CB Exploits http://feed.informer.com/digests/OVV6DB77XY/feeder CB Exploits Respective post owners and feed distributors Sun, 11 Jan 2015 23:18:05 +0000 Feed Informer http://feed.informer.com/ Gentoo Linux Security Advisory 202407-09 https://packetstormsecurity.com/files/179306/glsa-202407-09.txt Files ≈ Packet Storm urn:uuid:791bed6d-1296-c6ec-81a8-c28647c2acc9 Tue, 02 Jul 2024 15:10:17 +0000 Gentoo Linux Security Advisory 202407-9 - A vulnerability has been discovered in OpenSSH, which can lead to remote code execution with root privileges. Versions greater than or equal to 9.7_p1-r6 are affected. WordPress FooGallery 2.4.16 Cross Site Scripting https://packetstormsecurity.com/files/179305/foogallery2416-xss.txt Files ≈ Packet Storm urn:uuid:0af5992f-bab4-987e-d363-c96d371c4d82 Tue, 02 Jul 2024 15:09:11 +0000 WordPress FooGallery plugin version 2.4.16 suffers from a persistent cross site scripting vulnerability. WordPress Gallery 2.3.6 Cross Site Scripting https://packetstormsecurity.com/files/179304/wpgallery236-xss.txt Files ≈ Packet Storm urn:uuid:4e16e8f7-025a-fcf3-f32b-23c2eda2a538 Tue, 02 Jul 2024 15:08:16 +0000 WordPress Gallery version 2.3.6 suffers from a persistent cross site scripting vulnerability. Ubuntu Security Notice USN-6851-2 https://packetstormsecurity.com/files/179303/USN-6851-2.txt Files ≈ Packet Storm urn:uuid:688ca868-4a3c-3aee-726f-d0e11088319c Tue, 02 Jul 2024 15:07:35 +0000 Ubuntu Security Notice 6851-2 - USN-6851-1 fixed vulnerabilities in Netplan. The update lead to the discovery of a regression in netplan which caused systemctl enable to fail on systems without dbus. This update fixes the problem. Ubuntu Security Notice USN-6844-2 https://packetstormsecurity.com/files/179302/USN-6844-2.txt Files ≈ Packet Storm urn:uuid:377d462a-ebe3-c7d2-8426-ed38daf5b14a Tue, 02 Jul 2024 15:07:25 +0000 Ubuntu Security Notice 6844-2 - USN-6844-1 fixed vulnerabilities in the CUPS package. The update lead to the discovery of a regression in CUPS with regards to how the cupsd daemon handles Listen configuration directive. This update fixes the problem. Rory McNamara discovered that when starting the cupsd server with a Listen configuration item, the cupsd process fails to validate if bind call passed. An attacker could possibly trick cupsd to perform an arbitrary chmod of the provided argument, providing world-writable access to the target. Red Hat Security Advisory 2024-4212-03 https://packetstormsecurity.com/files/179301/RHSA-2024-4212-03.txt Files ≈ Packet Storm urn:uuid:e43db5db-006c-3aeb-1391-369e6c97527e Tue, 02 Jul 2024 15:05:30 +0000 Red Hat Security Advisory 2024-4212-03 - An update for golang is now available for Red Hat Enterprise Linux 9. Red Hat Security Advisory 2024-4211-03 https://packetstormsecurity.com/files/179300/RHSA-2024-4211-03.txt Files ≈ Packet Storm urn:uuid:f3747b2e-2b05-97f9-198c-58bd7fb1dcf6 Tue, 02 Jul 2024 15:05:21 +0000 Red Hat Security Advisory 2024-4211-03 - An update for kernel is now available for Red Hat Enterprise Linux 8. Issues addressed include double free, memory leak, null pointer, spoofing, and use-after-free vulnerabilities. Red Hat Security Advisory 2024-4210-03 https://packetstormsecurity.com/files/179299/RHSA-2024-4210-03.txt Files ≈ Packet Storm urn:uuid:efc9dafc-46fe-5c44-a79b-4e67bc407234 Tue, 02 Jul 2024 15:05:11 +0000 Red Hat Security Advisory 2024-4210-03 - An update for the redhat-ds:11 module is now available for Red Hat Directory Server 11.9 for RHEL 8. Issues addressed include a denial of service vulnerability. Red Hat Security Advisory 2024-4209-03 https://packetstormsecurity.com/files/179298/RHSA-2024-4209-03.txt Files ≈ Packet Storm urn:uuid:73976cb4-d339-fcf7-2017-a2c2f8bb2691 Tue, 02 Jul 2024 15:05:03 +0000 Red Hat Security Advisory 2024-4209-03 - An update for the redhat-ds:11 module is now available for Red Hat Directory Server 11.2 for RHEL 8. Issues addressed include a denial of service vulnerability. PowerVR Driver Missing Sanitization https://packetstormsecurity.com/files/179297/GS20240702145847.tgz Files ≈ Packet Storm urn:uuid:0b2fb521-6512-fdd5-352e-3ca42b0e4a24 Tue, 02 Jul 2024 15:03:26 +0000 The PowerVR driver does not sanitize ZS-Buffer / MSAA scratch firmware addresses. Ubuntu Security Notice USN-6859-1 https://packetstormsecurity.com/files/179295/USN-6859-1.txt Files ≈ Packet Storm urn:uuid:8145dbb0-acc8-41b0-1a96-4823b5aa130f Mon, 01 Jul 2024 15:08:48 +0000 Ubuntu Security Notice 6859-1 - It was discovered that OpenSSH incorrectly handled signal management. A remote attacker could use this issue to bypass authentication and remotely access systems without proper credentials. Debian Security Advisory 5724-1 https://packetstormsecurity.com/files/179294/dsa-5724-1.txt Files ≈ Packet Storm urn:uuid:f200f006-a53e-33ea-abfc-b54b9ef44944 Mon, 01 Jul 2024 15:08:33 +0000 Debian Linux Security Advisory 5724-1 - The Qualys Threat Research Unit (TRU) discovered that OpenSSH, an implementation of the SSH protocol suite, is prone to a signal handler race condition. If a client does not authenticate within LoginGraceTime seconds (120 by default), then sshd's SIGALRM handler is called asynchronously and calls various functions that are not async-signal-safe. A remote unauthenticated attacker can take advantage of this flaw to execute arbitrary code with root privileges. This flaw affects sshd in its default configuration. Gentoo Linux Security Advisory 202407-08 https://packetstormsecurity.com/files/179293/glsa-202407-08.txt Files ≈ Packet Storm urn:uuid:c9b1979c-9ba3-67d8-7e36-304f662b8854 Mon, 01 Jul 2024 15:08:10 +0000 Gentoo Linux Security Advisory 202407-8 - Multiple vulnerabilities have been discovered in GNU Emacs and Org Mode, the worst of which could lead to arbitrary code execution. Versions greater than or equal to 26.3-r16:26 are affected. Gentoo Linux Security Advisory 202407-07 https://packetstormsecurity.com/files/179291/glsa-202407-07.txt Files ≈ Packet Storm urn:uuid:4b36d079-164e-ba8a-7943-7d7c1951f616 Mon, 01 Jul 2024 15:04:35 +0000 Gentoo Linux Security Advisory 202407-7 - A vulnerability has been discovered in cpio, which can lead to arbitrary code execution. Versions greater than or equal to 2.13-r1 are affected. Packet Storm New Exploits For June, 2024 https://packetstormsecurity.com/files/179296/202406-exploits.tgz Files ≈ Packet Storm urn:uuid:6b1ae0e4-8a0b-90a3-aa5e-f18344568612 Mon, 01 Jul 2024 15:03:38 +0000 This archive contains all of the 65 exploits added to Packet Storm in June, 2024. OpenSSH Server regreSSHion Remote Code Execution https://packetstormsecurity.com/files/179290/regresshion.txt Files ≈ Packet Storm urn:uuid:e02f1921-8764-1720-bf23-7251ecdd837c