what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 25 RSS Feed

Files Date: 2024-10-09

Falco 0.39.1
Posted Oct 9, 2024
Authored by Sysdig | Site sysdig.org

Sysdig Falco is a behavioral activity monitoring agent that is open source and comes with native support for containers. Falco lets you define highly granular rules to check for activities involving file and network activity, process execution, IPC, and much more, using a flexible syntax. Falco will notify you when these rules are violated. You can think about Falco as a mix between snort, ossec and strace.

Changes: Allows null init_config for plugin info. Fixed parsing issues in -o key={object} when the object definition contains a comma. Fixed event set selection for plugin with parsing capability.
tags | tool, intrusion detection
systems | unix
SHA-256 | 028606182ccc2e835bfa8d0034cd1d8bb344380d5e29428c930c76406269f21a
dav1d Integer Overflow / Out-Of-Bounds Write
Posted Oct 9, 2024
Authored by Google Security Research, Nick Galloway

There is an integer overflow in dav1d when decoding an AV1 video with large width/height. The integer overflow may result in an out-of-bounds write.

tags | exploit, overflow
advisories | CVE-2024-1580
SHA-256 | 2e6ee0c003e7075d02a19941dea59ff9838200ead28039478bb67d1a365c5bdc
Debian Security Advisory 5729-2
Posted Oct 9, 2024
Authored by Debian | Site debian.org

Debian Linux Security Advisory 5729-2 - The fixes for CVE-2024-38474 and CVE-2024-39884 introduced two regressions in mod_rewrite and mod_proxy.

tags | advisory
systems | linux, debian
SHA-256 | 703eefdd0f2dd6fbb59ea885c38a5f69342264fef0c904ef54b8697717bf0ae6
Ubuntu Security Notice USN-7043-4
Posted Oct 9, 2024
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 7043-4 - USN-7043-1 fixed vulnerabilities in cups-filters. This update improves the fix for CVE-2024-47176 by removing support for the legacy CUPS printer discovery protocol entirely. Simone Margaritelli discovered that the cups-filters cups-browsed component could be used to create arbitrary printers from outside the local network. In combination with issues in other printing components, a remote attacker could possibly use this issue to connect to a system, created manipulated PPD files, and execute arbitrary code when a printer is used. This update disables support for the legacy CUPS printer discovery protocol. Simone Margaritelli discovered that cups-filters incorrectly sanitized IPP data when creating PPD files. A remote attacker could possibly use this issue to manipulate PPD files and execute arbitrary code when a printer is used.

tags | advisory, remote, arbitrary, local, vulnerability, protocol
systems | linux, ubuntu
advisories | CVE-2024-47076, CVE-2024-47176
SHA-256 | d6735cd226521138a1caa83e35e3599310090e11b787a19fe17009e31c3e555a
Ubuntu Security Notice USN-7042-2
Posted Oct 9, 2024
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 7042-2 - USN-7042-1 fixed a vulnerability in cups-browsed. This update improves the fix by removing support for the legacy CUPS printer discovery protocol entirely. Simone Margaritelli discovered that cups-browsed could be used to create arbitrary printers from outside the local network. In combination with issues in other printing components, a remote attacker could possibly use this issue to connect to a system, created manipulated PPD files, and execute arbitrary code when a printer is used. This update disables support for the legacy CUPS printer discovery protocol.

tags | advisory, remote, arbitrary, local, protocol
systems | linux, ubuntu
advisories | CVE-2024-47176
SHA-256 | c9d388e6e36edc217181c7dfaecdbff89ae45ef265bf94be3ca4b0635d69e57f
Ubuntu Security Notice USN-7058-1
Posted Oct 9, 2024
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 7058-1 - Brennan Conroy discovered that the .NET Kestrel web server did not properly handle closing HTTP/3 streams under certain circumstances. An attacker could possibly use this issue to achieve remote code execution. This vulnerability only impacted Ubuntu 22.04 LTS and Ubuntu 24.04 LTS. It was discovered that .NET components designed to process malicious input were susceptible to hash flooding attacks. An attacker could possibly use this issue to cause a denial of service, resulting in a crash.

