Aki Tuomi
[SECURITY] CVE-2019-0213: Apache Archiva Stored XSS Martin
[SECURITY] CVE-2019-0214: Apache Archiva arbitrary file write and delete on the server Martin

Wednesday, 01 May

[ANNOUNCE] CVE-2018-8035: Apache UIMA DUCC webserver cross-site scripting (XSS) vulnerability fix Lou DeGenaro

Thursday, 02 May

CVE-2019-11683: "GRO packet of death" issue in the Linux kernel Andrey Konovalov

Friday, 03 May

[CVE-2018-17201]: Apache Commons Imaging information disclosure vulnerability Bruno P. Kinoshita
[CVE-2018-17202]: Apache Commons Imaging information disclosure vulnerability Bruno P. Kinoshita
XSS via EXIF tag in Serendipity blog Hanno Böck

Sunday, 05 May

Open source tool | Lets Map Your Network Pramod Rana
CSV Injection | Alkacon OpenCMS v10.5.4 and before Pramod Rana
Cross Site Scripting | WolfCMS v0.8.3.1 and before Pramod Rana
Re: CVE-2019-11683: "GRO packet of death" issue in the Linux kernel Greg KH

Monday, 06 May

[SECURITY] New security advisory for CVE-2019-0226 released for Apache Karaf Jean-Baptiste Onofré

Tuesday, 07 May

Re: fprintd: found storing user fingerprints without encryption Seong-Joong Kim

Wednesday, 08 May

Re: Re: fprintd: found storing user fingerprints without encryption Roman Drahtmueller
Re: Re: fprintd: found storing user fingerprints without encryption Noel Kuntze
Re: Re: fprintd: found storing user fingerprints without encryption Seong-Joong Kim
Re: Re: fprintd: found storing user fingerprints without encryption Noel Kuntze
Re: Re: fprintd: found storing user fingerprints without encryption Seong-Joong Kim
Re: Re: fprintd: found storing user fingerprints without encryption Roman Drahtmueller
Re: Re: fprintd: found storing user fingerprints without encryption Seong-Joong Kim

Thursday, 09 May

[CVE-2018-11800] and [CVE-2018-11801] Apache Fineract SQL Injection Vulnerabilities fixed in v1.3.0 Michael Vorburger

Friday, 10 May

Re: XSS via EXIF tag in Serendipity blog Henri Salo
Re: Re: fprintd: found storing user fingerprints without encryption halfdog
Re: Re: fprintd: found storing user fingerprints without encryption Seong-Joong Kim
Re: System Down: A systemd-journald exploit Qualys Security Advisory

Saturday, 11 May

Re: Re: fprintd: found storing user fingerprints without encryption Seong-Joong Kim

Tuesday, 14 May

Re: fprintd: found storing user fingerprints without encryption halfdog
Re: fprintd: found storing user fingerprints without encryption halfdog
Xen Security Advisory 297 v1 (CVE-2018-12126,CVE-2018-12127,CVE-2018-12130,CVE-2019-11091) - Microarchitectural Data Sampling speculative side channel Xen . org security team

Thursday, 16 May

Singularity 3.1.0: CVE-2019-11328: namespace privilege escalation and arbitrary file corruption Matthias Gerstner

Sunday, 19 May

Potential DoS vulnerability in CGit Wire Snark
Re: Potential DoS vulnerability in CGit Wire Snark
Re: Potential DoS vulnerability in CGit Jason A. Donenfeld
[CVE-2019-10076] Apache JSPWiki Cross-site scripting vulnerability Juan Pablo Santos Rodríguez
[CVE-2019-10077] Apache JSPWiki Cross-site scripting vulnerability Juan Pablo Santos Rodríguez
[CVE-2019-10078] Apache JSPWiki Cross-site scripting vulnerability Juan Pablo Santos Rodríguez

Monday, 20 May

[CVE-2019-0201] Information disclosure vulnerability in Apache ZooKeeper Andor Molnar
WebKitGTK and WPE WebKit Security Advisory WSA-2019-0003 Michael Catanzaro

