Where
AND
-Infinity
0
Severity
9
Integer Overflow, Use After Free

Critical: firefox security update

1 / 2
Source: Red Hat

Remedy

<tbody><tr> <th colspan="2">SRPM</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el8_4.src.rpm </td> <td class="checksum">SHA-256: 0f3e8513c170aa0a39af9d8dcfdb9ab01715d044ead10f08ef2d8a5bda28a3cd</td> </tr> <tr> <th colspan="2">ppc64le</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el8_4.ppc64le.rpm </td> <td class="checksum">SHA-256: b7f3320955f05d38299c1444dc2d52b00433285519f228d794e3242070ae1727</td> </tr> <tr> <td class="name"> firefox-debuginfo-115.9.1-1.el8_4.ppc64le.rpm </td> <td class="checksum">SHA-256: 24ead12da3859461c86c4f28f642e452042d8a59f5797e0c1a813b37a5129954</td> </tr> <tr> <td class="name"> firefox-debugsource-115.9.1-1.el8_4.ppc64le.rpm </td> <td class="checksum">SHA-256: 07d8ffd7770966cc3ac06fba0a46abdf9d73473ae659a6888b63d98d9297cd39</td> </tr> </tbody>Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.4 <tbody><tr> <th colspan="2">SRPM</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el8_4.src.rpm </td> <td class="checksum">SHA-256: 0f3e8513c170aa0a39af9d8dcfdb9ab01715d044ead10f08ef2d8a5bda28a3cd</td> </tr> <tr> <th colspan="2">x86_64</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el8_4.x86_64.rpm </td> <td class="checksum">SHA-256: 77fa421d12da0f10b5ec1952ffd7603faeb31f31f2ba4b7d35277c50789faab5</td> </tr> <tr> <td class="name"> firefox-debuginfo-115.9.1-1.el8_4.x86_64.rpm </td> <td class="checksum">SHA-256: 621cc47edc8032e6450213676492b7e1a9aae80f15a2cb13033b6ea1bcd5129a</td> </tr> <tr> <td class="name"> firefox-debugsource-115.9.1-1.el8_4.x86_64.rpm </td> <td class="checksum">SHA-256: 9b7bb7d80a6550b5b568ceec9fc6fed632eaab96b0bdaf3c1cd35a338cd90c64</td> </tr> </tbody>
First published (updated )
Severity
9
Integer Overflow, Use After Free

Critical: firefox security update

1 / 2
Source: Red Hat

Remedy

<tbody><tr> <th colspan="2">SRPM</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el8_8.src.rpm </td> <td class="checksum">SHA-256: 21de0b61641cbbf54620b9582872ef92d518c0759c022cfe30ef864adad0a9e5</td> </tr> <tr> <th colspan="2">ppc64le</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el8_8.ppc64le.rpm </td> <td class="checksum">SHA-256: 88053835a519c482e27f233bc248093b2b5f861444c89e1f9450a33d63e34861</td> </tr> <tr> <td class="name"> firefox-debuginfo-115.9.1-1.el8_8.ppc64le.rpm </td> <td class="checksum">SHA-256: 4b545b0f64d0a6cba65735f011f307c530d07411a6c9ec8098fb7e1569efe45c</td> </tr> <tr> <td class="name"> firefox-debugsource-115.9.1-1.el8_8.ppc64le.rpm </td> <td class="checksum">SHA-256: 2f8f255fb2b0484c8241840ceffc5acdbe6b243f33971160a0cbb4bb1942e90a</td> </tr> </tbody>Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 8.8 <tbody><tr> <th colspan="2">SRPM</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el8_8.src.rpm </td> <td class="checksum">SHA-256: 21de0b61641cbbf54620b9582872ef92d518c0759c022cfe30ef864adad0a9e5</td> </tr> <tr> <th colspan="2">x86_64</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el8_8.x86_64.rpm </td> <td class="checksum">SHA-256: 3ed4b324e31ab6565666890b05bf9feb21dcea0f838f59874380949cdfb5e235</td> </tr> <tr> <td class="name"> firefox-debuginfo-115.9.1-1.el8_8.x86_64.rpm </td> <td class="checksum">SHA-256: c097afdcf22de1573cccca20b9d2cd3224bdb1538a32e6a3d617818e7bcc3f36</td> </tr> <tr> <td class="name"> firefox-debugsource-115.9.1-1.el8_8.x86_64.rpm </td> <td class="checksum">SHA-256: 119a56501191b0d5ad28ed0436bc8521f71d5ee65ed05e2928c73190dd9ce681</td> </tr> </tbody>
First published (updated )
Severity
9
Integer Overflow, Use After Free

