ROC800-Series RTU devices are vulnerable to an authentication bypass, which could allow an attacker to gain unauthorized access to data or control of the device and cause a denial-of-service condition.
Окончание серии статей, посвящённых процессору ЭВМ ЕС-1020. Предыдущие статьи:• общая структура и система синхронизации;• микропрограммное управление;• оперативная память;• блок регистров;• арифметико-логический блок;• аппаратный контроль работы;• прерывания и интерфейс прямого управления. Читать далее
Результаты исследования, проведенного аналитиками TrendForce, показывают, что все больший объем б/у памяти ОЗУ для серверов перерабатывается для получения чипов DRAM. Их просто выпаивают, проверяют работоспособность и пускают снова в дело — уже для производства памяти для ноутбуков и ПК. Занимаются этим не кустарным способом, отлаживаются производственные процессы, что уже влияет на рынок DRAM, который много месяцев находится в сложной ситуации. Подробности — под катом. Читать дальше →
Text nodes not in the HTML namespace are incorrectly literally rendered, causing text which should be escaped to not be. This could lead to an XSS attack.
Cross Site Scripting vulnerability in GatesAIr Flexiva FM Transmitter/Exciter v.FAX 150W allows a remote attacker to execute arbitrary code via a crafted script to the web application dashboard.
A maliciously-crafted image can cause excessive CPU consumption in decoding. A tiled image with a height of 0 and a very large width can cause excessive CPU consumption, despite the image size (width * height) appearing to be zero.
The TIFF decoder does not place a limit on the size of compressed tile data. A maliciously-crafted image can exploit this to cause a small image (both in terms of pixel width/height, and encoded size) to make the decoder decode large amounts of compressed data, consuming excessive memory and CPU.
Extremely large RSA keys in certificate chains can cause a client/server to expend significant CPU time verifying signatures. With fix, the size of RSA keys transmitted during handshakes is restricted to <= 8192 bits. Based on a survey of publicly trusted RSA keys, there are currently only three certificates in circulation with keys larger than this, and all three appear to be test certificates that are not actively deployed. It is possible there are larger keys in use in private PKIs, but we target the
В понедельник 31 июля телескоп «Евклид» Европейского космического агентства передал на Землю первые снимки. И хотя эти впечатляющие кадры, безусловно, завораживают, они заодно подтверждают, что приборы космической обсерватории работают в нужном режиме.Успехи Евклида не могут…
An authenticated attacker with guest privileges or higher can cause the iControl SOAP process to terminate by sending undisclosed requests.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.