SecPod

Learn Search

Search across all Learn content

← Back to Security Research

SCAP Feed Release : 02-Apr-2019

The following SCAP content has been released to SCAP Repo and SecPod Saner Solution. SecPod Saner will automatically pull the relevant content on its next scheduled update.

Apr 1, 2019By Kumarswamy S2 min read

The following SCAP content has been released to SCAP Repo and SecPod Saner Solution. SecPod Saner will automatically pull the relevant content on its next scheduled update.

oval:org.secpod.oval:def:116170 CVE-2019-9199
CVE-2019-9687
FEDORA-2019-023ea18e20
FEDORA-2019-023ea18e20 — Fedora 29 mingw-podofo-0.9.6-8.fc29
oval:org.secpod.oval:def:116171 CVE-2018-14498
FEDORA-2019-87e2fa8e0f
FEDORA-2019-87e2fa8e0f — Fedora 28 libjpeg-turbo-1.5.3-7.fc28
oval:org.secpod.oval:def:116172 CVE-2018-1061
CVE-2018-20406
CVE-2019-9636
FEDORA-2019-cf725dd20b
FEDORA-2019-cf725dd20b — Fedora 28 python35-3.5.7-1.fc28
oval:org.secpod.oval:def:116173 CVE-2019-3816
CVE-2019-3833
FEDORA-2019-348166f7fd
FEDORA-2019-348166f7fd — Fedora 28 openwsman-2.6.5-4.fc28
oval:org.secpod.oval:def:116174 CVE-2018-20406
CVE-2019-5010
CVE-2019-9636
FEDORA-2019-6baeb15da3
FEDORA-2019-6baeb15da3 — Fedora 28 python34-3.4.10-1.fc28
oval:org.secpod.oval:def:116175 CVE-2018-20406
CVE-2019-5010
CVE-2019-9636
FEDORA-2019-6b02154aa0
FEDORA-2019-6b02154aa0 — Fedora 29 python34-3.4.10-1.fc29
oval:org.secpod.oval:def:116176 CVE-2017-5617
FEDORA-2019-3cbce64a64
FEDORA-2019-3cbce64a64 — Fedora 29 svgsalamander-1.1.2-1.fc29
oval:org.secpod.oval:def:116178 CVE-2018-20004
CVE-2018-20005
CVE-2018-20592
CVE-2018-20593
FEDORA-2019-f99619e34d
FEDORA-2019-f99619e34d — Fedora 29 mxml-3.0-1.fc29
oval:org.secpod.oval:def:116179 FEDORA-2019-72b8d3603b FEDORA-2019-72b8d3603b — Fedora 29 thunderbird-60.6.1-1.fc29
oval:org.secpod.oval:def:116180 CVE-2019-9199
CVE-2019-9687
FEDORA-2019-023ea18e20
FEDORA-2019-023ea18e20 — Fedora 29 podofo-0.9.6-6.fc29
oval:org.secpod.oval:def:116181 CVE-2019-3816
CVE-2019-3833
FEDORA-2019-64b384de9b
FEDORA-2019-64b384de9b — Fedora 29 openwsman-2.6.5-9.fc29
oval:org.secpod.oval:def:116182 CVE-2019-9894
CVE-2019-9895
CVE-2019-9897
CVE-2019-9898
FEDORA-2019-9e1a1cd634
FEDORA-2019-9e1a1cd634 — Fedora 28 putty-0.71-1.fc28
oval:org.secpod.oval:def:116183 CVE-2019-3835
CVE-2019-3838
FEDORA-2019-1a2c059afd
FEDORA-2019-1a2c059afd — Fedora 29 ghostscript-9.26-4.fc29
oval:org.secpod.oval:def:116184 CVE-2018-19872
FEDORA-2019-ae913a2f00
FEDORA-2019-ae913a2f00 — Fedora 29 qt-4.8.7-45.fc29
oval:org.secpod.oval:def:116185 CVE-2019-3829
CVE-2019-3836
FEDORA-2019-e8c1cf958f
FEDORA-2019-e8c1cf958f — Fedora 29 gnutls-3.6.7-1.fc29
oval:org.secpod.oval:def:116186 CVE-2018-10906
FEDORA-2019-31722b8f33
FEDORA-2019-31722b8f33 — Fedora 29 fuse-2.9.9-1.fc29
oval:org.secpod.oval:def:1700146 ALAS-2019-1185
CVE-2017-12448
CVE-2017-12449
CVE-2017-12450
CVE-2017-12451
CVE-2017-12452
CVE-2017-12453
CVE-2017-12454
CVE-2017-12455
CVE-2017-12456
CVE-2017-12457
CVE-2017-12458
CVE-2017-12459
CVE-2017-13710
ALAS2-2019-1185 — binutils
oval:org.secpod.oval:def:1700147 ALAS-2019-1183
CVE-2019-8308
ALAS2-2019-1183 — flatpak
oval:org.secpod.oval:def:1700148 ALAS-2019-1184
CVE-2019-3813
ALAS2-2019-1184 — spice
oval:org.secpod.oval:def:1700149 ALAS-2019-1177
CVE-2019-2422
ALAS2-2019-1177 — java-1.7.0-openjdk, java-1.8.0-openjdk
oval:org.secpod.oval:def:1700150 ALAS-2019-1179
CVE-2019-8980
CVE-2019-9213
ALAS2-2019-1179 — kernel, perf, python-perf
oval:org.secpod.oval:def:1900091 CVE-2018-8034 CVE-2018-8034 — tomcat
oval:org.secpod.oval:def:1900144 CVE-2018-20662 CVE-2018-20662 — libpoppler-dev
oval:org.secpod.oval:def:1900220 CVE-2017-12424 CVE-2017-12424 — login
oval:org.secpod.oval:def:1900414 CVE-2017-9865 CVE-2017-9865 — libpoppler-dev
oval:org.secpod.oval:def:1901107 CVE-2018-15518 CVE-2018-15518 — qtbase5-dev
oval:org.secpod.oval:def:1901136 CVE-2018-19362 CVE-2018-19362 — libjackson2-databind-java
oval:org.secpod.oval:def:1901279 CVE-2018-14719 CVE-2018-14719 — libjackson2-databind-java
oval:org.secpod.oval:def:1901329 CVE-2018-19360 CVE-2018-19360 — libjackson2-databind-java
oval:org.secpod.oval:def:1901355 CVE-2018-19870 CVE-2018-19870 — qtbase5-dev
oval:org.secpod.oval:def:1901370 CVE-2018-14721 CVE-2018-14721 — libjackson2-databind-java
oval:org.secpod.oval:def:1901419 CVE-2018-14718 CVE-2018-14718 — libjackson2-databind-java
oval:org.secpod.oval:def:1901483 CVE-2018-14720 CVE-2018-14720 — libjackson2-databind-java

