CVE-2024-32460 - FreeRDP `/bpp:32` Legacy GDI Bug Leads to Out-of-Bounds Read
FreeRDP is a popular open source implementation of Microsoft’s Remote Desktop Protocol (RDP). It lets users connect to Windows desktops and servers from Linux,
CVE-2023-3758 - Exploiting a Race Condition in SSSD GPO Policy Enforcement
In June 2023, a new security vulnerability, identified as CVE-2023-3758, was disclosed in the System Security Services Daemon (SSSD). This bug impacts how
CVE-2024-21111 - Exploit in Oracle VM VirtualBox Lets Attackers Take Over Windows Hosts
On April 16, 2024, Oracle published a critical security advisory CVE-2024-21111, revealing a severe vulnerability in the Core component of Oracle VM VirtualBox,
CVE-2024-3863 - How Missing Executable File Warnings in Firefox Put Windows Users at Risk
In April 2024, security researchers uncovered a subtle but impactful flaw in Mozilla Firefox and Thunderbird that could expose Windows users to dangerous downloads without
CVE-2024-31497 - Breaking PuTTY ECDSA-521 SSH Keys in 60 Signatures – How a Nonce Leak Opens the Supply Chain
A very serious cryptographic flaw—CVE-2024-31497—was recently found in PuTTY, a popular SSH client for Windows and UNIX. If you used PuTTY
Episode
00:00:00
00:00:00