Red Hat: 2016:1271-01: python-django-horizon: Important Advisory Posted by Anthony Pell An update for python-django-horizon is now available for Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: python-django-horizon security and bug […]
Red Hat: 2016:1269-01: python-django-horizon: Important Advisory Posted by Anthony Pell An update for python-django-horizon is now available for Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: python-django-horizon security update Advisory […]
Red Hat: 2016:1268-01: python-django-horizon: Important Advisory Posted by Anthony Pell An update for python-django-horizon is now available for Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 6. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: python-django-horizon security update Advisory […]
Red Hat: 2016:1270-01: python-django-horizon: Important Advisory Posted by Anthony Pell An update for python-django-horizon is now available for Red Hat OpenStack Platform 8.0 (Liberty). Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: python-django-horizon security update Advisory ID: RHSA-2016:1270-01 Product: Red Hat […]
Slackware: 2016-172-01: libarchive: Security Update Posted by Anthony Pell New libarchive packages are available for Slackware 14.1 and -current to fix security issues. [More Info…] [slackware-security] libarchive (SSA:2016-172-01) New libarchive packages are available for Slackware 14.1 and -current to fix security issues. Here are the details from the Slackware 14.1 ChangeLog: +————————–+ patches/packages/libarchive-3.2.1-i486-1_slack14.1.txz: Upgraded. […]
Slackware: 2016-172-02: pcre: Security Update Posted by Anthony Pell New pcre packages are available for Slackware 14.1 and -current to fix security issues. [More Info…] [slackware-security] pcre (SSA:2016-172-02) New pcre packages are available for Slackware 14.1 and -current to fix security issues. Here are the details from the Slackware 14.1 ChangeLog: +————————–+ patches/packages/pcre-8.39-i486-1_slack14.1.txz: Upgraded. […]
Red Hat: 2016:1262-01: chromium-browser: Important Advisory Posted by Anthony Pell An update for chromium-browser is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: chromium-browser security update Advisory ID: RHSA-2016:1262-01 Product: Red Hat […]
Discovered: June 20, 2016 Updated: June 20, 2016 6:57:37 PM Type: Trojan Infection Length: Varies Systems Affected: Windows 2000, Windows 7, Windows 8, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Server 2008, Windows Vista, Windows XP Backdoor.Dexbia is a Trojan horse that opens a back door on the compromised computer. […]
APPLE-SA-2016-06-20-2 OS X: Flash Player plug-in blocked Subject: APPLE-SA-2016-06-20-2 OS X: Flash Player plug-in blocked From: Apple Product Security Date: Mon, 20 Jun 2016 17:03:34 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SHA512 APPLE-SA-2016-06-20-2 OS X: Flash Player plug-in blocked Due to security issues in older versions, Apple has updated the web plug-in blocking mechanism to […]
APPLE-SA-2016-06-20-1 AirPort Base Station Firmware Update 7.6.7 and 7.7.7 Subject: APPLE-SA-2016-06-20-1 AirPort Base Station Firmware Update 7.6.7 and 7.7.7 From: Apple Product Security Date: Mon, 20 Jun 2016 12:57:18 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SHA512 APPLE-SA-2016-06-20-1 AirPort Base Station Firmware Update 7.6.7 and 7.7.7 AirPort Base Station Firmware Update 7.6.7 and 7.7.7 is now […]
Acer has experienced a major data breach, with up to 34,500 of its customers thought to be affected. It has already submitted a “breach notification sample” to the Office of the Attorney General in California, which states that one of its ecommerce sites was compromised. Worryingly, the electronics corporation has admitted that the data breach […]
One of my most popular posts of all time is about sticking it to Craigslist scammers. And no wonder: I get one or two emails a week from people who have been scammed or almost scammed on Craiglist. The victims are always upset and want my help getting the scammer arrested, which is nearly impossible. My […]
Debian: 3605-1: libxslt: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3605-1 security@debian.org https://www.debian.org/security/ Salvatore Bonaccorso June 19, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : libxslt CVE ID : CVE-2015-7995 CVE-2016-1683 CVE-2016-1684 Debian Bug : 802971 Several vulnerabilities were discovered in libxslt, an XSLT processing runtime library, which could lead […]
