CVE-2022-26717 - Apple WebKit "Use After Free" Vulnerability Explained – How It Was Exploited and Fixed
In 2022, security researchers uncovered CVE-2022-26717, a dangerous "use after free" vulnerability in Apple's WebKit, the browser engine that
CVE-2022-3307 An attacker can exploit heap corruption in Google Chrome before version 106.0.5249.62 if a malicious page is used.
After fixing this issue in the stable channel, we encourage users to update to the latest version, which will be 106.0.5249.62. A
CVE-2022-3369 - How a Registry Symlink Flaw in bdservicehost.exe Let Attackers Delete Critical Keys on Bitdefender Engines
Summary:
A serious security flaw (CVE-2022-3369) lurked in Bitdefender’s bdservicehost.exe component on Windows. This bug allowed attackers with low privileges to
CVE-2021-27784 The HCL Launch Container images contain non-unique HTTPS keys and certificates. The fix provides tools to replace them.
The only change made to the standard application packages is that they now include the SSL inspection fix. This fix will have no impact on
CVE-2022-41772 - Exploiting Path Traversal in Delta Electronics InfraSuite Device Master .ZIP Processing for Remote Code Execution
Delta Electronics is a well-known manufacturer of industrial automation and power management devices. Their InfraSuite Device Master is a popular tool used to centralize
Episode
00:00:00
00:00:00