跳到正文
HNHacker News·
暂不在当前实时榜单

A heap overflow and SSO misconfiguration to compromise OpenAI internal repos

AI 摘要

A heap overflow vulnerability in libheif, versions 1.19.7 and 1.19.8, affected Debian 12 and 13, which were used in Discourse’s Docker image. This vulnerability, part of the "HEIF Heist" ecosystem, was not documented as a security fix upstream, leading to delayed backports. Debian 13 received its security update on August 8, 2026. Any deployment without the latest upstream security patches for libheif versions like 1.19.x, 1.20.x, 1.22.x, and 1.23.x remains potentially vulnerable.

时间与来源

时间显示为 UTC

显示时区:UTC

本地时区尚不可用,暂时显示 UTC。

收录当时偏移:UTC+02026年9月18日 17:00 UTC

收录
2026年9月18日 17:00
来源类型
未分类
爆款判定
判定依据
热度约为该来源近期上榜条目中位水平的 7.1 倍
指标对比
439 vs 中位 61.5(20 条基线样本)
检出时间
09/18 17:00

本站未收录正文。

前往源站阅读 →
来源·Hacker News·hacktron.ai