Critical: firefox security update

1 / 2
Source: Red Hat

Remedy

<tbody><tr> <th colspan="2">SRPM</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el9_0.src.rpm </td> <td class="checksum">SHA-256: 984d8d56f964ae8d4ff3ed7d30167f192af42793e80f2c79506a6900f6954edc</td> </tr> <tr> <th colspan="2">ppc64le</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el9_0.ppc64le.rpm </td> <td class="checksum">SHA-256: 55f6a0f8b6e8c668154be5c7d6e77e422aeee07955c722e719d09268ff9f58c0</td> </tr> <tr> <td class="name"> firefox-debuginfo-115.9.1-1.el9_0.ppc64le.rpm </td> <td class="checksum">SHA-256: 436a9e8f91211c39d3fb5ef124fd79a6f46245c93a869984d6107fabf709ce8a</td> </tr> <tr> <td class="name"> firefox-debugsource-115.9.1-1.el9_0.ppc64le.rpm </td> <td class="checksum">SHA-256: 5b35994cfca8ef350d344d602e9c82219466513259958fe4af31bba11d52a5f8</td> </tr> </tbody>Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 <tbody><tr> <th colspan="2">SRPM</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el9_0.src.rpm </td> <td class="checksum">SHA-256: 984d8d56f964ae8d4ff3ed7d30167f192af42793e80f2c79506a6900f6954edc</td> </tr> <tr> <th colspan="2">x86_64</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el9_0.x86_64.rpm </td> <td class="checksum">SHA-256: 0c01604e0fec7e5038dd3a82b2738b9a6fef42d6df4ad0c1e36c174cf507c149</td> </tr> <tr> <td class="name"> firefox-debuginfo-115.9.1-1.el9_0.x86_64.rpm </td> <td class="checksum">SHA-256: b8d79531ee35afa95b443e7626b5cb4f60ccee2ba86633ce7c8b821cc4069293</td> </tr> <tr> <td class="name"> firefox-debugsource-115.9.1-1.el9_0.x86_64.rpm </td> <td class="checksum">SHA-256: 3da33d8ccac7e5938098446d9beb984cfee0619db23153b1119e3a62a8df2c60</td> </tr> </tbody>Red Hat Enterprise Linux Server for ARM 64 - 4 years of updates 9.0 <tbody><tr> <th colspan="2">SRPM</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el9_0.src.rpm </td> <td class="checksum">SHA-256: 984d8d56f964ae8d4ff3ed7d30167f192af42793e80f2c79506a6900f6954edc</td> </tr> <tr> <th colspan="2">aarch64</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el9_0.aarch64.rpm </td> <td class="checksum">SHA-256: 79bcd4f063f980a3e3e881391d091c82fb9a2491c59823d058fb01c3b58677c6</td> </tr> <tr> <td class="name"> firefox-debuginfo-115.9.1-1.el9_0.aarch64.rpm </td> <td class="checksum">SHA-256: c798f078bc5485f10a851a2bd5fcac087c7219536782a1f5cd9cf968881bc1d1</td> </tr> <tr> <td class="name"> firefox-debugsource-115.9.1-1.el9_0.aarch64.rpm </td> <td class="checksum">SHA-256: 4eed2bdcef3984507d5cc802ae0b1a1d06e76b4fa360da5b7bd55bb6fd5a9194</td> </tr> </tbody>Red Hat Enterprise Linux Server for IBM z Systems - 4 years of updates 9.0 <tbody><tr> <th colspan="2">SRPM</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el9_0.src.rpm </td> <td class="checksum">SHA-256: 984d8d56f964ae8d4ff3ed7d30167f192af42793e80f2c79506a6900f6954edc</td> </tr> <tr> <th colspan="2">s390x</th> </tr> <tr> <td class="name"> firefox-115.9.1-1.el9_0.s390x.rpm </td> <td class="checksum">SHA-256: 30a1c885a927772b81cd6a4466c9893e19c11dae5b01872de8148756332c1296</td> </tr> <tr> <td class="name"> firefox-debuginfo-115.9.1-1.el9_0.s390x.rpm </td> <td class="checksum">SHA-256: 73d6df7685ceb5dfaac37adee517f4df70f993c579b004d56ead11de32cbcbcc</td> </tr> <tr> <td class="name"> firefox-debugsource-115.9.1-1.el9_0.s390x.rpm </td> <td class="checksum">SHA-256: 085037ae7f7bd9bad515de1d8a5e37502cb7f2d59fa7dace32e39af75483a77c</td> </tr> </tbody>
First published (updated )
Severity
9

Critical: squid security update

Remedy

For details on how to apply this update, which includes the changes described in this advisory, refer to:<br><a href="https://access.redhat.com/articles/11258" target="_blank">https://access.redhat.com/articles/11258</a> After installing this update, the squid service will be restarted automatically.
First published (updated )
Severity
9

Critical: squid security update

Remedy

For details on how to apply this update, which includes the changes described in this advisory, refer to:<br><a href="https://access.redhat.com/articles/11258" target="_blank">https://access.redhat.com/articles/11258</a> After installing this update, the squid service will be restarted automatically.
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Severity
9

Critical: toolbox security update

1 / 2

Remedy

For details on how to apply this update, which includes the changes described in this advisory, refer to:<br><a href="https://access.redhat.com/articles/11258" target="_blank">https://access.redhat.com/articles/11258</a>
First published (updated )
Severity
9
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

The Samba vfsfruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interoperability with a Netatalk 3 AFP fileserver." Samba versions prior to 4.13.17, 4.14.12 and 4.15.5 with vfsfruit configured allow out-of-bounds heap read and write via specially crafted extended file attributes. A remote attacker with write access to extended file attributes can execute arbitrary code with the privileges of smbd, typically root.

First published (updated )
Severity
9
Race Condition
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.

1 / 3
Source: Launchpad
First published (updated )
Severity
9.3
Command Injection, OS Command Injection
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

sssctlruncommand() is a wrapper for running commands via a shell, using glibc's system() function call. sssctlcacheexpire() and sssctllogsfetch() allow user provided arguments, and pass them to sssctlruncommand() sssctl is limited to root user, however, if an administrator allows unprivileged users to provide arguments to the command (e.g.: via sudo), this could be used to elevate privileges via a shell injection.

Although there are no known default configuration where this flaw could be exploited, the admin could have manually created sudo rules to let regular users use sssctl commands, or could be tricked into running a specially crafted sssctl command.

References:

https://sssd.io/release-notes/sssd-2.6.0.html

1 / 2
Source: Red Hat

Remedy

Red Hat has investigated whether a possible mitigation exists for this issue, and has not been able to identify a practical example. Please update the affected package as soon as possible.
First published (updated )
Severity
9.8
Buffer Overflow, Integer Overflow
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.

1 / 4
Source: Ubuntu
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Severity
9.8
XSS
AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

Affected Node.js versions can be exploited to perform HTTP desync attacks and deliver malicious payloads to unsuspecting users. The payloads can be crafted by an attacker to hijack user sessions, poison cookies, perform clickjacking, and a multitude of other attacks depending on the architecture of the underlying system.

Downloads & release details

Node.js v10.19.0 (LTS) - https://nodejs.org/en/blog/release/v10.19.0/ Node.js v12.15.0 (LTS) - https://nodejs.org/en/blog/release/v12.15.0/ Node.js v13.8.0 (LTS) - https://nodejs.org/en/blog/release/v13.8.0/

1 / 4
Source: Red Hat
First published (updated )
Severity
9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

A flaw was found in WebKitGTK before 2.26.3. Processing maliciously crafted web content may lead to arbitrary code execution.

References:

https://www.openwall.com/lists/oss-security/2020/01/23/2 https://webkitgtk.org/security/WSA-2020-0001.html

1 / 3
Source: Red Hat
First published (updated )
Severity
9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

A flaw was found in WebKitGTK before 2.26.3. Processing maliciously crafted web content may lead to arbitrary code execution.

References:

https://www.openwall.com/lists/oss-security/2020/01/23/2 https://webkitgtk.org/security/WSA-2020-0001.html

1 / 3
Source: Red Hat
First published (updated )
Severity
9.3
Use After Free
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

A flaw was found in WebKitGTK before 2.26.3. Processing maliciously crafted web content may lead to arbitrary code execution.

References:

https://www.openwall.com/lists/oss-security/2020/01/23/2 https://webkitgtk.org/security/WSA-2020-0001.html

1 / 3
Source: Red Hat
First published (updated )
Severity
9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, Safari 13.0.3, iTunes for Windows 12.10.2, iCloud for Windows 11.0, iCloud for Windows 7.15. Processing maliciously crafted web content may lead to arbitrary code execution.

