Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 5376-5400 di 5693 risultati
Pagina 216 di 228

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2026-21637 HackerOne: CVE-2026-21637 TLS PSK/ALPN Callback Exceptions Bypass Error Handlers14-04-20265376
MSRC Security UpdateCVE-2026-20928 Windows Recovery Environment Security Feature Bypass Vulnerability14-04-20265377
MSRC Security UpdateCVE-2026-31418 netfilter: ipset: drop logically empty buckets in mtype_del14-04-20265378
MSRC Security UpdateCVE-2026-28390 Possible NULL Dereference When Processing CMS KeyTransportRecipientInfo14-04-20265379
MSRC Security UpdateCVE-2026-3184 Util-linux: util-linux: access control bypass due to improper hostname canonicalization14-04-20265380
MSRC Security UpdateCVE-2026-27456 util-linux: TOCTOU Race Condition in util-linux mount(8) - Loop Device Setup14-04-20265381
MSRC Security UpdateCVE-2026-0964 Libssh: improper sanitation of paths received from scp servers14-04-20265382
MSRC Security UpdateCVE-2026-0966 Libssh: buffer underflow in ssh_get_hexa() on invalid input14-04-20265383
MSRC Security UpdateCVE-2026-0967 Libssh: libssh: denial of service via inefficient regular expression processing14-04-20265384
MSRC Security UpdateCVE-2026-0965 Libssh: libssh: denial of service via improper configuration file handling14-04-20265385
MSRC Security UpdateCVE-2026-4647 Binutils: out-of-bounds read in xcoff relocation processing in gnu binutils bfd library14-04-20265386
MSRC Security UpdateCVE-2026-32777 14-04-20265387
MSRC Security UpdateCVE-2026-32778 14-04-20265388
MSRC Security UpdateCVE-2026-32776 14-04-20265389
MSRC Security UpdateCVE-2025-69647 14-04-20265390
MSRC Security UpdateCVE-2026-3784 wrong proxy connection reuse with credentials14-04-20265391
MSRC Security UpdateCVE-2026-1965 bad reuse of HTTP Negotiate connection14-04-20265392
MSRC Security UpdateCVE-2026-3783 token leak with redirect and netrc14-04-20265393
MSRC Security UpdateCVE-2025-69649 GNU Binutils thru 2.46 readelf contains a null pointer dereference vulnerability when processing a crafted ELF binary with malformed header fields. During relocation processing, an invalid or null section pointer may be passed into display_relocations(), resulting in a segmentation fault (SIGSEGV) and abrupt termination. No evidence of memory corruption beyond the null pointer dereference, nor any possibility of code execution, was observed.14-04-20265394
MSRC Security UpdateCVE-2025-69645 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug information. A logic error in the handling of DWARF compilation units can result in an invalid offset_size value being used inside byte_get_little_endian, leading to an abort (SIGABRT). The issue was observed in binutils 2.44. A local attacker can trigger the crash by supplying a malicious input file.14-04-20265395
MSRC Security UpdateCVE-2025-69652 GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an abort (SIGABRT) when processing a crafted ELF binary with malformed DWARF abbrev or debug information. Due to incomplete state cleanup in process_debug_info(), an invalid debug_info_p state may propagate into DWARF attribute parsing routines. When certain malformed attributes result in an unexpected data length of zero, byte_get_little_endian() triggers a fatal abort. No evidence of memory corruption or code execution was observed; the impact is limited to denial of service.14-04-20265396
MSRC Security UpdateCVE-2025-69646 Binutils objdump contains a denial-of-service vulnerability when processing a crafted binary with malformed DWARF debug_rnglists data. A logic error in the handling of the debug_rnglists header can cause objdump to repeatedly print the same warning message and fail to terminate, resulting in an unbounded logging loop until the process is interrupted. The issue was observed in binutils 2.44. A local attacker can exploit this vulnerability by supplying a malicious input file, leading to excessive CPU and I/O usage and preventing completion of the objdump analysis.14-04-20265397
MSRC Security UpdateCVE-2025-11839 GNU Binutils prdbg.c tg_tag_type return value14-04-20265398
MSRC Security UpdateCVE-2025-1148 GNU Binutils ld ldelfgen.c link_order_scan memory leak14-04-20265399
MSRC Security UpdateCVE-2025-1147 GNU Binutils nm nm.c internal_strlen buffer overflow14-04-20265400
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter