βΌ CVE-2021-39515 βΌ
π Read
via "National Vulnerability Database".
An issue was discovered in libjpeg through 2020021. A NULL pointer dereference exists in the function SampleInterleavedLSScan::ParseMCU() located in sampleinterleavedlsscan.cpp. It allows an attacker to cause Denial of Service.π Read
via "National Vulnerability Database".
βΌ CVE-2021-39595 βΌ
π Read
via "National Vulnerability Database".
An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function rfx_alloc() located in mem.c. It allows an attacker to cause code Execution.π Read
via "National Vulnerability Database".
βΌ CVE-2021-39590 βΌ
π Read
via "National Vulnerability Database".
An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function params_dump() located in abc.c. It allows an attacker to cause Denial of Service.π Read
via "National Vulnerability Database".
βΌ CVE-2021-39533 βΌ
π Read
via "National Vulnerability Database".
An issue was discovered in libslax through v0.22.1. slaxLexer() in slaxlexer.c has a heap-based buffer overflow.π Read
via "National Vulnerability Database".
βΌ CVE-2021-39532 βΌ
π Read
via "National Vulnerability Database".
An issue was discovered in libslax through v0.22.1. A NULL pointer dereference exists in the function slaxLexer() located in slaxlexer.c. It allows an attacker to cause Denial of Service.π Read
via "National Vulnerability Database".
βΌ CVE-2021-32268 βΌ
π Read
via "National Vulnerability Database".
Buffer overflow vulnerability in function gf_fprintf in os_file.c in gpac through 20200801, allows attackers to execute arbitrary code.π Read
via "National Vulnerability Database".
βΌ CVE-2021-29819 βΌ
π Read
via "National Vulnerability Database".
IBM Jazz for Service Management and IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204346.π Read
via "National Vulnerability Database".
βΌ CVE-2021-39574 βΌ
π Read
via "National Vulnerability Database".
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function pool_read() located in pool.c. It allows an attacker to cause code Execution.π Read
via "National Vulnerability Database".
βΌ CVE-2020-20894 βΌ
π Read
via "National Vulnerability Database".
Buffer Overflow vulnerability in function gaussian_blur in libavfilter/vf_edgedetect.c in Ffmpeg 4.2.1, allows attackers to cause a Denial of Service or other unspecified impacts.π Read
via "National Vulnerability Database".
βΌ CVE-2021-32289 βΌ
π Read
via "National Vulnerability Database".
An issue was discovered in heif through through v3.6.2. A NULL pointer dereference exists in the function convertByteStreamToRBSP() located in nalutil.cpp. It allows an attacker to cause Denial of Service.π Read
via "National Vulnerability Database".
βΌ CVE-2021-29809 βΌ
π Read
via "National Vulnerability Database".
IBM Jazz for Service Management and IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204270.π Read
via "National Vulnerability Database".
βΌ CVE-2021-38090 βΌ
π Read
via "National Vulnerability Database".
Integer Overflow vulnerability in function filter16_roberts in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to cause a Denial of Service or other unspecified impacts.π Read
via "National Vulnerability Database".
βΌ CVE-2021-39514 βΌ
π Read
via "National Vulnerability Database".
An issue was discovered in libjpeg through 2020021. An uncaught floating point exception in the function ACLosslessScan::ParseMCU() located in aclosslessscan.cpp. It allows an attacker to cause Denial of Service.π Read
via "National Vulnerability Database".
βΌ CVE-2021-39539 βΌ
π Read
via "National Vulnerability Database".
An issue was discovered in pdftools through 20200714. A NULL pointer dereference exists in the function node::BDCNode::~BDCNode() located in bdcnode.cpp. It allows an attacker to cause Denial of Service.π Read
via "National Vulnerability Database".
βΌ CVE-2021-39537 βΌ
π Read
via "National Vulnerability Database".
An issue was discovered in ncurses through v6.2-1. _nc_captoinfo in captoinfo.c has a heap-based buffer overflow.π Read
via "National Vulnerability Database".
β Payment API Bungling Exposes Millions of Usersβ Payment Data β
π Read
via "Threat Post".
Misconfigured APIs make any app risky, but when youβre talking about financial apps, youβre talking about handing neβer-do-wells the power to turn your pockets inside-out.π Read
via "Threat Post".
Threat Post
Payment API Bungling Exposes Millions of Usersβ Payment Data
Misconfigured APIs make any app risky, but when youβre talking about financial apps, youβre talking about handing neβer-do-wells the power to turn your pockets inside-out.
π Cyberattack at Eyecare Office Indicative of Shifting Healthcare Breach Trends π
π Read
via "".
Large hospitals are making headlines as they continue to get hit by ransomware but smaller outpatient facilities are getting breached just as often.π Read
via "".
Digital Guardian
Cyberattack at Eyecare Office Indicative of Shifting Healthcare Breach Trends
Large hospitals are making headlines as they continue to get hit by ransomware but smaller outpatient facilities are getting breached just as often.
β Europol Breaks Open Extensive Mafia Cybercrime Ring β
π Read
via "Threat Post".
Organized crime ring thrived on violence, intimidation and $12 million in online fraud profits.π Read
via "Threat Post".
Threat Post
Europol Breaks Open Extensive Mafia Cybercrime Ring
Organized crime ring thrived on violence, intimidation and $12 million in online fraud profits.
βΌ CVE-2020-19915 βΌ
π Read
via "National Vulnerability Database".
Cross Site Scripting (XSS vulnerability exists in WUZHI CMS 4.1.0 via the [mailbox username in index.php.π Read
via "National Vulnerability Database".
βΌ CVE-2021-32838 βΌ
π Read
via "National Vulnerability Database".
Flask-RESTX (pypi package flask-restx) is a community driven fork of Flask-RESTPlus. Flask-RESTX before version 0.5.1 is vulnerable to ReDoS (Regular Expression Denial of Service) in email_regex. This is fixed in version 0.5.1.π Read
via "National Vulnerability Database".
π¦Ώ Windows 11 prep: How to convert MBR hard drive partitions to GPT π¦Ώ
π Read
via "Tech Republic".
For added security, Windows 11 will forgo the older MBR partition scheme and use GPT instead. That may require users to convert their older hard drives. Here is how to do it.π Read
via "Tech Republic".
TechRepublic
Windows 11 prep: How to convert MBR hard drive partitions to GPT
For added security, Windows 11 will forgo the older MBR partition scheme and use GPT instead. That may require users to convert their older hard drives. Here is how to do it.