1 / 3
Source: MITRE
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Severity
9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, watchOS 6.1, Safari 13.0.3, iTunes for Windows 12.10.2, iCloud for Windows 11.0, iCloud for Windows 7.15. Processing maliciously crafted web content may lead to arbitrary code execution.

1 / 3
Source: MITRE
First published (updated )
Severity
9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, Safari 13.0.3, iTunes for Windows 12.10.2, iCloud for Windows 11.0, iCloud for Windows 7.15. Processing maliciously crafted web content may lead to arbitrary code execution.

1 / 3
Source: MITRE
First published (updated )
Severity
9.1
AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Eclipse OpenJ9 could allow a local attacker to gain elevated privileges on the system, caused by the failure to performs an authorization check when an actor attempts to access a resource or perform an action. An attacker could exploit this vulnerability to gain access to diagnostic operations such as causing a GC or creating a diagnostic file.

1 / 3
Source: IBM
First published (updated )
Severity
9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

A flaw was found in ghostscript, versions 9.x before 9.50, in the setsystemparams procedure where it did not properly secure its privileged calls, enabling scripts to bypass -dSAFER restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or execute arbitrary commands.

First published (updated )
Severity
9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

1 / 3
Source: MITRE
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Severity
9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

1 / 3
Source: MITRE
First published (updated )
Severity
9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

1 / 3
Source: MITRE
First published (updated )
Severity
9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

1 / 3
Source: MITRE
First published (updated )
Severity
9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

1 / 3
Source: MITRE
First published (updated )
Severity
9.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.

1 / 3
Source: MITRE
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Severity
9.3
Use After Free
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Adobe Flash Player versions 32.0.0.171 and earlier, 32.0.0.171 and earlier, and 32.0.0.171 and earlier have a use after free vulnerability. Successful exploitation could lead to arbitrary code execution.

1 / 3
Source: MITRE
First published (updated )
Severity
9.8
Buffer Overflow
AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Buffer overflow in system firmware for EDK II may allow unauthenticated user to potentially enable escalation of privilege and/or denial of service via network access.

1 / 4
First published (updated )
Severity
9.8
Buffer Overflow, Input Validation
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

IBM JDK 8 SR5 FP30 (8.0.5.30) and IBM JDK 7R1 SR4 FP40 (7.1.4.40) fix a flaw described by upstream as:

Eclipse OpenJ9 is vulnerable to a buffer overflow, caused by improper bounds checking by the jiosnprintf() and jiovsnprintf() functions. By sending an overly long argument, a remote attacker could overflow a buffer and execute arbitrary code on the system or cause the application to crash.

OpenJ9 upstream bug and commit:

https://bugs.eclipse.org/bugs/showbug.cgi?id=543659 https://github.com/eclipse/openj9/commit/0971f22d88f42cf7332364ad7430e9bd8681c970

References:

https://www-01.ibm.com/support/docview.wss?uid=ibm10873332 https://developer.ibm.com/javasdk/support/security-vulnerabilities/#IBMSecurityUpdateMarch2019

1 / 2
Source: Red Hat
First published (updated )
Severity
9.8
Input Validation
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

IBM JDK 8 SR5 FP30 (8.0.5.30) fixes a flaw described by upstream as:

Eclipse OpenJ9 could allow a remote attacker to execute arbitrary code on the system, caused by the failure to omit a null check on the receiver object of an Unsafe call when accelerating it. An attacker could exploit this vulnerability to execute arbitrary code on the system.

OpenJ9 upstream bug:

https://bugs.eclipse.org/bugs/showbug.cgi?id=544019

Related OpenJ9 upstream commit seems to be:

https://github.com/eclipse/openj9/commit/531d3f96fe9cdcf6baad9f6d6837be8fbc805d8d

References:

https://www-01.ibm.com/support/docview.wss?uid=ibm10873332 https://developer.ibm.com/javasdk/support/security-vulnerabilities/#IBMSecurityUpdateMarch2019

1 / 2
Source: Red Hat
First published (updated )
Severity
9.8
SQL Injection
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

A vulnerability was found in SQLAlchemy 1.2.17. An SQL Injection when the orderby parameter can be controlled.

Upstream issue:

https://github.com/sqlalchemy/sqlalchemy/issues/4481

Upstream patch:

https://github.com/sqlalchemy/sqlalchemy/commit/30307c4616ad67c01ddae2e1e8e34fabf6028414

1 / 2
Source: Red Hat
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203