Microsoft Windows suffers from a uniscribe font processing heap-based memory corruption vulnerability in USP10!MergeLigRecords.
Microsoft Windows Uniscribe USP10!otlCacheManager::GlyphsSubstituted Memory Corruption
Microsoft Windows suffers from a uniscribe font processing heap-based memory corruption vulnerability in USP10!otlCacheManager::GlyphsSubstituted.
Microsoft Windows Uniscribe USP10!AssignGlyphTypes Out-Of-Bounds Read/Write
Microsoft Windows suffers from a uniscribe font processing out-of-bounds read/write vulnerability in USP10!AssignGlyphTypes.
Microsoft Windows Uniscribe USP10!otlList::insertAt Heap Buffer Overflow
Microsoft Windows suffers from a uniscribe font processing heap-based buffer overflow vulnerability in USP10!otlList::insertAt.
Microsoft Windows Uniscribe usp10!otlChainRuleSetTable::rule Out-Of-Bounds Read
Microsoft Windows suffers from a uniscribe font processing out-of-bounds read in usp10!otlChainRuleSetTable::rule.
Microsoft Windows Kernel Registry Hive Loading Crashes
The Microsoft Windows kernel suffers from hive loading crashes in nt!nt!HvpGetBinMemAlloc and nt!ExpFindAndRemoveTagBigPages.
Google Nest Cam 5.2.1 Buffer Overflow
Google Nest Cam version 5.2.1 suffers from buffer overflow conditions over bluetooth LE.
Faraday 2.4.0
Faraday is a tool that introduces a new concept called IPE, or Integrated Penetration-Test Environment. It is a multiuser penetration test IDE designed for distribution, indexation and analysis of the generated data during the process of a security audit. The main purpose of Faraday is to re-use the available tools in the community to take advantage of them in a multiuser way.
OpenSSH 7.5p1
This is a Linux/portable port of OpenBSD’s excellent OpenSSH. OpenSSH is based on the last free version of Tatu Ylonen’s SSH with all patent-encumbered algorithms removed, all known security bugs fixed, new features reintroduced, and many other clean-ups.
dnaLIMS Admin Module Command Execution
This Metasploit module utilizes an administrative module which allows for command execution. This page is completely unprotected from any authentication when given a POST request.