exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 20 of 20 RSS Feed

Files Date: 2022-01-06

Ubuntu Security Notice USN-5213-1
Posted Jan 6, 2022
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 5213-1 - A large number of security issues were discovered in the WebKitGTK Web and JavaScript engines. If a user were tricked into viewing a malicious website, a remote attacker could exploit a variety of issues related to web browser security, including cross-site scripting attacks, denial of service attacks, and arbitrary code execution.

tags | advisory, remote, web, denial of service, arbitrary, javascript, code execution, xss
systems | linux, ubuntu
advisories | CVE-2021-30887
SHA-256 | b388cf25ebe5f4b21f0aca6ed66cd21f8f9e1160cb6c47d91e8e6e7d547ea641
Backdoor.Win32.SVC MVID-2022-0447 Directory Traversal
Posted Jan 6, 2022
Authored by malvuln | Site malvuln.com

Backdoor.Win32.SVC malware suffers from a directory traversal vulnerability.

tags | exploit
systems | windows
SHA-256 | 05c438a0ac2cf307710ec5b3160eac7d7d89abddaad943be0c5755ba1eabd8a2
Red Hat Security Advisory 2021-5208-05
Posted Jan 6, 2022
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2021-5208-05 - Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the RPM packages for Red Hat OpenShift Container Platform 4.8.25.

tags | advisory
systems | linux, redhat
advisories | CVE-2021-39240, CVE-2021-39241, CVE-2021-39242, CVE-2021-40346
SHA-256 | 88f67dac63d92fc84c82531e94bde8ecf9b24f7e33e48e6b0fd021305470e358
Backdoor.Win32.SubSeven.c MVID-2022-0448 Buffer Overflow
Posted Jan 6, 2022
Authored by malvuln | Site malvuln.com

Backdoor.Win32.SubSeven.c malware suffers from a buffer overflow vulnerability.

tags | exploit, overflow
systems | windows
SHA-256 | b144d19f6fb82c76bc13c410b0519f5167d74b7107927df884316847f76d1ea4
Ubuntu Security Notice USN-5211-1
Posted Jan 6, 2022
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 5211-1 - Nadav Amit discovered that the hugetlb implementation in the Linux kernel did not perform TLB flushes under certain conditions. A local attacker could use this to leak or alter data from other processes that use huge pages.

tags | advisory, kernel, local
systems | linux, ubuntu
advisories | CVE-2021-4002
SHA-256 | 282eeeb781851a7025bfcdef141027ce8a8d1d62b572b5512b58d704e9c2fec0
Ubuntu Security Notice USN-5210-1
Posted Jan 6, 2022
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 5210-1 - Nadav Amit discovered that the hugetlb implementation in the Linux kernel did not perform TLB flushes under certain conditions. A local attacker could use this to leak or alter data from other processes that use huge pages. It was discovered that the Linux kernel did not properly enforce certain types of entries in the Secure Boot Forbidden Signature Database protection mechanism. An attacker could use this to bypass UEFI Secure Boot restrictions.

tags | advisory, kernel, local
systems | linux, ubuntu
advisories | CVE-2020-26541, CVE-2021-20321, CVE-2021-3760, CVE-2021-4002, CVE-2021-41864, CVE-2021-43056, CVE-2021-43389
SHA-256 | ecb4af237def80337795c4bf285352fb679661f2a5664c504d0f396c762a31ee
Kernel Live Patch Security Notice LSN-0083-1
Posted Jan 6, 2022
Authored by Benjamin M. Romer

The BPF subsystem in the Linux kernel before 4.17 mishandles situations with a long jump over an instruction sequence where inner instructions require substantial expansions into multiple BPF instructions, leading to an overflow. This affects kernel/bpf/core.c and net/core/filter.c. Maxim Levitsky discovered that the KVM hypervisor implementation for AMD processors in the Linux kernel did not properly prevent a guest VM from enabling AVIC in nested guest VMs. An attacker in a guest VM could use this to write to portions of the host’s physical memory. Other vulnerabilities have also been addressed.

