Red Hat Security Advisory 2020-0197-01 - Python-reportlab is a library used for generation of PDF documents. A code injection vulnerability has been addressed.
143f5987d65b494ddf8a0290b04b2a6c827bdcf904f933271153991ef7dec0af
Red Hat Security Advisory 2020-0194-01 - The Apache Commons BeanUtils library provides utility methods for accessing and modifying properties of arbitrary JavaBeans.
7d036257db007ffb556b172991abe97ccc5914ad9407722089ce19c2c204f619
The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications. It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who are new to penetration testing. ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually. This is the cross platform package.
8fef1b5dd526aa7a4c6632769ec8dbef8fab66dec0863c342cfeef76ca7d4cac
Park Ticketing Management System version 1.0 suffers from a persistent cross site scripting vulnerability.
655ca7a0bec5cc7e8837a95b1e6427465ffcae2cb05ecfeb763894e78ae3fb51
Revive Adserver versions 5.0.3 and below suffer from a cross site scripting vulnerability.
922080ca1f34d8cf660fbf7ec1e6625e52661b9d2efa943f1d6be87329bdab11
This is a proof of concept for CVE-2018-8413 where the Microsoft Windows Theme API had a file parsing vulnerability.
151f82e511c984cae8aeb3b7d347316ee62dc83304eec3e377f5c727cc699462
Ubuntu Security Notice 4245-1 - It was discovered that PySAML2 incorrectly handled certain SAML files. An attacker could possibly use this issue to bypass signature verification with arbitrary data.
d28dadbc4fdf024368f31d4e93e522886ccf8af4b5fa5fc0d7727de51c24cc9e
Red Hat Security Advisory 2020-0192-01 - Open Liberty is a lightweight open framework for building fast and efficient cloud-native Java microservices. This release of Open Liberty 20.0.0.1 serves as a replacement for Open Liberty 19.0.0.12 and includes bug fixes, enhancements, and security fixes.
c5000b604d97e6d66bdf41be30e183285ed087d2cefc08cfdd4d155cbad3bfdd
Red Hat Security Advisory 2020-0179-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include a use-after-free vulnerability.
0d5a0f10b1f5201a55ee5d74a0dcbb1f48b8429af6b4c428ed98e86453972dae
Red Hat Security Advisory 2020-0168-01 - Open vSwitch provides standard network bridging functions and support for the OpenFlow protocol for remote per-flow control of traffic. Issues addressed include a denial of service vulnerability.
e0c81ab6bd5bcc1178dc47301ae4862d13420ef4cc9dbc59a999519726894394
Red Hat Security Advisory 2020-0178-01 - The kernel packages contain the Linux kernel, the core of any Linux operating system. Issues addressed include a use-after-free vulnerability.
4aefe3f0af7f05d0d9df1b896a677f861d86821f3a7b3eaf5d293a23966a4602
Red Hat Security Advisory 2020-0174-01 - The kernel-alt packages provide the Linux kernel version 4.x. Issues addressed include buffer overflow, bypass, denial of service, heap overflow, and use-after-free vulnerabilities.
41e823b22c4390a682c7e17368c6a219fa08a99933b55c2e18c9b56883fb0b0f
Red Hat Security Advisory 2020-0074-01 - Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. An insecure permissions issue has been addressed.
ccbefb1d4affa2798ee6c62cecac7b277c308933f6da1bfabed430e91dc34dcd
Ubuntu Security Notice 4244-1 - It was discovered that Samba did not automatically replicate ACLs set to inherit down a subtree on AD Directory, contrary to expectations. This issue was only addressed in Ubuntu 18.04 LTS, Ubuntu 19.04 and Ubuntu 19.10. Robert Święcki discovered that Samba incorrectly handled certain character conversions when the log level is set to 3 or above. In certain environments, a remote attacker could possibly use this issue to cause Samba to crash, resulting in a denial of service. Various other issues were also addressed.
161dc374686acd21a6cd3801bb6cc9c0ba7b41060be8c161474322594e99f012
Red Hat Security Advisory 2020-0166-01 - Open vSwitch provides standard network bridging functions and support for the OpenFlow protocol for remote per-flow control of traffic. Issues addressed include a denial of service vulnerability.
6d10fa5dd5ea0f28988ec7ac02f30e1c073c315c0c5727137da61da7bc6dcf8e
Red Hat Security Advisory 2020-0165-01 - Open vSwitch provides standard network bridging functions and support for the OpenFlow protocol for remote per-flow control of traffic. Issues addressed include a denial of service vulnerability.
5c6e7454a1e8007798b9edd0758e52b92fdde2d9535e1ffb521d435da22e9c3b
WebSploit is an advanced man-in-the-middle framework.
ac896dd4ac1828d5bca9681e1ff3c115fd6983261708aadefeeaaf4c2d131076
ManageEngine Network Configuration Manager version 12.2 suffers from a remote SQL injection vulnerability in apiKey.
63dd79ca985226720393112ee51797ffcc9cebc6e56e1ba45cfb54d55e3a0a02
Red Hat Security Advisory 2020-0159-01 - Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime. This release of Red Hat JBoss Enterprise Application Platform 7.2.6 serves as a replacement for Red Hat JBoss Enterprise Application Platform 7.2.5, and includes bug fixes and enhancements. See the Red Hat JBoss Enterprise Application Platform 7.2.6 Release Notes for information about the most significant bug fixes and enhancements included in this release. Issues addressed include code execution, cross site scripting, and denial of service vulnerabilities.
4c68edb9ce5307910746ddaf7983db6ccc20f5e66ffe21ff43f420f0bcc6ed57
Red Hat Security Advisory 2020-0164-01 - Red Hat JBoss Enterprise Application Platform 7 is a platform for Java applications based on the WildFly application runtime. This release of Red Hat JBoss Enterprise Application Platform 7.2.6 serves as a replacement for Red Hat JBoss Enterprise Application Platform 7.2.5, and includes bug fixes and enhancements. See the Red Hat JBoss Enterprise Application Platform 7.2.6 Release Notes for information about the most significant bug fixes and enhancements included in this release. Issues addressed include code execution, cross site scripting, and denial of service vulnerabilities.
d80897b9386d45d21fa3de507c1a3565f65076ee6cedba8dccf537b386caee95
Microsoft Windows Media Center is affected by an issue that allows malicious people to bypass the current security standards. The issue can be exploited through specially crafted wma or wmv file containing a script instruction called URL.
bdbb912cef1c9624249cb0cf3de58b254d52d33e00f68c53ac08d7311724c5a6