DSA-4618 libexif – security update

An out-of-bounds write vulnerability due to an integer overflow wasreported in libexif, a library to parse EXIF files, which could resultin denial of service, or potentially the execution of arbitrary code ifspecially crafted image files are processed. More info: https://www.debian.org/security/2020/dsa-4618

DSA-4619 libxmlrpc3-java – security update

Guillaume Teissier reported that the XMLRPC client in libxmlrpc3-java,an XML-RPC implementation in Java, does perform deserialization of theserver-side exception serialized in the faultCause attribute of XMLRPCerror response messages. A malicious XMLRPC server can take advantage ofthis flaw to execute arbitrary code with the privileges of anapplication using the Apache XMLRPC client library. More info: https://www.debian.org/security/2020/dsa-4619

BIG-IP Edge Client for Windows vulnerability CVE-2020-5855

BIG-IP Edge Client for Windows vulnerability CVE-2020-5855 Security Advisory Security Advisory Description When the Windows Logon Integration feature is configured for BIG-IP Edge Client, ... More info: https://support.f5.com/csp/article/K55102004?utm_source=f5support&utm_medium=RSS

BIG-IP TMM vulnerability CVE-2020-5854

BIG-IP TMM vulnerability CVE-2020-5854 Security Advisory Security Advisory Description The Traffic Management Microkernel (TMM) process may produce a core file when using the connector profile and ... More info: https://support.f5.com/csp/article/K50046200?utm_source=f5support&utm_medium=RSS

BIG-IP TMM AWS vulnerability CVE-2020-5856

BIG-IP TMM AWS vulnerability CVE-2020-5856 Security Advisory Security Advisory Description While processing specifically crafted traffic using the default xnet driver, BIG-IP Virtual Edition (VE ... More info: https://support.f5.com/csp/article/K00025388?utm_source=f5support&utm_medium=RSS
Translate »