Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Muhammad Samaak

#22138of 53,633
10.3Total CVSS
Vulnerabilities · 2
Medium
2
PT-2024-13665
5.3
2024-08-25
Purevpn · Purevpn Linux Client · CVE-2023-48957
**Name of the Vulnerable Software and Affected Versions** PureVPN Linux client version 2.0.2 **Description** The PureVPN Linux client fails to properly handle DNS queries, allowing them to bypass the VPN tunnel and be sent directly to the ISP or default DNS servers. This issue is related to improper access controls in the DNS query handler. **Recommendations** For PureVPN Linux client version 2.0.2, upgrade to version 2.0.3 to remediate the issue. As a temporary workaround, consider restricting access to the DNS query handler until the patch is applied.
PT-2023-8358
5.0
2023-10-25
Apple · Safari · CVE-2023-42438
**Name of the Vulnerable Software and Affected Versions** Safari versions prior to macOS Sonoma 14.1 **Description** The issue is related to errors in the representation of information by the user interface, which can be exploited by a remote attacker to spoof the user interface. Visiting a malicious website may lead to user interface spoofing. This is a variant of a regression bug. **Recommendations** For versions prior to macOS Sonoma 14.1, update to macOS Sonoma 14.1 to fix the issue. As a temporary workaround, consider avoiding visits to untrusted websites to minimize the risk of exploitation.