security update
LinuxSecurity.com: Several vulnerabilities were discovered in GIMP, the GNU Image Manipulation Program, which could result in denial of service (application crash) or potentially the execution of arbitrary code if malformed files are opened.
security update
LinuxSecurity.com: Update to 1.9.9. This release addresses security vulnerabilities discovered by Cure53. Details can be found in the Security Audit Report: https://enigmail.net/ download/other/Enigmail%20Pentest%20Report%20by%20Cure53%20-%20Excerpt.pdf
LinuxSecurity.com: A vulnerability has been discovered in Asterisk, an open source PBX and telephony toolkit, which may result in resource exhaustion and denial of service.
LinuxSecurity.com: Multiple vulnerabilities have been discovered in Asterisk, an open source PBX and telephony toolkit, which may result in denial of service, information disclosure and potentially the execution of arbitrary code.
LinuxSecurity.com: An update that fixes 16 vulnerabilities is now available. An update that fixes 16 vulnerabilities is now available. An update that fixes 16 vulnerabilities is now available.
security update
LinuxSecurity.com: Multiple security issues have been found in Thunderbird, which may lead to the execution of arbitrary code, denial of service, information disclosure or spoofing of sender’s email addresses.
LinuxSecurity.com: An update that contains security fixes can now be installed. An update that contains security fixes can now be installed. An update that contains security fixes can now be installed.
LinuxSecurity.com: An update that contains security fixes can now be installed. An update that contains security fixes can now be installed. An update that contains security fixes can now be installed.
security update
LinuxSecurity.com: Update to 0.8.3, fixing CVE-2017-15612 and CVE-2017-16876
LinuxSecurity.com: Update to 1.9.9. This release addresses security vulnerabilities discovered by Cure53. Details can be found in the Security Audit Report: https://enigmail.net/ download/other/Enigmail%20Pentest%20Report%20by%20Cure53%20-%20Excerpt.pdf
LinuxSecurity.com: A vulnerability was found in the Mercurial version control system which could lead to remote arbitrary code execution.
The Cyber News Rundown brings you the latest happenings in cyber news weekly. Who am I? I’m Connor Madsen, a Webroot Threat Research Analyst, and a guy with a passion for all things security. Any questions? Just ask. WordPress Backdoor Found on Over 300,000 Machines Recently, researchers found a WordPress plugin containing a backdoor that […]
LinuxSecurity.com: An update that fixes 16 vulnerabilities is now available. An update that fixes 16 vulnerabilities is now available. An update that fixes 16 vulnerabilities is now available.
LinuxSecurity.com: An update that fixes 14 vulnerabilities is now available. An update that fixes 14 vulnerabilities is now available. An update that fixes 14 vulnerabilities is now available.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Risk Level: Very Low. Type: Trojan.
Courtesy of its highly customizable nature – along with its ability to persist in the system and to provide valuable information for fine-tuning the highly configurable payloads – the malware can be adapted for attacks against any environment, making it extremely dangerous. The post Cybersecurity review of 2017: The year of wake-up calls – part […]
LinuxSecurity.com: This update fixes several vulnerabilities in imagemagick: Various memory handling problems and cases of missing or incomplete input sanitising may result in denial of service, memory disclosure or the execution of arbitrary code if malformed image files are processed.
LinuxSecurity.com: This update addresses the following vulnerabilities: * [CVE-2017-13866](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-13866), [CVE-2017-13870](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-13870), [CVE-2017-7156](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-7156), [CVE-2017-13856](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-13856)
LinuxSecurity.com: Patch for CVE-2016-6328
LinuxSecurity.com: Update to version 0.0.11, see http://metadata.ftp- master.debian.org/changelogs/main/s/sensible-utils/sensible- utils_0.0.11_changelog for details.
LinuxSecurity.com: Update to upstream 14.7.4 release to address AST-2017-012 security issue —- Update to upstream 14.7.3 release for security alert AST-2017-013 —- Update to upstream 14.7.2 release for bug fixes
LinuxSecurity.com: Disable SSHv1 options.
LinuxSecurity.com: Update to 0.8.3, fixing CVE-2017-15612 and CVE-2017-16876
LinuxSecurity.com: Multiple security issues have been found in the Mozilla Thunderbird mail client including information leaks, unintended JavaScript execution and sender address spoofing.
LinuxSecurity.com: Update to version 0.0.11, see http://metadata.ftp- master.debian.org/changelogs/main/s/sensible-utils/sensible- utils_0.0.11_changelog for details.
LinuxSecurity.com: Update to upstream 13.18.4 release to address AST-2017-012/CVE-2017-17664 security issue
LinuxSecurity.com: – update to the latest upstream pre-release (fixes CVE-2017-1000211)
LinuxSecurity.com: Disable SSHv1 options.
Need a New Year’s resolution? How about this one? Start taking password security more seriously. The post The worst passwords of the year revealed appeared first on WeLiveSecurity
Ransomware and data breaches remain major thorns in the sides of users and organizations across the world, often piercing their defenses without too much effort. The post Cybersecurity review of 2017: The year of wake-up calls – part 1 appeared first on WeLiveSecurity
LinuxSecurity.com: Several vulnerabilities have been discovered in the interpreter for the Ruby language. The Common Vulnerabilities and Exposures project identifies the following problems:
LinuxSecurity.com: Several vulnerabilities have been discovered in the interpreter for the Ruby language. The Common Vulnerabilities and Exposures project identifies the following problems:
LinuxSecurity.com: An update that fixes four vulnerabilities is now available. An update that fixes four vulnerabilities is now available. An update that fixes four vulnerabilities is now available.
LinuxSecurity.com: An update that fixes four vulnerabilities is now available. An update that fixes four vulnerabilities is now available. An update that fixes four vulnerabilities is now available.
security update
LinuxSecurity.com: Hanno B?ck found several buffer overflows in GIMP, the GNU Image Manipulation Program, which could lead to application crash or other unspecified behaviour if a user opened untrusted input files.
LinuxSecurity.com: Multiple vulnerabilities have been discovered in Irssi, a terminal based IRC client, which may lead to denial of service or other unspecified impact.
LinuxSecurity.com: Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.
LinuxSecurity.com: An update that fixes 17 vulnerabilities is now available. An update that fixes 17 vulnerabilities is now available. An update that fixes 17 vulnerabilities is now available.
LinuxSecurity.com: Multiple vulnerabilities were discovered in Enigmail, an OpenPGP extension for Thunderbird, which could result in a loss of confidentiality, faked signatures, plain text leaks and denial of service. Additional information can be found under
LinuxSecurity.com: An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available.
LinuxSecurity.com: Several vulnerabilities were discovered in rsync, a fast, versatile, remote (and local) file-copying tool, allowing a remote attacker to bypass intended access restrictions or cause a denial of service.
LinuxSecurity.com: An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available. An update that fixes one vulnerability is now available.
LinuxSecurity.com: New mozilla-thunderbird packages are available for Slackware 14.2 and -current to fix a security issue.
LinuxSecurity.com: An update that contains security fixes can now be installed. An update that contains security fixes can now be installed. An update that contains security fixes can now be installed.
LinuxSecurity.com: An update that solves 32 vulnerabilities and has one errata An update that solves 32 vulnerabilities and has one errata An update that solves 32 vulnerabilities and has one errata is now available. is now available.
