GnuPG (the GNU Privacy Guard or GPG) is GNU's tool for secure communication and data storage. It can be used to encrypt data and to create digital signatures. It includes an advanced key management facility and is compliant with the proposed OpenPGP Internet standard as described in RFC2440. As such, it is meant to be compatible with PGP from NAI, Inc. Because it does not use any patented algorithms, it can be used without any restrictions.
cb8ce298d7b36558ffc48aec961b14c830ff1783eef7a623411188b5e0f5d454
REcon is a computer security conference with a focus on reverse engineering and advanced exploitation techniques. It will be held June 28th through the 30th, 2019, in Montreal, Canada.
943c9ea8eeaf47093b77924d15201f65cc7a6b61b960969450ba9bf1f71586e2
RedTeam Pentesting discovered that the shell function "getopt_simple", as presented in the "Advanced Bash-Scripting Guide", allows execution of attacker-controlled commands.
774ed521003d36a5ec3bd1c92f36d2980cef1f0a9edd2618ea47b78c70be3822
WordPress article2pdf plugin versions 0.24 and above suffer from resource exhaustion, arbitrary file download, and file deletion vulnerabilities.
3689fbc7c8dc5daf8f3dd299ece2b32708a35eca919eca7ca9ca602463c09044
DASAN H660RM allows for unauthenticated ping access, has a hardcoded key for encryption, and logs sensitive information into /tmp.
de1439ba49e2762cb6f57ff0e775a7b05e70db3ea5a1aa4a0759ccc8915120d4
Slackware Security Advisory - New mozilla-thunderbird packages are available for Slackware 14.2 and -current to fix security issues.
9ca6c4689813e92c2671812ab98c546297583edea20c3035e29bc3d8ad309811
Apple Security Advisory 2019-3-25-6 - iCloud for Windows 7.11 is now available and addresses buffer overflow, code execution, and cross site scripting vulnerabilities.
50944b66f84f48ee71152d55defb8e798209586aad1b47dc0919a4360b743848
Apple Security Advisory 2019-3-25-1 - iOS 12.2 is now available and addresses buffer overflow, code execution, and cross site scripting vulnerabilities.
8b2388d689595cfb149767e2dd6554582de27ca957a31fbaf165e95d77afc380
Apple Security Advisory 2019-3-25-5 - iTunes 12.9.4 for Windows is now available and addresses buffer overflow, code execution, and cross site scripting vulnerabilities.
74996f9602b2d564b466d0b3f892745006b1fc528acf0fb68256a697ff0e41b3
Apple Security Advisory 2019-3-25-3 - tvOS 12.2 is now available and addresses buffer overflow, code execution, and cross site scripting vulnerabilities.
f64ca23fdfdf301253dce16367ff35a30c4a58a061de08297d12e90b0d0dbf58
Apple Security Advisory 2019-3-25-4 - Safari 12.1 is now available and addresses code execution and cross site scripting vulnerabilities.
b8d0aa06fff0d1fd93078d701d89414366c69904a2e82bca94287376c9a91312
Apple Security Advisory 2019-3-25-7 - Xcode 10.2 is now available and addresses a code execution vulnerability.
12dadc26d93ad05182074b6ac03add53394e49aafee52487ac6a0f09e1735c5b
Apple Security Advisory 2019-3-25-2 - macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra are now available and addresses buffer overflow, bypass, and code execution vulnerabilities.
4586dd3e324e2c849bc6d37ff1b93dc1a83271a7faa1f2cab7ddccce107730f5
Red Hat Security Advisory 2019-0641-01 - The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Issues addressed include denial of service and use-after-free vulnerabilities.
9059cdcb369bd96cb1c0d25c239372e2e539ff777183cd9b073e46245df44d40
Red Hat Security Advisory 2019-0638-01 - Openwsman is a project intended to provide an open source implementation of the Web Services Management specification and to expose system management information on the Linux operating system using the WS-Management protocol. WS-Management is based on a suite of web services specifications and usage requirements that cover all system management aspects. Issues addressed include an arbitrary file disclosure vulnerability.
a9b36ba93ad492975799317b96fc3168dc9e55d34fe0935cd633cdceb90f49b2
Red Hat Security Advisory 2019-0640-01 - IBM Java SE version 8 includes the IBM Java Runtime Environment and the IBM Java Software Development Kit. This update upgrades IBM Java SE 8 to version 8 SR5-FP30. Issues addressed include a buffer overflow vulnerability.
431bcb0ca92a58776aa627496b18259e09e52a1b66054e9d14b8c9bc1fa9c885
PCMan FTP Server version 2.0 CDUP remote buffer overflow exploit.
5193c9c7ef87fabef737e23277dccde5d538f2d7940f5fe0df6a7f460410adea
This whitepaper discusses highlights of findings related to remote code execution leveraging JMX/RMI.
c1c6d49b75e30398fa5a7dacd39a13e739823cc3f93d713506d4b6e32f8da33d
SPIP CMS versions 2.x and 3.x suffer from unauthenticated add administrator and arbitrary file upload vulnerabilities.
a7387c189d176bff2a0e9afc63e2bfada0350e829685bdc4a61f682b38596b2d
Zeeways Jobsite CMS suffers from a remote SQL injection vulnerability.
b86c15d7beb8a1f874fb91247c64488e7f941ad5470cb7ab6bc52fccdacf82ac
Zeeways Matrimony CMS suffers from a remote SQL injection vulnerability.
16ad90accba954a01ee8e7fc948b0220da4eeed1706668be61cdc36a5cf0334e