Mon, 01 Jul 2024 15:00:47 +0000 Qualys has discovered a a signal handler race condition vulnerability in OpenSSH's server, sshd. If a client does not authenticate within LoginGraceTime seconds (120 by default, 600 in old OpenSSH versions), then sshd's SIGALRM handler is called asynchronously, but this signal handler calls various functions that are not async-signal-safe - for example, syslog(). This race condition affects sshd in its default configuration. OpenSSH 9.8p1 https://packetstormsecurity.com/files/179292/openssh-9.8p1.tar.gz Files ≈ Packet Storm urn:uuid:cf6e0352-9e84-f773-bd90-857f0d02a4b5 Mon, 01 Jul 2024 15:00:31 +0000 This is a Linux/portable port of OpenBSD's excellent OpenSSH. OpenSSH is based on the last free version of Tatu Ylonen's SSH with all patent-encumbered algorithms removed, all known security bugs fixed, new features reintroduced, and many other clean-ups. Ubuntu Security Notice USN-6858-1 https://packetstormsecurity.com/files/179289/USN-6858-1.txt Files ≈ Packet Storm urn:uuid:13aaa55d-2807-9252-9412-52d36a4b8a97 Mon, 01 Jul 2024 14:58:33 +0000 Ubuntu Security Notice 6858-1 - It was discovered that eSpeak NG did not properly manage memory under certain circumstances. An attacker could possibly use this issue to cause a denial of service, or execute arbitrary code. Gentoo Linux Security Advisory 202407-06 https://packetstormsecurity.com/files/179288/glsa-202407-06.txt Files ≈ Packet Storm urn:uuid:fec84cb8-c44e-f78d-9105-e17bb752452d Mon, 01 Jul 2024 14:58:16 +0000 Gentoo Linux Security Advisory 202407-6 - Multiple vulnerabilities have been discovered in cryptography, the worst of which could lead to a denial of service. Versions greater than or equal to 42.0.4 are affected. Gentoo Linux Security Advisory 202407-05 https://packetstormsecurity.com/files/179287/glsa-202407-05.txt Files ≈ Packet Storm urn:uuid:da8ba29e-7b9f-510f-f23f-64189e603d95 Mon, 01 Jul 2024 14:58:01 +0000 Gentoo Linux Security Advisory 202407-5 - A vulnerability has been discovered in SSSD, which can lead to arbitrary code execution. Versions greater than or equal to 2.5.2-r1 are affected. Simple Laboratory Management System 1.0 SQL Injection https://packetstormsecurity.com/files/179286/simplelabms10-sql.txt Files ≈ Packet Storm urn:uuid:b9c6f3ac-45f3-af58-87e1-ee99ff2370c8 Mon, 01 Jul 2024 14:57:02 +0000 Simple Laboratory Management System version 1.0 suffers from a remote time-based SQL injection vulnerability. Ubuntu Security Notice USN-6855-1 https://packetstormsecurity.com/files/179285/USN-6855-1.txt Files ≈ Packet Storm urn:uuid:0dec63ea-6dbd-78ed-fd76-629641a1f98e Mon, 01 Jul 2024 14:55:42 +0000 Ubuntu Security Notice 6855-1 - Mansour Gashasbi discovered that libcdio incorrectly handled certain memory operations when parsing an ISO file, leading to a buffer overflow vulnerability. An attacker could use this to cause a denial of service or possibly execute arbitrary code. Gentoo Linux Security Advisory 202406-06 https://packetstormsecurity.com/files/179284/glsa-202406-06.txt Files ≈ Packet Storm urn:uuid:7d156039-28b1-c9c6-e388-0868d2ef4269 Mon, 01 Jul 2024 14:55:27 +0000 Gentoo Linux Security Advisory 202406-6 - Multiple vulnerabilities have been discovered in GStreamer and GStreamer Plugins, the worst of which could lead to code execution. Versions greater than