[Git][security-tracker-team/security-tracker][master] NFU

2019-06-06 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: fbd4f08c by Henri Salo at 2019-06-06T08:18:40Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2019-12730/ffmpeg

2019-06-05 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 1f9ce830 by Henri Salo at 2019-06-05T08:19:02Z CVE-2019-12730/ffmpeg - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2019-12616/phpmyadmin

2019-06-05 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: a0783f63 by Henri Salo at 2019-06-05T08:15:58Z CVE-2019-12616/phpmyadmin - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-8029/hadoop

2019-05-30 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 9a517f95 by Henri Salo at 2019-05-30T09:40:28Z CVE-2018-8029/hadoop - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2019-05-10 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 3cd9cf40 by Henri Salo at 2019-05-10T08:34:49Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Re: [FD] WordPress plugin Contact Form by WD [CSRF → LFI]

2019-04-30 Thread Henri Salo
_fmc">nopriv_frontend_show_map_fmc >     show_matrix_fmc >     value="nopriv_frontend_show_matrix_fmc">nopriv_frontend_show_matrix_fmc >     value="frontend_paypal_info_fmc">frontend_paypal_info_fmc >   

Re: [FD] WordPress Plugin Form Maker by WD [CSRF → LFI]

2019-04-30 Thread Henri Salo
   value="get_frontend_stats">get_frontend_stats >     frontend_show_map >     value="frontend_show_matrix">frontend_show_matrix >     value="frontend_paypal_info">frontend_paypal_info >     value="frontend_generate_csv&q

Re: [FD] WordPress Plugin Contact Form Builder [CSRF → LFI]

2019-04-30 Thread Henri Salo
are Link: https://wordpress.org/plugins/contact-form-builder > # Version: 1.0.67 > # Tested on: WordPress 5.1.1 MITRE assigned CVE-2019-11557 for this vulnerability. - -- Henri Salo -BEGIN PGP SIGNATURE- iQIzBAEBCAAdFiEE/aVSDznAZReWTkxKJ633pE6qdXQFAlzDe4kACgkQJ633pE6q dXRxjg//V58

[Git][security-tracker-team/security-tracker][master] NFU

2019-04-30 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: fa0979bf by Henri Salo at 2019-04-30T08:20:07Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] 2 commits: NFU

2019-04-29 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: cbed56cb by Henri Salo at 2019-04-29T15:10:53Z NFU - - - - - e1e6fb8e by Henri Salo at 2019-04-29T15:12:12Z CVE assigned for old cJSON issue - - - - - 1 changed file: - data/CVE/list Changes

Re: [FD] YOP Poll 6.0.2 - Reflected XSS (WordPress Plugin)

2019-03-22 Thread Henri Salo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On Tue, Feb 05, 2019 at 04:31:24PM +0100, Tim Coen wrote: > https://security-consulting.icu/blog/2019/02/wordpress-yop-poll-xss/ MITRE assigned CVE-2019-9914 for this vulnerability. - -- Henri Salo -BEGIN PGP SIGNATURE- iQIzBAEBCAAdF

Re: [FD] WP Live Chat Support 8.0.17 - Reflected XSS (WordPress Plugin)

2019-03-22 Thread Henri Salo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On Tue, Feb 05, 2019 at 04:30:37PM +0100, Tim Coen wrote: > https://security-consulting.icu/blog/2019/02/wordpress-wp-livechat-xss/ MITRE assigned CVE-2019-9913 for this vulnerability. - -- Henri Salo -BEGIN PGP SIGNAT

Re: [FD] wpGoogleMaps 7.10.41 - Reflected XSS (WordPress Plugin)

2019-03-22 Thread Henri Salo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On Tue, Feb 05, 2019 at 04:29:38PM +0100, Tim Coen wrote: > https://security-consulting.icu/blog/2019/02/wordpress-wpgooglemaps-xss/ MITRE assigned CVE-2019-9912 for this vulnerability. - -- Henri Salo -BEGIN PGP SIGNAT

Re: [FD] NextScripts: Social Networks Auto-Poster 4.2.7 - Reflected XSS (WordPress Plugin)

2019-03-22 Thread Henri Salo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On Tue, Feb 05, 2019 at 04:28:42PM +0100, Tim Coen wrote: > https://security-consulting.icu/blog/2019/02/wordpress-social-networks-auto-poster-xss/ MITRE assigned CVE-2019-9911 for this vulnerability. - -- Henri Salo -BEGIN PGP SIGNAT

