No Image

USN-4556-1: netqmail vulnerabilities

2020-09-30 KENNETH 0

USN-4556-1: netqmail vulnerabilities It was discovered that netqmail did not properly handle certain input. Both remote and local attackers could use this vulnerability to cause netqmail to crash or execute arbitrary code. (CVE-2005-1513, CVE-2005-1514, CVE-2005-1515) It was discovered that netqmail did not properly handle certain input when validating email addresses. An attacker could use this to bypass email address validation. (CVE-2020-3811) It was discovered that netqmail did not properly handle certain input when validating email addresses. An attacker could use this vulnerability to cause netqmail to disclose sensitive information. (CVE-2020-3812) Source: USN-4556-1: netqmail vulnerabilities

No Image

USN-4547-2: SSVNC vulnerabilities

2020-09-29 KENNETH 0

USN-4547-2: SSVNC vulnerabilities It was discovered that the LibVNCClient vendored in SSVNC incorrectly handled certain packet lengths. A remote attacker could possibly use this issue to obtain sensitive information, cause a denial of service, or execute arbitrary code. (CVE-2018-20020, CVE-2018-20021, CVE-2018-20022, CVE-2018-2024) Source: USN-4547-2: SSVNC vulnerabilities

No Image

USN-4554-1: libPGF vulnerability

2020-09-29 KENNETH 0

USN-4554-1: libPGF vulnerability It was discovered that libPGF lacked proper validation when opening a specially crafted PGF file. An attacker could possibly use this issue to cause a denial of service. Source: USN-4554-1: libPGF vulnerability

No Image

USN-4552-1: Pam-python vulnerability

2020-09-29 KENNETH 0

USN-4552-1: Pam-python vulnerability Malte Kraus discovered that Pam-python mishandled certain environment variables. A local attacker could potentially use this vulnerability to execute programs as root. Source: USN-4552-1: Pam-python vulnerability

No Image

USN-4553-1: Teeworlds vulnerability

2020-09-29 KENNETH 0

USN-4553-1: Teeworlds vulnerability It was discovered that Teeworlds server did not properly handler certain network traffic. A remote, unauthenticated attacker could use this vulnerability to cause Teeworlds server to crash. Source: USN-4553-1: Teeworlds vulnerability