tags | advisory, remote, web, denial of service, code execution
systems | linux, ubuntu
advisories | CVE-2024-38229, CVE-2024-43483, CVE-2024-43484, CVE-2024-43485
SHA-256 | 7c2a72d2e3f5c488eca942d9bdc22357a2db233048ced41c29d92e7a98552b28
Ubuntu Security Notice USN-7057-2
Posted Oct 9, 2024
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 7057-2 - USN-7057-1 fixed a vulnerability in WEBrick. This update provides the corresponding updates for Ubuntu 22.04 LTS. It was discovered that WEBrick incorrectly handled having both a Content- Length header and a Transfer-Encoding header. A remote attacker could possibly use this issue to perform a HTTP request smuggling attack.

tags | advisory, remote, web
systems | linux, ubuntu
advisories | CVE-2024-47220
SHA-256 | ae0c4f3784a275cf50e5827a99e1e4ff6c6b7ebdb74495076fbee09f91e526d5
Ubuntu Security Notice USN-7014-2
Posted Oct 9, 2024
Authored by Ubuntu | Site security.ubuntu.com

Ubuntu Security Notice 7014-2 - USN-7014-1 fixed a vulnerability in nginx. This update provides the corresponding updates for Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. It was discovered that the nginx ngx_http_mp4 module incorrectly handled certain malformed mp4 files. In environments where the mp4 directive is in use, a remote attacker could possibly use this issue to cause nginx to crash, resulting in a denial of service.

tags | advisory, remote, denial of service
systems | linux, ubuntu
advisories | CVE-2024-7347
SHA-256 | 3168e88606cba6872e86085444b8f4a5d7f33581d3eb317984277d72f7db647f
Red Hat Security Advisory 2024-7855-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7855-03 - An update for thunderbird is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions. Issues addressed include bypass and denial of service vulnerabilities.

tags | advisory, denial of service, vulnerability
systems | linux, redhat
advisories | CVE-2024-9392
SHA-256 | 0202d1d6ac22fd0b9c80e308dc90b073322e7555f1019133971828aa822ea745
Red Hat Security Advisory 2024-7853-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7853-03 - An update for thunderbird is now available for Red Hat Enterprise Linux 9.2 Extended Update Support. Issues addressed include bypass and denial of service vulnerabilities.

tags | advisory, denial of service, vulnerability
systems | linux, redhat
advisories | CVE-2024-9392
SHA-256 | f962c6b11504f5185971cba51aff3c2ff025fa0dc8a3cb660ccdd64d8673e8d3
Red Hat Security Advisory 2024-7851-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7851-03 - An update for.NET 6.0 is now available for Red Hat Enterprise Linux 8. Issues addressed include a denial of service vulnerability.

tags | advisory, denial of service
systems | linux, redhat
advisories | CVE-2024-43483
SHA-256 | bd0aa51c4e36cf2a7eb7014c38b1feac214be2c4ce3afdb25dbbe2ed696fb100
Red Hat Security Advisory 2024-7848-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7848-03 - An update for openssl is now available for Red Hat Enterprise Linux 8.

tags | advisory
systems | linux, redhat
advisories | CVE-2024-5535
SHA-256 | 713183b1218dcd60b894f04426f09f89ff88389264ac3a6eb85fa8885d209140
Red Hat Security Advisory 2024-7847-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7847-03 - An update for openssl is now available for Red Hat Enterprise Linux 8.8 Extended Update Support.

tags | advisory
systems | linux, redhat
advisories | CVE-2024-5535
SHA-256 | 2de08b7b8a0d35e34b08aeafc787b7430604c048a72bb74dc94ac3b8ed1fa89e
Red Hat Security Advisory 2024-7846-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7846-03 - An update for openssl is now available for Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions, and Red Hat Enterprise Linux 8.6 Telecommunications Update Service.

tags | advisory
systems | linux, redhat
advisories | CVE-2024-5535
SHA-256 | dd203d763f89dc7e7a3df9127af80d5887f9046245526346f70555aee1842526
Red Hat Security Advisory 2024-7842-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7842-03 - An update for firefox is now available for Red Hat Enterprise Linux 8.8 Extended Update Support. Issues addressed include bypass and denial of service vulnerabilities.

tags | advisory, denial of service, vulnerability
systems | linux, redhat
advisories | CVE-2024-8900
SHA-256 | c0e8468f1e44b5c532c90551c8f06521b618ae4efc80ef35fd7455d2053d3f19
Red Hat Security Advisory 2024-7822-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7822-03 - An update for the container-tools:rhel8 module is now available for Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions, and Red Hat Enterprise Linux 8.4 Telecommunications Update Service.