Re: [FD] KingComposer 2.7.6 - Reflected XSS (WordPress Plugin)

2019-03-22 Thread Henri Salo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On Tue, Feb 05, 2019 at 04:27:46PM +0100, Tim Coen wrote: > https://security-consulting.icu/blog/2019/02/wordpress-kingcomposer-xss/ MITRE assigned CVE-2019-9910 for this vulnerability. - -- Henri Salo -BEGIN PGP SIGNAT

Re: [FD] Give 2.3.0 - Reflected XSS (WordPress Plugin)

2019-03-22 Thread Henri Salo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On Tue, Feb 05, 2019 at 04:26:55PM +0100, Tim Coen wrote: > https://security-consulting.icu/blog/2019/02/wordpress-give-xss/ MITRE assigned CVE-2019-9909 for this vulnerability. - -- Henri Salo -BEGIN PGP SIGNATURE- iQIzBAEBCAAdF

Re: [FD] Font_Organizer 2.1.1 - Reflected XSS (WordPress Plugin)

2019-03-22 Thread Henri Salo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On Tue, Feb 05, 2019 at 04:26:09PM +0100, Tim Coen wrote: > https://security-consulting.icu/blog/2019/02/wordpress-font-organizer-xss/ Please use CVE-2019-9908. - -- Henri Salo -BEGIN PGP SIGNATURE- iQIzBAEBCAAdF

Re: [FD] WordPress Plugin GraceMedia Media Player 1.0 - Local File Inclusion

2019-03-19 Thread Henri Salo
ss plugins your solution is not correct. This vulnerability can be exploited even plugin is disabled. Plugin must be deleted in order to mitigate this. - -- Henri Salo -BEGIN PGP SIGNATURE- iQIzBAEBCAAdFiEE/aVSDznAZReWTkxKJ633pE6qdXQFAlyOVtMACgkQJ633pE6q dXTdBA/+J/ml4so

Re: [FD] Contact Form Email 7.10.41 - Reflected XSS & CSRF (WordPress Plugin)

2019-03-12 Thread Henri Salo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On Tue, Feb 05, 2019 at 04:25:25PM +0100, Tim Coen wrote: > https://security-consulting.icu/blog/2019/02/wordpress-contact-form-email-xss-csrf/ MITRE assigned CVE-2019-9646 for this vulnerability. - -- Henri Salo -BEGIN PGP SIGNAT

Re: [FD] Quiz And Survey Master 6.0.4 - Reflected XSS (WordPress Plugin)

2019-03-09 Thread Henri Salo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On Tue, Feb 05, 2019 at 04:21:06PM +0100, Tim Coen wrote: > https://security-consulting.icu/blog/2019/02/wordpress-quiz-and-survey-master-xss/ MITRE assigned CVE-2019-9575 for this vulnerability. - -- Henri Salo -BEGIN PGP SIGNAT

[Git][security-tracker-team/security-tracker][master] NFU

2019-03-05 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: b44b8670 by Henri Salo at 2019-03-05T22:02:13Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Re: [FD] Forminator 1.5.4 - Unauthenticated Persistent XSS, Blind SQL Injection (WordPress Plugin)

2019-03-05 Thread Henri Salo
ion vulnerability. - -- Henri Salo -BEGIN PGP SIGNATURE- iQIzBAEBCAAdFiEE/aVSDznAZReWTkxKJ633pE6qdXQFAlx9zwAACgkQJ633pE6q dXScdQ/+NVNYUW7vnrffGyXzEN1sL/A+R+VUGbAoLTSE/Dex6U0eur+0QviumgwY r77Z4BANUCzO6YXckNRVkQiQB4fD/P5IKwQlrsepaEija2ez6fizCLMHJxlevGMa cWex/Lv0iGZkggt0q+gdmRDV

[Git][security-tracker-team/security-tracker][master] NFU

2019-03-04 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: b3634cfb by Henri Salo at 2019-03-05T00:58:44Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list = @@ -1,7

[Git][security-tracker-team/security-tracker][master] CVE-2018-19759/libsixel

2019-03-03 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 77bb5bc7 by Henri Salo at 2019-03-04T07:58:25Z CVE-2018-19759/libsixel - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Re: [FD] Reflected Cross-site Scripting Vulnerability in Collabtive 3.1

