Subscribe via feed.
Archive for July, 2019

Microsoft DirectWrite / AFDKO OpenType NULL Pointer Dereference

Posted by deepcore under exploit (No Respond)

Microsoft DirectWrite / AFDKO suffers from a NULL pointer dereferences vulnerability in OpenType font handling while accessing empty dynarrays.

Microsoft DirectWrite / AFDKO OpenType Post Table Bugs

Posted by deepcore under exploit (No Respond)

Microsoft DirectWrite / AFDKO suffers from multiple bugs in OpenType font handling related to the “post” table.

Microsoft DirectWrite / AFDKO OpenType Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

Microsoft DirectWrite / AFDKO suffers from an out-of-bounds read vulnerability in OpenType font handling due to undefined FontName index.

Microsoft DirectWrite / AFDKO OpenType Out-Of-Bounds Read / Write

Posted by deepcore under exploit (No Respond)

Microsoft DirectWrite / AFDKO suffers from a heap-baeed out-of-bounds read/write vulnerability in OpenType font handling due to empty ROS strings.

Microsoft DirectWrite / AFDKO OpenType Stack Corruption

Posted by deepcore under exploit (No Respond)

Microsoft DirectWrite / AFDKO suffers from a stack corruption vulnerability in OpenType font handling while processing CFF blend DICT operator.

Microsoft Font Subsetting DLL ComputeFormat4CmapData Heap Corruption

Posted by deepcore under exploit (No Respond)

There is a Microsoft Font Subsetting DLL heap corruption vulnerability in ComputeFormat4CmapData.

Jenkins Dependency Graph View 0.13 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Jenkins Dependency Graph View plugin version 0.13 suffers from a persistent cross site scripting vulnerability.

SNMPc Enterprise Edition 9 / 10 Mapping Filename Buffer Overflow

Posted by deepcore under exploit (No Respond)

SNMPc Enterprise Edition versions 9 and 10 suffer from a mapping filename buffer overflow vulnerability.

Sitecore 9.0 Rev 171002 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Sitecore version 9.0 rev 171002 suffers from a persistent cross site scripting vulnerability.

Xymon useradm Command Execution

Posted by deepcore under exploit (No Respond)

This Metasploit module exploits a command injection vulnerability in Xymon versions before 4.3.25 which allows authenticated users to execute arbitrary operating system commands as the web server user. When adding a new user to the system via the web interface with useradm.sh, the user’s username and password are passed to htpasswd in a call to […]