Featured Posts

Open CVE-2023-49105: The ownCloud Authentication Flaw That Exposed Sensitive Credentials
CVE-2023-49105: The ownCloud Authentication Flaw That Exposed Sensitive Credentials

CVE Research

CVE-2023-49105: The ownCloud Authentication Flaw That Exposed Sensitive Credentials

Sep 25, 2026

Open Patch Analysis & Exploitation Timeline: RouterOS SSH Attacks Predate Production Fixes in CISA's September 10, 2026 KEV Additions
Patch Analysis & Exploitation Timeline: RouterOS SSH Attacks Predate Production Fixes in CISA's September 10, 2026 KEV Additions

CVE Research

Patch Analysis & Exploitation Timeline: RouterOS SSH Attacks Predate Production Fixes in CISA's September 10, 2026 KEV Additions

Two MikroTik RouterOS CVEs entered CISA KEV seven days after production fixes. Dated reporting places SSH-chain exploitation involving CVE-2026-86060 at least one calendar day before those releases; no comparable start date is established for CVE-2026-67277.

Sep 25, 2026

Open Patch Analysis & Exploitation Timeline: A Day-Old Chrome Bug and an Eight-Month-Old Fortinet Flaw Share the Same KEV Batch
Patch Analysis & Exploitation Timeline: A Day-Old Chrome Bug and an Eight-Month-Old Fortinet Flaw Share the Same KEV Batch

CVE Research

Patch Analysis & Exploitation Timeline: A Day-Old Chrome Bug and an Eight-Month-Old Fortinet Flaw Share the Same KEV Batch

Four vulnerabilities added to CISA’s KEV catalog on September 9, 2026 show widely different timelines between public disclosure and formal exploitation-based prioritization, ranging from one day to 239 days.

Sep 24, 2026

Open TA412/APT31: Mapping Threat Actor Patterns to CVE Exploitation Chains

TA412/APT31: Mapping Threat Actor Patterns to CVE Exploitation Chains

CVE Research

TA412/APT31: Mapping Threat Actor Patterns to CVE Exploitation Chains

A chronological look at how a long-running China-nexus espionage cluster evolved from server-side exploitation to a chained Chrome/Windows zero-day kit — and what that shift signals.

Sep 24, 2026