oss-sec
- oss-sec: Security Advisory 2022-01 for PowerDNS Authoritative Server 4.4.2, 4.5.3, 4.6.0 and PowerDNS Recursor 4.4.7, 4.5.7, 4.6.0
- oss-sec: libssh: Possible heap-buffer overflow when rekeying (CVE-2021-3634)
- oss-sec: Various security fixes in sudo 1.9.5 (CVE-2021-23239, CVE-2021-23240)
- oss-sec: [SECURITY] CVE-2020-13943 Apache Tomcat HTTP/2 Request mix-up
- oss-sec: PowerDNS Recursor 4.3.5, 4.2.5. and 4.1.18 released fixing a cache pollution issue (CVE-2020-25829)
- oss-sec: [ADVISORY] SQUID-2020:4 Multiple issues in HTTP Digest authentication
- oss-sec: [ADVISORY] SQUID-2019:12 Multiple issues in ESI Response processing
- oss-sec: Multiple vulnerabilities in Dovecot IMAP server
- oss-sec: Short notes on qmail security guarantee
- oss-sec: CVE-2019-19722: Critical vulnerability in Dovecot
- oss-sec: Multiple vulnerabilities fixed in Git
- oss-sec: Exim CVE-2019-16928 RCE using a heap-based buffer overflow
- oss-sec: CVE-2019-10222: ceph: unauthenticated clients can crash RGW
- oss-sec: WebKitGTK and WPE WebKit Security Advisory WSA-2019-0004
- oss-sec: Security issues in various deepin D-Bus services and tools
- oss-sec: Multiple vulnerabilities in Jenkins plugins
- oss-sec: [SECURITY ADVISORY] curl: TFTP receive buffer overflow
- oss-sec: [SECURITY ADVISORY] curl: Integer overflows in curl_url_set
- oss-sec: Multiple vulnerabilities in Dovecot 2.3
- oss-sec: CVE-2018-5407: new side-channel vulnerability on SMT/Hyper-Threading architectures
- oss-sec: [SECURITY] Apache SpamAssassin 3.4.2 resolves CVE-2017-15705, CVE-2016-1238, CVE-2018-11780 & CVE-2018-11781
- oss-sec: OpenSSH Username Enumeration
- oss-sec: GNU Wget Cookie Injection [CVE-2018-0494]
- oss-sec: Announce: OpenSSH 7.7 released
- oss-sec: GNU patch out of bounds read, null pointer crash and double free
- oss-sec: PowerDNS Security Advisory 2017-08
- oss-sec: [ANNOUNCE] CVE-2017-5646: Apache Knox Impersonation Issue for WebHDFS
- oss-sec: CVE-2017-8301: TLS verification vulnerability in LibreSSL 2.5.1 – 2.5.3
- oss-sec: CVE-2017-7692: Squirrelmail 1.4.22 Remote Code Execution
- oss-sec: Linux kernel: CVE-2017-6074: DCCP double-free vulnerability (local root)
- oss-sec: Libtiff 4.0.7 release fixes many security issues
- oss-sec: ffmpeg before 3.1.4 [CVE-2016-7562] [CVE-2016-7122] [CVE-2016-7450] [CVE-2016-7502] [CVE-2016-7555] [CVE-2016-7785] [CVE-2016-7905]
- oss-sec: [ANNOUNCE][CVE-2016-6802] Apache Shiro 1.3.2 released
- oss-sec: CVE request for Dropbear SSH
- oss-sec: PowerDNS Security Advisory 2016-01: Crafted queries can cause unexpected backend load
- oss-sec: GraphicsMagick 1.3.25 fixes some security issues
- oss-sec: [Announce] CVE-2016-4437: Apache Shiro information disclosure vulnerability
- oss-sec: CVE request: OpenNTPD not verifying CN during HTTPS constraints request
- oss-sec: Moodle security release 3.0.4, 2.9.6, 2.8.12, 2.7.14
- oss-sec: CVE-2015-1776: Apache Hadoop MapReduce, disclosure of encrypted data
- oss-sec: CVE-2016-1281: TrueCrypt and VeraCrypt Windows installers allow arbitrary code execution with elevation of privilege
- oss-sec: Status of CVE-2015-8126: libpng buffer overflow in png_set_PLTE
- oss-sec: CVE request: libpng buffer overflow in png_set_PLTE
- oss-sec: Buffer overflow in libxml2
- oss-sec: CVE Request: MediaWiki 1.25.3, 1.24.4 and 1.23.11
- oss-sec: Qualys Security Advisory – LibreSSL (CVE-2015-5333 and CVE-2015-5334)
- oss-sec: [oCERT-2015-009] VLC arbitrary pointer dereference
- oss-sec: [CVE-2015-3253] Apache Groovy Zero-Day Vulnerability Disclosure
- oss-sec: CVE-2015-3281 HAProxy information leak vulnerability
- oss-sec: Xen Security Advisory 137 (CVE-2015-3259) – xl command line config handling stack overflow
- oss-sec: [ANNOUNCE] Apache Directory LDAP API 1.0.0-M31 released
- oss-sec: Linux-PAM 1.2.1 released to address CVE-2015-3238
- oss-sec: CVE-2015-3243 rsyslog: some log files are created world-readable
- oss-sec: Re: PHP 5.6.10 / 5.5.26 / 5.4.42 CVE request
- oss-sec: PHP 5.6.10 / 5.5.26 / 5.4.42 CVE request
- oss-sec: CVE-2015-1835: Remote exploit of secondary configuration variables in Apache Cordova on Android
- oss-sec: CVE-2015-3200 Log injection in Lighttpd
- oss-sec: Moodle security advisories [vs]
- oss-sec: Docker 1.6.1 – Security Advisory [150507]
- oss-sec: proftpd: Unauthenticated copying of files via SITE CPFR/CPTO allowed by mod_copy
- oss-sec: New Rootkit – Lightweight rootkit implemented by bash shell scripts v0.10
- oss-sec: WebKitGTK Security Advisory WSA-2015-0001
- oss-sec: Multiple vulnerabilities in LibTIFF and associated tools
- oss-sec: Re: CVE Request: Mediawiki security releases 1.24.1, 1.23.8, 1.22.15 and 1.19.23