Red Hat Enterprise Linux: Updated docker-registry packages that fix several bugs and add various
enhancements are now available for Red Hat Enterprise Linux 7.
Monthly Archives: March 2015
RHBA-2015:0757-1: python-jinja2 bugfix update
Red Hat Enterprise Linux: An updated python-jinja2 package that fixes one bug is now available for Red Hat
Enterprise Linux 7.
RHBA-2015:0756-1: gnome-terminal bug fix update
Red Hat Enterprise Linux: Updated gnome-terminal packages that fix one bug are now available for Red Hat
Enterprise Linux 6.
RHBA-2015:0755-1: pinentry bug fix update
Red Hat Enterprise Linux: Updated pinentry packages that fix two bugs are now available for Red Hat
Enterprise Linux 6.
RHBA-2015:0754-1: cronie bug fix update
Red Hat Enterprise Linux: Updated cronie packages that fix one bug are now available for Red Hat
Enterprise Linux 6.
eBay Fixes File Upload and Patch Disclosure Bugs
eBay has fixed a pair of security vulnerabilities in its site that could enable attackers to upload executable files disguised as benign file types, construct full path URLs and then point victims to them through drive-by download attacks. The first bug resulted from the failure of an eBay page to check the headers of image files uploaded by […]
Stack overflow in libtasn1
Posted by Hanno Böck on Mar 30
From
https://blog.fuzzing-project.org/6-Stack-overflow-in-libtasn1-TFPA-0022015.html
libtasn1 is a library to parse ASN.1 data structures. Its most
prominent user is GnuTLS.
Fuzzing libtasn1 led to the discovery of a stack write overflow in the
function _asn1_ltostr (file parser_aux.c). It overflows a temporary
buffer variable on certain inputs. This issue has been reported to the
developers on 2015-03-26. A fix was released on 2015-03-29.
The…
Vulnerabilities in multiple Hikvision IP cameras and DVR
Posted by MustLive on Mar 30
Hello list!
There are vulnerabilities in multiple Hikvision IP cameras and DVR.
These are Abuse of Functionality and Brute Force vulnerabilities, similar to
holes in Hikvision DS-7204HWI-SH, which I disclosed earlier.
————————-
Affected vendors:
————————-
Hikvision
http://www.hikvision.com
————————-
Affected products:
————————-
Vulnerable are the next models with different…