Log

ASA-201807-12 created at 25 Sep 2019 19:32:14
Workaround
Impact
+ A remote attacker is able to cause a denial of service via a crafted HTTP request.
ASA-201807-13 created at 25 Sep 2019 19:32:14
Workaround
Impact
+ A local attacker is able to escalate privileges via a specially crafted configuration file.
ASA-201807-14 created at 25 Sep 2019 19:32:14
Workaround
Impact
+ A remote attacker is able to bypass access restrictions to gain administrative privileges, access arbitrary files, disclose information or perform cross-site scripting.
ASA-201807-15 created at 25 Sep 2019 19:32:14
Workaround
Impact
+ A remote attacker is able to execute arbitrary code when a user downloads game content in a multiplayer game or via a player content distribution server.
ASA-201807-16 created at 25 Sep 2019 19:32:14
Workaround
Impact
+ A remote attacker is able to crash the application via a specially crafted file.
ASA-201807-2 created at 25 Sep 2019 19:32:14
Workaround
Impact
+ A remote attacker is able to read arbitrary files on the filesystem or decrypt encrypted files by modifying the git-annex repository.
ASA-201807-3 created at 25 Sep 2019 19:32:14
Workaround
+ It's possible to patch out the vulnerable code via a config.py file
+
+ from qutebrowser.browser import qutescheme
+ qutescheme._qute_settings_set = lambda url: ('text/html', '')
Impact
+ A remote attacker is able to execute code with a specially crafted web page.
ASA-201807-4 created at 25 Sep 2019 19:32:14
Workaround
Impact
+ A remote attacker can access sensitive information, bypass various security mechanisms and execute arbitrary code on the affected host.
ASA-201807-5 created at 25 Sep 2019 19:32:14
Workaround
Impact
+ A remote attacker is able to execute arbitrary code when sending SMTP data.
ASA-201807-6 created at 25 Sep 2019 19:32:14
Workaround
Impact
+ A remote attacker is able to execute arbitrary code when sending SMTP data.