2019-02-21 Thread Henri Salo
On Wed, Jan 30, 2019 at 09:28:15AM +0100, Daniel Bishtawi wrote: > https://www.netsparker.com/web-applications-advisories/ns-18-052-reflected-cross-site-scripting-in-collabtive/ CVE-2019-8935 has been assigned for this vulnerability. -- Henri S

[Git][security-tracker-team/security-tracker][master] CVE-2019-8935/collabtive

2019-02-19 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 9ae9da52 by Henri Salo at 2019-02-19T14:47:08Z CVE-2019-8935/collabtive - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2013-5696/glpi remove obsolete note

2019-02-16 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 725b023a by Henri Salo at 2019-02-16T11:59:13Z CVE-2013-5696/glpi remove obsolete note - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] giflib/CVE-2018-11490

2019-02-10 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 15d5ce41 by Henri Salo at 2019-02-11T07:47:17Z giflib/CVE-2018-11490 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2019-02-05 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: c1f33a9e by Henri Salo at 2019-02-06T07:52:58Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Bug#889224: report

2019-02-02 Thread Henri Salo
Reported this separately to upstream https://sourceforge.net/p/jocr/bugs/38/ -- Henri Salo

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-30 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: dcfa4201 by Henri Salo at 2019-01-30T08:47:53Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-30 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: f81557c9 by Henri Salo at 2019-01-30T08:42:15Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-30 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 8a235ee6 by Henri Salo at 2019-01-30T08:27:01Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-30 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 92d838bc by Henri Salo at 2019-01-30T08:18:59Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Re: [FD] Multiple Reflected Cross-site Scripting Vulnerabilities in Coppermine 1.5.46

2019-01-29 Thread Henri Salo
ting-in-coppermine/ Fixed in 1.5.48. Vendor advisory: http://forum.coppermine-gallery.net/index.php/topic,79577.0.html You might want to repeat your security testing on modified parts of the application. -- Henri Salo ___ Sent through the Full Discl

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-26 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: a2d6f679 by Henri Salo at 2019-01-26T10:08:20Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2017-18359/postgis

2019-01-25 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: eb32ce2c by Henri Salo at 2019-01-25T09:36:17Z CVE-2017-18359/postgis - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-25 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 7a251001 by Henri Salo at 2019-01-25T09:32:27Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-25 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: a2f1101b by Henri Salo at 2019-01-25T09:30:57Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list = @@ -1,9

[Git][security-tracker-team/security-tracker][master] CVE-2018-20098/exiv2

2019-01-23 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 23759667 by Henri Salo at 2019-01-23T22:46:40Z CVE-2018-20098/exiv2 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2019-6706 lua

2019-01-23 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 7b98528a by Henri Salo at 2019-01-23T22:43:10Z CVE-2019-6706 lua - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-11803/subversion

2019-01-23 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 3fabf69a by Henri Salo at 2019-01-23T09:53:11Z CVE-2018-11803/subversion - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Fix invalid non-printable character

2019-01-23 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 72e62ff4 by Henri Salo at 2019-01-23T09:51:45Z Fix invalid non-printable character - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-23 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: c1803380 by Henri Salo at 2019-01-23T09:48:53Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-23 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: ad3156ea by Henri Salo at 2019-01-23T09:47:08Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Re: [FD] Reflected Cross-site Scripting Vulnerability in CubeCart 6.2.2

2019-01-15 Thread Henri Salo
On Wed, Jan 09, 2019 at 10:45:51AM +0200, Henri Salo wrote: > On Mon, Dec 03, 2018 at 03:37:25PM +0100, Daniel Bishtawi wrote: > > https://www.netsparker.com/web-applications-advisories/ns-18-025-reflected-cross-site-scripting-in-cubecart/ Please use CVE-2018-20703. -- H

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-13 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 3ba4526b by Henri Salo at 2019-01-13T15:42:39Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list = @@ -6,6

[Git][security-tracker-team/security-tracker][master] CVE-2018-20212/twiki

2019-01-13 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 3b4d6240 by Henri Salo at 2019-01-13T11:22:07Z CVE-2018-20212/twiki - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Re: [FD] Reflected Cross-site Scripting in Mantis 2.11.1

2019-01-11 Thread Henri Salo
commit/4efac90ed89a5c009108b641e2e95683791a165a Is this correct? -- Henri Salo signature.asc Description: PGP signature ___ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/

Re: [FD] Reflected Cross-site Scripting Vulnerability in CubeCart 6.2.2

2019-01-11 Thread Henri Salo
ixed in what version or commit? Did you request CVE identifier for this vulnerability? -- Henri Salo signature.asc Description: PGP signature ___ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Ar

