πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2022-47653 β€Ό

GPAC MP4box 2.1-DEV-rev593-g007bf61a0 is vulnerable to Buffer Overflow in eac3_update_channels function of media_tools/av_parsers.c:9113

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-46489 β€Ό

GPAC version 2.1-DEV-rev505-gb9577e6ad-master was discovered to contain a memory leak via the gf_isom_box_parse_ex function at box_funcs.c.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47659 β€Ό

GPAC MP4box 2.1-DEV-rev644-g5c4df2a67 is vulnerable to Buffer Overflow in gf_bs_read_data

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47662 β€Ό

GPAC MP4Box 2.1-DEV-rev649-ga8f438d20 has a segment fault (/stack overflow) due to infinite recursion in Media_GetSample isomedia/media.c:662

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47654 β€Ό

GPAC MP4box 2.1-DEV-rev593-g007bf61a0 is vulnerable to Buffer Overflow in gf_hevc_read_sps_bs_internal function of media_tools/av_parsers.c:8261

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-46490 β€Ό

GPAC version 2.1-DEV-rev505-gb9577e6ad-master was discovered to contain a memory leak via the afrt_box_read function at box_code_adobe.c.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2014-125041 β€Ό

A vulnerability classified as critical was found in Miccighel PR-CWT. This vulnerability affects unknown code. The manipulation leads to sql injection. The name of the patch is e412127d07004668e5a213932c94807d87067a1f. It is recommended to apply a patch to fix this issue. VDB-217486 is the identifier assigned to this vulnerability.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47094 β€Ό

GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to Null pointer dereference via filters/dmx_m2ts.c:343 in m2tsdmx_declare_pid

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2015-10015 β€Ό

A vulnerability, which was classified as critical, has been found in glidernet ogn-live. This issue affects some unknown processing. The manipulation leads to sql injection. The name of the patch is bc0f19965f760587645583b7624d66a260946e01. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217487.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47089 β€Ό

GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to Buffer Overflow via gf_vvc_read_sps_bs_internal function of media_tools/av_parsers.c

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47093 β€Ό

GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to heap use-after-free via filters/dmx_m2ts.c:470 in m2tsdmx_declare_pid

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47656 β€Ό

GPAC MP4box 2.1-DEV-rev617-g85ce76efd is vulnerable to Buffer Overflow in gf_hevc_read_sps_bs_internal function of media_tools/av_parsers.c:8273

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47663 β€Ό

GPAC MP4box 2.1-DEV-rev649-ga8f438d20 is vulnerable to buffer overflow in h263dmx_process filters/reframe_h263.c:609

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47088 β€Ό

GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to Buffer Overflow.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47655 β€Ό

Libde265 1.0.9 is vulnerable to Buffer Overflow in function void put_qpel_fallback<unsigned short>

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47087 β€Ό

GPAC MP4box 2.1-DEV-rev574-g9d5bb184b has a Buffer overflow in gf_vvc_read_pps_bs_internal function of media_tools/av_parsers.c

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47086 β€Ό

GPAC MP4Box v2.1-DEV-rev574-g9d5bb184b contains a segmentation violation via the function gf_sm_load_init_swf at scene_manager/swf_parse.c

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-47660 β€Ό

GPAC MP4Box 2.1-DEV-rev644-g5c4df2a67 is has an integer overflow in isomedia/isom_write.c

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-4378 β€Ό

A stack overflow flaw was found in the Linux kernel's SYSCTL subsystem in how a user changes certain kernel parameters and variables. This flaw allows a local user to crash or potentially escalate their privileges on the system.

πŸ“– Read

via "National Vulnerability Database".
⚠ Serious Security: How to improve cryptography, resist supply chain attacks, and handle data breaches ⚠

Lessons for us all: improve cryptography, fight cybercrime, own your supply chain... and don't steal my data and then pretend you're sorry.

πŸ“– Read

via "Naked Security".
⚠ S3 Ep116: Last straw for LastPass? Is crypto doomed? [Audio + Text] ⚠

Lots of big issues this week: breaches, encryption, supply chains and patching problems. Listen now! (Full transcript inside.)

πŸ“– Read

via "Naked Security".