SecPod

Learn Search

Search across all Learn content

← Back to Security Research

SCAP Feed Release : 01-Oct-2018

The following SCAP content has been released to SCAP Repo and SecPod Saner Solution. SecPod Saner will automatically pull the relevant content on its next scheduled update.

Sep 30, 2018By Pooja S2 min read

The following SCAP content has been released to SCAP Repo and SecPod Saner Solution. SecPod Saner will automatically pull the relevant content on its next scheduled update.

oval:org.secpod.oval:def:115131 CVE-2018-17182
FEDORA-2018-d77cc41f35
FEDORA-2018-d77cc41f35 — Fedora 27 kernel-headers-4.18.9-100.fc27
oval:org.secpod.oval:def:115132 CVE-2018-16790
FEDORA-2018-77d864ff39
FEDORA-2018-77d864ff39 — Fedora 27 libbson-1.9.5-3.fc27
oval:org.secpod.oval:def:115133 CVE-2018-1000802
FEDORA-2018-33c7c17e71
FEDORA-2018-33c7c17e71 — Fedora 28 python2-2.7.15-3.fc28
oval:org.secpod.oval:def:115135 CVE-2018-14630
FEDORA-2018-43ff5f6e5b
FEDORA-2018-43ff5f6e5b — Fedora 27 moodle-3.3.8-1.fc27
oval:org.secpod.oval:def:115136 CVE-2017-5950
FEDORA-2018-c2499e6025
FEDORA-2018-c2499e6025 — Fedora 27 yaml-cpp-0.6.1-4.fc27
oval:org.secpod.oval:def:115138 CVE-2018-10897
FEDORA-2018-3aafb854a9
FEDORA-2018-3aafb854a9 — Fedora 27 yum-utils-1.1.31-514.fc27
oval:org.secpod.oval:def:115139 CVE-2018-16983
FEDORA-2018-e9821afbca
FEDORA-2018-e9821afbca — Fedora 28 mozilla-noscript-10.1.9.6-1.fc28
oval:org.secpod.oval:def:115141 CVE-2017-5950
FEDORA-2018-1758d97170
FEDORA-2018-1758d97170 — Fedora 28 yaml-cpp-0.6.1-4.fc28
oval:org.secpod.oval:def:115142 FEDORA-2018-34fac89d51 FEDORA-2018-34fac89d51 — Fedora 27 visualboyadvance-m-2.1.0-2.fc27
oval:org.secpod.oval:def:115143 CVE-2018-16983
FEDORA-2018-09c51bbcec
FEDORA-2018-09c51bbcec — Fedora 27 mozilla-noscript-10.1.9.6-1.fc27
oval:org.secpod.oval:def:115144 CVE-2018-17141
FEDORA-2018-37a27807e0
FEDORA-2018-37a27807e0 — Fedora 28 hylafax+-5.6.1-1.fc28
oval:org.secpod.oval:def:115145 CVE-2018-17141
FEDORA-2018-11b966722a
FEDORA-2018-11b966722a — Fedora 27 hylafax+-5.6.1-1.fc27
oval:org.secpod.oval:def:115146 CVE-2018-10897
FEDORA-2018-4f0089c995
FEDORA-2018-4f0089c995 — Fedora 28 yum-utils-1.1.31-515.fc28
oval:org.secpod.oval:def:115147 CVE-2018-16790
FEDORA-2018-2062cd7548
FEDORA-2018-2062cd7548 — Fedora 28 libbson-1.9.5-3.fc28
oval:org.secpod.oval:def:115148 CVE-2018-16435
FEDORA-2018-1cb4c4a6d8
FEDORA-2018-1cb4c4a6d8 — Fedora 28 lcms2-2.9-4.fc28
oval:org.secpod.oval:def:115149 CVE-2018-14630
FEDORA-2018-690535d30b
FEDORA-2018-690535d30b — Fedora 28 moodle-3.4.5-1.fc28
oval:org.secpod.oval:def:115150 FEDORA-2018-9fc46b45ab FEDORA-2018-9fc46b45ab — Fedora 28 visualboyadvance-m-2.1.0-2.fc28
oval:org.secpod.oval:def:1801177 9468
CVE-2018-10855
[3.7] ansible: Failed tasks do not honour no_log option allowing for secrets to be disclosed in logs (CVE-2018-10855)
oval:org.secpod.oval:def:1801178 9430
CVE-2017-15232
CVE-2018-1152
CVE-2018-11813
[3.6] libjpeg-turbo: Multiple vulnerabilities (CVE-2017-15232, CVE-2018-1152, CVE-2018-11813)
oval:org.secpod.oval:def:1801180 9431
CVE-2017-15232
CVE-2018-1152
CVE-2018-11813
[3.5] libjpeg-turbo: Multiple vulnerabilities (CVE-2017-15232, CVE-2018-1152, CVE-2018-11813)
oval:org.secpod.oval:def:1801181 9429
CVE-2017-15232
CVE-2018-1152
CVE-2018-11813
[3.7] libjpeg-turbo: Multiple vulnerabilities (CVE-2017-15232, CVE-2018-1152, CVE-2018-11813)
oval:org.secpod.oval:def:1801182 9428
CVE-2017-15232
CVE-2018-1152
CVE-2018-11813
[3.8] libjpeg-turbo: Multiple vulnerabilities (CVE-2018-1152, CVE-2018-11813)
oval:org.secpod.oval:def:502360 CVE-2011-2767
RHSA-2018:2737-01
RHSA-2018:2737-01 — Redhat mod_perl
oval:org.secpod.oval:def:502361 CVE-2018-6560
RHSA-2018:2766-01
RHSA-2018:2766-01 — Redhat flatpak
oval:org.secpod.oval:def:502362 CVE-2018-14634
RHSA-2018:2748-01
RHSA-2018:2748-01 — Redhat kernel, python-perf, perf
oval:org.secpod.oval:def:502363 CVE-2018-12384
RHSA-2018:2768-01
RHSA-2018:2768-01 — Redhat nss
oval:org.secpod.oval:def:502364 CVE-2018-10850
CVE-2018-10935
CVE-2018-14624
CVE-2018-14638
RHSA-2018:2757-01
RHSA-2018:2757-01 — Redhat 389-ds-base
oval:org.secpod.oval:def:502365 CVE-2018-11806
RHSA-2018:2762-01
RHSA-2018:2762-01 — Redhat qemu-kvm-ma
oval:org.secpod.oval:def:502367 CVE-2018-12383
CVE-2018-12385
RHSA-2018:2834-01
RHSA-2018:2834-01 — Redhat firefox
oval:org.secpod.oval:def:502368 CVE-2018-12383
CVE-2018-12385
RHSA-2018:2835-01
RHSA-2018:2835-01 — Redhat firefox
oval:org.secpod.oval:def:704325 CVE-2018-17336
USN-3772-1
USN-3772-1 — udisks vulnerability

Featured Posts

Open CVE-2023-49105: The ownCloud Authentication Flaw That Exposed Sensitive Credentials
CVE-2023-49105: The ownCloud Authentication Flaw That Exposed Sensitive Credentials

CVE Research

CVE-2023-49105: The ownCloud Authentication Flaw That Exposed Sensitive Credentials

Sep 25, 2026

Open Patch Analysis & Exploitation Timeline: RouterOS SSH Attacks Predate Production Fixes in CISA's September 10, 2026 KEV Additions
Patch Analysis & Exploitation Timeline: RouterOS SSH Attacks Predate Production Fixes in CISA's September 10, 2026 KEV Additions

CVE Research

Patch Analysis & Exploitation Timeline: RouterOS SSH Attacks Predate Production Fixes in CISA's September 10, 2026 KEV Additions

Two MikroTik RouterOS CVEs entered CISA KEV seven days after production fixes. Dated reporting places SSH-chain exploitation involving CVE-2026-86060 at least one calendar day before those releases; no comparable start date is established for CVE-2026-67277.

Sep 25, 2026

Open Patch Analysis & Exploitation Timeline: A Day-Old Chrome Bug and an Eight-Month-Old Fortinet Flaw Share the Same KEV Batch
Patch Analysis & Exploitation Timeline: A Day-Old Chrome Bug and an Eight-Month-Old Fortinet Flaw Share the Same KEV Batch

CVE Research

Patch Analysis & Exploitation Timeline: A Day-Old Chrome Bug and an Eight-Month-Old Fortinet Flaw Share the Same KEV Batch

Four vulnerabilities added to CISA’s KEV catalog on September 9, 2026 show widely different timelines between public disclosure and formal exploitation-based prioritization, ranging from one day to 239 days.

Sep 24, 2026

Open TA412/APT31: Mapping Threat Actor Patterns to CVE Exploitation Chains

TA412/APT31: Mapping Threat Actor Patterns to CVE Exploitation Chains

CVE Research

TA412/APT31: Mapping Threat Actor Patterns to CVE Exploitation Chains

A chronological look at how a long-running China-nexus espionage cluster evolved from server-side exploitation to a chained Chrome/Windows zero-day kit — and what that shift signals.

Sep 24, 2026