tags | advisory, overflow, kernel, vulnerability
systems | linux
advisories | CVE-2018-25020, CVE-2021-22555, CVE-2021-33909, CVE-2021-3653, CVE-2021-4002
SHA-256 | ddd1e7fc677c2b02d3351058bf31466aa231865f93abfb9cdfa1d1ca55622f8d
Backdoor.Win32.Dsklite.a MVID-2022-0445 Insecure Transit
Posted Jan 6, 2022
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Dsklite.a malware suffers from an insecure transit vulnerability that discloses credentials.

tags | exploit
systems | windows
SHA-256 | 07a31454ce6d6a2f215a607a5cf289960faf4bea77a4a6c99e73ae09de3702c5
XNU inm_merge Heap Use-After-Free
Posted Jan 6, 2022
Authored by Google Security Research, Glazvunov

XNU suffers from a heap use-after-free vulnerability in inm_merge.

tags | exploit
advisories | CVE-2021-30937
SHA-256 | 7157a72995dfa18e7979cab877bfb5645e4f20d9554478a6b0c26d6daae56123
Ubuntu Security Notice USN-5209-1
Posted Jan 6, 2022
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 5209-1 - Nadav Amit discovered that the hugetlb implementation in the Linux kernel did not perform TLB flushes under certain conditions. A local attacker could use this to leak or alter data from other processes that use huge pages. It was discovered that a race condition existed in the timer implementation in the Linux kernel. A privileged attacker could use this cause a denial of service.

tags | advisory, denial of service, kernel, local
systems | linux, ubuntu
advisories | CVE-2021-20317, CVE-2021-20321, CVE-2021-3760, CVE-2021-4002, CVE-2021-41864, CVE-2021-43389
SHA-256 | 48064c7ea8ce65c4e3051e87cd43253fcf2b6a445eea15418d3b3f219708afba
Backdoor.Win32.SVC MVID-2022-0446 Buffer Overflow
Posted Jan 6, 2022
Authored by malvuln | Site malvuln.com

Backdoor.Win32.SVC malware suffers from a buffer overflow vulnerability.

tags | exploit, overflow
systems | windows
SHA-256 | 33da64b823bf57f44b70c1b05fd9b2d9dedbb6e6a1b6ff2e482bf8b52417f6f7
Red Hat Security Advisory 2022-0034-01
Posted Jan 6, 2022
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2022-0034-01 - Red Hat Single Sign-On 7.5 container images for IBM P/Z, based on the Keycloak project, that provides authentication and standards-based single sign-on capabilities for web and mobile applications. This is a security update Red Hat Single Sign-On 7.5, and includes one security fix.

tags | advisory, web
systems | linux, redhat
advisories | CVE-2021-3712, CVE-2021-4133, CVE-2021-42574
SHA-256 | 899c5aede2bdbf0a841dfc7a5c2c675d9f354dca8bba0d2ae94074c90690b3b4
Ubuntu Security Notice USN-5208-1
Posted Jan 6, 2022
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 5208-1 - Nadav Amit discovered that the hugetlb implementation in the Linux kernel did not perform TLB flushes under certain conditions. A local attacker could use this to leak or alter data from other processes that use huge pages. It was discovered that a race condition existed in the overlay file system implementation in the Linux kernel. A local attacker could use this to cause a denial of service.

tags | advisory, denial of service, kernel, local
systems | linux, ubuntu
advisories | CVE-2021-20321, CVE-2021-3760, CVE-2021-4002, CVE-2021-41864, CVE-2021-43056, CVE-2021-43267, CVE-2021-43389
SHA-256 | ea7e5bc5b3961bfb7b88bcc657765481b669c52e08a5c1ef062c1477afed2dba
Backdoor.Win32.Jtram.a MVID-2022-0443 Man-In-The-Middle
Posted Jan 6, 2022
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Jtram.a malware suffers from a man-in-the-middle vulnerability.

tags | exploit
systems | windows
SHA-256 | 99a6f672f506fbf3f469a114dfee74a33078a5857fe7e061d92fbd1d334b3579
Ubuntu Security Notice USN-5207-1
Posted Jan 6, 2022
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 5207-1 - Nadav Amit discovered that the hugetlb implementation in the Linux kernel did not perform TLB flushes under certain conditions. A local attacker could use this to leak or alter data from other processes that use huge pages. It was discovered that the eBPF implementation in the Linux kernel contained a race condition around read-only maps. A privileged attacker could use this to modify read-only maps.

