A crash due to a heap-based out-of-bounds memory read can be observed in an ASAN build of latest stable libxml2 (2.9.3, released 4 days ago), by feeding a malformed file…
A crash due to a heap-based out-of-bounds memory read can be observed in an ASAN build of latest stable libxml2 (2.9.3, released 4 days ago), by feeding a malformed file…
The Comodo Anti-Virus GeekBuddy component suffers from a dll hijacking vulnerability.
Pulse CMS version 4.5.2 suffers from a local file inclusion vulnerability.
WP Good News Themes suffers from a client-side cross site scripting vulnerability.
Fing version 3.3.0 suffers from a persistent mail encoding vulnerability.
GpicView version 0.2.5 buffer overflow crash proof of concept exploit.
WordPress More Fields plugin versions 2.1 and below suffer from a cross site request forgery vulnerability.
A crash due to a use-after-free condition can be observed in an ASAN build of Wireshark (current git master), by feeding a malformed file to tshark.
This script exploits er, unsanitized env var passing in ASAN which leads to file clobbering as root when executing setuid root binaries compiled with ASAN. It uses an overwrite of…