Resolved Bugs
1059947 – CVE-2014-1833 devscripts: directory traversal flaw in uupdate
1059948 – devscripts: directory traversal flaw in uupdate [fedora-20]<br
Update to version 2.14.9, see http://metadata.ftp-master.debian.org/changelogs//main/d/devscripts/devscripts_2.14.9_changelog for details.
Update to version 2.14.8, see http://metadata.ftp-master.debian.org/changelogs//main/d/devscripts/devscripts_2.14.8_changelog for details. Fixes CVE-2014-1833.
Category Archives: Security
Security
Fedora 20 Security Update: devscripts-2.14.9-1.fc20
Resolved Bugs
1059947 – CVE-2014-1833 devscripts: directory traversal flaw in uupdate
1059948 – devscripts: directory traversal flaw in uupdate [fedora-20]<br
Update to version 2.14.9, see http://metadata.ftp-master.debian.org/changelogs//main/d/devscripts/devscripts_2.14.9_changelog for details.
Update to version 2.14.8, see http://metadata.ftp-master.debian.org/changelogs//main/d/devscripts/devscripts_2.14.8_changelog for details. Fixes CVE-2014-1833.
Re: CSP Bypass on Android prior to 4.4
Posted by E Boogie on Oct 14
Hello again Full disclosure,
One final email. A couple things to note about this.
I’ve been testing A LOT on A LOT of different browsers and Android
Devices.. The more I test, the more It becomes clear that my u0000
vulnerability is not legit and there is a different much larger CSP issues
at play here. (I did a lot of testing before reporting but there is a lot
going on here that caused me to mess up here).
First – The issue is not that…
Rooted CON 2015 – Call For Papers
Posted by omarbv on Oct 14
______ _ _ ____ ___ _ _
/ / _ ___ ___ | |_ ___ __| |/ ___/ _ | | |
/ /| |_) / _ / _ | __/ _ / _` | | | | | | | |
/ / | _ < (_) | (_) | || __/ (_| | |__| |_| | | |
/_/ |_| ____/ ___/ _____|__,_|_______/|_| _|
RootedCON 2015 – ‘Call for Papers’
PLEASE, READ CAREFULLY ALL THE DETAILS IN THIS DOCUMENT.
-=] About RootedCON
RootedCON is a security congress that will take…
OWASP OWTF 1.0 "Lionheart" released!
Posted by Abraham Aranguren on Oct 14
Dear Full Disclosure friends,
We are pleased to let you know that OWASP OWTF 1.0 “Lionheart” has been released!
Dedicated to the courage and hard work shown by all OWASP OWTF contributors,
mentors, everybody that gave us cool ideas, etc. to make this amazing
release happen, to all of you, thank you!
Some links:
– – Handy redirect: http://owtf.org/
(takes you to: https://www.owasp.org/index.php/OWASP_OWTF)
– – Getting started -…
Kmart, Dairy Queen See Payment Card Data Stolen
SnapSaved Takes Blame For Snapchat Image Leak
Private Donors Supply Spy Gear To Cops
Vuln: Linux Kernel CVE-2014-5045 Local Privilege Escalation Vulnerability
Linux Kernel CVE-2014-5045 Local Privilege Escalation Vulnerability
DSA-3049 wireshark – security update
Multiple vulnerabilities were discovered in the dissectors/parsers for
RTP, MEGACO, Netflow, RTSP, SES and Sniffer, which could result in denial
of service.