LinuxSecurity.com: Multiple vulnerabilities have been found in PCSC-Lite, the worst of which could lead to privilege escalation.
LinuxSecurity.com: flatpak 0.8.2 release, fixing a security issue that could lead to sandboxescaping. For details, see https://github.com/flatpak/flatpak/releases/tag/0.8.2
LinuxSecurity.com: The 4.9.6 stable kernel update contains a number of important fixes across thetree.
LinuxSecurity.com: This is an security update fixing CVE-2017-5193, CVE-2017-5194, CVE-2017-5195,CVE-2017-5196, CVE-2017-5356.
LinuxSecurity.com: A heap-buffer overflow vulnerability was discovered in pycrypto leading toarbitrary code execution. All users of pycrypto’s AES module that allow the modeof operation to be specified by an attacker, check for ECB explicitly and createthe objects without specifying an IV are vulnerable to this issue. This isCVE-2013-7459.
LinuxSecurity.com: The 4.9.6 stable kernel update contains a number of important fixes across thetree.
LinuxSecurity.com: This is an security update fixing CVE-2017-5193, CVE-2017-5194, CVE-2017-5195,CVE-2017-5196, CVE-2017-5356.
Only one month into the new year, it appears that we may well have our first example jackware in 2017 with a ransomware of things attack on an Austrian hotel. The post Austrian hotel experiences ‘ransomware of things attack’ appeared first on WeLiveSecurity
IT security professionals are at the forefront of the demand from companies across the UK, many of whom have placed greater demand on tech skills. The post Security professionals shortage in UK ‘increasing competition among companies for talent’ appeared first on WeLiveSecurity
A new way of looking at cybersecurity, no longer viewing it as a goal in itself, but instead something that is directly connected to business needs. The post Cybersecurity: 5 basic lessons for everyone appeared first on WeLiveSecurity
When attackers look for vulnerabilities, they target popular software. Why bother chasing flaws in applications that few people use? That’s why one of my best friends runs a third-party application instead of Adobe Acrobat Reader to open and read PDF documents. Another friend runs the Maxthon browser to stay out of the way of exploits […]
Ransomware is not going anywhere. Here, we’ve rounded up vital tips and advice from three ESET experts: Lysa Myers, Stephen Cobb and David Harley. The post Ransomware: Key insights from infosec experts appeared first on WeLiveSecurity
LinuxSecurity.com: Multiple vulnerabilities have been found in HarfBuzz, the worst of which could allow remote attackers to cause a Denial of Service condition.
LinuxSecurity.com: An update for nagios is now available for Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 6. Red Hat Product Security has rated this update as having a security impact [More…]
LinuxSecurity.com: An update for nagios is now available for Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]
LinuxSecurity.com: An update for nagios is now available for Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]
LinuxSecurity.com: An update for nagios is now available for Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7. Red Hat Product Security has rated this update as having a security impact [More…]
security update
LinuxSecurity.com: Security Report Summary
security update
LinuxSecurity.com: Update to 6.2.4
LinuxSecurity.com: Update to Firefox 51.0.1. —- – new upstream version (51.0.1)
LinuxSecurity.com: Security fix for CVE-2016-10164
LinuxSecurity.com: This is a security update for these CVEs: *[CVE-2016-9601](https://bugzilla.redhat.com/show_bug.cgi?id=1410021) – *Heap-buffer overflow in jbig2_image_new function* This update also solves possiblelicensing issues with ghostscritpt’s source code.
LinuxSecurity.com: Update to 7.0.4
LinuxSecurity.com: Security Report Summary
LinuxSecurity.com: A null pointer dereference in libpng might allow remote attackers to execute arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been discovered in SQUASHFS, the worst of which may allow execution of arbitrary code
LinuxSecurity.com: An integer overflow in libXpm might allow remote attackers to execute arbitrary code or cause a Denial of Service Condition.
LinuxSecurity.com: Multiple vulnerabilities have been found in FFmpeg, the worst of which may allow remote attackers to cause a Denial of Service condition.
LinuxSecurity.com: A vulnerability in Firewalld allows firewall configurations to be modified by unauthenticated users.
“When looking for vulnerabilities in open-source code, it is advisable to check portions of code that is prone to errors”: Useful tips from one of ESET’s malware analysts, Matías Porolli, on how to spot vulnerable code. The post Some examples of vulnerable code and how to find them appeared first on WeLiveSecurity
LinuxSecurity.com: Multiple vulnerabilities have been found in Perl, the worst of which could allow remote attackers to execute arbitrary code.
security update
security update
