Red Hat Security Advisory 2019-2582-01 - Pango is a library for laying out and rendering of text, with an emphasis on internationalization. Pango forms the core of text and font handling for the GTK+ widget toolkit. Issues addressed include a buffer overflow vulnerability.
33c998429349460bae19a84051c87330740bd0e090eb14a23238b5ffc6016149
Ubuntu Security Notice 4112-1 - Abhishek Lekshmanan discovered that the RADOS gateway implementation in Ceph did not handle client disconnects properly in some situations. A remote attacker could use this to cause a denial of service.
6bdf721ecf66ba3944cc831f4f5afda69ab1538183c30580680e689e202d623a
Ubuntu Security Notice 4111-1 - Hiroki Matsukuma discovered that the PDF interpreter in Ghostscript did not properly restrict privileged calls when -dSAFER restrictions were in effect. If a user or automated system were tricked into processing a specially crafted file, a remote attacker could possibly use this issue to access arbitrary files.
1d8927fb5ab42e83bac5c9d5b553f9406fcbe964befd3851ce63f6117f2e091d
PilusCart versions 1.4.1 and below suffers from a file disclosure vulnerability.
f8908a36266e411cbdc113acc916de9d269db31ab793db6595c6e0bbb98e674b
Jobberbase version 2.0 suffers from a remote SQL injection vulnerability.
2b83d68859013bc6ed71c264b4a1f6e1105169783e4a3c067eb12b60f7b8572a
Webkit JSC JIT suffers from an uninitialized variable access vulnerability in ArgumentsEliminationPhase::transform.
13d8e2202cdebf7ff53e2e5906bdd6ba343e47a89003e53597579db4cb95bcdc
Whitepaper called PHP Web Backdoor Decode. It covers decoding an obfuscated/encoded web backdoor shell, recovering the original source code, and the encrypted password in order to login to the backdoor shell.
e0c6be6e2503a4a9e4172a895e212a3b584c528fed2ed991014fcbf0da7ad296