Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 3976-4000 di 4265 risultati
Pagina 160 di 171

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2025-65637 A denial-of-service vulnerability exists in github.com/sirupsen/logrus when using Entry.Writer() to log a single-line payload larger than 64KB without newline characters. Due to limitations in the internal bufio.Scanner, the read fails with "token too long" and the writer pipe is closed, leaving Writer() unusable and causing application unavailability (DoS). This affects versions < 1.8.3, 1.9.0, and 1.9.2. The issue is fixed in 1.8.3, 1.9.1, and 1.9.3+, where the input is chunked and the writer continues to function even if an error is logged.07-12-20253976
MSRC Security UpdateCVE-2025-12084 Quadratic complexity in node ID cache clearing07-12-20253977
MSRC Security UpdateCVE-2025-61727 Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x50907-12-20253978
MSRC Security UpdateCVE-2025-66293 LIBPNG has an out-of-bounds read in png_image_read_composite06-12-20253979
MSRC Security UpdateCVE-2024-6485 XSS in Bootstrap button component06-12-20253980
MSRC Security UpdateCVE-2025-61729 Excessive resource consumption when printing error string for host certificate validation in crypto/x50906-12-20253981
MSRC Security UpdateCVE-2025-13837 Out-of-memory when loading Plist06-12-20253982
MSRC Security UpdateCVE-2025-13836 Excessive read buffering DoS in http.client06-12-20253983
MSRC Security UpdateCVE-2022-24736 A Malformed Lua script can crash Redis06-12-20253984
MSRC Security UpdateCVE-2022-24735 Lua scripts can be manipulated to overcome ACL rules in Redis06-12-20253985
MSRC Security UpdateCVE-2025-2486 UEFI Shell accessible in AAVMF with Secure Boot enabled on Ubuntu06-12-20253986
MSRC Security UpdateCVE-2025-10158 Rsync: Out of bounds array access via negative index06-12-20253987
MSRC Security UpdateType Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)06-12-20253988
MSRC Security UpdateType Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)06-12-20253989
MSRC Security UpdateCVE-2025-11731 Libxslt: type confusion in exsltfuncresultcompfunction of libxslt06-12-20253990
MSRC Security UpdateCVE-2025-11230 Denial of service vulnerability in HAProxy mjson library06-12-20253991
MSRC Security UpdateCVE-2025-12817 PostgreSQL CREATE STATISTICS does not check for schema CREATE privilege06-12-20253992
MSRC Security UpdateCVE-2024-47866 RGW DoS attack with empty HTTP header in S3 object copy06-12-20253993
MSRC Security UpdateCVE-2025-64437 KubeVirt Isolation Detection Flaw Allows Arbitrary File Permission Changes06-12-20253994
MSRC Security UpdateCVE-2025-64436 KubeVirt Excessive Role Permissions Could Enable Unauthorized VMI Migrations Between Nodes06-12-20253995
MSRC Security UpdateCVE-2025-64435 KubeVirt VMI Denial-of-Service (DoS) Using Pod Impersonation06-12-20253996
MSRC Security UpdateCVE-2025-64434 KubeVirt Improper TLS Certificate Management Handling Allows API Identity Spoofing06-12-20253997
MSRC Security UpdateCVE-2025-64433 KubeVirt Arbitrary Container File Read06-12-20253998
MSRC Security UpdateCVE-2025-64432 KubeVirt Affected by an Authentication Bypass in Kubernetes Aggregation Layer06-12-20253999
MSRC Security UpdateCVE-2025-10966 missing SFTP host verification with wolfSSH06-12-20254000
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter