Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 4401-4425 di 4585 risultati
Pagina 177 di 184

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2025-69645 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compilation units can result in an invalid offset_size value being used inside byte_get_little_endian, leading to an abort (SIGABRT). The issue was observed in binutils 2.44. A local attacker can trigger the crash by supplying a malicious input file.11-03-20264401
MSRC Security UpdateCVE-2025-69652 GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformed DWARF abbrev or debug information. Due to incomplete state cleanup in process_debug_info(), an invalid debug_info_p state may propagate into DWARF attribute parsing routines. When certain malformed attributes result in an unexpected data length of zero, byte_get_little_endian() triggers a fatal abort. No evidence of memory corruption or code execution was observed; the impact is limited to denial of service.11-03-20264402
MSRC Security UpdateCVE-2025-69650 GNU Binutils thru 2.46 readelf contains a double free vulnerability when processing a crafted ELF binary with malformed relocation data. During GOT relocation handling, dump_relocations may return early without initializing the all_relocations array. As a result, process_got_section_contents() may pass an uninitialized r_symbol pointer to free(), leading to a double free and terminating the program with SIGABRT. No evidence of exploitable memory corruption or code execution was observed; the impact is limited to denial of service.11-03-20264403
MSRC Security UpdateCVE-2025-69646 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_rnglists header can cause objdump to repeatedly print the same warning message and fail to terminate, resulting in an unbounded logging loop until the process is interrupted. The issue was observed in binutils 2.44. A local attacker can exploit this vulnerability by supplying a malicious input file, leading to excessive CPU and I/O usage and preventing completion of the objdump analysis.11-03-20264404
MSRC Security UpdateCVE-2026-29786 node-tar: Hardlink Path Traversal via Drive-Relative Linkpath11-03-20264405
MSRC Security UpdateCVE-2026-3494 MariaDB Server Audit Plugin Comment Handling Bypass11-03-20264406
MSRC Security UpdateCVE-2026-3731 libssh SFTP Extension Name sftp.c sftp_extensions_get_data out-of-bounds11-03-20264407
MSRC Security UpdateCVE-2024-14027 xattr: switch to CLASS(fd)11-03-20264408
MSRC Security UpdateCVE-2026-27139 FileInfo can escape from a Root in os11-03-20264409
MSRC Security UpdateCVE-2026-26018 CoreDNS Loop Detection Denial of Service Vulnerability11-03-20264410
MSRC Security UpdateCVE-2026-26017 CoreDNS ACL Bypass11-03-20264411
Center of Internet SecurityMultiple Vulnerabilities in Mozilla Firefox Could Allow for Arbitrary Code Execution10-03-20264412
Center of Internet SecurityCritical Patches Issued for Microsoft Products, March 10, 202610-03-20264413
Center of Internet SecurityMultiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution10-03-20264414
MSRC Security UpdateCVE-2026-23671 Windows Bluetooth RFCOM Protocol Driver Elevation of Privilege Vulnerability10-03-20264415
MSRC Security UpdateCVE-2026-25174 Windows Extensible File Allocation Table Elevation of Privilege Vulnerability10-03-20264416
MSRC Security UpdateCVE-2026-25176 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability10-03-20264417
MSRC Security UpdateCVE-2026-25168 Windows Graphics Component Denial of Service Vulnerability10-03-20264418
MSRC Security UpdateCVE-2026-25169 Windows Graphics Component Denial of Service Vulnerability10-03-20264419
MSRC Security UpdateCVE-2026-25170 Windows Hyper-V Elevation of Privilege Vulnerability10-03-20264420
MSRC Security UpdateCVE-2026-25171 Windows Authentication Elevation of Privilege Vulnerability10-03-20264421
MSRC Security UpdateCVE-2026-25172 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability10-03-20264422
MSRC Security UpdateCVE-2026-25173 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability10-03-20264423
MSRC Security UpdateCVE-2026-24288 Windows Mobile Broadband Driver Remote Code Execution Vulnerability10-03-20264424
MSRC Security UpdateCVE-2026-25175 Windows NTFS Elevation of Privilege Vulnerability10-03-20264425
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter