Security News

Vuln: Drupal Autocomplete Deluxe Module Cross Site Scripting Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
Drupal Autocomplete Deluxe Module Cross Site Scripting Vulnerability

Vuln: ISC BIND CVE-2016-9131 Remote Denial of Service Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
ISC BIND CVE-2016-9131 Remote Denial of Service Vulnerability

Vuln: Libimobiledevice Libplist CVE-2017-5209 Denial of Service Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
Libimobiledevice Libplist CVE-2017-5209 Denial of Service Vulnerability

Vuln: Multiple Huawei Products CVE-2017-2690 Local Denial of Service Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
Multiple Huawei Products CVE-2017-2690 Local Denial of Service Vulnerability

Vuln: Zimbra CVE-2016-3403 Multiple Cross Site Request Forgery Vulnerabilities

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
Zimbra CVE-2016-3403 Multiple Cross Site Request Forgery Vulnerabilities

Vuln: SAP Single Sign On Denial of Service Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
SAP Single Sign On Denial of Service Vulnerability

Vuln: PHPMailer CVE-2016-10033 Remote Code Execution Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
PHPMailer CVE-2016-10033 Remote Code Execution Vulnerability

Vuln: Oracle Java SE CVE-2016-5556 Remote Security Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
Oracle Java SE CVE-2016-5556 Remote Security Vulnerability

Vuln: Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7255 Local Privilege Escalation Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
Microsoft Windows Kernel 'Win32k.sys' CVE-2016-7255 Local Privilege Escalation Vulnerability

Vuln: Python CVE-2016-5636 Heap Buffer Overflow Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
Python CVE-2016-5636 Heap Buffer Overflow Vulnerability

Vuln: OpenSSL CVE-2016-6303 Integer Overflow Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
OpenSSL CVE-2016-6303 Integer Overflow Vulnerability

Vuln: Python 'urrlib2/urllib/httplib/http.client' HTTP Header Injection Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
Python 'urrlib2/urllib/httplib/http.client' HTTP Header Injection Vulnerability

Vuln: OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
OpenSSL CVE-2016-2178 Side Channel Attack Information Disclosure Vulnerability

Vuln: OpenSSL CVE-2016-6304 Denial of Service Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
OpenSSL CVE-2016-6304 Denial of Service Vulnerability

Vuln: SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
SSL/TLS Protocol CVE-2016-2183 Information Disclosure Vulnerability

Vuln: Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability

Security Focus Vulnerabilities - 12 January, 2017 - 00:00
Linux Kernel 'Ack Challenge' Information Disclosure Vulnerability

IKEv1 cipher suite configuration mismatch in Siemens SIMATIC CP 343-1 Advanced

Bug Traq - 11 January, 2017 - 14:34

Posted by Andrea Barisani on Jan 11

The following issue has been reported to Siemens ProductCERT in relation to
Siemens Security Advisory SSA-603476, published on 2016-11-21.

The issue has been treated with lower priority and treated outside the scope
of SSA-603476 due to its lower security impact.

As the finding is now addressed [1] the following details are published.

------------------------------------------------------------------------------

Summary: Inconsistency of...

Bugtraq: Bit Defender #39 - Auth Token Bypass Vulnerability

Security Focus Vulnerabilities - 11 January, 2017 - 14:10
Bit Defender #39 - Auth Token Bypass Vulnerability

Bugtraq: BlackBoard LMS 9.1 SP14 - (Title) Persistent Vulnerability

Security Focus Vulnerabilities - 11 January, 2017 - 12:50
BlackBoard LMS 9.1 SP14 - (Title) Persistent Vulnerability

[SECURITY] [DSA 3757-1] icedove security update

Bug Traq - 11 January, 2017 - 12:29

Posted by Moritz Muehlenhoff on Jan 11

-------------------------------------------------------------------------
Debian Security Advisory DSA-3757-1 security () debian org
https://www.debian.org/security/ Moritz Muehlenhoff
January 11, 2017 https://www.debian.org/security/faq
-------------------------------------------------------------------------

Package : icedove
CVE ID : CVE-2016-9893 CVE-2016-9895...
Syndicate content