Bugtraq: by author

54 messages starting Feb 20 19 and ending Feb 10 19
Date index | Thread index | Author index


Adam Gowdiak

[SRP-2018-02] Details of a vulnerability in STMicroelectronics' chipset Adam Gowdiak (Feb 20)

advisories

[CORE-2018-0012] - Cisco WebEx Meetings Elevation of Privilege Vulnerability Version 2 advisories (Feb 28)
[SAUTH-2019-0001] - Micro Focus Filr Multiple Vulnerabilities advisories (Feb 20)

Alessandro Ghedini

[SECURITY] [DSA 4386-1] curl security update Alessandro Ghedini (Feb 06)

Apple Product Security

APPLE-SA-2019-2-07-2 macOS Mojave 10.14.3 Supplemental Update Apple Product Security (Feb 07)
APPLE-SA-2019-2-07-1 iOS 12.1.4 Apple Product Security (Feb 07)
APPLE-SA-2019-2-07-3 Shortcuts 2.1.3 for iOS Apple Product Security (Feb 07)

Asterisk Security Team

AST-2019-001: Remote crash vulnerability with SDP protocol violation Asterisk Security Team (Feb 28)

David Coomber

Qkr! with MasterPass iOS Application - MITM SSL Certificate Vulnerability (CVE-2019-6702) David Coomber (Feb 13)

FreeBSD Security Advisories

FreeBSD Security Advisory FreeBSD-SA-19:01.syscall FreeBSD Security Advisories (Feb 05)
FreeBSD Security Advisory FreeBSD-SA-19:02.fd FreeBSD Security Advisories (Feb 05)

Kevin Kotas

CA20190212-01: Security Notice for CA Privileged Access Manager Kevin Kotas (Feb 13)

Kingkaustubh

KSA-DEV-001: CVE-2018-19524 : StackOverflow in Multiple Skyworth GPON HomeGateways and Optical Network terminals. Kingkaustubh (Feb 10)

Krzysztof Burghardt

DASAN H665 has vendor backdoor built into BusyBox’s /bin/login Krzysztof Burghardt (Feb 17)

Michael Catanzaro

WebKitGTK+ and WPE WebKit Security Advisory WSA-2019-0001 Michael Catanzaro (Feb 10)

Michael Gilbert

[SECURITY] [DSA 4395-2] chromium regression update Michael Gilbert (Feb 27)
[SECURITY] [DSA 4395-1] chromium security update Michael Gilbert (Feb 18)

Moritz Muehlenhoff

[SECURITY] [DSA 4399-1] ikiwiki security update Moritz Muehlenhoff (Feb 28)
[SECURITY] [DSA 4381-1] libreoffice security update Moritz Muehlenhoff (Feb 03)
[SECURITY] [DSA 4380-1] golang-1.8 security update Moritz Muehlenhoff (Feb 03)
[SECURITY] [DSA 4382-1] rssh security update Moritz Muehlenhoff (Feb 03)
[SECURITY] [DSA 4394-1] rdesktop security update Moritz Muehlenhoff (Feb 18)
[SECURITY] [DSA 4390-1] flatpak security update Moritz Muehlenhoff (Feb 13)
[SECURITY] [DSA 4400-1] openssl1.0 security update Moritz Muehlenhoff (Feb 28)
[SECURITY] [DSA 4392-1] thunderbird security update Moritz Muehlenhoff (Feb 17)
[SECURITY] [DSA 4377-3] rssh security update Moritz Muehlenhoff (Feb 24)
[SECURITY] [DSA 4396-1] ansible security update Moritz Muehlenhoff (Feb 20)
[SECURITY] [DSA 4388-1] mosquitto security update Moritz Muehlenhoff (Feb 10)
[SECURITY] [DSA 4391-1] firefox-esr security update Moritz Muehlenhoff (Feb 14)
[SECURITY] [DSA 4379-1] golang-1.7 security update Moritz Muehlenhoff (Feb 03)
[SECURITY] [DSA 4398-1] php7.0 security update Moritz Muehlenhoff (Feb 28)

Pedro Ribeiro

[Multiple CVE] - Cisco Identity Services Engine unauth stored XSS to RCE as root Pedro Ribeiro (Feb 04)

RedForce Advisory

SHAREit for Android Authentication Bypass and Remote File Download RedForce Advisory (Feb 26)

Salvatore Bonaccorso

[SECURITY] [DSA 4377-2] rssh regression update Salvatore Bonaccorso (Feb 12)
[SECURITY] [DSA 4384-1] libgd2 security update Salvatore Bonaccorso (Feb 04)
[SECURITY] [DSA 4385-1] dovecot security update Salvatore Bonaccorso (Feb 05)
[SECURITY] [DSA 4397-1] ldb security update Salvatore Bonaccorso (Feb 28)
[SECURITY] [DSA 4383-1] libvncserver security update Salvatore Bonaccorso (Feb 03)
[SECURITY] [DSA 4388-2] mosquitto regression update Salvatore Bonaccorso (Feb 17)
[SECURITY] [DSA 4393-1] systemd security update Salvatore Bonaccorso (Feb 18)

Sebastien Delafond

[SECURITY] [DSA 4389-1] libu2f-host security update Sebastien Delafond (Feb 12)

SEC Consult Vulnerability Lab

SEC Consult SA-20190205-0 :: Multiple vulnerabilities in OSCI-Transport Library 1.2 for German e-Government SEC Consult Vulnerability Lab (Feb 05)

simon . moser

[SYSS-2018-032] COYO - Cross-Site Scripting simon . moser (Feb 01)

Slackware Security Team

[slackware-security] lxc (SSA:2019-043-01) Slackware Security Team (Feb 13)
[slackware-security] mariadb (SSA:2019-032-01) Slackware Security Team (Feb 03)
[slackware-security] file (SSA:2019-054-01) Slackware Security Team (Feb 24)
[slackware-security] curl (SSA:2019-037-01) Slackware Security Team (Feb 06)
[slackware-security] mozilla-firefox (SSA:2019-044-01) Slackware Security Team (Feb 13)
[slackware-security] mozilla-thunderbird (SSA:2019-045-01) Slackware Security Team (Feb 14)
[slackware-security] openssl (slackware 14.2) (SSA:2019-057-01) Slackware Security Team (Feb 27)
[slackware-security] php (SSA:2019-038-01) Slackware Security Team (Feb 07)

Stefan Kanthak

Defense in depth -- the Microsoft way (part 60): same old sins and incompetence! Stefan Kanthak (Feb 26)

Stig Palmquist

CVE-2018-20162: Digi TransPort LR54 Restricted Shell Escape Stig Palmquist (Feb 17)

Yves-Alexis Perez

[SECURITY] [DSA 4387-1] openssh security update Yves-Alexis Perez (Feb 10)