Multiple vulnerabilities have been found in PHP, the worst of which could lead to arbitrary code execution, or cause a Denial of Service condition. – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – […]
Gentoo: 201606-09 FFmpeg: Multiple vulnerabilities Posted by Anthony Pell Multiple vulnerabilities have been found in FFmpeg, the worst of which could lead to arbitrary code execution or Denial of Service condition. – – – – – – – – – – – – – – – – – – – – – – – […]
Gentoo: 201606-08 Adobe Flash Player: Multiple vulnerabilities Posted by Anthony Pell Multiple vulnerabilities have been found in Adobe Flash Player, the worst of which allows remote attackers to execute arbitrary code. – – – – – – – – – – – – – – – – – – – – – – – […]
Gentoo: 201606-07 dhcpcd: Multiple vulnerabilities Posted by Anthony Pell Multiple vulnerabilities have been found in dhcpcd allowing remote attackers to possibly execute arbitrary code or cause a Denial of Service. – – – – – – – – – – – – – – – – – – – – – – – – […]
Gentoo: 201606-06 nginx: Multiple vulnerabilities Posted by Anthony Pell Multiple vulnerabilities have been found in nginx, the worst of which may allow a remote attacker to cause a Denial of Service. – – – – – – – – – – – – – – – – – – – – – – – […]
An update for flash-plugin is now available for Red Hat Enterprise Linux 5 Supplementary and Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Critical: flash-plugin security update Advisory ID: RHSA-2016:1238-01 Product: Red Hat Enterprise Linux Supplementary Advisory […]
An update for ImageMagick is now available for Red Hat Enterprise Linux 6 and Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact [More…] ===================================================================== Red Hat Security Advisory Synopsis: Important: ImageMagick security update Advisory ID: RHSA-2016:1237-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2016:1237 Issue […]
Debian: 3604-1: drupal7: Summary Posted by Anthony Pell Security Report Summary – ————————————————————————- Debian Security Advisory DSA-3604-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff June 16, 2016 https://www.debian.org/security/faq – ————————————————————————- Package : drupal7 CVE ID : not yet available A privilege escalation vulnerability has been found in the User module of the Drupal content management framework. For […]
Gentoo: 201606-05 spice: Multiple vulnerabilities Posted by Anthony Pell Multiple vulnerabilities have been found in spice, the worst of which may result in the remote execution of arbitrary code. – – – – – – – – – – – – – – – – – – – – – – – – – […]
Several vulnerabilities were discovered in libxslt, an XSLT processing runtime library, which could lead to information disclosure or denial-of-service (application crash) against an application using the libxslt library. For the stable distribution (jessie), these problems have been fixed in version 1.1.28-2+deb8u1. We recommend that you upgrade your libxslt packages.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan, Virus, Worm.
Discovered: June 17, 2016 Updated: June 17, 2016 10:54:40 PM Type: Trojan Infection Length: Varies Systems Affected: Windows 2000, Windows 7, Windows 8, Windows 95, Windows 98, Windows NT, Windows Vista, Windows XP Trojan.Ransomcrypt.AZ is a Trojan horse that encrypts files on the compromised computer and asks the user to pay in order to decrypt […]
There’s a lot that happens in the security world, with many stories getting lost in the mix. In an effort to keep our readers informed and updated, we present the Webroot Threat Recap, highlighting 5 major security news stories of the week. Compromised RDP Servers Offer Cheap Attack Platform Recently, researchers discovered an online marketplace that allowed […]
A privilege escalation vulnerability has been found in the User module of the Drupal content management framework. For additional information, please refer to the upstream advisory at https://www.drupal.org/SA-CORE-2016-002. For the stable distribution (jessie), this problem has been fixed in version 7.32-1+deb8u7. For the unstable distribution (sid), this problem has been fixed in version 7.44-1. We […]
Risk High Date Discovered June 14, 2016 Description Microsoft Edge is prone to a remote memory-corruption vulnerability. Attackers can exploit this issue by enticing an unsuspecting user to view a specially crafted web page. Attackers can take advantage of this vulnerability to execute arbitrary code in the context of the currently logged-in user. Failed attacks […]
