[SECURITY] [DSA 3999-1] wpa security update

2017-10-16 Thread Yves-Alexis Perez
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian Security Advisory DSA-3999-1 secur...@debian.org https://www.debian.org/security/Yves-Alexis Perez October 16, 2017

SEC Consult SA-20171016-0 :: Multiple vulnerabilities in Micro Focus VisiBroker C++

2017-10-16 Thread SEC Consult Vulnerability Lab
SEC Consult Vulnerability Lab Security Advisory < 20171016-0 > === title: Multiple vulnerabilities product: Micro Focus VisiBroker C++ vulnerable version: 8.5 SP2 fixed version: 8.5 S

[security bulletin] MFSBGN03786 rev.1 - HPE Connected Backup, Local Escalation of Privilege

2017-10-16 Thread swpmb . cyber-psrt
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Note: the current version of the following document is available here: https://softwaresupport.hpe.com/km/KM02987868 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: KM02987868 Version: 1 MFSBGN03786 rev.1 - HPE Connected Backup, Local

Advisory X41-2017-010: Command Execution in Shadowsocks-libev

2017-10-16 Thread X41 D-Sec GmbH Advisories
X41 D-Sec GmbH Security Advisory: X41-2017-010 Command Execution in Shadowsocks-libev == Overview Severity Rating: High Confirmed Affected Versions: 3.1.0 Confirmed Patched Versions: N/A Vendor: Shadowsocks Vendor URL:

Advisory X41-2017-008: Multiple Vulnerabilities in Shadowsocks

2017-10-16 Thread X41 D-Sec GmbH Advisories
X41 D-Sec GmbH Security Advisory: X41-2017-008 Multiple Vulnerabilities in Shadowsocks === Overview Confirmed Affected Versions: Latest commit 2ab8c6b on Sep 6 Confirmed Patched Versions: N/A Vendor: Shadowsocks Vendor URL:

[RCESEC-2017-002][CVE-2017-14956] AlienVault USM v5.4.2 "/ossim/report/wizard_email.php" Cross-Site Request Forgery leading to Sensitive Information Disclosure

2017-10-16 Thread Julien Ahrens
RCE Security Advisory https://www.rcesecurity.com 1. ADVISORY INFORMATION === Product:AlienVault USM Vendor URL: https://www.alienvault.com Type: Cross-Site Request Forgery [CWE-253] Date found: 2017-09-22 Date published: 2017-10-13 CVSSv3 Score: