Security
Headlines
HeadlinesLatestCVEs

Tag

#microsoft

CVE-2021-42715: In stb_image's HDR reader, loading a specially constructed invalid HDR file can result in an infinite loop within the RLE decoder · Issue #1224 · nothings/stb

An issue was discovered in stb stb_image.h 1.33 through 2.27. The HDR loader parsed truncated end-of-file RLE scanlines as an infinite sequence of zero-length runs. An attacker could potentially have caused denial of service in applications using stb_image by submitting crafted HDR files.

CVE
#windows#microsoft#dos#git
Microsoft Launches Security Program for Nonprofits

A new set of security tools is built to assess risk, provide monitoring and notification if an attack occurs, and train IT pros and users.

CVE-2021-37996: Chromium: CVE-2021-37996 Insufficient validation of untrusted input in Downloads

*What is the version information for this release?* Microsoft Edge Version Date Released Based on Chromium Version 95.0.1020.30 10/21/2021 95.0.4638.54

CVE-2021-37995: Chromium: CVE-2021-37995 Inappropriate implementation in WebApp Installer

*What is the version information for this release?* Microsoft Edge Version Date Released Based on Chromium Version 95.0.1020.30 10/21/2021 95.0.4638.54

CVE-2021-37994: Chromium: CVE-2021-37994 Inappropriate implementation in iFrame Sandbox

*What is the version information for this release?* Microsoft Edge Version Date Released Based on Chromium Version 95.0.1020.30 10/21/2021 95.0.4638.54

CVE-2021-37993: Chromium: CVE-2021-37993 Use after free in PDF Accessibility

*What is the version information for this release?* Microsoft Edge Version Date Released Based on Chromium Version 95.0.1020.30 10/21/2021 95.0.4638.54

CVE-2021-37992: Chromium: CVE-2021-37992 Out of bounds read in WebAudio

*What is the version information for this release?* Microsoft Edge Version Date Released Based on Chromium Version 95.0.1020.30 10/21/2021 95.0.4638.54

CVE-2021-37991: Chromium: CVE-2021-37991 Race in V8

*What is the version information for this release?* Microsoft Edge Version Date Released Based on Chromium Version 95.0.1020.30 10/21/2021 95.0.4638.54

CVE-2021-37990: Chromium: CVE-2021-37990 Inappropriate implementation in WebView

*What is the version information for this release?* Microsoft Edge Version Date Released Based on Chromium Version 95.0.1020.30 10/21/2021 95.0.4638.54

CVE-2021-37989: Chromium: CVE-2021-37989 Inappropriate implementation in Blink

*What is the version information for this release?* Microsoft Edge Version Date Released Based on Chromium Version 95.0.1020.30 10/21/2021 95.0.4638.54