Skip to content

Underground News

Header Image
Author

GitHub

925 Posts

Featured

Posted byGitHub
[github.com/sigstore/cosign] cosign’s `cosign verify-attestaton –type` can report a false positive if any attestation exists
Posted byGitHub
[github.com/sigstore/policy-controller] PolicyController before 0.2.1 may bypass attestation verification
Posted byGitHub
[nbconvert] nbconvert vulnerable to cross-site scripting (XSS) via multiple exploit paths
Posted byGitHub
[owning_ref] owning_ref vulnerable to multiple soundness issues

[supervisor] Incorrect Default Permissions in Supervisor

  • Posted inUncategorized
  • Posted byGitHub
  • 05/13/202207/02/2022

The XML-RPC server in supervisor before 3.0.1, 3.1.x before 3.1.4, 3.2.x before 3.2.4, and 3.3.x before 3.3.3 allows remote authenticated users to execute arbitrary commands via a crafted XML-RPC request, related to nested supervisord namespace lookups…

[puppet] Tarball permission preservation in puppet

  • Posted inUncategorized
  • Posted byGitHub
  • 05/13/202207/23/2022

When installing a module using the system tar, the PMT will filter filesystem permissions to a sane value. This may just be based on the user’s umask.
When using minitar, files are unpacked with whatever permissions are in the tarball. This is potentia…

[SharpZipLib] Improper Limitation of a Pathname to a Restricted Directory in SharpZipLib

  • Posted inUncategorized
  • Posted byGitHub
  • 05/13/202206/30/2022

SharpZipLib before 1.0 RC1 is vulnerable to directory traversal, allowing attackers to write to arbitrary files via a ../ (dot dot slash) in a Zip archive entry that is mishandled during extraction. This vulnerability is also known as ‘Zip-Slip’.
Refer…

[io.undertow:undertow-core] Uncontrolled Resource Consumption in Undertow

  • Posted inUncategorized
  • Posted byGitHub
  • 05/13/202206/30/2022

It was found that URLResource.getLastModified() in Undertow closes the file descriptors only when they are finalized which can cause file descriptors to exhaust. This leads to a file handler leak.
References

https://nvd.nist.gov/vuln/detail/CVE-2018-1…

[org.infinispan:infinispan-core] Deserialization of Untrusted Data in Infinispan

  • Posted inUncategorized
  • Posted byGitHub
  • 05/13/202206/30/2022

Infinispan permits improper deserialization of trusted data via XML and JSON transcoders under certain server configurations. A user with authenticated access to the server could send a malicious object to a cache configured to accept certain types of …

[ipython] Improper Neutralization of Input During Web Page Generation in IPython

  • Posted inUncategorized
  • Posted byGitHub
  • 05/13/202207/07/2022

Cross-site scripting (XSS) vulnerability in IPython before 3.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving JSON error messages and the /api/notebooks path.
References

https://nvd.nist.gov/vuln/detail/CVE-2015-4…

[passenger] Phusion Passenger information disclosure

  • Posted inUncategorized
  • Posted byGitHub
  • 05/13/202206/18/2022

In agent/Core/SpawningKit/Spawner.h in Phusion Passenger 5.1.10 (fixed in Passenger Open Source 5.1.11 and Passenger Enterprise 5.1.10), if Passenger is running as root, it is possible to list the contents of arbitrary files on a system by symlinking a…

[org.apache.camel:camel-core] Improper Control of Generation of Code in Apache Camel

  • Posted inUncategorized
  • Posted byGitHub
  • 05/13/202207/09/2022

Apache Camel before 2.9.7, 2.10.0 before 2.10.7, 2.11.0 before 2.11.2, and 2.12.0 allows remote attackers to execute arbitrary simple language expressions by including “$simple{}” in a CamelFileName message header to a (1) FILE or (2) FTP producer.
Ref…

[org.apache.httpcomponents:httpclient] Hostname verification in Apache HttpClient 4.3 was disabled by default

  • Posted inUncategorized
  • Posted byGitHub
  • 05/13/202206/10/2022

http/impl/client/HttpClientBuilder.java in Apache HttpClient 4.3.x before 4.3.1 does not ensure that X509HostnameVerifier is not null, which allows attackers to have unspecified impact via vectors involving hostname verification.
References

https://nv…

[mysql-connector-python] Improper Access Control in MySQL Connector Python

  • Posted inUncategorized
  • Posted byGitHub
  • 05/13/202206/28/2022

Vulnerability in the MySQL Connectors component of Oracle MySQL (subcomponent: Connector/Python). Supported versions that are affected are 8.0.13 and prior and 2.1.8 and prior. Easily exploitable vulnerability allows unauthenticated attacker with netwo…

Posts navigation

Previous Posts 1 … 69 70 71 72 73 … 93 Next Posts
Underground News
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close