Filters

Gentoo ebuild for Slurmpkg_postinst in the Gentoo ebuild for Slurm through 22.05.3 unnecessarily calls chown to assign root…

First published (updated )

Gentoo PortageIn Gentoo Portage before 3.0.47, there is missing PGP validation of executed code: the standalone em…

First published (updated )

Redhat Openstack PlatformPrefix Truncation Attacks in SSH Specification (Terrapin Attack)

First published (updated )

Gentoo sokoSoko SQL Injection vulnerability

First published (updated )

Gentoo sokoSQL Injection

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Usbview Project UsbviewUSBView 2.1 before 2.2 allows some local users (e.g., ones logged in via SSH) to execute arbitrary c…

7.8
First published (updated )

Gentoo PortageRace Condition

First published (updated )

Burp Project BurpThe Gentoo app-backup/burp package before 2.1.32 has incorrect group ownership of the /etc/burp dire…

7.1
First published (updated )

Burp Project BurpThe Gentoo app-backup/burp package before 2.1.32 sets the ownership of the PID file directory to the…

7.1
First published (updated )

Jabberd2 Jabberd2The Gentoo net-im/jabberd2 package through 2.6.1 sets the ownership of /var/run/jabber to the jabber…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Jabberd2 Jabberd2The Gentoo net-im/jabberd2 package through 2.6.1 installs jabberd, jabberd2-c2s, jabberd2-router, ja…

7.8
First published (updated )

Mariadb MariadbThe installation scripts in the Gentoo dev-db/mysql, dev-db/mariadb, dev-db/percona-server, dev-db/m…

7.8
First published (updated )

Elasticsearch LogstashThe init script in the Gentoo app-admin/logstash-bin package before 5.5.3 and 5.6.x before 5.6.1 has…

7.8
First published (updated )

Gentoo Sci-mathematics-gimpsThe Gentoo sci-mathematics/gimps package before 28.10-r1 for Great Internet Mersenne Prime Search (G…

7.3
First published (updated )

Gentoo Dev-python-flowerRace Condition

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Gentoo PortageEbuild in Gentoo may change directory and file permissions depending on the order of installed packa…

7.1
First published (updated )

Gentoo Xdg-utilsCommand Injection

First published (updated )

Gentoo PortageThe urlopen function in pym/portage/util/_urlopen.py in Gentoo Portage 2.1.12, when using HTTPS, doe…

First published (updated )

Transmissionbt TransmissionInteger Overflow

First published (updated )

Gentoo NullmailerThe Gentoo Nullmailer package before 1.11-r2 uses world-readable permissions for /etc/nullmailer/rem…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

MediaWiki MediaWikiXSS

First published (updated )

MediaWiki MediaWikiMediaWiki before 1.19.6 and 1.20.x before 1.20.5 does not allow extensions to prevent password chang…

First published (updated )

Aircrack-ng Aircrack-ngBuffer Overflow

First published (updated )

Open Source Development Team Sthttpdthttpd.c in sthttpd before 2.26.4-r2 and thttpd 2.25b use world-readable permissions for /var/log/th…

2.1
First published (updated )

Gentoo WebminCSRF

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Gentoo Webminfile/edit_html.cgi in Webmin 1.590 and earlier does not perform an authorization check before showin…

First published (updated )

Gentoo Webminfile/show.cgi in Webmin 1.590 and earlier allows remote authenticated users to execute arbitrary com…

First published (updated )

Gentoo WebminInput Validation

First published (updated )

Gentoo LogrotateThe default configuration of logrotate on SUSE openSUSE Factory uses root privileges to process file…

First published (updated )

Gentoo LogrotateThe default configuration of logrotate on Gentoo Linux uses root privileges to process files in dire…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Gentoo LogrotateThe default configuration of logrotate on Debian GNU/Linux uses root privileges to process files in …

First published (updated )

Gentoo LogrotateRace Condition

1.9
First published (updated )

Gentoo LogrotateA denial of service flaw was found in the way the logrotate utility performed arguments sanitization…

1.9
First published (updated )

Gentoo LogrotateInput Validation, Command Injection

First published (updated )

Zoneminder ZoneminderZoneMinder 1.23.3 on Gentoo Linux uses 0644 permissions for /etc/zm.conf, which allows local users t…

2.1
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Glyphandcog XpdfreaderCode Injection

First published (updated )

Gentoo Cmanfence_manual, as used in fence 2.02.00-r1 and possibly cman, allows local users to modify arbitrary …

7.2
First published (updated )

Gentoo PortageMultiple untrusted search path vulnerabilities in Portage before 2.1.4.5 include the current working…

First published (updated )

Gentoo CmanThe (1) fence_apc and (2) fence_apc_snmp programs, as used in (a) fence 2.02.00-r1 and possibly (b) …

1.9
First published (updated )

Firebird FirebirdThe default configuration of Firebird before 2.0.3.12981.0-r6 on Gentoo Linux sets the ISC_PASSWORD …

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Gentoo Php ToolkitInput Validation

3.6
First published (updated )

Viewvc ViewvcInfoleak

First published (updated )

Viewvc ViewvcInfoleak

First published (updated )

Viewvc ViewvcInfoleak

First published (updated )

Gentoo LinuxThe docert function in ssl-cert.eclass, when used by src_compile or src_install on Gentoo Linux, sto…

1.9
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Rpath Rpath Linuxexpn in the am-utils and net-fs packages for Gentoo, rPath Linux, and other distributions, allows lo…

7.2
First published (updated )

redhat/1.0.2Input Validation

First published (updated )

Clam Anti-virus ClamavUnspecified vulnerability in the bzip2 decompression algorithm in nsis/bzlib_private.h in ClamAV bef…

First published (updated )

Gentoo PortageInfoleak

2.1
First published (updated )

Gentoo Mldonkey EbuildThe Gentoo ebuild of MLDonkey before 2.9.0-r3 has a p2p user account with an empty default password …

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203