[Git][security-tracker-team/security-tracker][master] CVE-2018-18718/gthumb

2019-01-11 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 1d99b785 by Henri Salo at 2019-01-11T13:44:41Z CVE-2018-18718/gthumb - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-20685/openssh

2019-01-11 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: b696f669 by Henri Salo at 2019-01-11T13:32:05Z CVE-2018-20685/openssh - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-10 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 4227629c by Henri Salo at 2019-01-10T09:04:41Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2019-01-10 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: f8a27969 by Henri Salo at 2019-01-10T09:04:06Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Re: [FD] Vulnerabilities in Zurmo 2.3.4

2019-01-08 Thread Henri Salo
ct vendor? -- Henri Salo ___ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/

Re: [FD] Reflected Cross-site Scripting Vulnerability in Microweber 1.0.8

2019-01-08 Thread Henri Salo
anuary 2019 - Advisory Released How did you contact vendor? Are you sure that they didn't fix this? Latest version is 1.1.2 according to https://microweber.com/download. Do you plan to follow-up on this or is this case closed from your point of view? -- Henri Salo _

[Git][security-tracker-team/security-tracker][master] Fix typo

2019-01-07 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 46fdcb70 by Henri Salo at 2019-01-07T17:36:02Z Fix typo - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2019-3574/libsixel

2019-01-03 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 2107aa2f by Henri Salo at 2019-01-03T18:42:50Z CVE-2019-3574/libsixel - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Bug#917807: addition

2019-01-02 Thread Henri Salo
Also consider adding following commit when fixing these. https://github.com/cacalabs/libcaca/commit/813baea7a7bc28986e474541dd1080898fac14d7 -- Henri Salo

[Git][security-tracker-team/security-tracker][master] CVE-2018-20545, CVE-2018-20548/libcaca

2018-12-29 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 73460bb1 by Henri Salo at 2018-12-30T00:02:23Z CVE-2018-20545, CVE-2018-20548/libcaca - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-20544/libcaca

2018-12-29 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: c05249a9 by Henri Salo at 2018-12-30T00:00:07Z CVE-2018-20544/libcaca - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-12-26 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 833b5fd5 by Henri Salo at 2018-12-26T13:16:59Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Re: [FD] LibTIFF 4.0.8 has multiple memory leak vulnerabilities (CVE-2017-16232)

2018-12-21 Thread Henri Salo
found from https://gitlab.com/libtiff/libtiff. -- Henri Salo ___ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/

[Git][security-tracker-team/security-tracker][master] NFU

2018-12-19 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 9f154e2b by Henri Salo at 2018-12-19T22:41:49Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-20230/pspp

2018-12-19 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 7d3a2132 by Henri Salo at 2018-12-19T22:32:31Z CVE-2018-20230/pspp - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-12-19 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 2eecc553 by Henri Salo at 2018-12-19T22:31:28Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-12-19 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 20e1fc21 by Henri Salo at 2018-12-19T22:24:14Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-12-15 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: c1e0bff1 by Henri Salo at 2018-12-15T11:50:32Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-11-12 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: d6b8410c by Henri Salo at 2018-11-12T17:47:20Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list = @@ -1,3

[Git][security-tracker-team/security-tracker][master] CVE-2018-19205, CVE-2018-19206

2018-11-12 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: b5f8c859 by Henri Salo at 2018-11-12T17:46:24Z CVE-2018-19205, CVE-2018-19206 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-10-19 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 5d00458d by Henri Salo at 2018-10-19T08:34:04Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-10-15 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: cc5c3a11 by Henri Salo at 2018-10-15T06:08:03Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list = @@ -1,3

[Git][security-tracker-team/security-tracker][master] CVE-2018-17581/exiv2

2018-10-14 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: df064485 by Henri Salo at 2018-10-14T10:38:25Z CVE-2018-17581/exiv2 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-17282/exiv2 upstream fix

2018-10-13 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 0eb40deb by Henri Salo at 2018-10-13T10:16:23Z CVE-2018-17282/exiv2 upstream fix - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-10-07 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: b1a22bca by Henri Salo at 2018-10-07T17:05:10Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-10-04 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 6b60ffb0 by Henri Salo at 2018-10-05T02:02:32Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-17983/mercurial

