Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2021-33715

A vulnerability has been identified in JT Utilities (All versions < V13.0.2.0). When parsing specially crafted JT files, a race condition could cause an object to be released before being operated on, leading to NULL pointer deference condition and causing the application to crash. An attacker could leverage this vulnerability to cause a Denial-of-Service condition in the application.

CVE
#vulnerability#dos#pdf

%PDF-1.5 %���� 1 0 obj << /D [2 0 R /XYZ 70.866 771.024 null] >> endobj 3 0 obj << /D [2 0 R /XYZ 70.866 630.026 null] >> endobj 4 0 obj << /D [2 0 R /XYZ 70.866 546.036 null] >> endobj 5 0 obj << /D [2 0 R /XYZ 70.866 426.806 null] >> endobj 6 0 obj << /D [2 0 R /XYZ 70.866 355.648 null] >> endobj 7 0 obj << /D [8 0 R /XYZ 85.039 301.51 null] >> endobj 9 0 obj << /D [10 0 R /XYZ 70.866 713.397 null] >> endobj 11 0 obj << /S /GoTo /D [2 0 R /Fit] >> endobj 2 0 obj << /Contents 12 0 R /Type /Page /Resources 13 0 R /Parent 14 0 R /Annots [15 0 R 16 0 R 17 0 R 18 0 R] /MediaBox [0 0 595.276 841.89] >> endobj 15 0 obj << /A << /S /URI /Type /Action /URI (https://support.sw.siemens.com/) >> /C [0 1 1] /Subtype /Link /Type /Annot /H /I /Border [0 0 0] /Rect [303.117 445.075 446.757 457.981] >> endobj 16 0 obj << /A << /S /URI /Type /Action /URI (https://www.siemens.com/cert/operational-guidelines-industrial-security) >> /C [0 1 1] /Subtype /Link /Type /Annot /H /I /Border [0 0 0] /Rect [164.798 263.696 487.754 275.232] >> endobj 17 0 obj << /A << /S /URI /Type /Action /URI (https://www.siemens.com/industrialsecurity) >> /C [0 1 1] /Subtype /Link /Type /Annot /H /I /Border [0 0 0] /Rect [406.699 233.927 525.406 245.344] >> endobj 19 0 obj << /A << /S /URI /Type /Action /URI (https://www.first.org/cvss/) >> /C [0 1 1] /Subtype /Link /Type /Annot /H /I /Border [0 0 0] /Rect [131.954 722.78 248.203 734.316] >> endobj 13 0 obj << /ProcSet [/PDF /Text] /Font << /F53 20 0 R /F50 21 0 R >> >> endobj 12 0 obj << /Filter /FlateDecode /Length 2961 >> stream xڵZ�s�F�_�ۡ�;��l݋c{S�e?Β�*��+a�Z$������=3 @HKJ������u�H� H�����o% LdS��)�$�� �1��:�/���,K�馜L���Y���&S*ì�� ]/�ee���~�˄5���w�r��n�&��|���������W"=0 #�i�X_}��Kx�S@"n���~�����`v��+Ⅺ��(��*"1;G3�Ѣ!����##�n+H����+hv=e�0�9�JQ6fqi�^�EA���Q��J�y���"=���*���1��ꈌZZE>8�1�I�RU����HL����3b�D����k3ĸ����L��г�1��.�o�A�+�=e.ҹ���t��ЈPv�u f(����7�M ��fu,g*b�_"�,�D�r��8>’�Bv��4Q$��t�|�����X���"I,n��,�[�8 ���PRt%�6����q��d�CP��8/SR~�y�ґ2���Gڌ�����-"�{�X���:�@ �`r�r�6�c� |�8sKI�0����A�� ����#�ڰ6 0x�!�HD��J1��kv���E���O�=H2I �LBH>��-�ȳERe�Ɓ�ۤJ� � atJ��r\�N)� X���sRVn��v�fIM�wf��w�t�’~��$Lw%���)��$:��i6s���뺻�2��h $��!d��� �(Hi�LY�w�x�m:���JH��߽�~�H�����s�.6S�{q ��p(��9�7�4OA��{�6aҫ� ��>>a2A����_��*��WB��v=��rq �X�Çx�f?’��[�ܳ��ϪϪ0[�����R�5)� �J��z{ۥ���}�|k�`�Bf�-�`[�18�1} j$���ي ׽5��X��rx��Y�u� G$�-���E����^�,�=:Oo�$�{���%� �aS�p��YY� @��W���n$��f�R01hk �Ϊd㴊_5��nniMh� ϖ]�E�t+�tӐ)��u��\�Y͆��vź����]|ٜ��6+lY�w �"���V�x�

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda