[PHP] Severity: Notice Only variable references should be returned by reference on CodeIgniter-2.1

2020-10-16 KENNETH 0

Severity: Notice Only variable references should be returned by reference (아주) 구 버전의 CodeIgniter 에서 발생할 수 있는 오류     1. 환경 PHP-5.6 CodeIgniter-2.1.3   php-5.2 버전에서는 에러 출력X CodeIgniter-2.2 버전부터는 수정된 문제     2. 수정 파일명 : $CodeIgniter_PATH/system/core/Common.php line : 257     원래내용     변경  

No Image

USN-4585-1: Newsbeuter vulnerabilities

2020-10-16 KENNETH 0

USN-4585-1: Newsbeuter vulnerabilities It was discovered that Newsbeuter didn’t handle the command line input properly. An remote attacker could use it to ran remote code by crafting a special input file. (CVE-2017-12904) It was discovered that Newsbeuter didn’t handle metacharacters in its filename properly. An remote attacker could use it to ran remote code by crafting a special filename. (CVE-2017-14500) Source: USN-4585-1: Newsbeuter vulnerabilities

No Image

USN-4546-2: Firefox regressions

2020-10-16 KENNETH 0

USN-4546-2: Firefox regressions USN-4546-1 fixed vulnerabilities in Firefox. The update introduced various minor regressions. This update fixes the problem. We apologize for the inconvenience. Original advisory details: Multiple security issues were discovered in Firefox. If a user were tricked in to opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, conduct cross-site scripting (XSS) attacks, spoof the site displayed in the download dialog, or execute arbitrary code. Source: USN-4546-2: Firefox regressions

No Image

USN-4584-1: HtmlUnit vulnerability

2020-10-16 KENNETH 0

USN-4584-1: HtmlUnit vulnerability It was discovered that HtmlUnit incorrectly initialized Rhino engine. An Attacker could possibly use this issue to execute arbitrary Java code. Source: USN-4584-1: HtmlUnit vulnerability

No Image

USN-4589-2: Docker vulnerability

2020-10-16 KENNETH 0

USN-4589-2: Docker vulnerability USN-4589-1 fixed a vulnerability in containerd. This update provides the corresponding update for docker.io. Original advisory details: It was discovered that containerd could be made to expose sensitive information when processing URLs in container image manifests. A remote attacker could use this to trick the user and obtain the user’s registry credentials. Source: USN-4589-2: Docker vulnerability