Subscribe via feed.
Archive for July, 2019

[dos] Microsoft DirectWrite / AFDKO – Interpreter Stack Underflow in OpenType Font Handling Due to Missing CHKUFLOW

Posted by deepcore under Security (No Respond)

Microsoft DirectWrite / AFDKO – Interpreter Stack Underflow in OpenType Font Handling Due to Missing CHKUFLOW

Tags: ,

[dos] Microsoft DirectWrite / AFDKO – Use of Uninitialized Memory While Freeing Resources in var_loadavar

Posted by deepcore under Security (No Respond)

Microsoft DirectWrite / AFDKO – Use of Uninitialized Memory While Freeing Resources in var_loadavar

Tags: ,

[dos] Microsoft DirectWrite / AFDKO – Stack-Based Buffer Overflow in do_set_weight_vector_cube for Large nAxes

Posted by deepcore under Security (No Respond)

Microsoft DirectWrite / AFDKO – Stack-Based Buffer Overflow in do_set_weight_vector_cube for Large nAxes

Tags: ,

[dos] Microsoft DirectWrite / AFDKO – Stack Corruption in OpenType Font Handling Due to Negative nAxes

Posted by deepcore under Security (No Respond)

Microsoft DirectWrite / AFDKO – Stack Corruption in OpenType Font Handling Due to Negative nAxes

Tags: ,

[dos] Microsoft DirectWrite / AFDKO – Stack Corruption in OpenType Font Handling Due to Negative cubeStackDepth

Posted by deepcore under Security (No Respond)

Microsoft DirectWrite / AFDKO – Stack Corruption in OpenType Font Handling Due to Negative cubeStackDepth

Tags: ,

[dos] Microsoft DirectWrite / AFDKO – Stack Corruption in OpenType Font Handling due to Out-of-Bounds cubeStackDepth

Posted by deepcore under Security (No Respond)

Microsoft DirectWrite / AFDKO – Stack Corruption in OpenType Font Handling due to Out-of-Bounds cubeStackDepth

Tags: ,

[dos] Mozilla Spidermonkey – Unboxed Objects Uninitialized Memory Access

Posted by deepcore under Security (No Respond)

Mozilla Spidermonkey – Unboxed Objects Uninitialized Memory Access

Tags: ,

[dos] Microsoft Windows – Font Subsetting DLL Heap-Based Out-of-Bounds Read in MergeFonts

Posted by deepcore under Security (No Respond)

Microsoft Windows – Font Subsetting DLL Heap-Based Out-of-Bounds Read in MergeFonts

Tags: ,

TP-Link TL-WR940N / TL-WR941ND Cross Site Request Forgery

Posted by deepcore under exploit (No Respond)

TP-Link TL-WR940N and TL-WR941ND suffer from brute force and cross site request forgery vulnerabilities.

WordPress Like Button 1.6.0 Authentication Bypass

Posted by deepcore under exploit (No Respond)

WordPress Like Button plugin version 1.6.0 suffers from an authentication bypass vulnerability.