Internet Explorer 11 – Use-After-Free
Internet Explorer 11 – Use-After-Free
Tea LaTex 1.0 – Remote Code Execution (Unauthenticated)
VTENEXT 19 CE – Remote Code Execution
Gnome Fonts Viewer 3.34.0 – Heap Corruption
ZTE Router F602W – Captcha Bypass
CuteNews 2.1.2 – Remote Code Execution
Tiandy IPC and NVR 9.12.7 – Credential Disclosure
Yaws versions 1.81 through 2.0.7 suffer from remote OS command injection and XML external entity injection vulnerabilities.
The CloundExperienceHostBroker hosts unsafe COM objects accessible to a normal user leading to elevation of privilege.
The Qualcomm Adreno GPU shares a global mapping called a “scratch” buffer with the Adreno KGSL kernel driver. The contents of the scratch buffer can be overwritten by untrusted GPU…