Executable installers are vulnerable^WEVIL (case 41): EmsiSoft's Emergency Kit allows elevation of privilege for everybody

2016-11-17 Thread Stefan Kanthak
Hi @ll, in response to EmsiSoft fixed some of the DLL hijacking vulnerabilities in some of their executable installers and unpackers. EmsisoftEmergencyKit.exe still has beginner's errors which allow escalation of privilege for EVERY local user:

[SECURITY] [DSA 3716-1] firefox-esr security update

2016-11-17 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 - - Debian Security Advisory DSA-3716-1 secur...@debian.org https://www.debian.org/security/ Moritz Muehlenhoff November 16, 2016

[security bulletin] HPSBGN03676 rev.1 - HPE Helion OpenStack Glance Image Service, Remote Denial of Service (DoS)

2016-11-17 Thread security-alert
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Note: the current version of the following document is available here: https://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c0584 SUPPORT COMMUNICATION - SECURITY BULLETIN Document ID: c0584 Version: 1 HPSBGN03676 rev.1 - HPE