The NTFS driver supports a new FS control code to set a mount point which the existing sandbox mitigation doesn't support allowing a sandboxed application to set an arbitrary mount point symbolic link.
5e9c5121a127979454b72fcbedbeaf8818d0f391241fc1114f924d8d9e628a56
Endian Firewall version 3.3.0 suffers from a cross site scripting vulnerability.
2707fad940576fc1b73ddaa6c1a1cbe42e6bd28faf9c29e51d6347ce453b135b
OpenPGP.js versions 4.2.0 suffer from invalid curve attack, message signature bypass, and information trust vulnerabilities.
0a9d2e92a3d6a166b6fe0aec192bf81aef0d99ec80673eae0c779bd7f3ebc97c
Debian Linux Security Advisory 4505-1 - Three vulnerabilities were discovered in the HTTP/2 code of Nginx, a high-performance web and reverse proxy server, which could result in denial of service.
38817d6cbe881d7e08349f61c5c128eb23f57ca935723613ecd58131d5bef764
FreeBSD Security Advisory - The kernel driver for /dev/midistat implements a handler for read(2). This handler is not thread-safe, and a multi-threaded program can exploit races in the handler to cause it to copy out kernel memory outside the boundaries of midistat's data buffer. The races allow a program to read kernel memory within a 4GB window centered at midistat's data buffer. The buffer is allocated each time the device is opened, so an attacker is not limited to a static 4GB region of memory. On 32-bit platforms, an attempt to trigger the race may cause a page fault in kernel mode, leading to a panic.
7c9c21bed5459872dd4210ae02562ae099d6c61dff5b90156a9765cf1beeb7c5
Red Hat Security Advisory 2019-2553-01 - KVM is a full virtualization solution for Linux on a variety of architectures. The qemu-kvm-rhev packages provide the user-space component for running virtual machines that use KVM in environments managed by Red Hat products. Issues addressed include CPU related, buffer overflow, and information leakage vulnerabilities.
7acc2576aa8fb450953d3b4fc4a43fe8b7b8a50f4b5d7ca1b06988e063eb8ef2
Red Hat Security Advisory 2019-2552-01 - Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. Issues addressed include a code execution vulnerability.
7978628525ed891594b53609ad93cacbd70656c59bafcdbd6508eacb72dd1384
Wikindx version 5.8.2 suffers from a remote SQL injection vulnerability.
8e911934fe7e9d37dfa1a574a5312d88f11f039a387f28b5138e16dd16acb956
Snapforce CRM version 8.3.0 suffers from multiple cross site scripting vulnerabilities.
403447c47a23972c08fcd81b4ca4c307c382f8f88d26a94eda5723546375a418