Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 4376-4400 di 4585 risultati
Pagina 176 di 184

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2025-61727 Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x50912-03-20264376
MSRC Security UpdateCVE-2025-61729 Excessive resource consumption when printing error string for host certificate validation in crypto/x50912-03-20264377
MSRC Security UpdateCVE-2025-61725 Excessive CPU consumption in ParseAddress in net/mail12-03-20264378
MSRC Security UpdateCVE-2025-61724 Excessive CPU consumption in Reader.ReadResponse in net/textproto12-03-20264379
MSRC Security UpdateCVE-2025-58186 Lack of limit when parsing cookies can cause memory exhaustion in net/http12-03-20264380
MSRC Security UpdateCVE-2025-58183 Unbounded allocation when parsing GNU sparse map in archive/tar12-03-20264381
MSRC Security UpdateCVE-2025-58188 Panic when validating certificates with DSA public keys in crypto/x50912-03-20264382
MSRC Security UpdateCVE-2026-3784 wrong proxy connection reuse with credentials12-03-20264383
MSRC Security UpdateCVE-2026-1965 bad reuse of HTTP Negotiate connection12-03-20264384
MSRC Security UpdateCVE-2026-3783 token leak with redirect and netrc12-03-20264385
MSRC Security UpdateCVE-2026-23240 tls: Fix race condition in tls_sw_cancel_work_tx()12-03-20264386
MSRC Security UpdateCVE-2026-23239 espintcp: Fix race condition in espintcp_close()12-03-20264387
MSRC Security UpdateCVE-2026-23868 12-03-20264388
MSRC Security UpdateCVE-2026-25679 Incorrect parsing of IPv6 host literals in net/url12-03-20264389
MSRC Security UpdateCVE-2026-26148 Microsoft Azure AD SSH Login extension for Linux Elevation of Privilege Vulnerability11-03-20264390
MSRC Security UpdateChromium: CVE-2026-3537 Object lifecycle issue in PowerVR11-03-20264391
MSRC Security UpdateCVE-2026-24293 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability11-03-20264392
MSRC Security UpdateCVE-2026-23865 An integer overflow in the tt_var_load_item_variation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable fonts. This issue is fixed in version 2.14.2.11-03-20264393
MSRC Security UpdateCVE-2026-3713 pnggroup libpng pnm2png pnm2png.c do_pnm2png heap-based overflow11-03-20264394
MSRC Security UpdateCVE-2026-27137 Incorrect enforcement of email constraints in crypto/x50911-03-20264395
MSRC Security UpdateCVE-2026-27138 Panic in name constraint checking for malformed certificates in crypto/x50911-03-20264396
MSRC Security UpdateCVE-2026-27142 URLs in meta content attribute actions are not escaped in html/template11-03-20264397
MSRC Security UpdateCVE-2025-69644 An issue was discovered in Binutils before 2.46. The objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed debug information. A logic flaw in the handling of DWARF location list headers can cause objdump to enter an unbounded loop and produce endless output until manually interrupted. This issue affects versions prior to the upstream fix and allows a local attacker to cause excessive resource consumption by supplying a malicious input file.11-03-20264398
MSRC Security UpdateCVE-2025-69651 GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted ELF binary with malformed relocation or symbol data. If dump_relocations returns early due to parsing errors, the internal all_relocations array may remain partially uninitialized. Later, process_got_section_contents() may attempt to free an invalid r_symbol pointer, triggering memory corruption checks in glibc and causing the program to terminate with SIGABRT. No evidence of further memory corruption or code execution was observed; the impact is limited to denial of service.11-03-20264399
MSRC Security UpdateCVE-2025-69649 GNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. During relocation processing, an invalid or null section pointer may be passed into display_relocations(), resulting in a segmentation fault (SIGSEGV) and abrupt termination. No evidence of memory corruption beyond the null pointer dereference, nor any possibility of code execution, was observed.11-03-20264400
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter