SecPod

Learn Search

Search across all Learn content

← Back to Security Research

SCAP Feed Release : 01-Oct-2018

The following SCAP content has been released to SCAP Repo and SecPod Saner Solution. SecPod Saner will automatically pull the relevant content on its next scheduled update.

Sep 30, 2018By Pooja S2 min read

The following SCAP content has been released to SCAP Repo and SecPod Saner Solution. SecPod Saner will automatically pull the relevant content on its next scheduled update.

oval:org.secpod.oval:def:115131 CVE-2018-17182
FEDORA-2018-d77cc41f35
FEDORA-2018-d77cc41f35 — Fedora 27 kernel-headers-4.18.9-100.fc27
oval:org.secpod.oval:def:115132 CVE-2018-16790
FEDORA-2018-77d864ff39
FEDORA-2018-77d864ff39 — Fedora 27 libbson-1.9.5-3.fc27
oval:org.secpod.oval:def:115133 CVE-2018-1000802
FEDORA-2018-33c7c17e71
FEDORA-2018-33c7c17e71 — Fedora 28 python2-2.7.15-3.fc28
oval:org.secpod.oval:def:115135 CVE-2018-14630
FEDORA-2018-43ff5f6e5b
FEDORA-2018-43ff5f6e5b — Fedora 27 moodle-3.3.8-1.fc27
oval:org.secpod.oval:def:115136 CVE-2017-5950
FEDORA-2018-c2499e6025
FEDORA-2018-c2499e6025 — Fedora 27 yaml-cpp-0.6.1-4.fc27
oval:org.secpod.oval:def:115138 CVE-2018-10897
FEDORA-2018-3aafb854a9
FEDORA-2018-3aafb854a9 — Fedora 27 yum-utils-1.1.31-514.fc27
oval:org.secpod.oval:def:115139 CVE-2018-16983
FEDORA-2018-e9821afbca
FEDORA-2018-e9821afbca — Fedora 28 mozilla-noscript-10.1.9.6-1.fc28
oval:org.secpod.oval:def:115141 CVE-2017-5950
FEDORA-2018-1758d97170
FEDORA-2018-1758d97170 — Fedora 28 yaml-cpp-0.6.1-4.fc28
oval:org.secpod.oval:def:115142 FEDORA-2018-34fac89d51 FEDORA-2018-34fac89d51 — Fedora 27 visualboyadvance-m-2.1.0-2.fc27
oval:org.secpod.oval:def:115143 CVE-2018-16983
FEDORA-2018-09c51bbcec
FEDORA-2018-09c51bbcec — Fedora 27 mozilla-noscript-10.1.9.6-1.fc27
oval:org.secpod.oval:def:115144 CVE-2018-17141
FEDORA-2018-37a27807e0
FEDORA-2018-37a27807e0 — Fedora 28 hylafax+-5.6.1-1.fc28
oval:org.secpod.oval:def:115145 CVE-2018-17141
FEDORA-2018-11b966722a
FEDORA-2018-11b966722a — Fedora 27 hylafax+-5.6.1-1.fc27
oval:org.secpod.oval:def:115146 CVE-2018-10897
FEDORA-2018-4f0089c995
FEDORA-2018-4f0089c995 — Fedora 28 yum-utils-1.1.31-515.fc28
oval:org.secpod.oval:def:115147 CVE-2018-16790
FEDORA-2018-2062cd7548
FEDORA-2018-2062cd7548 — Fedora 28 libbson-1.9.5-3.fc28
oval:org.secpod.oval:def:115148 CVE-2018-16435
FEDORA-2018-1cb4c4a6d8
FEDORA-2018-1cb4c4a6d8 — Fedora 28 lcms2-2.9-4.fc28
oval:org.secpod.oval:def:115149 CVE-2018-14630
FEDORA-2018-690535d30b
FEDORA-2018-690535d30b — Fedora 28 moodle-3.4.5-1.fc28
oval:org.secpod.oval:def:115150 FEDORA-2018-9fc46b45ab FEDORA-2018-9fc46b45ab — Fedora 28 visualboyadvance-m-2.1.0-2.fc28
oval:org.secpod.oval:def:1801177 9468
CVE-2018-10855
[3.7] ansible: Failed tasks do not honour no_log option allowing for secrets to be disclosed in logs (CVE-2018-10855)
oval:org.secpod.oval:def:1801178 9430
CVE-2017-15232
CVE-2018-1152
CVE-2018-11813
[3.6] libjpeg-turbo: Multiple vulnerabilities (CVE-2017-15232, CVE-2018-1152, CVE-2018-11813)
oval:org.secpod.oval:def:1801180 9431
CVE-2017-15232
CVE-2018-1152
CVE-2018-11813
[3.5] libjpeg-turbo: Multiple vulnerabilities (CVE-2017-15232, CVE-2018-1152, CVE-2018-11813)
oval:org.secpod.oval:def:1801181 9429
CVE-2017-15232
CVE-2018-1152
CVE-2018-11813
[3.7] libjpeg-turbo: Multiple vulnerabilities (CVE-2017-15232, CVE-2018-1152, CVE-2018-11813)
oval:org.secpod.oval:def:1801182 9428
CVE-2017-15232
CVE-2018-1152
CVE-2018-11813
[3.8] libjpeg-turbo: Multiple vulnerabilities (CVE-2018-1152, CVE-2018-11813)
oval:org.secpod.oval:def:502360 CVE-2011-2767
RHSA-2018:2737-01
RHSA-2018:2737-01 — Redhat mod_perl
oval:org.secpod.oval:def:502361 CVE-2018-6560
RHSA-2018:2766-01
RHSA-2018:2766-01 — Redhat flatpak
oval:org.secpod.oval:def:502362 CVE-2018-14634
RHSA-2018:2748-01
RHSA-2018:2748-01 — Redhat kernel, python-perf, perf
oval:org.secpod.oval:def:502363 CVE-2018-12384
RHSA-2018:2768-01
RHSA-2018:2768-01 — Redhat nss
oval:org.secpod.oval:def:502364 CVE-2018-10850
CVE-2018-10935
CVE-2018-14624
CVE-2018-14638
RHSA-2018:2757-01
RHSA-2018:2757-01 — Redhat 389-ds-base
oval:org.secpod.oval:def:502365 CVE-2018-11806
RHSA-2018:2762-01
RHSA-2018:2762-01 — Redhat qemu-kvm-ma
oval:org.secpod.oval:def:502367 CVE-2018-12383
CVE-2018-12385
RHSA-2018:2834-01
RHSA-2018:2834-01 — Redhat firefox
oval:org.secpod.oval:def:502368 CVE-2018-12383
CVE-2018-12385
RHSA-2018:2835-01
RHSA-2018:2835-01 — Redhat firefox
oval:org.secpod.oval:def:704325 CVE-2018-17336
USN-3772-1
USN-3772-1 — udisks vulnerability

Featured Posts

Open WHIPSHOT and SLAPSHOT: Citrix NetScaler Zero-Days Exploited to Plant Root Web Shells and Internal Tunnels
WHIPSHOT and SLAPSHOT: Citrix NetScaler Zero-Days Exploited to Plant Root Web Shells and Internal Tunnels

CVE Research

WHIPSHOT and SLAPSHOT: Citrix NetScaler Zero-Days Exploited to Plant Root Web Shells and Internal Tunnels

Oct 1, 2026

Open OpenSSL’s DTLS State Handling Error Opens the Door to Heap Data Exposure
OpenSSL’s DTLS State Handling Error Opens the Door to Heap Data Exposure

CVE Research

OpenSSL’s DTLS State Handling Error Opens the Door to Heap Data Exposure

Oct 1, 2026

Open Patch Analysis & Exploitation Timeline: Critical WSO2 and Adobe Flaws Show 1-Day vs. 133-Day Exploitation Window , September 24, 2026 KEV Additions
Patch Analysis & Exploitation Timeline: Critical WSO2 and Adobe Flaws Show 1-Day vs. 133-Day Exploitation Window , September 24, 2026 KEV Additions

CVE Research

Patch Analysis & Exploitation Timeline: Critical WSO2 and Adobe Flaws Show 1-Day vs. 133-Day Exploitation Window , September 24, 2026 KEV Additions

Two critical vulnerabilities added to CISA KEV on September 24, 2026 reveal sharply different exploitation timelines. CVE-2026-71362 saw publicly documented exploitation roughly one day after Adobe's patch release, while CVE-2026-5430 had a 133-day vendor-remediation-to-observed-exploitation interval.

Oct 1, 2026

Open Patch Analysis & Exploitation Timeline: Same-Week KEV Additions, Year-Apart Patch Dates - Linux Kernel, September 18, 2026
Patch Analysis & Exploitation Timeline: Same-Week KEV Additions, Year-Apart Patch Dates - Linux Kernel, September 18, 2026

CVE Research

Patch Analysis & Exploitation Timeline: Same-Week KEV Additions, Year-Apart Patch Dates - Linux Kernel, September 18, 2026

Three Linux kernel vulnerabilities entered CISA’s KEV catalog on September 18, 2026, although their Linux 6.12 fixes were available 91–386 days earlier. This analysis separates patch availability, CVE publication, and known-exploitation status without treating KEV dates as first-attack dates.

Sep 28, 2026