Subscribe via feed.
Archive for June, 2018

Jenkins Mailer Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

Jenkins Mailer plugin versions prior to 1.20 suffer from a cross site request forgery vulnerability.

XNU Kernel MPTCP Head Overflow

Posted by deepcore under exploit (No Respond)

The XNU kernel suffers from a heap overflow vulnerability due to bad bounds checking in MPTCP.

macOS / iOS Kernel Heap Overflow

Posted by deepcore under exploit (No Respond)

The macOS and iOS kernels suffer from a heap overflow due to a lack of lower size check in getvolattrlist.

CGMiner 4.10.0 / BFGMiner 5.5.0 Buffer Overflow / Arbitrary File Write

Posted by deepcore under exploit (No Respond)

CGMiner versions 4.10.0 and below and BFGMiner versions 5.5.0 and below suffer from buffer overflow and path traversal vulnerabilities.

Ignite Realtime Openfire 3.7.1 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Ignite Realtime Openfire version 3.7.1 suffers from a cross site scripting vulnerability.

[dos] XNU Kernel – Heap Overflow Due to Bad Bounds Checking in MPTCP

Posted by deepcore under Security (No Respond)

XNU Kernel – Heap Overflow Due to Bad Bounds Checking in MPTCP

Tags: ,

[dos] Apple macOS Kernel – Use-After-Free Due to Lack of Locking in nvidia GeForce Driver

Posted by deepcore under Security (No Respond)

Apple macOS Kernel – Use-After-Free Due to Lack of Locking in nvidia GeForce Driver

Tags: ,

[dos] macOS/iOS Kernel – Heap Overflow Due to Lack of Lower Size Check in getvolattrlist

Posted by deepcore under Security (No Respond)

macOS/iOS Kernel – Heap Overflow Due to Lack of Lower Size Check in getvolattrlist

Tags: ,

[dos] PHP 7.2.2 – 'php_stream_url_wrap_http_ex' Buffer Overflow

Posted by deepcore under Security (No Respond)

PHP 7.2.2 – ‘php_stream_url_wrap_http_ex’ Buffer Overflow

Tags: ,

[webapps] Canon MF210/MF220 – Authenticaton Bypass

Posted by deepcore under Security (No Respond)

Canon MF210/MF220 – Authenticaton Bypass

Tags: ,