A vulnerability classified as problematic has been found in rsync up to 2.5.7. This affects the function open_socket_out of the file socket.c. The manipulation of the argument RSYNC_PROXY as part of Environment Variable leads to memory corruption.
This vulnerability is uniquely identified as CVE-2004-2093. The attack needs to be approached locally. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in Ashley Montanaro Darxite 0.4. This issue affects some unknown processing. The manipulation of the argument Username/Password leads to memory corruption.
The identification of this vulnerability is CVE-2000-0846. The attack may be initiated remotely. Furthermore, there is an exploit available.
The Russian nation-state actor tracked as Secret Blizzard has been observed leveraging malware associated with other threat actors to deploy a known backdoor called Kazuar on target devices located in Ukraine.
The new findings come from the Microsoft threat intelligence team, which said it observed the adversary leveraging the Amadey bot malware to download custom malware onto "specifically