Skip to content

Underground News

Header Image
Author

GitHub

925 Posts

Featured

Posted byGitHub
[github.com/sigstore/cosign] cosign’s `cosign verify-attestaton –type` can report a false positive if any attestation exists
Posted byGitHub
[github.com/sigstore/policy-controller] PolicyController before 0.2.1 may bypass attestation verification
Posted byGitHub
[nbconvert] nbconvert vulnerable to cross-site scripting (XSS) via multiple exploit paths
Posted byGitHub
[owning_ref] owning_ref vulnerable to multiple soundness issues

[org.bouncycastle:bcprov-jdk15on] Improper Validation of Integrity Check Value in Bouncy Castle

  • Posted inUncategorized
  • Posted byGitHub
  • 05/13/202206/29/2022

The default BKS keystore use an HMAC that is only 16 bits long, which can allow an attacker to compromise the integrity of a BKS keystore. Bouncy Castle release 1.47 changes the BKS format to a format which uses a 160 bit HMAC instead. This applies to …

[solana_rbpf] Incorrect Calculation in solana_rbpf

  • Posted inUncategorized
  • Posted byGitHub
  • 05/10/202205/25/2022

In Solana rBPF versions 0.2.26 and 0.2.27 are affected by Incorrect Calculation which is caused by improper implementation of sdiv instruction. This can lead to the wrong execution path, resulting in huge loss in specific cases. For example, the result…

[python-libnmap] Argument injection in python-libnmap

  • Posted inUncategorized
  • Posted byGitHub
  • 05/06/202207/27/2022

In the python-libnmap package through 0.7.2 for Python, remote command execution can occur (if used in a client application that does not validate arguments).
References

https://nvd.nist.gov/vuln/detail/CVE-2022-30284
https://github.com/savon-noir/pyt…

[keylime] Tenant and Verifier might not use the same registrar data

  • Posted inUncategorized
  • Posted byGitHub
  • 05/06/202207/27/2022

Keylime does not enforce that the agent registrar data is the same when the tenant uses it for validation of the EK and identity quote and the verifier for validating the integrity quote. This allows an attacker to use one AK, EK pair from a real TPM t…

[rack] Rack arbitrary code execution via timing attack

  • Posted inUncategorized
  • Posted byGitHub
  • 05/05/202206/18/2022

Rack::Session::Cookie in Rack 1.5.x before 1.5.2, 1.4.x before 1.4.5, 1.3.x before 1.3.10, 1.2.x before 1.2.8, and 1.1.x before 1.1.6 allows remote attackers to guess the session cookie, gain privileges, and execute arbitrary code via a timing attack i…

[Beaker] Deserialization of Untrusted Data in Beaker

  • Posted inUncategorized
  • Posted byGitHub
  • 05/05/202207/08/2022

The Beaker library through 1.11.0 for Python is affected by deserialization of untrusted data, which could lead to arbitrary code execution.
References

https://nvd.nist.gov/vuln/detail/CVE-2013-7489
https://github.com/bbangert/beaker/issues/191
https:…

[org.springframework:spring-web] Improper Neutralization of Input During Web Page Generation in Spring Framework

  • Posted inUncategorized
  • Posted byGitHub
  • 05/05/202207/08/2022

The JavaScriptUtils.javaScriptEscape method in web/util/JavaScriptUtils.java in Spring MVC in Spring Framework before 3.2.2 does not properly escape certain characters, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a (…

[org.apache.tomcat:tomcat] Denial of Service in Apache Tomcat

  • Posted inUncategorized
  • Posted byGitHub
  • 05/04/202207/14/2022

Apache Tomcat 5.5.x before 5.5.35, 6.x before 6.0.34, and 7.x before 7.0.23 uses an inefficient approach for handling parameters, which allows remote attackers to cause a denial of service (CPU consumption) via a request that contains many parameters a…

[openssl-src] `OCSP_basic_verify` may incorrectly verify the response signing certificate

  • Posted inUncategorized
  • Posted byGitHub
  • 05/04/202206/21/2022

The function OCSP_basic_verify verifies the signer certificate on an OCSP response. In the case where the (non-default) flag OCSP_NOCHECKS is used then the response will be positive (meaning a successful verification) even in the case where the respons…

[openssl-src] Incorrect MAC key used in the RC4-MD5 ciphersuite

  • Posted inUncategorized
  • Posted byGitHub
  • 05/04/202206/21/2022

The OpenSSL 3.0 implementation of the RC4-MD5 ciphersuite incorrectly uses the AAD data as the MAC key. This makes the MAC key trivially predictable. An attacker could exploit this issue by performing a man-in-the-middle attack to modify data being sen…

Posts navigation

Previous Posts 1 … 74 75 76 77 78 … 93 Next Posts
Underground News
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close