Overview
- Totolink
- A7100RU
Description
Statistics
- 1 Post
Fediverse
🛑 CRITICAL: CVE-2026-5850 in Totolink A7100RU (fw 7.4cu.2313_b20191024) enables unauthenticated OS command injection via pptpPassThru. No patch yet — restrict access & monitor advisories. https://radar.offseq.com/threat/cve-2026-5850-os-command-injection-in-totolink-a71-c437d074 #OffSeq #CVE20265850 #RouterSecurity #Infosec
Overview
Description
Statistics
- 1 Post
Fediverse
⚠️ CRITICAL: CVE-2026-5859 in Chrome WebML (<147.0.7727.55) allows heap corruption via integer overflow. Remote code execution possible if exploited. Patch not fully confirmed — check vendor advisory for updates: https://radar.offseq.com/threat/cve-2026-5859-integer-overflow-in-google-chrome-baee9cba #OffSeq #Chrome #Vuln #InfoSec
Overview
- obsidianforensics
- unfurl
- dfir-unfurl
Description
Statistics
- 1 Post
Fediverse
⚠️ CRITICAL: obsidianforensics unfurl up to 2025.08 enables Flask debug mode by default. Attackers can exploit CVE-2026-40035 for RCE & info disclosure. Avoid production use, disable debug mode, monitor for fixes. https://radar.offseq.com/threat/cve-2026-40035-cwe-489-active-debug-code-in-obsidi-883d1265 #OffSeq #Vuln #Flask #CVE202640035
Overview
Description
Statistics
- 1 Post
Overview
- OpenPrinting
- cups
Description
Statistics
- 1 Post
Overview
- OpenPrinting
- cups
Description
Statistics
- 1 Post
Overview
Description
Statistics
- 1 Post
- 2 Interactions
Fediverse
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161497.html
> Import OpenSSL-3.5.6 (previous was 3.5.5)
CVE-2026-31790, CVE-2026-2673, CVE-2026-28387, CVE-2026-28388, CVE-2026-28389, CVE-2026-28390, CVE-2026-31789
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161500.html
> Import OpenSSH-10.3 (previous was 10.2)
これは CVE はなくて Security 関連仕様変更のみ?
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161505.html
> Import xz-5.8.3 (previous was 5.2.4)
> Fix a buffer overflow in lzma_index_append()
はあるけど、そもそも backdoor 以前のバージョンからの更新なのか?
少なくとも bind に加えて openssl は 11.0_RC4 不可避なのか
Overview
Description
Statistics
- 1 Post
- 2 Interactions
Fediverse
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161497.html
> Import OpenSSL-3.5.6 (previous was 3.5.5)
CVE-2026-31790, CVE-2026-2673, CVE-2026-28387, CVE-2026-28388, CVE-2026-28389, CVE-2026-28390, CVE-2026-31789
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161500.html
> Import OpenSSH-10.3 (previous was 10.2)
これは CVE はなくて Security 関連仕様変更のみ?
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161505.html
> Import xz-5.8.3 (previous was 5.2.4)
> Fix a buffer overflow in lzma_index_append()
はあるけど、そもそも backdoor 以前のバージョンからの更新なのか?
少なくとも bind に加えて openssl は 11.0_RC4 不可避なのか
Overview
Description
Statistics
- 1 Post
- 2 Interactions
Fediverse
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161497.html
> Import OpenSSL-3.5.6 (previous was 3.5.5)
CVE-2026-31790, CVE-2026-2673, CVE-2026-28387, CVE-2026-28388, CVE-2026-28389, CVE-2026-28390, CVE-2026-31789
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161500.html
> Import OpenSSH-10.3 (previous was 10.2)
これは CVE はなくて Security 関連仕様変更のみ?
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161505.html
> Import xz-5.8.3 (previous was 5.2.4)
> Fix a buffer overflow in lzma_index_append()
はあるけど、そもそも backdoor 以前のバージョンからの更新なのか?
少なくとも bind に加えて openssl は 11.0_RC4 不可避なのか
Overview
Description
Statistics
- 1 Post
- 2 Interactions
Fediverse
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161497.html
> Import OpenSSL-3.5.6 (previous was 3.5.5)
CVE-2026-31790, CVE-2026-2673, CVE-2026-28387, CVE-2026-28388, CVE-2026-28389, CVE-2026-28390, CVE-2026-31789
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161500.html
> Import OpenSSH-10.3 (previous was 10.2)
これは CVE はなくて Security 関連仕様変更のみ?
https://mail-index.netbsd.org/source-changes/2026/04/08/msg161505.html
> Import xz-5.8.3 (previous was 5.2.4)
> Fix a buffer overflow in lzma_index_append()
はあるけど、そもそも backdoor 以前のバージョンからの更新なのか?
少なくとも bind に加えて openssl は 11.0_RC4 不可避なのか