or equal to 1.22.11-r1 are affected. Azon Dominator Affiliate Marketing Script SQL Injection https://packetstormsecurity.com/files/179283/azondominator-sql.txt Files ≈ Packet Storm urn:uuid:cead879f-3161-4d18-dbc0-7e96448223e5 Mon, 01 Jul 2024 14:54:31 +0000 Azon Dominator Affiliate Marketing Script suffers from a remote SQL injection vulnerability. Gentoo Linux Security Advisory 202407-02 https://packetstormsecurity.com/files/179282/glsa-202407-02.txt Files ≈ Packet Storm urn:uuid:88269271-dbca-dd94-4f39-36b296082c73 Mon, 01 Jul 2024 14:53:46 +0000 Gentoo Linux Security Advisory 202407-2 - A vulnerability has been discovered in SDL_ttf, which can lead to arbitrary memory writes. Versions greater than or equal to 2.20.0 are affected. [remote] - Android - 'BadKernel' Remote Code Execution https://www.exploit-db.com/exploits/40846/?rss Exploit-DB updates urn:uuid:7213810f-5552-7814-4ea6-9c5b6793bee1 Mon, 28 Nov 2016 00:00:00 +0000 Android - 'BadKernel' Remote Code Execution [remote] - VX Search Enterprise 9.1.12 - Buffer Overflow https://www.exploit-db.com/exploits/40830/?rss Exploit-DB updates urn:uuid:12d46672-f75e-d6d3-386d-21353fba414c Mon, 28 Nov 2016 00:00:00 +0000 VX Search Enterprise 9.1.12 - Buffer Overflow [remote] - Sync Breeze Enterprise 9.1.16 - Buffer Overflow https://www.exploit-db.com/exploits/40831/?rss Exploit-DB updates urn:uuid:1d3ab3ce-1b33-b1bc-4895-d960a547e154 Mon, 28 Nov 2016 00:00:00 +0000 Sync Breeze Enterprise 9.1.16 - Buffer Overflow [remote] - Disk Sorter Enterprise 9.1.12 - Buffer Overflow https://www.exploit-db.com/exploits/40833/?rss Exploit-DB updates urn:uuid:d50a19a9-be14-5611-7f3a-46920bb8ea98 Mon, 28 Nov 2016 00:00:00 +0000 Disk Sorter Enterprise 9.1.12 - Buffer Overflow [remote] - Dup Scout Enterprise 9.1.14 - Buffer Overflow https://www.exploit-db.com/exploits/40832/?rss Exploit-DB updates urn:uuid:e38d1b84-2116-bef4-ea05-fe230f183ddf Mon, 28 Nov 2016 00:00:00 +0000 Dup Scout Enterprise 9.1.14 - Buffer Overflow [remote] - Disk Savvy Enterprise 9.1.14 - Buffer Overflow https://www.exploit-db.com/exploits/40834/?rss Exploit-DB updates urn:uuid:54adf406-7b83-e00b-8a43-a062d76bbf1f Mon, 28 Nov 2016 00:00:00 +0000 Disk Savvy Enterprise 9.1.14 - Buffer Overflow [remote] - Disk Pulse Enterprise 9.1.16 - Buffer Overflow https://www.exploit-db.com/exploits/40835/?rss Exploit-DB updates urn:uuid:930ea603-e174-0de5-5954-4ce398f71c89 Mon, 28 Nov 2016 00:00:00 +0000 Disk Pulse Enterprise 9.1.16 - Buffer Overflow [webapps] - Tenda/Dlink/Tplink TD-W8961ND - 'DHCP' Cross-Site Scripting https://www.exploit-db.com/exploits/40837/?rss Exploit-DB updates urn:uuid:f5702f1a-b06e-fbbe-72d4-a6e1f9adfa8e Mon, 28 Nov 2016 00:00:00 +0000 Tenda/Dlink/Tplink TD-W8961ND - 'DHCP' Cross-Site Scripting [dos] - NTP 4.2.8p3 - Denial of Service https://www.exploit-db.com/exploits/40840/?rss Exploit-DB updates urn:uuid:019e3ab0-30c8-9c52-989a-647d4416149a Mon, 28 Nov 2016 00:00:00 +0000 NTP 4.2.8p3 - Denial of Service [local] - Linux Kernel 2.6.22 < 3.9 - 'Dirty COW' PTRACE_POKEDATA Race Condition Privilege Escalation (/etc/passwd) https://www.exploit-db.com/exploits/40839/?rss Exploit-DB updates urn:uuid:48083d18-0644-79cf-ee02-ff2b089e48fa Mon, 28 Nov 2016 00:00:00 +0000 Linux Kernel 2.6.22 < 3.9 - 'Dirty COW' PTRACE_POKEDATA Race Condition Privilege Escalation (/etc/passwd)