#Bufferoverflow

2025-12-31

Krytyczna podatność (CVSS 9.8/10.0) w popularnym pakiecie do monitorowania urządzeń – Net-SNMP sekurak.pl/krytyczna-podatnosc #Wbiegu #Bufferoverflow #DoS #Netsnmp #Podatno

2025-12-31

Krytyczna podatność (CVSS 9.8/10.0) w popularnym pakiecie do monitorowania urządzeń – Net-SNMP

W popularnym pakiecie Net-SNMP, służącym do monitorowania i zarządzania urządzeniami sieciowymi wykryto krytyczną lukę bezpieczeństwa typu stack based buffer overflow. Podatność została znaleziona przez badacza bezpieczeństwa buddurid oraz zgłoszona w ramach programu Trend Micro Zero Day Initiative (ZDI). TLDR: Dla osób spotykających się z tym programem po raz pierwszy krótkie wyjaśnienie....

#WBiegu #BufferOverflow #DoS #Podatność

sekurak.pl/krytyczna-podatnosc

Negative PID Inc.negativepid
2025-12-29

The SQL Slammer worm was the fastest spreading malware in Internet history. It exploited a buffer overflow vulnerability in Windows systems and could be transmitted and executed with minimal latency. Today, it is considered the precursor of ransomware and spyware attacks.

,

negativepid.blog/the-sql-slamm
negativepid.blog/the-sql-slamm

Offensive Sequenceoffseq@infosec.exchange
2025-12-12

🚨 CVE-2025-14534: CRITICAL buffer overflow in UTT 进取 512W (≤3.1.7.7-171114). Remote, unauthenticated exploit — public code available. Isolate & restrict /goform/formNatStaticMap now! radar.offseq.com/threat/cve-20 #OffSeq #CVE #BufferOverflow #NetworkSecurity

Critical threat: CVE-2025-14534: Buffer Overflow in UTT 进取 512W
Negative PID Inc.negativepid
2025-12-08

The SQL Slammer worm was the fastest spreading malware in Internet history. It exploited a buffer overflow vulnerability in Windows systems and could be transmitted and executed with minimal latency. Today, it is considered the precursor of ransomware and spyware attacks.

,

negativepid.blog/the-sql-slamm
negativepid.blog/the-sql-slamm

Offensive Sequenceoffseq@infosec.exchange
2025-12-08

⚠️ CVE-2025-14196 (HIGH, CVSS 8.7): Remote buffer overflow in H3C Magic B1 (≤100R004). Public exploit available, no patch. Isolate devices, restrict access, monitor for /goform/aspForm attacks. radar.offseq.com/threat/cve-20 #OffSeq #H3C #BufferOverflow #Vuln

High threat: CVE-2025-14196: Buffer Overflow in H3C Magic B1
Negative PID Inc.negativepid
2025-11-26

The SQL Slammer worm was the fastest spreading malware in Internet history. It exploited a buffer overflow vulnerability in Windows systems and could be transmitted and executed with minimal latency. Today, it is considered the precursor of ransomware and spyware attacks.

,

negativepid.blog/the-sql-slamm
negativepid.blog/the-sql-slamm

Negative PID Inc.negativepid
2025-11-17

The SQL Slammer worm was the fastest spreading malware in Internet history. It exploited a buffer overflow vulnerability in Windows systems and could be transmitted and executed with minimal latency. Today, it is considered the precursor of ransomware and spyware attacks.

,

negativepid.blog/the-sql-slamm
negativepid.blog/the-sql-slamm

Offensive Sequenceoffseq@infosec.exchange
2025-11-17

🛡️ CVE-2025-13258: HIGH severity buffer overflow in Tenda AC20 routers (≤16.03.08.12) via /goform/WifiExtraSet. Public exploit out—remotely exploitable, no auth needed. Restrict access, monitor, and patch ASAP. radar.offseq.com/threat/cve-20 #OffSeq #CVE2025 #Tenda #BufferOverflow

High threat: CVE-2025-13258: Buffer Overflow in Tenda AC20
Negative PID Inc.negativepid
2025-10-27

The SQL Slammer worm was the fastest spreading malware in Internet history. It exploited a buffer overflow vulnerability in Windows systems and could be transmitted and executed with minimal latency. Today, it is considered the precursor of ransomware and spyware attacks.