Tuesday, 21 May

Multiple vulnerabilities in Jenkins plugins Daniel Beck

Wednesday, 22 May

CVE-2019-12155 QEMU: qxl: null pointer dereference while releasing spice resources P J P
[SECURITY ADVISORY] curl: Integer overflows in curl_url_set Daniel Stenberg
[SECURITY ADVISORY] curl: TFTP receive buffer overflow Daniel Stenberg
CVE-2019-12247 QEMU: qemu-guest-agent: integer overflow while running guest-exec command P J P
CVE-2019-10142 linux kernel: integer overflow in ioctl handling of fsl hypervisor Wade Mealing
Re: CVE-2019-10142 linux kernel: integer overflow in ioctl handling of fsl hypervisor Greg KH
Re: Linux kernel < 4.8 local generic ASLR - another CVE-ID Solar Designer

Friday, 24 May

[SECURITY] New security advisory CVE-2019-0188 released for Apache Camel Andrea Cosentino
[SECURITY][ERRATA-CORRIGE] New security advisory CVE-2019-0188 released for Apache Camel Andrea Cosentino

Monday, 27 May

CVE-2018-15664: docker (all versions) is vulnerable to a symlink-race attack Aleksa Sarai

Thursday, 30 May

CVE-2018-8029: Apache Hadoop Privilege escalation vulnerability Akira Ajisaka
CVE-2019-3846:Marvell Wifi Driver mwifiex mwifiex_update_bss_desc_with_ie Heap Overflow huangwen

Friday, 31 May

[ANNOUNCE] Security regression in Kubernetes kubelet v1.13.6 and v1.14.2 only - CVE-2019-11245 Brandon Philips
Multiple vulnerabilities in Jenkins plugins Daniel Beck

Saturday, 01 June

Marvell Wifi Driver mwifiex_uap_parse_tail_ies Heap Overflow huangwen

Sunday, 02 June

kernel: CVE-2018-16871 nfs: NULL pointer dereference due to an anomalized NFS message sequence Wade Mealing

Monday, 03 June

Django: CVE-2019-12308 AdminURLFieldWidget XSS (plus patched bundled jQuery for CVE-2019-11358) Carlton Gibson
Crash / fix in bzip2 Federico Mena Quintero

Tuesday, 04 June

CVE-2019-10149: Exim 4.87 to 4.91: possible remote exploit Heiko Schlittermann
Re: Using quilt on untrusted RPM spec files Vladimir D. Seleznev
Re: Crash / fix in bzip2 Thomas Deutschmann
Re: CVE-2019-10149: Exim 4.87 to 4.91: possible remote exploit Simon McVittie
Re: CVE-2019-10149: Exim 4.87 to 4.91: possible remote exploit Heiko Schlittermann
Re: CVE-2019-10149: Exim 4.87 to 4.91: possible remote exploit Heiko Schlittermann
Re: CVE-2019-10149: Exim 4.87 to 4.91: possible remote exploit Solar Designer
Re: CVE-2019-10149: Exim 4.87 to 4.91: possible remote exploit Heiko Schlittermann
Re: Marvell Wifi Driver mwifiex_uap_parse_tail_ies Heap Overflow Solar Designer

Wednesday, 05 June

pam-u2f: CVE-2019-12210: debug_file file descriptor leak, CVE-2019-12209: symlink attack on u2f_keys leading to possible information leak Matthias Gerstner
Re: CVE-2019-10149: Exim 4.87 to 4.91: possible remote exploit Heiko Schlittermann
Re: CVE-2019-10149: Exim 4.87 to 4.91: possible remote exploit Heiko Schlittermann
Re: CVE-2019-10149: Exim 4.87 to 4.91: possible remote exploit Qualys Security Advisory

Thursday, 06 June

Re: CVE-2019-10149: Exim 4.87 to 4.91: possible remote exploit Qualys Security Advisory

Saturday, 08 June

Re: [ANNOUNCE] Security regression in Kubernetes kubelet v1.13.6 and v1.14.2 only - CVE-2019-11245 Tim Pepper

Tuesday, 11 June

Multiple vulnerabilities in Jenkins plugins Daniel Beck
CVE-2019-12749: DBusServer DBUS_COOKIE_SHA1 authentication bypass Simon McVittie

Thursday, 13 June

X41 D-Sec GmbH Security Advisory X41-2019-001: Heap-based buffer overflow in Thunderbird X41 D-Sec GmbH Advisories
X41 D-Sec GmbH Security Advisory X41-2019-002: Heap-based buffer overflow in Thunderbird X41 D-Sec GmbH Advisories
X41 D-Sec GmbH Security Advisory X41-2019-003: Stack-based buffer overflow in Thunderbird X41 D-Sec GmbH Advisories
X41 D-Sec GmbH Security Advisory X41-2019-004: Type confusion in Thunderbird X41 D-Sec GmbH Advisories