tags | advisory
systems | linux, redhat
advisories | CVE-2024-34156
SHA-256 | e18cda7f7a1d5941bc3ce29f77252eb034a75f00cbebd178e2f4b2a20c7bbd2f
Red Hat Security Advisory 2024-7821-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7821-03 - An update for skopeo is now available for Red Hat Enterprise Linux 9.2 Extended Update Support.

tags | advisory
systems | linux, redhat
advisories | CVE-2024-34156
SHA-256 | aa7dd2478b15643f9db563eb38d78f803ee10b85d3e6655ad3dff05508f26720
Red Hat Security Advisory 2024-7820-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7820-03 - An update for podman is now available for Red Hat Enterprise Linux 9.2 Extended Update Support.

tags | advisory
systems | linux, redhat
advisories | CVE-2024-34156
SHA-256 | 0d8527d801bd83a99f86f620459029ed433f1ed5abe110c473c9ce37f68c9c93
Red Hat Security Advisory 2024-7819-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7819-03 - An update for buildah is now available for Red Hat Enterprise Linux 9.2 Extended Update Support.

tags | advisory
systems | linux, redhat
advisories | CVE-2024-34156
SHA-256 | e5151eb80aa1ed4e067496b4794d05a16097401926641bd64d968a9c318b0e38
Red Hat Security Advisory 2024-7818-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7818-03 - An update for containernetworking-plugins is now available for Red Hat Enterprise Linux 9.2 Extended Update Support.

tags | advisory
systems | linux, redhat
advisories | CVE-2024-34156
SHA-256 | c9c95f7fc2e75d8afaa01fda6929e36837fe835be9ab10a8c5c848e16435d770
Red Hat Security Advisory 2024-7812-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7812-03 - A security update is now available for Red Hat JBoss Enterprise Application Platform 7.4. Issues addressed include a code execution vulnerability.

tags | advisory, code execution
systems | linux, redhat
advisories | CVE-2024-47561
SHA-256 | 6a144e5ae7b41daf575bc7953f702c596a2880a39e6eb989c9d761089cfbade4
Red Hat Security Advisory 2024-7811-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7811-03 - A security update is now available for Red Hat JBoss Enterprise Application Platform 7.4. Issues addressed include a code execution vulnerability.

tags | advisory, code execution
systems | linux, redhat
advisories | CVE-2024-47561
SHA-256 | bdd2802a45506c2a2a7e1fe84a42cd3ee17cbaa4c64b7ecc7364f81301df3115
Red Hat Security Advisory 2024-7599-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7599-03 - Red Hat OpenShift Container Platform release 4.16.16 is now available with updates to packages and images that fix several bugs and add enhancements. Issues addressed include code execution, denial of service, integer overflow, and out of bounds write vulnerabilities.

tags | advisory, denial of service, overflow, vulnerability, code execution
systems | linux, redhat
advisories | CVE-2023-3462
SHA-256 | 98c24f50e8c2d91007eed7248f45a2aaf03aaf6b8738f9d70f4a7579b1709b17
Red Hat Security Advisory 2024-7590-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7590-03 - Red Hat OpenShift Container Platform release 4.12.67 is now available with updates to packages and images that fix several bugs and add enhancements. Issues addressed include code execution, open redirection, and out of bounds write vulnerabilities.

tags | advisory, vulnerability, code execution
systems | linux, redhat
advisories | CVE-2024-2961
SHA-256 | 1f11275b0dd43d99d478e95fd8593ec2bf5885023e503f924c6f4911f8b62b68
Red Hat Security Advisory 2024-7457-03
Posted Oct 9, 2024
Authored by Red Hat | Site access.redhat.com

Red Hat Security Advisory 2024-7457-03 - An update for mod_jk is now available for Red Hat Enterprise Linux 9.4. Issues addressed include denial of service and information leakage vulnerabilities.

tags | advisory, denial of service, vulnerability
systems | linux, redhat
advisories | CVE-2024-46544
SHA-256 | f02fcd9e9978f7b58497d825f37cc33cb2cf8140e304485436227c697fa5f315
Page 1 of 1
Back1Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    13 Files
  • 21
    Nov 21st
    6 Files
  • 22
    Nov 22nd
    48 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    60 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    44 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close