Alerts & Advisory dai CERTs

Gli ultimi avvisi di sicurezza dai Computer Emergency Response Teams governativi e non-governativi rilevanti del mondo cybersec

Mostrando 2951-2975 di 5670 risultati
Pagina 119 di 227

Avvisi di Sicurezza

CERT Alert Data #
MSRC Security UpdateCVE-2026-47636 Microsoft SharePoint Server Spoofing Vulnerability17-06-20262951
MSRC Security UpdateCVE-2026-45475 Microsoft Office Remote Code Execution Vulnerability17-06-20262952
MSRC Security UpdateCVE-2026-42828 Windows Projected File System Elevation of Privilege Vulnerability17-06-20262953
Center of Internet SecurityMultiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution16-06-20262954
Center of Internet SecurityA Vulnerability in SimpleHelp Could Allow for Authentication Bypass16-06-20262955
MSRC Security UpdateCVE-2026-40371 Microsoft Dynamics 365 (on-premises) Elevation of Privilege Vulnerability16-06-20262956
MSRC Security UpdateCVE-2026-45602 Windows Dynamic Host Configuration Protocol (DHCP) Tampering Vulnerability16-06-20262957
MSRC Security UpdateCVE-2026-50656 Microsoft Defender Elevation of Privilege Vulnerability16-06-20262958
MSRC Security UpdateCVE-2026-42915 Microsoft Windows VMSwitch Denial of Service Vulnerability16-06-20262959
MSRC Security UpdateCVE-2026-34182 CMS AuthEnvelopedData Processing May Accept Forged Messages16-06-20262960
MSRC Security UpdateCVE-2026-54411 Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module's plaintext-password comparison path in modules/pam_userdb/pam_userdb.c that allows a local or network-adjacent attacker able to repeatedly drive authentication through a calling service to recover the plaintext password of a target account by measuring response-timing differences. The comparison uses strncmp() (or strncasecmp() when PAM_ICASE_ARG is set) preceded by a length-equality check, so the time to reject a candidate depends on the index of the first differing byte and on whether the candidate's length matches the stored password, leaking the password length and individual prefix bytes. The vulnerable path is reached when the administrator configures pam_userdb with crypt=none, with an unrecognized crypt method, or without a crypt= argument, causing the module to store and compare credentials in plaintext.16-06-20262961
MSRC Security UpdateChromium: CVE-2026-11700 Use after free in Tracing16-06-20262962
MSRC Security UpdateChromium: CVE-2026-11699 Use after free in Bluetooth16-06-20262963
MSRC Security UpdateChromium: CVE-2026-11698 Use after free in Bluetooth16-06-20262964
MSRC Security UpdateChromium: CVE-2026-11697 Insufficient validation of untrusted input in UI16-06-20262965
MSRC Security UpdateChromium: CVE-2026-11696 Uninitialized Use in Video16-06-20262966
MSRC Security UpdateChromium: CVE-2026-11695 Inappropriate implementation in Passwords16-06-20262967
MSRC Security UpdateChromium: CVE-2026-11694 Use after free in ServiceWorker16-06-20262968
MSRC Security UpdateChromium: CVE-2026-11693 Inappropriate implementation in Plugins16-06-20262969
MSRC Security UpdateChromium: CVE-2026-11692 Use after free in Read Anything16-06-20262970
MSRC Security UpdateChromium: CVE-2026-11691 Insufficient validation of untrusted input in New Tab Page16-06-20262971
MSRC Security UpdateChromium: CVE-2026-11690 Out of bounds read and write in Media16-06-20262972
MSRC Security UpdateChromium: CVE-2026-11689 Insufficient validation of untrusted input in Passwords16-06-20262973
MSRC Security UpdateChromium: CVE-2026-11688 Object lifecycle issue in SVG16-06-20262974
MSRC Security UpdateChromium: CVE-2026-11687 Use after free in Dawn16-06-20262975
Nessun risultato trovato

Prova a modificare i termini di ricerca

Le Fonti

Questa selezione di advisories è una lista ordinata per data di tutte le pubblicazioni dalle seguenti fonti:

US-CERT CISA
Twitter
Center of Internet Security
Twitter
FR-CERT Alertes
Twitter
FR-CERT Avis
Twitter
EU-ENISA Publications
Twitter
Google TAG
Microsoft Security
Unit42
Twitter
MSRC Security Update
Twitter
CERT-Bund DE
Twitter
CSIRT IT
Twitter
Consiglio Federale CH
Twitter