,

negativepid.blog/the-sql-slamm
negativepid.blog/the-sql-slamm

Offensive Sequenceoffseq@infosec.exchange
2025-10-12

🛡️ CVE-2025-58298: HIGH severity stack-based buffer overflow in Huawei HarmonyOS 5.0.1/5.1.0. Local attackers can disrupt availability; no patch yet. Review access controls & monitor for updates. radar.offseq.com/threat/cve-20 #OffSeq #HarmonyOS #Vuln #BufferOverflow

High threat: CVE-2025-58298: CWE-121 Stack-based Buffer Overflow in Huawei HarmonyOS
2025-10-04

ein ganz gemeiner #BufferOverflow um #remoters content reinzuhacken ;)

BGDon 🇨🇦 🇺🇸 👨‍💻BrentD@techhub.social
2025-09-29

"There are no workarounds that address this vulnerability.", not a quote you want to read about your fleet of Cisco devices running IOS and IOS XE Software! You must patch!

Cisco devices have been under attack due to zero-day critical RCE flaws as detailed in CVE-2025-20333, CVE-2025-20363, and CVE-2025-20362, resulting in a denial of service (DoS) condition.

sec.cloudapps.cisco.com/securi #Cisco #CitrixIOS #Networks #CyberAttack #CyberSecurity #DDOS #bufferoverflow #CISA

Cisco Logo
Offensive Sequenceoffseq@infosec.exchange
2025-09-21

🛡️ CVE-2025-10756: HIGH-severity buffer overflow in UTT HiPER 840G (≤3.1.1-190328) via /goform/getOneApConfTempEntry. Public exploit released, no patch from vendor. Isolate devices, restrict endpoint access, monitor closely. radar.offseq.com/threat/cve-20 #OffSeq #Vuln #BufferOverflow

High threat: CVE-2025-10756: Buffer Overflow in UTT HiPER 840G
iPhone-Blogiphone_blog
2025-09-20

Steigerung der Gerätesicherheit mit MIE: A19-Chip erhöht Gerätesicherheit
Apple hat mit Memory Integrity Enforcement (MIE) einen neuen Sicherheitsstandard vorgestellt, der vorerst exklusiv in den Modellen mit A19-Chip zum Ei iphone-blog.ch/2025/09/20/stei

Michael Burch :kt_ow:derburch@swiss.social
2025-09-20

Neuer Artikel auf iPhone-Blog.ch veröffentlicht:
Steigerung der Gerätesicherheit mit MIE: A19-Chip erhöht Gerätesicherheit

Apple hat mit Memory Integrity Enforcement (MIE) einen neuen Sicherheitsstandard vorgestellt, der vorerst exklusiv in den Modellen mit A19-Chip zum Einsatz kommt – sprich im iPhone 17 (Pro) und dem neuen iPhone Air. Dank der Kombination aus Hardware-F

Artikel lesen: iphone-blog.ch/2025/09/20/stei

#A19 #A19Pro #BufferOverflow #MIE #Sicherheit

Offensive Sequenceoffseq@infosec.exchange
2025-09-07

🚨 CVE-2025-9961: HIGH severity buffer overflow in TP-Link AX10 & AX1500 (pre-1.2.1/1.3.11) enables RCE via MITM on CWMP. Patch firmware, limit CWMP access, enforce strong creds! 🔐 radar.offseq.com/threat/cve-20 #OffSeq #TPLink #Vuln #BufferOverflow #RCE

High threat: CVE-2025-9961: CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') in TP-
Offensive Sequenceoffseq@infosec.exchange
2025-09-07

🛡️ CVE-2025-10034 (HIGH): Buffer overflow in D-Link DIR-825 v1.08.01—public exploit available, no patch (EOL). Replace, segment, or restrict IPv6 now. Monitor for exploitation attempts. Details: radar.offseq.com/threat/cve-20 #OffSeq #DLink #Vuln #BufferOverflow

High threat: CVE-2025-10034: Buffer Overflow in D-Link DIR-825
Offensive Sequenceoffseq@infosec.exchange
2025-08-25

🚨 CVE-2025-9393 (HIGH): Stack-based buffer overflow in Linksys RE6250 & related models—remote exploit now public, no patch. Isolate or replace affected devices. Monitor for attacks! radar.offseq.com/threat/cve-20 #OffSeq #Vuln #BufferOverflow #Linksys

High threat: CVE-2025-9393: Stack-based Buffer Overflow in Linksys RE6250

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst