Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

kb.cert.org

CERT Recently Published Vulnerability Notes

Get the latest updates from CERT Recently Published Vulnerability Notes directly as they happen.

Follow now 96 followers

Latest posts

Last updated 2 days ago

VU#253266: Keras 2 Lambda Layers Allow Arbitrary Code Injection in TensorFlow Models

2 days ago

Overview Lambda Layers in third party TensorFlow-based Keras models allow attackers to...

VU#123335: Multiple Programming Languages Fail to Escape Arguments Properly in Microsoft Windows

8 days ago

Overview Various programming languages lack proper validation mechanisms for commands and in...

VU#155143: Linux kernel on Intel systems is susceptible to Spectre v2 attacks

9 days ago

Overview A new cross-privilege Spectre v2 vulnerability that impacts modern CPU architectures...

VU#421644: HTTP/2 CONTINUATION frames can be utilized for DoS attacks

15 days ago

Overview HTTP allows messages to include named fields in both header and...

VU#417980: UDP-based, application-layer protocol implementations are vulnerable to network loops

about 1 month ago

Overview A novel traffic-loop vulnerability has been identified against certain implementations of...

VU#488902: CPU hardware utilizing speculative execution may be vulnerable to speculative race conditions

about 1 month ago

Overview A Speculative Race Condition (SRC) vulnerability that impacts modern CPU architectures...

VU#949046: Sceiner firmware locks and associated devices are vulnerable to encryption downgrade and arbitrary file upload attacks

about 1 month ago

Overview Kontrol and Elock locks are electronic locks that utilize firmware provided...

VU#446598: GPU kernel implementations susceptible to memory leak

3 months ago

Overview General-purpose graphics processing unit (GPGPU) platforms from AMD, Apple, and Qualcomm...

VU#302671: SMTP end-of-data uncertainty can be abused to spoof emails and bypass policies

3 months ago

Overview A vulnerability has been found in the way that SMTP servers...

VU#132380: Vulnerabilities in EDK2 NetworkPkg IP stack implementation.

3 months ago

Overview Multiple vulnerabilities were discovered in the TCP/IP stack (NetworkPkg) of Tianocore...

VU#811862: Image files in UEFI can be abused to modify boot behavior

4 months ago

Overview Implementation of Unified Extensible Firmware Interface (UEFI) by Vendors provide a...

VU#347067: Multiple BGP implementations are vulnerable to improperly formatted BGP updates

7 months ago

Overview Multiple BGP implementations have been identified as vulnerable to specially crafted...