CVE-2023-3893 - Privilege Escalation in Kubernetes Windows Clusters Running kubernetes-csi-proxy
In this article, we go deep into the recently discovered security issue CVE-2023-3893. This vulnerability impacts Kubernetes clusters with Windows nodes, specifically when they run
CVE-2023-3961 - Path Traversal Vulnerability in Samba’s Unix Domain Socket Connections
In mid-2023, researchers discovered a critical vulnerability in Samba, the popular open-source SMB/CIFS implementation used for file and print services on Unix and Linux
CVE-2023-4091 - How Samba’s VFS “acl_xattr” Module Let SMB Clients Wipe Read-Only Files
A serious bug was found in Samba that lets SMB clients delete (truncate) the contents of files—even if they only have read-only access! This
CVE-2023-42670 - Samba AD DC Disruption via Multiple Competing RPC Listeners
When it comes to managing Windows networks in Linux environments, Samba is the go-to suite providing seamless interoperability between Unix/Linux and Windows systems. However,
CVE-2023-41357 - Exploiting File Upload Vulnerability in Galaxy Software Services Vitals ESP
In September 2023, Galaxy Software Services Corporation’s Vitals ESP—their online knowledge base management portal—was found to have a severe file upload vulnerability.
Episode
00:00:00
00:00:00