tags | advisory, kernel, local
systems | linux, ubuntu
advisories | CVE-2021-4001, CVE-2021-4002, CVE-2021-42739, CVE-2021-43267
SHA-256 | 63504dd3c2b3abff85b5c8960e3f39b8f7a1ce6773225176a4d31ae19837a516
Simple Music Cloud Community System 1.0 SQL Injection
Posted Jan 6, 2022
Authored by nu11secur1ty

Simple Music Cloud Community System version 1.0 suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
SHA-256 | f47db4d94ab603d1758999a9535dc9de6d6067898eebf8d3632476e46a179912
Ubuntu Security Notice USN-5212-1
Posted Jan 6, 2022
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 5212-1 - It was discovered that the Apache HTTP Server incorrectly handled certain forward proxy requests. A remote attacker could use this issue to cause the server to crash, resulting in a denial of service, or possibly perform a Server Side Request Forgery attack. It was discovered that the Apache HTTP Server Lua module incorrectly handled memory in the multipart parser. A remote attacker could use this issue to cause the server to crash, resulting in a denial of service, or possibly execute arbitrary code.

tags | advisory, remote, web, denial of service, arbitrary
systems | linux, ubuntu
advisories | CVE-2021-44224, CVE-2021-44790
SHA-256 | 720562c2963cbcdb5ebd4105b577dec64e35d188b21a7bd642506a9284fda762
Backdoor.Win32.Dsklite.a MVID-2022-0444 Denial Of Service
Posted Jan 6, 2022
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Dsklite.a malware suffers from a denial of service vulnerability.

tags | exploit, denial of service
systems | windows
SHA-256 | 7b82ee1275b9b80130f1f3d7f765bc48ef462b393355df8bbf974342a78ae22c
Ubuntu Security Notice USN-5206-1
Posted Jan 6, 2022
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 5206-1 - Nadav Amit discovered that the hugetlb implementation in the Linux kernel did not perform TLB flushes under certain conditions. A local attacker could use this to leak or alter data from other processes that use huge pages.

tags | advisory, kernel, local
systems | linux, ubuntu
advisories | CVE-2021-4002
SHA-256 | c97eba91910205966dc031db7489933170175dc1100b5a8fd362273f95d3c14e
Backdoor.Win32.Jtram.a MVID-2022-0442 Insecure Credential Storage
Posted Jan 6, 2022
Authored by malvuln | Site malvuln.com

Backdoor.Win32.Jtram.a malware suffers from an insecure credential storage vulnerability.

tags | exploit
systems | windows
SHA-256 | 2f5c74eca36f0fd53395489812c08c2a5ce033812298a561540e4386695b50ff
Page 1 of 1
Back1Next

File Archive:

May 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    May 1st
    44 Files
  • 2
    May 2nd
    5 Files
  • 3
    May 3rd
    11 Files
  • 4
    May 4th
    0 Files
  • 5
    May 5th
    0 Files
  • 6
    May 6th
    28 Files
  • 7
    May 7th
    3 Files
  • 8
    May 8th
    4 Files
  • 9
    May 9th
    54 Files
  • 10
    May 10th
    12 Files
  • 11
    May 11th
    0 Files
  • 12
    May 12th
    0 Files
  • 13
    May 13th
    17 Files
  • 14
    May 14th
    11 Files
  • 15
    May 15th
    0 Files
  • 16
    May 16th
    0 Files
  • 17
    May 17th
    0 Files
  • 18
    May 18th
    0 Files
  • 19
    May 19th
    0 Files
  • 20
    May 20th
    0 Files
  • 21
    May 21st
    0 Files
  • 22
    May 22nd
    0 Files
  • 23
    May 23rd
    0 Files
  • 24
    May 24th
    0 Files
  • 25
    May 25th
    0 Files
  • 26
    May 26th
    0 Files
  • 27
    May 27th
    0 Files
  • 28
    May 28th
    0 Files
  • 29
    May 29th
    0 Files
  • 30
    May 30th
    0 Files
  • 31
    May 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close