Friday, 14 June

Re: X41 D-Sec GmbH Security Advisory X41-2019-001: Heap-based buffer overflow in Thunderbird Brandon Perry
Re: X41 D-Sec GmbH Security Advisory X41-2019-001: Heap-based buffer overflow in Thunderbird zugtprgfwprz
Re: X41 D-Sec GmbH Security Advisory X41-2019-001: Heap-based buffer overflow in Thunderbird Stuart D. Gathman

Saturday, 15 June

Apache::Session's use of md5 and more Raphael Geissert
Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Alex Gaynor
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Greg KH
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Bob Friesenhahn
Re: Apache::Session's use of md5 and more Solar Designer
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Hanno Böck
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Alex Gaynor
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Bob Friesenhahn
GraphicsMagick 1.3.32 security fixes, plus one of special mention Bob Friesenhahn
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz David A. Wheeler
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Alan Coopersmith

Sunday, 16 June

Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Solar Designer
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Bob Friesenhahn
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Solar Designer

Monday, 17 June

Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Robert Watson
Re: Apache::Session's use of md5 and more Raphael Geissert
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Alexander Potapenko
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Marcus Meissner
Linux and FreeBSD Kernel: Multiple TCP-based remote denial of service issues Security Report
Re: Linux and FreeBSD Kernel: Multiple TCP-based remote denial of service issues Greg KH
Re: Linux and FreeBSD Kernel: Multiple TCP-based remote denial of service issues Loganaden Velvindron

Tuesday, 18 June

Re: Linux and FreeBSD Kernel: Multiple TCP-based remote denial of service issues Nicholas Luedtke
[CVE-2019-10085] Apache Allura XSS vulnerability Dave Brondsema

Friday, 21 June

Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Simon McVittie
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Yves-Alexis Perez
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Moritz Muehlenhoff
Re: Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Simon McVittie
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Ian Zimmerman
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Greg KH
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Yves-Alexis Perez
[ANNOUNCE] Incomplete fixes for CVE-2019-1002101, kubectl cp potential directory traversal - CVE-2019-11246 Joel Smith
PowerDNS Security Advisories 2019-04 and 2019-05 Erik Winkels

Sunday, 23 June

curl: Windows OpenSSL engine code injection Daniel Stenberg
Re: curl: Windows OpenSSL engine code injection Jakub Wilk
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Jakub Wilk

Monday, 24 June

Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Dmitry Vyukov
CVE-2019-12817: Linux kernel: powerpc: Unrelated processes may be able to read/write to each other's virtual memory Michael Ellerman
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Bob Friesenhahn
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Stuart D. Gathman
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Alexander Potapenko
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Bob Friesenhahn
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Bob Friesenhahn
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz David A. Wheeler
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz John Haxby
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Simon McVittie
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Alex Gaynor
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Seth Arnold

Tuesday, 25 June

Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Matthew Fernandez
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Bob Friesenhahn
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Alex Gaynor
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Alexander Potapenko
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Matthew Fernandez
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Jeff Law
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Florian Weimer
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Bob Friesenhahn
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Jeff Law
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Pascal Cuoq
Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Jeffrey Walton

Wednesday, 26 June

Re: Thousands of vulnerabilities, almost no CVEs: OSS-Fuzz Martin Carpenter
linux-distros membership application - Microsoft Sasha Levin

Thursday, 27 June

Re: linux-distros membership application - Microsoft Greg KH
Re: linux-distros membership application - Microsoft Solar Designer
Re: linux-distros membership application - Microsoft Greg KH
Re: linux-distros membership application - Microsoft Tyler Hicks
Re: linux-distros membership application - Microsoft Anthony Liguori
Re: linux-distros membership application - Microsoft Greg KH
Re: linux-distros membership application - Microsoft Sasha Levin
Re: linux-distros membership application - Microsoft Tyler Hicks
Re: linux-distros membership application - Microsoft John Haxby

Friday, 28 June

Re: linux-distros membership application - Microsoft Solar Designer
Re: linux-distros membership application - Microsoft Sasha Levin

Saturday, 29 June

Irssi 1.2.1/1.1.3/1.0.8: CVE-2019-13045 Ailin Nemui

Sunday, 30 June

Re: linux-distros membership application - Microsoft Simon Lees