2018-10-04 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: b483fb18 by Henri Salo at 2018-10-05T02:01:40Z CVE-2018-17983/mercurial - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-10-03 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 7e44dc51 by Henri Salo at 2018-10-03T08:38:13Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list = @@ -1,3

[Git][security-tracker-team/security-tracker][master] NFU

2018-10-02 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 91d93203 by Henri Salo at 2018-10-02T19:37:36Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list = @@ -2,6

Re: [FD] Information Exposure Vulnerability in WordPress Mobile Pack Wordpress Plugin v2.1.2 and below

2018-10-02 Thread Henri Salo
3 > # Link to code diff: https://plugins.trac.wordpress.org/changeset/1173611/ > # Changelog: https://wordpress.org/plugins/wordpress-mobile-pack/changelog/ > # CVE Status: None/Unassigned/Fresh CVE-2015-9269 has been assigned for this vulnerability. -- Henri Salo s

[Git][security-tracker-team/security-tracker][master] CVE-2018-17795

2018-10-01 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 18de6153 by Henri Salo at 2018-10-01T18:01:30Z CVE-2018-17795 - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-09-01 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 749a6a48 by Henri Salo at 2018-09-01T08:26:11Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Remove old CVE rejection note

2018-09-01 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 6786a3bf by Henri Salo at 2018-09-01T08:24:18Z Remove old CVE rejection note - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-09-01 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 3bb68689 by Henri Salo at 2018-09-01T08:21:35Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-09-01 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 42fd893c by Henri Salo at 2018-09-01T08:20:12Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list = @@ -5,7

[Git][security-tracker-team/security-tracker][master] CVE-2018-8360 need checking. thanks carnil for pointing this out

2018-08-19 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: cf355a63 by Henri Salo at 2018-08-19T10:48:29Z CVE-2018-8360 need checking. thanks carnil for pointing this out - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] NFU

2018-08-19 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: e7c770b5 by Henri Salo at 2018-08-19T08:55:36Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-08-19 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: aa2393fc by Henri Salo at 2018-08-19T08:49:14Z NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

Re: [FD] Full Disclosure - Responsive File Manager

2018-08-13 Thread Henri Salo
.txt "fix vulnerability that permits to see server files", which was released 2018-08-04. Didn't manually verify. -- Henri Salo ___ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web A

[Git][security-tracker-team/security-tracker][master] CVE-2017-12144/libytnef

2018-07-30 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: b2b7ea0f by Henri Salo at 2018-07-30T13:21:06Z CVE-2017-12144/libytnef - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2017-12144/libytnef

2018-07-30 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 54eb15fb by Henri Salo at 2018-07-30T13:14:57Z CVE-2017-12144/libytnef - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2017-12142/libytnef

2018-07-30 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: f5c3da31 by Henri Salo at 2018-07-30T13:13:19Z CVE-2017-12142/libytnef - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] mp4v2 double free

2018-07-13 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 8c785c34 by Henri Salo at 2018-07-13T14:54:39+03:00 mp4v2 double free - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2018-5692/piwigo

2018-07-11 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: fe00a56c by Henri Salo at 2018-07-11T12:34:20+03:00 CVE-2018-5692/piwigo - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2017-17827/piwigo

2018-07-06 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 8a51bec9 by Henri Salo at 2018-07-07T00:46:26+03:00 CVE-2017-17827/piwigo - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] CVE-2017-17827/piwigo

2018-07-06 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 97a0e87e by Henri Salo at 2018-07-07T00:44:54+03:00 CVE-2017-17827/piwigo - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add upstream issue and fix commit URLs for piwigo CVE-2018-7722 and CVE-2018-7724

2018-07-06 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 4987d3f9 by Henri Salo at 2018-07-07T00:08:14+03:00 Add upstream issue and fix commit URLs for piwigo CVE-2018-7722 and CVE-2018-7724 - - - - - 1 changed file: - data/CVE/list Changes

[Git][security-tracker-team/security-tracker][master] CVE-2018-11507/flif

2018-05-28 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: 6555c91d by Henri Salo at 2018-05-28T11:18:52+03:00 CVE-2018-11507/flif - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] fix typo

2018-05-18 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: a8547f04 by Henri Salo at 2018-05-19T00:39:40+03:00 fix typo - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] NFU

2018-05-14 Thread Henri Salo
Henri Salo pushed to branch master at Debian Security Tracker / security-tracker Commits: b5f7e17a by Henri Salo at 2018-05-15T04:57:14+03:00 NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

<    1   2   3   4   5   6   7   8   9   10   >