Microsoft fixes critical bugs in CryptoAPI, RD Gateway and .NET

Credit to Author: Danny Bradbury| Date: Wed, 15 Jan 2020 12:10:33 +0000

Here are the most serious bugs from Microsoft’s Patch Tuesday – Including CryptoAPI and RCE flaws in Windows Remote Desktop Gateway.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/_JcrLmlUQmc” height=”1″ width=”1″ alt=””/>

Read more

Update WhatsApp now: MP4 video bug exposes your messages

Credit to Author: Lisa Vaas| Date: Wed, 20 Nov 2019 12:33:18 +0000

A now-patched-hole could have allowed remote code execution that could have exposed files and messages. Update your WhatsApp now.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/jIBF0sl6Kuo” height=”1″ width=”1″ alt=””/>

Read more

PHP team fixes nasty site-owning remote execution bug

Credit to Author: Danny Bradbury| Date: Tue, 29 Oct 2019 11:48:14 +0000

The PHP development team has fixed a bug that could allow remote code execution in some setups of the programming language.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/r_X-vIvi4pg” height=”1″ width=”1″ alt=””/>

Read more

WhatsApp vulnerability could compromise Android smartphones

Credit to Author: John E Dunn| Date: Fri, 04 Oct 2019 12:10:03 +0000

A researcher has released details of a WhatsApp flaw that could be used to compromise the app and the mobile device the app is running on.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/fPnnKlP45pM” height=”1″ width=”1″ alt=””/>

Read more

Exim suffers another ‘critical’ remote code execution flaw

Credit to Author: John E Dunn| Date: Wed, 02 Oct 2019 12:28:02 +0000

This latest Exim flaw could lead to at least a denial of service crash in the software but also the possibility of remote code execution.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/MxuCX_Qs0nA” height=”1″ width=”1″ alt=””/>

Read more

Critical TLS flaw opens Exim servers to remote compromise

Credit to Author: John E Dunn| Date: Tue, 10 Sep 2019 10:06:43 +0000

A ‘critical’ security vulnerability has been discovered in the Exim mail server that requires admins’ urgent attention.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/2NLa6N1e3Bk” height=”1″ width=”1″ alt=””/>

Read more

61 impacted versions of Apache Struts left off security advisories

Credit to Author: Lisa Vaas| Date: Mon, 19 Aug 2019 10:23:37 +0000

Researchers found that 24 security advisories inaccurately listed affected versions for the open-source development framework.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/Nh2-u40y6Ec” height=”1″ width=”1″ alt=””/>

Read more