Buscar noticias
USN-7786-1: OpenSSL vulnerabilities
Stanislav Fort discovered that OpenSSL incorrectly handled memory when trying to decrypt CMS messages encrypted with password-based encryption. An attacker could possibly use this issue to cause a denial of service or execute arbitrary cod…
USN-7785-1: Open VM Tools vulnerability
It was discovered that Open VM Tools incorrectly handled permissions with version checking. An attacker could possibly use this issue to escalate privileges inside a virtual machine. This update disables the SDMP get-versions.sh script, s…
USN-7784-1: Rack vulnerability
It was discovered that Rack incorrectly handled limiting the amount of parameters. An attacker could possibly use this issue to bypass the params_limit value, leading to a denial of service.
USN-7783-1: LibTIFF vulnerabilities
Xudong Cao and Yuqing Zhang discovered that LibTIFF incorrectly handled memory when parsing malformed TIFF images. An attacker could possibly use this issue to cause LibTIFF to crash, resulting in a denial of service. (CVE-2025-8961) Xudo…