Open Source Security mailing list

23.3K posts

Open Source Security mailing list

Open Source Security mailing list

@oss_security

@Openwall oss-security mailing list thread summaries, currently maintained by @solardiz. Originally setup and maintained as an automated feed by @eugeneteo.

Beigetreten Ağustos 2009
10 Folgt4.4K Follower
Open Source Security mailing list
CVE-2026-4342: Kubernetes: ingress-nginx comment-based nginx configuration injection openwall.com/lists/oss-secu… can lead to arbitrary code execution in the context of the ingress-nginx controller, and disclosure of Secrets accessible to the controller
English
0
3
2
306
Open Source Security mailing list
libuv: Off-by-one heap buffer overflow openwall.com/lists/oss-secu… When a user types or pastes CJK characters into a Windows console application backed by libuv, a 1-byte out-of-bounds NUL write occurs if the read buffer size is divisible by 3
English
0
2
4
405
Open Source Security mailing list
CVE-2026-3888: snap-confine + systemd-tmpfiles = root openwall.com/lists/oss-secu… as discovered by @Qualys Case study: Ubuntu Desktop 24.04 - Analysis - Exploitation Case study: Ubuntu Desktop 25.10 - Overview - Exploitation A quick note on the uutils coreutils (the rust-coreutils)
English
1
4
19
2.3K
Open Source Security mailing list
10+ CVEs in GStreamer openwall.com/lists/oss-secu… a dependency of the tracker-extract package, which GNOME uses to automatically parse metadata in new files. Among other things, this service indexes all files in the user's home directory without any user interaction.
English
0
6
13
3.3K