Aggregator
【火绒安全周报】电子黄牛团伙被端/考勤打卡外挂团伙被采取刑事强制措施
11 months 3 weeks ago
CVE-2013-1007 | WebKitGTK+ resource management (HT5766 / Nessus ID 70257)
11 months 3 weeks ago
A vulnerability has been found in WebKitGTK+ and classified as critical. This vulnerability affects unknown code. The manipulation leads to improper resource management.
This vulnerability was named CVE-2013-1007. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1006 | Apple iOS up to 6.1.4 WebKit resource management (Nessus ID 70257 / ID 121230)
11 months 3 weeks ago
A vulnerability classified as very critical was found in Apple iOS up to 6.1.4. Affected by this vulnerability is an unknown functionality of the component WebKit. The manipulation leads to improper resource management.
This vulnerability is known as CVE-2013-1006. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1007 | Apple iOS up to 6.1.4 WebKit resource management (Nessus ID 70257 / ID 121230)
11 months 3 weeks ago
A vulnerability, which was classified as very critical, has been found in Apple iOS up to 6.1.4. Affected by this issue is some unknown functionality of the component WebKit. The manipulation leads to improper resource management.
This vulnerability is handled as CVE-2013-1007. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1005 | WebKitGTK+ resource management (HT5766 / Nessus ID 70257)
11 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in WebKitGTK+. Affected by this issue is some unknown functionality. The manipulation leads to improper resource management.
This vulnerability is handled as CVE-2013-1005. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1006 | WebKitGTK+ resource management (HT5766 / Nessus ID 70257)
11 months 3 weeks ago
A vulnerability, which was classified as critical, was found in WebKitGTK+. This affects an unknown part. The manipulation leads to improper resource management.
This vulnerability is uniquely identified as CVE-2013-1006. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1005 | Apple iOS up to 6.1.4 WebKit resource management (Nessus ID 70257 / ID 121230)
11 months 3 weeks ago
A vulnerability classified as very critical has been found in Apple iOS up to 6.1.4. Affected is an unknown function of the component WebKit. The manipulation leads to improper resource management.
This vulnerability is traded as CVE-2013-1005. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1035 | Apple iTunes up to 11.0.5 ActiveX Control memory corruption (Nessus ID 70027 / ID 123034)
11 months 3 weeks ago
A vulnerability, which was classified as very critical, was found in Apple iTunes up to 11.0.5. Affected is an unknown function of the component ActiveX Control. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2013-1035. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
阿里云200M轻量应用服务器翻车!真实情况竟然是共享1Gbps带宽存在超限情况
11 months 3 weeks ago
#云计算 阿里云 200M 轻量应用服务器翻车!真实情况竟然是多个机器共享 1Gbps 带宽,如果你的虚拟邻居占用大量带宽那就会被限速丢包。如果你要部署实际业务并希望稳定运行的话,建议
CVE-2013-1061 | Marc Deslauriers Software-properties up to 0.92.17.2 Access Restriction access control (USN-1960-1 / Nessus ID 69978)
11 months 3 weeks ago
A vulnerability has been found in Marc Deslauriers Software-properties up to 0.92.17.2 and classified as problematic. This vulnerability affects unknown code of the component Access Restriction. The manipulation leads to improper access controls.
This vulnerability was named CVE-2013-1061. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1062 | Michael Vogt ubuntu-system-service 0.2.2/0.2.3/0.2.4 Access Restriction access control (USN-1962-1 / Nessus ID 69980)
11 months 3 weeks ago
A vulnerability was found in Michael Vogt ubuntu-system-service 0.2.2/0.2.3/0.2.4 and classified as problematic. This issue affects some unknown processing of the component Access Restriction. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2013-1062. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1063 | Canonical Linux 12.04/12.10/13.10 Access Restriction access control (USN-1963-1 / Nessus ID 69981)
11 months 3 weeks ago
A vulnerability was found in Canonical Linux 12.04/12.10/13.10. It has been classified as problematic. Affected is an unknown function of the component Access Restriction. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2013-1063. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1064 | Ubuntu Developers apt-xapian-index 0.44ubuntu5/0.44ubuntu7/0.45ubuntu2 Access Restriction access control (USN-1955-1 / Nessus ID 69973)
11 months 3 weeks ago
A vulnerability was found in Ubuntu Developers apt-xapian-index 0.44ubuntu5/0.44ubuntu7/0.45ubuntu2. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Access Restriction. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2013-1064. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1065 | Martin Pitt Jockey up to 0.9.7-0ubuntu7.10 Access Restriction access control (USN-1957-1 / Nessus ID 69975)
11 months 3 weeks ago
A vulnerability was found in Martin Pitt Jockey. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Access Restriction. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2013-1065. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1066 | Ubuntu Developers language-selector up to 0.110 Access Restriction access control (USN-1958-1 / Nessus ID 69976)
11 months 3 weeks ago
A vulnerability classified as problematic has been found in Ubuntu Developers language-selector up to 0.110. This affects an unknown part of the component Access Restriction. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2013-1066. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2013-1067 | Canonical Linux 12.04/12.10/13.04/13.10 Setuid access control (USN-2007-1 / Nessus ID 70607)
11 months 3 weeks ago
A vulnerability has been found in Canonical Linux 12.04/12.10/13.04/13.10 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Setuid. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2013-1067. Attacking locally is a requirement. There is no exploit available.
vuldb.com
CVE-2005-3546 | f-secure internet gatekeeper 2.15.484 suid.cgi Local Privilege Escalation (EDB-1297 / XFDB-22966)
11 months 3 weeks ago
A vulnerability was found in f-secure internet gatekeeper 2.15.484 and classified as critical. This issue affects some unknown processing of the file suid.cgi. The manipulation leads to Local Privilege Escalation.
The identification of this vulnerability is CVE-2005-3546. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
微软必应搜索出现微信假网站?还需要安装金山毒霸?emmm…
11 months 3 weeks ago
#软件资讯 微软必应搜索出现微信假网站?还需安装金山毒霸?有网友联系蓝点网称必应搜索微信出现假网站,所幸蓝点网检查后发现这只是金山毒霸的捆绑广告而非钓鱼网站,这种模式主要是通过热门关键
White House Clears HIPAA Security Rule Update
11 months 3 weeks ago
HHS Proposes Encryption, Security Standards for Healthcare Firms
The U.S. Department of Health and Human Services is proposing new rules for healthcare organizations that aim to bolster protections for Americans by requiring companies to encrypt sensitive patient data and conduct routine compliance evaluations amid increased threats targeting the sector.
The U.S. Department of Health and Human Services is proposing new rules for healthcare organizations that aim to bolster protections for Americans by requiring companies to encrypt sensitive patient data and conduct routine compliance evaluations amid increased threats targeting the sector.