ImageMagick allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted wpg file.
Monthly Archives: March 2017
CVE-2014-9812
ImageMagick allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted ps file.
CVE-2014-9809
ImageMagick allows remote attackers to cause a denial of service (segmentation fault and application crash) via a crafted xwd image.
CVE-2014-9826
ImageMagick allows remote attackers to have unspecified impact via vectors related to error handling in sun files.
CVE-2016-7542
A read-only administrator on Fortinet devices with FortiOS 5.2.x before 5.2.10 GA and 5.4.x before 5.4.2 GA may have access to read-write administrators password hashes (not including super-admins) stored on the appliance via the webui REST API, and may therefore be able to crack them.
CVE-2016-7541
Long lived sessions in Fortinet FortiGate devices with FortiOS 5.x before 5.4.0 could violate a security policy during IPS signature updates when the FortiGate’s IPSengine is configured in flow mode. All FortiGate versions with IPS configured in proxy mode (the default mode) are not affected.
Malware campaign targets open source developers on GitHub
Be on your guard if you’re a developer who uses GitHub – someone could be trying to infect your computer with malware.
The post Malware campaign targets open source developers on GitHub appeared first on WeLiveSecurity
US Congress sends a (no) privacy note to the entire connected world
US consumers are set to lose control over their online privacy as a consequence of the US Congress throwing out incoming rules for Internet Service Providers that would have given consumers a direct say in how ISPs can use their private data. The overturned rules – passed last October but not yet implemented – would […]
The post US Congress sends a (no) privacy note to the entire connected world appeared first on Avira Blog.
Meet the Transformers: Meet Pop.Up, a conceptional car
It’s like a wet dream for any driver. While all the others enjoy the stop and go rush hour traffic you’re changing into air-mode, pull ahead and cock a snook at the earthbound drivers. Let’s talk about the new and very conceptional car “Pop.Up”. Airbus and the Italian service provider ItalDesign introduced Pop.Up at the Geneva […]
The post Meet the Transformers: Meet Pop.Up, a conceptional car appeared first on Avira Blog.
Carbon Paper: Peering into Turla’s second stage backdoor
The Turla espionage group has been targeting various institutions for many years. Recently, ESET found several new versions of Carbon.
The post Carbon Paper: Peering into Turla’s second stage backdoor appeared first on WeLiveSecurity