Nexus 9 running Android version 7.1.1 build N4F26Q and below allows unauthorized access to the FIQ debugger via its headphones jack, which allows for information theft, weakening of ASLR, leaking of stack canaries, and more.
a85db80f865acc493884ac5e7d1cbf2a
Ubuntu Security Notice 3230-1 - It was discovered that Pillow incorrectly handled certain compressed text chunks in PNG images. A remote attacker could possibly use this issue to cause Pillow to crash, resulting in a denial of service. This issue only affected Ubuntu 14.04 LTS. Cris Neckar discovered that Pillow incorrectly handled certain malformed images. A remote attacker could use this issue to cause Pillow to crash, resulting in a denial of service, or possibly obtain sensitive information. Various other issues were also addressed.
6f6a499328f0a03cfa6cb3a648ef4268
Ubuntu Security Notice 3229-1 - It was discovered that the Python Imaging Library incorrectly handled certain compressed text chunks in PNG images. A remote attacker could possibly use this issue to cause the Python Imaging Library to crash, resulting in a denial of service. Cris Neckar discovered that the Python Imaging Library incorrectly handled certain malformed images. A remote attacker could use this issue to cause the Python Imaging Library to crash, resulting in a denial of service, or possibly obtain sensitive information. Various other issues were also addressed.
ff7e8c4d3fa12e9267ec54a73b0d553f
Ubuntu Security Notice 3228-1 - Guido Vranken discovered that libevent incorrectly handled memory when processing certain data. A remote attacker could possibly use this issue with an application that uses libevent to cause a denial of service, or possibly execute arbitrary code.
d1b51a942f62f7f02d7315a98ff76ddf
Ubuntu Security Notice 3227-1 - It was discovered that ICU incorrectly handled certain memory operations when processing data. If an application using ICU processed crafted data, a remote attacker could possibly cause it to crash or potentially execute arbitrary code with the privileges of the user invoking the program.
382e3531768486d3ee5e0c16d0e32b37
Ubuntu Security Notice 3226-1 - Jerzy Kramarz discovered that icoutils incorrectly handled memory when processing certain files. If a user or automated system were tricked into opening a specially crafted file, an attacker could cause icoutils to crash, resulting in a denial of service, or possibly execute arbitrary code.
ad000a09a296937400cc5e628cd70a08
There is a security issue in VirtualBox in the shared folder implementation that permits cooperating guests with write access to the same shared folder to gain access to the whole filesystem of the host, at least on Linux hosts.
541c3c26ddce409486c3184fec42a9e9
Cerberus FTP Server version 8.0.10.1 suffers from a denial of service vulnerability.
6d66e0a2454a25757ca70f8ac162473c
Joomla ALFContact component version 3.2.3 suffers from a remote SQL injection vulnerability.
7f87efb1065f7db9c8f868ab4ce47b88
Whitepaper discussing local file disclosure attacks via remote SQL injection.
dba854d85b85d2a54ff8aebeba6b9d29
rldns is an open source lightweight DNS server for linux, netbsd, freebsd, and openbsd. Runs on x86 and x86_64 architectures.
0ff54b024b64c4bf409da6fc84703fec
Car Workshop System suffers from a remote SQL injection vulnerability.
dbf490daada72a246c294217554ed792