LinuxSecurity.com: Multiple vulnerabilities have been found in Xen, the worst of which may allow local attackers to escalate privileges.
LinuxSecurity.com: Several vulnerabilities have been discovered in the X.Org X server. An attacker who’s able to connect to an X server could cause a denial of service or potentially the execution of arbitrary code.
LinuxSecurity.com: An update for wpa_supplicant is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,
LinuxSecurity.com: An update that fixes 6 vulnerabilities is now available. An update that fixes 6 vulnerabilities is now available. An update that fixes 6 vulnerabilities is now available.
LinuxSecurity.com: An update for rh-sso7-keycloak is now available for Red Hat Single Sign-On 7.1 for RHEL 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
LinuxSecurity.com: An update for rh-sso7-keycloak is now available for Red Hat Single Sign-On 7.1 for RHEL 6. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
LinuxSecurity.com: Red Hat Single Sign-On 7.1.3 is now available for download from the Customer Portal. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which
Type: Vulnerability. Adobe Flash Player is prone to a remote code-execution vulnerability; fixes are available.
LinuxSecurity.com: More info: https://koji.fedoraproject.org/koji/buildinfo?buildID=982578
LinuxSecurity.com: An update for flash-plugin is now available for Red Hat Enterprise Linux 6 Supplementary. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which
Just as there are ways to audit, manage and protect electronic documents, there are ways to manage printed documents, too. The post Securing printed data in the ‘paperless’ office appeared first on WeLiveSecurity
LinuxSecurity.com: Fix the for the Key Reinstallation Attacks in FT handshake (CVE-2017-13082) – Fix PTK rekeying to generate a new ANonce – Prevent reinstallation of an already in-use group key and extend protection of GTK/IGTK reinstallation of WNM-Sleep Mode cases (CVE-2017-13078,
LinuxSecurity.com: New upstream version
LinuxSecurity.com: Fix the for the Key Reinstallation Attacks in FT handshake (CVE-2017-13082) – Fix PTK rekeying to generate a new ANonce – Prevent reinstallation of an already in-use group key and extend protection of GTK/IGTK reinstallation of WNM-Sleep Mode cases (CVE-2017-13078,
LinuxSecurity.com: xserver 1.19.5 —- Update to xserver 1.19.4, multiple stability fixes.
LinuxSecurity.com: Update to 1.4.15. Fixes CVE-2017-8911
LinuxSecurity.com: 6.9.9-19
LinuxSecurity.com: 6.9.9-19
LinuxSecurity.com: Security fix for CVE-2017-13720 and CVE-2017-13722
LinuxSecurity.com: This is security update fixing possible buffer overflow in loadbuf function.
LinuxSecurity.com: Update to Open vSwitch 2.8.1 Includes security fix for CVE-2017-14970
LinuxSecurity.com: New upstream version
Risk Level: Very Low. Type: Trojan.
We’ve gathered our own thoughts on the topics chosen each week for this short series of blogs that will be published twice a week. The post National Cybersecurity Awareness Month Twitter Chats appeared first on WeLiveSecurity
The infection mechanism works well – which is crucial for determining how big of a deal a piece of malware is. The post DoubleLocker Android ransomware explained appeared first on WeLiveSecurity
LinuxSecurity.com: Mathy Vanhoef of the imec-DistriNet research group of KU Leuven discovered multiple vulnerabilities in the WPA protocol, used for authentication in wireless networks. Those vulnerabilities applies to both the access point (implemented in hostapd) and the station (implemented in wpa_supplicant).
‘KRACK’ or Key Reinstallation AttaCK, as it has been labeled, means third parties could eavesdrop on a network meaning private conversations would no longer be private. The post WPA2 security issues pose serious Wi-Fi safety questions appeared first on WeLiveSecurity
security update
LinuxSecurity.com: Fix CVE-2017-2887
LinuxSecurity.com: A vulnerability found in Shadow may allow remote attackers to cause a Denial of Service condition or produce other unspecified behaviors.
LinuxSecurity.com: A null pointer dereference in GnuTLS might allow attackers to cause a Denial of Service condition.
LinuxSecurity.com: 3.94 and patch for CVE-2017-15056
LinuxSecurity.com: An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available.
LinuxSecurity.com: update to upstream release 0.3.1.7 —- update to upstream release 0.2.9.12 (SECURITY) (#1494860)
LinuxSecurity.com: Security fix for buffer overflow due to long input filenames [see Bug 1422550 and 1422545]
LinuxSecurity.com: An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available.
LinuxSecurity.com: Multiple vulnerabilities have been found in WebkitGTK+, the worst of which may allow remote attackers to execute arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in Graphite, the worst of which could lead to the remote execution of arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in Puppet Agent, the worst of which could result in the execution of arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in GNU Libtasn1, the worst of which may allow remote attackers to execute arbitrary code.
LinuxSecurity.com: Multiple vulnerabilities have been found in elfutils, the worst of which may allow remote attackers to cause a Denial of Service condition. [More…]
LinuxSecurity.com: Security fix for buffer overflow due to long input filenames [see Bug 1422550 and 1422545]
Risk Level: Very Low. Type: Trojan.
The Cyber News Rundown brings you the latest happenings in cyber news weekly. Who am I? I’m Connor Madsen, a Webroot Threat Research Analyst, and a guy with a passion for all things security. Any more questions? Just ask. Rigzone Founder Caught Stealing Data Over the last few months, officials have been piecing together the […]
