Filter
-Infinity
0

BleepingComputerOver 660,000 Rsync servers exposed to code execution attacks

First published (updated )

SchedMD Slurmpkg_postinst in the Gentoo ebuild for Slurm through 22.05.3 unnecessarily calls chown to assign root…

First published (updated )

Gentoo PortageIn Gentoo Portage before 3.0.47, there is missing PGP validation of executed code: the standalone em…

First published (updated )

Red Hat OpenStack PlatformImpact of Terrapin SSH Attack

First published (updated )

Gentoo LinuxSoko SQL Injection vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Gentoo LinuxGentoo soko contains DoS attack based on SQL Injection

First published (updated )

debian/usbviewUSBView 2.1 before 2.2 allows some local users (e.g., ones logged in via SSH) to execute arbitrary c…

7.8
First published (updated )

Gentoo PortageRace Condition

First published (updated )

Burp SuiteThe Gentoo app-backup/burp package before 2.1.32 has incorrect group ownership of the /etc/burp dire…

7.1
First published (updated )

Burp SuiteThe Gentoo app-backup/burp package before 2.1.32 sets the ownership of the PID file directory to the…

7.1
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

JabberdThe Gentoo net-im/jabberd2 package through 2.6.1 sets the ownership of /var/run/jabber to the jabber…

First published (updated )

JabberdThe Gentoo net-im/jabberd2 package through 2.6.1 installs jabberd, jabberd2-c2s, jabberd2-router, ja…

7.8
First published (updated )

MariaDBThe installation scripts in the Gentoo dev-db/mysql, dev-db/mariadb, dev-db/percona-server, dev-db/m…

7.8
First published (updated )

Logstash Management APIThe init script in the Gentoo app-admin/logstash-bin package before 5.5.3 and 5.6.x before 5.6.1 has…

7.8
First published (updated )

Gentoo Sci-mathematics-gimpsThe Gentoo sci-mathematics/gimps package before 28.10-r1 for Great Internet Mersenne Prime Search (G…

7.3
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

FlowerRace Condition

First published (updated )

Gentoo PortageEbuild in Gentoo may change directory and file permissions depending on the order of installed packa…

7.1
First published (updated )

debian/xdg-utilsCommand Injection

First published (updated )

Gentoo PortageThe urlopen function in pym/portage/util/_urlopen.py in Gentoo Portage 2.1.12, when using HTTPS, doe…

First published (updated )

TransmissionInteger Overflow

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

NullmailerThe Gentoo Nullmailer package before 1.11-r2 uses world-readable permissions for /etc/nullmailer/rem…

First published (updated )

MediaWikiXSS

First published (updated )

MediaWikiMediaWiki before 1.19.6 and 1.20.x before 1.20.5 does not allow extensions to prevent password chang…

First published (updated )

Aircrack-ngBuffer Overflow

First published (updated )

Open Source Development Team shttpdthttpd.c in sthttpd before 2.26.4-r2 and thttpd 2.25b use world-readable permissions for /var/log/th…

2.1
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

WebminCSRF

First published (updated )

Webminfile/edit_html.cgi in Webmin 1.590 and earlier does not perform an authorization check before showin…

First published (updated )

Webminfile/show.cgi in Webmin 1.590 and earlier allows remote authenticated users to execute arbitrary com…

First published (updated )

WebminInput Validation

First published (updated )

LogrotateThe default configuration of logrotate on SUSE openSUSE Factory uses root privileges to process file…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203